Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Blue Screen Over and Over


  • This topic is locked This topic is locked
4 replies to this topic

#1 AlyNoComputer

AlyNoComputer

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:11:32 PM

Posted 02 August 2012 - 10:44 AM

Good Morning!

I have some sort of virus or something, but cant determine what it is.

Here are the symptoms:

Starting on 7/31 the computer blue screened and restarted. It continually does this, after been up for only a couple of minutes. Twice I found an error that poped up stating that openoffice "either another instance of openoffice.org is accessing your personal settings or they are locked"

Even though I was NOT trying to use OpenOffice. I have tried to remove, but the computer blue screens. I cant remove in safe mode. In regular mode, I can kill it with task manager, and the computer will stay up for a longer period of time (5 min) before blue screen.

The computer is running very slow - and it doesnt not seem that when IE is opened that it wants to go to the page that I am trying to go to, but before it can open a site, blue screen.

My Symantec is being compromised, and it I cannot get it to turn back on - it says warning the anti virus is disabled, but when I try to fix it, it blue screens. I also cannot fix in safe mode.

Here is the scan from OTL quick scan:

OTL logfile created on: 8/2/2012 10:15:56 AM - Run 1
OTL by OldTimer - Version 3.2.55.0 Folder = C:\Users\Alysia\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

4.00 Gb Total Physical Memory | 3.22 Gb Available Physical Memory | 80.54% Memory free
8.00 Gb Paging File | 7.27 Gb Available in Paging File | 90.86% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 297.99 Gb Total Space | 140.08 Gb Free Space | 47.01% Space Free | Partition Type: NTFS

Computer Name: ALYSIAGPC | User Name: Alysia | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/08/02 10:13:57 | 000,597,504 | ---- | M] (OldTimer Tools) -- C:\Users\Alysia\Desktop\OTL.exe
PRC - [2009/10/23 10:29:16 | 000,108,392 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe
PRC - [2009/10/23 10:29:12 | 002,477,304 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Rtvscan.exe


========== Modules (No Company Name) ==========


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2012/06/11 12:19:14 | 000,239,616 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010/12/13 15:37:16 | 000,194,416 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft LifeCam\MSCamS64.exe -- (MSCamSvc)
SRV:64bit: - [2009/07/23 17:25:28 | 000,626,208 | ---- | M] () [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -- (ForceWare Intelligent Application Manager (IAM)
SRV:64bit: - [2009/07/23 17:25:28 | 000,206,880 | ---- | M] () [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -- (nSvcIp)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012/07/31 18:48:14 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/07/03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/02/06 16:25:08 | 000,013,672 | ---- | M] (Intuit Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe -- (IntuitUpdateServiceV4)
SRV - [2012/02/04 16:10:06 | 000,076,888 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011/06/29 15:59:18 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion)
SRV - [2010/10/22 14:08:18 | 001,039,360 | ---- | M] (Hewlett-Packard Co.) [Auto | Stopped] -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2010/08/23 20:21:40 | 000,013,672 | ---- | M] (Intuit Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Intuit\Update Service\IntuitUpdateService.exe -- (IntuitUpdateService)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/12/07 13:49:24 | 000,040,960 | ---- | M] (Realtek) [Auto | Stopped] -- C:\Program Files (x86)\RNX-N150UBE\11n USB Wireless LAN Utility\RtlService.exe -- (Realtek11nSU)
SRV - [2009/10/23 10:29:16 | 000,108,392 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe -- (ccSetMgr)
SRV - [2009/10/23 10:29:16 | 000,108,392 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe -- (ccEvtMgr)
SRV - [2009/10/23 10:29:14 | 000,411,976 | ---- | M] (Symantec Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\SNAC64.EXE -- (SNAC)
SRV - [2009/10/23 10:29:12 | 003,197,256 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Smc.exe -- (SmcService)
SRV - [2009/10/23 10:29:12 | 002,477,304 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Rtvscan.exe -- (Symantec AntiVirus)
SRV - [2009/07/13 12:06:15 | 003,093,880 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Symantec\LiveUpdate\LuComServer_3_3.EXE -- (LiveUpdate)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/05/27 15:08:46 | 000,868,352 | ---- | M] (Cyber Power Systems, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\CyberPower PowerPanel Personal Edition\ppped.exe -- (ppped)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/07/03 13:46:44 | 000,024,904 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012/06/11 13:59:38 | 010,248,192 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/06/11 11:26:14 | 000,367,616 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/23 07:32:04 | 000,095,760 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012/02/15 11:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011/07/04 15:36:12 | 000,225,328 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpshelper.sys -- (WpsHelper)
DRV:64bit: - [2011/03/24 14:35:36 | 000,019,968 | ---- | M] (Razer USA Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rzjoystk.sys -- (rzjoystk)
DRV:64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/01/07 16:03:08 | 000,045,408 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\point64.sys -- (Point64)
DRV:64bit: - [2010/12/13 15:37:18 | 000,036,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nx6000.sys -- (MSHUSBVideo)
DRV:64bit: - [2010/11/25 06:59:16 | 000,694,888 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RTL8192su.sys -- (RTL8192su)
DRV:64bit: - [2010/11/20 08:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 06:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 06:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010/05/15 13:39:00 | 000,172,592 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:64bit: - [2010/05/06 04:21:46 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010/04/12 03:55:00 | 000,091,568 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2010/04/05 11:44:20 | 000,016,448 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TFsExDisk.sys -- (TFsExDisk)
DRV:64bit: - [2010/03/30 23:35:04 | 000,020,968 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\cpuz133_x64.sys -- (cpuz133)
DRV:64bit: - [2010/03/25 06:09:06 | 000,172,104 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdm.sys -- (sscdmdm)
DRV:64bit: - [2010/03/25 06:09:06 | 000,136,264 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdbus.sys -- (sscdbus)
DRV:64bit: - [2010/03/25 06:09:06 | 000,019,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV:64bit: - [2010/03/04 21:43:00 | 000,346,144 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/10/23 10:29:20 | 000,052,784 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\WPSDRVnt.sys -- (WPS)
DRV:64bit: - [2009/10/23 10:29:16 | 000,481,840 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\srtspl64.sys -- (SRTSPL)
DRV:64bit: - [2009/10/23 10:29:16 | 000,443,952 | ---- | M] (Symantec Corporation) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\srtsp64.sys -- (SRTSP)
DRV:64bit: - [2009/10/23 10:29:16 | 000,032,304 | ---- | M] (Symantec Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\srtspx64.sys -- (SRTSPX)
DRV:64bit: - [2009/10/23 10:29:14 | 000,062,512 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Teefer2.sys -- (Teefer2)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/13 19:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:64bit: - [2009/07/01 12:20:56 | 000,339,744 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvmf6264.sys -- (NVNET)
DRV:64bit: - [2009/06/10 15:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2007/08/14 10:36:58 | 000,035,328 | ---- | M] (Belkin Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcgame.sys -- (bcgame)
DRV:64bit: - [2007/05/14 17:06:18 | 000,027,520 | ---- | M] (Research In Motion Limited) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -- (RimUsb)
DRV:64bit: - [2007/01/01 03:44:14 | 000,026,472 | ---- | M] (BIOSTAR Group) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\BS_I2cIo.sys -- (BS_I2cIo)
DRV - [2012/05/31 03:00:00 | 000,484,512 | ---- | M] (Symantec Corporation) [Kernel | System | Stopped] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2012/05/15 03:00:00 | 002,068,600 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\ProgramData\Symantec\Definitions\VirusDefs\20120725.003\ex64.sys -- (NAVEX15)
DRV - [2012/05/15 03:00:00 | 000,120,440 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\ProgramData\Symantec\Definitions\VirusDefs\20120725.003\eng64.sys -- (NAVENG)
DRV - [2010/04/05 11:44:20 | 000,016,448 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys -- (TFsExDisk)
DRV - [2009/10/23 10:29:16 | 000,481,840 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\srtspl64.sys -- (SRTSPL)
DRV - [2009/10/23 10:29:16 | 000,443,952 | ---- | M] (Symantec Corporation) [File_System | System | Stopped] -- C:\Windows\SysWOW64\drivers\srtsp64.sys -- (SRTSP)
DRV - [2009/10/23 10:29:16 | 000,032,304 | ---- | M] (Symantec Corporation) [Kernel | System | Stopped] -- C:\Windows\SysWOW64\drivers\srtspx64.sys -- (SRTSPX)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2007/01/01 03:44:14 | 000,016,768 | ---- | M] (BIOSTAR Group) [Kernel | System | Stopped] -- C:\Windows\SysWOW64\drivers\BS_I2cIo.sys -- (BS_I2cIo)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = F2 82 65 EB AE 70 CD 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADSA_en
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_268.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_268.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.0: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.104.0: C:\Program Files (x86)\Battlelog Web Plugins\1.104.0\npesnlaunch.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.118.0: C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.122.0: C:\Program Files (x86)\Battlelog Web Plugins\1.122.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.96.0: C:\Program Files (x86)\Battlelog Web Plugins\1.96.0\npesnlaunch.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/npracplug;version=1.0.0.0: C:\Program Files (x86)\Real\RealArcade\Plugins\Mozilla\npracplug.dll (RealNetworks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Alysia\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Alysia\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Alysia\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/05/15 21:52:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/11/20 20:22:36 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/07/31 19:29:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/05/15 21:52:02 | 000,000,000 | ---D | M]

