Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

browser redirect?


  • Please log in to reply

#16
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,701 posts
  • MVP
The free revo uninstaller can help:

http://www.revounins...e_download.html

It's pretty good about uninstalling things that don't want to uninstall.
  • 0

Advertisements


#17
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
Sorry for the delay, thanks for your continued patience!

Ok ... I've removed a lot of stuff ... but still have some more to go, and probably some questions about whether ok idea to keep some applications.

For now ... I have removed McAfee and installed Avast. I ran the Avast boot-time scan, as you suggested. I saw it start running and next day, looked like it completed. However, I wasn't able to find a "boot-time scan report". ??? The logs I did find didn't appear to have detected any problems. ???

I ran the avg uninstaller ... the 32bit version didn't run and recorded an error. looks like it wanted the 64bit version. The 64bit version ran and generated a log file. I'll post that log below.

I ran OTL and will post that log below too.

I went back and reviewed your original instruction post to me and there were some things that I didn't get through, as I got derailed on some issues and picked up on some other instructions. Would you want me to go back and do any of these operations ... like ... adwCleaner, Event Viewer Tool, OTL, farbar service scanner. If you do want me to run any of these ... some had text boxes to copy and paste into the tool, would I use those old ones or need new ones?

Thanks!
  • 0

#18
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
avg remover log

2013-02-27 15:38:05,841 INFO AvgRemover 2012.0.5
-------------------------------------------------------
2013-02-27 15:38:05,843 ERROR Wrong application platform. Use corresponding application version for 32bit or 64bit systems
2013-02-27 15:40:08,808 INFO AvgRemover 2012.0.5
-------------------------------------------------------
2013-02-27 15:40:08,809 DEBUG Avg9Uninstall\Directories key failed to open (error: e0010013)
2013-02-27 15:40:08,809 DEBUG Avg8Uninstall\Directories key failed to open (error: e0010013)
2013-02-27 15:40:08,810 INFO Command line: "C:\Users\Gilbert\Desktop\Fix PC Tools Feb2013\avg remover\avg_remover_stf_x64_2013_2706.exe"
2013-02-27 15:40:08,810 WARN AvgDir param empty.
2013-02-27 15:40:08,811 WARN AvgDataDir param empty.
2013-02-27 15:40:08,812 DEBUG Disabling IDP Self Protection has failed with error 0xe0010054
2013-02-27 15:42:08,339 INFO AvgRemover runs in attempt number 1
2013-02-27 15:42:08,339 INFO Attempting to uninstall AVG Identity Protection.
2013-02-27 15:42:08,484 INFO Attempting to uninstall toolbar
2013-02-27 15:42:08,485 INFO ***** Msi data *****
2013-02-27 15:42:08,485 DEBUG No product code found for our upgrade codes, nothing to do here
2013-02-27 15:42:08,485 INFO ***** Exchange&Outlook plugins data *****
2013-02-27 15:42:08,495 INFO Removing AvgOutlook addin
2013-02-27 15:42:08,495 INFO AvgOutlook Removing HKCR addin keys x86
2013-02-27 15:42:08,495 DEBUG Failed to delete key 'avgoutlook.Addin': 0xe001003d
2013-02-27 15:42:08,495 DEBUG Failed to delete key 'avgoutlook.Addin.1': 0xe001003d
2013-02-27 15:42:08,496 DEBUG Failed to delete key 'CLSID\{9F39046C-801E-4E15-8CD9-ACF0ACF29048}': 0xe001003d
2013-02-27 15:42:08,496 DEBUG Failed to delete key 'CLSID\{F083C5AB-08AD-4ABF-A2BE-8FA5C7D2F10A}': 0xe001003d
2013-02-27 15:42:08,496 DEBUG Failed to delete key 'AppID\avgoutlook.DLL': 0xe001003d
2013-02-27 15:42:08,496 INFO AvgOutlook Removing HKCR addin keys x64
2013-02-27 15:42:08,496 DEBUG Failed to delete key 'avgoutlook.Addin': 0xe001003d
2013-02-27 15:42:08,496 DEBUG Failed to delete key 'avgoutlook.Addin.1': 0xe001003d
2013-02-27 15:42:08,496 DEBUG Failed to delete key 'CLSID\{9F39046C-801E-4E15-8CD9-ACF0ACF29048}': 0xe001003d
2013-02-27 15:42:08,497 DEBUG Failed to delete key 'CLSID\{F083C5AB-08AD-4ABF-A2BE-8FA5C7D2F10A}': 0xe001003d
2013-02-27 15:42:08,497 DEBUG Failed to delete key 'AppID\avgoutlook.DLL': 0xe001003d
2013-02-27 15:42:08,497 INFO Removing Sharepoint plugin if exists
2013-02-27 15:42:08,497 DEBUG Failed to open key 'Software\Microsoft\Shared Tools\Web Server Extensions\AVScanner': 0xe0010013
2013-02-27 15:42:08,497 DEBUG Failed to open key 'Software\Microsoft\Shared Tools\Web Server Extensions\AVScanner': 0xe0010013
2013-02-27 15:42:08,497 DEBUG Stopping service 'MSExchangeIS' to remove VSAPI plugin...
2013-02-27 15:42:08,502 DEBUG Service MSExchangeIS Stop failed (error: c0070424)
2013-02-27 15:42:08,502 DEBUG Exchange&Outlook plugins removal failed with error 0xc0070424
2013-02-27 15:42:08,502 INFO ***** Services *****
2013-02-27 15:42:08,504 INFO Processing service avg8emc, it can take several minutes...
2013-02-27 15:42:08,505 INFO Processing service avgfws8, it can take several minutes...
2013-02-27 15:42:08,505 INFO Processing service avg8wd, it can take several minutes...
2013-02-27 15:42:08,505 INFO Processing service AvgWFPx, it can take several minutes...
2013-02-27 15:42:08,505 INFO Processing service AvgMfx86, it can take several minutes...
2013-02-27 15:42:08,505 INFO Processing service avg9wd, it can take several minutes...
2013-02-27 15:42:08,505 INFO Processing service AvgTdiX, it can take several minutes...
2013-02-27 15:42:08,505 INFO Service avgfws8 is not installed
2013-02-27 15:42:08,505 INFO Service avg8emc is not installed
2013-02-27 15:42:08,506 INFO Service avg8wd is not installed
2013-02-27 15:42:08,507 INFO Processing service AvgMfx64, it can take several minutes...
2013-02-27 15:42:08,508 INFO Service AvgWFPx is not installed
2013-02-27 15:42:08,508 INFO Processing service AVGIDSErHrw7x, it can take several minutes...
2013-02-27 15:42:08,509 INFO Service AvgMfx86 is not installed
2013-02-27 15:42:08,512 INFO Processing service AvgLdx64, it can take several minutes...
2013-02-27 15:42:08,512 INFO Service avg9wd is not installed
2013-02-27 15:42:08,514 INFO Processing service AvgWFPa, it can take several minutes...
2013-02-27 15:42:08,515 INFO Service AvgTdiX is not installed
2013-02-27 15:42:08,517 INFO Processing service AvgTdiA, it can take several minutes...
2013-02-27 15:42:08,517 DEBUG Service avgfws8 RegCleanup
2013-02-27 15:42:08,517 INFO Processing service AvgWfpX, it can take several minutes...
2013-02-27 15:42:08,520 DEBUG Service avg8emc RegCleanup
2013-02-27 15:42:08,520 INFO Processing service AvgWfpA, it can take several minutes...
2013-02-27 15:42:08,523 DEBUG Service avg8wd RegCleanup
2013-02-27 15:42:08,524 INFO Processing service AvgRkx86, it can take several minutes...
2013-02-27 15:42:08,525 INFO Service AvgMfx64 is not installed
2013-02-27 15:42:08,550 DEBUG Service AvgMfx64 RegCleanup
2013-02-27 15:42:08,526 DEBUG Service AvgWFPx RegCleanup
2013-02-27 15:42:08,526 INFO Processing service avg9emc, it can take several minutes...
2013-02-27 15:42:08,528 INFO Processing service avgfws9, it can take several minutes...
2013-02-27 15:42:08,529 INFO Service AVGIDSErHrw7x is not installed
2013-02-27 15:42:08,529 INFO Processing service avgfws, it can take several minutes...
2013-02-27 15:42:08,530 DEBUG Service AvgMfx86 RegCleanup
2013-02-27 15:42:08,530 INFO Processing service AVGIDSAgent, it can take several minutes...
2013-02-27 15:42:08,533 INFO Service AvgLdx64 is not installed
2013-02-27 15:42:08,533 INFO Processing service AVGIDSWatcher, it can take several minutes...
2013-02-27 15:42:08,534 DEBUG Service avg9wd RegCleanup
2013-02-27 15:42:08,534 INFO Processing service AVGIDSShimxpx, it can take several minutes...
2013-02-27 15:42:08,537 INFO Processing service AVGIDSFilterxpx, it can take several minutes...
2013-02-27 15:42:08,538 INFO Service AvgWFPa is not installed
2013-02-27 15:42:08,538 INFO Processing service AVGIDSDriverxpx, it can take several minutes...
2013-02-27 15:42:08,538 DEBUG Service AvgTdiX RegCleanup
2013-02-27 15:42:08,538 INFO Processing service AVGIDSShimvtx, it can take several minutes...
2013-02-27 15:42:08,541 INFO Processing service AVGIDSFiltervtx, it can take several minutes...
2013-02-27 15:42:08,541 DEBUG Registry keys for service avgfws8 are not present
2013-02-27 15:42:08,542 INFO Service AvgTdiA is not installed
2013-02-27 15:42:08,542 INFO Processing service AVGIDSDrivervtx, it can take several minutes...
2013-02-27 15:42:08,542 DEBUG Registry keys for service avg8emc are not present
2013-02-27 15:42:08,543 INFO Service AvgWfpX is not installed
2013-02-27 15:42:08,544 INFO Processing service AVGIDSFiltervta, it can take several minutes...
2013-02-27 15:42:08,545 DEBUG Registry keys for service avg8wd are not present
2013-02-27 15:42:08,545 INFO Service AvgWfpA is not installed
2013-02-27 15:42:08,547 INFO Processing service AVGIDSDrivervta, it can take several minutes...
2013-02-27 15:42:08,548 INFO Service AvgRkx86 is not installed
2013-02-27 15:42:08,549 INFO Processing service AVGIDSShimw7x, it can take several minutes...
2013-02-27 15:42:08,550 INFO Processing service AVGIDSFilterw7x, it can take several minutes...
2013-02-27 15:42:08,526 INFO Processing service AvgRkx64, it can take several minutes...
2013-02-27 15:42:08,550 DEBUG Registry keys for service AvgMfx64 are not present
2013-02-27 15:42:08,550 DEBUG Registry keys for service AvgWFPx are not present
2013-02-27 15:42:08,552 INFO Processing service AVGIDSDriverw7x, it can take several minutes...
2013-02-27 15:42:08,553 INFO Service avg9emc is not installed
2013-02-27 15:42:08,554 INFO Processing service AVGIDSFilterw7a, it can take several minutes...
2013-02-27 15:42:08,555 INFO Service avgfws9 is not installed
2013-02-27 15:42:08,614 DEBUG Service avgfws9 RegCleanup
2013-02-27 15:42:08,614 DEBUG Registry keys for service avgfws9 are not present
2013-02-27 15:42:08,557 DEBUG Service AVGIDSErHrw7x RegCleanup
2013-02-27 15:42:08,557 INFO Processing service AVGIDSErHrxpx, it can take several minutes...
2013-02-27 15:42:08,559 INFO Processing service AVGIDSErHrvtx, it can take several minutes...
2013-02-27 15:42:08,560 DEBUG Registry keys for service AvgMfx86 are not present
2013-02-27 15:42:08,560 INFO Service avgfws is not installed
2013-02-27 15:42:08,561 INFO Processing service AVGIDSErHrvta, it can take several minutes...
2013-02-27 15:42:08,561 INFO Processing service AvgLdx86, it can take several minutes...
2013-02-27 15:42:08,562 INFO Service AVGIDSAgent is not installed
2013-02-27 15:42:08,563 DEBUG Service AvgLdx64 RegCleanup
2013-02-27 15:42:08,629 DEBUG Registry keys for service AvgLdx64 are not present
2013-02-27 15:42:08,563 INFO Processing service AVGIDSErHrw7a, it can take several minutes...
2013-02-27 15:42:08,566 INFO Processing service avgwd, it can take several minutes...
2013-02-27 15:42:08,566 DEBUG Registry keys for service avg9wd are not present
2013-02-27 15:42:08,567 INFO Service AVGIDSWatcher is not installed
2013-02-27 15:42:08,636 DEBUG Service AVGIDSWatcher RegCleanup
2013-02-27 15:42:08,571 INFO Service AVGIDSFilterxpx is not installed
2013-02-27 15:42:08,639 DEBUG Service AVGIDSFilterxpx RegCleanup
2013-02-27 15:42:08,639 DEBUG Registry keys for service AVGIDSFilterxpx are not present
2013-02-27 15:42:08,573 DEBUG Service AvgWFPa RegCleanup
2013-02-27 15:42:08,639 DEBUG Registry keys for service AvgWFPa are not present
2013-02-27 15:42:08,575 DEBUG Registry keys for service AvgTdiX are not present
2013-02-27 15:42:08,576 INFO Service AVGIDSDriverxpx is not installed
2013-02-27 15:42:08,640 DEBUG Service AVGIDSDriverxpx RegCleanup
2013-02-27 15:42:08,580 INFO Service AVGIDSFiltervtx is not installed
2013-02-27 15:42:08,642 DEBUG Service AVGIDSFiltervtx RegCleanup
2013-02-27 15:42:08,581 DEBUG Service AvgTdiA RegCleanup
2013-02-27 15:42:08,587 INFO Service AVGIDSDrivervtx is not installed
2013-02-27 15:42:08,588 DEBUG Service AvgWfpX RegCleanup
2013-02-27 15:42:08,592 INFO Service AVGIDSFiltervta is not installed
2013-02-27 15:42:08,592 DEBUG Service AvgWfpA RegCleanup
2013-02-27 15:42:08,647 DEBUG Registry keys for service AvgWfpA are not present
2013-02-27 15:42:08,596 INFO Service AVGIDSDrivervta is not installed
2013-02-27 15:42:08,648 DEBUG Service AVGIDSDrivervta RegCleanup
2013-02-27 15:42:08,597 DEBUG Service AvgRkx86 RegCleanup
2013-02-27 15:42:08,600 INFO Service AVGIDSShimw7x is not installed
2013-02-27 15:42:08,601 INFO Service AVGIDSFilterw7x is not installed
2013-02-27 15:42:08,606 INFO Service AvgRkx64 is not installed
2013-02-27 15:42:08,608 INFO Service AVGIDSDriverw7x is not installed
2013-02-27 15:42:08,610 DEBUG Service avg9emc RegCleanup
2013-02-27 15:42:08,613 INFO Service AVGIDSFilterw7a is not installed
2013-02-27 15:42:08,557 INFO Processing service AVGIDSDriverw7a, it can take several minutes...
2013-02-27 15:42:08,614 DEBUG Registry keys for service AVGIDSErHrw7x are not present
2013-02-27 15:42:08,617 INFO Service AVGIDSErHrxpx is not installed
2013-02-27 15:42:08,618 INFO Service AVGIDSErHrvtx is not installed
2013-02-27 15:42:08,622 DEBUG Service avgfws RegCleanup
2013-02-27 15:42:08,625 INFO Service AVGIDSErHrvta is not installed
2013-02-27 15:42:08,626 INFO Service AvgLdx86 is not installed
2013-02-27 15:42:08,628 DEBUG Service AVGIDSAgent RegCleanup
2013-02-27 15:42:08,632 INFO Service AVGIDSErHrw7a is not installed
2013-02-27 15:42:08,634 INFO Service avgwd is not installed
2013-02-27 15:42:08,568 INFO Service AVGIDSShimxpx is not installed
2013-02-27 15:42:08,636 DEBUG Registry keys for service AVGIDSWatcher are not present
2013-02-27 15:42:08,577 INFO Service AVGIDSShimvtx is not installed
2013-02-27 15:42:08,641 DEBUG Registry keys for service AVGIDSDriverxpx are not present
2013-02-27 15:42:08,643 DEBUG Registry keys for service AVGIDSFiltervtx are not present
2013-02-27 15:42:08,643 DEBUG Registry keys for service AvgTdiA are not present
2013-02-27 15:42:08,644 DEBUG Service AVGIDSDrivervtx RegCleanup
2013-02-27 15:42:08,644 DEBUG Registry keys for service AvgWfpX are not present
2013-02-27 15:42:08,647 DEBUG Service AVGIDSFiltervta RegCleanup
2013-02-27 15:42:08,670 DEBUG Registry keys for service AVGIDSDrivervtx are not present
2013-02-27 15:42:08,648 DEBUG Registry keys for service AVGIDSDrivervta are not present
2013-02-27 15:42:08,648 DEBUG Registry keys for service AvgRkx86 are not present
2013-02-27 15:42:08,650 DEBUG Service AVGIDSShimw7x RegCleanup
2013-02-27 15:42:08,651 DEBUG Service AVGIDSFilterw7x RegCleanup
2013-02-27 15:42:08,670 DEBUG Registry keys for service AVGIDSFilterw7x are not present
2013-02-27 15:42:08,653 DEBUG Service AvgRkx64 RegCleanup
2013-02-27 15:42:08,655 DEBUG Service AVGIDSDriverw7x RegCleanup
2013-02-27 15:42:08,671 DEBUG Registry keys for service AvgRkx64 are not present
2013-02-27 15:42:08,655 DEBUG Registry keys for service avg9emc are not present
2013-02-27 15:42:08,671 DEBUG Registry keys for service AVGIDSShimw7x are not present
2013-02-27 15:42:08,658 INFO Service AVGIDSDriverw7a is not installed
2013-02-27 15:42:08,658 DEBUG Service AVGIDSErHrxpx RegCleanup
2013-02-27 15:42:08,661 DEBUG Service AVGIDSErHrvtx RegCleanup
2013-02-27 15:42:08,661 DEBUG Registry keys for service avgfws are not present
2013-02-27 15:42:08,662 DEBUG Service AVGIDSErHrvta RegCleanup
2013-02-27 15:42:08,671 DEBUG Registry keys for service AVGIDSErHrvtx are not present
2013-02-27 15:42:08,664 DEBUG Registry keys for service AVGIDSAgent are not present
2013-02-27 15:42:08,665 DEBUG Service AVGIDSErHrw7a RegCleanup
2013-02-27 15:42:08,666 DEBUG Service avgwd RegCleanup
2013-02-27 15:42:08,667 DEBUG Service AVGIDSShimxpx RegCleanup
2013-02-27 15:42:08,672 DEBUG Registry keys for service AVGIDSShimxpx are not present
2013-02-27 15:42:08,670 DEBUG Service AVGIDSShimvtx RegCleanup
2013-02-27 15:42:08,670 DEBUG Registry keys for service AVGIDSFiltervta are not present
2013-02-27 15:42:08,671 DEBUG Registry keys for service AVGIDSDriverw7x are not present
2013-02-27 15:42:08,656 DEBUG Service AVGIDSFilterw7a RegCleanup
2013-02-27 15:42:08,671 DEBUG Service AVGIDSDriverw7a RegCleanup
2013-02-27 15:42:08,671 DEBUG Registry keys for service AVGIDSErHrxpx are not present
2013-02-27 15:42:08,671 DEBUG Registry keys for service AVGIDSErHrvta are not present
2013-02-27 15:42:08,664 DEBUG Service AvgLdx86 RegCleanup
2013-02-27 15:42:08,672 DEBUG Registry keys for service AVGIDSErHrw7a are not present
2013-02-27 15:42:08,672 DEBUG Registry keys for service AVGIDSFilterw7a are not present
2013-02-27 15:42:08,672 DEBUG Registry keys for service avgwd are not present
2013-02-27 15:42:08,672 DEBUG Registry keys for service AVGIDSDriverw7a are not present
2013-02-27 15:42:08,672 DEBUG Registry keys for service AVGIDSShimvtx are not present
2013-02-27 15:42:08,672 DEBUG Registry keys for service AvgLdx86 are not present
2013-02-27 15:42:08,673 INFO ***** Avg Fw NDIS driver(separate process) *****
2013-02-27 15:42:08,774 INFO AvgRemover 2012.0.5
-------------------------------------------------------
2013-02-27 15:42:08,775 DEBUG Deleting stuck RunOnce value from registry.
2013-02-27 15:42:08,776 DEBUG Avg9Uninstall\Directories key failed to open (error: e0010013)
2013-02-27 15:42:08,776 DEBUG Avg8Uninstall\Directories key failed to open (error: e0010013)
2013-02-27 15:42:08,776 INFO Command line: "C:\Users\Gilbert\Desktop\Fix PC Tools Feb2013\avg remover\avg_remover_stf_x64_2013_2706.exe" /ndisonly /skipask
2013-02-27 15:42:08,778 WARN AvgDir param empty.
2013-02-27 15:42:08,780 WARN AvgDataDir param empty.
2013-02-27 15:42:08,782 DEBUG Disabling IDP Self Protection has failed with error 0xe0010054
2013-02-27 15:42:08,782 INFO AvgRemover runs in attempt number 1
2013-02-27 15:42:08,783 INFO ***** Avg Fw NDIS driver *****
2013-02-27 15:42:08,784 INFO ...this operation can take several minutes...
2013-02-27 15:42:08,787 INFO FW removing policy
2013-02-27 15:42:11,896 INFO FW NDIS driver not present
2013-02-27 15:42:11,987 DEBUG Remove NDIS driver pass, next uninstalation step is 10, old was 1
2013-02-27 15:42:11,987 INFO ***** end of Fw NDIS separated process *****
2013-02-27 15:42:11,987 INFO ***** Drivers *****
2013-02-27 15:42:11,989 INFO ***** Running AVG process *****
2013-02-27 15:42:16,981 INFO ***** Registry keys and values *****
2013-02-27 15:42:17,020 INFO Processing registry SOFTWARE\Mozilla\Firefox\Extensions
2013-02-27 15:42:17,020 DEBUG Value SOFTWARE\Mozilla\Firefox\Extensions:{3f963a5b-e555-4543-90e2-c3908898db71} Remove
2013-02-27 15:42:17,021 INFO Value SOFTWARE\Mozilla\Firefox\Extensions:{3f963a5b-e555-4543-90e2-c3908898db71} is not present
2013-02-27 15:42:17,021 INFO Processing registry SOFTWARE\Mozilla\Firefox\Extensions
2013-02-27 15:42:17,024 DEBUG Value SOFTWARE\Mozilla\Firefox\Extensions:{1d5287d1-8a92-0001-1f31-1cec198018d8} Remove
2013-02-27 15:42:17,024 INFO Value SOFTWARE\Mozilla\Firefox\Extensions:{1d5287d1-8a92-0001-1f31-1cec198018d8} is not present
2013-02-27 15:42:17,027 INFO Processing registry SOFTWARE\Mozilla\Firefox\Extensions
2013-02-27 15:42:17,029 DEBUG Value SOFTWARE\Mozilla\Firefox\Extensions:{1E73965B-8B48-48be-9C8D-68B920ABC1C4} Remove
2013-02-27 15:42:17,029 INFO Value SOFTWARE\Mozilla\Firefox\Extensions:{1E73965B-8B48-48be-9C8D-68B920ABC1C4} is not present
2013-02-27 15:42:17,031 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL
2013-02-27 15:42:17,034 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL ForceRemove
2013-02-27 15:42:17,034 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL not found
2013-02-27 15:42:17,034 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL
2013-02-27 15:42:17,036 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL ForceRemove
2013-02-27 15:42:17,036 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL not found
2013-02-27 15:42:17,036 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt
2013-02-27 15:42:17,039 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt ForceRemove
2013-02-27 15:42:17,040 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt not found
2013-02-27 15:42:17,040 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg9Alrt
2013-02-27 15:42:17,042 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg9Alrt ForceRemove
2013-02-27 15:42:17,042 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg9Alrt not found
2013-02-27 15:42:17,042 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg10Alrt
2013-02-27 15:42:17,044 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg10Alrt ForceRemove
2013-02-27 15:42:17,045 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg10Alrt not found
2013-02-27 15:42:17,045 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg2012Alrt
2013-02-27 15:42:17,047 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg2012Alrt ForceRemove
2013-02-27 15:42:17,047 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg2012Alrt not found
2013-02-27 15:42:17,047 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms
2013-02-27 15:42:17,049 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms ForceRemove
2013-02-27 15:42:17,050 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms not found
2013-02-27 15:42:17,050 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avg
2013-02-27 15:42:17,052 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg ForceRemove
2013-02-27 15:42:17,052 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg not found
2013-02-27 15:42:17,052 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avg
2013-02-27 15:42:17,055 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg ForceRemove
2013-02-27 15:42:17,055 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg not found
2013-02-27 15:42:17,055 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avgloga
2013-02-27 15:42:17,057 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgloga ForceRemove
2013-02-27 15:42:17,058 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgloga not found
2013-02-27 15:42:17,058 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avgloga
2013-02-27 15:42:17,060 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgloga ForceRemove
2013-02-27 15:42:17,060 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgloga not found
2013-02-27 15:42:17,060 INFO Processing registry SYSTEM\CurrentControlSet\Services\AVGIDSHA
2013-02-27 15:42:17,062 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHA ForceRemove
2013-02-27 15:42:17,062 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHA not found
2013-02-27 15:42:17,062 INFO Processing registry SYSTEM\CurrentControlSet\Services\AVGIDSHA
2013-02-27 15:42:17,065 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHA ForceRemove
2013-02-27 15:42:17,065 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHA not found
2013-02-27 15:42:17,065 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avgdiag
2013-02-27 15:42:17,068 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgdiag ForceRemove
2013-02-27 15:42:17,068 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgdiag not found
2013-02-27 15:42:17,068 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avgdiag
2013-02-27 15:42:17,071 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgdiag ForceRemove
2013-02-27 15:42:17,071 DEBUG Key SYSTEM\CurrentControlSet\Services\Avgdiag not found
2013-02-27 15:42:17,071 INFO Processing registry SYSTEM\CurrentControlSet\Services\AVGIDSShim
2013-02-27 15:42:17,075 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSShim ForceRemove
2013-02-27 15:42:17,075 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSShim not found
2013-02-27 15:42:17,075 INFO Processing registry SYSTEM\CurrentControlSet\Services\AVGIDSShim
2013-02-27 15:42:17,077 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSShim ForceRemove
2013-02-27 15:42:17,078 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSShim not found
2013-02-27 15:42:17,078 INFO Processing registry SYSTEM\CurrentControlSet\Services\AVGIDSHX
2013-02-27 15:42:17,080 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHX ForceRemove
2013-02-27 15:42:17,080 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHX not found
2013-02-27 15:42:17,080 INFO Processing registry SYSTEM\CurrentControlSet\Services\AVGIDSHX
2013-02-27 15:42:17,083 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHX ForceRemove
2013-02-27 15:42:17,083 DEBUG Key SYSTEM\CurrentControlSet\Services\AVGIDSHX not found
2013-02-27 15:42:17,083 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054}
2013-02-27 15:42:17,085 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054} ForceRemove
2013-02-27 15:42:17,085 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054} not found
2013-02-27 15:42:17,085 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
2013-02-27 15:42:17,090 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
2013-02-27 15:42:17,090 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
2013-02-27 15:42:17,090 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Toolbar
2013-02-27 15:42:17,092 DEBUG Value SOFTWARE\Microsoft\Internet Explorer\Toolbar:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} Remove
2013-02-27 15:42:17,093 INFO Value SOFTWARE\Microsoft\Internet Explorer\Toolbar:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} is not present
2013-02-27 15:42:17,095 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
2013-02-27 15:42:17,097 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
2013-02-27 15:42:17,098 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
2013-02-27 15:42:17,098 INFO Processing registry SOFTWARE\Microsoft\Exchange\Client\Extensions
2013-02-27 15:42:17,100 DEBUG Value SOFTWARE\Microsoft\Exchange\Client\Extensions:Outlook Setup Extension Remove
2013-02-27 15:42:17,100 INFO Processing registry SOFTWARE\Microsoft\Exchange\Client\Extensions
2013-02-27 15:42:17,102 DEBUG Value SOFTWARE\Microsoft\Exchange\Client\Extensions:AVG Exchange Extension Remove
2013-02-27 15:42:17,103 INFO Value SOFTWARE\Microsoft\Exchange\Client\Extensions:AVG Exchange Extension is not present
2013-02-27 15:42:17,106 INFO Processing registry SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
2013-02-27 15:42:17,108 DEBUG Value SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows:AppInit_DLLs Modify
2013-02-27 15:42:17,108 DEBUG Value SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows:AppInit_DLLs doesn't need to be modified
2013-02-27 15:42:17,108 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2013-02-27 15:42:17,111 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} Remove
2013-02-27 15:42:17,111 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} is not present
2013-02-27 15:42:17,113 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2013-02-27 15:42:17,116 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} Remove
2013-02-27 15:42:17,116 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} is not present
2013-02-27 15:42:17,118 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2013-02-27 15:42:17,121 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} Remove
2013-02-27 15:42:17,122 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} is not present
2013-02-27 15:42:17,124 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
2013-02-27 15:42:17,126 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} Remove
2013-02-27 15:42:17,127 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} is not present
2013-02-27 15:42:17,129 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2013-02-27 15:42:17,131 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG8_TRAY Remove
2013-02-27 15:42:17,131 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG8_TRAY is not present
2013-02-27 15:42:17,134 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2013-02-27 15:42:17,136 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG9_TRAY Remove
2013-02-27 15:42:17,136 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG9_TRAY is not present
2013-02-27 15:42:17,139 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2013-02-27 15:42:17,142 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_UI Remove
2013-02-27 15:42:17,142 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_UI is not present
2013-02-27 15:42:17,144 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2013-02-27 15:42:17,147 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_UI Remove
2013-02-27 15:42:17,147 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_UI is not present
2013-02-27 15:42:17,149 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall
2013-02-27 15:42:17,152 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall ForceRemove
2013-02-27 15:42:17,152 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall not found
2013-02-27 15:42:17,152 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall
2013-02-27 15:42:17,155 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall ForceRemove
2013-02-27 15:42:17,155 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall not found
2013-02-27 15:42:17,155 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG9Uninstall
2013-02-27 15:42:17,157 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG9Uninstall ForceRemove
2013-02-27 15:42:17,157 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG9Uninstall not found
2013-02-27 15:42:17,157 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Avg9LsUninstall
2013-02-27 15:42:17,160 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Avg9LsUninstall ForceRemove
2013-02-27 15:42:17,160 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Avg9LsUninstall not found
2013-02-27 15:42:17,160 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}
2013-02-27 15:42:17,162 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C} ForceRemove
2013-02-27 15:42:17,162 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found
2013-02-27 15:42:17,162 INFO Processing registry SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
2013-02-27 15:42:17,165 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
2013-02-27 15:42:17,165 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
2013-02-27 15:42:17,165 INFO Processing registry SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
2013-02-27 15:42:17,168 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
2013-02-27 15:42:17,168 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
2013-02-27 15:42:17,168 INFO Processing registry SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82}
2013-02-27 15:42:17,171 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} ForceRemove
2013-02-27 15:42:17,171 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} not found
2013-02-27 15:42:17,171 INFO Processing registry SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82}
2013-02-27 15:42:17,174 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} ForceRemove
2013-02-27 15:42:17,174 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} not found
2013-02-27 15:42:17,174 INFO Processing registry SOFTWARE\Classes\AvgDiagFile
2013-02-27 15:42:17,176 DEBUG Key SOFTWARE\Classes\AvgDiagFile ForceRemove
2013-02-27 15:42:17,176 DEBUG Key SOFTWARE\Classes\AvgDiagFile not found
2013-02-27 15:42:17,176 INFO Processing registry SOFTWARE\Classes\AvgDiagFile
2013-02-27 15:42:17,179 DEBUG Key SOFTWARE\Classes\AvgDiagFile ForceRemove
2013-02-27 15:42:17,179 DEBUG Key SOFTWARE\Classes\AvgDiagFile not found
2013-02-27 15:42:17,179 INFO Processing registry SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb\command
2013-02-27 15:42:17,180 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb\command ForceRemove
2013-02-27 15:42:17,180 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb\command not found
2013-02-27 15:42:17,180 INFO Processing registry SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb
2013-02-27 15:42:17,184 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb ForceRemove
2013-02-27 15:42:17,184 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb not found
2013-02-27 15:42:17,184 INFO Processing registry SOFTWARE\Classes\.avgdi\shell
2013-02-27 15:42:17,186 DEBUG Key SOFTWARE\Classes\.avgdi\shell ForceRemove
2013-02-27 15:42:17,186 DEBUG Key SOFTWARE\Classes\.avgdi\shell not found
2013-02-27 15:42:17,186 INFO Processing registry SOFTWARE\Classes\.avgdi
2013-02-27 15:42:17,192 DEBUG Key SOFTWARE\Classes\.avgdi ForceRemove
2013-02-27 15:42:17,192 DEBUG Key SOFTWARE\Classes\.avgdi not found
2013-02-27 15:42:17,192 INFO Processing registry SOFTWARE\Classes\.avgdx
2013-02-27 15:42:17,193 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
2013-02-27 15:42:17,194 DEBUG Key SOFTWARE\Classes\.avgdx not found
2013-02-27 15:42:17,194 INFO Processing registry SOFTWARE\Classes\.avgdx
2013-02-27 15:42:17,195 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
2013-02-27 15:42:17,195 DEBUG Key SOFTWARE\Classes\.avgdx not found
2013-02-27 15:42:17,195 INFO Processing registry SOFTWARE\Classes\.avgdx
2013-02-27 15:42:17,197 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
2013-02-27 15:42:17,197 DEBUG Key SOFTWARE\Classes\.avgdx not found
2013-02-27 15:42:17,197 INFO Processing registry SOFTWARE\Classes\.avgdx
2013-02-27 15:42:17,198 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
2013-02-27 15:42:17,198 DEBUG Key SOFTWARE\Classes\.avgdx not found
2013-02-27 15:42:17,198 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension
2013-02-27 15:42:17,199 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
2013-02-27 15:42:17,200 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
2013-02-27 15:42:17,200 INFO Processing registry SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension
2013-02-27 15:42:17,201 DEBUG Key SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
2013-02-27 15:42:17,201 DEBUG Key SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
2013-02-27 15:42:17,201 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension
2013-02-27 15:42:17,204 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
2013-02-27 15:42:17,204 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
2013-02-27 15:42:17,204 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension
2013-02-27 15:42:17,207 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
2013-02-27 15:42:17,207 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
2013-02-27 15:42:17,207 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension
2013-02-27 15:42:17,207 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
2013-02-27 15:42:17,207 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
2013-02-27 15:42:17,207 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,208 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,208 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,208 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension
2013-02-27 15:42:17,208 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
2013-02-27 15:42:17,208 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
2013-02-27 15:42:17,208 INFO Processing registry SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension
2013-02-27 15:42:17,209 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
2013-02-27 15:42:17,209 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension not found
2013-02-27 15:42:17,209 INFO Processing registry SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension
2013-02-27 15:42:17,209 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
2013-02-27 15:42:17,209 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension not found
2013-02-27 15:42:17,209 INFO Processing registry SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,210 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,210 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,210 INFO Processing registry SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,210 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,210 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,210 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension
2013-02-27 15:42:17,211 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
2013-02-27 15:42:17,211 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
2013-02-27 15:42:17,211 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension
2013-02-27 15:42:17,211 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
2013-02-27 15:42:17,212 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
2013-02-27 15:42:17,212 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,212 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,212 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,212 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,212 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,213 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,213 INFO Processing registry SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner
2013-02-27 15:42:17,213 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner ForceRemove
2013-02-27 15:42:17,213 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner not found
2013-02-27 15:42:17,213 INFO Processing registry SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner
2013-02-27 15:42:17,213 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner ForceRemove
2013-02-27 15:42:17,214 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner not found
2013-02-27 15:42:17,214 INFO Processing registry SOFTWARE\Classes\avgsbg.state
2013-02-27 15:42:17,214 DEBUG Key SOFTWARE\Classes\avgsbg.state ForceRemove
2013-02-27 15:42:17,214 DEBUG Key SOFTWARE\Classes\avgsbg.state not found
2013-02-27 15:42:17,214 INFO Processing registry SOFTWARE\Classes\avgsbg.state
2013-02-27 15:42:17,214 DEBUG Key SOFTWARE\Classes\avgsbg.state ForceRemove
2013-02-27 15:42:17,215 DEBUG Key SOFTWARE\Classes\avgsbg.state not found
2013-02-27 15:42:17,215 INFO Processing registry SOFTWARE\Classes\avgsbg.state.1
2013-02-27 15:42:17,215 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 ForceRemove
2013-02-27 15:42:17,215 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 not found
2013-02-27 15:42:17,215 INFO Processing registry SOFTWARE\Classes\avgsbg.state.1
2013-02-27 15:42:17,215 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 ForceRemove
2013-02-27 15:42:17,216 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 not found
2013-02-27 15:42:17,216 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter
2013-02-27 15:42:17,216 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter ForceRemove
2013-02-27 15:42:17,216 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter not found
2013-02-27 15:42:17,216 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter
2013-02-27 15:42:17,217 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter ForceRemove
2013-02-27 15:42:17,217 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter not found
2013-02-27 15:42:17,217 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter.1
2013-02-27 15:42:17,219 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 ForceRemove
2013-02-27 15:42:17,219 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 not found
2013-02-27 15:42:17,219 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter.1
2013-02-27 15:42:17,219 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 ForceRemove
2013-02-27 15:42:17,219 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 not found
2013-02-27 15:42:17,219 INFO Processing registry SOFTWARE\Classes\MicroScanner.MicroScanner
2013-02-27 15:42:17,220 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner ForceRemove
2013-02-27 15:42:17,220 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner not found
2013-02-27 15:42:17,220 INFO Processing registry SOFTWARE\Classes\MicroScanner.MicroScanner
2013-02-27 15:42:17,220 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner ForceRemove
2013-02-27 15:42:17,220 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner not found
2013-02-27 15:42:17,220 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL
2013-02-27 15:42:17,229 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL ForceRemove
2013-02-27 15:42:17,229 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL not found
2013-02-27 15:42:17,229 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2013-02-27 15:42:17,230 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY Remove
2013-02-27 15:42:17,230 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY is not present
2013-02-27 15:42:17,230 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2013-02-27 15:42:17,230 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY Remove
2013-02-27 15:42:17,231 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY is not present
2013-02-27 15:42:17,231 INFO Processing registry SOFTWARE\Classes\AppID\avgsbg.DLL
2013-02-27 15:42:17,231 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL ForceRemove
2013-02-27 15:42:17,232 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL not found
2013-02-27 15:42:17,232 INFO Processing registry SOFTWARE\Classes\AppID\avgsbg.DLL
2013-02-27 15:42:17,232 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL ForceRemove
2013-02-27 15:42:17,232 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL not found
2013-02-27 15:42:17,232 INFO Processing registry SYSTEM\ControlSet001\Control\GroupOrderList
2013-02-27 15:42:17,232 DEBUG Value SYSTEM\ControlSet001\Control\GroupOrderList:AVG Remove
2013-02-27 15:42:17,233 INFO Value SYSTEM\ControlSet001\Control\GroupOrderList:AVG is not present
2013-02-27 15:42:17,238 INFO Processing registry SYSTEM\ControlSet001\services\Avg
2013-02-27 15:42:17,239 DEBUG Key SYSTEM\ControlSet001\services\Avg ForceRemove
2013-02-27 15:42:17,239 DEBUG Key SYSTEM\ControlSet001\services\Avg not found
2013-02-27 15:42:17,239 INFO Processing registry SYSTEM\ControlSet001\services\Avgfwfd
2013-02-27 15:42:17,239 DEBUG Key SYSTEM\ControlSet001\services\Avgfwfd ForceRemove
2013-02-27 15:42:17,240 DEBUG Key SYSTEM\ControlSet001\services\Avgfwfd not found
2013-02-27 15:42:17,240 INFO Processing registry SYSTEM\ControlSet001\services\AVG Security Toolbar Service
2013-02-27 15:42:17,240 DEBUG Key SYSTEM\ControlSet001\services\AVG Security Toolbar Service ForceRemove
2013-02-27 15:42:17,240 DEBUG Key SYSTEM\ControlSet001\services\AVG Security Toolbar Service not found
2013-02-27 15:42:17,240 INFO Processing registry SYSTEM\ControlSet001\services\Avgfws
2013-02-27 15:42:17,257 DEBUG Key SYSTEM\ControlSet001\services\Avgfws ForceRemove
2013-02-27 15:42:17,257 DEBUG Key SYSTEM\ControlSet001\services\Avgfws not found
2013-02-27 15:42:17,257 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSAgent
2013-02-27 15:42:17,257 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSAgent ForceRemove
2013-02-27 15:42:17,258 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSAgent not found
2013-02-27 15:42:17,258 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSDriver
2013-02-27 15:42:17,258 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSDriver ForceRemove
2013-02-27 15:42:17,258 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSEH
2013-02-27 15:42:17,259 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSEH ForceRemove
2013-02-27 15:42:17,259 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSEH not found
2013-02-27 15:42:17,259 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSFilter
2013-02-27 15:42:17,259 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSFilter ForceRemove
2013-02-27 15:42:17,259 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSFilter not found
2013-02-27 15:42:17,259 INFO Processing registry SYSTEM\ControlSet001\services\avgldx64
2013-02-27 15:42:17,260 DEBUG Key SYSTEM\ControlSet001\services\avgldx64 ForceRemove
2013-02-27 15:42:17,260 DEBUG Key SYSTEM\ControlSet001\services\avgldx64 not found
2013-02-27 15:42:17,260 INFO Processing registry SYSTEM\ControlSet001\services\avgldx86
2013-02-27 15:42:17,260 DEBUG Key SYSTEM\ControlSet001\services\avgldx86 ForceRemove
2013-02-27 15:42:17,260 DEBUG Key SYSTEM\ControlSet001\services\avgldx86 not found
2013-02-27 15:42:17,260 INFO Processing registry SYSTEM\ControlSet001\services\avgmfx64
2013-02-27 15:42:17,261 DEBUG Key SYSTEM\ControlSet001\services\avgmfx64 ForceRemove
2013-02-27 15:42:17,261 DEBUG Key SYSTEM\ControlSet001\services\avgmfx64 not found
2013-02-27 15:42:17,261 INFO Processing registry SYSTEM\ControlSet001\services\avgmfx86
2013-02-27 15:42:17,267 DEBUG Key SYSTEM\ControlSet001\services\avgmfx86 ForceRemove
2013-02-27 15:42:17,267 DEBUG Key SYSTEM\ControlSet001\services\avgmfx86 not found
2013-02-27 15:42:17,267 INFO Processing registry SYSTEM\ControlSet001\services\avgrkx64
2013-02-27 15:42:17,267 DEBUG Key SYSTEM\ControlSet001\services\avgrkx64 ForceRemove
2013-02-27 15:42:17,267 DEBUG Key SYSTEM\ControlSet001\services\avgrkx64 not found
2013-02-27 15:42:17,267 INFO Processing registry SYSTEM\ControlSet001\services\avgrkx86
2013-02-27 15:42:17,268 DEBUG Key SYSTEM\ControlSet001\services\avgrkx86 ForceRemove
2013-02-27 15:42:17,268 DEBUG Key SYSTEM\ControlSet001\services\avgrkx86 not found
2013-02-27 15:42:17,268 INFO Processing registry SYSTEM\ControlSet001\services\avgtdia
2013-02-27 15:42:17,268 DEBUG Key SYSTEM\ControlSet001\services\avgtdia ForceRemove
2013-02-27 15:42:17,268 DEBUG Key SYSTEM\ControlSet001\services\avgtdia not found
2013-02-27 15:42:17,268 INFO Processing registry SYSTEM\ControlSet001\services\avgtdix
2013-02-27 15:42:17,276 DEBUG Key SYSTEM\ControlSet001\services\avgtdix ForceRemove
2013-02-27 15:42:17,276 DEBUG Key SYSTEM\ControlSet001\services\avgtdix not found
2013-02-27 15:42:17,276 INFO Processing registry SYSTEM\ControlSet001\services\avgwd
2013-02-27 15:42:17,276 DEBUG Key SYSTEM\ControlSet001\services\avgwd ForceRemove
2013-02-27 15:42:17,276 DEBUG Key SYSTEM\ControlSet001\services\avgwd not found
2013-02-27 15:42:17,276 INFO Processing registry SYSTEM\ControlSet001\services\avgfwdx
2013-02-27 15:42:17,277 DEBUG Key SYSTEM\ControlSet001\services\avgfwdx ForceRemove
2013-02-27 15:42:17,277 DEBUG Key SYSTEM\ControlSet001\services\avgfwdx not found
2013-02-27 15:42:17,277 INFO Processing registry SYSTEM\ControlSet001\services\avgfwda
2013-02-27 15:42:17,277 DEBUG Key SYSTEM\ControlSet001\services\avgfwda ForceRemove
2013-02-27 15:42:17,277 DEBUG Key SYSTEM\ControlSet001\services\avgfwda not found
2013-02-27 15:42:17,277 INFO Processing registry SYSTEM\ControlSet001\services\avgwfpa
2013-02-27 15:42:17,285 DEBUG Key SYSTEM\ControlSet001\services\avgwfpa ForceRemove
2013-02-27 15:42:17,285 DEBUG Key SYSTEM\ControlSet001\services\avgwfpa not found
2013-02-27 15:42:17,285 INFO Processing registry SYSTEM\ControlSet001\services\avgwfpx
2013-02-27 15:42:17,286 DEBUG Key SYSTEM\ControlSet001\services\avgwfpx ForceRemove
2013-02-27 15:42:17,286 DEBUG Key SYSTEM\ControlSet001\services\avgwfpx not found
2013-02-27 15:42:17,286 INFO Processing registry SYSTEM\ControlSet002\services\Avg
2013-02-27 15:42:17,286 DEBUG Key SYSTEM\ControlSet002\services\Avg ForceRemove
2013-02-27 15:42:17,287 DEBUG Key SYSTEM\ControlSet002\services\Avg not found
2013-02-27 15:42:17,287 INFO Processing registry SYSTEM\ControlSet002\services\Avgfwfd
2013-02-27 15:42:17,287 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd ForceRemove
2013-02-27 15:42:17,287 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd not found
2013-02-27 15:42:17,287 INFO Processing registry SYSTEM\ControlSet002\services\AVG Security Toolbar Service
2013-02-27 15:42:17,295 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service ForceRemove
2013-02-27 15:42:17,295 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service not found
2013-02-27 15:42:17,295 INFO Processing registry SYSTEM\ControlSet002\services\Avgfws
2013-02-27 15:42:17,295 DEBUG Key SYSTEM\ControlSet002\services\Avgfws ForceRemove
2013-02-27 15:42:17,295 DEBUG Key SYSTEM\ControlSet002\services\Avgfws not found
2013-02-27 15:42:17,295 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSAgent
2013-02-27 15:42:17,296 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent ForceRemove
2013-02-27 15:42:17,296 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent not found
2013-02-27 15:42:17,296 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSDriver
2013-02-27 15:42:17,296 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver ForceRemove
2013-02-27 15:42:17,296 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver not found
2013-02-27 15:42:17,296 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSEH
2013-02-27 15:42:17,304 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH ForceRemove
2013-02-27 15:42:17,304 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH not found
2013-02-27 15:42:17,304 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSFilter
2013-02-27 15:42:17,304 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter ForceRemove
2013-02-27 15:42:17,305 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter not found
2013-02-27 15:42:17,305 INFO Processing registry SYSTEM\ControlSet002\services\avgldx64
2013-02-27 15:42:17,305 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 ForceRemove
2013-02-27 15:42:17,305 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 not found
2013-02-27 15:42:17,305 INFO Processing registry SYSTEM\ControlSet002\services\avgldx86
2013-02-27 15:42:17,305 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 ForceRemove
2013-02-27 15:42:17,306 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 not found
2013-02-27 15:42:17,306 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx64
2013-02-27 15:42:17,314 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 ForceRemove
2013-02-27 15:42:17,314 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 not found
2013-02-27 15:42:17,314 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx86
2013-02-27 15:42:17,315 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 ForceRemove
2013-02-27 15:42:17,315 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 not found
2013-02-27 15:42:17,315 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx64
2013-02-27 15:42:17,315 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 ForceRemove
2013-02-27 15:42:17,315 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 not found
2013-02-27 15:42:17,315 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx86
2013-02-27 15:42:17,316 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 ForceRemove
2013-02-27 15:42:17,316 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 not found
2013-02-27 15:42:17,316 INFO Processing registry SYSTEM\ControlSet002\services\avgtdia
2013-02-27 15:42:17,323 DEBUG Key SYSTEM\ControlSet002\services\avgtdia ForceRemove
2013-02-27 15:42:17,323 DEBUG Key SYSTEM\ControlSet002\services\avgtdia not found
2013-02-27 15:42:17,323 INFO Processing registry SYSTEM\ControlSet002\services\avgtdix
2013-02-27 15:42:17,323 DEBUG Key SYSTEM\ControlSet002\services\avgtdix ForceRemove
2013-02-27 15:42:17,323 DEBUG Key SYSTEM\ControlSet002\services\avgtdix not found
2013-02-27 15:42:17,323 INFO Processing registry SYSTEM\ControlSet002\services\avgwd
2013-02-27 15:42:17,324 DEBUG Key SYSTEM\ControlSet002\services\avgwd ForceRemove
2013-02-27 15:42:17,324 DEBUG Key SYSTEM\ControlSet002\services\avgwd not found
2013-02-27 15:42:17,324 INFO Processing registry SYSTEM\ControlSet002\services\avgfwdx
2013-02-27 15:42:17,324 DEBUG Key SYSTEM\ControlSet002\services\avgfwdx ForceRemove
2013-02-27 15:42:17,324 DEBUG Key SYSTEM\ControlSet002\services\avgfwdx not found
2013-02-27 15:42:17,324 INFO Processing registry SYSTEM\ControlSet002\services\avgfwda
2013-02-27 15:42:17,332 DEBUG Key SYSTEM\ControlSet002\services\avgfwda ForceRemove
2013-02-27 15:42:17,332 DEBUG Key SYSTEM\ControlSet002\services\avgfwda not found
2013-02-27 15:42:17,332 INFO Processing registry SYSTEM\ControlSet002\services\avgwfpa
2013-02-27 15:42:17,332 DEBUG Key SYSTEM\ControlSet002\services\avgwfpa ForceRemove
2013-02-27 15:42:17,333 DEBUG Key SYSTEM\ControlSet002\services\avgwfpa not found
2013-02-27 15:42:17,333 INFO Processing registry SYSTEM\ControlSet002\services\avgwfpx
2013-02-27 15:42:17,333 DEBUG Key SYSTEM\ControlSet002\services\avgwfpx ForceRemove
2013-02-27 15:42:17,333 DEBUG Key SYSTEM\ControlSet002\services\avgwfpx not found
