I'm have a HP laptop with Windows 8 which has been giving me trouble lately. First its been getting too hot. It has shut itself down a few times to cool off. It's not tucked up into any tight spaces or anything. It seems to be slower than usual lately as well. Especially when I"m on the Internet. I know most techs don't care for IE but its what I use and prefer. I've been getting a ton of error pop-ups while on-line. It freezes a lot and has problems loading some pages. 1 error I've been getting is:
____________________________________________________________________________
Internet Explorer has stopped working.
Windows can check for a solution to the problem.
- check on-line for a solution and close the program
- close the program.
____________________________________________________________________________
There are times I'll try to access a web page and I get the error page that it isn't available or can't open it...something like that. Ive been getting more active-x error messages and alerts too.
I ran Trendmicro Housecall on-line scan yesterday and it didn't find any problems. I run the system maintenance option on Advanced System Care 6.4 Pro at least a few times a week but nothing "major" has been showing up. I have Malwarebytes Anti-Malware running all the time and run scans on it too. I ran HijackThis and it said it couldn't access my hosts file...that hasn't happened before.
I can't seem to find the problem but something is wrong with my laptop and it's getting very annoying to always have to work around the error messages and lagging performance. If anyone could take a look and see if there is something to fix I'd greatly appreciate it!
I ran OTL and have included the results here but it gave me 2 different pages. The first says OTL and the other is called Extras.txt. I'm pasting them both.
OTL.txt
____________________________________________
OTL logfile created on: 9/30/2013 10:58:53 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\antes98\Desktop\Utilities
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16688)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.47 Gb Total Physical Memory | 1.14 Gb Available Physical Memory | 32.74% Memory free
8.68 Gb Paging File | 5.46 Gb Available in Paging File | 62.95% Paging File free
Paging file location(s): C:\pagefile.sys 5331 5331 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 439.63 Gb Total Space | 222.53 Gb Free Space | 50.62% Space Free | Partition Type: NTFS
Drive D: | 25.36 Gb Total Space | 2.67 Gb Free Space | 10.53% Space Free | Partition Type: NTFS
Computer Name: MOMS_LAPTOP | User Name: antes98 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013/09/30 22:57:38 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\antes98\Desktop\Utilities\OTL.exe
PRC - [2013/09/29 11:01:17 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2013/09/27 13:16:30 | 009,588,736 | ---- | M] () -- C:\Users\antes98\Desktop\New Games\Midnight Mysteries 5- Witches of Abraham Collectors Edition\MidnightMysteries5_WitchesOfAbrahamCE.exe
PRC - [2013/09/04 22:09:20 | 000,441,408 | ---- | M] (BillP Studios) -- C:\Program Files (x86)\BillP Studios\WinPatrol\WinPatrol.exe
PRC - [2013/08/28 23:22:52 | 000,324,392 | ---- | M] (Uniblue Systems Ltd) -- C:\Program Files (x86)\Uniblue\Powersuite\powersuite_monitor.exe
PRC - [2013/08/28 23:22:52 | 000,324,392 | ---- | M] (Uniblue Systems Limited) -- C:\Program Files (x86)\Uniblue\Powersuite\powersuite.exe
PRC - [2013/08/08 17:59:48 | 000,877,936 | ---- | M] (SAMSUNG Electornics Co., Ltd.) -- C:\Users\antes98\AppData\Roaming\Verizon\UA_ar\UA.exe
PRC - [2013/07/23 19:09:28 | 000,283,136 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
PRC - [2013/07/04 15:53:10 | 004,939,312 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
PRC - [2013/06/24 20:35:28 | 000,308,816 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
PRC - [2013/06/05 13:28:40 | 027,370,808 | ---- | M] (Dropbox, Inc.) -- C:\Users\antes98\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2013/05/29 11:10:32 | 001,072,664 | ---- | M] (iolo technologies, LLC) -- C:\Program Files (x86)\iolo\Common\Lib\ioloServiceManager.exe
PRC - [2013/04/18 16:58:08 | 000,574,272 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
PRC - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2013/04/04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2013/04/01 15:09:04 | 000,214,296 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn5\ytbb.exe
PRC - [2013/02/02 04:40:58 | 000,375,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
PRC - [2012/12/14 03:51:24 | 000,067,544 | ---- | M] (Internet Download Manager, Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\idmBroker.exe
PRC - [2012/11/13 14:08:12 | 003,487,240 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
========== Modules (No Company Name) ==========
MOD - [2013/09/27 13:16:30 | 009,588,736 | ---- | M] () -- C:\Users\antes98\Desktop\New Games\Midnight Mysteries 5- Witches of Abraham Collectors Edition\MidnightMysteries5_WitchesOfAbrahamCE.exe
MOD - [2013/08/28 23:22:54 | 001,045,800 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\ui_dll.dll
MOD - [2013/08/28 23:22:52 | 000,588,584 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\locale\en\resources.dll
MOD - [2013/08/28 23:22:50 | 020,764,456 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\libcef.dll
MOD - [2013/08/28 23:22:48 | 000,628,520 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\libGLESv2.dll
MOD - [2013/08/28 23:22:48 | 000,118,056 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\libEGL.dll
MOD - [2013/08/28 23:22:46 | 001,100,600 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\avcodec-53.dll
MOD - [2013/08/28 23:22:46 | 000,190,264 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\avformat-53.dll
MOD - [2013/08/28 23:22:46 | 000,123,704 | ---- | M] () -- C:\Program Files (x86)\Uniblue\Powersuite\avutil-51.dll
MOD - [2013/07/15 13:29:04 | 000,620,718 | ---- | M] () -- C:\Program Files (x86)\BillP Studios\WinPatrol\sqlite3.dll
MOD - [2013/03/13 16:48:52 | 024,978,944 | ---- | M] () -- C:\Users\antes98\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2012/11/13 19:32:50 | 003,558,400 | ---- | M] () -- C:\Users\antes98\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
========== Services (SafeList) ==========
SRV:64bit: - [2013/09/19 00:30:57 | 000,109,352 | ---- | M] (SurfRight B.V.) [Auto | Running] -- C:\Program Files\HitmanPro\hmpsched.exe -- (HitmanProScheduler)
SRV:64bit: - [2013/09/02 01:10:39 | 000,263,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:64bit: - [2013/08/16 01:39:26 | 002,371,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:64bit: - [2013/07/31 00:53:17 | 000,207,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:64bit: - [2013/07/10 06:50:40 | 004,251,496 | ---- | M] (Reimage®) [Disabled | Stopped] -- C:\Program Files\Reimage\Reimage Repair\ReiGuard.exe -- (ReimageRealTimeProtection)
SRV:64bit: - [2013/07/01 20:44:21 | 000,016,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:64bit: - [2013/06/20 01:28:26 | 000,470,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:64bit: - [2013/06/20 01:28:23 | 000,179,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:64bit: - [2013/04/09 00:48:42 | 000,169,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:64bit: - [2013/03/01 22:45:07 | 000,171,008 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:64bit: - [2013/03/01 22:45:05 | 000,180,224 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:64bit: - [2013/01/09 19:23:16 | 001,964,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:64bit: - [2013/01/09 19:22:35 | 000,438,272 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:64bit: - [2012/09/20 02:31:18 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:64bit: - [2012/09/20 01:18:04 | 002,675,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:64bit: - [2012/08/23 10:45:42 | 000,029,600 | ---- | M] (Hewlett-Packard Company) [Disabled | Stopped] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2012/08/09 02:45:58 | 000,239,616 | ---- | M] (AMD) [Disabled | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2012/08/08 14:36:06 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Disabled | Stopped] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2012/07/25 23:07:47 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:64bit: - [2012/07/25 23:07:40 | 000,283,648 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:64bit: - [2012/07/25 23:07:25 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:64bit: - [2012/07/25 23:06:34 | 000,743,936 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:64bit: - [2012/07/25 23:06:33 | 000,161,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:64bit: - [2012/07/25 23:06:33 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:64bit: - [2012/07/25 23:05:55 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:64bit: - [2012/07/25 23:05:34 | 000,037,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:64bit: - [2012/07/25 23:05:24 | 000,342,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:64bit: - [2012/07/25 23:05:08 | 000,122,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AUInstallAgent.dll -- (AllUserInstallAgent)
SRV:64bit: - [2012/07/25 20:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:64bit: - [2012/07/25 20:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:64bit: - [2012/07/25 20:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:64bit: - [2012/07/25 20:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:64bit: - [2012/07/25 20:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:64bit: - [2012/07/25 20:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:64bit: - [2012/07/21 12:30:36 | 000,321,536 | ---- | M] (IDT, Inc.) [Disabled | Stopped] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2010/04/14 22:27:42 | 000,205,856 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Acer\AcerSync\AcerSyncService.exe -- (AcerSyncServiceWinService)
SRV - [2013/09/29 11:01:17 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013/07/23 19:09:28 | 000,283,136 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe -- (avgwd)
SRV - [2013/07/04 15:53:10 | 004,939,312 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2013/06/18 10:21:21 | 000,117,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/05/29 11:10:32 | 001,072,664 | ---- | M] (iolo technologies, LLC) [Auto | Running] -- C:\Program Files (x86)\iolo\Common\Lib\ioloServiceManager.exe -- (ioloSystemService)
SRV - [2013/04/18 16:58:08 | 000,574,272 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe -- (AdvancedSystemCareService6)
SRV - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013/03/12 09:01:38 | 000,559,168 | ---- | M] (RealNetworks, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\Online Games Manager\ogmservice.exe -- (ogmservice)
SRV - [2012/09/20 01:18:04 | 002,675,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2012/08/23 11:31:24 | 002,148,216 | ---- | M] (AVG) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc)
SRV - [2012/08/10 20:53:44 | 000,085,504 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2012/07/25 23:20:04 | 000,018,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2012/07/25 23:18:41 | 000,408,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2012/07/25 23:17:52 | 000,060,416 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2012/07/13 21:02:16 | 002,451,456 | ---- | M] (Realsil Microelectronics Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)
SRV - [2012/07/09 16:40:02 | 000,035,232 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Disabled | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2010/10/12 13:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/04/02 22:34:12 | 000,073,728 | ---- | M] (Sony Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\Fsk\SonySCSIHelperService.exe -- (Sony SCSI Helper Service)
SRV - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) [Disabled | Stopped] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2008/11/09 16:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013/09/19 00:36:43 | 000,092,376 | ---- | M] (MalwareBytes) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mbamchameleon.sys -- (mbamchameleon)
DRV:64bit: - [2013/09/05 01:43:42 | 000,045,880 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\Drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2013/09/02 01:10:42 | 000,096,512 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\wfplwfs.sys -- (WFPLWFS)
DRV:64bit: - [2013/09/02 01:10:30 | 000,120,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:64bit: - [2013/09/02 01:10:29 | 000,195,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2013/08/16 01:41:13 | 000,058,200 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\Drivers\dam.sys -- (dam)
DRV:64bit: - [2013/07/31 00:53:08 | 000,037,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:64bit: - [2013/07/31 00:53:07 | 000,213,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\UCX01000.SYS -- (UCX01000)
DRV:64bit: - [2013/07/31 00:53:05 | 000,337,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBXHCI.SYS -- (USBXHCI)
DRV:64bit: - [2013/07/20 01:51:00 | 000,311,608 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\Drivers\avgloga.sys -- (Avgloga)
DRV:64bit: - [2013/07/20 01:50:56 | 000,246,072 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\Drivers\avgidsdrivera.sys -- (AVGIDSDriver)
DRV:64bit: - [2013/07/20 01:50:56 | 000,071,480 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\Drivers\avgidsha.sys -- (AVGIDSHA)
DRV:64bit: - [2013/07/20 01:50:50 | 000,206,648 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\Drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2013/07/18 02:04:48 | 000,248,632 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\avgwfpa.sys -- (Avgwfpa)
DRV:64bit: - [2013/07/01 20:44:14 | 000,036,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdBoot.sys -- (WdBoot)
DRV:64bit: - [2013/07/01 18:08:49 | 000,247,216 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdFilter.sys -- (WdFilter)
DRV:64bit: - [2013/07/01 01:45:28 | 000,116,536 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\Drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2013/06/27 05:57:42 | 000,172,920 | ---- | M] (Tonec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\Drivers\idmwfp.sys -- (IDMWFP)
DRV:64bit: - [2013/06/20 01:28:17 | 000,446,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBHUB3.SYS -- (USBHUB3)
DRV:64bit: - [2013/06/20 01:28:17 | 000,284,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\spaceport.sys -- (spaceport)
DRV:64bit: - [2013/06/20 01:28:17 | 000,069,864 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\pdc.sys -- (pdc)