[2010/06/22 21:56:47 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alysia\AppData\Roaming\Mozilla\Extensions
[2010/10/08 16:11:05 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alysia\AppData\Roaming\Mozilla\Firefox\Profiles\on4lk27f.default\extensions
[2012/04/17 21:54:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/08/26 18:55:54 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2012/04/17 21:54:50 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/02/19 20:14:07 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/06/25 11:06:44 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011/12/03 15:01:58 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2011/07/31 17:40:05 | 000,466,944 | ---- | M] (Catalina Marketing Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\NPcol400.dll
[2011/03/18 13:32:12 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npCouponPrinter.dll
[2011/10/03 06:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/09/18 21:42:35 | 000,024,576 | ---- | M] (RealNetworks) -- C:\Program Files (x86)\mozilla firefox\plugins\npgcplug.dll
[2011/03/18 13:32:14 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npMozCouponPrinter.dll
[2005/04/27 15:10:49 | 000,102,400 | ---- | M] (RealNetworks) -- C:\Program Files (x86)\mozilla firefox\plugins\npracplug.dll

========== Chrome ==========

CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.google.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Alysia\AppData\Local\Google\Chrome\Application\19.0.1084.56\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U26 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Alysia\AppData\Local\Google\Chrome\Application\19.0.1084.56\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Alysia\AppData\Local\Google\Chrome\Application\19.0.1084.56\pdf.dll
CHR - plugin: CouponNetwork Coupon Activator Netscape Plugin v. 5.0.0.0 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPcol400.dll
CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npCouponPrinter.dll
CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npMozCouponPrinter.dll
CHR - plugin: RealArcade Mozilla Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npracplug.dll
CHR - plugin: ESN Launch Mozilla Plugin (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\0.80.0\npesnlaunch.dll
CHR - plugin: ESN Sonar API (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Unity Player (Enabled) = C:\Users\Alysia\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\Alysia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\
CHR - Extension: YouTube = C:\Users\Alysia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\Alysia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\
CHR - Extension: Google Search = C:\Users\Alysia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Users\Alysia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/08/01 21:40:44 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (SnagIt Toolbar Loader) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\Snagit 10\DLLx64\SnagitBHO64.dll (TechSmith Corporation)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2 - BHO: (SnagIt Toolbar Loader) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\Snagit 10\SnagitBHO.dll (TechSmith Corporation)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (Snagit) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 10\DLLx64\SnagitIEAddin64.dll (TechSmith Corporation)
O3 - HKLM\..\Toolbar: (Snagit) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 10\SnagitIEAddin.dll (TechSmith Corporation)
O4:64bit: - HKLM..\Run: [IntelliPoint] c:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [itype] c:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AMD AVT] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [ccApp] C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
O4 - HKLM..\Run: [Garmin Lifetime Updater] C:\Program Files (x86)\Garmin\Lifetime Updater\GarminLifetime.exe (Garmin)
O4 - HKLM..\Run: [LifeCam] C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [PowerPanel Personal Edition User Interaction] C:\Program Files (x86)\CyberPower PowerPanel Personal Edition\pppeuser.exe (Cyber Power Systems, Inc.)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [AutoStartNPSAgent] C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKCU..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (Apple Inc.)
O4 - HKCU..\Run: [Sony Ericsson PC Companion] C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - Startup: C:\Users\Alysia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O15 - HKCU\..Trusted Domains: intuit.com ([ttlc] https in Trusted sites)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)
O16 - DPF: {2EB1E425-74DC-4DC0-A9E1-03A4C852E1F2} http://zone.msn.com/bingame/trix/default/TriJinx.1.0.0.87.cab (CPlayFirstTriJinxControl Object)
O16 - DPF: {3BFFE033-BF43-11D5-A271-00A024A51325} https://my-remote.johnsoncontrols.com/https/jwimkns10.na.jci.com/iNotes6W.cab (iNotes6 Class)
O16 - DPF: {49E67060-2C0D-415E-94C7-52A49F73B2F1} http://zone.msn.com/bingame/pppp/default/PiratePoppers.1.0.0.39.cab (CPlayFirstPiratePoppersControl Object)
O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} http://messenger.zone.msn.com/MessengerGamesContent/GameContent/Default/mjss/MJSS.cab109791.cab ()
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/MessengerGamesContent/GameContent/Default/uno1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {64D01C7F-810D-446E-A07E-16C764235644} http://zone.msn.com/bingame/amad/default/atomaders.cab (AtlAtomadersCtlAttrib Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)
O16 - DPF: {759FD3DE-F0EF-4A76-909C-88CF840D4173} https://www.upgnetsap.com/wdk/wdk/native/WdkPluginCab.CAB (DmDragDrop Class)
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} http://www.battlefieldheroes.com/static/updater/BFHUpdater_5.0.142.0.cab (Battlefield Heroes Updater)
O16 - DPF: {7E980B9B-8AE5-466A-B6D6-DA8CF814E78A} http://zone.msn.com/bingame/chnz/default/mjolauncher.cab (MJLauncherCtrl Class)
O16 - DPF: {809A6301-7B40-4436-A02C-87B8D3D7D9E3} http://zone.msn.com/bingame/zpagames/zpa_dmno.cab55579.cab (ZPA_DMNO Object)
O16 - DPF: {80B626D6-BC34-4BCF-B5A1-7149E4FD9CFA} http://zone.msn.com/bingame/zpagames/GAME_UNO1.cab60096.cab (UnoCtrl Class)
O16 - DPF: {82774781-8F4E-11D1-AB1C-0000F8773BF0} https://transfers.ds.microsoft.com/FTM/TransferSource/grTransferCtrl.cab (DLC Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {983A9C21-8207-4B58-BBB8-0EBC3D7C5505} https://my-remote.johnsoncontrols.com/https/jwimkns10.na.jci.com/dwa8W.cab (Domino Web Access 8 Control)
O16 - DPF: {9BDF4724-10AA-43D5-BD15-AEA0D2287303} http://zone.msn.com/bingame/zpagames/zpa_txhe.cab79352.cab (MSN Games – Texas Holdem Poker)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab (MSN Games - Installer)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.53.2.cab (Battlefield Play4Free Updater)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab (Shockwave Flash Object)
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} http://zone.msn.com/bingame/popcaploader_v10.cab (PopCapLoader Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} http://zone.msn.com/bingame/zpagames/ZPA_Backgammon.cab64162.cab (MSN Games – Backgammon)
O16 - DPF: Garmin Communicator Plug-In https://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.17 68.105.29.17 10.120.101.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0627BC16-5EBD-43C5-A8D6-5D21F0C0C22C}: DhcpNameServer = 192.168.200.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{49E43FA1-2331-4480-91B0-A9B4BD9239B4}: DhcpNameServer = 68.105.28.17 68.105.29.17 10.120.101.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7C609E90-C575-4133-A014-906876BFA2A1}: DhcpNameServer = 68.105.28.17 68.105.29.17 10.120.101.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B5C09022-3708-448A-B062-D658A41785E3}: DhcpNameServer = 68.105.28.17 68.105.29.17 10.120.101.1
O18:64bit: - Protocol\Handler\asp - No CLSID value found
O18:64bit: - Protocol\Handler\ezstor - No CLSID value found
O18:64bit: - Protocol\Handler\hsp - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\x-asp - No CLSID value found
O18:64bit: - Protocol\Handler\x-cnote - No CLSID value found
O18:64bit: - Protocol\Handler\x-hsp - No CLSID value found
O18:64bit: - Protocol\Handler\x-mem1 - No CLSID value found
O18:64bit: - Protocol\Handler\x-zip - No CLSID value found
O18:64bit: - Protocol\Handler\zip - No CLSID value found
O18 - Protocol\Handler\asp {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O18 - Protocol\Handler\ezstor {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O18 - Protocol\Handler\hsp {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O18 - Protocol\Handler\x-asp {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O18 - Protocol\Handler\x-cnote {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O18 - Protocol\Handler\x-hsp {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O18 - Protocol\Handler\x-mem1 {C3719F83-7EF8-4BA0-89B0-3360C7AFB7CC} - C:\Windows\SysWOW64\WowCtl2.dll (EzTools Software)
O18 - Protocol\Handler\x-zip {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O18 - Protocol\Handler\zip {8D32BA61-D15B-11d4-894B-000000000000} - C:\Windows\SysWOW64\hsppp.dll (EzTools Software)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/08/02 10:13:38 | 000,597,504 | ---- | C] (OldTimer Tools) -- C:\Users\Alysia\Desktop\OTL.exe
[2012/08/02 08:05:47 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Roaming\Malwarebytes
[2012/08/02 08:05:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/08/02 08:05:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/08/02 08:05:37 | 000,024,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012/08/02 08:05:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012/08/02 08:04:56 | 010,652,120 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Alysia\Desktop\mbam-setup-1.62.0.1300.exe
[2012/08/02 00:15:59 | 000,000,000 | ---D | C] -- C:\32788R22FWJFW
[2012/08/02 00:12:34 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/08/02 00:04:50 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012/08/01 22:06:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2012/08/01 21:28:14 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/08/01 21:28:14 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/08/01 21:28:14 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/08/01 21:27:22 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/08/01 21:27:03 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2012/08/01 21:26:43 | 004,722,680 | R--- | C] (Swearware) -- C:\Users\Alysia\Desktop\ComboFix.exe
[2012/08/01 21:20:26 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{17CCA3D0-F07B-4FBE-8897-C45590E46D4E}
[2012/08/01 21:19:42 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{621AB485-0DED-48C7-8450-63A7EC4735F8}
[2012/07/31 21:43:27 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{55774278-FC56-4301-A899-64FE36A9EF32}
[2012/07/31 21:42:57 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{1FFF4E7C-517D-456D-B35A-27F997F499F5}
[2012/07/31 21:06:30 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{6DB863F6-825F-4A52-9A26-50E016D6D71C}
[2012/07/31 21:01:05 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E8AF3F42-A02C-47DE-A515-06D7280E4584}
[2012/07/31 21:00:27 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D63D0416-637A-4A1C-AD97-C96E0F656C63}
[2012/07/31 20:54:37 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D71B8A1C-9D66-4DC9-9190-621CF217F0AE}
[2012/07/31 20:48:57 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{820CAF01-3996-424F-836F-E9086EABD65A}
[2012/07/31 20:43:02 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{968E6679-5B98-4214-A58C-C4A54EC35ED7}
[2012/07/31 20:36:49 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{FCB9C265-1C52-4AD0-BD6E-E42C6017513A}
[2012/07/31 20:31:13 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{8E2866B1-9834-46F5-87FD-8594A34F931D}
[2012/07/31 20:25:30 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{B7980344-D098-498A-8C54-C8F8713E2365}
[2012/07/31 20:19:30 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{2BBB9A4B-67D0-4E80-8072-05163388C3AE}
[2012/07/31 20:13:28 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{8826E940-27AA-407B-973D-15C42CA8B065}
[2012/07/31 20:12:59 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{B704F413-72EA-4689-BE6E-F8239B2177F8}
[2012/07/31 20:00:15 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{7B3A342A-7B86-4694-8C69-E08EB352D7B1}
[2012/07/31 19:59:45 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{591927F0-E2DB-4E38-A926-59FC7D63DEBA}
[2012/07/31 19:49:28 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{BA8A7BE5-8668-4042-9A4B-4BA92A2E1503}
[2012/07/31 19:48:58 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{7ADB3953-BF74-49DE-85D6-C0638D407E37}