2013-02-27 15:42:17,333 INFO Processing registry SYSTEM\ControlSet002\services\Avg
2013-02-27 15:42:17,334 DEBUG Key SYSTEM\ControlSet002\services\Avg ForceRemove
2013-02-27 15:42:17,334 DEBUG Key SYSTEM\ControlSet002\services\Avg not found
2013-02-27 15:42:17,334 INFO Processing registry SYSTEM\ControlSet002\services\Avgfwfd
2013-02-27 15:42:17,350 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd ForceRemove
2013-02-27 15:42:17,350 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd not found
2013-02-27 15:42:17,350 INFO Processing registry SYSTEM\ControlSet002\services\AVG Security Toolbar Service
2013-02-27 15:42:17,350 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service ForceRemove
2013-02-27 15:42:17,350 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service not found
2013-02-27 15:42:17,350 INFO Processing registry SYSTEM\ControlSet002\services\Avgfws
2013-02-27 15:42:17,351 DEBUG Key SYSTEM\ControlSet002\services\Avgfws ForceRemove
2013-02-27 15:42:17,351 DEBUG Key SYSTEM\ControlSet002\services\Avgfws not found
2013-02-27 15:42:17,351 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSAgent
2013-02-27 15:42:17,351 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent ForceRemove
2013-02-27 15:42:17,351 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent not found
2013-02-27 15:42:17,351 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSDriver
2013-02-27 15:42:17,352 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver ForceRemove
2013-02-27 15:42:17,352 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver not found
2013-02-27 15:42:17,352 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSEH
2013-02-27 15:42:17,352 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH ForceRemove
2013-02-27 15:42:17,352 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH not found
2013-02-27 15:42:17,352 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSFilter
2013-02-27 15:42:17,353 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter ForceRemove
2013-02-27 15:42:17,353 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter not found
2013-02-27 15:42:17,353 INFO Processing registry SYSTEM\ControlSet002\services\avgldx64
2013-02-27 15:42:17,353 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 ForceRemove
2013-02-27 15:42:17,353 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 not found
2013-02-27 15:42:17,353 INFO Processing registry SYSTEM\ControlSet002\services\avgldx86
2013-02-27 15:42:17,358 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 ForceRemove
2013-02-27 15:42:17,358 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 not found
2013-02-27 15:42:17,358 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx64
2013-02-27 15:42:17,359 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 ForceRemove
2013-02-27 15:42:17,359 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 not found
2013-02-27 15:42:17,359 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx86
2013-02-27 15:42:17,359 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 ForceRemove
2013-02-27 15:42:17,359 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 not found
2013-02-27 15:42:17,359 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx64
2013-02-27 15:42:17,359 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 ForceRemove
2013-02-27 15:42:17,360 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 not found
2013-02-27 15:42:17,360 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx86
2013-02-27 15:42:17,369 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 ForceRemove
2013-02-27 15:42:17,369 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 not found
2013-02-27 15:42:17,369 INFO Processing registry SYSTEM\ControlSet002\services\avgtdia
2013-02-27 15:42:17,369 DEBUG Key SYSTEM\ControlSet002\services\avgtdia ForceRemove
2013-02-27 15:42:17,369 DEBUG Key SYSTEM\ControlSet002\services\avgtdia not found
2013-02-27 15:42:17,369 INFO Processing registry SYSTEM\ControlSet002\services\avgtdix
2013-02-27 15:42:17,370 DEBUG Key SYSTEM\ControlSet002\services\avgtdix ForceRemove
2013-02-27 15:42:17,370 DEBUG Key SYSTEM\ControlSet002\services\avgtdix not found
2013-02-27 15:42:17,370 INFO Processing registry SYSTEM\ControlSet002\services\avgwd
2013-02-27 15:42:17,370 DEBUG Key SYSTEM\ControlSet002\services\avgwd ForceRemove
2013-02-27 15:42:17,370 DEBUG Key SYSTEM\ControlSet002\services\avgwd not found
2013-02-27 15:42:17,370 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGFWS
2013-02-27 15:42:17,378 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGFWS ForceRemove
2013-02-27 15:42:17,378 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGFWS not found
2013-02-27 15:42:17,378 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSAGENT
2013-02-27 15:42:17,379 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSAGENT ForceRemove
2013-02-27 15:42:17,379 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSAGENT not found
2013-02-27 15:42:17,379 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVER
2013-02-27 15:42:17,379 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVER ForceRemove
2013-02-27 15:42:17,380 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVER not found
2013-02-27 15:42:17,380 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSEH
2013-02-27 15:42:17,380 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSEH ForceRemove
2013-02-27 15:42:17,380 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSEH not found
2013-02-27 15:42:17,380 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSFILTER
2013-02-27 15:42:17,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSFILTER ForceRemove
2013-02-27 15:42:17,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSFILTER not found
2013-02-27 15:42:17,387 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIM
2013-02-27 15:42:17,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIM ForceRemove
2013-02-27 15:42:17,388 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIM not found
2013-02-27 15:42:17,388 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX86
2013-02-27 15:42:17,388 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX86 ForceRemove
2013-02-27 15:42:17,388 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX86 not found
2013-02-27 15:42:17,388 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX86
2013-02-27 15:42:17,389 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX86 ForceRemove
2013-02-27 15:42:17,389 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX86 not found
2013-02-27 15:42:17,389 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX86
2013-02-27 15:42:17,395 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX86 ForceRemove
2013-02-27 15:42:17,395 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX86 not found
2013-02-27 15:42:17,395 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX64
2013-02-27 15:42:17,396 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX64 ForceRemove
2013-02-27 15:42:17,396 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX64 not found
2013-02-27 15:42:17,396 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX64
2013-02-27 15:42:17,396 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX64 ForceRemove
2013-02-27 15:42:17,397 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX64 not found
2013-02-27 15:42:17,397 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX64
2013-02-27 15:42:17,397 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX64 ForceRemove
2013-02-27 15:42:17,397 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX64 not found
2013-02-27 15:42:17,397 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIX
2013-02-27 15:42:17,404 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIX ForceRemove
2013-02-27 15:42:17,404 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIX not found
2013-02-27 15:42:17,404 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIA
2013-02-27 15:42:17,404 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIA ForceRemove
2013-02-27 15:42:17,404 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIA not found
2013-02-27 15:42:17,404 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWD
2013-02-27 15:42:17,405 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWD ForceRemove
2013-02-27 15:42:17,405 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWD not found
2013-02-27 15:42:17,405 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG9WD
2013-02-27 15:42:17,405 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG9WD ForceRemove
2013-02-27 15:42:17,405 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG9WD not found
2013-02-27 15:42:17,405 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVERXPX
2013-02-27 15:42:17,422 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVERXPX ForceRemove
2013-02-27 15:42:17,422 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVERXPX not found
2013-02-27 15:42:17,422 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSERHRXPX
2013-02-27 15:42:17,423 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSERHRXPX ForceRemove
2013-02-27 15:42:17,423 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSERHRXPX not found
2013-02-27 15:42:17,423 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIMXPX
2013-02-27 15:42:17,423 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIMXPX ForceRemove
2013-02-27 15:42:17,423 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIMXPX not found
2013-02-27 15:42:17,423 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWFPX
2013-02-27 15:42:17,424 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWFPX ForceRemove
2013-02-27 15:42:17,424 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWFPX not found
2013-02-27 15:42:17,424 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWFPA
2013-02-27 15:42:17,424 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWFPA ForceRemove
2013-02-27 15:42:17,424 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWFPA not found
2013-02-27 15:42:17,424 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGFWS
2013-02-27 15:42:17,425 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGFWS ForceRemove
2013-02-27 15:42:17,425 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGFWS not found
2013-02-27 15:42:17,425 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSAGENT
2013-02-27 15:42:17,425 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSAGENT ForceRemove
2013-02-27 15:42:17,425 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSAGENT not found
2013-02-27 15:42:17,425 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVER
2013-02-27 15:42:17,426 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVER ForceRemove
2013-02-27 15:42:17,426 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVER not found
2013-02-27 15:42:17,426 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSEH
2013-02-27 15:42:17,433 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSEH ForceRemove
2013-02-27 15:42:17,433 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSEH not found
2013-02-27 15:42:17,433 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSFILTER
2013-02-27 15:42:17,433 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSFILTER ForceRemove
2013-02-27 15:42:17,434 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSFILTER not found
2013-02-27 15:42:17,434 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIM
2013-02-27 15:42:17,434 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIM ForceRemove
2013-02-27 15:42:17,434 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIM not found
2013-02-27 15:42:17,434 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX86
2013-02-27 15:42:17,434 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX86 ForceRemove
2013-02-27 15:42:17,435 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX86 not found
2013-02-27 15:42:17,435 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX86
2013-02-27 15:42:17,441 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX86 ForceRemove
2013-02-27 15:42:17,441 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX86 not found
2013-02-27 15:42:17,441 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX86
2013-02-27 15:42:17,442 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX86 ForceRemove
2013-02-27 15:42:17,442 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX86 not found
2013-02-27 15:42:17,442 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX64
2013-02-27 15:42:17,442 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX64 ForceRemove
2013-02-27 15:42:17,443 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX64 not found
2013-02-27 15:42:17,443 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX64
2013-02-27 15:42:17,443 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX64 ForceRemove
2013-02-27 15:42:17,443 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX64 not found
2013-02-27 15:42:17,443 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX64
2013-02-27 15:42:17,450 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX64 ForceRemove
2013-02-27 15:42:17,451 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX64 not found
2013-02-27 15:42:17,451 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIX
2013-02-27 15:42:17,451 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIX ForceRemove
2013-02-27 15:42:17,451 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIX not found
2013-02-27 15:42:17,451 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIA
2013-02-27 15:42:17,451 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIA ForceRemove
2013-02-27 15:42:17,452 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIA not found
2013-02-27 15:42:17,452 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWD
2013-02-27 15:42:17,452 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWD ForceRemove
2013-02-27 15:42:17,452 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWD not found
2013-02-27 15:42:17,452 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG9WD
2013-02-27 15:42:17,458 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG9WD ForceRemove
2013-02-27 15:42:17,459 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG9WD not found
2013-02-27 15:42:17,459 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVERXPX
2013-02-27 15:42:17,459 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVERXPX ForceRemove
2013-02-27 15:42:17,459 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVERXPX not found
2013-02-27 15:42:17,459 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSERHRXPX
2013-02-27 15:42:17,460 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSERHRXPX ForceRemove
2013-02-27 15:42:17,460 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSERHRXPX not found
2013-02-27 15:42:17,460 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIMXPX
2013-02-27 15:42:17,460 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIMXPX ForceRemove
2013-02-27 15:42:17,460 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIMXPX not found
2013-02-27 15:42:17,460 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWFPX
2013-02-27 15:42:17,467 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWFPX ForceRemove
2013-02-27 15:42:17,467 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWFPX not found
2013-02-27 15:42:17,467 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWFPA
2013-02-27 15:42:17,468 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWFPA ForceRemove
2013-02-27 15:42:17,468 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWFPA not found
2013-02-27 15:42:17,468 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGFWS
2013-02-27 15:42:17,468 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGFWS ForceRemove
2013-02-27 15:42:17,469 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGFWS not found
2013-02-27 15:42:17,469 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSAGENT
2013-02-27 15:42:17,469 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSAGENT ForceRemove
2013-02-27 15:42:17,469 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSAGENT not found
2013-02-27 15:42:17,469 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVER
2013-02-27 15:42:17,476 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVER ForceRemove
2013-02-27 15:42:17,476 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVER not found
2013-02-27 15:42:17,476 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSEH
2013-02-27 15:42:17,476 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSEH ForceRemove
2013-02-27 15:42:17,476 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSEH not found
2013-02-27 15:42:17,476 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSFILTER
2013-02-27 15:42:17,477 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSFILTER ForceRemove
2013-02-27 15:42:17,477 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSFILTER not found
2013-02-27 15:42:17,477 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIM
2013-02-27 15:42:17,477 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIM ForceRemove
2013-02-27 15:42:17,477 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIM not found
2013-02-27 15:42:17,477 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX86
2013-02-27 15:42:17,485 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX86 ForceRemove
2013-02-27 15:42:17,485 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX86 not found
2013-02-27 15:42:17,485 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX86
2013-02-27 15:42:17,485 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX86 ForceRemove
2013-02-27 15:42:17,486 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX86 not found
2013-02-27 15:42:17,486 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX86
2013-02-27 15:42:17,486 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX86 ForceRemove
2013-02-27 15:42:17,486 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX86 not found
2013-02-27 15:42:17,486 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX64
2013-02-27 15:42:17,487 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX64 ForceRemove
2013-02-27 15:42:17,487 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX64 not found
2013-02-27 15:42:17,487 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX64
2013-02-27 15:42:17,503 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX64 ForceRemove
2013-02-27 15:42:17,503 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX64 not found
2013-02-27 15:42:17,503 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX64
2013-02-27 15:42:17,503 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX64 ForceRemove
2013-02-27 15:42:17,504 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX64 not found
2013-02-27 15:42:17,504 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIX
2013-02-27 15:42:17,504 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIX ForceRemove
2013-02-27 15:42:17,504 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIX not found
2013-02-27 15:42:17,504 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIA
2013-02-27 15:42:17,504 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIA ForceRemove
2013-02-27 15:42:17,504 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIA not found
2013-02-27 15:42:17,504 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWD
2013-02-27 15:42:17,505 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWD ForceRemove
2013-02-27 15:42:17,505 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWD not found
2013-02-27 15:42:17,505 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVG9WD
2013-02-27 15:42:17,505 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVG9WD ForceRemove
2013-02-27 15:42:17,506 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVG9WD not found
2013-02-27 15:42:17,506 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVERXPX
2013-02-27 15:42:17,506 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVERXPX ForceRemove
2013-02-27 15:42:17,506 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVERXPX not found
2013-02-27 15:42:17,506 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSERHRXPX
2013-02-27 15:42:17,507 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSERHRXPX ForceRemove
2013-02-27 15:42:17,507 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSERHRXPX not found
2013-02-27 15:42:17,507 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIMXPX
2013-02-27 15:42:17,513 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIMXPX ForceRemove
2013-02-27 15:42:17,514 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIMXPX not found
2013-02-27 15:42:17,514 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWFPX
2013-02-27 15:42:17,514 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWFPX ForceRemove
2013-02-27 15:42:17,514 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWFPX not found
2013-02-27 15:42:17,514 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWFPA
2013-02-27 15:42:17,514 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWFPA ForceRemove
2013-02-27 15:42:17,515 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWFPA not found
2013-02-27 15:42:17,515 INFO Processing registry SOFTWARE\AVG\Clients
2013-02-27 15:42:17,515 DEBUG Key SOFTWARE\AVG\Clients ForceRemove
2013-02-27 15:42:17,515 DEBUG Key SOFTWARE\AVG\Clients not found
2013-02-27 15:42:17,515 INFO Processing registry SOFTWARE\AVG\AVG8
2013-02-27 15:42:17,516 DEBUG Key SOFTWARE\AVG\AVG8 ForceRemove
2013-02-27 15:42:17,516 DEBUG Key SOFTWARE\AVG\AVG8 not found
2013-02-27 15:42:17,516 INFO Processing registry SOFTWARE\AVG\AVG9
2013-02-27 15:42:17,516 DEBUG Key SOFTWARE\AVG\AVG9 ForceRemove
2013-02-27 15:42:17,516 DEBUG Key SOFTWARE\AVG\AVG9 not found
2013-02-27 15:42:17,516 INFO Processing registry SOFTWARE\AVG\AVG10
2013-02-27 15:42:17,522 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
2013-02-27 15:42:17,522 DEBUG Key SOFTWARE\AVG\AVG10 not found
2013-02-27 15:42:17,522 INFO Processing registry SOFTWARE\AVG\AVG10
2013-02-27 15:42:17,522 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
2013-02-27 15:42:17,522 DEBUG Key SOFTWARE\AVG\AVG10 not found
2013-02-27 15:42:17,522 INFO Processing registry SOFTWARE\AVG\AVG2012
2013-02-27 15:42:17,523 DEBUG Key SOFTWARE\AVG\AVG2012 ForceRemove
2013-02-27 15:42:17,523 DEBUG Key SOFTWARE\AVG\AVG2012 not found
2013-02-27 15:42:17,523 INFO Processing registry SOFTWARE\AVG\AVG2012
2013-02-27 15:42:17,523 DEBUG Key SOFTWARE\AVG\AVG2012 ForceRemove
2013-02-27 15:42:17,523 DEBUG Key SOFTWARE\AVG\AVG2012 not found
2013-02-27 15:42:17,523 INFO Processing registry SOFTWARE\AVG\AVG2013
2013-02-27 15:42:17,524 DEBUG Key SOFTWARE\AVG\AVG2013 ForceRemove
2013-02-27 15:42:17,524 DEBUG Key SOFTWARE\AVG\AVG2013 not found
2013-02-27 15:42:17,524 INFO Processing registry SOFTWARE\AVG\AVG2013
2013-02-27 15:42:17,524 DEBUG Key SOFTWARE\AVG\AVG2013 ForceRemove
2013-02-27 15:42:17,524 DEBUG Key SOFTWARE\AVG\AVG2013 not found
2013-02-27 15:42:17,524 INFO Processing registry SOFTWARE\AVG\AVG IDS
2013-02-27 15:42:17,525 DEBUG Key SOFTWARE\AVG\AVG IDS ForceRemove
2013-02-27 15:42:17,525 DEBUG Key SOFTWARE\AVG\AVG IDS not found
2013-02-27 15:42:17,525 INFO Processing registry SOFTWARE\AVG\AVG IDS
2013-02-27 15:42:17,525 DEBUG Key SOFTWARE\AVG\AVG IDS ForceRemove
2013-02-27 15:42:17,525 DEBUG Key SOFTWARE\AVG\AVG IDS not found
2013-02-27 15:42:17,525 INFO Processing registry SOFTWARE\AVG
2013-02-27 15:42:17,532 DEBUG Value SOFTWARE\AVG:DumpType Remove
2013-02-27 15:42:17,533 DEBUG Value SOFTWARE\AVG:DumpType not present - Key not found
2013-02-27 15:42:17,533 INFO Processing registry SOFTWARE\AVG
2013-02-27 15:42:17,533 DEBUG Key SOFTWARE\AVG Remove
2013-02-27 15:42:17,533 DEBUG Key SOFTWARE\AVG not found
2013-02-27 15:42:17,533 INFO Processing registry SOFTWARE\AVG
2013-02-27 15:42:17,533 DEBUG Key SOFTWARE\AVG Remove
2013-02-27 15:42:17,534 DEBUG Key SOFTWARE\AVG not found
2013-02-27 15:42:17,534 INFO Processing registry SOFTWARE\AVG Security Toolbar
2013-02-27 15:42:17,534 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
2013-02-27 15:42:17,534 DEBUG Key SOFTWARE\AVG Security Toolbar not found
2013-02-27 15:42:17,534 INFO Processing registry SOFTWARE\AVG Security Toolbar
2013-02-27 15:42:17,534 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
2013-02-27 15:42:17,535 DEBUG Key SOFTWARE\AVG Security Toolbar not found
2013-02-27 15:42:17,535 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG
2013-02-27 15:42:17,535 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG ForceRemove
2013-02-27 15:42:17,535 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG not found
2013-02-27 15:42:17,535 INFO Processing registry SOFTWARE\AVG Secure Search
2013-02-27 15:42:17,535 DEBUG Key SOFTWARE\AVG Secure Search ForceRemove
2013-02-27 15:42:17,536 DEBUG Key SOFTWARE\AVG Secure Search not found
2013-02-27 15:42:17,536 INFO Processing registry SOFTWARE\AVG Secure Search
2013-02-27 15:42:17,541 DEBUG Key SOFTWARE\AVG Secure Search ForceRemove
2013-02-27 15:42:17,541 DEBUG Key SOFTWARE\AVG Secure Search not found
2013-02-27 15:42:17,541 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
2013-02-27 15:42:17,542 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
2013-02-27 15:42:17,542 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
2013-02-27 15:42:17,542 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
2013-02-27 15:42:17,542 INFO Processing registry SOFTWARE\Classes\AppIDvgdtie.DLL
2013-02-27 15:42:17,543 DEBUG Key SOFTWARE\Classes\AppIDvgdtie.DLL ForceRemove
2013-02-27 15:42:17,543 DEBUG Key SOFTWARE\Classes\AppIDvgdtie.DLL not found
2013-02-27 15:42:17,543 INFO Processing registry SOFTWARE\Classes\AppID\avgdtie.DLL
2013-02-27 15:42:17,552 DEBUG Key SOFTWARE\Classes\AppID\avgdtie.DLL ForceRemove
2013-02-27 15:42:17,552 DEBUG Key SOFTWARE\Classes\AppID\avgdtie.DLL not found
2013-02-27 15:42:17,552 INFO Processing registry SOFTWARE\Classes\avgdtie.DoNotTrackBHO
2013-02-27 15:42:17,553 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO ForceRemove
2013-02-27 15:42:17,553 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO not found
2013-02-27 15:42:17,553 INFO Processing registry SOFTWARE\Classes\avgdtie.DoNotTrackBHO
2013-02-27 15:42:17,553 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO ForceRemove
2013-02-27 15:42:17,553 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO not found
2013-02-27 15:42:17,553 INFO Processing registry SOFTWARE\Classes\avgdtie.DoNotTrackBHO.1
2013-02-27 15:42:17,553 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO.1 ForceRemove
2013-02-27 15:42:17,554 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO.1 not found
2013-02-27 15:42:17,554 INFO Processing registry SOFTWARE\Classes\avgdtie.DoNotTrackBHO.1
2013-02-27 15:42:17,571 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO.1 ForceRemove
2013-02-27 15:42:17,571 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackBHO.1 not found
2013-02-27 15:42:17,571 INFO Processing registry SOFTWARE\Classes\avgdtie.DoNotTrackButton
2013-02-27 15:42:17,571 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackButton ForceRemove
2013-02-27 15:42:17,572 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackButton not found
2013-02-27 15:42:17,572 INFO Processing registry SOFTWARE\Classes\avgdtie.DoNotTrackButton
2013-02-27 15:42:17,572 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackButton ForceRemove
2013-02-27 15:42:17,572 DEBUG Key SOFTWARE\Classes\avgdtie.DoNotTrackButton not found
2013-02-27 15:42:17,572 INFO Processing registry SOFTWARE\Classes\CLSID\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16}
2013-02-27 15:42:17,572 DEBUG Key SOFTWARE\Classes\CLSID\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} ForceRemove
2013-02-27 15:42:17,572 DEBUG Key SOFTWARE\Classes\CLSID\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} not found
2013-02-27 15:42:17,572 INFO Processing registry SOFTWARE\Classes\CLSID\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16}
2013-02-27 15:42:17,572 DEBUG Key SOFTWARE\Classes\CLSID\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} ForceRemove
2013-02-27 15:42:17,572 DEBUG Key SOFTWARE\Classes\CLSID\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} not found
2013-02-27 15:42:17,572 INFO Processing registry SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}
2013-02-27 15:42:17,573 DEBUG Key SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} ForceRemove
2013-02-27 15:42:17,573 DEBUG Key SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} not found
2013-02-27 15:42:17,573 INFO Processing registry SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}
2013-02-27 15:42:17,573 DEBUG Key SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} ForceRemove
2013-02-27 15:42:17,573 DEBUG Key SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} not found
2013-02-27 15:42:17,573 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Extensions\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16}
2013-02-27 15:42:17,573 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extensions\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} ForceRemove
2013-02-27 15:42:17,573 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extensions\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} not found
2013-02-27 15:42:17,573 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Extensions\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16}
2013-02-27 15:42:17,581 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extensions\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} ForceRemove
2013-02-27 15:42:17,581 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extensions\{68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} not found
2013-02-27 15:42:17,581 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
2013-02-27 15:42:17,581 DEBUG Key SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI ForceRemove
2013-02-27 15:42:17,581 DEBUG Key SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI not found
2013-02-27 15:42:17,581 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
2013-02-27 15:42:17,581 DEBUG Key SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI ForceRemove
2013-02-27 15:42:17,581 DEBUG Key SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI not found
2013-02-27 15:42:17,581 INFO Processing registry SOFTWARE\ClassesAVG Secure Search.BrowserWndAPI.1
2013-02-27 15:42:17,582 DEBUG Key SOFTWARE\ClassesAVG Secure Search.BrowserWndAPI.1 ForceRemove
2013-02-27 15:42:17,582 DEBUG Key SOFTWARE\ClassesAVG Secure Search.BrowserWndAPI.1 not found
2013-02-27 15:42:17,582 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
2013-02-27 15:42:17,589 DEBUG Key SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1 ForceRemove
2013-02-27 15:42:17,590 DEBUG Key SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1 not found
2013-02-27 15:42:17,590 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.PugiObj
2013-02-27 15:42:17,590 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj ForceRemove
2013-02-27 15:42:17,590 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj not found
2013-02-27 15:42:17,590 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.PugiObj
2013-02-27 15:42:17,591 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj ForceRemove
2013-02-27 15:42:17,591 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj not found
2013-02-27 15:42:17,591 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.PugiObj.1
2013-02-27 15:42:17,591 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 ForceRemove
2013-02-27 15:42:17,591 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 not found
2013-02-27 15:42:17,591 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.PugiObj.1
2013-02-27 15:42:17,599 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 ForceRemove
2013-02-27 15:42:17,599 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 not found
2013-02-27 15:42:17,599 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.PugiObj.1
2013-02-27 15:42:17,599 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 ForceRemove
2013-02-27 15:42:17,600 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 not found
2013-02-27 15:42:17,600 INFO Processing registry SOFTWARE\Classes\AVG Secure Search.PugiObj.1
2013-02-27 15:42:17,600 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 ForceRemove
2013-02-27 15:42:17,600 DEBUG Key SOFTWARE\Classes\AVG Secure Search.PugiObj.1 not found
2013-02-27 15:42:17,600 INFO Processing registry SOFTWARE\ClassesCLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
2013-02-27 15:42:17,600 DEBUG Key SOFTWARE\ClassesCLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} ForceRemove
2013-02-27 15:42:17,601 DEBUG Key SOFTWARE\ClassesCLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} not found
2013-02-27 15:42:17,601 INFO Processing registry SOFTWARE\AVG\AVG8
2013-02-27 15:42:17,601 DEBUG Key SOFTWARE\AVG\AVG8 ForceRemove
2013-02-27 15:42:17,601 DEBUG Key SOFTWARE\AVG\AVG8 not found
2013-02-27 15:42:17,601 INFO Processing registry SOFTWARE\AVG\AVG9
2013-02-27 15:42:17,608 DEBUG Key SOFTWARE\AVG\AVG9 ForceRemove
2013-02-27 15:42:17,608 DEBUG Key SOFTWARE\AVG\AVG9 not found
2013-02-27 15:42:17,608 INFO Processing registry SOFTWARE\AVG\AVG10
2013-02-27 15:42:17,609 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
2013-02-27 15:42:17,609 DEBUG Key SOFTWARE\AVG\AVG10 not found
2013-02-27 15:42:17,609 INFO Processing registry SOFTWARE\AVG\AVG10
2013-02-27 15:42:17,609 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
2013-02-27 15:42:17,609 DEBUG Key SOFTWARE\AVG\AVG10 not found
2013-02-27 15:42:17,609 INFO Processing registry SOFTWARE\AVG\AVG2012
2013-02-27 15:42:17,609 DEBUG Key SOFTWARE\AVG\AVG2012 ForceRemove
2013-02-27 15:42:17,609 DEBUG Key SOFTWARE\AVG\AVG2012 not found
2013-02-27 15:42:17,609 INFO Processing registry SOFTWARE\AVG\AVG2012
2013-02-27 15:42:17,610 DEBUG Key SOFTWARE\AVG\AVG2012 ForceRemove
2013-02-27 15:42:17,610 DEBUG Key SOFTWARE\AVG\AVG2012 not found
2013-02-27 15:42:17,610 INFO Processing registry Software\Avg\Avg2013\Avgdiag
2013-02-27 15:42:17,610 DEBUG Key Software\Avg\Avg2013\Avgdiag ForceRemove
2013-02-27 15:42:17,610 DEBUG Key Software\Avg\Avg2013\Avgdiag not found
2013-02-27 15:42:17,610 INFO Processing registry Software\Avg\Avg2013\Avgdiag\Dialogs\Windows\FwSettings
2013-02-27 15:42:17,610 DEBUG Key Software\Avg\Avg2013\Avgdiag\Dialogs\Windows\FwSettings ForceRemove
2013-02-27 15:42:17,611 DEBUG Key Software\Avg\Avg2013\Avgdiag\Dialogs\Windows\FwSettings not found
2013-02-27 15:42:17,611 INFO Processing registry Software\Avg\Avg2013\Avgdiag\Dialogs\Windows
2013-02-27 15:42:17,618 DEBUG Key Software\Avg\Avg2013\Avgdiag\Dialogs\Windows ForceRemove
2013-02-27 15:42:17,619 DEBUG Key Software\Avg\Avg2013\Avgdiag\Dialogs\Windows not found
2013-02-27 15:42:17,619 INFO Processing registry Software\Avg\Avg2013\Avgdiag\Dialogs
2013-02-27 15:42:17,619 DEBUG Key Software\Avg\Avg2013\Avgdiag\Dialogs ForceRemove
2013-02-27 15:42:17,619 DEBUG Key Software\Avg\Avg2013\Avgdiag\Dialogs not found
2013-02-27 15:42:17,619 INFO Processing registry Software\Avg\Avg2013\Avgdiag
2013-02-27 15:42:17,619 DEBUG Key Software\Avg\Avg2013\Avgdiag ForceRemove
2013-02-27 15:42:17,619 DEBUG Key Software\Avg\Avg2013\Avgdiag not found
2013-02-27 15:42:17,619 INFO Processing registry SOFTWARE\AVG\AVG2013\Avgdiag
2013-02-27 15:42:17,620 DEBUG Key SOFTWARE\AVG\AVG2013\Avgdiag ForceRemove
2013-02-27 15:42:17,620 DEBUG Key SOFTWARE\AVG\AVG2013\Avgdiag not found
2013-02-27 15:42:17,620 INFO Processing registry SOFTWARE\AVG\AVG2013\Avgdiag
2013-02-27 15:42:17,620 DEBUG Key SOFTWARE\AVG\AVG2013\Avgdiag ForceRemove
2013-02-27 15:42:17,620 DEBUG Key SOFTWARE\AVG\AVG2013\Avgdiag not found
2013-02-27 15:42:17,620 INFO Processing registry SOFTWARE\AVG\AVG2013
2013-02-27 15:42:17,621 DEBUG Key SOFTWARE\AVG\AVG2013 ForceRemove
2013-02-27 15:42:17,621 DEBUG Key SOFTWARE\AVG\AVG2013 not found
2013-02-27 15:42:17,621 INFO Processing registry SOFTWARE\AVG\AVG2013
2013-02-27 15:42:17,638 DEBUG Key SOFTWARE\AVG\AVG2013 ForceRemove
2013-02-27 15:42:17,638 DEBUG Key SOFTWARE\AVG\AVG2013 not found
2013-02-27 15:42:17,638 INFO Processing registry SOFTWARE\AVG
2013-02-27 15:42:17,639 DEBUG Key SOFTWARE\AVG Remove
2013-02-27 15:42:17,639 DEBUG Key SOFTWARE\AVG not found
2013-02-27 15:42:17,639 INFO Processing registry SOFTWARE\AVG
2013-02-27 15:42:17,639 DEBUG Key SOFTWARE\AVG Remove
2013-02-27 15:42:17,639 DEBUG Key SOFTWARE\AVG not found
2013-02-27 15:42:17,639 INFO Processing registry SOFTWARE\AVG Security Toolbar
2013-02-27 15:42:17,640 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
2013-02-27 15:42:17,640 DEBUG Key SOFTWARE\AVG Security Toolbar not found
2013-02-27 15:42:17,640 INFO Processing registry SOFTWARE\AVG Security Toolbar
2013-02-27 15:42:17,640 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
2013-02-27 15:42:17,640 DEBUG Key SOFTWARE\AVG Security Toolbar not found
2013-02-27 15:42:17,640 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks
2013-02-27 15:42:17,641 DEBUG Value SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks:{A3BC75A2-1F87-4686-AA43-5347D756017C} Remove
2013-02-27 15:42:17,641 INFO Value SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks:{A3BC75A2-1F87-4686-AA43-5347D756017C} is not present
2013-02-27 15:42:17,641 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
2013-02-27 15:42:17,642 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
2013-02-27 15:42:17,642 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
2013-02-27 15:42:17,642 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B206F26B-E6D1-43A0-8CF7-D3943147F867}
2013-02-27 15:42:17,642 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B206F26B-E6D1-43A0-8CF7-D3943147F867} ForceRemove
2013-02-27 15:42:17,642 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B206F26B-E6D1-43A0-8CF7-D3943147F867} not found
2013-02-27 15:42:17,642 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser
2013-02-27 15:42:17,643 DEBUG Value SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} Remove
2013-02-27 15:42:17,643 INFO Value SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} is not present
2013-02-27 15:42:17,649 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
2013-02-27 15:42:17,649 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
2013-02-27 15:42:17,650 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
2013-02-27 15:42:17,650 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3BC75A2-1F87-4686-AA43-5347D756017C}
2013-02-27 15:42:17,650 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3BC75A2-1F87-4686-AA43-5347D756017C} ForceRemove
2013-02-27 15:42:17,650 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found
2013-02-27 15:42:17,650 INFO Processing registry SOFTWARE\AppDataLow\Avg
2013-02-27 15:42:17,651 DEBUG Key SOFTWARE\AppDataLow\Avg ForceRemove
2013-02-27 15:42:17,651 DEBUG Key SOFTWARE\AppDataLow\Avg not found
2013-02-27 15:42:17,651 INFO Processing registry SOFTWARE\AppDataLow\Software\AVG Security Toolbar
2013-02-27 15:42:17,651 DEBUG Key SOFTWARE\AppDataLow\Software\AVG Security Toolbar ForceRemove
2013-02-27 15:42:17,651 DEBUG Key SOFTWARE\AppDataLow\Software\AVG Security Toolbar not found
2013-02-27 15:42:17,651 INFO Processing registry SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb\command
2013-02-27 15:42:17,657 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb\command ForceRemove
2013-02-27 15:42:17,658 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb\command not found
2013-02-27 15:42:17,658 INFO Processing registry SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb
2013-02-27 15:42:17,658 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb ForceRemove
2013-02-27 15:42:17,658 DEBUG Key SOFTWARE\Classes\.avgdi\shell\AvgDxOpenVerb not found
2013-02-27 15:42:17,658 INFO Processing registry SOFTWARE\Classes\.avgdi\shell
2013-02-27 15:42:17,658 DEBUG Key SOFTWARE\Classes\.avgdi\shell ForceRemove
2013-02-27 15:42:17,659 DEBUG Key SOFTWARE\Classes\.avgdi\shell not found
2013-02-27 15:42:17,659 INFO Processing registry SOFTWARE\Classes\.avgdi
2013-02-27 15:42:17,659 DEBUG Key SOFTWARE\Classes\.avgdi ForceRemove
2013-02-27 15:42:17,659 DEBUG Key SOFTWARE\Classes\.avgdi not found
2013-02-27 15:42:17,659 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
2013-02-27 15:42:17,660 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
2013-02-27 15:42:17,660 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} not found
2013-02-27 15:42:17,660 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
2013-02-27 15:42:17,667 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
2013-02-27 15:42:17,667 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} not found
2013-02-27 15:42:17,667 INFO Processing registry SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_FF
2013-02-27 15:42:17,668 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_FF ForceRemove
2013-02-27 15:42:17,668 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_FF not found
2013-02-27 15:42:17,668 INFO Processing registry SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_IE
2013-02-27 15:42:17,668 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_IE ForceRemove
2013-02-27 15:42:17,668 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_IE not found
2013-02-27 15:42:17,668 INFO Processing registry SOFTWARE\AVG Secure Search\IGearSettings
2013-02-27 15:42:17,669 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings ForceRemove
2013-02-27 15:42:17,669 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings not found
2013-02-27 15:42:17,669 INFO Processing registry SOFTWARE\AVG Secure Search\SiteSafety\Url
2013-02-27 15:42:17,684 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety\Url ForceRemove
2013-02-27 15:42:17,684 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety\Url not found
2013-02-27 15:42:17,684 INFO Processing registry SOFTWARE\AVG Secure Search\SiteSafety
2013-02-27 15:42:17,685 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety ForceRemove
2013-02-27 15:42:17,685 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety not found
2013-02-27 15:42:17,685 INFO Processing registry SOFTWARE\AVG Secure Search
2013-02-27 15:42:17,685 DEBUG Key SOFTWARE\AVG Secure Search ForceRemove
2013-02-27 15:42:17,685 DEBUG Key SOFTWARE\AVG Secure Search not found
2013-02-27 15:42:17,685 INFO Processing registry SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_FF
2013-02-27 15:42:17,686 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_FF ForceRemove
2013-02-27 15:42:17,686 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_FF not found
2013-02-27 15:42:17,686 INFO Processing registry SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_IE
2013-02-27 15:42:17,686 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_IE ForceRemove
2013-02-27 15:42:17,686 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings\IGEAR_BROWSER_IE not found
2013-02-27 15:42:17,686 INFO Processing registry SOFTWARE\AVG Secure Search\IGearSettings
2013-02-27 15:42:17,687 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings ForceRemove
2013-02-27 15:42:17,687 DEBUG Key SOFTWARE\AVG Secure Search\IGearSettings not found
2013-02-27 15:42:17,687 INFO Processing registry SOFTWARE\AVG Secure Search\SiteSafety\Url
2013-02-27 15:42:17,687 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety\Url ForceRemove
2013-02-27 15:42:17,688 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety\Url not found
2013-02-27 15:42:17,688 INFO Processing registry SOFTWARE\AVG Secure Search\SiteSafety
2013-02-27 15:42:17,688 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety ForceRemove
2013-02-27 15:42:17,688 DEBUG Key SOFTWARE\AVG Secure Search\SiteSafety not found
2013-02-27 15:42:17,688 INFO Processing registry SOFTWARE\AVG Secure Search
2013-02-27 15:42:17,688 DEBUG Key SOFTWARE\AVG Secure Search ForceRemove
2013-02-27 15:42:17,689 DEBUG Key SOFTWARE\AVG Secure Search not found
2013-02-27 15:42:17,689 INFO Processing registry Folder\shellex\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,693 DEBUG Key Folder\shellex\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,693 DEBUG Key Folder\shellex\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,693 INFO Processing registry *\shellex\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,693 DEBUG Key *\shellex\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,693 DEBUG Key *\shellex\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,693 INFO Processing registry piffile\shellex\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,694 DEBUG Key piffile\shellex\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,694 DEBUG Key piffile\shellex\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,694 INFO Processing registry *\shellex\ContextMenuHandlers\AVG Shell Extension
2013-02-27 15:42:17,694 DEBUG Key *\shellex\ContextMenuHandlers\AVG Shell Extension ForceRemove
2013-02-27 15:42:17,694 DEBUG Key *\shellex\ContextMenuHandlers\AVG Shell Extension not found
2013-02-27 15:42:17,694 INFO Processing registry .avgdxa
2013-02-27 15:42:17,701 DEBUG Key .avgdxa ForceRemove
2013-02-27 15:42:17,702 DEBUG Key .avgdxa not found
2013-02-27 15:42:17,702 INFO Processing registry aAvgAPI.AvgBro
2013-02-27 15:42:17,702 DEBUG Key aAvgAPI.AvgBro ForceRemove
2013-02-27 15:42:17,702 DEBUG Key aAvgAPI.AvgBro not found
2013-02-27 15:42:17,702 INFO Processing registry AVG.Office
2013-02-27 15:42:17,702 DEBUG Key AVG.Office ForceRemove
2013-02-27 15:42:17,703 DEBUG Key AVG.Office not found
2013-02-27 15:42:17,703 INFO Processing registry AVG.Office.8
2013-02-27 15:42:17,703 DEBUG Key AVG.Office.8 ForceRemove
2013-02-27 15:42:17,703 DEBUG Key AVG.Office.8 not found
2013-02-27 15:42:17,703 INFO Processing registry AvgDiagFile
2013-02-27 15:42:17,704 DEBUG Key AvgDiagFile ForceRemove
2013-02-27 15:42:17,704 DEBUG Key AvgDiagFile not found
2013-02-27 15:42:17,704 INFO Processing registry AvgDiagExFile
2013-02-27 15:42:17,704 DEBUG Key AvgDiagExFile ForceRemove
2013-02-27 15:42:17,704 DEBUG Key AvgDiagExFile not found
2013-02-27 15:42:17,704 INFO Processing registry avgtoolbar.AVGTOOLBAR
2013-02-27 15:42:17,705 DEBUG Key avgtoolbar.AVGTOOLBAR ForceRemove
2013-02-27 15:42:17,705 DEBUG Key avgtoolbar.AVGTOOLBAR not found
2013-02-27 15:42:17,705 INFO Processing registry avgtoolbar.AVGTOOLBARMenu Button
2013-02-27 15:42:17,710 DEBUG Key avgtoolbar.AVGTOOLBARMenu Button ForceRemove
2013-02-27 15:42:17,711 DEBUG Key avgtoolbar.AVGTOOLBARMenu Button not found
2013-02-27 15:42:17,711 INFO Processing registry avgtoolbar.AVGTOOLBARToggle Button
2013-02-27 15:42:17,711 DEBUG Key avgtoolbar.AVGTOOLBARToggle Button ForceRemove
2013-02-27 15:42:17,711 DEBUG Key avgtoolbar.AVGTOOLBARToggle Button not found
2013-02-27 15:42:17,711 INFO Processing registry LinkScannerIE.NavFilter
2013-02-27 15:42:17,712 DEBUG Key LinkScannerIE.NavFilter ForceRemove
2013-02-27 15:42:17,712 DEBUG Key LinkScannerIE.NavFilter not found
2013-02-27 15:42:17,712 INFO Processing registry LinkScannerIE.NavFilter.1
2013-02-27 15:42:17,712 DEBUG Key LinkScannerIE.NavFilter.1 ForceRemove
2013-02-27 15:42:17,713 DEBUG Key LinkScannerIE.NavFilter.1 not found
2013-02-27 15:42:17,713 INFO Processing registry CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA}
2013-02-27 15:42:17,713 DEBUG Key CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA} ForceRemove
2013-02-27 15:42:17,713 DEBUG Key CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA} not found
2013-02-27 15:42:17,713 INFO Processing registry CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A}
2013-02-27 15:42:17,719 DEBUG Key CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A} ForceRemove
2013-02-27 15:42:17,719 DEBUG Key CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A} not found
2013-02-27 15:42:17,719 INFO Processing registry CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
2013-02-27 15:42:17,720 DEBUG Key CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
2013-02-27 15:42:17,720 DEBUG Key CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} not found
2013-02-27 15:42:17,720 INFO Processing registry CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
2013-02-27 15:42:17,720 DEBUG Key CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
2013-02-27 15:42:17,721 DEBUG Key CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} not found
2013-02-27 15:42:17,721 INFO Processing registry CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
2013-02-27 15:42:17,721 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
2013-02-27 15:42:17,721 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
2013-02-27 15:42:17,721 INFO Processing registry CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
2013-02-27 15:42:17,729 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
2013-02-27 15:42:17,730 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
2013-02-27 15:42:17,730 INFO Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E2698E}
2013-02-27 15:42:17,731 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698E} ForceRemove
2013-02-27 15:42:17,731 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698E} not found
2013-02-27 15:42:17,731 INFO Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E2698F}
2013-02-27 15:42:17,733 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698F} ForceRemove
2013-02-27 15:42:17,733 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698F} not found
2013-02-27 15:42:17,733 INFO Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E26990}
2013-02-27 15:42:17,750 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E26990} ForceRemove
2013-02-27 15:42:17,751 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E26990} not found
2013-02-27 15:42:17,751 INFO Processing registry CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1}
2013-02-27 15:42:17,752 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} ForceRemove
2013-02-27 15:42:17,752 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} not found
2013-02-27 15:42:17,752 INFO Processing registry CLSID\{9781B2D1-AF27-474F-A3A5-C0763FBDF3B7}
2013-02-27 15:42:17,753 DEBUG Key CLSID\{9781B2D1-AF27-474F-A3A5-C0763FBDF3B7} ForceRemove
2013-02-27 15:42:17,753 DEBUG Key CLSID\{9781B2D1-AF27-474F-A3A5-C0763FBDF3B7} not found
2013-02-27 15:42:17,753 INFO Processing registry CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}
2013-02-27 15:42:17,754 DEBUG Key CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C} ForceRemove
2013-02-27 15:42:17,754 DEBUG Key CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found
2013-02-27 15:42:17,754 INFO Processing registry CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
2013-02-27 15:42:17,762 DEBUG Key CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
2013-02-27 15:42:17,762 DEBUG Key CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
2013-02-27 15:42:17,762 INFO Processing registry Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D}
2013-02-27 15:42:17,762 DEBUG Key Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D} ForceRemove
2013-02-27 15:42:17,763 DEBUG Key Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D} not found
2013-02-27 15:42:17,764 INFO Processing registry Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C}
2013-02-27 15:42:17,764 DEBUG Key Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C} ForceRemove
2013-02-27 15:42:17,764 DEBUG Key Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C} not found
2013-02-27 15:42:17,764 INFO Processing registry Interface\{7F24AABF-C822-4C18-9432-21433208F4DC}
2013-02-27 15:42:17,765 DEBUG Key Interface\{7F24AABF-C822-4C18-9432-21433208F4DC} ForceRemove
2013-02-27 15:42:17,765 DEBUG Key Interface\{7F24AABF-C822-4C18-9432-21433208F4DC} not found
2013-02-27 15:42:17,766 INFO Processing registry TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30}
2013-02-27 15:42:17,773 DEBUG Key TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30} ForceRemove