DRV:64bit: - [2013/05/21 23:37:58 | 000,082,160 | ---- | M] (Raxco Software, Inc.) [File_System | Auto | Running] -- C:\Windows\SysNative\Drivers\PDFsFilter.sys -- (PDFsFilter)
DRV:64bit: - [2013/05/21 23:37:56 | 000,030,752 | ---- | M] (EldoS Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\ElRawDsk.sys -- (ElRawDisk)
DRV:64bit: - [2013/04/04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\Drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2013/03/02 06:57:46 | 000,077,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\storahci.sys -- (storahci)
DRV:64bit: - [2013/03/02 06:45:20 | 000,148,712 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\tpm.sys -- (TPM)
DRV:64bit: - [2013/02/11 20:17:50 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2012/12/13 13:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/11/26 23:55:44 | 000,029,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthhfHid.sys -- (bthhfhid)
DRV:64bit: - [2012/11/20 00:54:31 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hidi2c.sys -- (hidi2c)
DRV:64bit: - [2012/10/26 04:17:44 | 000,020,912 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\avgboota.sys -- (Avgboota)
DRV:64bit: - [2012/10/12 04:08:01 | 000,027,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/09/20 03:55:27 | 003,265,256 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2012/09/20 03:55:24 | 000,533,224 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2012/09/20 00:55:32 | 000,056,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdstor.sys -- (sdstor)
DRV:64bit: - [2012/09/20 00:55:30 | 000,028,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:64bit: - [2012/08/31 10:40:24 | 000,020,800 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\WirelessButtonDriver64.sys -- (WirelessButtonDriver)
DRV:64bit: - [2012/08/24 05:38:28 | 000,448,312 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2012/08/24 05:38:28 | 000,043,832 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\Smb_driver_Intel.sys -- (SmbDrvI)
DRV:64bit: - [2012/08/24 05:38:26 | 000,041,272 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\Smb_driver_AMDASF.sys -- (SmbDrv)
DRV:64bit: - [2012/08/23 10:45:42 | 000,042,400 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2012/08/23 10:45:42 | 000,029,600 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/08/09 04:03:32 | 010,283,520 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/08/09 01:48:20 | 000,368,640 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/07/31 15:22:00 | 000,645,952 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\iaStorA.sys -- (iaStorA)
DRV:64bit: - [2012/07/31 04:04:12 | 000,690,832 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Rt630x64.sys -- (RTL8168)
DRV:64bit: - [2012/07/26 01:26:46 | 000,025,328 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/07/26 01:26:45 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\condrv.sys -- (condrv)
DRV:64bit: - [2012/07/26 01:00:58 | 000,322,800 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:64bit: - [2012/07/26 01:00:58 | 000,106,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\VerifierExt.sys -- (VerifierExt)
DRV:64bit: - [2012/07/26 01:00:58 | 000,097,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\uaspstor.sys -- (UASPStor)
DRV:64bit: - [2012/07/26 01:00:57 | 000,077,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\acpiex.sys -- (acpiex)
DRV:64bit: - [2012/07/26 01:00:55 | 000,064,240 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\mvumis.sys -- (mvumis)
DRV:64bit: - [2012/07/26 01:00:55 | 000,030,960 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2012/07/26 01:00:52 | 000,092,400 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2012/07/26 01:00:52 | 000,081,136 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sss.sys -- (LSI_SSS)
DRV:64bit: - [2012/07/26 01:00:52 | 000,064,752 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2012/07/26 01:00:51 | 000,113,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:64bit: - [2012/07/26 01:00:51 | 000,081,136 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\EhStorClass.sys -- (EhStorClass)
DRV:64bit: - [2012/07/26 01:00:49 | 000,258,288 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2012/07/26 01:00:49 | 000,106,736 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\3ware.sys -- (3ware)
DRV:64bit: - [2012/07/26 01:00:49 | 000,076,016 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2012/07/26 01:00:48 | 000,026,352 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2012/07/26 00:57:54 | 000,361,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\clfs.sys -- (CLFS)
DRV:64bit: - [2012/07/26 00:53:16 | 000,067,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vpci.sys -- (vpci)
DRV:64bit: - [2012/07/25 23:17:38 | 000,036,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2012/07/25 22:29:47 | 000,021,504 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2012/07/25 22:29:14 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mshidumdf.sys -- (mshidumdf)
DRV:64bit: - [2012/07/25 22:29:08 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:64bit: - [2012/07/25 22:29:03 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\HyperVideo.sys -- (HyperVideo)
DRV:64bit: - [2012/07/25 22:28:52 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicRender.sys -- (BasicRender)
DRV:64bit: - [2012/07/25 22:27:58 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vmgencounter.sys -- (gencounter)
DRV:64bit: - [2012/07/25 22:27:41 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\kdnic.sys -- (kdnic)
DRV:64bit: - [2012/07/25 22:27:37 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpitime.sys -- (acpitime)
DRV:64bit: - [2012/07/25 22:27:33 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\npsvctrig.sys -- (npsvctrig)
DRV:64bit: - [2012/07/25 22:27:29 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:64bit: - [2012/07/25 22:27:16 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpipagr.sys -- (acpipagr)
DRV:64bit: - [2012/07/25 22:27:01 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hyperkbd.sys -- (hyperkbd)
DRV:64bit: - [2012/07/25 22:26:46 | 000,062,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SerCx.sys -- (SerCx)
DRV:64bit: - [2012/07/25 22:26:43 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SpbCx.sys -- (SpbCx)
DRV:64bit: - [2012/07/25 22:26:34 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/07/25 22:26:13 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\bthhfenum.sys -- (BthHFEnum)
DRV:64bit: - [2012/07/25 22:25:57 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2012/07/25 22:25:56 | 000,057,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/07/25 22:25:13 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\wpcfltr.sys -- (wpcfltr)
DRV:64bit: - [2012/07/25 22:25:01 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:64bit: - [2012/07/25 22:23:53 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mslldp.sys -- (MsLldp)
DRV:64bit: - [2012/07/25 22:23:42 | 000,097,792 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\Drivers\Ndu.sys -- (Ndu)
DRV:64bit: - [2012/07/25 19:28:00 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\fxppm.sys -- (FxPPM)
DRV:64bit: - [2012/07/24 12:44:02 | 003,618,304 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\athw8x.sys -- (athr)
DRV:64bit: - [2012/07/24 05:35:12 | 000,079,528 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2012/07/24 05:35:12 | 000,026,280 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2012/07/21 12:30:36 | 000,540,160 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2012/07/18 00:59:12 | 000,098,472 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\AtihdW86.sys -- (AtiHDAudioService)
DRV:64bit: - [2012/07/03 18:09:08 | 000,269,968 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\RtsP2Stor.sys -- (RSP2STOR)
DRV:64bit: - [2012/06/23 10:23:38 | 000,199,008 | ---- | M] (AppEx Networks Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\Drivers\appexDrv.sys -- (APXACC)
DRV:64bit: - [2012/06/19 10:07:50 | 000,057,000 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2012/06/02 10:32:26 | 010,627,744 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2011/05/13 03:21:04 | 000,177,640 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssadmdm.sys -- (ssadmdm)
DRV:64bit: - [2011/05/13 03:21:04 | 000,146,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssadserd.sys -- (ssadserd)
DRV:64bit: - [2011/05/13 03:21:02 | 000,157,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssadbus.sys -- (ssadbus)
DRV:64bit: - [2011/05/13 03:21:02 | 000,036,328 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssadadb.sys -- (androidusb)
DRV:64bit: - [2011/05/13 03:21:02 | 000,016,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssadmdfl.sys -- (ssadmdfl)
DRV:64bit: - [2010/06/19 01:36:04 | 000,017,920 | ---- | M] (Siliten) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\InputFilter_FlexDef2b.sys -- (InputFilter_Hid_FlexDef2b)
DRV:64bit: - [2009/12/30 11:21:26 | 000,031,800 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\revoflt.sys -- (Revoflt)
DRV - [2012/07/04 15:26:12 | 000,011,880 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv)
DRV - [2010/11/01 06:08:46 | 000,014,544 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys -- (WinRing0_1_2_0)
DRV - [2010/08/18 22:30:18 | 000,051,200 | ---- | M] (AdwareAway.com) [Kernel | System | Stopped] -- C:\Windows\SysWow64\drivers\Start1Driver.SYS -- (Start1Driver)
DRV - [2010/04/21 08:26:36 | 000,012,800 | ---- | M] (AdwareAway.com) [Kernel | Boot | Stopped] -- C:\Windows\SysWow64\drivers\DiagnosticScan.SYS -- (DiagnosticScan)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.co...54371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.co...54371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
IE - HKLM\..\SearchScopes\{fe8a5a30-7831-4eb2-a9e7-8402c384c841}: "URL" = http://search.mywebs...r={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/?fr=fp-yie10
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://my.yahoo.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TF = http://my.yahoo.com/
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn5\yt.dll (Yahoo! Inc.)
IE - HKCU\..\SearchScopes,DefaultScope = {A8EC11E9-F582-4527-A240-5D5DBDAA40C0}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...0TR&pc=HPNTDFJS
IE - HKCU\..\SearchScopes\{1EA2DC5B-B9B0-449A-A3C1-10AC417CF871}: "URL" = http://search.yahoo....-8&fr=chr-yie10
IE - HKCU\..\SearchScopes\{243CE2EE-09F9-44E5-B40D-EE12C31F9296}: "URL" = http://delicious.com...p={searchTerms}
IE - HKCU\..\SearchScopes\{2F37D3CF-387C-44B0-AB8E-98F2A004CE5F}: "URL" = http://search.yahoo....p={searchTerms}
IE - HKCU\..\SearchScopes\{A8EC11E9-F582-4527-A240-5D5DBDAA40C0}: "URL" = http://search.condui...9162734213&UM=2
IE - HKCU\..\SearchScopes\{C39B2DE2-9EB2-48C4-B040-948768935F6B}: "URL" = http://www.flickr.co...q={searchTerms}
IE - HKCU\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.co...54371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: %7B451cc4f9-5771-491d-b640-8bc3005a5dc7%7D:10.19.2.5
FF - prefs.js..extensions.enabledAddons: %7B8c58b088-1159-4ad9-a411-c7d3ae7edb28%7D:10.16.70.5
FF - prefs.js..extensions.enabledAddons: %7B904EC61F-1109-43BD-9745-8D257C197720%7D:1.128
FF - prefs.js..extensions.enabledAddons: ascsurfingprotection%40iobit.com:1.0
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.10.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@sony.com/eBookLibrary: C:\Program Files (x86)\Sony\Reader\Data\bin\npebldetectmoz.dll (Sony Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: C:\Users\antes98\AppData\Local\Roblox\Versions\version-394f11f19cd64b1a\\NPRobloxProxy.dll ()
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\antes98\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\antes98\AppData\Roaming\IDM\idmmzcc5 [2013/09/02 16:40:09 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{904EC61F-1109-43BD-9745-8D257C197720}: C:\Program Files (x86)\Lyrics-Show\128.xpi [2013/08/17 23:31:57 | 000,004,922 | ---- | M] ()
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\[email protected]: C:\Users\antes98\AppData\Roaming\IDM\idmmzcc5 [2013/09/02 16:40:09 | 000,000,000 | ---D | M]
[2013/08/17 23:30:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\antes98\AppData\Roaming\Mozilla\Extensions
[2013/07/08 18:01:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\antes98\AppData\Roaming\Mozilla\Firefox\extensions
[2013/03/25 21:32:16 | 000,000,000 | ---D | M] (BrotherSoft Extreme2 B1) -- C:\Users\antes98\AppData\Roaming\Mozilla\Firefox\extensions\{94193c2f-e73f-4feb-b393-2b95f0a01430}
[2013/09/19 00:18:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\antes98\AppData\Roaming\Mozilla\Firefox\Profiles\7bokzjn5.default\extensions
[2013/09/04 19:03:03 | 000,000,000 | ---D | M] (Advanced SystemCare Surfing Protection) -- C:\Users\antes98\AppData\Roaming\Mozilla\Firefox\Profiles\7bokzjn5.default\extensions\[email protected]
[2013/09/18 22:16:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\antes98\AppData\Roaming\Mozilla\Firefox\Profiles\7bokzjn5.default\extensions\staged
[2013/08/31 16:13:48 | 000,824,302 | ---- | M] () (No name found) -- C:\Users\antes98\AppData\Roaming\Mozilla\Firefox\Profiles\7bokzjn5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013/08/05 16:13:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/08/05 16:13:32 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\PROGRAM FILES (X86)\IOBIT APPS TOOLBAR\FF
[2013/08/17 23:31:57 | 000,004,922 | ---- | M] () (No name found) -- C:\PROGRAM FILES (X86)\LYRICS-SHOW\128.XPI
File not found (No name found) -- C:\USERS\ANTES98\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7BOKZJN5.DEFAULT\EXTENSIONS\{451CC4F9-5771-491D-B640-8BC3005A5DC7}
File not found (No name found) -- C:\USERS\ANTES98\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7BOKZJN5.DEFAULT\EXTENSIONS\{8C58B088-1159-4AD9-A411-C7D3AE7EDB28}
========== Chrome ==========
CHR - homepage: http://www.google.com
CHR - homepage: http://www.google.com
CHR - Extension: No name found = C:\Users\antes98\AppData\Local\Google\Chrome\User Data\Default\Extensions\kofdeppnfmcjponaanjlfjlelednbnjo\1\
CHR - Extension: No name found = C:\Users\antes98\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0\
CHR - Extension: No name found = C:\Users\antes98\AppData\Local\Google\Chrome\User Data\Default\Extensions\onpanmkhgcnepphaebodomjjaenfahha\1\
O1 HOSTS File: ([2009/06/10 13:00:28 | 000,000,824 | R--- | M]) - C:\Windows\SysNative\Drivers\etc\hosts
O2:64bit: - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2 - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn5\yt.dll (Yahoo! Inc.)
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Advanced SystemCare Browser Protection) - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASCPlugin_Protection.dll (IObit)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn5\yt.dll (Yahoo! Inc.)
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [Shadow Defender Daemon] C:\Program Files\Shadow Defender\DefenderDaemon.exe (SHADOWDEFENDER.COM)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [Reader Library Launcher] C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe (Sony Corporation)
O4 - HKLM..\Run: [SDTray] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
O4 - HKCU..\Run: [Advanced SystemCare 6] C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe (IObit)
O4 - HKCU..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKCU..\Run: [Spybot-S&D Cleaning] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe (Safer-Networking Ltd.)
O4 - HKCU..\Run: [WinPatrol] C:\Program Files (x86)\BillP Studios\WinPatrol\winpatrol.exe (BillP Studios)
O4 - Startup: C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\antes98\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verizon Wireless Software Utility Application for Android Samsung.lnk = C:\Users\antes98\AppData\Roaming\Verizon\UA_ar\UA.exe (SAMSUNG Electornics Co., Ltd.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LegacyDrive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inary data over 200 bytes]
O8:64bit: - Extra context menu item: &Download All using 4shared Desktop - res://C:\Program Files (x86)\4shared Desktop\Desktop.32/D_ALL_LINK File not found
O8:64bit: - Extra context menu item: &Download using 4shared Desktop - res://C:\Program Files (x86)\4shared Desktop\Desktop.32/D_ONE_LINK File not found
O8:64bit: - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:64bit: - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: &Download All using 4shared Desktop - res://C:\Program Files (x86)\4shared Desktop\Desktop.32/D_ALL_LINK File not found
O8 - Extra context menu item: &Download using 4shared Desktop - res://C:\Program Files (x86)\4shared Desktop\Desktop.32/D_ONE_LINK File not found
O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: Add to Favorites - {9BEF3FB8-E5E0-4494-BC59-7BAC1C9AD503} - C:\Program Files (x86)\Common Files\Tidy Favorites\AddToFav.dll ()
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
O9 - Extra Button: Open Tidy Favorites - {E3CB497B-E230-4445-8B34-13476822F867} - C:\Program Files (x86)\Common Files\Tidy Favorites\OpenFav.dll ()
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1438FF4C-5062-4532-B4AE-7C5AC0CFFCF1}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A25B0900-B600-432A-B2FA-6E69AE714C1C}: DhcpNameServer = 192.168.0.1 192.168.1.1
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013/09/30 18:50:35 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\HotLava
[2013/09/30 16:47:02 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Questerium - Sinister Trinity
[2013/09/30 16:45:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Questerium - Sinister Trinity
[2013/09/29 21:11:57 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\blg
[2013/09/29 21:11:57 | 000,000,000 | ---D | C] -- C:\ProgramData\blg
[2013/09/29 21:11:26 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Dark Sisterhood - The Initiation Strategy Guide
[2013/09/29 19:10:39 | 002,467,424 | ---- | C] (Trend Micro Inc.) -- C:\Users\antes98\Desktop\HousecallLauncher64.exe
[2013/09/29 19:04:55 | 000,000,000 | ---D | C] -- C:\HijackThis
[2013/09/27 01:39:36 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\AlawarEntertainment
[2013/09/26 22:14:31 | 000,000,000 | ---D | C] -- C:\Users\antes98\Documents\Corel PaintShop Pro
[2013/09/25 17:48:35 | 000,000,000 | ---D | C] -- C:\Users\antes98\Desktop\Zach project
[2013/09/25 04:15:27 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Local\Avg2014
[2013/09/24 22:04:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinPatrol
[2013/09/24 22:01:16 | 000,907,304 | ---- | C] (BillP Studios) -- C:\Users\antes98\Desktop\wpsetup.exe
[2013/09/22 21:53:28 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\NevoSoft Games
[2013/09/22 13:47:14 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Mystery Age - Liberation of Souls Strategy Guide
[2013/09/22 13:14:26 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Digital Quarter
[2013/09/21 08:21:23 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Age 3 - Liberation of Souls
[2013/09/21 08:20:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mystery Age 3 - Liberation of Souls
[2013/09/19 00:37:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
[2013/09/19 00:36:43 | 000,092,376 | ---- | C] (MalwareBytes) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2013/09/18 23:33:26 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\WinPatrol
[2013/09/18 23:33:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol
[2013/09/18 23:33:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BillP Studios
[2013/09/18 20:21:28 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Malwarebytes
[2013/09/18 20:21:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2013/09/18 20:21:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2013/09/18 20:21:21 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2013/09/18 20:21:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2013/09/18 01:08:58 | 000,012,872 | ---- | C] (SurfRight B.V.) -- C:\Windows\SysNative\bootdelete.exe
[2013/09/18 00:49:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
[2013/09/18 00:49:26 | 000,000,000 | ---D | C] -- C:\Program Files\HitmanPro
[2013/09/18 00:48:45 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro
[2013/09/17 10:57:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Viewer for Windows 8
[2013/09/17 10:57:38 | 000,000,000 | ---D | C] -- C:\Program Files\PDF Viewer for Windows 8
[2013/09/16 17:32:39 | 000,000,000 | ---D | C] -- C:\Users\antes98\Documents\Curse of the Ghost Ship Savegames
[2013/09/13 17:47:44 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Local\{1152146D-37AD-4E36-BBE4-DE4216F31632}
[2013/09/13 02:41:57 | 000,000,000 | R--D | C] -- C:\Users\antes98\Dropbox
[2013/09/13 02:40:31 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
[2013/09/13 02:39:16 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Dropbox
[2013/09/13 02:21:55 | 000,000,000 | ---D | C] -- C:\Users\antes98\Documents\My Books
[2013/09/12 19:23:55 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\northern_tale_2
[2013/09/12 18:27:15 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Northern Tale 2
[2013/09/12 18:25:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Northern Tale 2
[2013/09/07 22:15:03 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Reel Ten
[2013/09/07 14:53:03 | 000,000,000 | ---D | C] -- C:\Users\antes98\Desktop\world
[2013/09/06 20:40:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Mousechief
[2013/09/05 01:43:42 | 000,045,880 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgrkx64.sys
[2013/09/05 00:18:13 | 000,000,000 | ---D | C] -- C:\Users\antes98\AppData\Roaming\Hidden Objects TheHauntedHouse
[2013/09/01 23:12:42 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2013/07/08 18:12:46 | 000,940,544 | ---- | C] (Apache Software Foundation) -- C:\Users\antes98\AppData\Local\log4cxx.dll
[2013/05/27 19:47:21 | 000,708,168 | ---- | C] (MindSpark) -- C:\Program Files (x86)\39Uninstall MapsGalaxy.dll
[2013/04/11 10:04:40 | 000,708,168 | ---- | C] (MindSpark) -- C:\Program Files (x86)\6xUninstall ReadingFanatic.dll
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013/09/30 22:45:09 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/09/30 17:15:39 | 000,959,090 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/09/30 17:15:39 | 000,797,350 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/09/30 17:15:39 | 000,162,592 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/09/30 17:11:26 | 000,000,920 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/09/30 17:10:59 | 000,000,380 | ---- | M] () -- C:\Windows\tasks\powersuite_monitor.job
[2013/09/30 17:10:48 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2013/09/30 17:10:47 | 2981,527,552 | -HS- | M] () -- C:\hiberfil.sys
[2013/09/30 16:47:02 | 000,002,247 | ---- | M] () -- C:\Users\antes98\Desktop\Questerium - Sinister Trinity.lnk
[2013/09/30 16:35:17 | 305,564,995 | ---- | M] () -- C:\Users\antes98\Desktop\QuesteriumSinisterTrinity.rar
[2013/09/30 02:26:43 | 413,865,984 | ---- | M] () -- C:\Users\antes98\Desktop\Rosetta Stone v3_2 - Spanish (Latin America) - Level 2.iso
[2013/09/29 22:40:52 | 759,386,433 | ---- | M] () -- C:\Users\antes98\Desktop\DarkSisterhood-TheInitiationWithGuide.rar
[2013/09/29 20:24:05 | 005,082,011 | ---- | M] () -- C:\Users\antes98\AppData\Local\census.cache
[2013/09/29 20:23:17 | 000,140,068 | ---- | M] () -- C:\Users\antes98\AppData\Local\ars.cache
[2013/09/29 19:50:49 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\MSVBVM60.DLL
[2013/09/29 19:50:46 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\olepro32.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\D3DIM700.DLL
[2013/09/29 19:50:46 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\atiumdva.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\atiumdag.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\atiu9pag.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\aticfx32.dll
[2013/09/29 19:10:39 | 002,467,424 | ---- | M] (Trend Micro Inc.) -- C:\Users\antes98\Desktop\HousecallLauncher64.exe
[2013/09/29 14:00:42 | 000,298,584 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2013/09/29 14:00:42 | 000,298,584 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013/09/29 11:01:32 | 000,281,872 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2013/09/29 11:01:17 | 000,076,888 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013/09/29 05:43:55 | 000,001,381 | ---- | M] () -- C:\Users\antes98\Desktop\ROBLOX Player.lnk
[2013/09/29 05:43:55 | 000,001,188 | ---- | M] () -- C:\Users\antes98\Desktop\ROBLOX Studio 2013.lnk
[2013/09/28 01:39:20 | 000,001,332 | ---- | M] () -- C:\Users\antes98\Desktop\MidnightMysteries5_WitchesOfAbrahamCE.exe - Shortcut.lnk
[2013/09/27 22:06:48 | 498,744,741 | ---- | M] () -- C:\Users\antes98\Desktop\MidnightMysteries5-WitchesofAbrahamCE.rar
[2013/09/26 06:31:31 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/09/26 06:31:24 | 000,000,000 | ---- | M] () -- C:\asc_rdflag
[2013/09/26 02:14:46 | 000,386,923 | ---- | M] () -- C:\Windows\SysNative\ApnDatabase.xml
[2013/09/25 23:31:30 | 815,900,698 | ---- | M] () -- C:\Users\antes98\Desktop\Enigmatis2-TheMistsofRavenwood-CE_2.rar
[2013/09/25 21:46:42 | 000,000,884 | ---- | M] () -- C:\Users\antes98\Desktop\AVG 2013.lnk
[2013/09/24 22:18:56 | 000,001,444 | ---- | M] () -- C:\Users\antes98\Desktop\TheHappyHereafter.exe - Shortcut.lnk
[2013/09/24 22:01:16 | 000,907,304 | ---- | M] (BillP Studios) -- C:\Users\antes98\Desktop\wpsetup.exe
[2013/09/24 21:02:17 | 161,361,255 | ---- | M] () -- C:\Users\antes98\Desktop\TheHappyHerefter.rar
[2013/09/24 15:14:08 | 000,000,364 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForantes98.job
[2013/09/23 05:00:09 | 1101,208,818 | ---- | M] () -- C:\Users\antes98\Desktop\WebDeceit2SandsCE.rar
[2013/09/22 21:53:21 | 000,000,836 | ---- | M] () -- C:\Users\antes98\Desktop\Shadow Shelter.exe - Shortcut.lnk
[2013/09/22 00:29:52 | 000,000,991 | ---- | M] () -- C:\Users\Public\Desktop\Algodoo.lnk
[2013/09/21 08:21:23 | 000,002,476 | ---- | M] () -- C:\Users\antes98\Desktop\Mystery Age 3 - Liberation of Souls Strategy Guide.lnk
[2013/09/21 08:21:22 | 000,002,316 | ---- | M] () -- C:\Users\antes98\Desktop\Mystery Age 3 - Liberation of Souls.lnk