[2012/07/31 19:43:51 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{10427FAA-CBC2-49E8-AB51-A44E8F9625ED}
[2012/07/31 19:43:20 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{378B888F-1068-4EA3-83BF-CE77585A6CCE}
[2012/07/31 19:37:54 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{BE8F3EFD-44FB-426F-BCD2-0398BDF19CDD}
[2012/07/31 19:37:23 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{9A296472-C6CB-422B-A958-FD3B5A414356}
[2012/07/31 19:31:47 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E26BAED6-3552-4C4B-BDA3-BD254D995A2D}
[2012/07/31 19:25:31 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{CFE52C72-066A-44EE-BB2A-BE6997E0237A}
[2012/07/31 19:19:51 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{2314739B-F63B-4935-8C6F-C0E6AAA7AADD}
[2012/07/31 19:13:55 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{941125EE-07AC-4070-849E-41EFD2306D2D}
[2012/07/31 19:08:17 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{21752606-4890-4CD2-93D4-564AECA662BD}
[2012/07/31 19:07:47 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F50DA035-19FA-43F5-B193-D25E80A94AEB}
[2012/07/31 19:02:13 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F83DA5D8-BB06-4471-957D-FF93EFB7671C}
[2012/07/31 19:01:44 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{C8894FAC-26A7-46B2-A0D4-853CC3709BEF}
[2012/07/31 18:56:13 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F3F05161-B2E3-4A7F-BE7C-427F64EC936E}
[2012/07/31 18:55:43 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{52E56F04-6FE8-43C4-AD90-ED168E179733}
[2012/07/31 18:49:50 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{161823A7-FDC8-4BD8-8BB8-78958CB4FA45}
[2012/07/31 18:49:26 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{72837DC6-B369-4FA0-9739-6763B04004D4}
[2012/07/31 18:44:09 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{005875F0-CBB2-4C5C-A84C-70DB51E27F37}
[2012/07/31 18:43:40 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{57AF3E6D-864E-493C-9AB3-FD3748C59170}
[2012/07/31 18:38:05 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{45A3F62D-F3FA-4AD2-86CF-372B3F4E61F6}
[2012/07/31 18:32:46 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{544EBBD5-21D2-41B7-8801-8411010D4C9D}
[2012/07/31 18:32:11 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{1976F72E-1516-4686-A27E-5344C8377F5B}
[2012/07/31 18:26:48 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{286EB508-335E-494B-BFAA-EB98101288A2}
[2012/07/31 18:26:13 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{FE265A70-AFCE-45C5-84C7-0F52CCC0B808}
[2012/07/31 18:20:45 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{21749806-BDBE-460F-A9E9-9F9C83C3F83F}
[2012/07/31 18:20:12 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E263914F-A106-4B26-BF15-F4ED9B61B12E}
[2012/07/31 18:14:09 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F0D486C8-1620-45F8-AF5A-5826D317225C}
[2012/07/31 18:13:35 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{DB50E016-4DFD-4A96-9907-CA8F84D443F4}
[2012/07/31 18:07:42 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{C868988D-BCFA-4125-92EE-3E7C0012F45B}
[2012/07/31 18:07:10 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{FD3BDC56-6C7E-40CB-A874-DF6086D404E6}
[2012/07/31 18:01:39 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{10D80224-ADF7-4420-A8DD-43FF4F4052D9}
[2012/07/31 18:01:09 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{365DA988-24CA-451D-B1B9-C2EDA954993A}
[2012/07/31 17:55:22 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{5B50F4E9-3EC3-450E-BD02-7ED91291A327}
[2012/07/31 17:49:48 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{8ED12A9D-A848-425C-8CF9-A49F2A21BB5C}
[2012/07/31 17:49:18 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{16FD165C-5631-4C36-A66D-FC011AEAF4C2}
[2012/07/31 17:43:16 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{BBC08B99-9ACE-4741-AA85-D3CFB29909BE}
[2012/07/31 17:42:45 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{90D1E581-FEC6-46F4-A00E-CD388379F702}
[2012/07/31 17:36:53 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{9B28682F-261E-4A8D-8DDA-0D5E22BB3388}
[2012/07/31 17:36:25 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{0A91DFEF-21C9-454B-90BF-A857CD695D73}
[2012/07/31 17:30:58 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D589F0DC-7DA4-4FE6-BA3F-F58339A8B59A}
[2012/07/31 17:30:26 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E1095F4D-CBC9-4FD9-BE97-80950385DB74}
[2012/07/31 17:25:10 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{6CF34FA6-0CEF-449E-81F6-021E6A819007}
[2012/07/31 17:24:40 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{AC52376C-7A83-48B9-B0DD-06C8DA65F269}
[2012/07/31 17:19:21 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{B9FCE8D7-72C8-438C-94D1-E271F2CAF694}
[2012/07/31 17:18:49 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F4601A09-6B44-469E-9E9C-882009D13B5F}
[2012/07/31 17:13:05 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{8F71519F-8930-4865-B52B-F269518CB002}
[2012/07/31 17:12:33 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{8AF49278-7F5C-42FF-A45D-90D8CECB53EF}
[2012/07/31 17:07:07 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{A011BCE6-5CD5-4EDF-ADB8-81515757C908}
[2012/07/31 17:06:38 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{3545E6C8-5658-44C6-AC24-463312AAE5F1}
[2012/07/31 17:01:04 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F398A947-C150-47F6-AF21-0E5B6F60D4E3}
[2012/07/31 17:00:39 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{7D938EFF-A3CA-48ED-BD66-B524221131E0}
[2012/07/31 16:50:25 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{60DF8D83-FDE1-4941-A8EB-AEFD960BF274}
[2012/07/31 16:50:02 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{BE065543-BBD8-4675-A19E-638274F48619}
[2012/07/31 16:45:55 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{1B8383DF-6E9B-4759-94DB-8E8DAEC1ACD6}
[2012/07/31 16:45:33 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{089C40C4-20EE-415D-9261-A708CFA3923C}
[2012/07/31 16:39:33 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{0827CA94-90D6-4390-A9B2-7AFC02F3C902}
[2012/07/31 16:39:17 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{027B861C-27DE-4EE6-AC50-4BCCF1FEA21A}
[2012/07/31 16:33:35 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E580C195-C6F5-4103-82D5-85F70FC02C84}
[2012/07/31 16:33:17 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{091A7191-BBED-450C-85AA-F4C499079D36}
[2012/07/31 12:17:09 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{889D4E80-CBC8-4026-94CA-5EDADA5DE901}
[2012/07/31 12:16:47 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{9774F810-A547-4AD2-AB96-621C830EA739}
[2012/07/30 18:23:40 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E184D9FB-F7B6-46FE-A957-9C1C39F287EC}
[2012/07/30 18:23:19 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{9A1401F3-9E23-45EF-B534-08470AF54D61}
[2012/07/29 13:13:45 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{0E5F0930-D15B-45F4-8DE6-F94D17E259EB}
[2012/07/29 13:13:31 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{1C2926B7-C706-4D57-A736-0DF9E16D64D5}
[2012/07/29 00:34:13 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{7EB2255D-3391-49DD-8D14-C3FF834A75B1}
[2012/07/29 00:33:52 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{4C30BC4A-CC1A-421F-8394-76AF3EAD2227}
[2012/07/28 12:33:28 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{BDFDE0BB-B46B-4800-823D-669084C5E3EC}
[2012/07/28 12:33:06 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{4B84C0DC-52CB-4ECF-99FC-50987B24B14C}
[2012/07/28 00:32:55 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E94F874C-6A56-41D2-B3FC-1629E30C88E3}
[2012/07/28 00:32:33 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{2771A7FF-27AC-4C5B-8103-0A9A7B395D19}
[2012/07/27 12:32:21 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{5BD0D180-2D8B-4C15-A739-A4B6F3E679A0}
[2012/07/27 12:32:09 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{69C265E9-9BD2-452D-829E-8854AF516D90}
[2012/07/26 21:03:32 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D2BFBCA8-4C3F-4214-AEE3-420691425416}
[2012/07/26 21:03:07 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D82A66D7-C54A-4ACE-9797-F4A50F80B164}
[2012/07/26 09:02:55 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{FC556E20-F6C9-4FFE-A8BC-33F154C08C03}
[2012/07/26 09:02:33 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{21335908-20D6-412E-BF02-0080D42EF7E9}
[2012/07/19 18:37:02 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{223018B3-E580-4632-B543-B0A879DBAE21}
[2012/07/19 18:36:39 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{49AF15AE-69A5-4920-A52F-E61075C06D94}
[2012/07/18 22:44:32 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{DD6C2AA1-2C6B-452A-8896-9B774A10FA69}
[2012/07/18 22:44:11 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D5210550-331F-4B85-AFFA-F3679BF29A59}
[2012/07/18 10:43:57 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{46FA98D3-EA82-4A46-8D6F-C91B1A06868A}
[2012/07/18 10:43:41 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F1EB79E7-0327-49F3-9C81-7269E367178B}
[2012/07/17 22:37:06 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{08351641-2F4E-4BFF-A4EC-955DF17060F1}
[2012/07/17 22:36:44 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{A640F85D-4570-43D4-8E1C-18844C7CA77C}
[2012/07/17 10:36:21 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{675D348F-7FED-4B63-82FF-DD833E1CBE7C}
[2012/07/17 10:36:11 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{2AAFD488-0FFD-4CE2-975F-4967C68B7FC6}
[2012/07/16 19:01:30 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{CBCCB414-7E57-43B4-8CD9-88973910A078}
[2012/07/16 19:01:09 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{9AC62A05-21C2-4C31-872C-97275D06EFF7}
[2012/07/15 14:23:18 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{F9229751-09F1-44EB-A129-73E7076A9199}
[2012/07/15 14:22:56 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{028DAF35-0D80-4026-9322-E47EED1F5F71}
[2012/07/14 23:32:56 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D148FBA2-4D24-464F-8DDA-B8ED58D68D57}
[2012/07/14 23:32:34 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{28C4D4CC-CC87-4523-BC27-C0746FA12F95}
[2012/07/14 11:32:23 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E512B18D-80B6-472A-BFDE-D0B494806A77}
[2012/07/14 11:32:01 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{8942491C-1629-4304-8C13-372548DBFA10}
[2012/07/13 21:33:59 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{1790AB27-3C30-4AE8-A93A-B9C6764E27B8}
[2012/07/13 21:33:37 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{277834EE-B02A-4432-B80A-FFE8AE8479DF}
[2012/07/13 09:33:25 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{3ABA088E-F949-4795-B286-AE3752A35E87}
[2012/07/11 04:03:38 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{EDE2BEA8-3B26-49AA-B900-00945F200A2D}
[2012/07/11 04:03:16 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{CFBC29D7-C5BD-4BDE-893D-A265EEF31567}
[2012/07/10 16:02:51 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{0402E056-ACA1-4CF8-A1BD-77A7B6D32890}
[2012/07/09 18:47:01 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{B4D9D336-01E0-4E1D-A475-640CC143481E}
[2012/07/09 18:46:39 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{95023996-1986-49EC-9DB7-72F67B357828}
[2012/07/08 12:19:11 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{FB45C7E7-0C2B-4CC5-AF69-B30285AA794A}
[2012/07/08 12:18:50 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{0259B8D9-B7A6-4454-9683-36473CAC35F0}
[2012/07/08 00:18:38 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{19520F6D-5F32-425F-AF70-25728F28C59E}
[2012/07/08 00:18:16 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{73326EAB-09CB-45D2-BDD1-F30C222416D0}
[2012/07/07 12:18:04 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{0EE78BAC-B070-4E0F-9BEB-61FB91D5E772}
[2012/07/06 02:27:16 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{B4321344-F2C0-4FB2-974C-3D015A0C10C8}
[2012/07/05 14:26:42 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{D5453E1E-3791-4E24-8784-BFDCAE474A9A}
[2012/07/05 14:26:18 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{76539D7C-B33A-47CE-ACD3-0BA2FC7A2F8C}
[2012/07/05 02:25:50 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{AFCBA37F-2266-4A91-8026-CF87BD26E1B1}
[2012/07/04 14:25:17 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{E5F30FA8-7BAF-455E-BCEB-93904C4A160D}
[2012/07/03 23:18:21 | 000,000,000 | ---D | C] -- C:\Users\Alysia\AppData\Local\{6DC1F529-CDFD-4DCF-9831-2E79E6435881}
[2010/08/26 13:12:12 | 000,774,144 | ---- | C] (RealNetworks, Inc.) -- C:\Program Files (x86)\RngInterstitial.dll