2013-02-27 15:42:17,773 DEBUG Key TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30} not found
2013-02-27 15:42:17,773 INFO Processing registry TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7}
2013-02-27 15:42:17,777 DEBUG Key TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} ForceRemove
2013-02-27 15:42:17,777 DEBUG Key TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} not found
2013-02-27 15:42:17,777 INFO Processing registry TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7}
2013-02-27 15:42:17,778 DEBUG Key TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} ForceRemove
2013-02-27 15:42:17,778 DEBUG Key TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} not found
2013-02-27 15:42:17,778 INFO Processing registry TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9}
2013-02-27 15:42:17,778 DEBUG Key TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9} ForceRemove
2013-02-27 15:42:17,778 DEBUG Key TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9} not found
2013-02-27 15:42:17,778 INFO Processing registry TypeLib\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
2013-02-27 15:42:17,780 DEBUG Key TypeLib\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
2013-02-27 15:42:17,781 DEBUG Key TypeLib\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
2013-02-27 15:42:17,781 INFO Processing registry CLSID\{8B39AD4E-1AB3-4AE1-B533-706F1CACED83}
2013-02-27 15:42:17,781 DEBUG Key CLSID\{8B39AD4E-1AB3-4AE1-B533-706F1CACED83} ForceRemove
2013-02-27 15:42:17,782 DEBUG Key CLSID\{8B39AD4E-1AB3-4AE1-B533-706F1CACED83} not found
2013-02-27 15:42:17,782 INFO Processing registry CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82}
2013-02-27 15:42:17,782 DEBUG Key CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} ForceRemove
2013-02-27 15:42:17,783 DEBUG Key CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} not found
2013-02-27 15:42:17,783 INFO Processing registry CLSID\{DC182551-99C7-4e28-A8F3-8DCFC4745C4C}
2013-02-27 15:42:17,784 DEBUG Key CLSID\{DC182551-99C7-4e28-A8F3-8DCFC4745C4C} ForceRemove
2013-02-27 15:42:17,784 DEBUG Key CLSID\{DC182551-99C7-4e28-A8F3-8DCFC4745C4C} not found
2013-02-27 15:42:17,784 INFO Processing registry CLSID\{B2BFA8E6-DB09-43F4-8469-BC587CB603EB}
2013-02-27 15:42:17,784 DEBUG Key CLSID\{B2BFA8E6-DB09-43F4-8469-BC587CB603EB} ForceRemove
2013-02-27 15:42:17,785 DEBUG Key CLSID\{B2BFA8E6-DB09-43F4-8469-BC587CB603EB} not found
2013-02-27 15:42:17,785 INFO Processing registry CLSID\{B2BFA8E6-DB09-43F4-8469-BC587CB603EB}
2013-02-27 15:42:17,786 DEBUG Key CLSID\{B2BFA8E6-DB09-43F4-8469-BC587CB603EB} ForceRemove
2013-02-27 15:42:17,786 DEBUG Key CLSID\{B2BFA8E6-DB09-43F4-8469-BC587CB603EB} not found
2013-02-27 15:42:17,786 INFO Processing registry CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1}
2013-02-27 15:42:17,787 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} ForceRemove
2013-02-27 15:42:17,787 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} not found
2013-02-27 15:42:17,787 INFO Processing registry CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1}
2013-02-27 15:42:17,787 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} ForceRemove
2013-02-27 15:42:17,788 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} not found
2013-02-27 15:42:17,788 INFO Processing registry CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1}
2013-02-27 15:42:17,788 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} ForceRemove
2013-02-27 15:42:17,788 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} not found
2013-02-27 15:42:17,788 INFO Processing registry CLSID\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7}
2013-02-27 15:42:17,789 DEBUG Key CLSID\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} ForceRemove
2013-02-27 15:42:17,790 DEBUG Key CLSID\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} not found
2013-02-27 15:42:17,790 INFO Processing registry CLSID\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7}
2013-02-27 15:42:17,790 DEBUG Key CLSID\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} ForceRemove
2013-02-27 15:42:17,790 DEBUG Key CLSID\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} not found
2013-02-27 15:42:17,790 INFO Processing registry AppID\avgsbg.DLL
2013-02-27 15:42:17,790 DEBUG Key AppID\avgsbg.DLL ForceRemove
2013-02-27 15:42:17,790 DEBUG Key AppID\avgsbg.DLL not found
2013-02-27 15:42:17,790 INFO Processing registry AppID\avgdtie.DLL
2013-02-27 15:42:17,790 DEBUG Key AppID\avgdtie.DLL ForceRemove
2013-02-27 15:42:17,791 DEBUG Key AppID\avgdtie.DLL not found
2013-02-27 15:42:17,791 DEBUG Removing Session Manager values
2013-02-27 15:42:17,791 DEBUG Registry remover failed for some registry item(s)
2013-02-27 15:42:17,791 INFO ***** Files and folders *****
2013-02-27 15:42:17,812 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,812 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,829 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,829 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,829 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,829 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,830 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,830 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,830 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,830 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,831 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,831 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,831 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,831 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,832 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\avgcfg.*'
2013-02-27 15:42:17,832 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,832 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,833 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,833 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,833 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,834 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,834 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,834 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,835 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,835 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,835 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,835 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,836 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,836 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,837 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\avgcore.*'
2013-02-27 15:42:17,837 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\decider.*'
2013-02-27 15:42:17,837 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,837 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\decider.*'
2013-02-27 15:42:17,838 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,838 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\decider.*'
2013-02-27 15:42:17,838 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,838 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\decider.*'
2013-02-27 15:42:17,839 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,839 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\decider.*'
2013-02-27 15:42:17,839 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,840 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\decider.*'
2013-02-27 15:42:17,840 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,840 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\decider.*'
2013-02-27 15:42:17,840 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,841 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\decider.*'
2013-02-27 15:42:17,841 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,841 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,841 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,841 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,842 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,842 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,842 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,842 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,843 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,843 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,854 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,854 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,855 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,855 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,855 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\avgpostinst.*'
2013-02-27 15:42:17,856 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\avgui.*'
2013-02-27 15:42:17,856 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,856 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\avgui.*'
2013-02-27 15:42:17,856 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,862 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\avgui.*'
2013-02-27 15:42:17,863 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,863 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\avgui.*'
2013-02-27 15:42:17,863 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,864 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\avgui.*'
2013-02-27 15:42:17,864 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,864 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\avgui.*'
2013-02-27 15:42:17,864 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,865 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\avgui.*'
2013-02-27 15:42:17,866 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,866 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\avgui.*'
2013-02-27 15:42:17,866 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,866 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,867 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,867 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,867 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,867 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,885 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,885 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,885 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,885 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,886 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,886 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,886 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,887 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,887 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\commonpriv.*'
2013-02-27 15:42:17,887 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,887 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,888 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,888 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,888 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,889 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,889 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,889 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,893 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,893 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,893 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,893 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,894 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,894 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,894 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\krnlapi.*'
2013-02-27 15:42:17,895 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log\lng.*'
2013-02-27 15:42:17,895 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,902 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log\lng.*'
2013-02-27 15:42:17,903 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,903 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log\lng.*'
2013-02-27 15:42:17,903 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,904 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log\lng.*'
2013-02-27 15:42:17,904 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,904 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log\lng.*'
2013-02-27 15:42:17,904 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,910 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log\lng.*'
2013-02-27 15:42:17,910 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,918 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log\lng.*'
2013-02-27 15:42:17,918 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,918 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log\lng.*'
2013-02-27 15:42:17,918 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log'
2013-02-27 15:42:17,918 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,919 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log'
2013-02-27 15:42:17,919 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,919 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log'
2013-02-27 15:42:17,920 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,926 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log'
2013-02-27 15:42:17,926 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,926 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log'
2013-02-27 15:42:17,927 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,927 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log'
2013-02-27 15:42:17,927 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:17,928 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log'
2013-02-27 15:42:17,928 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013\log' not found
2013-02-27 15:42:17,933 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013\log'
2013-02-27 15:42:17,934 INFO Trying HardForce delete 'C:\Users\Gilbert\AppData\Local\Avg2013\log'
2013-02-27 15:42:17,935 INFO Directory 'C:\Users\Gilbert\AppData\Local\Avg2013\log' deleted
2013-02-27 15:42:17,935 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013'
2013-02-27 15:42:17,935 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Avg2013' not found
2013-02-27 15:42:17,936 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013'
2013-02-27 15:42:17,936 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013' not found
2013-02-27 15:42:17,941 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013'
2013-02-27 15:42:17,941 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Avg2013' not found
2013-02-27 15:42:17,942 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013'
2013-02-27 15:42:17,942 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Avg2013' not found
2013-02-27 15:42:17,942 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013'
2013-02-27 15:42:17,942 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Avg2013' not found
2013-02-27 15:42:17,943 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013'
2013-02-27 15:42:17,943 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Avg2013' not found
2013-02-27 15:42:17,950 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Avg2013'
2013-02-27 15:42:17,950 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Avg2013' not found
2013-02-27 15:42:17,950 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Avg2013'
2013-02-27 15:42:17,951 INFO Trying HardForce delete 'C:\Users\Gilbert\AppData\Local\Avg2013'
2013-02-27 15:42:17,952 INFO Directory 'C:\Users\Gilbert\AppData\Local\Avg2013' deleted
2013-02-27 15:42:17,952 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Temp\avg@toolbar'
2013-02-27 15:42:17,952 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\Temp\avg@toolbar' not found
2013-02-27 15:42:17,953 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\Temp\avg@toolbar'
2013-02-27 15:42:17,953 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\Temp\avg@toolbar' not found
2013-02-27 15:42:17,954 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Temp\avg@toolbar'
2013-02-27 15:42:17,954 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Temp\avg@toolbar' not found
2013-02-27 15:42:17,954 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\avg@toolbar'
2013-02-27 15:42:18,094 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\avg@toolbar' not found
2013-02-27 15:42:18,094 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Temp\avg@toolbar'
2013-02-27 15:42:18,094 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Temp\avg@toolbar' not found
2013-02-27 15:42:18,094 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\avg@toolbar'
2013-02-27 15:42:18,094 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\avg@toolbar' not found
2013-02-27 15:42:18,095 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\Temp\avg@toolbar'
2013-02-27 15:42:18,095 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\Temp\avg@toolbar' not found
2013-02-27 15:42:18,095 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\Temp\avg@toolbar'
2013-02-27 15:42:18,095 INFO Directory 'C:\Users\Gilbert\AppData\Local\Temp\avg@toolbar' not found
2013-02-27 15:42:18,096 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Roaming\avg*.*'
2013-02-27 15:42:18,096 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Roaming\avg*.*' not found
2013-02-27 15:42:18,096 DEBUG Processing item 'C:\Windows\system32\config\systemprofile\AppData\Local\avg*.*'
2013-02-27 15:42:18,096 INFO Directory 'C:\Windows\system32\config\systemprofile\AppData\Local\avg*.*' not found
2013-02-27 15:42:18,097 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\avg*.*'
2013-02-27 15:42:18,097 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\avg*.*' not found
2013-02-27 15:42:18,097 DEBUG Processing item 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\avg*.*'
2013-02-27 15:42:18,098 INFO Directory 'C:\Windows\ServiceProfiles\LocalService\AppData\Local\avg*.*' not found
2013-02-27 15:42:18,098 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\avg*.*'
2013-02-27 15:42:18,098 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\avg*.*' not found
2013-02-27 15:42:18,099 DEBUG Processing item 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\avg*.*'
2013-02-27 15:42:18,099 INFO Directory 'C:\Windows\ServiceProfiles\NetworkService\AppData\Local\avg*.*' not found
2013-02-27 15:42:18,099 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\avg*.*'
2013-02-27 15:42:18,099 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\avg*.*' not found
2013-02-27 15:42:18,100 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\avg*.*'
2013-02-27 15:42:18,100 INFO Directory 'C:\Users\Gilbert\AppData\Local\avg*.*' not found
2013-02-27 15:42:18,100 DEBUG Missing ParentDir path for fileItem number 12
2013-02-27 15:42:18,100 DEBUG Missing ParentDir path for fileItem number 13
2013-02-27 15:42:18,100 DEBUG Missing ParentDir path for fileItem number 14
2013-02-27 15:42:18,100 DEBUG Missing ParentDir path for fileItem number 15
2013-02-27 15:42:18,100 DEBUG Missing ParentDir path for fileItem number 16
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 17
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 18
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 19
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 20
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 21
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 22
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 23
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 24
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 25
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 26
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 27
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 28
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 29
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 30
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 31
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 32
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 33
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 34
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 35
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 36
2013-02-27 15:42:18,101 DEBUG Missing ParentDir path for fileItem number 37
2013-02-27 15:42:18,101 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\AVGTOOLBAR'
2013-02-27 15:42:18,101 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\AVGTOOLBAR' not found
2013-02-27 15:42:18,101 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\AVG2013\cfgall'
2013-02-27 15:42:18,101 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\AVG2013\cfgall' not found
2013-02-27 15:42:18,102 DEBUG Processing item 'C:\Users\Gilbert\AppData\Roaming\AVG2013'
2013-02-27 15:42:18,102 INFO Directory 'C:\Users\Gilbert\AppData\Roaming\AVG2013' not found
2013-02-27 15:42:18,102 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\AVG2013\log'
2013-02-27 15:42:18,103 INFO Directory 'C:\Users\Gilbert\AppData\Local\AVG2013\log' not found
2013-02-27 15:42:18,103 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\AVG2013'
2013-02-27 15:42:18,103 INFO Directory 'C:\Users\Gilbert\AppData\Local\AVG2013' not found
2013-02-27 15:42:18,104 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\MFAData\logs'
2013-02-27 15:42:18,104 INFO Directory 'C:\Users\Gilbert\AppData\Local\MFAData\logs' not found
2013-02-27 15:42:18,104 DEBUG Processing item 'C:\Users\Gilbert\AppData\Local\MFAData'
2013-02-27 15:42:18,104 INFO Directory 'C:\Users\Gilbert\AppData\Local\MFAData' not found
2013-02-27 15:42:18,105 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,105 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg 8.0'
2013-02-27 15:42:18,105 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg 8.0' not found
2013-02-27 15:42:18,105 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg free 8.0'
2013-02-27 15:42:18,106 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg free 8.0' not found
2013-02-27 15:42:18,106 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg 8.5'
2013-02-27 15:42:18,106 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg 8.5' not found
2013-02-27 15:42:18,107 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg free 8.5'
2013-02-27 15:42:18,107 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avg free 8.5' not found
2013-02-27 15:42:18,107 DEBUG Processing item 'C:\Users\Public\Desktop\avg 8.0.lnk'
2013-02-27 15:42:18,107 INFO File 'C:\Users\Public\Desktop\avg 8.0.lnk' not found
2013-02-27 15:42:18,108 DEBUG Processing item 'C:\Users\Public\Desktop\avg free 8.0.lnk'
2013-02-27 15:42:18,108 INFO File 'C:\Users\Public\Desktop\avg free 8.0.lnk' not found
2013-02-27 15:42:18,108 DEBUG Processing item 'C:\Users\Public\Desktop\avg 8.5.lnk'
2013-02-27 15:42:18,108 INFO File 'C:\Users\Public\Desktop\avg 8.5.lnk' not found
2013-02-27 15:42:18,118 DEBUG Processing item 'C:\Users\Public\Desktop\avg free 8.5.lnk'
2013-02-27 15:42:18,118 INFO File 'C:\Users\Public\Desktop\avg free 8.5.lnk' not found
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 54
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 55
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 56
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 57
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 58
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 59
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 60
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 61
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 62
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 63
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 64
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 65
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 66
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 67
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 68
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 69
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 70
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 71
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 72
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 73
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 74
2013-02-27 15:42:18,119 DEBUG Missing ParentDir path for fileItem number 75
2013-02-27 15:42:18,119 DEBUG Processing item 'C:\ProgramData\AVG Security Toolbar\Languages'
2013-02-27 15:42:18,119 INFO Directory 'C:\ProgramData\AVG Security Toolbar\Languages' not found
2013-02-27 15:42:18,119 DEBUG Processing item 'C:\ProgramData\AVG Security Toolbar\Update'
2013-02-27 15:42:18,119 INFO Directory 'C:\ProgramData\AVG Security Toolbar\Update' not found
2013-02-27 15:42:18,120 DEBUG Processing item 'C:\ProgramData\AVG Security Toolbar'
2013-02-27 15:42:18,120 INFO Directory 'C:\ProgramData\AVG Security Toolbar' not found
2013-02-27 15:42:18,120 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,121 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 9.0'
2013-02-27 15:42:18,121 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 9.0' not found
2013-02-27 15:42:18,121 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 9.0'
2013-02-27 15:42:18,121 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 9.0' not found
2013-02-27 15:42:18,122 DEBUG Processing item 'C:\Users\Public\Desktop\avg 9.0.lnk'
2013-02-27 15:42:18,122 INFO File 'C:\Users\Public\Desktop\avg 9.0.lnk' not found
2013-02-27 15:42:18,122 DEBUG Processing item 'C:\Users\Public\Desktop\avg free 9.0.lnk'
2013-02-27 15:42:18,122 INFO File 'C:\Users\Public\Desktop\avg free 9.0.lnk' not found
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 84
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 85
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 86
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 87
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 88
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 89
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 90
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 91
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 92
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 93
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 94
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 95
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 96
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 97
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 98
2013-02-27 15:42:18,126 DEBUG Missing ParentDir path for fileItem number 99
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 100
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 101
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 102
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 103
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 104
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 105
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 106
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 107
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 108
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 109
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 110
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 111
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 112
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 113
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 114
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 115
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 116
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 117
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 118
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 119
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 120
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 121
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 122
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 123
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 124
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 125
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 126
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 127
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 128
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 129
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 130
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 131
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 132
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 133
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 134
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 135
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 136
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 137
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 138
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 139
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 140
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 141
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 142
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 143
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 144
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 145
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 146
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 147
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 148
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 149
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 150
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 151
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 152
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 153
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 154
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 155
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 156
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 157
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 158
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 159
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 160
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 161
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 162
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 163
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 164
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 165
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 166
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 167
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 168
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 169
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 170
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 171
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 172
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 173
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 174
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 175
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 176
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 177
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 178
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 179
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 180
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 181
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 182
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 183
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 184
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 185
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 186
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 187
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 188
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 189
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 190
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 191
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 192
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 193
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 194
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 195
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 196
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 197
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 198
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 199
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 200
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 201
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 202
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 203
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 204
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 205
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 206
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 207
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 208
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 209
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 210
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 211
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 212
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 213
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 214
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 215
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 216
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 217
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 218
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 219
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 220
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 221
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 222
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 223
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 224
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 225
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 226
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 227
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 228
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 229
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 230
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 231
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 232
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 233
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 234
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 235
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 236
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 237
2013-02-27 15:42:18,127 DEBUG Missing ParentDir path for fileItem number 238
2013-02-27 15:42:18,127 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,128 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,128 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,128 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,128 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,128 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,128 DEBUG Processing item 'C:\Windows\System32\Drivers\AVG'
2013-02-27 15:42:18,128 INFO Directory 'C:\Windows\System32\Drivers\AVG' not found
2013-02-27 15:42:18,128 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsdriverx.sys'
2013-02-27 15:42:18,129 INFO File 'C:\Windows\System32\Drivers\avgidsdriverx.sys' not found
2013-02-27 15:42:18,129 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsdrivera.sys'
2013-02-27 15:42:18,129 INFO File 'C:\Windows\System32\Drivers\avgidsdrivera.sys' not found
2013-02-27 15:42:18,129 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsehx.sys'
2013-02-27 15:42:18,130 INFO File 'C:\Windows\System32\Drivers\avgidsehx.sys' not found
2013-02-27 15:42:18,134 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidseha.sys'
2013-02-27 15:42:18,134 INFO File 'C:\Windows\System32\Drivers\avgidseha.sys' not found
2013-02-27 15:42:18,134 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsfilterx.sys'
2013-02-27 15:42:18,135 INFO File 'C:\Windows\System32\Drivers\avgidsfilterx.sys' not found
2013-02-27 15:42:18,135 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsfiltera.sys'
2013-02-27 15:42:18,135 INFO File 'C:\Windows\System32\Drivers\avgidsfiltera.sys' not found
2013-02-27 15:42:18,135 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsshimx.sys'
2013-02-27 15:42:18,136 INFO File 'C:\Windows\System32\Drivers\avgidsshimx.sys' not found
2013-02-27 15:42:18,141 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsshimw8x.sys'
2013-02-27 15:42:18,141 INFO File 'C:\Windows\System32\Drivers\avgidsshimw8x.sys' not found
2013-02-27 15:42:18,142 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsuniversalddx.sys'
2013-02-27 15:42:18,142 INFO File 'C:\Windows\System32\Drivers\avgidsuniversalddx.sys' not found
2013-02-27 15:42:18,142 DEBUG Processing item 'C:\Windows\System32\Drivers\avgidsuniversaldda.sys'
2013-02-27 15:42:18,143 INFO File 'C:\Windows\System32\Drivers\avgidsuniversaldda.sys' not found
2013-02-27 15:42:18,143 DEBUG Processing item 'C:\Windows\System32'
2013-02-27 15:42:18,143 DEBUG Processing item 'C:\Program Files\Windows Sidebar\Shared Gadgets\AVG.Gadget'
2013-02-27 15:42:18,143 INFO Directory 'C:\Program Files\Windows Sidebar\Shared Gadgets\AVG.Gadget' not found
2013-02-27 15:42:18,149 DEBUG Processing item 'C:\Program Files (x86)\Windows Sidebar\Shared Gadgets\AVG.Gadget'
2013-02-27 15:42:18,150 INFO Directory 'C:\Program Files (x86)\Windows Sidebar\Shared Gadgets\AVG.Gadget' not found
2013-02-27 15:42:18,150 DEBUG Processing item 'C:\ProgramData\AVG10\SetupCoreBackup'
2013-02-27 15:42:18,150 INFO Directory 'C:\ProgramData\AVG10\SetupCoreBackup' not found
2013-02-27 15:42:18,150 DEBUG Processing item 'C:\ProgramData\AVG10\SetupBackup'
2013-02-27 15:42:18,151 INFO Directory 'C:\ProgramData\AVG10\SetupBackup' not found
2013-02-27 15:42:18,151 DEBUG Processing item 'C:\ProgramData\AVG10\Chjw'
2013-02-27 15:42:18,151 INFO Directory 'C:\ProgramData\AVG10\Chjw' not found
2013-02-27 15:42:18,152 DEBUG Processing item 'C:\ProgramData\AVG10\Antispam'
2013-02-27 15:42:18,152 INFO Directory 'C:\ProgramData\AVG10\Antispam' not found
2013-02-27 15:42:18,157 DEBUG Processing item 'C:\ProgramData\AVG10'
2013-02-27 15:42:18,157 INFO Directory 'C:\ProgramData\AVG10' not found
2013-02-27 15:42:18,158 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2011'
2013-02-27 15:42:18,158 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2011' not found
2013-02-27 15:42:18,158 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 2011'
2013-02-27 15:42:18,158 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 2011' not found
2013-02-27 15:42:18,159 DEBUG Processing item 'C:\Users\Public\Desktop\AVG 2011.lnk'
2013-02-27 15:42:18,159 INFO File 'C:\Users\Public\Desktop\AVG 2011.lnk' not found
2013-02-27 15:42:18,165 DEBUG Processing item 'C:\Users\Public\Desktop\AVG FREE 2011.lnk'
2013-02-27 15:42:18,166 INFO File 'C:\Users\Public\Desktop\AVG FREE 2011.lnk' not found
2013-02-27 15:42:18,166 DEBUG Processing item 'C:\Windows\SysWOW64\Drivers\AVG'
2013-02-27 15:42:18,166 INFO Directory 'C:\Windows\SysWOW64\Drivers\AVG' not found
2013-02-27 15:42:18,167 DEBUG Missing ParentDir path for fileItem number 269
2013-02-27 15:42:18,167 DEBUG Processing item 'C:\ProgramData\MFAData\logs'
2013-02-27 15:42:18,167 INFO Directory 'C:\ProgramData\MFAData\logs' not found
2013-02-27 15:42:18,167 DEBUG Processing item 'C:\ProgramData\MFAData\pack'
2013-02-27 15:42:18,167 INFO Directory 'C:\ProgramData\MFAData\pack' not found
2013-02-27 15:42:18,168 DEBUG Processing item 'C:\ProgramData\MFAData\mkt'
2013-02-27 15:42:18,168 INFO Directory 'C:\ProgramData\MFAData\mkt' not found
2013-02-27 15:42:18,168 DEBUG Processing item 'C:\ProgramData\MFAData'
2013-02-27 15:42:18,168 INFO Directory 'C:\ProgramData\MFAData' not found
2013-02-27 15:42:18,183 DEBUG Processing item 'C:\ProgramData\AVG2012\SetupCoreBackup'
2013-02-27 15:42:18,183 INFO Directory 'C:\ProgramData\AVG2012\SetupCoreBackup' not found
2013-02-27 15:42:18,184 DEBUG Processing item 'C:\ProgramData\AVG2012\SetupBackup'
2013-02-27 15:42:18,184 INFO Directory 'C:\ProgramData\AVG2012\SetupBackup' not found
2013-02-27 15:42:18,184 DEBUG Processing item 'C:\ProgramData\AVG2012\Chjw'
2013-02-27 15:42:18,184 INFO Directory 'C:\ProgramData\AVG2012\Chjw' not found
2013-02-27 15:42:18,185 DEBUG Processing item 'C:\ProgramData\AVG2012\Antispam'
2013-02-27 15:42:18,185 INFO Directory 'C:\ProgramData\AVG2012\Antispam' not found
2013-02-27 15:42:18,185 DEBUG Processing item 'C:\ProgramData\AVG2012\IDS'
2013-02-27 15:42:18,185 INFO Directory 'C:\ProgramData\AVG2012\IDS' not found
2013-02-27 15:42:18,186 DEBUG Processing item 'C:\ProgramData\AVG2012\fet'
2013-02-27 15:42:18,186 INFO Directory 'C:\ProgramData\AVG2012\fet' not found
2013-02-27 15:42:18,186 DEBUG Processing item 'C:\ProgramData\AVG2012'
2013-02-27 15:42:18,186 INFO Directory 'C:\ProgramData\AVG2012' not found
2013-02-27 15:42:18,187 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2012'
2013-02-27 15:42:18,187 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2012' not found
2013-02-27 15:42:18,187 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 2012'
2013-02-27 15:42:18,187 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 2012' not found
2013-02-27 15:42:18,188 DEBUG Processing item 'C:\Users\Public\Desktop\AVG 2012.lnk'
2013-02-27 15:42:18,188 INFO File 'C:\Users\Public\Desktop\AVG 2012.lnk' not found
2013-02-27 15:42:18,191 DEBUG Processing item 'C:\Users\Public\Desktop\AVG FREE 2012.lnk'
2013-02-27 15:42:18,191 INFO File 'C:\Users\Public\Desktop\AVG FREE 2012.lnk' not found
2013-02-27 15:42:18,191 DEBUG Processing item 'C:\Windows\System32\Drivers'
2013-02-27 15:42:18,192 DEBUG Processing item 'C:\ProgramData\AVG2013\SetupCoreBackup'
2013-02-27 15:42:18,192 INFO Directory 'C:\ProgramData\AVG2013\SetupCoreBackup' not found
2013-02-27 15:42:18,192 DEBUG Processing item 'C:\ProgramData\AVG2013\avi'
2013-02-27 15:42:18,192 INFO Directory 'C:\ProgramData\AVG2013\avi' not found
2013-02-27 15:42:18,193 DEBUG Processing item 'C:\ProgramData\AVG2013\SetupBackup'
2013-02-27 15:42:18,193 INFO Directory 'C:\ProgramData\AVG2013\SetupBackup' not found
2013-02-27 15:42:18,193 DEBUG Processing item 'C:\ProgramData\AVG2013\Chjw'
2013-02-27 15:42:18,193 INFO Directory 'C:\ProgramData\AVG2013\Chjw' not found
2013-02-27 15:42:18,201 DEBUG Processing item 'C:\ProgramData\AVG2013\Antispam'
2013-02-27 15:42:18,201 INFO Directory 'C:\ProgramData\AVG2013\Antispam' not found
2013-02-27 15:42:18,201 DEBUG Processing item 'C:\ProgramData\AVG2013\admincli'
2013-02-27 15:42:18,202 INFO Directory 'C:\ProgramData\AVG2013\admincli' not found
2013-02-27 15:42:18,202 DEBUG Processing item 'C:\ProgramData\AVG2013\Cfg'
2013-02-27 15:42:18,202 INFO Directory 'C:\ProgramData\AVG2013\Cfg' not found
2013-02-27 15:42:18,203 DEBUG Processing item 'C:\ProgramData\AVG2013\cfgall'
2013-02-27 15:42:18,203 INFO Directory 'C:\ProgramData\AVG2013\cfgall' not found
2013-02-27 15:42:18,203 DEBUG Processing item 'C:\ProgramData\AVG2013\DB'
2013-02-27 15:42:18,203 INFO Directory 'C:\ProgramData\AVG2013\DB' not found
2013-02-27 15:42:18,209 DEBUG Processing item 'C:\ProgramData\AVG2013\Dumps'
2013-02-27 15:42:18,209 INFO Directory 'C:\ProgramData\AVG2013\Dumps' not found
2013-02-27 15:42:18,210 DEBUG Processing item 'C:\ProgramData\AVG2013\EMC'
2013-02-27 15:42:18,210 INFO Directory 'C:\ProgramData\AVG2013\EMC' not found
2013-02-27 15:42:18,210 DEBUG Processing item 'C:\ProgramData\AVG2013\fet'
2013-02-27 15:42:18,211 INFO Directory 'C:\ProgramData\AVG2013\fet' not found
2013-02-27 15:42:18,211 DEBUG Processing item 'C:\ProgramData\AVG2013\IDS'
2013-02-27 15:42:18,211 INFO Directory 'C:\ProgramData\AVG2013\IDS' not found
2013-02-27 15:42:18,211 DEBUG Processing item 'C:\ProgramData\AVG2013\log'
2013-02-27 15:42:18,212 INFO Directory 'C:\ProgramData\AVG2013\log' not found
2013-02-27 15:42:18,212 DEBUG Processing item 'C:\ProgramData\AVG2013\lsdb\prev'
2013-02-27 15:42:18,212 INFO Directory 'C:\ProgramData\AVG2013\lsdb\prev' not found
2013-02-27 15:42:18,212 DEBUG Processing item 'C:\ProgramData\AVG2013\lsdb'
2013-02-27 15:42:18,213 INFO Directory 'C:\ProgramData\AVG2013\lsdb' not found
2013-02-27 15:42:18,218 DEBUG Processing item 'C:\ProgramData\AVG2013\scanlogs'
2013-02-27 15:42:18,218 INFO Directory 'C:\ProgramData\AVG2013\scanlogs' not found
2013-02-27 15:42:18,219 DEBUG Processing item 'C:\ProgramData\AVG2013\Temp'
2013-02-27 15:42:18,219 INFO Directory 'C:\ProgramData\AVG2013\Temp' not found
2013-02-27 15:42:18,219 DEBUG Processing item 'C:\ProgramData\AVG2013\update\download'
2013-02-27 15:42:18,219 INFO Directory 'C:\ProgramData\AVG2013\update\download' not found
2013-02-27 15:42:18,220 DEBUG Processing item 'C:\ProgramData\AVG2013\update'
2013-02-27 15:42:18,220 INFO Directory 'C:\ProgramData\AVG2013\update' not found
2013-02-27 15:42:18,220 DEBUG Processing item 'C:\ProgramData\AVG2013\Antispam'
2013-02-27 15:42:18,220 INFO Directory 'C:\ProgramData\AVG2013\Antispam' not found
2013-02-27 15:42:18,234 DEBUG Processing item 'C:\ProgramData\AVG2013'
2013-02-27 15:42:18,234 INFO Directory 'C:\ProgramData\AVG2013' not found
2013-02-27 15:42:18,234 DEBUG Processing item 'C:\ProgramData\MFAData\pack'
2013-02-27 15:42:18,235 INFO Directory 'C:\ProgramData\MFAData\pack' not found
2013-02-27 15:42:18,235 DEBUG Processing item 'C:\ProgramData\MFAData\survey'
2013-02-27 15:42:18,235 INFO Directory 'C:\ProgramData\MFAData\survey' not found
2013-02-27 15:42:18,236 DEBUG Processing item 'C:\ProgramData\MFAData'
2013-02-27 15:42:18,236 INFO Directory 'C:\ProgramData\MFAData' not found
2013-02-27 15:42:18,236 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2013'
2013-02-27 15:42:18,236 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2013' not found
2013-02-27 15:42:18,237 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 2013'
2013-02-27 15:42:18,237 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG FREE 2013' not found
2013-02-27 15:42:18,237 DEBUG Processing item 'C:\Users\Public\Desktop\AVG 2013.lnk'
2013-02-27 15:42:18,237 INFO File 'C:\Users\Public\Desktop\AVG 2013.lnk' not found
2013-02-27 15:42:18,238 DEBUG Processing item 'C:\Users\Public\Desktop\AVG FREE 2013.lnk'
2013-02-27 15:42:18,238 INFO File 'C:\Users\Public\Desktop\AVG FREE 2013.lnk' not found
2013-02-27 15:42:18,239 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\log'
2013-02-27 15:42:18,239 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:18,242 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\dumps'
2013-02-27 15:42:18,243 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\dumps' not found
2013-02-27 15:42:18,243 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\fet'
2013-02-27 15:42:18,243 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\fet' not found
2013-02-27 15:42:18,244 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\temp'
2013-02-27 15:42:18,244 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\temp' not found
2013-02-27 15:42:18,244 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update\backup'
2013-02-27 15:42:18,245 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update\backup' not found
2013-02-27 15:42:18,251 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update\prepare'
2013-02-27 15:42:18,251 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update\prepare' not found
2013-02-27 15:42:18,251 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update\download'
2013-02-27 15:42:18,252 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update\download' not found
2013-02-27 15:42:18,252 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update'
2013-02-27 15:42:18,252 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013\update' not found
2013-02-27 15:42:18,253 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013'
2013-02-27 15:42:18,253 INFO Directory 'C:\Windows\System32\config\systemprofile\AppData\Local\Avg2013' not found
2013-02-27 15:42:18,259 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\Local Settings\Application Data\Avg2013\log'
2013-02-27 15:42:18,259 INFO Directory 'C:\Windows\System32\config\systemprofile\Local Settings\Application Data\Avg2013\log' not found
2013-02-27 15:42:18,259 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\Local Settings\Application Data\Avg2013\temp'
2013-02-27 15:42:18,259 INFO Directory 'C:\Windows\System32\config\systemprofile\Local Settings\Application Data\Avg2013\temp' not found
2013-02-27 15:42:18,260 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\Application Data\Avg2013\cfgall'
2013-02-27 15:42:18,260 INFO Directory 'C:\Windows\System32\config\systemprofile\Application Data\Avg2013\cfgall' not found
2013-02-27 15:42:18,260 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\Application Data\Avg2013'
2013-02-27 15:42:18,260 INFO Directory 'C:\Windows\System32\config\systemprofile\Application Data\Avg2013' not found
2013-02-27 15:42:18,267 DEBUG Processing item 'C:\Windows\System32\config\systemprofile\Local Settings\Application Data\Avg2013'
2013-02-27 15:42:18,267 INFO Directory 'C:\Windows\System32\config\systemprofile\Local Settings\Application Data\Avg2013' not found
2013-02-27 15:42:18,268 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\log'
2013-02-27 15:42:18,268 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\log' not found
2013-02-27 15:42:18,268 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\fet'
2013-02-27 15:42:18,268 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\fet' not found
2013-02-27 15:42:18,269 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\temp'
2013-02-27 15:42:18,269 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\temp' not found
2013-02-27 15:42:18,284 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update\backup'
2013-02-27 15:42:18,284 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update\backup' not found
2013-02-27 15:42:18,285 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update\prepare'
2013-02-27 15:42:18,285 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update\prepare' not found
2013-02-27 15:42:18,285 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update\download'
2013-02-27 15:42:18,286 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update\download' not found
2013-02-27 15:42:18,286 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update'
2013-02-27 15:42:18,286 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013\update' not found
2013-02-27 15:42:18,287 DEBUG Processing item 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013'
2013-02-27 15:42:18,287 INFO Directory 'C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Avg2013' not found
2013-02-27 15:42:18,287 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG LinkScanner® 9.0'
2013-02-27 15:42:18,287 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG LinkScanner® 9.0' not found
2013-02-27 15:42:18,288 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Standalone LinkScanner'
2013-02-27 15:42:18,288 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Standalone LinkScanner' not found
2013-02-27 15:42:18,288 DEBUG Processing item 'C:\Users\Public\Desktop\AVG LinkScanner® 9.0.lnk'
2013-02-27 15:42:18,288 INFO File 'C:\Users\Public\Desktop\AVG LinkScanner® 9.0.lnk' not found
2013-02-27 15:42:18,292 DEBUG Processing item 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG'
2013-02-27 15:42:18,292 INFO Directory 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG' not found
2013-02-27 15:42:18,293 DEBUG Processing item 'C:\Program Files\AVG Secure Search'
2013-02-27 15:42:18,293 INFO Directory 'C:\Program Files\AVG Secure Search' not found
2013-02-27 15:42:18,293 DEBUG Processing item 'C:\Program Files (x86)\AVG Secure Search'
2013-02-27 15:42:18,293 INFO Directory 'C:\Program Files (x86)\AVG Secure Search' not found
2013-02-27 15:42:18,294 DEBUG Missing ParentDir path for fileItem number 343
2013-02-27 15:42:18,294 DEBUG Missing ParentDir path for fileItem number 344
2013-02-27 15:42:18,294 DEBUG Missing ParentDir path for fileItem number 345
2013-02-27 15:42:18,294 INFO Attempting to unregister AVG from the Windows Security Center.
  • 0