[2013/09/21 08:05:12 | 000,000,849 | ---- | M] () -- C:\Users\Public\Desktop\calibre 64bit - E-book management.lnk
[2013/09/21 08:01:11 | 058,339,328 | ---- | M] () -- C:\Users\antes98\Desktop\calibre-64bit-1.4.0.msi
[2013/09/20 02:47:46 | 540,901,986 | ---- | M] () -- C:\Users\antes98\Desktop\ShadowShelter.rar
[2013/09/19 18:01:19 | 856,689,842 | ---- | M] () -- C:\Users\antes98\Desktop\UnfinishedTales_IllicitLoveCE.rar
[2013/09/19 07:17:29 | 000,000,899 | ---- | M] () -- C:\Users\antes98\Desktop\Downloads.lnk
[2013/09/19 00:36:43 | 000,092,376 | ---- | M] (MalwareBytes) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2013/09/18 01:08:58 | 000,012,872 | ---- | M] (SurfRight B.V.) -- C:\Windows\SysNative\bootdelete.exe
[2013/09/15 03:35:05 | 779,939,525 | ---- | M] () -- C:\Users\antes98\Desktop\DarkCases-TheBloodRubyCE.rar
[2013/09/14 04:43:19 | 000,000,017 | ---- | M] () -- C:\Users\antes98\Desktop\n0bdoua19c37703a.js
[2013/09/13 02:40:53 | 000,001,054 | ---- | M] () -- C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2013/09/12 19:19:38 | 000,004,078 | ---- | M] () -- C:\Windows\SysWow64\userawacs.cfg
[2013/09/12 19:19:35 | 000,000,320 | ---- | M] () -- C:\Windows\SysWow64\usergui.cfg
[2013/09/12 18:27:15 | 000,001,995 | ---- | M] () -- C:\Users\antes98\Desktop\Northern Tale 2.lnk
[2013/09/12 17:36:32 | 326,043,360 | ---- | M] () -- C:\Users\antes98\Desktop\NorthernTale2.rar
[2013/09/12 05:17:30 | 000,340,392 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/09/09 23:18:55 | 000,069,119 | ---- | M] () -- C:\Users\antes98\Desktop\BugsBNormal.png
[2013/09/07 14:53:11 | 000,000,513 | ---- | M] () -- C:\Users\antes98\Desktop\server.properties
[2013/09/05 01:43:42 | 000,045,880 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgrkx64.sys
[2013/09/04 18:23:30 | 000,001,181 | ---- | M] () -- C:\Users\antes98\Application Data\Microsoft\Internet Explorer\Quick Launch\Powersuite.lnk
[2013/09/03 07:58:28 | 009,978,201 | ---- | M] () -- C:\Users\antes98\AppData\Roaming\log.sflog
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013/09/30 16:47:02 | 000,002,247 | ---- | C] () -- C:\Users\antes98\Desktop\Questerium - Sinister Trinity.lnk
[2013/09/30 16:30:02 | 305,564,995 | ---- | C] () -- C:\Users\antes98\Desktop\QuesteriumSinisterTrinity.rar
[2013/09/30 01:19:36 | 413,865,984 | ---- | C] () -- C:\Users\antes98\Desktop\Rosetta Stone v3_2 - Spanish (Latin America) - Level 2.iso
[2013/09/29 22:17:40 | 759,386,433 | ---- | C] () -- C:\Users\antes98\Desktop\DarkSisterhood-TheInitiationWithGuide.rar
[2013/09/29 19:50:49 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\MSVBVM60.DLL
[2013/09/29 19:50:46 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\olepro32.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\D3DIM700.DLL
[2013/09/29 19:50:46 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\atiumdva.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\atiumdag.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\atiu9pag.dll
[2013/09/29 19:50:46 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\aticfx32.dll
[2013/09/29 14:00:47 | 000,298,584 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013/09/29 11:01:37 | 000,281,872 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2013/09/29 11:01:17 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013/09/29 05:43:55 | 000,001,381 | ---- | C] () -- C:\Users\antes98\Desktop\ROBLOX Player.lnk
[2013/09/29 05:43:10 | 000,001,188 | ---- | C] () -- C:\Users\antes98\Desktop\ROBLOX Studio 2013.lnk
[2013/09/28 01:39:20 | 000,001,332 | ---- | C] () -- C:\Users\antes98\Desktop\MidnightMysteries5_WitchesOfAbrahamCE.exe - Shortcut.lnk
[2013/09/27 19:17:52 | 498,744,741 | ---- | C] () -- C:\Users\antes98\Desktop\MidnightMysteries5-WitchesofAbrahamCE.rar
[2013/09/26 06:31:24 | 000,000,000 | ---- | C] () -- C:\asc_rdflag
[2013/09/26 02:14:46 | 000,386,923 | ---- | C] () -- C:\Windows\SysNative\ApnDatabase.xml
[2013/09/25 22:19:16 | 815,900,698 | ---- | C] () -- C:\Users\antes98\Desktop\Enigmatis2-TheMistsofRavenwood-CE_2.rar
[2013/09/25 21:46:42 | 000,000,884 | ---- | C] () -- C:\Users\antes98\Desktop\AVG 2013.lnk
[2013/09/24 22:18:56 | 000,001,444 | ---- | C] () -- C:\Users\antes98\Desktop\TheHappyHereafter.exe - Shortcut.lnk
[2013/09/24 20:59:48 | 161,361,255 | ---- | C] () -- C:\Users\antes98\Desktop\TheHappyHerefter.rar
[2013/09/23 16:51:10 | 000,000,364 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForantes98.job
[2013/09/23 04:47:15 | 1101,208,818 | ---- | C] () -- C:\Users\antes98\Desktop\WebDeceit2SandsCE.rar
[2013/09/22 21:53:21 | 000,000,836 | ---- | C] () -- C:\Users\antes98\Desktop\Shadow Shelter.exe - Shortcut.lnk
[2013/09/22 00:29:52 | 000,000,991 | ---- | C] () -- C:\Users\Public\Desktop\Algodoo.lnk
[2013/09/21 08:21:23 | 000,002,476 | ---- | C] () -- C:\Users\antes98\Desktop\Mystery Age 3 - Liberation of Souls Strategy Guide.lnk
[2013/09/21 08:21:22 | 000,002,316 | ---- | C] () -- C:\Users\antes98\Desktop\Mystery Age 3 - Liberation of Souls.lnk
[2013/09/21 08:05:12 | 000,000,849 | ---- | C] () -- C:\Users\Public\Desktop\calibre 64bit - E-book management.lnk
[2013/09/21 07:59:58 | 058,339,328 | ---- | C] () -- C:\Users\antes98\Desktop\calibre-64bit-1.4.0.msi
[2013/09/20 01:35:53 | 540,901,986 | ---- | C] () -- C:\Users\antes98\Desktop\ShadowShelter.rar
[2013/09/19 16:08:07 | 856,689,842 | ---- | C] () -- C:\Users\antes98\Desktop\UnfinishedTales_IllicitLoveCE.rar
[2013/09/19 07:17:29 | 000,000,899 | ---- | C] () -- C:\Users\antes98\Desktop\Downloads.lnk
[2013/09/15 03:03:46 | 779,939,525 | ---- | C] () -- C:\Users\antes98\Desktop\DarkCases-TheBloodRubyCE.rar
[2013/09/14 04:43:19 | 000,000,017 | ---- | C] () -- C:\Users\antes98\Desktop\n0bdoua19c37703a.js
[2013/09/13 17:58:37 | 000,000,991 | ---- | C] () -- C:\Users\antes98\Desktop\Algodoo.lnk
[2013/09/13 02:40:53 | 000,001,054 | ---- | C] () -- C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2013/09/12 18:27:15 | 000,001,995 | ---- | C] () -- C:\Users\antes98\Desktop\Northern Tale 2.lnk
[2013/09/12 17:16:44 | 326,043,360 | ---- | C] () -- C:\Users\antes98\Desktop\NorthernTale2.rar
[2013/09/12 05:17:18 | 000,340,392 | ---- | C] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/09/10 23:12:15 | 000,083,968 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
[2013/09/09 23:18:55 | 000,069,119 | ---- | C] () -- C:\Users\antes98\Desktop\BugsBNormal.png
[2013/09/07 14:53:02 | 000,000,513 | ---- | C] () -- C:\Users\antes98\Desktop\server.properties
[2013/09/07 14:22:17 | 000,001,036 | ---- | C] () -- C:\Users\antes98\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Titanic by cube_man.lnk
[2013/09/04 18:23:44 | 000,000,380 | ---- | C] () -- C:\Windows\tasks\powersuite_monitor.job
[2013/09/04 18:23:30 | 000,001,181 | ---- | C] () -- C:\Users\antes98\Application Data\Microsoft\Internet Explorer\Quick Launch\Powersuite.lnk
[2013/08/18 22:17:07 | 000,074,703 | ---- | C] () -- C:\Windows\SysWow64\mfc45.dat
[2013/08/18 01:43:49 | 000,004,509 | ---- | C] () -- C:\Users\antes98\AppData\Roaming\CamStudio.cfg
[2013/08/18 01:43:49 | 000,000,046 | ---- | C] () -- C:\Users\antes98\AppData\Roaming\Camdata.ini
[2013/08/18 01:43:48 | 000,000,408 | ---- | C] () -- C:\Users\antes98\AppData\Roaming\CamShapes.ini
[2013/08/18 01:43:48 | 000,000,408 | ---- | C] () -- C:\Users\antes98\AppData\Roaming\CamLayout.ini
[2013/07/27 01:57:51 | 000,000,017 | ---- | C] () -- C:\Users\antes98\AppData\Local\resmon.resmoncfg
[2013/07/25 19:40:37 | 009,978,201 | ---- | C] () -- C:\Users\antes98\AppData\Roaming\log.sflog
[2013/07/18 03:12:04 | 000,000,113 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013/07/08 18:12:46 | 000,196,608 | ---- | C] () -- C:\Users\antes98\AppData\Local\common_functions.dll
[2013/07/07 06:17:38 | 000,033,958 | ---- | C] () -- C:\ProgramData\uninstaller.exe
[2013/05/27 19:47:21 | 000,186,744 | ---- | C] () -- C:\Program Files (x86)\39res.dll
[2013/04/28 02:27:55 | 000,011,012 | ---- | C] () -- C:\Windows\wininit.ini
[2013/04/11 10:04:40 | 000,186,752 | ---- | C] () -- C:\Program Files (x86)\6xres.dll
[2013/04/05 10:45:36 | 003,123,272 | R--- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2013/04/05 00:55:31 | 000,055,552 | ---- | C] () -- C:\ProgramData\1365137707.bdinstall.bin
[2013/04/05 00:46:23 | 000,111,043 | ---- | C] () -- C:\ProgramData\1365137169.3920.bin
[2013/04/05 00:46:13 | 000,007,767 | ---- | C] () -- C:\ProgramData\1365137169.888.bin
[2013/04/05 00:46:13 | 000,000,670 | ---- | C] () -- C:\ProgramData\1365137169.4320.bin
[2013/04/05 00:46:09 | 000,107,790 | ---- | C] () -- C:\ProgramData\1365137169.2732.bin
[2013/03/21 19:22:32 | 000,000,179 | ---- | C] () -- C:\Windows\Reimage.ini
[2013/03/19 14:22:15 | 005,082,011 | ---- | C] () -- C:\Users\antes98\AppData\Local\census.cache
[2013/03/19 14:21:35 | 000,140,068 | ---- | C] () -- C:\Users\antes98\AppData\Local\ars.cache
[2013/03/19 13:41:39 | 000,000,036 | ---- | C] () -- C:\Users\antes98\AppData\Local\housecall.guid.cache
[2013/03/07 16:24:10 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll
[2013/03/07 16:24:10 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll
[2013/03/07 16:24:10 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll
[2013/03/07 16:24:10 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll
[2013/03/04 19:47:29 | 000,118,290 | ---- | C] () -- C:\Windows\Easy HR Windows System Restore Utility Uninstaller.exe
[2013/01/14 07:46:44 | 000,001,388 | ---- | C] () -- C:\Program Files (x86)\crosscer.cer
[2013/01/13 02:53:05 | 001,580,595 | ---- | C] () -- C:\ProgramData\1358051846.bdinstall.bin
[2013/01/06 22:22:41 | 000,016,384 | ---- | C] () -- C:\Windows\SysWow64\msdrve.dll
[2013/01/06 22:22:41 | 000,010,816 | ---- | C] () -- C:\Windows\vmoptver.dll
[2012/11/23 08:54:40 | 000,114,688 | ---- | C] () -- C:\Users\antes98\AppData\Local\ie_runner_app.exe
[2012/08/16 23:46:43 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012/08/09 02:10:22 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/08/09 02:10:22 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/08/03 18:40:09 | 000,916,510 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/07/26 04:13:10 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2012/07/26 04:13:09 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2012/07/26 03:21:26 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2012/07/25 21:17:42 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2012/07/25 16:37:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2012/07/25 16:28:31 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2012/07/25 16:22:54 | 000,982,240 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2012/07/25 16:22:54 | 000,439,308 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2012/07/25 16:22:54 | 000,092,356 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2012/06/02 10:31:19 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2012/05/10 20:35:16 | 000,029,184 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
========== ZeroAccess Check ==========
[2012/08/17 00:03:34 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/09/26 02:14:51 | 019,758,080 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/09/26 02:14:50 | 017,561,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/07/25 23:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/25 23:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/25 23:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013/09/30 16:13:28 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\.minecraft
[2013/03/29 22:53:21 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\300_Dwarves
[2013/06/27 18:06:55 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\4 Friends Games
[2013/01/18 20:30:01 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\4shared Desktop
[2013/07/16 02:35:47 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\8Floor
[2013/03/07 16:31:47 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Alawar Entertainment
[2013/09/27 01:39:36 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\AlawarEntertainment
[2013/04/03 17:21:48 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Anuman
[2013/07/31 01:35:26 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Anvate Games
[2013/09/26 14:35:56 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Artifex Mundi
[2013/01/20 03:44:59 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\ArtifexMundi
[2013/04/05 02:33:22 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\AVG
[2013/04/05 02:11:33 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\AVG2013
[2013/06/12 16:43:41 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\AwakeningMoonfellWoodStrategyGuide
[2013/07/19 00:08:45 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Awem
[2013/02/08 00:50:10 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Az-Art
[2013/07/08 18:54:05 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Azureus
[2013/08/13 22:00:29 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Between The Worlds 3
[2013/02/28 00:02:55 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\bicyclestudios
[2013/08/02 02:22:18 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Big Fish
[2013/01/02 01:56:53 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Big Top Games
[2012/12/29 23:39:19 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\bigwig_media
[2013/09/23 05:22:13 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\BlamGames
[2013/09/29 21:11:57 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\blg
[2013/06/03 23:37:23 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Blue Tea Games
[2013/09/15 16:04:17 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Boolat Games
[2013/08/18 22:34:29 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Boomzap
[2013/03/19 17:00:31 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\calibre
[2013/07/29 23:44:44 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\casualArts
[2013/07/27 23:06:52 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Chayowo Games
[2013/05/19 23:44:18 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Cinders
[2013/02/07 22:00:45 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Color Brush
[2013/07/03 17:28:51 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Corpatros
[2013/03/05 21:05:40 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Crown
[2013/09/07 22:25:46 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\DailyMagic
[2013/02/19 14:01:37 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Dark Lore Mysteries - The Hunt for Truth Strategy Guide
[2013/09/29 21:11:26 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Dark Sisterhood - The Initiation Strategy Guide
[2013/08/28 00:17:50 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\DarkManor
[2013/05/20 00:11:24 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Deep Shadows
[2013/02/13 02:42:42 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Desktop_Gaming
[2013/09/22 13:14:26 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Digital Quarter
[2013/08/28 23:28:38 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\DikobrazGames
[2013/09/30 17:09:44 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\DMCache
[2013/09/30 17:11:47 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Dropbox
[2013/03/21 19:34:15 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\DuckLink
[2013/08/31 00:58:25 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Eipix
[2013/09/20 19:34:28 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Elephant Games
[2013/01/31 20:44:28 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\enchant
[2013/09/12 21:20:16 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\ERS Game Studios
[2013/02/28 23:55:19 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\EscapeFromParadise2
[2013/03/07 00:34:11 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\FairyTale
[2012/12/29 19:23:31 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\FarmMystery
[2013/03/26 23:24:14 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\FarmUp_realore_en
[2013/01/21 00:05:20 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Fenomen Games
[2013/02/16 01:51:14 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Frogwares
[2013/02/11 22:25:39 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Game
[2013/04/03 21:35:32 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\GameMill Entertainment
[2013/06/29 11:56:29 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\GestaltGames
[2013/01/20 22:08:44 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Ghost Ship Studios
[2013/07/08 19:26:27 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\GigantGames
[2013/05/22 22:01:34 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Gogii
[2013/02/19 14:01:39 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Gogii Games
[2013/05/24 23:14:58 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\HBM-Games
[2013/09/09 18:33:31 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Hidden Objects TheHauntedHouse
[2013/08/03 23:58:53 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\HipSoft
[2013/09/30 18:50:35 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\HotLava
[2013/09/26 02:06:11 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\IDM
[2013/07/13 03:39:36 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Inertia Game Studios
[2013/09/18 00:38:32 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\IObit
[2013/05/26 02:18:57 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\iolo
[2013/08/07 19:08:06 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Islands3
[2013/07/29 23:26:05 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\IT
[2013/08/02 20:23:52 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\IT2
[2013/08/02 22:40:49 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\IT4
[2013/05/22 18:36:45 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\KC Softwares
[2013/06/13 02:26:49 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Lazy Turtle Games
[2013/08/29 21:59:10 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\LeeGT-Games
[2013/08/29 00:25:49 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Legacy Games
[2012/12/30 04:32:44 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\LegacyGames
[2013/03/06 01:30:32 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Liam games
[2013/03/25 21:05:55 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\LibreOffice
[2013/01/17 17:49:05 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Lonely Troops
[2013/01/03 14:47:03 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\MA2
[2013/08/04 00:18:39 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Mad Head Games
[2013/08/05 02:13:25 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\MagicCauldronChaos
[2013/08/12 21:31:21 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\MagicIndie
[2013/02/19 00:30:30 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\margrave1
[2013/07/09 23:59:03 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\margrave3_full
[2013/07/21 09:27:00 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Mariaglorum
[2013/02/24 19:27:22 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Maximize Games
[2013/03/31 15:16:31 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Meridian93
[2013/08/22 00:44:58 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\MoonriseInteractive
[2013/01/28 22:26:07 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\MumboJumbo
[2013/09/22 13:47:14 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Mystery Age - Liberation of Souls Strategy Guide
[2012/12/28 02:11:29 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Mystic Diary - Missing Pages Strategy Guide
[2013/04/03 22:32:52 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Mystic Legacy - The Great Ring Strategy Guide
[2013/06/17 22:58:34 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Nevosoft
[2013/09/22 21:53:28 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\NevoSoft Games
[2013/01/28 21:21:38 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Nitreal Games
[2013/09/12 19:24:47 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\northern_tale_2
[2013/08/17 23:29:12 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Online Video Accelerator
[2013/09/12 00:38:39 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Orneon
[2012/12/26 21:18:24 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Persha Studia
[2013/08/17 23:29:11 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\pi
[2013/02/13 01:55:33 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\PlayFavoriteGames
[2013/02/25 01:11:55 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\PlayFirst
[2013/01/13 23:32:19 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\PopCap Games
[2013/05/22 21:34:38 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Princess Isabella CE
[2013/03/24 22:45:55 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\PuzzleLab
[2013/01/13 00:39:07 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\QuickScan
[2013/07/17 01:00:52 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Rainbow
[2013/09/07 22:15:03 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Reel Ten
[2013/04/11 01:22:25 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\REXARD
[2013/02/22 01:06:41 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\RobinsonCrusoe
[2013/04/28 02:55:40 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Royal Settlement 1450
[2013/09/02 17:00:38 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\saves
[2013/06/26 22:11:39 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\ScummVM
[2013/05/24 17:05:48 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\ShamanGS
[2012/12/30 17:14:49 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Skunk Studios
[2013/08/07 22:19:57 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\SMIGames
[2013/05/24 02:10:23 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Solitaire Egypt
[2013/02/21 17:00:50 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Specialbit
[2013/07/10 22:20:25 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Strange Cases - The Faces of Vengeance Strategy Guide
[2013/07/10 22:21:58 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\SulusGames
[2012/12/25 20:48:59 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Synaptics
[2013/06/22 17:24:48 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\tabagames
[2013/01/24 01:43:33 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\The Missing - Island of Lost Ships Strategy Guide
[2013/08/02 01:45:15 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\TheLastDays
[2013/02/04 22:50:28 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Time Mysteries Strategy Guide
[2012/12/26 21:14:31 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Top Evidence
[2013/04/05 02:10:37 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\TuneUp Software
[2013/06/19 13:17:36 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Ubisoft
[2013/03/24 16:38:51 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Ulead Systems
[2013/07/13 00:51:28 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Uniblue
[2012/12/27 14:27:20 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\URSE Games
[2012/12/29 22:04:25 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\V5 Play
[2013/07/12 19:42:22 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\Vast Studios
[2013/06/24 22:00:52 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\VendelGAMES
[2013/05/20 02:52:57 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\viking_saga_en
[2013/05/29 15:30:52 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\WeatherLord
[2013/02/02 23:35:31 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\WebApp
[2012/12/25 20:55:29 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\WildTangent
[2013/09/18 23:33:33 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\WinPatrol
[2013/08/04 02:02:53 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\World-LooM
[2013/05/22 23:21:49 | 000,000,000 | ---D | M] -- C:\Users\antes98\AppData\Roaming\YoudaGames
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 234 bytes -> C:\ProgramData\TEMP:2AE74FF9
@Alternate Data Stream - 187 bytes -> C:\ProgramData\TEMP:DF5D803F
@Alternate Data Stream - 184 bytes -> C:\ProgramData\TEMP:8A737214
@Alternate Data Stream - 175 bytes -> C:\ProgramData\TEMP:9195103F
@Alternate Data Stream - 171 bytes -> C:\ProgramData\TEMP:6EE8565A
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:07F6D9E4
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:BD34FFC5
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:DBB979D4
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:7FA0D639
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:2BD8AA8C
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:5EFEB6A1
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:E8C44CB4
< End of report >
________________________________________________________________________________________________________________________________
Extras.txt
________________________________________________________________________________________________________________________________
OTL Extras logfile created on: 9/30/2013 10:58:53 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\antes98\Desktop\Utilities
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16688)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.47 Gb Total Physical Memory | 1.14 Gb Available Physical Memory | 32.74% Memory free
8.68 Gb Paging File | 5.46 Gb Available in Paging File | 62.95% Paging File free
Paging file location(s): C:\pagefile.sys 5331 5331 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 439.63 Gb Total Space | 222.53 Gb Free Space | 50.62% Space Free | Partition Type: NTFS
Drive D: | 25.36 Gb Total Space | 2.67 Gb Free Space | 10.53% Space Free | Partition Type: NTFS
Computer Name: MOMS_LAPTOP | User Name: antes98 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\SysWow64\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Browse with Corel PaintShop Pro X5] -- "c:\Program Files (x86)\Corel\Corel PaintShop Pro X5\Corel PaintShop Pro.exe" "%L" (Corel, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\SysWow64\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Browse with Corel PaintShop Pro X5] -- "c:\Program Files (x86)\Corel\Corel PaintShop Pro X5\Corel PaintShop Pro.exe" "%L" (Corel, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{17998145-A081-4EDF-9ADE-82D1E751306A}" = rport=445 | protocol=6 | dir=out | app=system |
"{182EFB15-FEFD-4FBC-8B3E-BF76F374C144}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{1B72A1B9-5E3C-44CC-A547-23BD6C388A7C}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{2192272C-E8CB-4F17-8736-F60C32ABC601}" = lport=10243 | protocol=6 | dir=in | app=system |
"{25BE0570-4F49-4963-B455-585749F4F726}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{2EA3B9A9-612E-4E3E-998E-7F6400A734FB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{3809122E-E776-4D2B-BE79-7448DAC2EC51}" = rport=138 | protocol=17 | dir=out | app=system |
"{38156797-5991-40F8-874B-EC4082C3B200}" = lport=2869 | protocol=6 | dir=in | app=system |
"{39CE2F00-EFE3-4D73-A99D-CA8D89DEE877}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{3EEB0A9D-28D6-452B-A699-936D6616C3D8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3FDDF839-74A7-4318-9083-C4F2103528E9}" = lport=139 | protocol=6 | dir=in | app=system |
"{419292A5-F083-48ED-AB12-FC92DF2835EF}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{4A724059-3D81-4962-8D64-BA54DF5E7B60}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4B866E97-3F76-4FB7-A518-B748F685D26F}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{4EC4A25B-DC00-48E5-B1D3-16ADAC36A6A6}" = rport=139 | protocol=6 | dir=out | app=system |
"{4F9C279A-D46F-496D-9CF0-387F1243C18E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{50E989E5-25CA-409D-83F4-FC833C7AA1BC}" = rport=137 | protocol=17 | dir=out | app=system |
"{62F841A8-069A-4D8F-8B6B-4F7446811714}" = lport=138 | protocol=17 | dir=in | app=system |
"{7DE965A4-F703-4D7F-898C-E1A0612140E5}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{81FE5CFA-097C-466A-BB6A-6D8612AF150A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{917DD77C-C12E-4534-91F7-15BED2A2398A}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{9389B995-845C-42BB-A8F7-DD766C1195DF}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A0D4E6DF-C0A7-42E8-9D2C-C16CB73924ED}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{A2AF7F17-6126-40CB-B61C-5E4D8A874ED9}" = lport=2869 | protocol=6 | dir=in | app=system |
"{B3ED6CF3-32E5-40E0-81CC-6531A5581FB6}" = rport=2869 | protocol=6 | dir=out | app=system |
"{B59C364E-FC41-4601-B210-59664E7E70A6}" = lport=137 | protocol=17 | dir=in | app=system |
"{CE50CFBE-5F89-49B5-BFFC-96EDD94B5C08}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F45372FD-9E1E-4BFD-BC1F-3CB639B43135}" = rport=10243 | protocol=6 | dir=out | app=system |
"{FBE55D52-4239-4FD2-A854-8D84450493A1}" = lport=445 | protocol=6 | dir=in | app=system |
"{FD14D0C5-12E6-4C6D-9511-A1F99FE5BFC9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{FE02A443-618B-45AB-A795-6AEA90630D9E}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{028551E7-F56F-40C2-82C9-0EAD814209BC}" = protocol=6 | dir=out | app=system |
"{04D2831B-6800-45AF-BB8F-4C8FD0E62A96}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{05678DBA-60B4-49B4-928A-C677727F92A3}" = dir=out | name=hp+ |
"{05C1D984-96A3-4A0C-9DE0-A2A27224CA44}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{0DB71DD0-3CF9-47D9-B439-250E97A9FC78}" = dir=out | name=kindle |
"{0DEBDA19-2708-4886-8DDE-732B7C5485EC}" = dir=out | name=skype |
"{1320DA43-3E99-4E1F-98AA-2046364B67EE}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
"{15B1EFE2-D0DB-4CCB-89F9-3408E6C104A0}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{16C0CEBE-8F7C-4149-AE4A-FF294C908150}" = dir=out | name=getting started with windows 8 |
"{191487FE-D290-4C6D-BE29-896BB8402A76}" = dir=out | name=windows_ie_ac_001 |
"{1F9061C1-6250-4D93-9B3C-9209BFD36530}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{20B232A9-9E21-420B-85F5-E7253E1BA8F9}" = dir=out | name=microsoft mahjong |
"{29ACFCDD-875D-4B97-B1AA-9503D6E0A5AF}" = dir=out | name=microsoft solitaire collection |
"{2D1E6B82-C0AE-4004-B8BF-3CF69B9D5730}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{2FB2CA69-76D1-4CFD-8DE4-B5B0081CFB9B}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{317F376C-7C09-42A9-9BE3-B1EB53003695}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{381532F7-0479-4FA8-8E35-7BE81B0DF666}" = protocol=6 | dir=in | app=c:\users\antes98\appdata\roaming\dropbox\bin\dropbox.exe |
"{3CCD1508-EE98-4E20-8489-E27387479F12}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
"{3D31DD20-95F2-40D0-8A52-CF68614EDB85}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{41AF69AA-5B62-4A79-B13C-CB655B6920A0}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe |
"{4397773E-4E0E-4B25-A89E-D4E72B591A8C}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe |
"{458C0916-003D-45D8-BB35-A3B220593E34}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
"{46ADFC80-DD0B-43F0-B4BA-020DE35D02C7}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{48B3F271-3401-4A74-B84A-DA66C5588C52}" = dir=in | name=skype |
"{4E11A4C1-C962-474E-9DC6-4A76359B34C0}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
"{54005B5A-9A78-4220-AD0D-FD8669D0DBEC}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{546EA5EE-7F3E-4D5D-A12B-75BC3623E628}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{56DC8498-F089-4919-B353-8DFA58FD1894}" = protocol=1 | dir=in | [email protected],-28543 |
"{57B5B5A1-B2B3-4936-9B9F-53C7C7CD5B9B}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{580EB89E-41C1-4F92-9B02-BF343A460CFA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{5B8DF9A7-0310-459B-A01F-B6934FE2501C}" = protocol=6 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"{60610A26-369A-4BB9-B3BB-75EA40D6AFBD}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{649A68C5-6F74-4ECF-9420-B3D3526263CF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{653F217D-6F84-4900-A476-8CF129D64D16}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{68CBB973-8755-4595-9099-A9D2721BA518}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{6C49FF34-84E2-40B3-973A-A338763CAC82}" = dir=out | name=iheartradio |
"{6E6519C7-2424-4F80-BC0B-00058B6FF8C3}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{6E932B45-55B6-49C8-90B7-0EF28793C70A}" = protocol=17 | dir=in | app=c:\users\antes98\appdata\roaming\dropbox\bin\dropbox.exe |
"{6FD79D2B-C500-4CD2-8F32-E10E2610856D}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{729A3ED5-2B23-480B-A902-4449ED090FAE}" = protocol=6 | dir=in | app=c:\program files\vuze\azureus.exe |
"{76104D3B-BA28-462A-83C8-64346241E36E}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{7F48D7B2-053F-4288-99A8-FD5F19AD0D7F}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{806C36DD-251B-4B23-B1F3-85C8FF2FB9F3}" = dir=in | name=kindle |
"{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{8750F9C4-16A5-4561-9CAE-11DE77B59A7B}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe |
"{8DBB55C5-E9B1-436A-B2D1-AE254972F3AC}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{93A3D205-9B22-449D-947A-7CAE5B676CE9}" = protocol=58 | dir=in | [email protected],-148 |
"{93A6CE0E-6054-4D67-8265-248AF87FF1DB}" = dir=out | name=norton studio |
"{978A3B1A-1D77-41A5-A264-B18F6B485599}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{9806CA8D-7EA8-4604-880A-ACC8F18B327E}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{9A48FD8F-CEB7-4FFD-8572-940893C1E35D}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{9ED2EDDB-7F48-4285-B1B7-E6534CF8AF89}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{9F327526-B653-42C4-99FC-96C0671C974F}" = protocol=58 | dir=out | [email protected],-28546 |
"{A3102C0F-1002-465C-9109-2809E2488C6E}" = protocol=17 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"{A807AA60-FE9E-446A-89F6-EB13F42ABFAC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A9B7079B-9A3F-4075-B1D1-E9B809685075}" = protocol=1 | dir=out | [email protected],-28544 |
"{A9B902C9-EB98-420B-B7C0-F2C31D31B724}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
"{AD371F18-AF6F-4352-B1B2-4FEB0DF92660}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
"{B53A8853-52B7-40A6-929E-2E2618C2F61B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B5E14575-5719-4D2A-B1D4-28EF5531FC32}" = protocol=58 | dir=in | [email protected],-28545 |
"{B8001E6C-DD22-4269-A919-1F34BFBB2BAC}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgemca.exe |
"{B8EE4054-9F70-4A2D-90FC-7FEED648684B}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{BC69C6E6-84C6-469D-AB4C-A7C602133876}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} |
"{C0E407C3-4CC8-4DCD-B639-9918DB828B0E}" = dir=out | name=hp connected photo powered by snapfish |
"{C35D3FD5-7AA5-49EF-BCEA-6EB2D7F4028A}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{C78C432C-9BE5-4253-B0E3-F90C29901E86}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{C9DDFD34-13BF-4F52-94C7-7FE2209EB5D4}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{CBD60CA0-86D6-47DF-A511-91757C97FA15}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CC9029D2-B16C-4EDB-A374-D6EE84C21385}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{CF505949-8F94-4822-8CEF-43C25B78B7EA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D9D32E8B-03A1-45B7-890D-8A3F3EDA40AB}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"{DBEF36DE-E676-45A5-A3C4-6ECD41300970}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{DE6FD7DB-A411-4AB1-B295-288805C9BD24}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E018AB74-D1D4-45C5-BD29-EEA2CCD662D3}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{E0ABF5DA-7E58-455F-808D-A44ED859F975}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{E1CF785E-4385-442A-A54C-64ECF92CFD83}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} |
"{E4796967-020E-4581-9A23-1FA19572BE9F}" = dir=out | name=netflix |
"{E6FE3040-B8E4-4E02-9BEB-C1F18507505F}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgemca.exe |
"{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{EC49AB96-D483-4AEF-A9F7-414D3F9D2850}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe |
"{EC693943-043C-4EF4-8844-B9B95C28B525}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"{EE046DFF-140E-4656-8CF3-2D75DA086421}" = dir=out | name=ebay |
"{F142F9DE-DE66-49E4-8524-581A81846D1D}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{F3674AF2-C82B-4409-B42C-3DDB1C74BEA0}" = protocol=17 | dir=in | app=c:\program files\vuze\azureus.exe |
"{F88AF9C1-C36F-4D40-BB88-38FAFEC2AF59}" = dir=in | name=ebay |
"{FD6F7EF6-3EB2-4B26-8EE9-D80CAF250C30}" = dir=out | name=hp registration |
"{FDF735CD-7BE4-40BC-9B0B-233C2DDC68AF}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"TCP Query User{1C250222-A385-4B00-B01E-D0899E39EDB8}C:\program files (x86)\war thunder\aces.exe" = protocol=6 | dir=in | app=c:\program files (x86)\war thunder\aces.exe |
"TCP Query User{25CB3B34-DC6C-4115-95B2-B22BA5034163}C:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_7df6f0ad98d4e0d3\launcher.exe" = protocol=6 | dir=in | app=c:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_7df6f0ad98d4e0d3\launcher.exe |
"TCP Query User{3A687446-79D9-4026-AA29-D4B5AA131845}C:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_85c03d047e576393\launcher.exe" = protocol=6 | dir=in | app=c:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_85c03d047e576393\launcher.exe |
"TCP Query User{44985387-1851-48C1-B5B4-71B614B960AC}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{50E6BAA6-7D6A-4E68-A125-5D1D27676886}C:\program files (x86)\war thunder\aces.exe" = protocol=6 | dir=in | app=c:\program files (x86)\war thunder\aces.exe |
"TCP Query User{5FB37453-C52B-4132-987D-DAD72402E62D}C:\program files\vuze\azureus.exe" = protocol=6 | dir=in | app=c:\program files\vuze\azureus.exe |
"TCP Query User{A470BB37-7BDC-4841-BFC2-EEA71F395C68}C:\program files (x86)\spybot - search & destroy 2\sdupdate.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spybot - search & destroy 2\sdupdate.exe |
"TCP Query User{A957C421-04EB-4688-AF36-A9FEA25AACF5}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{B2206467-2E4F-4EB9-9441-188CE63CB6DD}C:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"TCP Query User{D6DD0DC1-A875-42E5-84DE-8C5CAE1C4DF8}C:\program files (x86)\war thunder\launcher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"TCP Query User{E9EFD888-7752-425E-A862-C7AC53F0A5DF}C:\users\antes98\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\antes98\appdata\roaming\dropbox\bin\dropbox.exe |
"TCP Query User{EC24833C-6711-48B2-9FF6-7F70BBC855B9}C:\ubisoft\ghost recon online\ncsa-live\ghostrecononline.exe" = protocol=6 | dir=in | app=c:\ubisoft\ghost recon online\ncsa-live\ghostrecononline.exe |
"UDP Query User{28E5C403-F5A3-4052-8F71-EC04769CCA39}C:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_7df6f0ad98d4e0d3\launcher.exe" = protocol=17 | dir=in | app=c:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_7df6f0ad98d4e0d3\launcher.exe |
"UDP Query User{38DF278D-9E7B-4E3E-B9BF-E28B8147DF35}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{3CDC818D-9ED4-470C-A04B-DA42E853AE1F}C:\program files (x86)\spybot - search & destroy 2\sdupdate.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spybot - search & destroy 2\sdupdate.exe |
"UDP Query User{4B8C4F1B-4449-4B6F-A3EB-D592F58AC6E6}C:\users\antes98\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\antes98\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{4D96981C-4FF6-4558-B1F1-672F7E4267DD}C:\program files (x86)\war thunder\aces.exe" = protocol=17 | dir=in | app=c:\program files (x86)\war thunder\aces.exe |
"UDP Query User{79983D80-B769-4377-AC33-7F4AF82D3411}C:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"UDP Query User{8E8A586B-DFC3-4CCB-A588-05CE81F99390}C:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_85c03d047e576393\launcher.exe" = protocol=17 | dir=in | app=c:\users\antes98\appdata\local\apps\2.0\4a2jgrp2.33k\p55ch2ed.vhw\laun...app_59711684aa47878d_0001.0022_85c03d047e576393\launcher.exe |
"UDP Query User{9136F58F-D8D8-45E6-AA77-FE7EFA809EF4}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{928AD775-5E66-4864-90C0-E10EB8AA9C29}C:\ubisoft\ghost recon online\ncsa-live\ghostrecononline.exe" = protocol=17 | dir=in | app=c:\ubisoft\ghost recon online\ncsa-live\ghostrecononline.exe |
"UDP Query User{C8A5B871-8033-4501-9EDE-8478E3CDF400}C:\program files (x86)\war thunder\launcher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"UDP Query User{CA6798FD-8718-4F98-83F1-2D49C1D7EDDD}C:\program files (x86)\war thunder\aces.exe" = protocol=17 | dir=in | app=c:\program files (x86)\war thunder\aces.exe |
"UDP Query User{DEA1B333-83D2-4576-A0E7-F7BD4D540F74}C:\program files\vuze\azureus.exe" = protocol=17 | dir=in | app=c:\program files\vuze\azureus.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{08F2724F-3B6A-91BD-E63F-1B9F8463D097}" = AMD Accelerated Video Transcoding
"{0FA995CC-C849-4755-B14B-5404CC75DC24}" = Energy Star
"{14D155F8-40FC-F843-30C6-8776BF5CEBAA}" = AMD Fuel
"{1551A29F-B1B0-43CA-90B5-E6E5186F683E}" = PSPPro64
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{21B133D6-5979-47F0-BE1C-F6A6B304693F}" = Visual Studio 2010 x64 Redistributables
"{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support
"{32508A23-C9EA-4D29-83CA-97A42A13701E}" = Microsoft Sync Framework Services v1.0 (x64)
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4BB7A109-FDB5-45E3-9DB9-ECB2EA7B80EE}" = WinPatrol
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{53D7A054-4598-4947-A159-E8FCC77720AB}" = Microsoft Sync Framework Runtime v1.0 (x64)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1" = Revo Uninstaller Pro 3.0.7
"{6821D775-9303-46DD-977A-2D97CA18B054}" = HP 3D DriveGuard
"{6B02D047-A56D-4994-B1F1-53DA6B9885AB}" = AVG 2013
"{6E14E6D6-3175-4E1A-B934-CAB5A86367CD}" = HP Postscript Converter
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{76FF0F03-B707-4332-B5D1-A56C8303514E}" = iTunes
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{96B1A92F-9F9A-4F7C-8AEA-197313BBAF92}" = calibre 64bit
"{A257DDD7-AFD4-ABEA-0F67-9C3930091B19}" = ccc-utility64
"{A423B3FB-C9E6-4953-9A83-2A5F45CAF466}" = Microsoft SQL Server Compact 3.5 SP1 x64 繁體中文
"{a9264802-8a7a-40fe-a135-5c6d204aed7a}.sdb" = Internet Explorer (Enable DEP)
"{BC20D4CC-C409-42A9-A783-B3ACBD5ABE91}" = AVG 2013
"{D01E0B82-7D6E-F9AC-9A7D-C6076264F419}" = AMD Catalyst Install Manager
"{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}" = HP Registration Service
"{E9EED4AE-682B-4501-9574-D09A21717599}_is1" = AMD Quick Stream
"5F3015F0AD4F9F61F4D01EAE1AF322C1A901C27C" = Windows Driver Package - ACER Incorporated (qcusbser) Ports (10/12/2009 2.0.6.6)
"8461-7759-5462-8226" = Vuze
"A61AC676A7F61C423134B0621CBA2D4134507A2D" = Windows Driver Package - ACER, Inc (androidusb) USB (10/12/2009 1.0.0010.00000)
"AVG" = AVG 2013
"BF39BAA13199B9BFDFC03B6C26851E9F3246C6A2" = Windows Driver Package - ACER Incorporated (qcusbser) Modem (10/12/2009 2.0.6.6)
"HitmanPro37" = HitmanPro 3.7
"PDF Viewer for Windows 8_is1" = PDF Viewer for Windows 8
"Reimage Repair" = Reimage Repair
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{1563C6F2-E9B5-42DE-9EA6-207C9A8C2DFB}" = Corel PaintShop Pro X5
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{097CB5A1-D19E-F62A-6400-91DBF8D97B17}" = CCC Help Turkish
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0BE37B03-93EF-4B46-A4F3-30ED22569D1A}" = Microsoft SQL Server Compact 3.5 SP1 繁體中文
"{0C57987A-A03A-4B95-A309-D23F78F406CA}" = HP Utility Center
"{0DCCD5F4-29E7-4AA0-8C1D-F8E1503B91F4}" = Catalyst Control Center - Branding
"{0EF2A1AF-6F24-FD4B-3140-3656CC9A6BEC}" = CCC Help Italian
"{11230C68-9248-D3B8-A0C5-0461D8C0691E}" = CCC Help Dutch
"{11AF9A96-6D83-4C3B-8DCB-16EA2A358E3F}" = HP CoolSense
"{15002A1B-C1E7-4E91-A3EC-5502BF924A32}" = Setup
"{15035DF4-F4BF-4787-B72D-E703A49E9F31}" = Verizon Wireless Software Upgrade Assistant - Samsung(ar)
"{15180A90-1FC0-47E4-A150-3AECEF07B3B6}" = Corel PaintShop Pro X5
"{1522E36C-3739-41E4-8CD3-A4AFEA70086A}" = PSPPContent
"{153DD765-C8C6-4893-8CEF-D965351D82EC}" = PSPPHelp
"{154B0B16-ABCD-4A06-B0B7-8146B7A89B25}" = IPM_PSP_COM
"{1563C6F2-E9B5-42DE-9EA6-207C9A8C2DFB}" = ICA
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1AC082E0-049D-4C5C-9ECF-9473AD5A949D}" = HP Documentation
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FA08A70-6E60-4E06-90B6-7B96A741E9E0}" = Acer Sync
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{2485354C-6B65-4978-BB91-CCE61442377B}" = SUABnR
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25
"{29A6A747-07ED-DB5E-AD38-5F66B06E8888}" = CCC Help Russian
"{2BE3A1BC-D155-1D32-9080-685C54689C34}" = CCC Help Korean
"{2F413B34-8C18-328C-E68C-0332AB527CFF}" = CCC Help Czech
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{2FFBFBA6-8191-45A5-B952-226DB651268E}" = Verizon Wireless Software Utility Application for Android - Samsung
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{3D062C86-0CCA-8F10-A575-3564BD50372C}" = Catalyst Control Center Graphics Previews Common
"{3E2D81D1-5FEE-6E90-2E0C-B8C15F05237A}" = CCC Help Norwegian
"{47B3FDA1-E7F2-D3C3-0970-B9916C5530F3}" = AMD VISION Engine Control Center
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4BBD417F-13B6-4477-B7C2-AE705864058D}" = YTD Toolbar v7.2
"{4ED7050C-9332-4FB2-AB07-E94F25A53D39}" = HP Quick Launch
"{528AB81B-D65A-4AB0-A2B6-82B51A087D01}" = HP Recovery Manager
"{55FD1D5A-7AEF-4DA3-8FAF-A71B2A52FFC7}_is1" = iolo technologies' System Mechanic
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5A226D30-97D2-4A30-8DF9-252A0DC8F068}" = Rite of Passage - The Perfect Show Collectors Edition
"{5CBA9A98-4CAE-92DC-4662-A77268EE1D04}" = CCC Help English
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
"{5F1C0CF4-49C6-B096-0F72-AA2C319BBEE0}" = CCC Help German
"{604B2A5C-B1CE-45B2-ADCC-6B7C721AC3AC}" = LibreOffice 4.0.1.2
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{650AA9FB-CA49-A284-8E13-F3732CC20D9A}" = Catalyst Control Center Localization All
"{675D093B-815D-47FD-AB2C-192EC751E8E2}" = HP Software Framework
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6DF0DAF1-BED0-F5BB-B96E-10AA15DF65E7}" = CCC Help Swedish
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.0.0
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73AD6CBA-D50D-F30C-E579-14389FF41D1D}" = Catalyst Control Center InstallProxy
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{793A260C-CDBF-499C-ABBA-B51E8E076867}_is1" = Powersuite
"{7AF962CF-7018-C589-8439-EA7C9F2FA200}" = CCC Help Danish
"{7BB80D45-4024-2E0C-FC0D-45A319CD3F99}" = CCC Help Thai
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{933B2597-D538-401B-AAD5-D529D5707389}" = Sable Maze - Sullivan River Collectors Edition
"{941DE69D-6CEE-4171-8F1F-3D7E352AA498}" = HP Wireless Button Driver
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office
"{95A762D1-99E7-F428-99B3-E3CC636C48D9}" = CCC Help Hungarian
"{96DAE3D0-5008-F1FC-186D-0B364071C98C}" = CCC Help French
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B42457E-3781-7293-5643-C722BA43397E}" = CCC Help Greek
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C35EDE5-4B0F-45E7-A438-314BA889948E}" = HP MyRoom
"{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}" = Assassin's Creed ® III
"{9E2BCF78-EDAD-A8BC-123D-10E0D9234753}" = CCC Help Chinese Traditional
"{9FEDC691-A307-D525-7D71-EDB97240CFF3}" = CCC Help Chinese Standard
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AB1F1677-926B-894A-A890-56A3FCD9794B}" = CCC Help Finnish
"{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1
"{ACC5984D-6859-874C-B939-058DED2692FA}" = CCC Help Portuguese
"{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy
"{B70E5793-F912-4C62-AFE2-C4F0B078FD31}" = Reader Library by Sony
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Qualcomm Atheros Driver Installation Program
"{C458E818-0B4F-C961-AFDF-29F172EE5A1B}" = CCC Help Spanish
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CE9EE84E-F7A9-4256-8785-0CB35014DD33}" = calibre
"{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}" = AVG PC TuneUp
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E175B925-538F-6D69-A9C9-4D0699648752}" = CCC Help Japanese
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E46BF405-4ADF-36F4-A0EA-EF4CDF1A21E6}" = CCC Help Polish
"{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1" = War Thunder Launcher 1.0.1.199
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{FB03A941-815E-42F2-B604-FCE5636DB90B}" = AVG PC TuneUp Language Pack (en-US)
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"4shared Desktop" = 4shared Desktop
"Adobe Digital Editions 2.0" = Adobe Digital Editions 2.0
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Advanced SystemCare 6_is1" = Advanced SystemCare 6
"Algodoo_is1" = Algodoo v2.1.0
"AVG PC TuneUp" = AVG PC TuneUp
"AVG SafeGuard toolbar" = AVG SafeGuard toolbar
"Dark Heritage - Guardians of Hope Collector's EditionFINAL" = Dark Heritage - Guardians of Hope Collector's Edition
"Easy HR Windows System Restore Utility" = Easy HR Windows System Restore Utility
"Game Booster_is1" = Game Booster 3
"InstallShield_{2485354C-6B65-4978-BB91-CCE61442377B}" = SUABnR
"Internet Download Manager" = Internet Download Manager
"KC Softwares KCleaner_is1" = KC Softwares KCleaner
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"Mozilla Firefox 22.0 (x86 en-US)" = Mozilla Firefox 22.0 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Mystery Age 3 - Liberation of Souls" = Mystery Age 3 - Liberation of Souls
"Northern Tale 2" = Northern Tale 2
"Online Games Manager" = Online Games Manager v1.20
"OpenAL" = OpenAL
"Questerium - Sinister Trinity" = Questerium - Sinister Trinity
"Sketch Drawer_is1" = Sketch Drawer 1.0
"StartHPConnectedMusic" = HP Connected Music (Meridian - installer)
"Uplay" = Uplay
"WildTangent hp Master Uninstall" = HP Games
"WildTangent wildgames Master Uninstall" = WildTangent Games
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"WTA-00baa5ad-405b-45be-b76c-f7cd720fb875" = Luxor Evolved
"WTA-11904447-aeec-4a83-bc9a-0e898f7d1ecc" = Peggle Nights
"WTA-22e144ef-0e54-402a-8e8d-7956111917c0" = Final Drive Fury
"WTA-3326af20-4185-4eeb-b21c-f92ae5262cea" = Vacation Quest - Australia
"WTA-44de53d1-60b4-49cc-a969-ebbbee69e3fd" = Build-a-lot 4 - Power Source
"WTA-7859ed3a-f9bb-4ecc-8fdd-7675c7ff0f44" = Cradle Of Egypt Collector's Edition
"WTA-794cc034-7c97-4213-987e-d1b6b3e25300" = Governor of Poker 2 Premium Edition
"WTA-8666b0aa-9eda-4186-a86b-1edae9863489" = Mahjongg Dimensions Deluxe: Tiles in Time
"WTA-9960e2a1-f3b8-40f4-9140-e33ee8b152c9" = Tales of Lagoona
"WTA-9adf3ca6-8ccd-4d33-bfd4-2d5647d1add2" = Polar Bowler
"WTA-d0c5e141-e286-473c-a8b3-3ba79cd85c1b" = Bejeweled 3
"WTA-d38c2603-dc0d-4600-8c50-85e168a32fc7" = FlatOut 2
"WTA-d5e630e9-50ed-4707-a13f-8248e887cfa1" = Chuzzle Deluxe
"WTA-d5ef4623-f5c8-42c8-b456-8aeee3689251" = Mortimer Beckett and the Crimson Thief Premium Edition
"WTA-d927e1ca-63ba-46e7-972a-4884827bb63f" = Penguins!
"WTA-df6ac5cb-4374-4808-a040-b18d084fa968" = FATE: The Cursed King
"WTA-e2575787-5570-4380-b546-cdd9aaaa8db1" = Roads of Rome 3
"WTA-e69fe33b-6e8c-4143-9ab9-ff76f3ac250e" = Farm Frenzy
"WTA-eba1e600-06dc-47b9-a7d7-342d380f75dc" = John Deere Drive Green
"WTA-f434d5d5-a362-4cb0-adc9-9a50f05c672d" = Cradle of Rome 2
"WTA-f4cb67d4-8bd3-4d85-9eea-c66a889148e1" = Zuma's Revenge
"WTA-f565934b-df5b-4f46-af4d-b4ac943c0e82" = Jewel Match 3
"WTA-fb10edb6-a2cc-42e8-8d78-4ade1313ac3b" = Mystery P.I. - Curious Case of Counterfeit Cove
"WTA-fc1fe18d-b526-49af-a01f-68630df4284d" = Polar Golfer
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Software Update" = Yahoo! Software Update
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{2922D6F1-2865-4EFA-97A9-94EEAB3AFA14}" = ROBLOX Studio 2013 for antes98
"{373B1718-8CC5-4567-8EE2-9033AD08A680}" = ROBLOX Player for antes98
"Dropbox" = Dropbox
"fc418bf9b18f76aa" = Ghost Recon Online (NCSA-Live)
"UnityWebPlayer" = Unity Web Player
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 9/30/2013 11:13:33 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:13:33Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:14:03 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:14:03Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:14:33 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:14:33Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:15:03 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:15:03Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:15:33 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:15:33Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:16:03 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:16:03Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:16:33 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:16:33Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:17:03 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:17:03Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:17:33 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:17:33Z.
Error Code: 0x80041316.
Error - 9/30/2013 11:18:03 PM | Computer Name = Moms_laptop | Source = Software Protection Platform Service | ID = 16385
Description = Failed to schedule Software Protection service for re-start at 2113-09-07T03:18:03Z.
Error Code: 0x80041316.
[ HP Software Framework Events ]
Error - 7/31/2013 11:38:38 AM | Computer Name = Moms_laptop | Source = hpCasl | ID = 5
Description = 2013/07/31 11:38:38.661|0000137C|Error |[hpcasl]Command::Get{hpCasl.enReturnCode(string,object&)}|An
exception occurred Retrieving the COM class factory for component with CLSID {F5539356-2F02-40D4-999E-FA61F45FE12E}
failed due to the following error: 80070422.
Error - 7/31/2013 11:38:38 AM | Computer Name = Moms_laptop | Source = CaslSmBios | ID = 5
Description = 2013/07/31 11:38:38.870|00000484|Error |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Retrieving the COM class factory
for component with CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} failed due to the
following error: 80070422.
Error - 8/2/2013 11:03:07 PM | Computer Name = Moms_laptop | Source = hpCasl | ID = 5
Description = 2013/08/02 23:03:06.951|00001578|Error |[hpcasl]Command::Get{hpCasl.enReturnCode(string,object&)}|An
exception occurred Retrieving the COM class factory for component with CLSID {F5539356-2F02-40D4-999E-FA61F45FE12E}
failed due to the following error: 80070422.
Error - 8/2/2013 11:03:07 PM | Computer Name = Moms_laptop | Source = CaslSmBios | ID = 5
Description = 2013/08/02 23:03:07.123|000015B4|Error |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Retrieving the COM class factory
for component with CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} failed due to the
following error: 80070422.
Error - 8/7/2013 3:55:26 PM | Computer Name = Moms_laptop | Source = hpCasl | ID = 5
Description = 2013/08/07 15:55:26.834|0000823C|Error |[hpcasl]Command::Get{hpCasl.enReturnCode(string,object&)}|An
exception occurred Retrieving the COM class factory for component with CLSID {F5539356-2F02-40D4-999E-FA61F45FE12E}
failed due to the following error: 80070422.
Error - 8/7/2013 3:55:27 PM | Computer Name = Moms_laptop | Source = CaslSmBios | ID = 5
Description = 2013/08/07 15:55:27.103|00008748|Error |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Retrieving the COM class factory
for component with CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} failed due to the
following error: 80070422.
Error - 9/4/2013 3:17:11 PM | Computer Name = Moms_laptop | Source = hpCasl | ID = 5
Description = 2013/09/04 15:17:11.043|000030B0|Error |[hpcasl]Command::Get{hpCasl.enReturnCode(string,object&)}|An
exception occurred Retrieving the COM class factory for component with CLSID {F5539356-2F02-40D4-999E-FA61F45FE12E}
failed due to the following error: 80070422.
[ Spybot - Search and Destroy Events ]
Error - 5/7/2013 11:48:20 PM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/18/2013 3:29:46 AM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/18/2013 6:23:32 AM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/18/2013 6:04:30 PM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/18/2013 6:09:20 PM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/18/2013 6:15:28 PM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/19/2013 6:25:36 AM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/20/2013 8:25:05 AM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 7/21/2013 6:43:12 AM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
Error - 8/18/2013 9:14:22 PM | Computer Name = Moms_laptop | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
[ System Events ]
Error - 9/27/2013 2:43:35 AM | Computer Name = Moms_laptop | Source = ipnathlp | ID = 30013
Description =
Error - 9/27/2013 2:46:39 AM | Computer Name = Moms_laptop | Source = ipnathlp | ID = 30013
Description =
Error - 9/27/2013 4:58:16 AM | Computer Name = Moms_laptop | Source = ipnathlp | ID = 30013
Description =
Error - 9/27/2013 7:02:16 AM | Computer Name = Moms_laptop | Source = Service Control Manager | ID = 7006
Description = The ScRegSetValueExW call failed for FailureActions with the following
error: %%5
Error - 9/27/2013 3:15:39 PM | Computer Name = Moms_laptop | Source = Application Popup | ID = 1060
Description =
Error - 9/27/2013 3:16:31 PM | Computer Name = Moms_laptop | Source = Service Control Manager | ID = 7000
Description = The Bitdefender Desktop Update Service service failed to start due
to the following error: %%3
Error - 9/27/2013 3:16:55 PM | Computer Name = Moms_laptop | Source = ipnathlp | ID = 34001
Description =
Error - 9/27/2013 3:16:55 PM | Computer Name = Moms_laptop | Source = ipnathlp | ID = 30013
Description =
Error - 9/27/2013 3:18:52 PM | Computer Name = Moms_laptop | Source = WMPNetworkSvc | ID = 866306
Description =
Error - 9/27/2013 3:18:52 PM | Computer Name = Moms_laptop | Source = WMPNetworkSvc | ID = 866306
Description =
< End of report >
_________________________________________________________________________________________________________________________________
Edited by Christy A, 30 September 2013 - 09:56 PM.