========== Files - Modified Within 30 Days ==========

[2012/08/02 10:13:57 | 000,597,504 | ---- | M] (OldTimer Tools) -- C:\Users\Alysia\Desktop\OTL.exe
[2012/08/02 09:47:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/08/02 09:46:53 | 492,076,165 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012/08/02 09:46:52 | 3220,627,456 | -HS- | M] () -- C:\hiberfil.sys
[2012/08/02 09:41:44 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/08/02 08:05:38 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/08/02 08:05:00 | 010,652,120 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Alysia\Desktop\mbam-setup-1.62.0.1300.exe
[2012/08/01 21:40:44 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012/08/01 21:26:54 | 004,722,680 | R--- | M] (Swearware) -- C:\Users\Alysia\Desktop\ComboFix.exe
[2012/07/31 20:47:39 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/07/31 19:07:19 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/07/31 19:07:13 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-878912718-251898593-3003812187-1001UA.job
[2012/07/31 16:51:05 | 000,001,149 | ---- | M] () -- C:\Users\Alysia\Desktop\ROBLOX Studio.lnk
[2012/07/26 07:43:35 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-878912718-251898593-3003812187-1001Core.job
[2012/07/24 23:04:45 | 000,252,720 | ---- | M] () -- C:\Users\Alysia\Desktop\JulyReturnTickets.xps
[2012/07/24 23:03:53 | 000,237,318 | ---- | M] () -- C:\Users\Alysia\Desktop\JulyReturnTrip.xps
[2012/07/24 17:47:00 | 000,015,328 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/07/24 17:47:00 | 000,015,328 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/07/12 18:50:26 | 000,002,403 | ---- | M] () -- C:\Users\Alysia\Desktop\Google Chrome.lnk
[2012/07/11 03:31:28 | 000,381,320 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/07/06 22:11:43 | 000,666,833 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 10.PNG
[2012/07/06 22:00:33 | 000,232,529 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 9.PNG
[2012/07/06 21:57:47 | 000,344,069 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 8.PNG
[2012/07/06 21:56:34 | 000,199,049 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 7.PNG
[2012/07/06 21:54:56 | 000,545,952 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 6.PNG
[2012/07/06 21:53:39 | 000,282,464 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 5.PNG
[2012/07/06 21:51:07 | 000,141,044 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 4.PNG
[2012/07/06 21:46:05 | 000,270,110 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 3.PNG
[2012/07/06 21:45:33 | 000,533,642 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 2.PNG
[2012/07/06 21:45:06 | 000,131,598 | ---- | M] () -- C:\Users\Alysia\Desktop\hair 1.PNG
[2012/07/06 20:45:27 | 000,336,073 | ---- | M] () -- C:\Users\Alysia\Desktop\mike funny face.PNG
[2012/07/05 10:09:57 | 001,517,370 | ---- | M] () -- C:\Users\Alysia\Documents\MMSDAApp.xps
[2012/07/03 13:46:44 | 000,024,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys

========== Files Created - No Company Name ==========

[2012/08/02 08:05:38 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/08/01 21:28:14 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/08/01 21:28:14 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/08/01 21:28:14 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/08/01 21:28:14 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/08/01 21:28:14 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012/07/31 16:51:05 | 000,001,149 | ---- | C] () -- C:\Users\Alysia\Desktop\ROBLOX Studio.lnk
[2012/07/24 23:04:44 | 000,252,720 | ---- | C] () -- C:\Users\Alysia\Desktop\JulyReturnTickets.xps
[2012/07/24 23:03:52 | 000,237,318 | ---- | C] () -- C:\Users\Alysia\Desktop\JulyReturnTrip.xps
[2012/07/06 22:11:43 | 000,666,833 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 10.PNG
[2012/07/06 22:00:33 | 000,232,529 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 9.PNG
[2012/07/06 21:57:47 | 000,344,069 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 8.PNG
[2012/07/06 21:56:34 | 000,199,049 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 7.PNG
[2012/07/06 21:54:56 | 000,545,952 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 6.PNG
[2012/07/06 21:53:39 | 000,282,464 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 5.PNG
[2012/07/06 21:51:07 | 000,141,044 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 4.PNG
[2012/07/06 21:46:05 | 000,270,110 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 3.PNG
[2012/07/06 21:45:32 | 000,533,642 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 2.PNG
[2012/07/06 21:45:06 | 000,131,598 | ---- | C] () -- C:\Users\Alysia\Desktop\hair 1.PNG
[2012/07/06 20:45:26 | 000,336,073 | ---- | C] () -- C:\Users\Alysia\Desktop\mike funny face.PNG
[2012/07/05 10:09:50 | 001,517,370 | ---- | C] () -- C:\Users\Alysia\Documents\MMSDAApp.xps
[2012/04/14 12:55:31 | 000,000,614 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
[2012/04/05 20:29:34 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/04/05 20:29:34 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/03/24 22:54:10 | 000,000,034 | -H-- | C] () -- C:\Windows\SysWow64\Converter_sysquict.dat
[2012/03/24 22:51:40 | 000,164,352 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012/03/24 22:51:35 | 000,755,027 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2012/03/24 22:51:35 | 000,159,839 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2012/03/24 22:51:34 | 003,596,288 | ---- | C] () -- C:\Windows\SysWow64\qt-dx331.dll
[2012/03/24 22:51:31 | 000,007,680 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2012/03/09 14:06:14 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012/02/07 21:27:10 | 000,003,584 | ---- | C] () -- C:\Users\Alysia\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/10/28 20:36:25 | 000,000,112 | ---- | C] () -- C:\Users\Alysia\CHROME.ldt
[2011/10/26 22:38:18 | 000,451,072 | ---- | C] () -- C:\Windows\SysWow64\ISSRemoveSP.exe
[2011/10/25 22:21:34 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\OVDecoder.dll
[2011/09/12 17:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/03/26 22:35:20 | 000,000,918 | ---- | C] () -- C:\Windows\hpomdl40.dat.temp
[2011/03/21 00:55:05 | 000,040,960 | ---- | C] () -- C:\Windows\SysWow64\WMPCI54G.dll
[2011/03/21 00:54:45 | 000,000,502 | ---- | C] () -- C:\Windows\SysWow64\wlan.ini
[2010/09/14 16:30:24 | 000,315,524 | ---- | C] () -- C:\Windows\SysWow64\airxwhl.dll
[2010/09/14 15:52:10 | 001,158,601 | ---- | C] () -- C:\Windows\SysWow64\refprop.dll
[2010/09/14 15:52:10 | 000,729,088 | ---- | C] () -- C:\Windows\SysWow64\r3a.dll
[2010/09/14 15:52:10 | 000,410,624 | ---- | C] () -- C:\Windows\SysWow64\dforrt.dll
[2010/09/14 15:52:06 | 000,069,632 | ---- | C] () -- C:\Windows\SysWow64\jdde.dll
[2010/09/14 15:52:04 | 000,000,401 | ---- | C] () -- C:\Windows\SysWow64\sdm39.ini
[2010/09/14 15:28:43 | 000,004,111 | ---- | C] () -- C:\Windows\spcfg1.ini
[2010/09/14 15:28:08 | 000,001,502 | ---- | C] () -- C:\Windows\ODBC.INI
[2010/09/14 15:27:53 | 000,000,209 | ---- | C] () -- C:\Windows\ODBCINST.INI
[2010/09/14 15:27:50 | 000,002,275 | ---- | C] () -- C:\Windows\SysWow64\FSDM.INI
[2010/09/14 15:27:45 | 000,126,976 | ---- | C] () -- C:\Windows\SysWow64\ECATENB2.DLL
[2010/09/14 15:27:45 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\ECATEN33.DLL
[2010/09/14 15:27:45 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\ECATEN32.DLL
[2010/07/17 20:13:05 | 000,007,601 | ---- | C] () -- C:\Users\Alysia\AppData\Local\resmon.resmoncfg

========== LOP Check ==========

[2011/06/18 00:31:24 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\.minecraft
[2011/09/12 20:49:06 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\Belkin
[2011/07/07 21:56:46 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\BigBrotherLite
[2011/07/31 17:40:05 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\Catalina Marketing Corp
[2010/09/25 22:58:50 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\CDFKPHome
[2011/11/25 23:54:22 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\GARMIN
[2011/10/27 23:59:10 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\Johnson Controls, Inc
[2010/07/04 15:49:52 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\Need for Speed World
[2012/08/02 09:56:16 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\OpenOffice.org
[2011/10/26 20:10:08 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\Origin
[2011/11/27 18:32:18 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\OverDrive
[2012/02/13 23:37:47 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\Samsung
[2011/07/10 15:54:54 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2011/08/26 08:47:30 | 000,000,000 | ---D | M] -- C:\Users\Alysia\AppData\Roaming\webex
[2012/08/01 21:16:45 | 000,032,588 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



< End of report >

BC AdBot (Login to Remove)

 


#2 AlyNoComputer

AlyNoComputer
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:11:32 PM

Posted 02 August 2012 - 10:45 AM

Also - OTL created an Extras.Txt file - here is that info --- I appreciate any help in advance!!!!! Thank you!

OTL Extras logfile created on: 8/2/2012 10:15:56 AM - Run 1
OTL by OldTimer - Version 3.2.55.0 Folder = C:\Users\Alysia\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

4.00 Gb Total Physical Memory | 3.22 Gb Available Physical Memory | 80.54% Memory free
8.00 Gb Paging File | 7.27 Gb Available in Paging File | 90.86% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 297.99 Gb Total Space | 140.08 Gb Free Space | 47.01% Space Free | Partition Type: NTFS

Computer Name: ALYSIAGPC | User Name: Alysia | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"UpdatesDisableNotify" = 0
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{12147712-0ECB-4B11-B141-E473FF4F17BF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{15A5941C-1E32-4930-862C-2FA0552DC36C}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe |
"{19F1A124-BC09-4D04-ACDC-4F4DCFCC26D8}" = lport=139 | protocol=6 | dir=in | app=system |
"{1DB6ADDD-A790-4E11-BA48-D44322FD200F}" = rport=10243 | protocol=6 | dir=out | app=system |
"{27C5B90E-CEBC-4CD8-81FA-ABAB68AC2BE5}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\common files\intuit\update service v4\intuitupdater.exe |
"{38313B76-AF76-4CF4-BB2A-CBA87A336879}" = rport=445 | protocol=6 | dir=out | app=system |
"{3B7F7088-3CCC-41B5-A12D-926866389804}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3CD7ED8A-90E6-4BD2-BBE4-C24654A5E0B9}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{4719038D-1769-4CF5-8C53-88844714B48D}" = lport=2869 | protocol=6 | dir=in | app=system |
"{4D42EC3D-D0AB-4E93-8E24-193F89A6F787}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4F884CDC-11A8-469C-9075-84FE49FEC3AC}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{534D0D5E-493A-434E-930A-CFF5AF39F27D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{5421BA8C-1A46-4044-A7E8-1B97A389137C}" = lport=1542 | protocol=6 | dir=in | name=realtek wps tcp prot |
"{612B6BDC-2AD5-4AD3-8A96-5FC74000A591}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6ACC621A-81CB-49B4-AFE3-748352A35A01}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\common files\intuit\update service\intuitupdater.exe |
"{77C62180-21B3-430C-B888-848C3A51EFD7}" = rport=137 | protocol=17 | dir=out | app=system |
"{785C1933-BE9D-40BF-9B73-82847C786BB3}" = lport=10243 | protocol=6 | dir=in | app=system |
"{7D629C2D-067F-484D-AB0E-6E6AFA1E426F}" = lport=1542 | protocol=17 | dir=in | name=realtek wps udp prot |
"{85276E44-CDFC-47F0-AF92-B4AB6C539619}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8AEDD12A-BE70-404C-B1B9-13D356555A19}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8BB4C0D0-8482-4DB3-833F-0FC7FE177282}" = rport=139 | protocol=6 | dir=out | app=system |
"{92D0CB40-6C0F-4104-8163-C798233F923A}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\common files\intuit\update service v4\intuitupdateservice.exe |
"{9E53C2CF-B40E-4707-AA61-9D0A5320709A}" = lport=138 | protocol=17 | dir=in | app=system |
"{A18B8409-F5D8-4686-8F6C-C71502574B15}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{A1A031B2-8412-4BD3-8AD3-2A9353B9A1FE}" = lport=445 | protocol=6 | dir=in | app=system |
"{B5C85A43-09CA-4A97-AD8D-F46127A4884B}" = lport=53 | protocol=17 | dir=in | name=realtek ap udp prot |
"{B5CB60B9-D288-4035-BC23-525A19B5AC47}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{BE77A669-C58D-4B1A-9730-103DD91E9F43}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{CD996919-3C3D-4257-996F-BBC3215FCF9B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D422B871-2756-4D5D-8048-18DBE8A39C84}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\common files\intuit\update service\intuitupdateservice.exe |
"{DCFB1983-6183-4841-A081-0FF9CCF37928}" = rport=138 | protocol=17 | dir=out | app=system |
"{EA50154E-70CB-4C8A-8F7C-518366B2361C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F6689C73-2D81-4843-A3CC-BCF8C32A9833}" = lport=137 | protocol=17 | dir=in | app=system |
"{F6DDBDD2-5AF3-4743-A8ED-72B4BB29AF66}" = lport=2869 | protocol=6 | dir=in | app=system |
"{FFB3D469-27D9-4E53-A0E8-76176C371C04}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01C4EAE4-E631-4C31-87B3-78CF7FB741C8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\{b2dab009-8236-48a0-ad7f-e940f5ab1578}\setup\hpznui40.exe |
"{07C5CC92-8533-4217-A0FE-969CA603B9E1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{0A58C1A5-37BD-4F3B-BB25-5B1CDE15DEBB}" = protocol=6 | dir=in | app=c:\program files (x86)\rnx-n150ube\11n usb wireless lan utility\rtwlan.exe |
"{0FCFF50C-214B-41B2-905B-CB71DBACC311}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{12E255C2-A2F6-4318-A5D8-28877AA22CA1}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{14736902-BC8B-427F-AC7B-E1CC0F4241F1}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe |
"{14C5F9C8-4001-4821-95B4-6DFEA9236FDF}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{1881393E-5C66-4061-A71A-C3D5F80345D4}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{18D8BEFF-7F3A-4097-B5AA-6B88B5C58FB4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{193626CE-E72C-4AD8-9BD2-99C5726CA249}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.0\sonarhost.exe |
"{19DA2EF8-2B49-40D6-840F-993BA2850895}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsasvr.exe |
"{1D7039E9-D675-4B01-81D9-419A784A392A}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.0\sonarhost.exe |
"{2343CB19-C082-4DF7-BC17-47EEA027C076}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe |
"{25E0739C-649E-4459-AAB2-CCCFEBD9D86C}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{2760816F-86D5-4C5A-BD8B-C0F253850E38}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{280FF8A6-3143-4D15-A8D2-562BAF353F41}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe |
"{2BD03ABC-247E-4E7E-BFF1-407956B2ED7E}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeenc2.exe |
"{2D17780B-6FDB-4AA2-B7C4-30FCEBAA4676}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsasvr.exe |
"{2D56CCB6-D0C0-4837-B3E1-D660F8757CD5}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{2E142401-4EC1-4583-93D6-592B6D74F045}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe |
"{2FFEB968-A09A-46CB-ADB9-883CEA56AA10}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe |
"{3609FD0A-9E65-452F-9585-920D91CD9E00}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifecam.exe |
"{36A0A3F7-32B2-4923-BEF2-59FC99CD3DA2}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{377377AD-8A2D-40BC-9728-EBD7E0001068}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe |
"{41198E96-5148-4241-BE8B-4F5BBB63E8AD}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe |
"{42957016-7502-4B68-9FF9-B413EF931047}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\symantec shared\ccapp.exe |
"{4703207B-8B0E-43AF-B589-10A9BD9B6210}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{4991F9FD-9C46-446B-8175-53EE4497415C}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4BD9C6AA-0261-46E4-9CBD-5FE8395C5AC1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifetray.exe |
"{50262F33-46A6-43EF-93BA-74E6864C0A38}" = protocol=17 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\snac64.exe |
"{51833954-8F45-4A3B-82D0-9B34E805384B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe |
"{549D4A1C-7EAA-4133-97CA-ED644B4F3CB8}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{55CD557C-DE9B-47E4-B266-AB94AFA3D9DA}" = protocol=17 | dir=in | app=c:\program files\ventrilo\ventrilo.exe |
"{57292C20-3DB8-4E9C-B951-48C34729ADF8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe |
"{5EECF620-3628-4813-A518-67902718CBAE}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{5F3125F2-C282-4083-BC9E-C84946E8CEBF}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{61390A7C-2A13-46B3-83C7-CB05A69D4F85}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{62497460-706E-4882-A3D0-55CB8570A612}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\symantec shared\ccapp.exe |
"{6979A309-3F56-4ED1-AF7C-B36F234390F9}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{6A941DDC-6BAF-4519-9583-2A8A41326EE8}" = protocol=6 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\smc.exe |
"{6EE30E47-AD4D-4C70-9398-AA801C9E0762}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{6EEE8AE4-FFB9-476C-8C38-D3A2C682288F}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{6F033D1E-4D66-4862-B3E9-72C56FBECA5B}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{6FABC733-6224-499B-9666-2F23C65A9464}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe |
"{729B92BF-1E90-47DE-9B8A-7A568E1FC280}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeexp.exe |
"{753773DE-633B-4BB8-BB27-592C1E3C0D70}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{761DF101-7C72-4942-B14E-B8F61BF1EF94}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe |
"{776B90A7-9678-4280-8BDA-E5FF4DCAB63A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7A6E02E0-1978-496E-8695-A61BD218F580}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3 beta\bf3.exe |
"{7E3BDF89-2EF7-4362-9B8D-6D4EE602CEDF}" = protocol=17 | dir=in | app=c:\program files (x86)\rnx-n150ube\11n usb wireless lan utility\rtwlan.exe |
"{7E5408AB-B551-4428-9DEE-96DA726E248B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeenc2.exe |
"{85CF2E75-2756-45B7-8217-D4B9ED69F736}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{8D07FC1D-8677-4F24-9716-C1DFFFA8F448}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsvsvr.exe |
"{8DF6A7B8-7F8E-4661-A69B-EA2449F5CFF0}" = protocol=6 | dir=in | app=c:\program files\ventrilo\ventrilo.exe |
"{951F6171-C403-4304-92DC-F02FC82FD3B1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{95206FB7-1F4F-437D-925F-66BF944FE9A4}" = protocol=6 | dir=out | app=system |
"{952F3E1E-2C96-4279-AE7F-E278DE503DF8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe |
"{9D8FB1D5-4620-45A3-86B9-353E32E22210}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{9F1BBC5A-9FC5-496E-AE31-26D036C90579}" = protocol=17 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\smc.exe |
"{A366B7B0-1D7C-44A3-B7CA-F58EA151C7B3}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{A418A5A7-6BCD-4D80-8AA1-1A54C258A038}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{AECF625D-441A-4F4F-B92E-5F3ED58CB598}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeexp.exe |
"{B0193160-3C64-40DE-9EC3-082C52109D81}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe |
"{B4B53996-80BC-4FAA-8E42-D99B109665EC}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{B9C2D29B-65F4-41F0-9135-03C2F4E22FBF}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe |
"{BAA97E6C-F755-4CD8-9EEE-A8543447F3BF}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{BAABEA4B-644B-4977-8977-2B7252209890}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{BEA23BEA-BAFB-408B-BA74-91A1EDF6B20D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C0193602-8A74-4EA5-85FF-D25AA82685A4}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{C37733BB-31A7-422E-8260-BEA2D176745B}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{C37EB856-43F2-41F8-85E1-7FD537A9D46C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C57A02B1-C81E-4035-A1E8-2E9E8A345D21}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsvsvr.exe |
"{CC9CD29B-32D1-4603-92E0-65FD0DF64BD1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe |
"{D0E8DACB-3D1C-4989-B86E-97FF39305786}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe |
"{D55884C2-85A5-4E50-8EDF-B367F613F214}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifetray.exe |
"{D69B1EB8-AD8B-40D3-97A5-85BB58A02386}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe |
"{DD9848C4-8A3E-48C8-9830-BD104BC717D4}" = protocol=6 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\snac64.exe |
"{F2CA56FC-3E7D-4BDA-965A-083E4AF75C31}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{F532473D-EE4A-4D11-8EB4-AFC75D942379}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{F5C4AE35-1BB2-4B7D-9AD1-71F48A4CF4E0}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3 beta\bf3.exe |
"{FD588978-951F-48CF-AA71-B66FCBC8ED03}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifecam.exe |
"TCP Query User{439285B2-5B1D-4F8C-9B01-D694B3AC3B88}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"TCP Query User{8FE539AA-1258-4CBD-A66B-884EC5ED1D40}C:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe |
"UDP Query User{0157B52A-7B71-475B-A1A1-15F39068380D}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{3475217A-46E3-4259-962B-5FEC718C11E9}C:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{0CB2E2BC-A312-5821-C5C7-A295A1BEFD08}" = AMD Catalyst Install Manager
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{2BF35D84-6377-4F70-9F39-97CF67E67FFF}" = Microsoft IntelliPoint 8.0
"{48C0866E-57EB-444C-8371-8E4321066BC3}" = Network64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4E021D2A-16ED-4FFF-87CB-774F4F62A1A1}" = ccc-utility64
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{530992D4-DDBA-4F68-8B0D-FF50AC57531B}" = Symantec Endpoint Protection
"{572788F2-0AB7-FA0E-6E91-B98044F4B7E6}" = AMD Media Foundation Decoders
"{5CE7E3F5-9803-4F32-AA89-2D8848A80109}" = Microsoft LifeCam
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager
"{8219EDCB-CE5A-4348-B056-AAC0FE4E99D0}" = Microsoft IntelliType Pro 8.2
"{825C7AAC-C5D5-B89B-EBA1-D4DFC5E46D6C}" = AMD Drag and Drop Transcoding
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{8B485965-8EFE-464A-842F-CF8F18C3DFD7}" = iCloud
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9C5A08BF-BB99-4998-81BD-F6CC32483B34}" = Microsoft Corporation
"{AB3FDAEC-7702-3A47-655B-4A34714CBEFA}" = ccc-utility64
"{B2DAB009-8236-48A0-AD7F-E940F5AB1578}" = HP Photosmart Plus B209a-m All-in-One Driver Software 14.0 Rel. 6
"{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support
"{BABA4667-CF82-B330-A8E5-6E8A09B2D911}" = AMD Accelerated Video Transcoding
"{CF8FFD12-602B-422D-AF1D-511B411E7632}" = iTunes
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}" = Ventrilo Client for Windows x64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer
"49CF605F02C7954F4E139D18828DE298CD59217C" = Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0)
"Adobe Flash Player ActiveX 64" = Adobe Flash Player 10 ActiveX 64-bit
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.54
"HP Imaging Device Functions" = HP Imaging Device Functions 14.0
"HP Smart Web Printing" = HP Smart Web Printing 4.60
"HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0
"HPExtendedCapabilities" = HP Customer Participation Program 14.0
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft IntelliType Pro 8.2" = Microsoft IntelliType Pro 8.2
"NVIDIA Drivers" = NVIDIA Drivers
"Shop for HP Supplies" = Shop for HP Supplies