#19
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
OTL logfile created on: 2/27/2013 10:38:43 AM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Gilbert\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.75 Gb Total Physical Memory | 3.16 Gb Available Physical Memory | 54.92% Memory free
11.50 Gb Paging File | 8.84 Gb Available in Paging File | 76.91% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 916.66 Gb Total Space | 249.41 Gb Free Space | 27.21% Space Free | Partition Type: NTFS
Drive I: | 3.73 Gb Total Space | 3.41 Gb Free Space | 91.43% Space Free | Partition Type: FAT32

Computer Name: GILBERT-PC | User Name: Gilbert | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/02/14 21:35:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Gilbert\Desktop\OTL.exe
PRC - [2013/01/24 07:51:16 | 000,371,808 | ---- | M] (Crawler.com) -- C:\Program Files (x86)\OnlineVault\OVTray.exe
PRC - [2013/01/24 07:51:12 | 003,394,144 | ---- | M] (Crawler.com) -- C:\Program Files (x86)\OnlineVault\OV.exe
PRC - [2012/12/26 16:33:06 | 001,683,608 | ---- | M] (Bandoo Media Inc) -- C:\Program Files (x86)\Search Results Toolbar\Datamngr\datamngrUI.exe
PRC - [2012/12/18 08:28:26 | 000,825,560 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
PRC - [2012/12/18 06:28:10 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/12/14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/12/14 16:49:28 | 000,512,360 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012/12/14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/12/03 13:57:32 | 034,199,424 | ---- | M] (SlimWare Utilities, Inc.) -- C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe
PRC - [2012/11/05 11:46:44 | 000,019,800 | ---- | M] (Smartbar) -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.exe
PRC - [2012/10/30 17:50:59 | 004,297,136 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012/10/30 17:50:59 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012/10/14 17:42:04 | 049,891,200 | ---- | M] (Slimware Utilities, Inc.) -- C:\Program Files (x86)\FixCleaner\FixCleaner.exe
PRC - [2012/10/09 09:53:36 | 004,441,920 | ---- | M] (Akamai Technologies, Inc.) -- C:\Users\Gilbert\AppData\Local\Akamai\netsession_win.exe
PRC - [2012/09/20 07:44:16 | 000,296,392 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
PRC - [2012/08/21 13:48:28 | 003,110,808 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\SyncUP\SyncUP.exe
PRC - [2012/02/09 11:14:40 | 008,669,080 | ---- | M] (Systweak Inc) -- C:\Program Files (x86)\Advanced Driver Updater\adu.exe
PRC - [2012/02/01 10:50:58 | 000,968,048 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
PRC - [2012/01/03 16:31:34 | 001,391,272 | ---- | M] (Ask) -- C:\Program Files (x86)\Ask.com\Updater\Updater.exe
PRC - [2011/11/25 15:32:36 | 000,687,400 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2011/11/15 02:21:28 | 000,066,560 | ---- | M] (Nalpeiron Ltd.) -- C:\Windows\SysWOW64\nlssrv32.exe
PRC - [2011/10/27 16:56:35 | 000,470,528 | ---- | M] (Livescribe) -- C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe
PRC - [2011/10/01 08:30:22 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2011/10/01 08:30:18 | 000,508,776 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2011/07/07 16:14:02 | 000,150,312 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\SyncUP\Nero.AndroidServer.exe
PRC - [2011/06/01 10:42:28 | 000,071,432 | ---- | M] (Memeo) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoDashboard.exe
PRC - [2011/06/01 10:42:28 | 000,014,088 | ---- | M] (Memeo) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
PRC - [2011/06/01 10:16:54 | 002,260,992 | ---- | M] (Axentra Corporation) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
PRC - [2011/01/24 12:36:28 | 000,085,272 | ---- | M] (Memeo Inc.) -- C:\Program Files (x86)\Memeo\AutoBackup\MemeoUpdater.exe
PRC - [2011/01/24 12:35:30 | 000,324,320 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\InstantBackup.exe
PRC - [2010/11/17 09:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2009/09/15 18:47:36 | 000,479,232 | ---- | M] (Nikon Corporation) -- C:\Program Files (x86)\Common Files\Nikon\Monitor\NkMonitor.exe
PRC - [2009/07/20 03:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
PRC - [2006/04/18 03:00:00 | 000,102,400 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE


========== Modules (No Company Name) ==========

MOD - [2013/02/20 01:40:56 | 000,240,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\78967b28f748b8807eaa97c1cb454adc\WindowsFormsIntegration.ni.dll
MOD - [2013/02/20 01:40:14 | 001,670,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\7366a39c36523a084bc11c230929ff92\Microsoft.VisualBasic.ni.dll
MOD - [2013/02/17 00:49:46 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\7ff638de44686eab4afaa8b3c8a9cfca\System.ServiceProcess.ni.dll
MOD - [2013/02/17 00:49:32 | 011,833,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\5ecf01964c70e453d71e5d7653912ff9\System.Web.ni.dll
MOD - [2013/02/17 00:49:25 | 001,658,368 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\eea7ca5afefdfb4ffc81143d425cee9a\PresentationUI.ni.dll
MOD - [2013/02/17 00:48:44 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\cb562e2e4f74ae607f1186f6ec50cec7\System.Windows.Forms.ni.dll
MOD - [2013/02/17 00:48:36 | 001,806,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\4976e150a5d096db3981d4d56dda5a8e\System.Deployment.ni.dll
MOD - [2013/01/10 10:23:48 | 000,401,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\25cfdeaf091f16f3f3a7123a91a179ab\System.Xml.Linq.ni.dll
MOD - [2013/01/10 10:23:43 | 009,922,560 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\04be51ee3cc47fbd5cbdc8761879a145\System.Data.Entity.ni.dll
MOD - [2013/01/10 10:22:29 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\77dfcfed5fd5f67d0d3edc545935bb21\System.Core.ni.dll
MOD - [2013/01/10 10:21:22 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\302207b4fa3083899fd8ab4db98cecc5\System.Management.ni.dll
MOD - [2013/01/10 09:51:13 | 002,347,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\2ad51da1b752b19c992fcefd56eb7c01\System.Runtime.Serialization.ni.dll
MOD - [2013/01/10 09:50:31 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d7d20811a7ce7cc589153648cbb1ce5c\PresentationFramework.Aero.ni.dll
MOD - [2013/01/10 09:50:01 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\90b89f6e8032310e9ac72a309fd49e83\System.Runtime.Remoting.ni.dll
MOD - [2013/01/10 09:49:59 | 000,628,224 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\01c6cb58745f397c9b7ccf3ab7bfc9cd\System.EnterpriseServices.ni.dll
MOD - [2013/01/10 09:49:58 | 000,627,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\536d704e93ffec9b54e4a0312fb5b996\System.Transactions.ni.dll
MOD - [2013/01/10 09:49:54 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\dd20416f723ee13ffb4173ec1afc4ec4\System.Data.ni.dll
MOD - [2013/01/10 09:49:48 | 001,117,184 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\abf5f0f6b5d995fb86b0529ac85e14ed\System.DirectoryServices.ni.dll
MOD - [2013/01/10 09:49:47 | 001,044,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Printing\dac9bb4d4745a4227e7ed701498a9469\System.Printing.ni.dll
MOD - [2013/01/10 09:49:42 | 002,157,056 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\284f81850cf194b71156025b06e74e06\ReachFramework.ni.dll
MOD - [2013/01/10 09:49:34 | 014,340,608 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ff7c9a4f41f7cccc47e696c11b9f8469\PresentationFramework.ni.dll
MOD - [2013/01/10 09:49:14 | 000,039,424 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\2f32b665b25e874e0222f7be18b0161f\PresentationCFFRasterizer.ni.dll
MOD - [2013/01/10 09:49:02 | 001,592,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
MOD - [2013/01/10 09:48:57 | 000,185,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a7424b1be331f4b534ea24e0c21dbe47\UIAutomationTypes.ni.dll
MOD - [2013/01/10 09:48:57 | 000,060,928 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\23da92e38ffc0bbf6673adb1892aa0f4\UIAutomationProvider.ni.dll
MOD - [2013/01/10 09:48:55 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\d908c91e24616e6b8d38c9da61038b25\Accessibility.ni.dll
MOD - [2013/01/10 09:48:53 | 012,237,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\19b3d17c3ce0e264c4fb62028161adf7\PresentationCore.ni.dll
MOD - [2013/01/10 09:48:33 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\cf827fe7bc99d9bcf0ba3621054ef527\WindowsBase.ni.dll
MOD - [2013/01/10 09:45:41 | 000,684,032 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Security\3abd733e8fa28fafbfc99458fdf691da\System.Security.ni.dll
MOD - [2013/01/10 09:30:19 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
MOD - [2013/01/10 09:30:13 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\195a77fcc6206f8bb35d419ff2cf0d72\System.Configuration.ni.dll
MOD - [2013/01/10 09:30:11 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
MOD - [2013/01/10 09:30:05 | 000,015,872 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\9d2a9fc04e660079633eb74b37a1d77c\Microsoft.VisualC.ni.dll
MOD - [2013/01/10 09:29:53 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
MOD - [2012/12/11 23:32:26 | 005,025,792 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
MOD - [2012/11/05 11:51:28 | 000,013,144 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Resources.ProcessDownMonitor.dll
MOD - [2012/11/05 11:51:24 | 000,047,448 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Resources.LanguageSettings.dll
MOD - [2012/11/05 11:51:20 | 000,068,952 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll
MOD - [2012/11/05 11:51:16 | 000,015,704 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Personalization.Common.dll
MOD - [2012/11/05 11:51:12 | 000,018,264 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll
MOD - [2012/11/05 11:47:34 | 000,024,920 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll
MOD - [2012/11/05 11:47:16 | 000,037,720 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Resources.AutomaticUpdates.dll
MOD - [2012/11/05 11:47:12 | 000,079,192 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Personalization.BusinessLogic.dll
MOD - [2012/11/05 11:46:56 | 000,012,120 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.EventManager.dll
MOD - [2012/11/05 11:46:54 | 000,029,016 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll
MOD - [2012/11/05 11:46:52 | 000,013,656 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.GUI.Multimedia.Loader.dll
MOD - [2012/11/05 11:46:52 | 000,013,144 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll
MOD - [2012/11/05 11:46:48 | 001,305,944 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll
MOD - [2012/11/05 11:46:48 | 000,080,728 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.GUI.Docking.dll
MOD - [2012/11/05 11:46:46 | 000,565,080 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll
MOD - [2012/11/05 11:46:34 | 000,046,936 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Smartbar\Application\MACTrackBarLib.dll
MOD - [2012/10/05 04:53:24 | 003,198,976 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
MOD - [2012/10/05 04:53:24 | 000,630,784 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
MOD - [2012/08/31 04:59:19 | 004,550,656 | ---- | M] () -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
MOD - [2012/02/01 10:50:58 | 000,968,048 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
MOD - [2012/02/01 10:44:34 | 008,151,040 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtGui4.dll
MOD - [2012/02/01 10:44:34 | 002,278,400 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtCore4.dll
MOD - [2011/09/27 07:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/09/27 07:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/07/07 16:14:06 | 000,891,688 | ---- | M] () -- C:\Program Files (x86)\Nero\SyncUP\System.Data.SQLite.dll
MOD - [2011/07/07 16:13:24 | 000,026,408 | ---- | M] () -- C:\Program Files (x86)\Nero\SyncUP\AdbDetect.dll
MOD - [2011/07/07 16:13:10 | 000,251,688 | ---- | M] () -- C:\Program Files (x86)\Nero\SyncUP\System.ComponentModel.Composition.dll
MOD - [2011/06/23 09:42:48 | 000,168,448 | ---- | M] () -- C:\Program Files (x86)\Advanced Driver Updater\unrar.dll
MOD - [2011/06/01 10:46:02 | 000,030,984 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\Plugins\Memeo.Dashboard.SeagateSharePlusPlugin.dll
MOD - [2011/06/01 10:42:24 | 000,108,296 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\Memeo.Progress.dll
MOD - [2011/06/01 10:16:54 | 000,971,776 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libxml2.dll
MOD - [2011/06/01 10:16:54 | 000,241,664 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libupnp.dll
MOD - [2011/01/24 12:35:58 | 002,896,608 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.UI.dll
MOD - [2011/01/24 12:35:54 | 000,026,848 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\Memeo.Client.DriveDetection.dll
MOD - [2011/01/24 12:35:30 | 000,324,320 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\InstantBackup.exe
MOD - [2010/11/24 21:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll
MOD - [2010/11/20 21:24:32 | 000,425,984 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
MOD - [2010/11/20 21:24:08 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2010/11/20 21:24:08 | 000,839,680 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
MOD - [2010/11/20 21:23:48 | 002,048,000 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
MOD - [2010/11/17 09:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2010/03/22 16:59:46 | 000,504,293 | ---- | M] () -- C:\Program Files (x86)\Memeo\AutoBackup\sqlite3.dll
MOD - [2009/07/20 03:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
MOD - [2009/06/10 15:23:19 | 000,261,632 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
MOD - [2009/06/10 15:22:40 | 000,010,752 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll


========== Services (SafeList) ==========

SRV:64bit: - [2012/10/30 17:50:59 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2012/05/04 19:36:44 | 000,235,520 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011/06/06 14:23:18 | 006,438,264 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe -- (TabletServiceWacom)
SRV:64bit: - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/07/13 19:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2013/02/27 09:59:42 | 000,251,248 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/02/05 10:14:01 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/01/16 09:27:57 | 000,032,808 | ---- | M] (Just Develop It) [Auto | Running] -- C:\Program Files (x86)\MyPC Backup\BackupStack.exe -- (BackupStack)
SRV - [2012/12/18 06:28:10 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/12/14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/12/14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/09/05 09:25:52 | 000,628,664 | ---- | M] (WinZip Computing, S.L. (WinZip Computing)) [Auto | Running] -- C:\Program Files (x86)\WinZip System Utilities Suite\WINZIPSSDefragSrv64.exe -- (WINZIPSSDiskOptimizer)
SRV - [2012/05/23 08:53:08 | 000,024,576 | ---- | M] (Realtek Semiconductor.) [Auto | Stopped] -- C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe -- (SetupARService)
SRV - [2011/11/25 15:32:36 | 000,687,400 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2011/11/15 02:21:28 | 000,066,560 | ---- | M] (Nalpeiron Ltd.) [Auto | Running] -- C:\Windows\SysWOW64\nlssrv32.exe -- (nlsX86cc)
SRV - [2011/11/01 16:26:28 | 000,016,680 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\570\g2aservice.exe -- (GoToAssist)
SRV - [2011/10/27 16:56:35 | 000,470,528 | ---- | M] (Livescribe) [Auto | Running] -- C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe -- (PenCommService)
SRV - [2011/10/01 08:30:22 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2011/10/01 08:30:18 | 000,508,776 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2011/06/01 10:42:28 | 000,014,088 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe -- (SeagateDashboardService)
SRV - [2011/01/24 12:35:36 | 000,025,824 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe -- (MemeoBackgroundService)
SRV - [2010/11/25 04:34:18 | 000,219,632 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe -- (RoxWatch12)
SRV - [2010/11/25 04:33:18 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
SRV - [2010/08/25 19:28:54 | 002,823,000 | ---- | M] (Dell, Inc.) [Auto | Running] -- C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe -- (NOBU)
SRV - [2010/03/18 15:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/06/10 15:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2006/04/18 03:00:00 | 000,102,400 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE -- (EPSON_PM_RPCV4_01)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/02/27 08:54:21 | 000,015,712 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SWDUMon.sys -- (SWDUMon)
DRV:64bit: - [2012/12/14 16:49:28 | 000,024,176 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012/11/08 08:55:53 | 000,030,568 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:64bit: - [2012/10/30 17:51:56 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012/10/30 17:51:55 | 000,984,144 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012/10/30 17:51:55 | 000,370,288 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012/10/30 17:51:55 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012/10/30 17:51:53 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012/10/25 18:17:58 | 000,095,744 | ---- | M] (Alcor Micro, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmUStor.sys -- (AmUStor)
DRV:64bit: - [2012/10/15 10:59:28 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012/10/12 10:54:54 | 000,015,776 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacomrouterfilter.sys -- (wacomrouterfilter)
DRV:64bit: - [2012/10/12 10:20:39 | 000,081,312 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wachidrouter.sys -- (WacHidRouter)
DRV:64bit: - [2012/10/12 10:20:39 | 000,013,728 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidkmdf.sys -- (hidkmdf)
DRV:64bit: - [2012/08/23 08:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 08:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/23 08:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/08/21 12:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/08/17 15:26:48 | 000,025,584 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Running] -- c:\Program Files\Dell Support Center\pcdsrvc_x64.pkms -- (PCDSRVC{1E208CE0-FB7451FF-06020200}_0)
DRV:64bit: - [2012/05/04 20:31:04 | 010,831,872 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2012/05/04 20:31:04 | 010,831,872 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/05/04 18:37:14 | 000,328,192 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/03/01 00:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/01/16 01:08:02 | 000,042,624 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2012/01/16 01:08:00 | 000,082,048 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2011/12/01 10:42:44 | 000,072,240 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\NBVol.sys -- (NBVol)
DRV:64bit: - [2011/12/01 10:42:44 | 000,015,920 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\NBVolUp.sys -- (NBVolUp)
DRV:64bit: - [2011/10/21 02:01:31 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/10/21 02:01:31 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/10/01 08:30:22 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2011/10/01 08:30:18 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2011/10/01 08:30:18 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2011/10/01 08:30:10 | 000,764,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2011/03/17 12:10:48 | 000,013,312 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacmoumonitor.sys -- (wacmoumonitor)
DRV:64bit: - [2011/03/17 12:10:36 | 000,012,848 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacommousefilter.sys -- (wacommousefilter)
DRV:64bit: - [2010/11/20 21:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/03/19 02:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/10/01 00:34:30 | 000,121,872 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2009/08/06 06:43:58 | 000,320,040 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a)
DRV:64bit: - [2009/07/13 19:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 19:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 19:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/17 10:54:46 | 000,040,976 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV:64bit: - [2009/06/17 10:54:30 | 000,057,872 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2009/06/17 10:54:22 | 000,055,312 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2009/06/10 14:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 14:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 14:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 14:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/05 12:00:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie)
DRV:64bit: - [2006/11/01 11:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2009/07/13 19:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.funmood...zy&cr=284030384
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
IE:64bit: - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://start.funmood...zy&cr=284030384
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2413}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim....4-D067E5072C39}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://toolbar.inbox...aspx?tbid=80273
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://toolbar.inbox...id=80273&lng=en
IE - HKLM\..\URLSearchHook: {b97ed18c-1a8a-4acc-884f-b4fe7415adf2} - C:\Program Files (x86)\Serif_DrawPlus\prxtbSeri.dll (Conduit Ltd.)
IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
IE - HKLM\..\SearchScopes,DefaultScope = {EEE6C360-6118-11DC-9C72-001320C79847}
IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://start.funmood...zy&cr=284030384
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{1A89D2C7-D73F-DAA1-0E22-427446954AB5}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://slirsredirect...mrud=29-01-2013

IE - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{7DFBEC25-E1C6-7769-85DB-7EFF7E4B1D01}: "URL" = http://feed.helperba...q={searchTerms}
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2413}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweeti...4-D067E5072C39}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Backup.Old.Start Page = http://www.inbox.com...id=80062&lng=en
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = http://search.babylo...000d067e5072c39
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperba...q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperba...q={searchTerms}
IE - HKCU\..\SearchScopes,Backup.Old.DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKCU\..\SearchScopes,bProtectorDefaultScope = {443789B7-F39C-4b5c-9287-DA72D38F4FE6}
IE - HKCU\..\SearchScopes,DefaultScope = {ACE8169B-2A79-4EDC-9229-51F2F3AEFAC5}
IE - HKCU\..\SearchScopes\{91607fa7-3c2f-4f90-93e3-d5337a6b0ac2}: "URL" = browseforchange/search/redirect/?type=default&user_id=be48eb40-8915-4872-8bf7-e4d09a10eb04&query={searchTerms}
IE - HKCU\..\SearchScopes\{ACE8169B-2A79-4EDC-9229-51F2F3AEFAC5}: "URL" = http://www.google.co...utputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;<local>

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: ""
FF - prefs.js..browser.search.defaulturl: "http://search.aol.co...rud=01-02-2013"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.aol.com/?...usaolp00000011"
FF - prefs.js..extensions.enabledAddons: %7B7affbfae-c4e2-4915-8c0f-00fa3ec610a1%7D:5.74.1.9081
FF - prefs.js..extensions.enabledAddons: %7B6ad56361-628f-471b-8f9d-4c338973a87d%7D:5.27.1.8951
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:7.0.1474
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.1
FF - prefs.js..keyword.URL: "http://www.aol.com/"


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_171.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_171.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Nero.com/KM: C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: File not found
FF - HKLM\Software\MozillaPlugins\@wacom.com/wacom-plugin,version=1.1.0.10: C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF - HKLM\Software\MozillaPlugins\@wacom.com/wacom-plugin,version=1.1.0.3: C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{31F37877-0076-4d26-8FD4-D9A7223FFC06}: C:\Program Files (x86)\FacePaint\FacePaintFF\{31F37877-0076-4d26-8FD4-D9A7223FFC06} [2013/01/24 13:24:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2013/01/24 13:23:39 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013/02/22 01:33:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/02/05 10:14:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/01/29 11:57:23 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\[email protected] [2012/03/08 15:22:22 | 000,000,000 | ---D | M]

[2013/01/09 15:11:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Extensions
[2012/07/12 10:22:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions
[2012/04/12 12:39:47 | 000,000,000 | ---D | M] (Serif DrawPlus Community Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions\{b97ed18c-1a8a-4acc-884f-b4fe7415adf2}
[2012/07/12 10:23:04 | 000,000,000 | ---D | M] (Bandoo for Firefox) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions\[email protected]
[2013/02/27 10:30:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions
[2013/01/29 11:57:25 | 000,000,000 | ---D | M] (AOL Radio Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\{6ad56361-628f-471b-8f9d-4c338973a87d}
[2013/01/09 15:11:31 | 000,000,000 | ---D | M] (AOL Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
[2013/02/27 10:31:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\staged
[2013/02/07 20:29:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions
[2012/12/18 13:59:15 | 000,000,000 | ---D | M] (CouponAmazing) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\couponamazing@jetpack
[2012/03/08 15:23:37 | 000,000,000 | ---D | M] (Babylon) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\[email protected]
[2012/07/22 14:06:57 | 000,000,000 | ---D | M] (Funmoods.com) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\[email protected]
[2012/03/08 15:22:22 | 000,000,000 | ---D | M] (SpecialSavings) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\[email protected]
[2013/01/21 13:27:24 | 000,002,381 | ---- | M] () -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\searchplugins\Web Search.xml
[2013/02/20 07:35:13 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/01/09 15:32:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions
[2013/01/13 14:47:56 | 000,000,000 | ---D | M] (AOL Toolbar) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
[2013/02/22 01:33:51 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2013/02/05 10:14:01 | 000,262,552 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2013/01/22 11:32:05 | 000,003,593 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml
[2013/01/04 21:45:12 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2013/01/04 21:45:12 | 000,002,058 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - homepage: http://www.aol.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.aol.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\pdf.dll
CHR - plugin: GoogleChromeRemotePlugin (Enabled) = C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\GoogleChromeRemotePlugin.dll
CHR - plugin: Bandoo (Enabled) = C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Extensions\dloejdefkancmfajekobpfoacecnhpgp\1.0.0.0_0\ChromePlugin.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.60.126.1_0\McChPlg.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\plugins\npMozCouponPrinter.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Nero Kwik Media Helper (Enabled) = C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: AVG SiteSafety plugin (Enabled) = C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\11.1.0\\npsitesafety.dll
CHR - plugin: AdobeAAMDetect (Enabled) = C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
CHR - plugin: Java™ Platform SE 7 U9 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll
CHR - plugin: Wacom Dynamic Link Library (Enabled) = C:\Program Files (x86)\TabletPlugins\npwacom.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Conduit Update (Enabled) = C:\Users\Gilbert\AppData\Local\Conduit\Update\1.3.25.11\npConduitUpdate3.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll
CHR - plugin: Java Deployment Toolkit 7.0.70.11 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: McAfee SecurityCenter (Enabled) = c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: __MSG_buttonTitle__ = C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Extensions\clikkblliffbbkffahjehcdeknmedelg\1.0.7_0\
CHR - Extension: avast! WebRep = C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\

O1 HOSTS File: ([2013/02/17 21:53:41 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (DataMngr) - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\x64\BrowserConnection.dll (Bandoo Media Inc)
O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (SpecialSavings) - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - Reg Error: Value error. File not found
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No CLSID value found.
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Serif DrawPlus Toolbar) - {b97ed18c-1a8a-4acc-884f-b4fe7415adf2} - C:\Program Files (x86)\Serif_DrawPlus\prxtbSeri.dll (Conduit Ltd.)
O2 - BHO: (WeCareReminder Class) - {D824F0DE-3D60-4F57-9EB1-66033ECD8ABB} - Reg Error: Value error. File not found
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (AlxHelper Class) - {F443A627-5009-4323-9C1D-7FD598D0D712} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (no name) - !{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - !{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (no name) - {8660E5B3-6C41-44DE-8503-98D99BBECD41} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Serif DrawPlus Toolbar) - {b97ed18c-1a8a-4acc-884f-b4fe7415adf2} - C:\Program Files (x86)\Serif_DrawPlus\prxtbSeri.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Amazon Browser Bar) - {EA582743-9076-4178-9AA6-7393FDF4D5CE} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {256DB8BC-7DA7-4248-97CD-44E07216B7F1} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (Serif DrawPlus Toolbar) - {B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2} - C:\Program Files (x86)\Serif_DrawPlus\prxtbSeri.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [DellStage] C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe ()
O4:64bit: - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AccuWeatherWidget] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe ()
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [DATAMNGR] C:\Program Files (x86)\Search Results Toolbar\Datamngr\datamngrUI.exe (Bandoo Media Inc)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe (Dell, Inc.)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [Memeo Instant Backup] C:\Program Files (x86)\Memeo\AutoBackup\MemeoLauncher2.exe (Memeo Inc.)
O4 - HKLM..\Run: [NBAgent] C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe (Nero AG)
O4 - HKLM..\Run: [NeroLauncher] C:\Program Files (x86)\Nero\SyncUP\NeroLauncher.exe ()
O4 - HKLM..\Run: [Nikon Transfer Monitor] C:\Program Files (x86)\Common Files\Nikon\Monitor\NkMonitor.exe (Nikon Corporation)
O4 - HKLM..\Run: [Online Vault] C:\Program Files (x86)\OnlineVault\OVTray.exe (Crawler.com)
O4 - HKLM..\Run: [RoxWatchTray] C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe (Sonic Solutions)
O4 - HKLM..\Run: [Seagate Dashboard] C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe ()
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Gilbert\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKCU..\Run: [Browser Infrastructure Helper] C:\Users\Gilbert\AppData\Local\Smartbar\Application\Smartbar.exe (Smartbar)
O4 - HKCU..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (Apple Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoThumbnailCache = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: SpecialSavings - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - Reg Error: Value error. File not found
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_27)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_27)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlm.tools.aka...vex-2.2.6.0.cab (DLM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C222D50F-6DC4-4FDA-8104-A4ACE29CE364}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
O18:64bit: - Protocol\Handler\belarc - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SEARCH~2\Datamngr\x64\datamngr.dll) - C:\Program Files (x86)\Search Results Toolbar\Datamngr\x64\datamngr.dll (Bandoo Media Inc)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SEARCH~2\Datamngr\x64\IEBHO.dll) - C:\Program Files (x86)\Search Results Toolbar\Datamngr\x64\IEBHO.dll (Bandoo Media Inc)
O20 - AppInit_DLLs: (c:\PROGRA~2\SEARCH~2\Datamngr\datamngr.dll) - c:\Program Files (x86)\Search Results Toolbar\Datamngr\datamngr.dll (Bandoo Media Inc)
O20 - AppInit_DLLs: (c:\PROGRA~2\SEARCH~2\Datamngr\IEBHO.dll) - c:\Program Files (x86)\Search Results Toolbar\Datamngr\IEBHO.dll (Bandoo Media Inc)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\570\G2AWinLogon_x64.dll) - C:\Program Files (x86)\Citrix\GoToAssist\570\g2awinlogon_x64.dll (Citrix Online, a division of Citrix Systems, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/11/22 14:08:16 | 000,000,110 | -H-- | M] () - I:\autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/02/22 01:34:32 | 000,370,288 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2013/02/22 01:34:32 | 000,025,232 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2013/02/22 01:34:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2013/02/22 01:34:30 | 000,059,728 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2013/02/22 01:34:30 | 000,054,072 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2013/02/22 01:34:29 | 000,984,144 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2013/02/22 01:34:19 | 000,071,600 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2013/02/22 01:34:18 | 000,285,328 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/02/22 01:33:21 | 000,041,224 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2013/02/22 01:33:20 | 000,227,648 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2013/02/22 01:33:09 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2013/02/22 01:33:09 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013/02/19 23:48:10 | 000,000,000 | ---D | C] -- C:\Users\Gilbert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
[2013/02/19 23:48:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VS Revo Group
[2013/02/19 23:23:20 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2013/02/17 22:39:19 | 002,237,968 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Gilbert\Desktop\tdsskiller.exe
[2013/02/17 21:55:25 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2013/02/17 21:38:21 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2013/02/17 21:38:21 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2013/02/17 21:38:21 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2013/02/17 21:38:13 | 000,000,000 | ---D | C] -- C:\Qoobox
[2013/02/17 21:37:44 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2013/02/15 23:44:12 | 000,000,000 | ---D | C] -- C:\Users\Gilbert\Desktop\Fix PC Tools Feb2013
[2013/02/15 07:52:30 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Gilbert\Desktop\OTL.exe
[2013/01/31 10:38:09 | 007,164,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2013/01/31 10:38:09 | 000,434,960 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2013/01/31 10:38:09 | 000,141,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2013/01/31 10:38:09 | 000,124,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2013/01/31 10:38:09 | 000,075,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2013/01/29 11:57:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Software Update Utility
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/02/27 10:43:03 | 000,000,294 | ---- | M] () -- C:\Windows\tasks\AdvancedDriverUpdater_UPDATES.job
[2013/02/27 10:23:00 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/02/27 09:59:44 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/02/27 09:07:07 | 000,000,278 | ---- | M] () -- C:\Windows\tasks\AdvancedDriverUpdater.job
[2013/02/27 09:02:38 | 000,796,692 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/02/27 09:02:38 | 000,672,902 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/02/27 09:02:38 | 000,125,376 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/02/27 09:01:39 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/02/27 09:01:39 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/02/27 08:55:39 | 000,000,422 | ---- | M] () -- C:\Windows\tasks\DriverUpdate Startup.job
[2013/02/27 08:55:05 | 000,000,406 | ---- | M] () -- C:\Windows\tasks\FixCleaner Startup.job
[2013/02/27 08:54:40 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SpeedyPC Update Version3 Startup Task.job
[2013/02/27 08:54:21 | 000,015,712 | ---- | M] () -- C:\Windows\SysNative\drivers\SWDUMon.sys
[2013/02/27 08:51:49 | 000,000,896 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/02/27 08:51:48 | 000,000,418 | ---- | M] () -- C:\Windows\tasks\PC Optimizer Pro64 startups.job
[2013/02/27 08:51:20 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/02/27 08:50:29 | 334,737,407 | -HS- | M] () -- C:\hiberfil.sys
[2013/02/23 18:00:00 | 000,000,496 | ---- | M] () -- C:\Windows\tasks\SpeedyPC Registration3.job
[2013/02/22 01:34:32 | 000,001,920 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/02/22 01:34:19 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2013/02/19 23:48:10 | 000,001,266 | ---- | M] () -- C:\Users\Gilbert\Desktop\Revo Uninstaller.lnk
[2013/02/17 21:53:41 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2013/02/17 00:44:57 | 004,973,688 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/02/17 00:07:22 | 1482,637,331 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2013/02/15 23:33:42 | 002,237,968 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Gilbert\Desktop\tdsskiller.exe
[2013/02/14 21:35:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Gilbert\Desktop\OTL.exe
[2013/02/11 19:16:38 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
[2013/02/04 21:10:07 | 054,215,992 | ---- | M] () -- C:\Users\Gilbert\Desktop\epson13469.exe
[2013/02/04 21:06:04 | 000,000,932 | ---- | M] () -- C:\Users\Public\Desktop\EPSON Scan.lnk
[2013/02/01 13:09:01 | 000,730,238 | ---- | M] () -- C:\Users\Gilbert\Documents\2012-04-08 8x10 print on 11x14 matt copy-Recovered.psd
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/02/22 01:34:32 | 000,001,920 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/02/22 01:34:18 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2013/02/19 23:48:10 | 000,001,266 | ---- | C] () -- C:\Users\Gilbert\Desktop\Revo Uninstaller.lnk
[2013/02/17 21:38:21 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2013/02/17 21:38:21 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2013/02/17 21:38:21 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2013/02/17 21:38:21 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2013/02/17 21:38:21 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2013/02/11 19:16:38 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
[2013/02/04 21:09:24 | 054,215,992 | ---- | C] () -- C:\Users\Gilbert\Desktop\epson13469.exe
[2013/02/04 21:06:04 | 000,000,932 | ---- | C] () -- C:\Users\Public\Desktop\EPSON Scan.lnk
[2013/02/01 13:09:00 | 000,730,238 | ---- | C] () -- C:\Users\Gilbert\Documents\2012-04-08 8x10 print on 11x14 matt copy-Recovered.psd
[2013/01/22 17:36:04 | 000,000,132 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Adobe BMP Format CS6 Prefs
[2013/01/20 12:20:20 | 000,000,059 | ---- | C] () -- C:\Windows\SysWow64\status.ini
[2012/12/28 17:11:06 | 000,000,218 | ---- | C] () -- C:\Users\Gilbert\.recently-used.xbel
[2012/12/18 15:10:51 | 000,000,048 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\mbam.context.scan
[2012/12/18 09:23:40 | 000,204,960 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/12/18 09:23:40 | 000,157,152 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/12/05 10:11:26 | 002,725,054 | ---- | C] () -- C:\Users\Gilbert\IMG.bmp
[2012/12/04 15:45:46 | 000,000,095 | ---- | C] () -- C:\Users\Gilbert\.accessibility.properties
[2012/10/12 15:54:46 | 001,115,808 | ---- | C] () -- C:\Users\Gilbert\2012-10-13 Saturday game day.jpg
[2012/09/14 14:47:05 | 001,511,333 | ---- | C] () -- C:\Users\Gilbert\2012-09-15 Saturday game day.jpg
[2012/09/01 11:34:43 | 001,085,595 | ---- | C] () -- C:\Users\Gilbert\2012-09-01 Saturday game day schedule.jpg
[2012/08/09 10:24:29 | 000,074,703 | ---- | C] () -- C:\Windows\SysWow64\mfc45.dll
[2012/07/24 09:49:35 | 000,000,641 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Contact Sheet II.xml
[2012/06/21 13:08:11 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2012/05/29 14:37:26 | 000,384,844 | ---- | C] () -- C:\Users\Gilbert\AppData\Local\funmoods-speeddial.crx
[2012/04/27 13:16:37 | 000,007,168 | ---- | C] () -- C:\Users\Gilbert\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/02/29 14:07:42 | 056,885,213 | ---- | C] () -- C:\Users\Gilbert\AdobePhotoshop12-4-mul-AdobeUpdate.zip
[2012/02/29 12:30:29 | 029,517,954 | ---- | C] () -- C:\Users\Gilbert\AdobeBridge_4.0.5_mul_AdobeUpdate.zip
[2012/02/21 16:52:34 | 000,000,426 | ---- | C] () -- C:\Users\Gilbert\content.inf
[2012/02/21 16:52:22 | 000,038,912 | ---- | C] () -- C:\Users\Gilbert\01183278.dot
[2012/01/21 16:03:48 | 000,000,017 | ---- | C] () -- C:\Windows\SysWow64\shortcut_ex.dat
[2011/12/31 14:35:36 | 000,000,132 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Adobe Targa Format CS5 Prefs
[2011/12/07 12:42:39 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Analog Mono
[2011/12/07 12:42:39 | 000,000,268 | RH-- | C] () -- C:\Users\Gilbert\AppData\Roaming\Action Clauses
[2011/12/07 12:42:39 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLdu.DAT
[2011/12/07 12:13:31 | 000,098,304 | ---- | C] () -- C:\Windows\SysWow64\redmonnt.dll
[2011/11/28 15:05:21 | 000,001,456 | ---- | C] () -- C:\Users\Gilbert\AppData\Local\Adobe Save for Web 12.0 Prefs
[2011/11/28 11:22:07 | 000,000,329 | -H-- | C] () -- C:\Users\Gilbert\.BridgeLabelsAndRatings
[2011/11/16 20:57:59 | 000,000,083 | ---- | C] () -- C:\Windows\EPSP1400.ini
[2011/11/09 14:46:34 | 000,000,132 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Adobe BMP Format CS5 Prefs
[2011/11/02 17:54:42 | 000,123,090 | ---- | C] () -- C:\Windows\File Renamer - Basic Uninstaller.exe
[2011/10/28 10:22:35 | 000,073,220 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat
[2011/10/28 10:22:35 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat
[2011/10/28 10:22:35 | 000,029,114 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat
[2011/10/28 10:22:35 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat
[2011/10/28 10:22:35 | 000,021,021 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat
[2011/10/28 10:22:35 | 000,015,670 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat
[2011/10/28 10:22:35 | 000,013,280 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat
[2011/10/28 10:22:35 | 000,010,673 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat
[2011/10/28 10:22:35 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat
[2011/10/28 10:22:35 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat
[2011/10/28 10:22:35 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat
[2011/10/28 10:22:35 | 000,001,137 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat
[2011/10/28 10:22:35 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat
[2011/10/28 10:22:35 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_CF.dat
[2011/10/28 10:22:35 | 000,001,104 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_EN.dat
[2011/10/28 10:22:35 | 000,000,097 | ---- | C] () -- C:\Windows\SysWow64\PICSDK.ini
[2011/10/21 02:06:55 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin

========== ZeroAccess Check ==========

[2009/07/13 22:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/08 23:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 22:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 19:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 21:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 19:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2012/04/06 12:26:23 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Anthropics
[2012/02/22 14:41:37 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Babylon
[2012/07/12 10:22:59 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Bandoo
[2012/01/26 13:22:48 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Blio
[2011/11/01 09:28:04 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/11/09 15:20:30 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\com.adobe.DC3Module.AdobeADC
[2012/07/05 15:46:54 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2012/08/21 11:19:35 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\com.livescribe.LivescribeConnect
[2011/11/15 09:21:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\DriverCure
[2011/11/02 06:37:32 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Epson
[2012/02/23 13:12:38 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Fingertapps
[2012/11/27 12:17:17 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\FixCleaner
[2012/09/09 12:22:04 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\FreeCDRipper
[2012/09/09 15:43:48 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\FreeFLVConverter
[2012/12/28 16:35:07 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\inkscape
[2011/10/30 17:58:20 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Leadertech
[2012/03/29 12:23:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\licenses
[2011/11/01 16:31:41 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Memeo
[2012/11/15 18:56:55 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\MusicNet
[2011/12/07 12:54:48 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Nikon
[2013/01/24 13:25:09 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\OnlineVault
[2012/03/02 13:52:32 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\onOne Software
[2012/08/03 12:41:34 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\ParetoLogic
[2011/10/28 14:03:00 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PCDr
[2012/03/24 11:09:12 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PCMM2009
[2012/03/24 11:07:11 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PCMM2011
[2012/04/09 12:13:32 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PDAppFlex
[2012/03/12 09:25:17 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PerformerSoft
[2013/02/20 20:00:14 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\RegCleanProFreeDownloadPackages
[2012/01/09 15:02:35 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\RegistryKeys
[2012/05/31 11:18:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Sammsoft
[2011/11/01 16:04:30 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Seagate
[2012/04/12 14:40:55 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Serif
[2013/02/11 20:02:54 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SoftGrid Client
[2011/11/15 09:21:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SpeedyPC Software
[2012/09/20 10:30:23 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Spyware Terminator
[2011/11/07 06:59:02 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012/05/29 14:39:27 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SumatraPDF
[2012/05/08 11:30:05 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SupportSoft
[2013/02/20 01:22:22 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Systweak
[2012/01/21 13:05:11 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\TP
[2011/12/10 11:37:20 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Windows Live Writer
[2012/11/02 14:46:04 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\WinZip
[2011/10/28 17:50:02 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\ZinioReader4

========== Purity Check ==========



< End of report >
  • 0

#20
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,701 posts
  • MVP
Copy the next two lines:

sc stop avgtp
sc delete avgtp

Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue. Right click and Paste or Edit then Paste and the copied lines should appear.
Hit Enter. Close the command window.

That should get rid of the last AVG driver.

adwCleaner, Event Viewer Tool, OTL, farbar service scanner. If you do want me to run any of these ... some had text boxes to copy and paste into the tool, would I use those old ones or need new ones?


Go back and run anything you skipped. If I gave you something to paste into the box then use that.

We still have a lot of adware but I will let the adwcleaner do its thing first before I tell OTL to remove them.
  • 0

#21
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
Notes …

Did the stop/delete avgtp commands.

Ran adwCleaner … actually ran twice, once a few days ago for first time, then again today … will post both logs below.

Ran sfc /scannow … completed run 100% verification …. Reported “windows resource protection found corrupt files and successfully repaired them”

Was getting popup from memeo reporting a long ago backup to external drive that started but never finished. I used RevoUninstaller to remove it.

Cleared windows logs (system and application) as instructed

Rebooted machine.

Ran Event Viewer Tool by Rosso twice as instructed. Saved both log files.

Was going copy the text in the code box to then run OTL when started having system crashes.

Several times now. Says it’s dumping memory to somewhere. Has crashed when running a browser trying to access the geekstogo forum (was going to copy the text box), also crashed when opening directory window and trying to view a text file from notepad. Screen does a quick flicker, then bluescreen.
Bluescreen message: “PAGE_FAULT_IN_NONPAGED_AREA”

Googled above message … some suggested could be driver problem.

FYI … I have not removed “Advanced Driver Update” which comes up and scans everytime the machine is booted up. Thought it might be a legit program my dad bought that might keep drivers up to date and thought might keep for him … unless you think otherwise. Anyway … for the first time since I had been working on his machine … it detected two drivers that were outdated. ATI Radeon HD4200 driver and Realtek Hi Def Audio driver. I had ignored that update recommendation while I was doing the above procedures, however, after getting several crashes in a row, tried updating the drivers as recommended.

Updated both drivers, but system is still crashing.

I was able to copy log files to jump drive and will post logs from previous procedures. Appears if I don’t try to open a text file … it stays up.

Previously used Firefox to access geektogo forum, this time tried Chrome. Was able to successfully get to forum page and copy text.

Ran OTL as instructed.
Note: while OTL was running, the OTL window “blinked” a lot … could see “(Not Responding”) momentarily flashing up on title bar of window. Is that normal?

Got both log files, will post separately.

Ran Farbar as instructed. Got log, will post
Note: The farbar window blinked like the OTL, showing the intermittent “(Not Responding”)

After all that … tried to view a log file in notepad … momentarily displayed the file, but screen then flashed, tore up, then went to bluescreen with same message.

Any thoughts on what might be causing the crashes?

Thanks! … Mike
  • 0

#22
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
# AdwCleaner v2.113 - Logfile created 02/28/2013 at 00:12:06
# Updated 23/02/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Gilbert - GILBERT-PC
# Boot Mode : Normal
# Running from : C:\Users\Gilbert\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\Program Files (x86)\search results toolbar
File Deleted : C:\END
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
File Deleted : C:\user.js
File Deleted : C:\Users\Gilbert\AppData\Local\funmoods-speeddial.crx
File Deleted : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
File Deleted : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
File Deleted : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_apps.conduit.com_0.localstorage
File Deleted : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_apps.conduit.com_0.localstorage-journal
File Deleted : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
File Deleted : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
File Deleted : C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\searchplugins\Web Search.xml
Folder Deleted : C:\Program Files (x86)\Ask.com
Folder Deleted : C:\Program Files (x86)\Common Files\Software Update Utility
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\Free Offers from Freeze.com
Folder Deleted : C:\Program Files (x86)\iBryte
Folder Deleted : C:\Program Files (x86)\Linkury
Folder Deleted : C:\Program Files (x86)\Serif_DrawPlus
Folder Deleted : C:\Program Files (x86)\Windows iLivid Toolbar
Folder Deleted : C:\ProgramData\{B49A644A-1076-4A3D-B124-DAA7862F2318}
Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ilivid
Folder Deleted : C:\ProgramData\WeCareReminder
Folder Deleted : C:\Users\Gilbert\AppData\Local\APN
Folder Deleted : C:\Users\Gilbert\AppData\Local\Babylon
Folder Deleted : C:\Users\Gilbert\AppData\Local\Conduit
Folder Deleted : C:\Users\Gilbert\AppData\Local\Ilivid Player
Folder Deleted : C:\Users\Gilbert\AppData\Local\Linkury
Folder Deleted : C:\Users\Gilbert\AppData\Local\Smartbar
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\Bandoo
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\iBryte
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\searchquband
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\Serif_DrawPlus
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\Toolbar4
Folder Deleted : C:\Users\Gilbert\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Gilbert\AppData\Roaming\Bandoo
Folder Deleted : C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\staged
Folder Deleted : C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\[email protected]
Folder Deleted : C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\[email protected]
Folder Deleted : C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\[email protected]
Folder Deleted : C:\Users\Gilbert\AppData\Roaming\PerformerSoft
Folder Deleted : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

***** [Registry] *****

Data Deleted : [x64] HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~2\Datamngr\x64\datamngr.dll
Data Deleted : [x64] HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~2\Datamngr\x64\IEBHO.dll
Data Deleted : HKLM\..\Windows [AppInit_DLLs] = c:\PROGRA~2\SEARCH~2\Datamngr\datamngr.dll
Data Deleted : HKLM\..\Windows [AppInit_DLLs] = c:\PROGRA~2\SEARCH~2\Datamngr\IEBHO.dll
Key Deleted : HKCU\Software\24x7HELP
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\I Want This
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Serif_DrawPlus
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\SpecialSavings
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\Google\Chrome\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl
Key Deleted : HKCU\Software\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A69A551A-1AAE-4B67-8C2E-52F8B8A19504}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A69A551A-1AAE-4B67-8C2E-52F8B8A19504}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C16529F0-6E07-4220-86DC-EEA2547AE5EF}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EA582743-9076-4178-9AA6-7393FDF4D5CE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\SmartbarBackup
Key Deleted : HKCU\Software\SmartbarLog
Key Deleted : HKCU\Software\wecarereminder
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2413}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\Software\24x7HELP
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\Bandoo
Key Deleted : HKLM\SOFTWARE\Classes\AlxSSB.AlxTBSSB
Key Deleted : HKLM\SOFTWARE\Classes\AlxSSB.AlxTBSSB.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1F02FB61-2BE5-4C16-8199-AEAA16EB0342}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4FBBF769-ECEB-420A-B536-133B1D505C36}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6C259840-5BA8-46E6-8ED1-EF3BA47D8BA1}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DealScout.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll
Key Deleted : HKLM\SOFTWARE\Classes\AppID\dnu.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IEHelperv2.5.0.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdate
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser.1
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController.1
Key Deleted : HKLM\SOFTWARE\Classes\IEHelperv250.WeCareReminder
Key Deleted : HKLM\SOFTWARE\Classes\IEHelperv250.WeCareReminder.1
Key Deleted : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard
Key Deleted : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard.1
Key Deleted : HKLM\Software\Classes\Installer\Features\2B1E51D87B2D71A44BB42DDD5E894160
Key Deleted : HKLM\Software\Classes\Installer\Products\2B1E51D87B2D71A44BB42DDD5E894160
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3036369
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3106574
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{75E8DA27-44AF-40AE-927C-F2EEC99D65B1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{92380354-381A-471F-BE2E-DD9ACD9777EA}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B12920CF-BE13-4C09-890D-1B6EFFFE2FBE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DA9FC525-41ED-4C00-B046-946DA7CDD305}
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\Freeze.com
Key Deleted : HKLM\Software\Funmoods
Key Deleted : HKLM\Software\iLividSRTB
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{A69A551A-1AAE-4B67-8C2E-52F8B8A19504}
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\I Want This_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\I Want This_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C16529F0-6E07-4220-86DC-EEA2547AE5EF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Key Deleted : HKLM\Software\Serif_DrawPlus
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{69A72A8A-84ED-4A75-8CE7-263DBEF3E5D3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9FF9AE6F-4553-41A7-B645-B0E88850EABF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A69A551A-1AAE-4B67-8C2E-52F8B8A19504}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C16529F0-6E07-4220-86DC-EEA2547AE5EF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CE4DB5A3-58E6-41F1-8761-47238DF4F468}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E15A9BFD-D16D-496D-8222-44CADF316E70}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E57091A7-B5F0-4C42-9329-72ED3E59ED31}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EA582743-9076-4178-9AA6-7393FDF4D5CE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F773BB94-6C19-4643-A570-0E429103D1C3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0923E315-2D8B-48CE-A37C-AE9A42F9711C}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1A1BBE49-C6F1-40EA-9D2F-262F0AF6DDE3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2022154E-7E3E-4809-871E-1B45A6FC7058}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{292ECB89-350E-45D2-816F-52C15305B144}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{36CC2180-B6BF-4951-9578-6B0C40044AAA}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{44A36944-22C6-4A08-BC7C-161F3E540DBF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{51F04BD6-3888-4849-864C-617FAE709CE0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6247DD2C-8CF9-4041-A235-93691D71B8B4}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{835BED79-DF7E-4096-B355-ED43FA2EA87B}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C953EC4-8CFA-44FB-B32E-1249E5505091}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8E863BD6-50DE-47D0-A6F1-3C1F6DB72451}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9DD36F1E-5111-41C5-ADED-A2A11A2FF3E4}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A2FB8217-E320-434E-BA79-513E357AD54F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A9CEBBF4-9129-479A-9231-E833ED3D3A8F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AFD4D1F9-167C-4884-95AE-B5A9797B0D16}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C47788B1-9604-4D7A-A684-F4D450F2D7D2}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{CA3B41D0-D4C1-4808-B248-75DA27238828}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D4A2FF6C-087F-4D40-8DFE-92AAD484BFB8}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D88B9D5C-A9CF-4C69-906D-1CCA5D85A2EF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E4E394E0-D331-431F-B76D-E3A19193D5F6}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F773BB94-6C19-4643-A570-0E429103D1C3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F83AF01C-AA2F-469F-8BE7-D178FB15FD07}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC5B6CDA-8F90-4740-9A8C-28AC5D3C73FE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB6B7066-3258-4F84-95A5-30065459708F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0345199-B35D-47A5-BCDA-50B3925E889C}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E57091A7-B5F0-4C42-9329-72ED3E59ED31}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2413}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8D15E1B2-D2B7-4A17-B44B-D2DDE5981406}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Serif_DrawPlus Toolbar
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdUtility
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9FF9AE6F-4553-41A7-B645-B0E88850EABF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CE4DB5A3-58E6-41F1-8761-47238DF4F468}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0923E315-2D8B-48CE-A37C-AE9A42F9711C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0FA32667-9A8A-4E9C-902F-CA3323180003}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1A1BBE49-C6F1-40EA-9D2F-262F0AF6DDE3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2022154E-7E3E-4809-871E-1B45A6FC7058}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{292ECB89-350E-45D2-816F-52C15305B144}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{36CC2180-B6BF-4951-9578-6B0C40044AAA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44A36944-22C6-4A08-BC7C-161F3E540DBF}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6247DD2C-8CF9-4041-A235-93691D71B8B4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6B458F62-592F-4B25-8967-E6A350A59328}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{835BED79-DF7E-4096-B355-ED43FA2EA87B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8E863BD6-50DE-47D0-A6F1-3C1F6DB72451}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9DD36F1E-5111-41C5-ADED-A2A11A2FF3E4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A2FB8217-E320-434E-BA79-513E357AD54F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A9CEBBF4-9129-479A-9231-E833ED3D3A8F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AFD4D1F9-167C-4884-95AE-B5A9797B0D16}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C47788B1-9604-4D7A-A684-F4D450F2D7D2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA3B41D0-D4C1-4808-B248-75DA27238828}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D4A2FF6C-087F-4D40-8DFE-92AAD484BFB8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D88B9D5C-A9CF-4C69-906D-1CCA5D85A2EF}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F83AF01C-AA2F-469F-8BE7-D178FB15FD07}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FCC9CDD3-EFFF-11D1-A9F0-00A0244AC403}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2413}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D7E97865-918F-41E4-9CD0-25AB1C574CE8}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper]
Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [[email protected]]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{B97ED18C-1A8A-4ACC-884F-B4FE7415ADF2}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EA582743-9076-4178-9AA6-7393FDF4D5CE}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16464

Deleted : [HKCU\Software\Microsoft\Internet Explorer\Main - Backup.Old.Start Page]
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://feed.helperbar.com/?publisher=W3i&dpid=W3i&co=US&userid=a5513025-9ecb-4d61-8acf-6674a1acd784&searchtype=ds&q={searchTerms} --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - SearchAssistant] = hxxp://feed.helperbar.com/?publisher=W3i&dpid=W3i&co=US&userid=a5513025-9ecb-4d61-8acf-6674a1acd784&searchtype=ds&q={searchTerms} --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - SearchAssistant] = hxxp://toolbar.inbox.com/search/ie.aspx?tbid=80273&lng=en --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - CustomizeSearch] = hxxp://toolbar.inbox.com/help/sa_customize.aspx?tbid=80273 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://start.funmoods.com/?f=1&a=iron2&chnl=iron2&cd=2XzutAtN2Y1L1Qzu0DtDyCyB0EyDtDyBtB0CtAzytD0FyD0BtN0D0TzutBtDtCtBtDyDtBzy&cr=284030384 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010000.10025&barid={85DB6197-5F3F-11E2-B6F4-D067E5072C39} --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - SearchAssistant] = hxxp://toolbar.inbox.com/search/ie.aspx?tbid=80273&lng=en --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - CustomizeSearch] = hxxp://toolbar.inbox.com/help/sa_customize.aspx?tbid=80273 --> hxxp://www.google.com

-\\ Mozilla Firefox v18.0.1 (en-US)

File : C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\prefs.js

C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\user.js ... Deleted !

Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Deleted : user_pref("browser.search.defaulturl", "hxxp://search.aol.com/search/search?q={searchTerms}&s_it=aol[...]
Deleted : user_pref("browser.search.order.1", "Ask.com");
Deleted : user_pref("extensions.asktb.ff-original-keyword-url", "hxxp://slirsredirect.search.aol.com/redirecto[...]
Deleted : user_pref("extensions.helperbar.SmartbarDisabled", false);
Deleted : user_pref("extensions.helperbar.SmartbarStateMinimaized", false);

-\\ Google Chrome v19.0.1084.56

File : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted [l.19] : urls_to_restore_on_startup = [ "hxxp://search.imesh.net" ]
Deleted [l.2043] : urls_to_restore_on_startup = [ "hxxp://search.imesh.net" ]

*************************

AdwCleaner[S1].txt - [400 octets] - [28/02/2013 00:10:51]
AdwCleaner[S2].txt - [37004 octets] - [28/02/2013 00:12:06]

########## EOF - C:\AdwCleaner[S2].txt - [37065 octets] ##########
  • 0

#23
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
# AdwCleaner v2.113 - Logfile created 03/02/2013 at 03:46:26
# Updated 23/02/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Gilbert - GILBERT-PC
# Boot Mode : Normal
# Running from : C:\Users\Gilbert\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\Program Files (x86)\search results toolbar
Folder Deleted : C:\Users\Gilbert\AppData\LocalLow\Conduit

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16464

[OK] Registry is clean.

-\\ Mozilla Firefox v18.0.1 (en-US)

File : C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v19.0.1084.56

File : C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [400 octets] - [28/02/2013 00:10:51]
AdwCleaner[S2].txt - [36965 octets] - [28/02/2013 00:12:06]
AdwCleaner[S3].txt - [1179 octets] - [02/03/2013 03:46:26]

########## EOF - C:\AdwCleaner[S3].txt - [1239 octets] ##########
  • 0

#24
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 02/03/2013 5:22:10 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 02/03/2013 11:21:00 AM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 02/03/2013 11:21:00 AM
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (120000 milliseconds) while waiting for the Windows Search service to connect.

Log: 'System' Date/Time: 02/03/2013 11:20:30 AM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The Windows Search service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.

Log: 'System' Date/Time: 02/03/2013 11:20:30 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The Windows Search service terminated with service-specific error %%-2147218174.

Log: 'System' Date/Time: 02/03/2013 11:19:50 AM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 02/03/2013 11:19:50 AM
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (120000 milliseconds) while waiting for the Windows Search service to connect.

Log: 'System' Date/Time: 02/03/2013 11:19:39 AM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Google Update Service (gupdate) service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 02/03/2013 11:19:39 AM
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (120000 milliseconds) while waiting for the Google Update Service (gupdate) service to connect.

Log: 'System' Date/Time: 02/03/2013 11:18:55 AM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 02/03/2013 11:18:55 AM
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (120000 milliseconds) while waiting for the Windows Search service to connect.

Log: 'System' Date/Time: 02/03/2013 11:18:24 AM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.

Log: 'System' Date/Time: 02/03/2013 11:18:24 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The Windows Search service terminated with service-specific error %%-2147218174.

Log: 'System' Date/Time: 02/03/2013 11:16:58 AM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Sendoriv1 service failed to start due to the following error: The system cannot find the file specified.

Log: 'System' Date/Time: 02/03/2013 11:11:51 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} did not register with DCOM within the required timeout.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 02/03/2013 11:18:05 AM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_GENERIC-&PROD_COMPACT_FLASH&REV_1.01#058F63626420&10#.
  • 0

#25
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 02/03/2013 5:47:41 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 02/03/2013 11:45:55 AM
Type: Error Category: 3
Event: 7010 Source: Microsoft-Windows-Search
The index cannot be initialized.

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:45:55 AM
Type: Error Category: 3
Event: 3058 Source: Microsoft-Windows-Search
The application cannot be initialized.

Context: Windows Application

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:45:55 AM
Type: Error Category: 3
Event: 3028 Source: Microsoft-Windows-Search
The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:45:55 AM
Type: Error Category: 1
Event: 9002 Source: Microsoft-Windows-Search
The Windows Search Service cannot load the property store information.

Context: Windows Application, SystemIndex Catalog

Details:
The content index server cannot find a description of the content index in its database. Search will automatically attempt to recreate the content index description. If this problem persists, stop and restart the search service and, if necessary, delete and recreate the content index. (HRESULT : 0x80041181) (0x80041181)


Log: 'Application' Date/Time: 02/03/2013 11:43:54 AM
Type: Error Category: 3
Event: 7010 Source: Microsoft-Windows-Search
The index cannot be initialized.

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:43:54 AM
Type: Error Category: 3
Event: 3058 Source: Microsoft-Windows-Search
The application cannot be initialized.

Context: Windows Application

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:43:54 AM
Type: Error Category: 3
Event: 3028 Source: Microsoft-Windows-Search
The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:43:50 AM
Type: Error Category: 1
Event: 9002 Source: Microsoft-Windows-Search
The Windows Search Service cannot load the property store information.

Context: Windows Application, SystemIndex Catalog

Details:
The content index server cannot find a description of the content index in its database. Search will automatically attempt to recreate the content index description. If this problem persists, stop and restart the search service and, if necessary, delete and recreate the content index. (HRESULT : 0x80041181) (0x80041181)


Log: 'Application' Date/Time: 02/03/2013 11:42:40 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 02/03/2013 11:42:27 AM
Type: Error Category: 0
Event: 0 Source: SetupARService
Service cannot be started. System.NullReferenceException: Object reference not set to an instance of an object. at SetupAfterRebootService.SetupARService.OnStart(String[] args) at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Log: 'Application' Date/Time: 02/03/2013 11:37:20 AM
Type: Error Category: 3
Event: 7010 Source: Microsoft-Windows-Search
The index cannot be initialized.

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:37:20 AM
Type: Error Category: 3
Event: 3058 Source: Microsoft-Windows-Search
The application cannot be initialized.

Context: Windows Application

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:37:20 AM
Type: Error Category: 3
Event: 3028 Source: Microsoft-Windows-Search
The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:37:20 AM
Type: Error Category: 1
Event: 9002 Source: Microsoft-Windows-Search
The Windows Search Service cannot load the property store information.

Context: Windows Application, SystemIndex Catalog

Details:
The content index server cannot find a description of the content index in its database. Search will automatically attempt to recreate the content index description. If this problem persists, stop and restart the search service and, if necessary, delete and recreate the content index. (HRESULT : 0x80041181) (0x80041181)


Log: 'Application' Date/Time: 02/03/2013 11:35:19 AM
Type: Error Category: 3
Event: 7010 Source: Microsoft-Windows-Search
The index cannot be initialized.

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:35:19 AM
Type: Error Category: 3
Event: 3058 Source: Microsoft-Windows-Search
The application cannot be initialized.

Context: Windows Application

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:35:19 AM
Type: Error Category: 3
Event: 3028 Source: Microsoft-Windows-Search
The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
The object you are trying to create already exists. Try again using a different name. (HRESULT : 0x80040d02) (0x80040d02)


Log: 'Application' Date/Time: 02/03/2013 11:35:01 AM
Type: Error Category: 1
Event: 9002 Source: Microsoft-Windows-Search
The Windows Search Service cannot load the property store information.

Context: Windows Application, SystemIndex Catalog

Details:
The content index server cannot find a description of the content index in its database. Search will automatically attempt to recreate the content index description. If this problem persists, stop and restart the search service and, if necessary, delete and recreate the content index. (HRESULT : 0x80041181) (0x80041181)


Log: 'Application' Date/Time: 02/03/2013 11:33:30 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 02/03/2013 11:32:51 AM
Type: Error Category: 0
Event: 0 Source: SetupARService
Service cannot be started. System.NullReferenceException: Object reference not set to an instance of an object. at SetupAfterRebootService.SetupARService.OnStart(String[] args) at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 02/03/2013 11:42:52 AM
Type: Warning Category: 6
Event: 3057 Source: Application Virtualization Client
{tid=DAC}
The Application Virtualization Client Core initialized correctly. Installed Product: Version: 4.6.1.10263 Install Path: C:\Program Files (x86)\Microsoft Application Virtualization Client Global Data Directory: C:\ProgramData\Microsoft\Application Virtualization Client\ Machine Name: GILBERT-PC Operating System: Windows 7 64-bit Service Pack 1.0 Build 7601 OSD Command:

Log: 'Application' Date/Time: 02/03/2013 11:42:43 AM
Type: Warning Category: 3
Event: 3191 Source: Application Virtualization Client
{tid=DAC}
-------------------------------------------------------- Initialized client log (C:\ProgramData\Microsoft\Application Virtualization Client\sftlog.txt)

Log: 'Application' Date/Time: 02/03/2013 11:33:12 AM
Type: Warning Category: 6
Event: 3057 Source: Application Virtualization Client
{tid=FC0}
The Application Virtualization Client Core initialized correctly. Installed Product: Version: 4.6.1.10263 Install Path: C:\Program Files (x86)\Microsoft Application Virtualization Client Global Data Directory: C:\ProgramData\Microsoft\Application Virtualization Client\ Machine Name: GILBERT-PC Operating System: Windows 7 64-bit Service Pack 1.0 Build 7601 OSD Command:

Log: 'Application' Date/Time: 02/03/2013 11:32:59 AM
Type: Warning Category: 3
Event: 3191 Source: Application Virtualization Client
{tid=FC0}
-------------------------------------------------------- Initialized client log (C:\ProgramData\Microsoft\Application Virtualization Client\sftlog.txt)

Log: 'Application' Date/Time: 02/03/2013 11:27:40 AM
Type: Warning Category: 1
Event: 100 Source: CVHSVC
Information only. CurrentSoftGridPrereq: Click2Run installation (version = 14.0.4763.1000) is found on the machine; skipping installation...

Log: 'Application' Date/Time: 02/03/2013 11:27:40 AM
Type: Warning Category: 1
Event: 100 Source: CVHSVC
Information only. C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE is trusted.

Log: 'Application' Date/Time: 02/03/2013 11:17:20 AM
Type: Warning Category: 6
Event: 3057 Source: Application Virtualization Client
{tid=1204}
The Application Virtualization Client Core initialized correctly. Installed Product: Version: 4.6.1.10263 Install Path: C:\Program Files (x86)\Microsoft Application Virtualization Client Global Data Directory: C:\ProgramData\Microsoft\Application Virtualization Client\ Machine Name: GILBERT-PC Operating System: Windows 7 64-bit Service Pack 1.0 Build 7601 OSD Command:

Log: 'Application' Date/Time: 02/03/2013 11:17:08 AM
Type: Warning Category: 3
Event: 3191 Source: Application Virtualization Client
{tid=1204}
-------------------------------------------------------- Initialized client log (C:\ProgramData\Microsoft\Application Virtualization Client\sftlog.txt)
  • 0

Advertisements


#26
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
OTL logfile created on: 3/2/2013 11:32:17 AM - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Gilbert\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.75 Gb Total Physical Memory | 3.34 Gb Available Physical Memory | 58.15% Memory free
11.50 Gb Paging File | 8.78 Gb Available in Paging File | 76.36% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 916.66 Gb Total Space | 249.50 Gb Free Space | 27.22% Space Free | Partition Type: NTFS
Drive I: | 1.87 Gb Total Space | 1.01 Gb Free Space | 53.88% Space Free | Partition Type: FAT

Computer Name: GILBERT-PC | User Name: Gilbert | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/02/14 21:35:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Gilbert\Desktop\OTL.exe
PRC - [2013/01/24 07:51:16 | 000,371,808 | ---- | M] (Crawler.com) -- C:\Program Files (x86)\OnlineVault\OVTray.exe
PRC - [2013/01/24 07:51:12 | 003,394,144 | ---- | M] (Crawler.com) -- C:\Program Files (x86)\OnlineVault\OV.exe
PRC - [2012/12/18 08:28:26 | 000,825,560 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
PRC - [2012/12/18 06:28:10 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/12/14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/12/14 16:49:28 | 000,512,360 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012/12/14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/12/03 13:57:32 | 034,199,424 | ---- | M] (SlimWare Utilities, Inc.) -- C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe
PRC - [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2012/10/30 17:50:59 | 004,297,136 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012/10/30 17:50:59 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012/10/14 17:42:04 | 049,891,200 | ---- | M] (Slimware Utilities, Inc.) -- C:\Program Files (x86)\FixCleaner\FixCleaner.exe
PRC - [2012/10/09 09:53:36 | 004,441,920 | ---- | M] (Akamai Technologies, Inc.) -- C:\Users\Gilbert\AppData\Local\Akamai\netsession_win.exe
PRC - [2012/08/21 13:48:28 | 003,110,808 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\SyncUP\SyncUP.exe
PRC - [2012/02/09 11:14:40 | 008,669,080 | ---- | M] (Systweak Inc) -- C:\Program Files (x86)\Advanced Driver Updater\adu.exe
PRC - [2012/02/01 10:50:58 | 000,968,048 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
PRC - [2011/11/25 15:32:36 | 000,687,400 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2011/11/15 02:21:28 | 000,066,560 | ---- | M] (Nalpeiron Ltd.) -- C:\Windows\SysWOW64\nlssrv32.exe
PRC - [2011/10/27 16:56:35 | 000,470,528 | ---- | M] (Livescribe) -- C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe
PRC - [2011/10/01 08:30:22 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2011/10/01 08:30:18 | 000,508,776 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2011/07/07 16:14:02 | 000,150,312 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\SyncUP\Nero.AndroidServer.exe
PRC - [2011/06/01 10:42:28 | 000,071,432 | ---- | M] (Memeo) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoDashboard.exe
PRC - [2011/06/01 10:42:28 | 000,014,088 | ---- | M] (Memeo) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
PRC - [2011/06/01 10:16:54 | 002,260,992 | ---- | M] (Axentra Corporation) -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
PRC - [2010/11/17 09:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2009/09/15 18:47:36 | 000,479,232 | ---- | M] (Nikon Corporation) -- C:\Program Files (x86)\Common Files\Nikon\Monitor\NkMonitor.exe
PRC - [2009/07/20 03:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
PRC - [2006/04/18 03:00:00 | 000,102,400 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE


========== Modules (No Company Name) ==========

MOD - [2013/02/22 03:01:17 | 012,638,576 | ---- | M] () -- C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\PepperFlash\11.6.602.167\pepflashplayer.dll
MOD - [2013/02/20 01:40:56 | 000,240,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\78967b28f748b8807eaa97c1cb454adc\WindowsFormsIntegration.ni.dll
MOD - [2013/02/17 00:49:46 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\7ff638de44686eab4afaa8b3c8a9cfca\System.ServiceProcess.ni.dll
MOD - [2013/02/17 00:49:32 | 011,833,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\5ecf01964c70e453d71e5d7653912ff9\System.Web.ni.dll
MOD - [2013/02/17 00:49:25 | 001,658,368 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\eea7ca5afefdfb4ffc81143d425cee9a\PresentationUI.ni.dll
MOD - [2013/02/17 00:48:44 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\cb562e2e4f74ae607f1186f6ec50cec7\System.Windows.Forms.ni.dll
MOD - [2013/02/17 00:48:36 | 001,806,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\4976e150a5d096db3981d4d56dda5a8e\System.Deployment.ni.dll
MOD - [2013/01/10 10:23:48 | 000,401,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\25cfdeaf091f16f3f3a7123a91a179ab\System.Xml.Linq.ni.dll
MOD - [2013/01/10 10:23:43 | 009,922,560 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\04be51ee3cc47fbd5cbdc8761879a145\System.Data.Entity.ni.dll
MOD - [2013/01/10 10:22:29 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\77dfcfed5fd5f67d0d3edc545935bb21\System.Core.ni.dll
MOD - [2013/01/10 10:21:22 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\302207b4fa3083899fd8ab4db98cecc5\System.Management.ni.dll
MOD - [2013/01/10 09:51:13 | 002,347,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\2ad51da1b752b19c992fcefd56eb7c01\System.Runtime.Serialization.ni.dll
MOD - [2013/01/10 09:50:31 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d7d20811a7ce7cc589153648cbb1ce5c\PresentationFramework.Aero.ni.dll
MOD - [2013/01/10 09:50:01 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\90b89f6e8032310e9ac72a309fd49e83\System.Runtime.Remoting.ni.dll
MOD - [2013/01/10 09:49:59 | 000,628,224 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\01c6cb58745f397c9b7ccf3ab7bfc9cd\System.EnterpriseServices.ni.dll
MOD - [2013/01/10 09:49:58 | 000,627,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\536d704e93ffec9b54e4a0312fb5b996\System.Transactions.ni.dll
MOD - [2013/01/10 09:49:54 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\dd20416f723ee13ffb4173ec1afc4ec4\System.Data.ni.dll
MOD - [2013/01/10 09:49:48 | 001,117,184 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\abf5f0f6b5d995fb86b0529ac85e14ed\System.DirectoryServices.ni.dll
MOD - [2013/01/10 09:49:47 | 001,044,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Printing\dac9bb4d4745a4227e7ed701498a9469\System.Printing.ni.dll
MOD - [2013/01/10 09:49:42 | 002,157,056 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\284f81850cf194b71156025b06e74e06\ReachFramework.ni.dll
MOD - [2013/01/10 09:49:34 | 014,340,608 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ff7c9a4f41f7cccc47e696c11b9f8469\PresentationFramework.ni.dll
MOD - [2013/01/10 09:49:14 | 000,039,424 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\2f32b665b25e874e0222f7be18b0161f\PresentationCFFRasterizer.ni.dll
MOD - [2013/01/10 09:49:02 | 001,592,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
MOD - [2013/01/10 09:48:57 | 000,185,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a7424b1be331f4b534ea24e0c21dbe47\UIAutomationTypes.ni.dll
MOD - [2013/01/10 09:48:57 | 000,060,928 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\23da92e38ffc0bbf6673adb1892aa0f4\UIAutomationProvider.ni.dll
MOD - [2013/01/10 09:48:55 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\d908c91e24616e6b8d38c9da61038b25\Accessibility.ni.dll
MOD - [2013/01/10 09:48:53 | 012,237,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\19b3d17c3ce0e264c4fb62028161adf7\PresentationCore.ni.dll
MOD - [2013/01/10 09:48:33 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\cf827fe7bc99d9bcf0ba3621054ef527\WindowsBase.ni.dll
MOD - [2013/01/10 09:45:41 | 000,684,032 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Security\3abd733e8fa28fafbfc99458fdf691da\System.Security.ni.dll
MOD - [2013/01/10 09:30:19 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
MOD - [2013/01/10 09:30:13 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\195a77fcc6206f8bb35d419ff2cf0d72\System.Configuration.ni.dll
MOD - [2013/01/10 09:30:11 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
MOD - [2013/01/10 09:30:05 | 000,015,872 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\9d2a9fc04e660079633eb74b37a1d77c\Microsoft.VisualC.ni.dll
MOD - [2013/01/10 09:29:53 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
MOD - [2012/10/31 16:15:05 | 000,460,312 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\ppgooglenaclpluginchrome.dll
MOD - [2012/10/31 16:15:02 | 004,007,448 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\pdf.dll
MOD - [2012/10/31 16:13:47 | 000,587,288 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\libglesv2.dll
MOD - [2012/10/31 16:13:46 | 000,123,928 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\libegl.dll
MOD - [2012/10/31 16:13:35 | 000,156,712 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\avutil-51.dll
MOD - [2012/10/31 16:13:34 | 000,274,984 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\avformat-54.dll
MOD - [2012/10/31 16:13:32 | 002,168,360 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\avcodec-54.dll
MOD - [2012/02/01 10:50:58 | 000,968,048 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
MOD - [2012/02/01 10:44:34 | 008,151,040 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtGui4.dll
MOD - [2012/02/01 10:44:34 | 002,278,400 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtCore4.dll
MOD - [2011/09/27 07:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/09/27 07:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/07/07 16:14:06 | 000,891,688 | ---- | M] () -- C:\Program Files (x86)\Nero\SyncUP\System.Data.SQLite.dll
MOD - [2011/07/07 16:13:24 | 000,026,408 | ---- | M] () -- C:\Program Files (x86)\Nero\SyncUP\AdbDetect.dll
MOD - [2011/07/07 16:13:10 | 000,251,688 | ---- | M] () -- C:\Program Files (x86)\Nero\SyncUP\System.ComponentModel.Composition.dll
MOD - [2011/06/23 09:42:48 | 000,168,448 | ---- | M] () -- C:\Program Files (x86)\Advanced Driver Updater\unrar.dll
MOD - [2011/06/01 10:46:02 | 000,030,984 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\Plugins\Memeo.Dashboard.SeagateSharePlusPlugin.dll
MOD - [2011/06/01 10:42:24 | 000,108,296 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\Memeo.Progress.dll
MOD - [2011/06/01 10:16:54 | 000,971,776 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libxml2.dll
MOD - [2011/06/01 10:16:54 | 000,241,664 | ---- | M] () -- C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\libupnp.dll
MOD - [2010/11/24 21:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll
MOD - [2010/11/20 21:24:08 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2010/11/17 09:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2009/07/20 03:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
MOD - [2009/06/10 15:23:19 | 000,261,632 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll


========== Services (SafeList) ==========

SRV:64bit: - [2012/10/30 17:50:59 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2012/05/04 19:36:44 | 000,235,520 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011/06/06 14:23:18 | 006,438,264 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe -- (TabletServiceWacom)
SRV:64bit: - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/07/13 19:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2013/02/27 09:59:42 | 000,251,248 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/02/05 10:14:01 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/01/16 09:27:57 | 000,032,808 | ---- | M] (Just Develop It) [Auto | Running] -- C:\Program Files (x86)\MyPC Backup\BackupStack.exe -- (BackupStack)
SRV - [2012/12/18 06:28:10 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/12/14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/12/14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/09/05 09:25:52 | 000,628,664 | ---- | M] (WinZip Computing, S.L. (WinZip Computing)) [Auto | Running] -- C:\Program Files (x86)\WinZip System Utilities Suite\WINZIPSSDefragSrv64.exe -- (WINZIPSSDiskOptimizer)
SRV - [2012/05/23 08:53:08 | 000,024,576 | ---- | M] (Realtek Semiconductor.) [Auto | Stopped] -- C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe -- (SetupARService)
SRV - [2011/11/25 15:32:36 | 000,687,400 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2011/11/15 02:21:28 | 000,066,560 | ---- | M] (Nalpeiron Ltd.) [Auto | Running] -- C:\Windows\SysWOW64\nlssrv32.exe -- (nlsX86cc)
SRV - [2011/11/01 16:26:28 | 000,016,680 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\570\g2aservice.exe -- (GoToAssist)
SRV - [2011/10/27 16:56:35 | 000,470,528 | ---- | M] (Livescribe) [Auto | Running] -- C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe -- (PenCommService)
SRV - [2011/10/01 08:30:22 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2011/10/01 08:30:18 | 000,508,776 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2011/06/01 10:42:28 | 000,014,088 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe -- (SeagateDashboardService)
SRV - [2010/11/25 04:34:18 | 000,219,632 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe -- (RoxWatch12)
SRV - [2010/11/25 04:33:18 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
SRV - [2010/08/25 19:28:54 | 002,823,000 | ---- | M] (Dell, Inc.) [Auto | Running] -- C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe -- (NOBU)
SRV - [2010/03/18 15:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/06/10 15:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2006/04/18 03:00:00 | 000,102,400 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE -- (EPSON_PM_RPCV4_01)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/03/02 11:06:42 | 000,015,712 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SWDUMon.sys -- (SWDUMon)
DRV:64bit: - [2012/12/14 16:49:28 | 000,024,176 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012/10/30 17:51:56 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012/10/30 17:51:55 | 000,984,144 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012/10/30 17:51:55 | 000,370,288 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012/10/30 17:51:55 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012/10/30 17:51:53 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012/10/25 18:17:58 | 000,095,744 | ---- | M] (Alcor Micro, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmUStor.sys -- (AmUStor)
DRV:64bit: - [2012/10/15 10:59:28 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012/10/12 10:54:54 | 000,015,776 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacomrouterfilter.sys -- (wacomrouterfilter)
DRV:64bit: - [2012/10/12 10:20:39 | 000,081,312 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wachidrouter.sys -- (WacHidRouter)
DRV:64bit: - [2012/10/12 10:20:39 | 000,013,728 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidkmdf.sys -- (hidkmdf)
DRV:64bit: - [2012/08/23 08:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 08:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/21 12:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/08/17 15:26:48 | 000,025,584 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Stopped] -- c:\Program Files\Dell Support Center\pcdsrvc_x64.pkms -- (PCDSRVC{1E208CE0-FB7451FF-06020200}_0)
DRV:64bit: - [2012/05/04 20:31:04 | 010,831,872 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2012/05/04 20:31:04 | 010,831,872 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/05/04 18:37:14 | 000,328,192 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/03/01 00:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/01/16 01:08:02 | 000,042,624 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2012/01/16 01:08:00 | 000,082,048 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2011/12/01 10:42:44 | 000,072,240 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\NBVol.sys -- (NBVol)
DRV:64bit: - [2011/12/01 10:42:44 | 000,015,920 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\NBVolUp.sys -- (NBVolUp)
DRV:64bit: - [2011/10/21 02:01:31 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/10/21 02:01:31 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/10/01 08:30:22 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2011/10/01 08:30:18 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2011/10/01 08:30:18 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2011/10/01 08:30:10 | 000,764,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2011/03/17 12:10:48 | 000,013,312 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacmoumonitor.sys -- (wacmoumonitor)
DRV:64bit: - [2011/03/17 12:10:36 | 000,012,848 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacommousefilter.sys -- (wacommousefilter)
DRV:64bit: - [2010/11/20 21:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 21:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/03/19 02:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/10/01 00:34:30 | 000,121,872 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2009/08/06 06:43:58 | 000,320,040 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a)
DRV:64bit: - [2009/07/13 19:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 19:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 19:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/17 10:54:46 | 000,040,976 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV:64bit: - [2009/06/17 10:54:30 | 000,057,872 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2009/06/17 10:54:22 | 000,055,312 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2009/06/10 14:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 14:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 14:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 14:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/05 12:00:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie)
DRV:64bit: - [2006/11/01 11:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2009/07/13 19:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{1A89D2C7-D73F-DAA1-0E22-427446954AB5}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://slirsredirect...mrud=29-01-2013

IE - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{7DFBEC25-E1C6-7769-85DB-7EFF7E4B1D01}: "URL" = http://feed.helperba...q={searchTerms}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKCU\..\SearchScopes,Backup.Old.DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKCU\..\SearchScopes,DefaultScope = {ACE8169B-2A79-4EDC-9229-51F2F3AEFAC5}
IE - HKCU\..\SearchScopes\{91607fa7-3c2f-4f90-93e3-d5337a6b0ac2}: "URL" = browseforchange/search/redirect/?type=default&user_id=be48eb40-8915-4872-8bf7-e4d09a10eb04&query={searchTerms}
IE - HKCU\..\SearchScopes\{ACE8169B-2A79-4EDC-9229-51F2F3AEFAC5}: "URL" = http://www.google.co...utputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;<local>

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: ""
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.aol.com/?...usaolp00000011"
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:7.0.1474
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.1
FF - prefs.js..keyword.URL: "http://www.aol.com/"
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_171.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_171.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Nero.com/KM: C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: File not found
FF - HKLM\Software\MozillaPlugins\@wacom.com/wacom-plugin,version=1.1.0.10: C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF - HKLM\Software\MozillaPlugins\@wacom.com/wacom-plugin,version=1.1.0.3: C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{31F37877-0076-4d26-8FD4-D9A7223FFC06}: C:\Program Files (x86)\FacePaint\FacePaintFF\{31F37877-0076-4d26-8FD4-D9A7223FFC06} [2013/01/24 13:24:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2013/01/24 13:23:39 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013/02/22 01:33:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/02/05 10:14:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/01/29 11:57:23 | 000,000,000 | ---D | M]

[2013/01/09 15:11:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Extensions
[2012/07/12 10:22:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions
[2012/04/12 12:39:47 | 000,000,000 | ---D | M] (Serif DrawPlus Community Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions\{b97ed18c-1a8a-4acc-884f-b4fe7415adf2}
[2012/07/12 10:23:04 | 000,000,000 | ---D | M] (Bandoo for Firefox) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions\[email protected]
[2013/02/28 00:12:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions
[2013/01/29 11:57:25 | 000,000,000 | ---D | M] (AOL Radio Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\{6ad56361-628f-471b-8f9d-4c338973a87d}
[2013/01/09 15:11:31 | 000,000,000 | ---D | M] (AOL Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
[2013/02/28 00:12:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions
[2012/12/18 13:59:15 | 000,000,000 | ---D | M] (CouponAmazing) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\couponamazing@jetpack
[2013/02/20 07:35:13 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/01/09 15:32:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions
[2013/01/13 14:47:56 | 000,000,000 | ---D | M] (AOL Toolbar) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
[2013/02/22 01:33:51 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2013/02/05 10:14:01 | 000,262,552 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2013/01/04 21:45:12 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2013/01/04 21:45:12 | 000,002,058 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\PepperFlash\11.6.602.167\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Nero Kwik Media Helper (Enabled) = C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: AdobeAAMDetect (Enabled) = C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
CHR - plugin: Wacom Dynamic Link Library (Enabled) = C:\Program Files (x86)\TabletPlugins\npwacom.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_171.dll
CHR - plugin: Java Deployment Toolkit 7.0.90.5 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: avast! WebRep = C:\Users\Gilbert\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\

O1 HOSTS File: ([2013/02/17 21:53:41 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No CLSID value found.
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (AlxHelper Class) - {F443A627-5009-4323-9C1D-7FD598D0D712} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (no name) - !{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - !{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (no name) - {8660E5B3-6C41-44DE-8503-98D99BBECD41} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {256DB8BC-7DA7-4248-97CD-44E07216B7F1} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [DellStage] C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe ()
O4:64bit: - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AccuWeatherWidget] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe ()
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe (Dell, Inc.)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [NBAgent] C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe (Nero AG)
O4 - HKLM..\Run: [NeroLauncher] C:\Program Files (x86)\Nero\SyncUP\NeroLauncher.exe ()
O4 - HKLM..\Run: [Nikon Transfer Monitor] C:\Program Files (x86)\Common Files\Nikon\Monitor\NkMonitor.exe (Nikon Corporation)
O4 - HKLM..\Run: [Online Vault] C:\Program Files (x86)\OnlineVault\OVTray.exe (Crawler.com)
O4 - HKLM..\Run: [RoxWatchTray] C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe (Sonic Solutions)
O4 - HKLM..\Run: [Seagate Dashboard] C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe ()
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Gilbert\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKCU..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (Apple Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoThumbnailCache = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_27)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_27)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlm.tools.aka...vex-2.2.6.0.cab (DLM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C222D50F-6DC4-4FDA-8104-A4ACE29CE364}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
O18:64bit: - Protocol\Handler\belarc - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\570\G2AWinLogon_x64.dll) - C:\Program Files (x86)\Citrix\GoToAssist\570\g2awinlogon_x64.dll (Citrix Online, a division of Citrix Systems, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)



SafeBootMin:64bit: Base - Driver Group
SafeBootMin:64bit: Boot Bus Extender - Driver Group
SafeBootMin:64bit: Boot file system - Driver Group
SafeBootMin:64bit: File system - Driver Group
SafeBootMin:64bit: Filter - Driver Group
SafeBootMin:64bit: HelpSvc - Service
SafeBootMin:64bit: MCODS - Reg Error: Value error.
SafeBootMin:64bit: PCI Configuration - Driver Group
SafeBootMin:64bit: PNP Filter - Driver Group
SafeBootMin:64bit: Primary disk - Driver Group
SafeBootMin:64bit: sacsvr - Service
SafeBootMin:64bit: SCSI Class - Driver Group
SafeBootMin:64bit: System Bus Extender - Driver Group
SafeBootMin:64bit: vmms - Service
SafeBootMin:64bit: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: MCODS - Reg Error: Value error.
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet:64bit: Base - Driver Group
SafeBootNet:64bit: Boot Bus Extender - Driver Group
SafeBootNet:64bit: Boot file system - Driver Group
SafeBootNet:64bit: File system - Driver Group
SafeBootNet:64bit: Filter - Driver Group
SafeBootNet:64bit: HelpSvc - Service
SafeBootNet:64bit: Messenger - Service
SafeBootNet:64bit: NDIS Wrapper - Driver Group
SafeBootNet:64bit: NetBIOSGroup - Driver Group
SafeBootNet:64bit: NetDDEGroup - Driver Group
SafeBootNet:64bit: Network - Driver Group
SafeBootNet:64bit: NetworkProvider - Driver Group
SafeBootNet:64bit: PCI Configuration - Driver Group
SafeBootNet:64bit: PNP Filter - Driver Group
SafeBootNet:64bit: PNP_TDI - Driver Group
SafeBootNet:64bit: Primary disk - Driver Group
SafeBootNet:64bit: rdsessmgr - Service
SafeBootNet:64bit: sacsvr - Service
SafeBootNet:64bit: SCSI Class - Driver Group
SafeBootNet:64bit: sndappv2 - service
SafeBootNet:64bit: Streams Drivers - Driver Group
SafeBootNet:64bit: System Bus Extender - Driver Group
SafeBootNet:64bit: TDI - Driver Group
SafeBootNet:64bit: vmms - Service
SafeBootNet:64bit: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet:64bit: WudfUsbccidDriver - Driver
SafeBootNet:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:64bit: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:64bit: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:64bit: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:64bit: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:64bit: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: GoToAssist - C:\Program Files (x86)\Citrix\GoToAssist\570\g2aservice.exe (Citrix Online, a division of Citrix Systems, Inc.)
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sndappv2 - service
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

ActiveX:64bit: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX:64bit: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX:64bit: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX:64bit: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX:64bit: {3CE02F38-C912-44CF-B02E-60F7964E61FF} - BingPack
ActiveX:64bit: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX:64bit: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX:64bit: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX:64bit: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX:64bit: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX:64bit: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX:64bit: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX:64bit: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX:64bit: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings
ActiveX:64bit: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX:64bit: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX:64bit: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX:64bit: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX:64bit: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX:64bit: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
ActiveX:64bit: {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
ActiveX:64bit: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX:64bit: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig
ActiveX:64bit: >{a4a68f1d-91f9-4be8-aa32-f2212f9777b6} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2013/02/27 11:11:58 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2013/02/27 11:11:57 | 002,776,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2013/02/27 11:11:57 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
[2013/02/27 11:11:57 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
[2013/02/27 11:11:52 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2013/02/27 11:11:51 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2013/02/27 11:11:45 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013/02/27 11:11:45 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013/02/27 11:11:45 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013/02/27 11:11:45 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013/02/27 11:11:45 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013/02/27 11:11:44 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2013/02/27 11:11:44 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013/02/27 11:11:44 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013/02/27 11:11:44 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013/02/27 11:11:43 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2013/02/27 11:11:43 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2013/02/27 11:11:42 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2013/02/27 11:11:42 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013/02/27 11:11:42 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013/02/27 11:11:42 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013/02/27 11:11:42 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013/02/27 11:11:42 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
[2013/02/27 11:11:42 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
[2013/02/27 11:11:42 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
[2013/02/27 11:11:42 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
[2013/02/27 11:11:42 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013/02/27 11:11:42 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013/02/27 11:11:41 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2013/02/27 11:11:41 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2013/02/27 11:11:40 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2013/02/27 11:11:40 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
[2013/02/27 11:11:39 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2013/02/27 11:11:39 | 001,504,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2013/02/27 11:11:38 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2013/02/27 11:11:38 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
[2013/02/27 11:11:38 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2013/02/27 11:11:37 | 001,643,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2013/02/27 11:11:37 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
[2013/02/27 11:11:35 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2013/02/27 11:11:35 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2013/02/22 01:34:32 | 000,370,288 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2013/02/22 01:34:32 | 000,025,232 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2013/02/22 01:34:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2013/02/22 01:34:30 | 000,059,728 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2013/02/22 01:34:30 | 000,054,072 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2013/02/22 01:34:29 | 000,984,144 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2013/02/22 01:34:19 | 000,071,600 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2013/02/22 01:34:18 | 000,285,328 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/02/22 01:33:21 | 000,041,224 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2013/02/22 01:33:20 | 000,227,648 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2013/02/22 01:33:09 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2013/02/22 01:33:09 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013/02/19 23:48:10 | 000,000,000 | ---D | C] -- C:\Users\Gilbert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
[2013/02/19 23:48:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VS Revo Group
[2013/02/19 23:23:20 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2013/02/17 22:39:19 | 002,237,968 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Gilbert\Desktop\tdsskiller.exe
[2013/02/17 21:55:25 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2013/02/17 21:38:21 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2013/02/17 21:38:21 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2013/02/17 21:38:21 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2013/02/17 21:38:13 | 000,000,000 | ---D | C] -- C:\Qoobox
[2013/02/17 21:37:44 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2013/02/17 00:33:48 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013/02/17 00:33:48 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013/02/17 00:33:46 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/02/17 00:33:46 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/02/17 00:33:46 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013/02/17 00:33:46 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013/02/17 00:33:45 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013/02/17 00:33:45 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013/02/17 00:33:44 | 002,312,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/02/17 00:33:44 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013/02/17 00:33:44 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013/02/17 00:33:44 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/02/17 00:33:42 | 000,717,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/02/17 00:33:41 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/02/17 00:33:41 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013/02/16 21:36:21 | 005,553,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2013/02/16 21:36:20 | 003,967,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2013/02/16 21:36:20 | 003,913,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2013/02/16 21:35:55 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2013/02/16 21:35:55 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2013/02/16 21:35:54 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2013/02/16 21:35:54 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2013/02/16 21:35:54 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2013/02/16 21:35:51 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2013/02/16 21:35:47 | 000,288,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2013/02/15 23:44:12 | 000,000,000 | ---D | C] -- C:\Users\Gilbert\Desktop\Fix PC Tools Feb2013
[2013/02/15 07:52:30 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Gilbert\Desktop\OTL.exe
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/03/02 11:59:13 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/03/02 11:30:09 | 000,771,958 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/03/02 11:30:09 | 000,158,864 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/03/02 11:30:09 | 000,006,498 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/03/02 11:23:00 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/03/02 11:14:48 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/03/02 11:14:48 | 000,021,296 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/03/02 11:08:52 | 000,000,422 | ---- | M] () -- C:\Windows\tasks\DriverUpdate Startup.job
[2013/03/02 11:07:28 | 000,000,406 | ---- | M] () -- C:\Windows\tasks\FixCleaner Startup.job
[2013/03/02 11:06:42 | 000,015,712 | ---- | M] () -- C:\Windows\SysNative\drivers\SWDUMon.sys
[2013/03/02 11:04:42 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SpeedyPC Update Version3 Startup Task.job
[2013/03/02 11:04:39 | 000,000,896 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/03/02 11:04:38 | 000,000,418 | ---- | M] () -- C:\Windows\tasks\PC Optimizer Pro64 startups.job
[2013/03/02 11:04:05 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/03/02 11:03:59 | 679,742,867 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2013/03/02 11:03:56 | 334,737,407 | -HS- | M] () -- C:\hiberfil.sys
[2013/02/28 00:15:41 | 000,000,278 | ---- | M] () -- C:\Windows\tasks\AdvancedDriverUpdater.job
[2013/02/28 00:12:37 | 000,000,113 | ---- | M] () -- C:\Windows\DeleteOnReboot.bat
[2013/02/28 00:05:17 | 000,594,019 | ---- | M] () -- C:\Users\Gilbert\Desktop\adwcleaner.exe
[2013/02/27 10:43:03 | 000,000,294 | ---- | M] () -- C:\Windows\tasks\AdvancedDriverUpdater_UPDATES.job
[2013/02/27 09:59:42 | 000,691,568 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/02/27 09:59:42 | 000,071,024 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/02/23 18:00:00 | 000,000,496 | ---- | M] () -- C:\Windows\tasks\SpeedyPC Registration3.job
[2013/02/22 01:34:32 | 000,001,920 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/02/22 01:34:19 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2013/02/19 23:48:10 | 000,001,266 | ---- | M] () -- C:\Users\Gilbert\Desktop\Revo Uninstaller.lnk
[2013/02/17 21:53:41 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2013/02/17 00:44:57 | 004,973,688 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/02/15 23:35:08 | 000,061,440 | ---- | M] ( ) -- C:\Users\Gilbert\Documents\VEW.exe
[2013/02/15 23:35:08 | 000,061,440 | ---- | M] ( ) -- C:\Users\Gilbert\Desktop\VEW.exe
[2013/02/15 23:33:42 | 002,237,968 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Gilbert\Desktop\tdsskiller.exe
[2013/02/14 21:35:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Gilbert\Desktop\OTL.exe
[2013/02/11 19:16:38 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
[2013/02/04 21:10:07 | 054,215,992 | ---- | M] () -- C:\Users\Gilbert\Desktop\epson13469.exe
[2013/02/04 21:06:04 | 000,000,932 | ---- | M] () -- C:\Users\Public\Desktop\EPSON Scan.lnk
[2013/02/01 13:09:01 | 000,730,238 | ---- | M] () -- C:\Users\Gilbert\Documents\2012-04-08 8x10 print on 11x14 matt copy-Recovered.psd
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/03/02 05:05:43 | 000,061,440 | ---- | C] ( ) -- C:\Users\Gilbert\Desktop\VEW.exe
[2013/02/28 00:12:13 | 000,000,113 | ---- | C] () -- C:\Windows\DeleteOnReboot.bat
[2013/02/28 00:10:23 | 000,594,019 | ---- | C] () -- C:\Users\Gilbert\Desktop\adwcleaner.exe
[2013/02/22 01:34:32 | 000,001,920 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2013/02/22 01:34:18 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2013/02/19 23:48:10 | 000,001,266 | ---- | C] () -- C:\Users\Gilbert\Desktop\Revo Uninstaller.lnk
[2013/02/17 21:38:21 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2013/02/17 21:38:21 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2013/02/17 21:38:21 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2013/02/17 21:38:21 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2013/02/17 21:38:21 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2013/02/15 23:44:17 | 000,061,440 | ---- | C] ( ) -- C:\Users\Gilbert\Documents\VEW.exe
[2013/02/11 19:16:38 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
[2013/02/04 21:09:24 | 054,215,992 | ---- | C] () -- C:\Users\Gilbert\Desktop\epson13469.exe
[2013/02/04 21:06:04 | 000,000,932 | ---- | C] () -- C:\Users\Public\Desktop\EPSON Scan.lnk
[2013/02/01 13:09:00 | 000,730,238 | ---- | C] () -- C:\Users\Gilbert\Documents\2012-04-08 8x10 print on 11x14 matt copy-Recovered.psd
[2013/01/22 17:36:04 | 000,000,132 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Adobe BMP Format CS6 Prefs
[2013/01/20 12:20:20 | 000,000,059 | ---- | C] () -- C:\Windows\SysWow64\status.ini
[2012/12/28 17:11:06 | 000,000,218 | ---- | C] () -- C:\Users\Gilbert\.recently-used.xbel
[2012/12/18 15:10:51 | 000,000,048 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\mbam.context.scan
[2012/12/18 09:23:40 | 000,204,960 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/12/18 09:23:40 | 000,157,152 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/12/05 10:11:26 | 002,725,054 | ---- | C] () -- C:\Users\Gilbert\IMG.bmp
[2012/12/04 15:45:46 | 000,000,095 | ---- | C] () -- C:\Users\Gilbert\.accessibility.properties
[2012/10/12 15:54:46 | 001,115,808 | ---- | C] () -- C:\Users\Gilbert\2012-10-13 Saturday game day.jpg
[2012/09/14 14:47:05 | 001,511,333 | ---- | C] () -- C:\Users\Gilbert\2012-09-15 Saturday game day.jpg
[2012/09/01 11:34:43 | 001,085,595 | ---- | C] () -- C:\Users\Gilbert\2012-09-01 Saturday game day schedule.jpg
[2012/08/09 10:24:29 | 000,074,703 | ---- | C] () -- C:\Windows\SysWow64\mfc45.dll
[2012/07/24 09:49:35 | 000,000,641 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Contact Sheet II.xml
[2012/06/21 13:08:11 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2012/04/27 13:16:37 | 000,007,168 | ---- | C] () -- C:\Users\Gilbert\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/02/29 14:07:42 | 056,885,213 | ---- | C] () -- C:\Users\Gilbert\AdobePhotoshop12-4-mul-AdobeUpdate.zip
[2012/02/29 12:30:29 | 029,517,954 | ---- | C] () -- C:\Users\Gilbert\AdobeBridge_4.0.5_mul_AdobeUpdate.zip
[2012/02/21 16:52:34 | 000,000,426 | ---- | C] () -- C:\Users\Gilbert\content.inf
[2012/02/21 16:52:22 | 000,038,912 | ---- | C] () -- C:\Users\Gilbert\01183278.dot
[2012/01/21 16:03:48 | 000,000,017 | ---- | C] () -- C:\Windows\SysWow64\shortcut_ex.dat
[2011/12/31 14:35:36 | 000,000,132 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Adobe Targa Format CS5 Prefs
[2011/12/07 12:42:39 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Analog Mono
[2011/12/07 12:42:39 | 000,000,268 | RH-- | C] () -- C:\Users\Gilbert\AppData\Roaming\Action Clauses
[2011/12/07 12:42:39 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLdu.DAT
[2011/12/07 12:13:31 | 000,098,304 | ---- | C] () -- C:\Windows\SysWow64\redmonnt.dll
[2011/11/28 15:05:21 | 000,001,456 | ---- | C] () -- C:\Users\Gilbert\AppData\Local\Adobe Save for Web 12.0 Prefs
[2011/11/28 11:22:07 | 000,000,329 | -H-- | C] () -- C:\Users\Gilbert\.BridgeLabelsAndRatings
[2011/11/16 20:57:59 | 000,000,083 | ---- | C] () -- C:\Windows\EPSP1400.ini
[2011/11/09 14:46:34 | 000,000,132 | ---- | C] () -- C:\Users\Gilbert\AppData\Roaming\Adobe BMP Format CS5 Prefs
[2011/11/02 17:54:42 | 000,123,090 | ---- | C] () -- C:\Windows\File Renamer - Basic Uninstaller.exe
[2011/10/28 10:22:35 | 000,073,220 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat
[2011/10/28 10:22:35 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat
[2011/10/28 10:22:35 | 000,029,114 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat
[2011/10/28 10:22:35 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat
[2011/10/28 10:22:35 | 000,021,021 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat
[2011/10/28 10:22:35 | 000,015,670 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat
[2011/10/28 10:22:35 | 000,013,280 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat
[2011/10/28 10:22:35 | 000,010,673 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat
[2011/10/28 10:22:35 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat
[2011/10/28 10:22:35 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat
[2011/10/28 10:22:35 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat
[2011/10/28 10:22:35 | 000,001,137 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat
[2011/10/28 10:22:35 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat
[2011/10/28 10:22:35 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_CF.dat
[2011/10/28 10:22:35 | 000,001,104 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_EN.dat
[2011/10/28 10:22:35 | 000,000,097 | ---- | C] () -- C:\Windows\SysWow64\PICSDK.ini
[2011/10/21 02:06:55 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin

========== ZeroAccess Check ==========

[2009/07/13 22:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/01/04 04:44:25 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/01/04 02:59:38 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 19:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 21:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 19:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== Custom Scans ==========

========== Drive Information ==========

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: WDC WD10 EALX-759BA1 SATA Disk Device
Partitions: 3
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE1 -
Interface type: USB
Media Type:
Model: Generic- SD/MMC
Partitions: 0
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE2 -
Interface type: USB
Media Type:
Model: Generic- Compact Flash
Partitions: 0
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE3 -
Interface type: USB
Media Type:
Model: Generic- SM/xD Picture
Partitions: 0
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE4 -
Interface type: USB
Media Type:
Model: Generic- MS/MS-Pro
Partitions: 0
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE5 - Removable Media
Interface type: USB
Media Type: Removable Media
Model: Kingston DataTraveler 112 USB Device
Partitions: 1
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 39.00MB
Starting Offset: 32256
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 15.00GB
Starting Offset: 41943040
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 917.00GB
Starting Offset: 15944646656
Hidden sectors: 0


DeviceID: Disk #5, Partition #0
PartitionType: MS-DOS V4 Huge
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 2.00GB
Starting Offset: 32256
Hidden sectors: 0


< %SYSTEMDRIVE%\*.exe >

< %systemroot%\assembly\GAC_32\*.ini >

< %systemroot%\assembly\GAC_64\*.ini >

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*.exe >

< %APPDATA%\*. >
[2012/12/06 13:11:29 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Adobe
[2011/11/07 06:59:02 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Adobe Mini Bridge CS5.1
[2012/04/06 12:26:23 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Anthropics
[2012/11/27 15:24:58 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Apple Computer
[2011/10/28 08:29:03 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\ATI
[2012/01/26 13:22:48 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Blio
[2011/11/01 09:28:04 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/11/09 15:20:30 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\com.adobe.DC3Module.AdobeADC
[2012/07/05 15:46:54 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2012/08/21 11:19:35 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\com.livescribe.LivescribeConnect
[2012/03/18 09:20:44 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\CyberLink
[2012/02/23 13:09:49 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Dell
[2011/10/28 08:29:07 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Dell Touch Zone
[2011/10/28 19:57:59 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Download Manager
[2011/11/15 09:21:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\DriverCure
[2011/11/02 06:37:32 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Epson
[2012/02/23 13:12:38 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Fingertapps
[2012/11/27 12:17:17 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\FixCleaner
[2012/09/09 12:22:04 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\FreeCDRipper
[2012/09/09 15:43:48 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\FreeFLVConverter
[2011/10/28 08:28:44 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Identities
[2012/12/28 16:35:07 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\inkscape
[2011/10/28 10:22:34 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\InstallShield
[2011/10/30 17:58:20 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Leadertech
[2012/03/29 12:23:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\licenses
[2012/05/23 09:49:55 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Logitech
[2012/07/23 15:38:49 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Macromedia
[2011/10/29 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Macrovision
[2011/10/28 19:08:29 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Malwarebytes
[2010/11/21 01:16:41 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Media Center Programs
[2011/11/01 16:31:41 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Memeo
[2012/09/21 08:23:57 | 000,000,000 | --SD | M] -- C:\Users\Gilbert\AppData\Roaming\Microsoft
[2013/01/09 15:11:30 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Mozilla
[2012/11/15 18:56:55 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\MusicNet
[2011/12/08 17:51:12 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Nero
[2011/12/07 12:54:48 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Nikon
[2013/01/24 13:25:09 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\OnlineVault
[2012/03/02 13:52:32 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\onOne Software
[2012/08/03 12:41:34 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\ParetoLogic
[2011/10/28 14:03:00 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PCDr
[2012/03/24 11:09:12 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PCMM2009
[2012/03/24 11:07:11 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PCMM2011
[2012/04/09 12:13:32 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\PDAppFlex
[2013/02/20 20:00:14 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\RegCleanProFreeDownloadPackages
[2012/01/09 15:02:35 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\RegistryKeys
[2011/10/28 08:29:05 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Roxio
[2011/10/30 17:57:59 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Roxio Burn
[2012/05/31 11:18:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Sammsoft
[2011/11/01 16:04:30 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Seagate
[2012/04/12 14:40:55 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Serif
[2013/02/11 20:02:54 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SoftGrid Client
[2011/11/15 09:21:33 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SpeedyPC Software
[2012/09/20 10:30:23 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Spyware Terminator
[2011/11/07 06:59:02 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012/05/29 14:39:27 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SumatraPDF
[2012/05/08 11:30:05 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\SupportSoft
[2013/02/20 01:22:22 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Systweak
[2012/01/21 13:05:11 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\TP
[2012/12/05 12:59:23 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\vlc
[2011/12/10 11:37:20 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\Windows Live Writer
[2012/11/02 14:46:04 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\WinZip
[2012/04/17 15:17:19 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\WTablet
[2011/10/28 17:50:02 | 000,000,000 | ---D | M] -- C:\Users\Gilbert\AppData\Roaming\ZinioReader4

< MD5 for: ATAPI.SYS >
[2009/07/13 19:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\Gilbert\AppData\Local\SlimWare Utilities Inc\DriverUpdate\Backups\20120523T142011039809\internal_ide_channel\atapi.sys
[2009/07/13 19:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\Gilbert\AppData\Local\SlimWare Utilities Inc\DriverUpdate\Backups\20120523T142011039809\pci\cc_010601\atapi.sys
[2009/07/13 19:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\erdnt\cache64\atapi.sys
[2009/07/13 19:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009/07/13 19:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009/07/13 19:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: CSRSS.EXE >
[2009/07/13 19:39:02 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=60C2862B4BF0FD9F582EF344C2B1EC72 -- C:\Windows\SysNative\csrss.exe
[2009/07/13 19:39:02 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=60C2862B4BF0FD9F582EF344C2B1EC72 -- C:\Windows\winsxs\amd64_microsoft-windows-csrss_31bf3856ad364e35_6.1.7600.16385_none_b4d8d57efdc6b4f3\csrss.exe

< MD5 for: EXPLORER.EXE >
[2011/10/21 02:01:34 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011/10/21 02:01:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\erdnt\cache86\explorer.exe
[2011/10/21 02:01:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/10/21 02:01:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/10/21 02:01:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 21:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011/10/21 02:01:34 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/10/21 02:01:34 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010/11/20 21:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe

< MD5 for: MSWSOCK.DLL >
[2010/11/20 21:24:00 | 000,326,144 | ---- | M] (Microsoft Corporation) MD5=1D5185A4C7E6695431AE4B55C3D7D333 -- C:\Windows\erdnt\cache64\mswsock.dll
[2010/11/20 21:24:00 | 000,326,144 | ---- | M] (Microsoft Corporation) MD5=1D5185A4C7E6695431AE4B55C3D7D333 -- C:\Windows\SysNative\mswsock.dll
[2010/11/20 21:24:00 | 000,326,144 | ---- | M] (Microsoft Corporation) MD5=1D5185A4C7E6695431AE4B55C3D7D333 -- C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.17514_none_16795c7543eb48cf\mswsock.dll
[2010/11/20 21:24:09 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=8999B8631C7FD9F7F9EC3CAFD953BA24 -- C:\Windows\erdnt\cache86\mswsock.dll
[2010/11/20 21:24:09 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=8999B8631C7FD9F7F9EC3CAFD953BA24 -- C:\Windows\SysWOW64\mswsock.dll
[2010/11/20 21:24:09 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=8999B8631C7FD9F7F9EC3CAFD953BA24 -- C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.17514_none_ba5ac0f18b8dd799\mswsock.dll

< MD5 for: NAPINSP.DLL >
[2009/07/13 19:16:02 | 000,052,224 | ---- | M] (Microsoft Corporation) MD5=0B7E85364CB878E2AD531DB7B601A9E5 -- C:\Windows\SysWOW64\NapiNSP.dll
[2009/07/13 19:16:02 | 000,052,224 | ---- | M] (Microsoft Corporation) MD5=0B7E85364CB878E2AD531DB7B601A9E5 -- C:\Windows\winsxs\x86_microsoft-windows-n..ider-infrastructure_31bf3856ad364e35_6.1.7600.16385_none_abf396ebf0847c31\NapiNSP.dll
[2009/07/13 19:41:52 | 000,068,096 | ---- | M] (Microsoft Corporation) MD5=58A0CDABEA255616827B1C22C9994466 -- C:\Windows\SysNative\NapiNSP.dll
[2009/07/13 19:41:52 | 000,068,096 | ---- | M] (Microsoft Corporation) MD5=58A0CDABEA255616827B1C22C9994466 -- C:\Windows\winsxs\amd64_microsoft-windows-n..ider-infrastructure_31bf3856ad364e35_6.1.7600.16385_none_0812326fa8e1ed67\NapiNSP.dll

< MD5 for: NLAAPI.DLL >
[2012/01/13 01:12:03 | 000,052,224 | ---- | M] (Microsoft Corporation) MD5=0BA65122FFA7E37564EE86422DBF7AE8 -- C:\Windows\SysWOW64\nlaapi.dll
[2012/01/13 01:12:03 | 000,052,224 | ---- | M] (Microsoft Corporation) MD5=0BA65122FFA7E37564EE86422DBF7AE8 -- C:\Windows\winsxs\wow64_microsoft-windows-nlasvc_31bf3856ad364e35_6.1.7601.17964_none_cfca9d84561311f2\nlaapi.dll
[2010/11/20 21:24:01 | 000,052,224 | ---- | M] (Microsoft Corporation) MD5=104A1070E90F1C530328E69B49718841 -- C:\Windows\winsxs\wow64_microsoft-windows-nlasvc_31bf3856ad364e35_6.1.7601.17514_none_d000a58855ea91a1\nlaapi.dll
[2012/10/03 10:29:27 | 000,052,224 | ---- | M] (Microsoft Corporation) MD5=11B8C7970C10650827D060AA81BEE63F -- C:\Windows\winsxs\wow64_microsoft-windows-nlasvc_31bf3856ad364e35_6.1.7601.22124_none_d07f52216f10753a\nlaapi.dll
[2010/11/20 21:23:54 | 000,070,656 | ---- | M] (Microsoft Corporation) MD5=2DF36F15B2BC1571A6A542A3C2107920 -- C:\Windows\winsxs\amd64_microsoft-windows-nlasvc_31bf3856ad364e35_6.1.7601.17514_none_c5abfb362189cfa6\nlaapi.dll
[2012/10/03 11:44:21 | 000,070,656 | ---- | M] (Microsoft Corporation) MD5=46BB91A169B9B31FF44EB04C48EC1D41 -- C:\Windows\SysNative\nlaapi.dll
[2012/10/03 11:44:21 | 000,070,656 | ---- | M] (Microsoft Corporation) MD5=46BB91A169B9B31FF44EB04C48EC1D41 -- C:\Windows\winsxs\amd64_microsoft-windows-nlasvc_31bf3856ad364e35_6.1.7601.17964_none_c575f33221b24ff7\nlaapi.dll
[2012/10/03 11:32:48 | 000,070,656 | ---- | M] (Microsoft Corporation) MD5=C98BCE54F31113D5E736C1097FD086DC -- C:\Windows\winsxs\amd64_microsoft-windows-nlasvc_31bf3856ad364e35_6.1.7601.22124_none_c62aa7cf3aafb33f\nlaapi.dll

< MD5 for: PNRPNSP.DLL >
[2009/07/13 19:16:12 | 000,065,024 | ---- | M] (Microsoft Corporation) MD5=5CF640EDDB1E40A5AB1BB743BCDEC610 -- C:\Windows\SysWOW64\pnrpnsp.dll
[2009/07/13 19:16:12 | 000,065,024 | ---- | M] (Microsoft Corporation) MD5=5CF640EDDB1E40A5AB1BB743BCDEC610 -- C:\Windows\winsxs\wow64_microsoft-windows-peertopeerpnrp_31bf3856ad364e35_6.1.7600.16385_none_d7c8b1ac70865dab\pnrpnsp.dll
[2009/07/13 19:41:53 | 000,086,016 | ---- | M] (Microsoft Corporation) MD5=613C8CE10A5FDE582BA5FA64C4D56AAA -- C:\Windows\SysNative\pnrpnsp.dll
[2009/07/13 19:41:53 | 000,086,016 | ---- | M] (Microsoft Corporation) MD5=613C8CE10A5FDE582BA5FA64C4D56AAA -- C:\Windows\winsxs\amd64_microsoft-windows-peertopeerpnrp_31bf3856ad364e35_6.1.7600.16385_none_cd74075a3c259bb0\pnrpnsp.dll

< MD5 for: PRINTISOLATIONHOST.EXE >
[2009/07/13 19:39:27 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=22F020C76E339EB2B2187BA73A7E4173 -- C:\Windows\SysNative\PrintIsolationHost.exe
[2009/07/13 19:39:27 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=22F020C76E339EB2B2187BA73A7E4173 -- C:\Windows\winsxs\amd64_microsoft-windows-p..ng-server-isolation_31bf3856ad364e35_6.1.7600.16385_none_f8a40495785334a9\PrintIsolationHost.exe

< MD5 for: SERVICES.EXE >
[2009/07/13 19:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\erdnt\cache64\services.exe
[2009/07/13 19:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009/07/13 19:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe

< MD5 for: SVCHOST.EXE >
[2012/12/14 16:49:28 | 000,216,424 | ---- | M] () MD5=22101A85B3CA2FE2BE05FE9A61A7A83D -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/13 19:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009/07/13 19:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009/07/13 19:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: USERINIT.EXE >
[2010/11/20 21:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010/11/20 21:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 21:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010/11/20 21:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010/11/20 21:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010/11/20 21:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010/11/20 21:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\erdnt\cache64\winlogon.exe
[2010/11/20 21:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010/11/20 21:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2012/12/14 16:49:28 | 000,216,424 | ---- | M] () MD5=22101A85B3CA2FE2BE05FE9A61A7A83D -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe

< MD5 for: WINRNR.DLL >
[2009/07/13 19:41:56 | 000,028,672 | ---- | M] (Microsoft Corporation) MD5=2E2072EB48238FCA8FBB7A9F5FABAC45 -- C:\Windows\SysNative\winrnr.dll
[2009/07/13 19:41:56 | 000,028,672 | ---- | M] (Microsoft Corporation) MD5=2E2072EB48238FCA8FBB7A9F5FABAC45 -- C:\Windows\winsxs\amd64_microsoft-windows-dns-client-winrnr_31bf3856ad364e35_6.1.7600.16385_none_b543449669c73e11\winrnr.dll
[2009/07/13 19:16:19 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=5DF5D8CFD9B9573FA3B2C89D9061A240 -- C:\Windows\SysWOW64\winrnr.dll
[2009/07/13 19:16:19 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=5DF5D8CFD9B9573FA3B2C89D9061A240 -- C:\Windows\winsxs\x86_microsoft-windows-dns-client-winrnr_31bf3856ad364e35_6.1.7600.16385_none_5924a912b169ccdb\winrnr.dll

< MD5 for: WSHELPER.DLL >
[2009/07/13 19:16:20 | 000,015,360 | ---- | M] (Microsoft Corporation) MD5=5B90BB3171504C9DAF3C5CB44B203CA7 -- C:\Windows\SysWOW64\wshelper.dll
[2009/07/13 19:16:20 | 000,015,360 | ---- | M] (Microsoft Corporation) MD5=5B90BB3171504C9DAF3C5CB44B203CA7 -- C:\Windows\winsxs\wow64_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_6ace9e67456cc40b\wshelper.dll
[2009/07/13 19:41:58 | 000,019,968 | ---- | M] (Microsoft Corporation) MD5=D314DA4B0B8DCD023D547FC568E34FB6 -- C:\Windows\SysNative\wshelper.dll
[2009/07/13 19:41:58 | 000,019,968 | ---- | M] (Microsoft Corporation) MD5=D314DA4B0B8DCD023D547FC568E34FB6 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_6079f415110c0210\wshelper.dll

< %systemroot%\*. /mp /s >

< hklm\software\clients\startmenuinternet|command /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2013/02/05 10:14:01 | 000,864,656 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2013/02/05 10:14:01 | 000,864,656 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2013/02/05 10:14:01 | 000,864,656 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files (x86)\Mozilla Firefox\firefox.exe [2013/02/05 10:14:01 | 000,917,400 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -preferences [2013/02/05 10:14:01 | 000,917,400 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -safe-mode [2013/02/05 10:14:01 | 000,917,400 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ShowIconsCommand: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --show-icons [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\HideIconsCommand: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --hide-icons [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ReinstallCommand: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --make-default-browser [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\shell\open\command\\: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\System32\ie4uinit.exe" -show [2011/10/21 01:38:59 | 000,074,240 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\System32\ie4uinit.exe" -reinstall [2011/10/21 01:38:59 | 000,074,240 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\System32\ie4uinit.exe" -hide [2011/10/21 01:38:59 | 000,074,240 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -extoff [2013/01/08 16:42:06 | 000,757,280 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files (x86)\Internet Explorer\iexplore.exe" [2013/01/08 16:42:06 | 000,757,280 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ReinstallCommand: "C:\Program Files (x86)\Safari\Safari.exe" /reinstall [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\HideIconsCommand: "C:\Program Files (x86)\Safari\Safari.exe" /hideicons [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ShowIconsCommand: "C:\Program Files (x86)\Safari\Safari.exe" /showicons [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\shell\open\command\\: "C:\Program Files (x86)\Safari\Safari.exe" [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)

< hklm\software\clients\startmenuinternet|command /64 /rs >
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\UNINSTALL\HELPER.EXE" /HIDESHORTCUTS [2013/02/05 10:14:01 | 000,864,656 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\UNINSTALL\HELPER.EXE" /SHOWSHORTCUTS [2013/02/05 10:14:01 | 000,864,656 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\UNINSTALL\HELPER.EXE" /SETASDEFAULTAPPGLOBAL [2013/02/05 10:14:01 | 000,864,656 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE [2013/02/05 10:14:01 | 000,917,400 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE" -PREFERENCES [2013/02/05 10:14:01 | 000,917,400 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE" -SAFE-MODE [2013/02/05 10:14:01 | 000,917,400 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ShowIconsCommand: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" --SHOW-ICONS [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\HideIconsCommand: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" --HIDE-ICONS [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ReinstallCommand: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" --MAKE-DEFAULT-BROWSER [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\shell\open\command\\: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" [2012/10/31 16:15:08 | 001,242,136 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\SYSTEM32\IE4UINIT.EXE" -SHOW [2011/10/21 01:38:59 | 000,089,088 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\SYSTEM32\IE4UINIT.EXE" -REINSTALL [2011/10/21 01:38:59 | 000,089,088 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\SYSTEM32\IE4UINIT.EXE" -HIDE [2011/10/21 01:38:59 | 000,089,088 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IEXPLORE.EXE" -EXTOFF [2013/01/08 16:42:06 | 000,757,280 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IEXPLORE.EXE" [2013/01/08 16:42:06 | 000,757,280 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ReinstallCommand: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" /REINSTALL [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\HideIconsCommand: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" /HIDEICONS [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ShowIconsCommand: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" /SHOWICONS [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\shell\open\command\\: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" [2012/04/25 09:36:36 | 002,388,336 | ---- | M] (Apple Inc.)