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0032D29F-7E8F-40E5-AD12-8857AAB0DBFF}" = Catalyst Control Center - Branding
"{020B3FBE-A201-4996-B818-77E0996EA49A}" = Dial Analysis
"{034C3647-3240-B744-D10B-637197A1E5B1}" = Catalyst Control Center InstallProxy
"{05BDC796-3451-4F81-B91D-E98F7ADA76C2}" = TurboTax 2010 WinPerTaxSupport
"{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0E13CAA3-B5FC-48C0-AA4A-26F5CD0C371C}" = Garmin Lifetime Updater
"{10EBB586-D21E-60CA-0856-AA753EBE1F16}" = Application Profiles
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery
"{14DDF23F-414A-46DB-4762-56569080292C}" = CCC Help Russian
"{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1A901A07-49E9-454F-ACFD-E6D67665BECC}" = Unitary Sales Tools
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21D6A73A-48E6-2195-C408-2158273A914E}" = Catalyst Control Center Localization All
"{22FC7536-BE5C-4E88-8069-C24689D34EC5}" = Snagit 10.0.1
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{2596DB11-997F-FC5B-F5C2-737623D9D8B6}" = Catalyst Control Center
"{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java™ 6 Update 29
"{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java™ 6 Update 22
"{28904D9A-13A6-ECA2-48D8-21542759D998}" = CCC Help Polish
"{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2C8BBDA6-79A7-B2DE-3E5B-287E7F667C67}" = CCC Help Danish
"{2E119961-E99B-C147-9AC3-A93683172DC1}" = CCC Help Swedish
"{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update
"{2FB9EA69-51D4-4913-9AD5-762C034DE811}" = Status
"{3782EC09-4000-475E-8A59-9CABD6F03B4C}" = TurboTax 2010 WinPerFedFormset
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3E171899-0175-47CC-84C4-562ACDD4C021}" = OpenOffice.org 3.3
"{44ED90A1-453B-5C9A-D9ED-80D8AB0258B8}" = CCC Help Thai
"{45534579-B75B-4A42-953B-2EF8E1DEB4F3}" = Microsoft XML Parser
"{45C8D17D-B5E0-4e93-8370-4329AB16D2A0}" = Battlefield 3™ Open Beta
"{45E00595-897E-64B6-28F9-5D0927EBA4A5}" = CCC Help Chinese Standard
"{46DE5F4E-BA8B-AC9E-0EED-05B7D93AD215}" = CCC Help Spanish
"{46E21083-D598-4217-99B0-2ED3E4152759}" = CyberPower PowerPanel Personal Edition 1.2.3
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4F2FCCCF-29F3-44B9-886F-6D16F8417522}" = TurboTax 2010 wrapper
"{510D2239-6C2E-457B-9590-485EC552D94D}" = Garmin USB Drivers
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{548C7B77-8B04-427E-ACD0-D0E6E6E59BCF}" = Nostromo
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5B04E832-4530-B8FF-F742-8BE25ADD43BD}" = CCC Help German
"{5D58EACA-0317-4CFF-9E13-53CCD525DE32}" = Catalyst Control Center InstallProxy
"{5DCF0E4B-F8EA-4229-A0BD-5CA6D4AFB749}" = SolutionCenter
"{5ED93D68-5EAA-9343-9B74-B1E276217264}" = CCC Help Dutch
"{634D08B4-CFAC-CCB9-5891-FAB02B3FD9C1}" = TweetDeck
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}" = Adobe AIR
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6C528316-05A0-4594-A949-94B792EC396C}" = TurboTax 2011 wpaiper
"{6D185295-DE89-9C39-18E6-310C148836EB}" = CCC Help Chinese Traditional
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{71A8F958-D272-E262-7C9A-7B8F713EE0C3}" = CCC Help French
"{7513D3F0-55BC-273C-7A53-488394EDBFCC}" = CCC Help Italian
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78F5C5A8-C3E4-417A-AD23-4C95447FD239}" = TPower2
"{79AA9BFA-F962-A1E9-71CE-D0887A92444C}" = CCC Help Portuguese
"{7ACEF1BF-9306-5AD7-5F30-ECE72A81E924}" = CCC Help Finnish
"{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{7CD82818-18F2-E4D5-A502-9D1F16C8DF9C}" = Catalyst Control Center Graphics Previews Common
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}" = HPDiagnosticAlert
"{87686C21-8A15-4b4d-A3F1-11141D9BE094}" = Battlefield Play4Free
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{88742616-A6E9-4C7E-9665-B625799541FB}" = Wireless-G PCI Adapter
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A76CFCA-4BEC-C88E-3A7B-7CD18E3B86EA}" = CCC Help English
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}" = Battlefield Heroes
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg
"{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A}" = SmartWebPrinting
"{900B84AB-6A80-49EE-B236-67F211190597}" = Hello Kitty Dream Carnival
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0409-1000-0000000FF1CE}_PROPLUS_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_PROPLUS_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_PROPLUS_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0116-0409-1000-0000000FF1CE}_PROPLUS_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_PROPLUS_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C049499-055C-4a0c-A916-1D8CA1FF45EB}" = REALTEK Wireless LAN Driver and Utility
"{9C1EC871-05B9-03B7-96F6-9BD5C0D8F41D}" = Catalyst Control Center Graphics Previews Common
"{A1C046D3-B29E-2002-DFF4-13D702A7670C}" = BB Lite
"{A525E00B-6609-442E-9DCD-64453C233E8D}" = TurboTax 2010 WinPerReleaseEngine
"{A7D9103B-5F49-4A43-9887-9EFC1CE79A38}" = TurboTax 2010 wokiper
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply
"{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.0
"{B099C29E-EC83-4BF2-A4FF-5809D09C1C1B}" = BIOScreen
"{B106B636-CAE2-B7BC-2988-3FD21DB1E0C7}" = Application Profiles
"{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2
"{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations
"{C4129D57-5C83-3BF0-A11A-3798C008C6C7}" = CCC Help Greek
"{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget
"{CAF5B770-082F-40C4-853D-3973BB81BDAA}" = TurboTax 2011 WinPerTaxSupport
"{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp
"{CDC8DBA8-37FF-4C82-84FF-DEBEDF93BEC4}" = PS_AIO_06_B209a-m_SW_Min
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0BC4101-6C30-ECFF-F693-63408134F29B}" = CCC Help Czech
"{D17111CB-C992-42A9-9D56-C19395102AAA}" = Garmin WebUpdater
"{D2402DAD-B180-A4A0-261D-4A8933BFBFEE}" = CCC Help Japanese
"{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D647F06F-2908-487E-9CDA-DE52148CBF49}" = OverDrive Media Console
"{DA7E8D81-2B14-415B-8FC5-02CE4CF9F839}" = CCC Help Hungarian
"{DB3FBD3C-A061-34C9-0A2B-6CCDD8C96640}" = CCC Help Turkish
"{E086E914-2928-48F9-364B-0C715DFF6A45}" = CCC Help Korean
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E30E7561-A466-4393-B8BF-FD93E733EF3C}" = Microsoft Office Live Meeting 2007
"{E463E171-4082-4744-A466-F7CBE8502789}" = TurboTax 2011 WinPerReleaseEngine
"{E517094C-06B6-419F-8FFD-EF4F57972130}" = QuickTransfer
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E617721F-B66C-4D5A-AA2A-B2D60820CDC3}" = B209a-m
"{E8F30BD6-ABAB-C24E-E9A7-BF67EB96152C}" = CCC Help Norwegian
"{E9A5B6CD-7ABB-F295-2E11-F25BC322FF80}" = CCC Help English
"{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{EE556A3E-EB37-4392-9637-BAA8EC2F47FA}" = TurboTax 2011 wrapper
"{F050C3B4-007B-4963-8DC4-C5949801424B}" = TurboTax 2011 wokiper
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 2.02.002
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F8131A35-47FD-27AD-116D-0E79AF5DE5EE}" = Acrobat.com
"{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm
"{FAD3D68B-2F9C-459B-AA79-C04B9090FD72}" = TurboTax 2011 WinPerFedFormset
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"Action Replay Code Manager_is1" = Action Replay Code Manager
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AHU Selection v6.00" = AHU Selection v6.00
"Air Terminals Builder 1.09e" = Air Terminals Builder 1.09e
"Applied RTU Builder 2.09b" = Applied RTU Builder 2.09b
"Battlelog Web Plugins" = Battlelog Web Plugins
"BigBrotherLite" = BB Lite
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Commercial Split Systems Builder v1.19e" = Commercial Split Systems Builder v1.19e
"Coupon Printer for Windows5.0.0.1" = Coupon Printer for Windows
"E-CAT / E20-II Configuration Services 2.21" = E-CAT / E20-II Configuration Services 2.21
"E-CAT Enable 2.11" = E-CAT Enable 2.11
"ESET Online Scanner" = ESET Online Scanner v3
"ESN Sonar-0.70.0" = ESN Sonar
"ESN Sonar-0.70.4" = ESN Sonar
"Fan Coil Builder 3.36" = Fan Coil Builder 3.36
"Free Convert 3GP VOB to AVI WMV MPEG MP4 Converter_is1" = Free Convert 3GP VOB to AVI WMV MPEG MP4 Converter 5.8
"Heatsoft ADCS_is1" = Heatsoft ADCS 2.01
"HP Photo Creations" = HP Photo Creations
"InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"KLiteCodecPack_is1" = K-Lite Codec Pack 4.0.0 (Full)
"LiveUpdate" = LiveUpdate 3.3 (Symantec Corporation)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.62.0.1300
"Mozilla Firefox (3.6.8)" = Mozilla Firefox (3.6.8)
"Nu-Fin Coil Selection v1.06" = Nu-Fin Coil Selection v1.06
"Origin" = Origin
"Packaged RTU Builder 1.23" = Packaged RTU Builder 1.23
"PowerISO" = PowerISO
"PROPLUS" = Microsoft Office Professional Plus 2007
"PunkBusterSvc" = PunkBuster Services
"RealArcade 1.2" = RealArcade
"SCU Builder 2.09j" = SCU Builder 2.09j
"SpeedFan" = SpeedFan (remove only)
"TurboTax 2010" = TurboTax 2010
"TurboTax 2011" = TurboTax 2011
"TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1" = TweetDeck
"Unit Ventilators Builder 1.14" = Unit Ventilators Builder 1.14
"WinLiveSuite" = Windows Live Essentials
"X Builder Framework 1.04i" = X Builder Framework 1.04i

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"ActiveTouchMeetingClient" = WebEx
"Google Chrome" = Google Chrome
"GoToMeeting" = GoToMeeting 4.8.0.723
"UnityWebPlayer" = Unity Web Player

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 7/31/2012 1:48:29 AM | Computer Name = AlysiaGPC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 7/31/2012 1:48:29 AM | Computer Name = AlysiaGPC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 5875

Error - 7/31/2012 1:48:29 AM | Computer Name = AlysiaGPC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 5875

Error - 7/31/2012 1:48:31 AM | Computer Name = AlysiaGPC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 7/31/2012 1:48:31 AM | Computer Name = AlysiaGPC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 7828

Error - 7/31/2012 1:48:31 AM | Computer Name = AlysiaGPC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 7828

Error - 8/1/2012 10:28:17 PM | Computer Name = AlysiaGPC | Source = VSS | ID = 18
Description =

Error - 8/1/2012 10:28:17 PM | Computer Name = AlysiaGPC | Source = VSS | ID = 8193
Description =

Error - 8/1/2012 10:28:17 PM | Computer Name = AlysiaGPC | Source = System Restore | ID = 8193
Description =

Error - 8/2/2012 12:49:30 AM | Computer Name = AlysiaGPC | Source = VSS | ID = 18
Description =

Error - 8/2/2012 12:49:30 AM | Computer Name = AlysiaGPC | Source = VSS | ID = 8193
Description =

Error - 8/2/2012 12:49:30 AM | Computer Name = AlysiaGPC | Source = System Restore | ID = 8193
Description =

[ Media Center Events ]
Error - 5/14/2011 4:59:49 PM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 3:59:48 PM - Error connecting to the internet. 3:59:48 PM - Unable
to contact server..

Error - 6/2/2011 4:47:22 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 3:47:22 AM - Error connecting to the internet. 3:47:22 AM - Unable
to contact server..

Error - 6/2/2011 4:47:31 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 3:47:27 AM - Error connecting to the internet. 3:47:27 AM - Unable
to contact server..

Error - 6/2/2011 5:47:35 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 4:47:35 AM - Error connecting to the internet. 4:47:35 AM - Unable
to contact server..

Error - 6/2/2011 5:47:41 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 4:47:40 AM - Error connecting to the internet. 4:47:40 AM - Unable
to contact server..

Error - 6/2/2011 6:47:46 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 5:47:46 AM - Error connecting to the internet. 5:47:46 AM - Unable
to contact server..

Error - 6/2/2011 6:47:52 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 5:47:51 AM - Error connecting to the internet. 5:47:51 AM - Unable
to contact server..

Error - 6/2/2011 7:47:57 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 6:47:57 AM - Error connecting to the internet. 6:47:57 AM - Unable
to contact server..

Error - 6/2/2011 7:48:03 AM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 6:48:02 AM - Error connecting to the internet. 6:48:02 AM - Unable
to contact server..

Error - 6/10/2011 4:33:56 PM | Computer Name = AlysiaGPC | Source = MCUpdate | ID = 0
Description = 3:33:50 PM - Error connecting to the internet. 3:33:50 PM - Unable
to contact server..

[ System Events ]
Error - 8/2/2012 11:10:43 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:15:43 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:15:43 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:15:43 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:17:51 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:17:51 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:17:51 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:22:51 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:22:51 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068

Error - 8/2/2012 11:22:51 AM | Computer Name = AlysiaGPC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068


< End of report >

#3 AlyNoComputer

AlyNoComputer
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:11:32 PM

Posted 06 August 2012 - 07:26 PM

Bump - still in the blue screen of death mode ....

#4 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,600 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:32 AM

Posted 07 August 2012 - 10:45 AM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

Posted Image In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/463557 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

Posted Image If you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS and GMER log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from one of the following links if you no longer have it available. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE


We also need a new log from the GMER anti-rootkit Scanner.

Please note that if you are running a 64-bit version of Windows, you should not bother creating a GMER log.

Please first disable any CD emulation programs using the steps found in this topic:

Why we request you disable CD Emulation when receiving Malware Removal Advice


Then create another GMER log and post it as an attachment to the reply where you post your new DDS log. Instructions on how to properly create a GMER log can be found here:

How to create a GMER log


As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#5 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,600 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:32 AM

Posted 12 August 2012 - 10:50 AM

Hello again!

I haven't heard from you in 5 days. Therefore, I am going to assume that you no longer need our help, and close this topic.

If you do still need help, please send a Private Message to any Moderator within the next five days. Be sure to include a link to your topic in your Private Message.

Thank you for using Bleeping Computer, and have a great day!




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users