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemdrive%\$Recycle.Bin|@;true;true;true /fp >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< End of report >
  • 0

#27
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
OTL Extras logfile created on: 3/2/2013 11:32:18 AM - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Gilbert\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.75 Gb Total Physical Memory | 3.34 Gb Available Physical Memory | 58.15% Memory free
11.50 Gb Paging File | 8.78 Gb Available in Paging File | 76.36% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 916.66 Gb Total Space | 249.50 Gb Free Space | 27.22% Space Free | Partition Type: NTFS
Drive I: | 1.87 Gb Total Space | 1.01 Gb Free Space | 53.88% Space Free | Partition Type: FAT

Computer Name: GILBERT-PC | User Name: Gilbert | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (All) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm[@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cpl[@ = cplfile] -- C:\Windows\SysNative\control.exe (Microsoft Corporation)
.hlp[@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta[@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf[@ = inffile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.ini[@ = inifile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
.js[@ = JSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.jse[@ = JSEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.reg[@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation)
.txt[@ = txtfile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.vbe[@ = VBEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.vbs[@ = VBSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsf[@ = WSFFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsh[@ = WSHFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.bat [@ = batfile] -- "%1" %*
.chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cmd [@ = cmdfile] -- "%1" %*
.com [@ = ComFile] -- "%1" %*
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.exe [@ = exefile] -- "%1" %*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta [@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf [@ = inffile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.ini [@ = inifile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.pif [@ = piffile] -- "%1" %*
.reg [@ = regfile] -- C:\Windows\SysWow64\regedit.exe (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /S
.txt [@ = txtfile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsh [@ = WSHFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\iBryte\browseforchange\ibrytedesktop.exe" = C:\Program Files (x86)\iBryte\browseforchange\ibrytedesktop.exe:*:Enabled:iBryteDesktop
"C:\Program Files (x86)\iBryte\browseforchange\ibrytedesktop.exe" = C:\Program Files (x86)\iBryte\browseforchange\ibrytedesktop.exe:*:Enabled:iBryteDesktop


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0145C2B9-EF0D-4E59-8C3A-DD66DA30F013}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{03DDECB3-C084-444F-8F30-4AC281C922D3}" = lport=9701 | protocol=6 | dir=in | name=syncup_tcp_9701 |
"{109865AE-E230-47B3-9C5F-5F3E18EB6F31}" = lport=137 | protocol=17 | dir=in | app=system |
"{144DC721-209C-4DC5-9096-CBD17C797212}" = lport=9700 | protocol=6 | dir=in | name=syncup_tcp_9700 |
"{1EAE8A70-E3FF-4DE6-9A04-47E68ECBC77C}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{1FB9BA26-F36D-4D2E-9FCE-32A899B32CFB}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{22DBB610-5670-4B7E-9D62-E2AC19568F24}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{295FD02C-1E1E-474E-A1DD-4459B7A5283E}" = lport=138 | protocol=17 | dir=in | app=system |
"{2FD2496F-C0B7-4604-A4E2-64B4C0197344}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3A11D501-05B0-4302-9003-E209CFE692B0}" = lport=445 | protocol=6 | dir=in | app=system |
"{40A1B621-1496-4C6B-8E72-99B6C4196EEB}" = rport=138 | protocol=17 | dir=out | app=system |
"{4B82D094-9995-4A2E-B1FC-2B024ADE4B8F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4BC24402-1109-4D03-B125-A912099DD0F2}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{50D872FF-2F0D-4082-9069-F4CF6877444D}" = rport=10243 | protocol=6 | dir=out | app=system |
"{568EE1B4-1DAD-4EFE-8582-C43B155D8E85}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{6B642503-2EED-4DDD-A0C2-778B5F01E4B3}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8D02E1E3-A8F5-4ED5-9A83-5C8F21DC30E2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9652702B-8E42-4EC2-908B-B2EA18B390A9}" = rport=139 | protocol=6 | dir=out | app=system |
"{AD9BC8EB-2CB6-4516-9ABE-DCCFBFE96997}" = rport=445 | protocol=6 | dir=out | app=system |
"{BE13602E-5E7F-4A1C-8A0B-C117DB34023B}" = lport=9702 | protocol=6 | dir=in | name=syncup_tcp_9702 |
"{C39A3017-CD18-45A3-B60E-CBAA9856003D}" = rport=137 | protocol=17 | dir=out | app=system |
"{CE55AFDC-195A-48D7-B57D-AC9A48D5BB12}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{D06AE732-FB0E-498A-94E5-00F526B5AA16}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{D49DA4AD-8527-4C6F-AD54-BA21608CE88D}" = lport=10243 | protocol=6 | dir=in | app=system |
"{DB2BF235-FCD8-4300-BB41-01FA88ABC84E}" = lport=9700 | protocol=17 | dir=in | name=syncup_udp_9700 |
"{F40FFF23-0B4A-4A63-AA60-23CFAC184C27}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{F5825FCA-E630-4EEA-B50D-8ABF9D8CE2BF}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FD824D5D-7A19-4EA0-A0A3-ED6AD361F7C8}" = lport=139 | protocol=6 | dir=in | app=system |
"{FF90CB70-3CF5-41C2-88F2-2B78699D4F55}" = lport=2869 | protocol=6 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0270E793-4533-4E64-9582-77E21752F5C4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{0447010E-A4FB-4F5E-95DA-8684681EABC9}" = dir=in | app=c:\program files (x86)\seagate\seagate dashboard\hipservagent\hipservagent.exe |
"{084584A2-AE21-4854-A763-1539065D41CC}" = dir=in | app=c:\program files (x86)\dell\videostage\videostage.exe |
"{0D0F7C5A-B405-4992-BD56-C7E2DBEA5A2A}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{13F9BD6E-284A-43EC-B2EF-311B3A3B3531}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{14E38667-E329-4DBA-BFE8-6E5E2477FBEF}" = protocol=1 | dir=in | [email protected],-28543 |
"{1627D6F2-A245-4080-A95F-D99AF1854833}" = protocol=6 | dir=in | app=c:\program files (x86)\search results toolbar\datamngr\srtool~1\dtuser.exe |
"{16ABF64C-4C71-4949-BF38-08424C982946}" = protocol=17 | dir=in | app=c:\users\gilbert\appdata\local\akamai\netsession_win.exe |
"{19B5B797-C273-4D0A-A7A2-3C870FCEEEB4}" = protocol=6 | dir=in | app=c:\users\gilbert\appdata\local\akamai\netsession_win.exe |
"{1B9FB6E2-D6B6-49B6-B574-8C423B0DCE30}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{33EE25B3-C0DA-4F01-A559-FF0F5F61FD79}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{3C34BBF0-1B8D-4505-A7E4-B580918C1053}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{3E7F2EA3-B726-4DD8-B4F5-4876B5F6156B}" = dir=in | app=c:\users\gilbert\appdata\local\torch\plugins\torrent\torchtorrent.exe |
"{4245B98F-6E9B-43B2-9423-29883DBEA233}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{4271323D-75B7-4921-BDB3-135222EF0417}" = dir=in | app=c:\program files\dell stage\musicstage\musicstageengine.exe |
"{4D11F1F4-34DE-41FA-A111-A6FEBFD2A0C1}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{4E757548-F685-45AC-AA0D-379EB49E7EC5}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{52160311-8891-4E70-96EF-907FC0F95602}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{52C1C801-4F51-412A-BEEE-C620E4FA8E8D}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{65C9D426-BF5D-45FC-8131-01E995D1A271}" = protocol=58 | dir=out | [email protected],-28546 |
"{67B7D3A5-DC0C-4276-9A06-B88AF370F7B4}" = protocol=17 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe |
"{6A001060-0029-4073-BFEB-1755A780F621}" = protocol=17 | dir=in | app=c:\program files (x86)\search results toolbar\datamngr\srtool~1\dtuser.exe |
"{7D751A23-C3C6-4183-B476-0DC260563170}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{7F3D19B6-4F3A-458F-B34B-3BD60406988F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7F6D5944-0722-4B70-BF53-90207D49D979}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{82A75545-20F3-4F60-A037-F2A54643D9D9}" = protocol=6 | dir=in | app=c:\program files (x86)\windows searchqu toolbar\datamngr\toolbar\dtuser.exe |
"{861BFA03-8FA4-4D5C-AE45-0A4FACC63851}" = protocol=1 | dir=out | [email protected],-28544 |
"{8A924142-FA83-4635-BDD4-EF98784F54FA}" = protocol=6 | dir=in | app=c:\program files (x86)\nero\nero blu-ray player\blu-rayplayer.exe |
"{8AD48BC1-4D5A-4071-BC75-2889356C415A}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"{8D98178B-6F08-41DD-8393-37FA141364FE}" = protocol=6 | dir=in | app=c:\program files (x86)\searchqu toolbar\datamngr\toolbar\dtuser.exe |
"{912D2B42-A6C2-49D0-B5FD-41DE4B0D6DA0}" = dir=in | app=c:\program files\dell stage\dell stage\accuweather\accuweather.exe |
"{9628C3A6-2704-4B3C-828F-987B6E703761}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"{9B2E1B92-0AEF-4980-8B33-86E8C4759A23}" = protocol=17 | dir=in | app=c:\program files (x86)\searchqu toolbar\datamngr\toolbar\dtuser.exe |
"{9F21AAFD-4C26-43F5-9EFF-87F73D62C7CE}" = protocol=17 | dir=in | app=c:\program files (x86)\nero\nero blu-ray player\blu-rayplayer.exe |
"{A1D82B63-2690-4D83-82B9-69C45AE0319B}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{A3012BC2-8EA3-42CA-9EA9-D4C9834EA730}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{A4FD5CDA-D648-4501-B118-3E643D3470E5}" = protocol=17 | dir=in | app=c:\program files (x86)\asktoolbar2\dtuser.exe |
"{A640E1F0-F90A-4A8B-BB10-2DE22CB9F3A2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{ADA9D348-B584-459E-9B7C-98E905B26978}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{B6D58EE2-7FA9-43CD-8652-A14EC8E6A504}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{B8D8CAFC-5B6B-4B4C-B77F-AF8398C66F0B}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{BEF0A7F3-ADB4-452C-97BA-79D7229336FA}" = protocol=6 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe |
"{BF79F32A-1862-4C10-BEB0-7C4B3FD454B4}" = protocol=6 | dir=in | app=c:\program files (x86)\asktoolbar2\dtuser.exe |
"{C2BD07F7-853B-49B0-BD68-CF0D9D84B327}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{CB022D96-9C96-4C01-A503-3403C7F87CFF}" = dir=in | app=c:\program files\dell stage\dell stage\stage_primary.exe |
"{D11CE935-B3E0-4DA5-9D1A-7AF92E83A2F5}" = protocol=6 | dir=out | app=system |
"{D16AC33B-EE6F-44D3-8273-7969EBE09F01}" = protocol=58 | dir=in | [email protected],-28545 |
"{DA0B018F-10A6-4368-8DE1-F715E1194B53}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E2162A9E-63A3-4ADB-A65E-3B99E3ED9DCE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E4F5A640-FC68-47E1-AB74-0ABBECEFE7E1}" = protocol=17 | dir=in | app=c:\program files (x86)\windows searchqu toolbar\datamngr\toolbar\dtuser.exe |
"{E8A851F6-2C48-48F7-AD46-3F2022FF6A12}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{EC103C46-D65F-412A-9CB6-50AB8220892E}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{F329B504-6856-43E9-8151-76DE15C735A3}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"TCP Query User{9B97A51E-3FE8-46B3-B865-D433F817DEFA}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{FE7D90AE-892A-4B01-ADB5-7E40ADFCAC54}C:\users\gilbert\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\gilbert\appdata\local\akamai\netsession_win.exe |
"UDP Query User{39E406A9-E545-40D4-8276-B8DA489F5D2A}C:\users\gilbert\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\gilbert\appdata\local\akamai\netsession_win.exe |
"UDP Query User{939565C7-3B04-4655-84F9-9C633AB7D1FF}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0090A87C-3E0E-43D4-AA71-A71B06563A4A}" = Dell Support Center
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{0E5D76AD-A3FB-48D5-8400-8903B10317D3}" = iTunes
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{CF8FFD12-602B-422D-AF1D-511B411E7632}" = iTunes
"{D0CB24F4-084F-40DE-B6B9-A03626E682F0}" = iCloud
"{D600D357-5CB9-4DE9-8FD4-14E208BD1970}" = Nero Backup Drivers
"{D70884EA-E2CE-4539-91DB-4766CC1E5F5F}" = Apple Mobile Device Support
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64
"{F3F18612-7B5D-4C05-86C9-AB50F6F71727}" = KhalInstallWrapper
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Amazon Browser Bar" = Amazon Browser Bar
"ARO 2012_is1" = ARO 2012
"EPSON Printer and Utilities" = EPSON Printer Software
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"PC-Doctor for Windows" = Dell Support Center

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01E9B2FF-DAF4-4529-9CC9-2101625517C7}" = nero.prerequisites.msi
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{034DCAF9-96E7-4936-9A07-712F80B5181E}" = Nero RescueAgent 11
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{0713D1F9-DD77-42C1-8C7D-54D479E2E743}" = Nero SoundTrax 11
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D29B7E9-CDFF-807D-1D4E-FFB77D809836}" = CCC Help Italian
"{0D7A4289-99CF-4B8D-B812-86BE50A54552}" = Nero Video 11
"{0D98F04D-11A1-4B64-A406-43292B9EEE90}" = Dell PhotoStage
"{0E74474A-1CDF-4249-A507-CE8C1DCEC8BC}" = TrustedID IDMonitor Identity Protection
"{0ED7EE95-6A97-47AA-AD73-152C08A15B04}" = Dell DataSafe Local Backup
"{0EDBEB2B-7C8D-42E6-8312-0F84394A3223}" = Windows Media Center Add-in for Silverlight
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{1111706F-666A-4037-7777-203328764D10}" = JavaFX 2.0.3
"{11D3EF85-63E1-4AE4-A7C1-9241BDB16B51}" = Nero ControlCenter 11
"{144D9816-818D-C36E-33A0-889A19C5EDA6}" = CCC Help Portuguese
"{14DC0059-00F1-4F62-BD1A-AB23CD51A95E}" = Adobe AIR
"{18BED011-2EEF-1148-E90C-D6556565B2EC}" = CCC Help Polish
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1F16820E-D0E7-4636-939E-45CBFEFB06E1}" = Nero Kwik Media Help (CHM)
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20C2435C-5B06-2E12-5087-116D8EF658B8}" = CCC Help Korean
"{237CD223-1B9D-47E8-A76C-E478B83CCEA2}" = File Uploader
"{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10
"{26791563-0BDF-1FBE-CC21-994A09559CCE}" = Catalyst Control Center Graphics Previews Common
"{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java™ 6 Update 31
"{26A24AE4-039D-4CA4-87B4-2F83217003FF}" = Java™ 7 Update 3
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2CA7225D-CB12-462A-9DD1-50319E158BA5}" = Nero 11 PiP Effects Basic
"{3250260C-7A95-4632-893B-89657EB5545B}" = PhotoShowExpress
"{33311EA4-0ECA-4E7F-83E5-8A92CD760152}" = Serif DrawPlus Starter Edition
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{3796EE5A-B6B7-41E1-AE51-9C09FC8FB701}" = PDF Print
"{390757AA-8830-43DC-AEE0-4E5B6F8439EB}" = Nero SoundTrax 11 Help (CHM)
"{3A25676C-038C-504A-FA32-F971B36BF7EE}" = Catalyst Control Center Graphics Previews Vista
"{3B8FF075-F41B-89DD-41F7-B90A6A01B8F8}" = Catalyst Control Center Graphics Full New
"{3BD7DD08-991B-4A2F-A165-614ED14EAADD}" = Dell MusicStage
"{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{3F9BBD45-4EAF-4FC2-9221-218FAF37AB16}" = MyPC Backup
"{40F06490-8C14-43AA-99D3-EEEFDBAC3CFC}" = SyncUP
"{431E2654-B0A4-4140-82A2-DD55B028B626}" = Blio
"{44453D07-5BDB-45F8-E3DF-20A7F76407D0}" = CCC Help Czech
"{466E1C7A-AEAF-2F55-26E2-A727B761AAB0}" = CCC Help Dutch
"{46C1C6DF-ADD5-4FD3-99EB-E6EE020ABA7E}" = Microsoft Camera Codec Pack
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AC7B4E7-59B7-4E48-A60D-263C486FC33A}_is1" = System Checkup 3.3
"{50ED6ABB-078C-8B17-1181-DC6DDB4E52DC}" = Catalyst Control Center InstallProxy
"{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM)
"{53F7746A-96AA-49A5-86B8-59989680DAC5}" = Nero Burning ROM 11 Help (CHM)
"{540CBBEF-1433-4E5C-9817-4597493AA45F}" = FixCleaner
"{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries
"{55C2143E-FBA5-442F-9AFA-726FF068F39D}" = Nero CoverDesigner 11 Help (CHM)
"{56E55229-CBE7-211E-0CD1-AB3712AF177A}" = CCC Help Danish
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{57F80ECF-E27C-4EEE-AB58-E971BACE2639}" = Nero Recode 11 Help (CHM)
"{59679381-3F22-4A40-A7AD-890242D74DF4}" = Perfect Photo Suite 6.0.1
"{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}" = Roxio BackOnTrack
"{5A212B2D-140D-46F4-B625-2D1CA5A00594}" = Nero 11 Kwik Themes Basic
"{5CE2D957-59C2-4489-481E-2E38EAE59762}" = CCC Help Spanish
"{5DEB2BA0-0E1F-D5CB-A0C4-F738590BE973}" = Catalyst Control Center Core Implementation
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
"{6675371D-22CD-F426-DC4C-9DDF594D0BBE}" = CCC Help Chinese Traditional
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6839108F-BC82-30BC-776F-D635EDA2B3D4}" = CCC Help Russian
"{6AB2427E-A18F-4809-9A12-29F5EBABBB3A}" = Nero BackItUp 11 Help (CHM)
"{6B1ADEE1-1595-82C4-6FB9-97B65F68E9EE}" = CCC Help Swedish
"{6B206787-2964-D9D8-A1F6-7D98B6BCD7F9}" = CCC Help Hungarian
"{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10
"{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}" = Roxio Creator Starter
"{709F27C3-B9A1-16D9-105D-B5918E03AA48}" = Livescribe Connect
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73370408-B80E-4509-B9AF-957E2E0F512F}_is1" = WinZip System Utilities Suite
"{73EFFD76-009E-A554-AA1F-106DBE475525}" = CCC Help French
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{7746BFAA-2B5D-4FFD-A0E8-4558F4668105}" = Roxio Burn
"{775FCAEB-C804-02B9-135F-D9A189A1CCDC}" = CCC Help English
"{77D41B26-31DE-4EBA-F974-26D67B728FDB}" = CCC Help Turkish
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}" = Dell Getting Started Guide
"{7EC66A95-AC2D-4127-940B-0445A526AB2F}" = Dell DataSafe Online
"{7FB00B6B-6843-97EC-EED6-78BD6D35370A}" = Zinio Reader 4
"{8014FACB-1D1D-48C2-94AA-E29EE2E6B9CE}" = Nero WaveEditor 11
"{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger
"{820B6609-4C97-3A2B-B644-573B06A0F0CC}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{833FE2B0-DCD7-8995-6374-F69F1A84055F}" = CCC Help German
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8D0BED50-BD2B-5EBA-7F04-5513F1B9EC74}" = CCC Help Thai
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E1CB0F1-67BF-4052-AA23-FA22E94804C1}" = InstallIQ Updater
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{9158FF30-78D7-40EF-B83E-451AC5334640}" = Adobe Photoshop CS5.1
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{9866E5F0-121F-E018-E2D1-2E1770847ABF}" = Adobe Download Assistant
"{98C7AEBC-350A-52D6-6886-76FB98C6A503}" = Catalyst Control Center Graphics Full Existing
"{9A00EC4E-27E1-42C4-98DD-662F32AC8870}" = Sonic CinePlayer Decoder Pack
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D318C86-AF4C-409F-A6AC-7183FF4CF424}" = Internet TV for Windows Media Center
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9E4570EF-23B8-439C-9E4F-8570C4166A9E}" = Blio
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A121EEDE-C68F-461D-91AA-D48BA226AF1C}" = Roxio Activation Module
"{A127C3C0-055E-38CF-B38F-1E85F8BBBFFE}" = Adobe Community Help
"{A2CDC001-F8B3-4C64-9E74-2E3FA0FAC9D9}" = Nero 11 Video Samples
"{A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87}" = Nero Blu-ray Player
"{A69D7B32-2BE9-42BF-B576-69B5E0FF7394}" = Catalyst Control Center - Branding
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A760067A-C07E-1033-0000-A764AC000008}" = Avery Template
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A7A0BF2E-31CC-49E3-9913-52C503EB969D}" = Nero Audio Pack 1
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9668246-FB70-4103-A1E3-66C9BC2EFB49}" = Dell DataSafe Local Backup - Support Software
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AA31EA7B-7917-4000-949B-38E91F848A25}" = Internet Explorer
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AB2BBC64-8AC8-4E66-BBF3-E22D5EACEECA}" = Nero BackItUp 11
"{AC76BA86-1033-F400-7760-000000000005}" = Adobe Acrobat X Pro - English, Français, Deutsch
"{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.5) MUI
"{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B160A672-F326-4414-9BB0-A056C61B357C}" = Nero 11 Cliparts
"{B1846721-A8E6-46C7-83B6-0DCF7ADB4267}" = Nero Burning ROM 11
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{BE6F906F-9F86-5CED-E122-8C6A162295B8}" = Skins
"{BE814218-3919-4EA3-868A-2F60BC135CB4}" = Nero Kwik Media
"{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}" = Nero Core Components
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C16A92EF-017B-4839-9C75-FBADB5A1FA27}" = TrustedID
"{C3A11907-930D-41AC-A135-CC3B12F92011}" = Seagate Dashboard
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{C779648B-410E-4BBA-B75B-5815BCEFE71D}" = Safari
"{C864C994-2957-4FE3-A72B-36C5E507B4AA}" = FacePaint Plugin
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CCE210DF-7EEF-4A76-A63C-3EB091FDB992}" = welcome
"{CCE825DB-347A-4004-A186-5F4A6FDD8547}" = Apple Application Support
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240CC}" = WinZip 16.0
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CF67ED0C-F85D-4791-AED3-3FE882EDB45D}" = Dell Marketplace Webslice IE8
"{D01CE99A-8802-483C-A79F-298B691EB432}" = Nero RescueAgent 11 Help (CHM)
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D16A31F9-276D-4968-A753-FFEAC56995D0}" = Epson Print CD
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D1E89604-DFBE-2DF8-BE82-A0076107AA32}" = CCC Help Finnish
"{D24A1B55-8D58-477A-9DBB-7A57495A6347}" = MyPC Backup
"{D2CBEFA4-F2D3-4E97-A171-8BFD6A31A5EC}" = Nero Express 11 Help (CHM)
"{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}" = Nikon Message Center
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D4D66270-9147-4BDF-9946-FCA2B303AA8F}" = Nero ControlCenter 11 Help (CHM)
"{D5DE353C-C1DF-4945-A0C3-24B24DAB2FDD}" = Nero 11
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{D92C9CCE-E5F0-4125-977A-0590F3225B74}" = SyncUP
"{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}" = Dell VideoStage
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E10AAE4A-98B8-420A-BD93-E0520C23D624}" = Nero Express 11
"{E2D09AC2-4153-4817-AAEB-24F92A8BCE88}" = Windows Media Center Add-in for Flash
"{E4335E82-17B3-460F-9E70-39D9BC269DB3}" = Dell PhotoStage
"{E50D9AC2-EB3C-3161-FF97-4E800D106D0E}" = CCC Help Norwegian
"{E51BC4B0-EA5E-49CC-AF3B-93B5C627EC22}" = Nero 11 Effects Basic
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E65DADC9-D6B1-6706-41DE-FA19149869E5}" = Catalyst Control Center Graphics Light
"{E9757890-7EC5-46C8-99AB-B00F07B6525C}" = Nikon Transfer
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EB8DED20-A887-4A9C-BB5A-F3E7523DFB44}" = Nero WaveEditor 11 Help (CHM)
"{EBF60699-3D2E-6677-D504-5B4846171C8E}" = ccc-core-static
"{EF56258E-0326-48C5-A86C-3BAC26FC15DF}" = Roxio Creator Starter
"{F06B5C4C-8D2E-4B24-9D43-7A45EEC6C878}" = Roxio Creator Starter
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = SetPoint
"{F3743A2C-5D5F-4456-8F98-5DF36A954C50}" = Nero 11 Image Samples
"{F4044E58-9707-2918-1DA9-D3E400F0B699}" = CCC Help Japanese
"{F49EF443-B2BD-4F10-8A46-87AFCDB90EDD}" = Nero 11 Disc Menus Basic
"{F4E38336-0739-405D-AA5E-2CF8A3DD09EF}" = DriverUpdate
"{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic
"{F69FB940-5031-4FE8-AFAD-085802D0BF63}" = Nero Recode 11
"{F70ACEA1-05C5-6D98-9C0C-F3AD818E1E33}" = CCC Help Chinese Standard
"{F835D378-5073-8C86-70EF-9A3B739F9897}" = CCC Help Greek
"{FAC3C37E-EDAB-4F3A-A173-A7C70CC88F09}" = Nero Video 11 Help (CHM)
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FE182796-F6BA-486A-8590-89B7E8D1D60F}" = Dell Stage
"{FE60B87C-63A2-4A45-AC06-FFEFD5DB7846}_is1" = Online Vault
"{FF44BCE5-5A18-4051-85F0-BC172D7B4695}" = Nero CoverDesigner 11
"{FF477885-5EA8-40D0-ADF3-D4C1B86FAEA4}" = EPSON Print CD
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{FFD3A1EB-F550-3309-7AFE-17E4BB778423}" = Catalyst Control Center Localization All
"123ImageMagic - Chroma Key Software" = 123ImageMagic - Chroma Key Software
"7-Zip" = 7-Zip 4.65
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Advanced Driver Updater_is1" = Advanced Driver Updater
"avast" = avast! Free Antivirus
"Backcountry Gallery" = Backcountry Gallery Screen Saver
"Belarc Advisor" = Belarc Advisor 8.2
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
"com.livescribe.LivescribeConnect" = Livescribe Connect
"ContentaConverter-PREMIUM" = Contenta Converter PREMIUM
"EPSON Scanner" = EPSON Scan
"File Renamer - Basic" = File Renamer - Basic
"Free FLV Converter_is1" = Free FLV Converter V 7.4.0
"GoToAssist" = GoToAssist Corporate
"Inkscape" = Inkscape 0.48.2
"InstallShield_{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}" = Dell VideoStage
"Livescribe Desktop 2.8.3" = Livescribe Desktop
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.70.0.1100
"Mozilla Firefox 18.0.1 (x86 en-US)" = Mozilla Firefox 18.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"PhotoStudio_4281508C_4DA1_4d4e_81EB_725D55EC30DC_is1" = Systweak PhotoStudio 2.1
"Portrait Professional 8_is1" = Portrait Professional 8.1
"PortraitProfessional10_is1" = Portrait Professional 10.8
"PortraitProfessional10Trial_is1" = Portrait Professional 10.9 Trial
"Revo Uninstaller" = Revo Uninstaller 1.94
"Silent Package Run-Time Sample" = EPSON SP1400 Reference Guide
"Topaz Adjust 5" = Topaz Adjust 5
"Topaz Adjust 5 (64-bit)" = Topaz Adjust 5 (64-bit)
"Wacom WebTabletPlugin for IE" = WebTablet IE Plugin
"Wacom WebTabletPlugin for Netscape" = WebTablet Netscape Plugin
"webmmf" = WebM Media Foundation Components
"WinLiveSuite" = Windows Live Essentials
"ZinioReader4" = Zinio Reader 4

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Akamai" = Akamai NetSession Interface
"PDF Reader" = PDF Reader

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 3/2/2013 2:28:45 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 3029
Description =

Error - 3/2/2013 2:28:45 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 3028
Description =

Error - 3/2/2013 2:28:45 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 3058
Description =

Error - 3/2/2013 2:28:45 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 7010
Description =

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 9002
Description =

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 3029
Description =

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 3029
Description =

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 3028
Description =

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 3058
Description =

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Windows Search Service | ID = 7010
Description =

[ Media Center Events ]
Error - 7/14/2012 11:40:59 AM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 10:40:18 AM - Error connecting to the internet. 10:40:18 AM - Unable
to contact server..

Error - 7/16/2012 10:28:35 AM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 9:28:35 AM - Error connecting to the internet. 9:28:35 AM - Unable
to contact server..

Error - 7/31/2012 10:22:29 AM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 9:21:53 AM - Failed to retrieve Broadband (Error: Unable to connect
to the remote server)

Error - 8/2/2012 10:11:06 AM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 9:11:06 AM - Error connecting to the internet. 9:11:06 AM - Unable
to contact server..

Error - 8/19/2012 11:19:01 AM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 10:19:01 AM - Error connecting to the internet. 10:19:01 AM - Unable
to contact server..

Error - 8/19/2012 11:20:00 AM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 10:19:30 AM - Error connecting to the internet. 10:19:30 AM - Unable
to contact server..

Error - 8/19/2012 12:21:00 PM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 11:20:59 AM - Error connecting to the internet. 11:20:59 AM - Unable
to contact server..

Error - 8/19/2012 12:21:47 PM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 11:21:30 AM - Error connecting to the internet. 11:21:30 AM - Unable
to contact server..

Error - 8/19/2012 1:22:25 PM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 12:22:25 PM - Error connecting to the internet. 12:22:25 PM - Unable
to contact server..

Error - 8/19/2012 1:22:55 PM | Computer Name = Gilbert-PC | Source = MCUpdate | ID = 0
Description = 12:22:54 PM - Error connecting to the internet. 12:22:54 PM - Unable
to contact server..

[ System Events ]
Error - 3/2/2013 1:30:14 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7024
Description = The Windows Search service terminated with service-specific error
%%-2147218174.

Error - 3/2/2013 1:30:14 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7034
Description = The Windows Search service terminated unexpectedly. It has done this
17 time(s).

Error - 3/2/2013 1:30:29 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7024
Description = The Windows Search service terminated with service-specific error
%%-2147218174.

Error - 3/2/2013 1:30:29 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7034
Description = The Windows Search service terminated unexpectedly. It has done this
18 time(s).

Error - 3/2/2013 2:02:14 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7024
Description = The Windows Search service terminated with service-specific error
%%-2147218174.

Error - 3/2/2013 2:02:14 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7034
Description = The Windows Search service terminated unexpectedly. It has done this
19 time(s).

Error - 3/2/2013 2:28:45 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7024
Description = The Windows Search service terminated with service-specific error
%%-2147218174.

Error - 3/2/2013 2:28:45 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7034
Description = The Windows Search service terminated unexpectedly. It has done this
20 time(s).

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7024
Description = The Windows Search service terminated with service-specific error
%%-2147218174.

Error - 3/2/2013 2:33:15 PM | Computer Name = Gilbert-PC | Source = Service Control Manager | ID = 7034
Description = The Windows Search service terminated unexpectedly. It has done this
21 time(s).


< End of report >
  • 0

#28
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
Farbar Service Scanner Version: 15-02-2013
Ran by Gilbert (administrator) on 02-03-2013 at 13:01:34
Running from "C:\Users\Gilbert\Desktop"
Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Attempt to access Google IP returned error. Google IP is offline
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============

Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys
[2013-02-16 21:35] - [2013-01-03 00:00] - 1913192 ____A (Microsoft Corporation) B62A953F2BF3922C8764A29C34A22899

C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\iphlpsvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****
  • 0

#29
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,701 posts
  • MVP
Does it crash if you just open notepad by itself?
Does it crash when the file extension is .txt or just when it is .log?
How about if you right click on a file and Open with Wordpad?

Download BlueScreenView
http://www.nirsoft.n...creen_view.html

Double click on BlueScreenView.exe file to run the program.
When scanning is done, go Edit, Select All.

Go File, Save Selected Items, and save the report as BSOD.txt.
Attach BSOD.txt.

You are getting a lot of Search errors. Try running the Fixit on:

http://support.micro...windows_search/

Also for the MC errors try:

http://support.micro...yer_diagnostic/

Uninstall
Adobe Download Assistant
Amazon Browser Bar
InstallIQ Updater
JavaFX 2.0.3
Java™ 6 Update 31
Java™ 7 Update 3
If you must have Java it should be 7 Update 15 or better. You can get the latest from java.com but be careful when downloading and installing as they usually try and foist a toolbar or a security scan on you. Uncheck foistware before downloading or installing.

Update
Adobe Reader X (10.1.5) MUI. Uninstall then get latest from adobe.com be careful when downloading and installing as they usually try and foist a toolbar or a security scan on you. Uncheck foistware before downloading or installing.


Copy the text in the code box by highlighting and Ctrl + c

:OTL
IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
IE - HKLM\..\SearchScopes\{1A89D2C7-D73F-DAA1-0E22-427446954AB5}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://slirsredirect...mrud=29-01-2013
IE - HKLM\..\SearchScopes\{7DFBEC25-E1C6-7769-85DB-7EFF7E4B1D01}: "URL" = http://feed.helperba...q={searchTerms}
IE - HKCU\..\SearchScopes,Backup.Old.DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKCU\..\SearchScopes\{91607fa7-3c2f-4f90-93e3-d5337a6b0ac2}: "URL" = browseforchange/search/redirect/?type=default&user_id=be48eb40-8915-4872-8bf7-e4d09a10eb04&query={searchTerms}
FF - prefs.js..keyword.URL: "http://www.aol.com/"
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_171.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: File not found
[2012/04/12 12:39:47 | 000,000,000 | ---D | M] (Serif DrawPlus Community Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions\{b97ed18c-1a8a-4acc-884f-b4fe7415adf2}
[2012/07/12 10:23:04 | 000,000,000 | ---D | M] (Bandoo for Firefox) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\extensions\[email protected]
[2013/01/29 11:57:25 | 000,000,000 | ---D | M] (AOL Radio Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\{6ad56361-628f-471b-8f9d-4c338973a87d}
[2013/01/09 15:11:31 | 000,000,000 | ---D | M] (AOL Toolbar) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\fil6wlr9.default\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
[2012/12/18 13:59:15 | 000,000,000 | ---D | M] (CouponAmazing) -- C:\Users\Gilbert\AppData\Roaming\Mozilla\Firefox\Profiles\profile\extensions\couponamazing@jetpack
[2013/01/13 14:47:56 | 000,000,000 | ---D | M] (AOL Toolbar) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No CLSID value found.
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (AlxHelper Class) - {F443A627-5009-4323-9C1D-7FD598D0D712} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com)
O3:64bit: - HKLM\..\Toolbar: (no name) - !{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - !{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {8660E5B3-6C41-44DE-8503-98D99BBECD41} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {256DB8BC-7DA7-4248-97CD-44E07216B7F1} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_27)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_27)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)

:files
xcopy %Temp%\smtmp\1 "%AllUsersProfile%\Start Menu" /H /I /S /Y /C
xcopy %Temp%\smtmp\2 "%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch" /H /I /S /Y /C
xcopy %Temp%\smtmp\3 "%AppData%\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar" /H /I /S /Y /C
xcopy %Temp%\smtmp\4 "%AllUsersProfile%\Desktop" /H /I /S /Y /C
at /c
C:\Windows\tasks\At*.job
type C:\ProgramData\Avast Software\Avast\report\aswboot.txt /c
reg query "HKEY_CLASSES_ROOT\.log" /s /c
reg query "HKEY_CLASSES_ROOT\.txt" /s /c
reg query "HKEY_CURRENT_USER\Software\Classes\.log" /s /c
reg query "HKEY_CURRENT_USER\Software\Classes\.txt" /s /c
reg query "HKEY_CLASSES_ROOT\CLSID\{5e941d80-bf96-11cd-b579-08002b30bfeb}" /s /c
reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.log" /s /c
reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.txt" /s /c
reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5e941d80-bf96-11cd-b579-08002b30bfeb}" /s /c

:Commands
[EMPTYFLASH]
[EMPTYJAVA]
[purity]
[Reboot]


then Rightclick on OTL and select Run As Administrator to start. Under the Custom Scans/Fixes box at the bottom, paste (ctrl +v) the text. Verify that you got it all and Then click the RUN FIX button (NOT THE QUICK SCAN button!) at the top
Let the program run unhindered, OTL will reboot the PC when it is done. Save the log and copy and paste it into a reply.
It appears that Old Timer is now hiding the log in c:\_OTL\MovedFiles\03022013-some number.log so look there if you don't see it.
  • 0

#30
soonerskies

soonerskies

    Member

  • Topic Starter
  • Member
  • PipPip
  • 74 posts
My bad! ... Wordpad is the problem ... just loading it causes the system to crash. I can load .txt & .log files in to notepad with no problems.

Ran bluescreenview ... report posted below.

Ran FIXIT for search and windows media player ... says it did some repairs, not certain if fixed totally though. ??? searcg behavior better than before, actually get some results ... but behavior isn't as complete as my laptop.

Also ... one test, I searched for *.jpg across "Computer" ... ran for long time, then crashed with same bluescreen

WIll continue on with remainder of your last instructions.

For now, here's BSOD.txt

==================================================
Dump File : 030213-22027-01.dmp
Crash Time : 3/2/2013 3:42:53 PM
Bug Check String : BAD_POOL_HEADER
Bug Check Code : 0x00000019
Parameter 1 : 00000000`00000021
Parameter 2 : fffff900`c440b000
Parameter 3 : 00000000`00003130
Parameter 4 : 000000a8`00000169
Caused By Driver : win32k.sys
Caused By Address : win32k.sys+19411
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-22027-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 315,256
==================================================

==================================================
Dump File : 030213-21543-01.dmp
Crash Time : 3/2/2013 1:09:10 PM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x00000050
Parameter 1 : fffff900`c436c000
Parameter 2 : 00000000`00000001
Parameter 3 : fffff960`00032354
Parameter 4 : 00000000`00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75c40
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.18044 (win7sp1_gdr.130104-1431)
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-21543-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 030213-20404-01.dmp
Crash Time : 3/2/2013 11:04:16 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x00000050
Parameter 1 : fffff900`c3c4b000
Parameter 2 : 00000000`00000001
Parameter 3 : fffff960`00062354
Parameter 4 : 00000000`00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75c40
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.18044 (win7sp1_gdr.130104-1431)
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-20404-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 030213-24289-01.dmp
Crash Time : 3/2/2013 10:36:00 AM
Bug Check String : BAD_POOL_HEADER
Bug Check Code : 0x00000019
Parameter 1 : 00000000`00000021
Parameter 2 : fffff900`c2eac000
Parameter 3 : 00000000`00003130
Parameter 4 : 000000a8`00000169
Caused By Driver : win32k.sys
Caused By Address : win32k.sys+19411
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-24289-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 030213-21762-01.dmp
Crash Time : 3/2/2013 6:02:55 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x00000050
Parameter 1 : fffff900`c5c43000
Parameter 2 : 00000000`00000001
Parameter 3 : fffff960`00092354
Parameter 4 : 00000000`00000000
Caused By Driver : atikmdag.sys
Caused By Address : atikmdag.sys+10356c
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-21762-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 030213-23634-01.dmp
Crash Time : 3/2/2013 5:50:42 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x00000050
Parameter 1 : fffff900`c066a000
Parameter 2 : 00000000`00000001
Parameter 3 : fffff960`000a2354
Parameter 4 : 00000000`00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75c40
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.18044 (win7sp1_gdr.130104-1431)
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-23634-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 030213-28657-01.dmp
Crash Time : 3/2/2013 5:41:11 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x00000050
Parameter 1 : fffff900`c4bdb000
Parameter 2 : 00000000`00000001
Parameter 3 : fffff960`00022354
Parameter 4 : 00000000`00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75c40
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.18044 (win7sp1_gdr.130104-1431)
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-28657-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 030213-22542-01.dmp
Crash Time : 3/2/2013 5:32:01 AM
Bug Check String : BAD_POOL_HEADER
Bug Check Code : 0x00000019
Parameter 1 : 00000000`00000021
Parameter 2 : fffff900`c3015000
Parameter 3 : 00000000`00003130
Parameter 4 : 000000a8`00000169
Caused By Driver : win32k.sys
Caused By Address : win32k.sys+19411
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+75c40
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\030213-22542-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 021713-30576-01.dmp
Crash Time : 2/17/2013 12:07:46 AM
Bug Check String : KMODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x0000001e
Parameter 1 : 00000000`00000000
Parameter 2 : 00000000`00000000
Parameter 3 : 00000000`00000000
Parameter 4 : 00000000`00000000
Caused By Driver : HIDCLASS.SYS
Caused By Address : HIDCLASS.SYS+2622
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+7ef90
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\021713-30576-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 012613-35334-01.dmp
Crash Time : 1/26/2013 11:21:58 AM
Bug Check String : SYSTEM_SERVICE_EXCEPTION
Bug Check Code : 0x0000003b
Parameter 1 : 00000000`c0000005
Parameter 2 : fffff960`000f2e2f
Parameter 3 : fffff880`02a56010
Parameter 4 : 00000000`00000000
Caused By Driver : win32k.sys
Caused By Address : win32k.sys+f2e2f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+7efc0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\012613-35334-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,672
==================================================

==================================================
Dump File : 012413-28844-01.dmp
Crash Time : 1/24/2013 1:28:54 PM
Bug Check String : CRITICAL_OBJECT_TERMINATION
Bug Check Code : 0x000000f4
Parameter 1 : 00000000`00000003
Parameter 2 : fffffa80`0731fb30
Parameter 3 : fffffa80`0731fe10
Parameter 4 : fffff800`03593460
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+7efc0
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.18044 (win7sp1_gdr.130104-1431)
Processor : x64
Crash Address : ntoskrnl.exe+7efc0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\012413-28844-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 274,616
==================================================
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP