Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

slow pc - possible infected


  • Please log in to reply
16 replies to this topic

#1 yhelfman

yhelfman

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 29 December 2013 - 08:48 PM

Hi,

Another one of my old Windows XP PCs are recently got very slow, and FireFox is acting up. I hope you guys can help me out, as you always do :)

Yuval



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,199 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:22 PM

Posted 29 December 2013 - 09:20 PM

Hello Yuval, it may nt be malware but we will check.
 
Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
 
Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
.
.
.
ADW Cleaner
Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool
  • Click on the Scan button.
  • AdwCleaner will begin to scan your computer like it did before.
  • After the scan has finished...
    <-insert any special instructions here for what to uncheck OR remove this line if there are none->
  • This time click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S#].txt) will open automatically (where the largest value of # represents the most recent report).
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
  • .
    .
    .
    thisisujrt.gif Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.
    .
    .
    .
    .
    • Last run ESET.
      • Hold down Control and click on this link to open ESET OnlineScan in a new window.
      • Click the esetonlinebtn.png button.
      • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
      • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
      • Double click on the esetsmartinstaller_enu.png icon on your desktop.
      • Check "YES, I accept the Terms of Use."
      • Click the Start button.
      • Accept any security warnings from your browser.
      • Under scan settings, check "Scan Archives" and "Remove found threats"
      • Click Advanced settings and select the following:
      • Scan potentially unwanted applications
      • Scan for potentially unsafe applications
      • Enable Anti-Stealth technology
      • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
      • When the scan completes, click List Threats
      • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
      • Click the Back button.
      • Click the Finish button.
      • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 30 December 2013 - 01:54 PM

Hi boopme,

 

Here are the logs (TDSSKiller did not find anything and hence did not create any log file):

 

MiniToolBox by Farbar  Version: 18-12-2013
Ran by arie (administrator) on 29-12-2013 at 21:44:08
Running from "C:\Documents and Settings\arie\Desktop\Yuval BleepingComputer\MiniToolBox"
Microsoft Windows XP Home Edition Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

 

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

127.0.0.1       localhost

========================= IP Configuration: ================================

802.11 USB Wireless LAN Card = Wireless Network Connection 2 (Connected)
NVIDIA nForce 10/100/1000 Mbps Ethernet  = Local Area Connection (Media disconnected)

# ----------------------------------
# Interface IP Configuration        
# ----------------------------------
pushd interface ip

# Interface IP Configuration for "Local Area Connection"

set address name="Local Area Connection" source=dhcp
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp

# Interface IP Configuration for "Network Connect Adapter"

set address name="Network Connect Adapter" source=dhcp
set dns name="Network Connect Adapter" source=dhcp register=PRIMARY
set wins name="Network Connect Adapter" source=dhcp

# Interface IP Configuration for "Wireless Network Connection 2"

set address name="Wireless Network Connection 2" source=dhcp
set dns name="Wireless Network Connection 2" source=dhcp register=PRIMARY
set wins name="Wireless Network Connection 2" source=dhcp

popd
# End of interface IP configuration

 

Windows IP Configuration

 

        Host Name . . . . . . . . . . . . : acer-42041e6643

        Primary Dns Suffix  . . . . . . . :

        Node Type . . . . . . . . . . . . : Unknown

        IP Routing Enabled. . . . . . . . : No

        WINS Proxy Enabled. . . . . . . . : No

        DNS Suffix Search List. . . . . . : gateway.pace.com

 

Ethernet adapter Local Area Connection:

 

        Media State . . . . . . . . . . . : Media disconnected

        Description . . . . . . . . . . . : NVIDIA nForce 10/100/1000 Mbps Ethernet

        Physical Address. . . . . . . . . : 90-FB-A6-4A-15-69

 

Ethernet adapter Network Connect Adapter:

 

        Media State . . . . . . . . . . . : Media disconnected

        Description . . . . . . . . . . . : Juniper Network Connect Virtual Adapter

        Physical Address. . . . . . . . . : 00-FF-70-5A-13-85

 

Ethernet adapter Wireless Network Connection 2:

 

        Connection-specific DNS Suffix  . : gateway.pace.com

        Description . . . . . . . . . . . : 802.11 USB Wireless LAN Card

        Physical Address. . . . . . . . . : 00-40-36-3C-0F-9D

        Dhcp Enabled. . . . . . . . . . . : Yes

        Autoconfiguration Enabled . . . . : Yes

        IP Address. . . . . . . . . . . . : 192.168.1.78

        Subnet Mask . . . . . . . . . . . : 255.255.255.0

        Default Gateway . . . . . . . . . : 192.168.1.254

        DHCP Server . . . . . . . . . . . : 192.168.1.254

        DNS Servers . . . . . . . . . . . : 192.168.1.254

        Lease Obtained. . . . . . . . . . : Sunday, December 29, 2013 6:23:12 PM

        Lease Expires . . . . . . . . . . : Monday, December 30, 2013 6:23:12 PM

Server:  homeportal
Address:  192.168.1.254

Name:    google.com
Addresses:  74.125.239.37, 74.125.239.36, 74.125.239.41, 74.125.239.38
   74.125.239.34, 74.125.239.35, 74.125.239.32, 74.125.239.39, 74.125.239.33
   74.125.239.46, 74.125.239.40

 

Pinging google.com [74.125.239.41] with 32 bytes of data:

 

Reply from 74.125.239.41: bytes=32 time=52ms TTL=54

Reply from 74.125.239.41: bytes=32 time=56ms TTL=54

 

Ping statistics for 74.125.239.41:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 52ms, Maximum = 56ms, Average = 54ms

Server:  homeportal
Address:  192.168.1.254

Name:    yahoo.com
Addresses:  98.138.253.109, 206.190.36.45, 98.139.183.24

 

Pinging yahoo.com [206.190.36.45] with 32 bytes of data:

 

Reply from 206.190.36.45: bytes=32 time=77ms TTL=48

Reply from 206.190.36.45: bytes=32 time=90ms TTL=48

 

Ping statistics for 206.190.36.45:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 77ms, Maximum = 90ms, Average = 83ms

 

Pinging 127.0.0.1 with 32 bytes of data:

 

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

 

Ping statistics for 127.0.0.1:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...90 fb a6 4a 15 69 ...... NVIDIA nForce Networking Controller - Packet Scheduler Miniport
0x3 ...00 ff 70 5a 13 85 ...... Juniper Network Connect Virtual Adapter - Packet Scheduler Miniport
0x10005 ...00 40 36 3c 0f 9d ...... 802.11 USB Wireless LAN Card - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0    192.168.1.254    192.168.1.78   20
        127.0.0.0        255.0.0.0        127.0.0.1       127.0.0.1   1
      192.168.1.0    255.255.255.0     192.168.1.78    192.168.1.78   20
     192.168.1.78  255.255.255.255        127.0.0.1       127.0.0.1   20
    192.168.1.255  255.255.255.255     192.168.1.78    192.168.1.78   20
        224.0.0.0        240.0.0.0     192.168.1.78    192.168.1.78   20
  255.255.255.255  255.255.255.255     192.168.1.78    192.168.1.78   1
  255.255.255.255  255.255.255.255     192.168.1.78               2   1
  255.255.255.255  255.255.255.255     192.168.1.78               3   1
Default Gateway:     192.168.1.254
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\system32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 01 C:\WINDOWS\system32\nvLsp.dll [281120] (NVIDIA)
Catalog9 02 C:\WINDOWS\system32\nvLsp.dll [281120] (NVIDIA)
Catalog9 03 C:\WINDOWS\system32\nvLsp.dll [281120] (NVIDIA)
Catalog9 04 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\system32\nvLsp.dll [281120] (NVIDIA)
Catalog9 10 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 14 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 15 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 16 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 17 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 18 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 19 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 20 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 21 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 22 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 23 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 24 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 25 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (12/29/2013 04:00:18 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/28/2013 04:00:49 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/27/2013 04:00:18 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/26/2013 04:00:19 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/25/2013 04:00:16 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/24/2013 04:00:15 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/23/2013 04:00:12 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/22/2013 04:00:16 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/21/2013 04:00:15 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

Error: (12/20/2013 04:00:35 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: An internal inconsistency was detected in trying
to contact shadow copy service writers.  Please check to see that the Event Service
and Volume Shadow Copy Service are operating properly.

System errors:
=============
Error: (12/29/2013 06:23:07 PM) (Source: Dhcp) (User: )
Description: The IP address lease 192.168.1.6 for the Network Card with network address 0040363C0F9D has been
denied by the DHCP server 192.168.1.254 (The DHCP Server sent a DHCPNACK message).

Error: (12/29/2013 06:17:37 PM) (Source: Service Control Manager) (User: )
Description: The vToolbarUpdater17.2.0 service failed to start due to the following error:
%%2

Error: (12/29/2013 05:09:15 PM) (Source: Service Control Manager) (User: )
Description: The vToolbarUpdater17.2.0 service failed to start due to the following error:
%%2

Error: (12/28/2013 09:21:39 PM) (Source: 0) (User: )
Description: 0.0.0.0:2869

Error: (12/28/2013 09:21:38 PM) (Source: 0) (User: )
Description: 0.0.0.0:2869

Error: (12/28/2013 09:21:38 PM) (Source: 0) (User: )
Description: 0.0.0.0:2869

Error: (12/28/2013 09:21:38 PM) (Source: 0) (User: )
Description: 0.0.0.0:2869

Error: (12/28/2013 09:21:38 PM) (Source: 0) (User: )
Description: 0.0.0.0:2869

Error: (12/28/2013 09:21:38 PM) (Source: 0) (User: )
Description: 0.0.0.0:2869

Error: (12/28/2013 09:21:22 PM) (Source: Dhcp) (User: )
Description: Your computer has lost the lease to its IP address 192.168.1.6 on the
Network Card with network address 0040363C0F9D.

Microsoft Office Sessions:
=========================

=========================== Installed Programs ============================

7-Zip 4.65
Acer eRecovery Management (Version: 4.00.3008)
Acer Registration
Acer ScreenSaver
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.1.377)
ActiveMail Leumi Composer 1.0 (Version: 1.0)
Adobe AIR (Version: 1.0.4990)
Adobe AIR (Version: 1.0.8.4990)
Adobe Flash Player 10 ActiveX (Version: 10.0.22.87)
Adobe Flash Player 11 Plugin (Version: 11.9.900.170)
Adobe Reader XI (11.0.03) (Version: 11.0.03)
Agatha Christie Peril at End House
Alice Greenfingers
Alien Shooter
AppCAD (Version: 3.00.0002)
Ask Toolbar (Version: 1.15.25.0)
Ask Toolbar Updater (Version: 1.2.6.36191)
Atheros for Acer Driver v7.6.0.260_Foxconn Installation Program (Version: 7.6.0.260)
AutoCAD LT 2000
AVG SafeGuard toolbar (Version: 17.2.0.38)
Bookworm Adventures
C:\Program Files\Acer GameZone\GameConsole (Version: 2.0.1.6)
Cadence Allegro Free Physical Viewers 16.5 (Version: 16.5.0)
Cake Mania
Carbonite Online Backup Setup (Version: 3.7.0)
Chicken Invaders 2
Choice Guard (Version: 1.2.87.0)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Control Center for KODAK Webcams
CutePDF Writer 2.8
CyberLink PowerDVD 8 (Version: 8.0.2705b.50)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Delta Chrome Toolbar
Delta toolbar   (Version: 1.8.24.6)
Dream Day First Home
DriverUpdate (Version: 2.2.30452)
Dropbox (Version: 2.4.10)
Epson Connect
Epson Customer Participation (Version: 1.0.0.0)
Epson Event Manager (Version: 2.50.0000)
EPSON NX230 Series Printer Uninstall
EPSON Printer Software
EPSON Scan
EPSON WorkForce 1100 Series Printer Uninstall
EpsonNet Print (Version: 2.4j)
eSobi v2 (Version: 2.0.3.000223)
FBackup 4
ffdshow [rev 2527] [2008-12-19] (Version: 1.0)
Free YouTube Downloader 3.5.169
Galapago
GENESYS Version 7.52
Go-Go Gourmet
Google Chrome (Version: 31.0.1650.63)
Google Desktop (Version: 5.9.1005.12335)
Google Drive (Version: 1.13.5782.599)
Google Talk Plugin (Version: 4.9.1.16010)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.5.4805.320)
Google Update Helper (Version: 1.3.22.3)
Heroes of Hellas
Java 7 Update 15 (Version: 7.0.150)
Java Auto Updater (Version: 2.1.9.0)
Juniper Networks Network Connect 6.5.0 (Version: 6.5.0.15255)
Juniper Networks Network Connect 7.1.0 (Version: 7.1.0.18193)
Juniper Networks Setup Client Activex Control (Version: 2.1.1.1)
Juniper Networks, Inc. Setup Client (Version: 7.1.2.10059)
Junk Mail filter update (Version: 14.0.8050.1202)
LINC
LTspice IV
Magic Farm
Magic Match Adventures
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2833941)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft National Language Support Downlevel APIs
Microsoft Office Access MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Groove MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office InfoPath MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint Viewer 2007 (English) (Version: 12.0.6612.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Suite Activation Assistant (Version: 2.9)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Security Client (Version: 4.4.0304.0)
Microsoft Security Essentials (Version: 4.4.304.0)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft Software Update for Web Folders  (English) 14 (Version: 14.0.7015.1000)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft User-Mode Driver Framework Feature Pack 1.9
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Web Publishing Wizard 1.52
Microsoft WinUsb 1.0
Microsoft Works (Version: 9.7.0621)
Mozilla Firefox 26.0 (x86 en-US) (Version: 26.0)
Mozilla Maintenance Service (Version: 26.0)
MSVCRT (Version: 14.0.1468.721)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Mystery Solitaire - Secret Island
Mythic Mahjong
MyWinLocker (Version: 3.1.59.0)
NEC4WIN95VM
Nuance PDF Converter Professional 7 (Version: 7.00.3203)
NVIDIA Drivers (Version: 1.3)
NVIDIA ForceWare Network Access Manager (Version: 1.00.6796)
OpenOffice.org 3.2 (Version: 3.2.9483)
Orcad Family Release 9.2 Lite Edition
Package: Google Nexus 7 ToolKit (Version: 1.0.0.0)
PowerInbox (Version: 1.13.1.0)
Putt Mania
QuickShare (Version: 10.165.60.13189)
Realtek High Definition Audio Driver (Version: 5.10.0.5859)
Scansoft PDF Professional
Segoe UI (Version: 14.0.4327.805)
Sentinel Protection Installer 7.5.0 (Version: 7.5.0)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Shockwave
Skype Click to Call (Version: 5.6.8442)
Skype™ 6.3 (Version: 6.3.107)
Sonnet 13.55 (Version: 13.55)
Special Internet Offers (Version: 1.0)
StartNow Toolbar (Version: 2.5.0)
TeamViewer 9 (Version: 9.0.24951)
The Print Shop 20 (Version: 20.00.0000)
The Rise of Atlantis
Tiks Texas Hold em
TomTom HOME 2.8.3.2499 (Version: 2.8.3.2499)
TomTom HOME Visual Studio Merge Modules (Version: 1.0.2)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition
Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition
Update for Windows Internet Explorer 7 (KB980182) (Version: 1)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows Internet Explorer 8 (KB982632) (Version: 1)
Update for Windows XP (KB2141007) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2467659) (Version: 1)
Update for Windows XP (KB2541763) (Version: 1)
Update for Windows XP (KB2607712) (Version: 1)
Update for Windows XP (KB2616676) (Version: 1)
Update for Windows XP (KB2641690) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
Update for Windows XP (KB2863058) (Version: 1)
Update for Windows XP (KB2904266) (Version: 1)
Update for Windows XP (KB898461) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
WebConnect 3.0.0 (Version: 3.0.0)
WebFldrs XP (Version: 9.50.7523)
Windows Internet Explorer 7 (Version: 20070813.185237)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Live Call (Version: 14.0.8050.1202)
Windows Live Communications Platform (Version: 14.0.8050.1202)
Windows Live Essentials (Version: 14.0.8050.1202)
Windows Live Mail (Version: 14.0.8050.1202)
Windows Live Messenger (Version: 14.0.8050.1202)
Windows Live Photo Gallery (Version: 14.0.8051.1204)
Windows Live Sign-in Assistant (Version: 5.000.818.6)
Windows Live Sync (Version: 14.0.8050.1202)
Windows Live Upload Tool (Version: 14.0.8014.1029)
Windows Live Writer (Version: 14.0.8050.1202)
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
Windows Mobile Device Updater Component (Version: 04.07.1404.01)
WinRAR 4.20 (32-bit) (Version: 4.20.0)
Womens Murder Club
Zoom Wireless-N USB Zoom Wireless-N USB (Version: 1.5.5.0)
Zune (Version: 04.07.1404.01)
Zune Language Pack (DEU) (Version: 04.07.1404.01)
Zune Language Pack (ESP) (Version: 04.07.1404.01)
Zune Language Pack (FRA) (Version: 04.07.1404.01)
Zune Language Pack (ITA) (Version: 04.07.1404.01)
Zune Language Pack (NLD) (Version: 04.07.1404.01)
Zune Language Pack (PTB) (Version: 04.07.1404.01)
Zune Language Pack (PTG) (Version: 04.07.1404.01)

========================= Memory info: ===================================

Percentage of memory in use: 66%
Total physical RAM: 895.1 MB
Available physical RAM: 295.42 MB
Total Pagefile: 2167.05 MB
Available Pagefile: 1406.57 MB
Total Virtual: 2047.88 MB
Available Virtual: 1965.08 MB

========================= Partitions: =====================================

1 Drive c: (ACER) (Fixed) (Total:134.05 GB) (Free:90.02 GB) NTFS
2 Drive d: () (Removable) (Total:29.8 GB) (Free:29.54 GB) FAT32

========================= Users: ========================================

User accounts for \\ACER-42041E6643

Administrator            arie                     ASPNET                  
Guest                    HelpAssistant            nurit                   
SUPPORT_388945a0        

**** End of log ****

 

# AdwCleaner v3.016 - Report created 29/12/2013 at 21:55:02
# Updated 23/12/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : arie - ACER-42041E6643
# Running from : C:\Documents and Settings\arie\Desktop\Yuval BleepingComputer\AdwCleaner\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : Update WebConnect
Service Deleted : Updater Service for StartNow Toolbar

***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Application Data\Ask
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Babylon
Folder Deleted : C:\Program Files\StartNow Toolbar
Folder Deleted : C:\Program Files\WebConnect
Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
Folder Deleted : C:\WINDOWS\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Folder Deleted : C:\Documents and Settings\nurit\Local Settings\Application Data\AskToolbar
Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\apn
Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\AVG SafeGuard toolbar
Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\iLivid
Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\Smartbar
Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\StartNow
Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\torch
Folder Deleted : C:\DOCUME~1\arie\LOCALS~1\Temp\Smartbar
Folder Deleted : C:\Documents and Settings\arie\Application Data\AVG SafeGuard toolbar
Folder Deleted : C:\Documents and Settings\arie\Application Data\BabSolution
Folder Deleted : C:\Documents and Settings\arie\Application Data\Babylon
Folder Deleted : C:\Documents and Settings\arie\Application Data\Delta
Folder Deleted : C:\Documents and Settings\arie\Application Data\OpenCandy
Folder Deleted : C:\Documents and Settings\arie\Application Data\StartNow Toolbar
Folder Deleted : C:\Documents and Settings\arie\Start Menu\Programs\BitGuard
Folder Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\ConduitCommon
Folder Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\Smartbar
Folder Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\ValueApps
Folder Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\Extensions\{5911488E-9D1E-40EC-8CBB-06B231CC153F}
[!] Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl
[!] Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ieakfmpjhljbpbfpldjkddkjmmgjmgon
[!] Folder Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incfcgceegpikennjoplhfghaaikdgei
File Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\Extensions\firefox@webconnect.co.xpi
File Deleted : C:\Documents and Settings\arie\Start Menu\Programs\iLivid.lnk
File Deleted : C:\Documents and Settings\arie\Desktop\iLivid.lnk
File Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\bProtector_extensions.rdf
File Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\bprotector_extensions.sqlite
File Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\bprotector_prefs.js
File Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\invalidprefs.js
File Deleted : C:\Program Files\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
File Deleted : C:\Documents and Settings\nurit\Application Data\Mozilla\Firefox\Profiles\rwb4n7b7.default\searchplugins\Web Search.xml
File Deleted : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\searchplugins\Web Search.xml
File Deleted : C:\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eooncjejnppfjjklapaamhcdmjbilmde_0.localstorage
File Deleted : C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ieakfmpjhljbpbfpldjkddkjmmgjmgon
Key Deleted : HKCU\Software\Google\Chrome\Extensions\incfcgceegpikennjoplhfghaaikdgei
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Toolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ToolbarBroker.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\d
Key Deleted : HKLM\SOFTWARE\Classes\delta.deltaappCore
Key Deleted : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Key Deleted : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Key Deleted : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Key Deleted : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Deleted : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Key Deleted : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bho
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\SOFTWARE\Classes\ZGClnt.Mngr
Key Deleted : HKLM\SOFTWARE\Classes\ZGClnt.Mngr.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs [bProtectTabs]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [StartNowToolbarHelper]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKCU\Software\a08bd1b339ec40
Key Deleted : HKLM\SOFTWARE\a08bd1b339ec40
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7E8A36EA-2501-4ED3-A3C8-CFA9143FB169}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{FAA8C612-F1B6-461B-8B60-B54D74D9642E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2316C625-B487-4410-A1A5-FF040B65245F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CBD2A57-2FD5-4F1A-9FC8-90ED48FA4187}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5911488E-9D1E-40EC-8CBB-06B231CC153F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E13D095-45C3-4271-9475-F3B48227DD9F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7C28CEF1-A4A6-4B6A-8B97-C44F1267753C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E65F40C8-3CEB-47C2-9E01-BF73323DF4E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{38BF9661-BDA0-4A74-BB3B-576EC7AE16DC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6857AC4A-95B4-4E2C-B2D2-8A235FCCEF4A}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D8CAF2DF-52D3-42CF-9DDB-F4FF828DB4F8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2316C625-B487-4410-A1A5-FF040B65245F}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E13D095-45C3-4271-9475-F3B48227DD9F}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2316C625-B487-4410-A1A5-FF040B65245F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5911488E-9D1E-40EC-8CBB-06B231CC153F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E13D095-45C3-4271-9475-F3B48227DD9F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5911488E-9D1E-40EC-8CBB-06B231CC153F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6E13D095-45C3-4271-9475-F3B48227DD9F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CBD2A57-2FD5-4F1A-9FC8-90ED48FA4187}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{5911488E-9D1E-40EC-8CBB-06B231CC153F}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Documents and Settings\arie\Local Settings\Application Data\iLivid\iLivid.exe]
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DataMngr
[#] Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\FLEXnet
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\smartbarbackup
Key Deleted : HKCU\Software\smartbarlog
Key Deleted : HKCU\Software\StartNow Toolbar
Key Deleted : HKCU\Software\WebConnect
Key Deleted : HKCU\Software\Zugo
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\StartNow Toolbar
Key Deleted : HKLM\Software\WebConnect
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\StartNow Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebConnect
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG SafeGuard toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Delta Chrome Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Delta
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\StartNow Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WebConnect
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [bProtectTabs]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]

-\\ Mozilla Firefox v26.0 (en-US)

[ File : C:\Documents and Settings\nurit\Application Data\Mozilla\Firefox\Profiles\rwb4n7b7.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.defaultenginename", "Ask.com");
Line Deleted : user_pref("browser.search.order.1", "Ask.com");
Line Deleted : user_pref("browser.search.selectedEngine", "Web Search");
Line Deleted : user_pref("extensions.asktb.ff-original-keyword-url", "");
Line Deleted : user_pref("browser.startup.homepage", "hxxp://feed.snapdo.com/?publisher=QuickOC&dpid=QuickOC&co=US&userid=27ada144-4f5b-4cc7-a3f4-9350e9906578&searchtype=hp&installDate=24/09/2013");
Line Deleted : user_pref("keyword.URL", "hxxp://feed.snapdo.com/?publisher=QuickOC&dpid=QuickOC&co=US&userid=27ada144-4f5b-4cc7-a3f4-9350e9906578&searchtype=ds&installDate=24/09/2013&q=");
Line Deleted : user_pref("browser.newtab.url", "hxxp://feed.snapdo.com/?publisher=QuickOC&dpid=QuickOC&co=US&userid=27ada144-4f5b-4cc7-a3f4-9350e9906578&searchtype=nt&installDate=24/09/2013");

[ File : C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\prefs.js ]

Line Deleted : user_pref("CT2780387..clientLogIsEnabled", false);
Line Deleted : user_pref("CT2780387..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT2780387..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT2780387./9b+7e+x305.from_oldbar.enc", "JH4nQTM0NjN5RTo9KnIseXp+ejEoMztHSVNGLVhNUD0mPy0uMTVEO0ZOT1tWXmlbQm1iZVI7VEJDRklZUFtjfXN7blUhdXhlTmdVVllbbGNudnwmKzB7aTUqLXlie2lqbW4hdyMrNzt0NHxIPSBF[...]
Line Deleted : user_pref("CT2780387./9b+7e,x305.from_oldbar.enc", "JH4oQS8/Pjd5RTo9KnIseXt4fTEoMzxHSEAsV0xPPCU+LC4rL0M6RU5ZUFtXZ2pmQm1iRV5pVD1WREZDRltSXWZxbCFua1h9c2dQaVdZVlhuZXB5MycyfWo2Ky56Y3xqbGlqIngkLUY6PkVGSUxA[...]
Line Deleted : user_pref("CT2780387./9b+7e-x305.from_oldbar.enc", "JH4pMnZBNjk3MzVFOX4/STsvdzF+ICUgNi04QkdKWFFaXFhdUF9ZOWRZXEkySzk6PzlQR1JcQXNoa2llZ3t5b217blUhdXhZJnZoUWpYWV5Xb2ZxezAkMiQ4J205LjFxPi8haSNwcXV4KH4qNDk8[...]
Line Deleted : user_pref("CT2780387./9b+7e/x305.from_oldbar.enc", "JH4rQTU2MnhEOTwpcSt4fHt3MCcyPkxDQ1NOLVhbPCU+LDAuNEM6RVFYYmleZ1pBbGFkUTpTQUVDSFhPWmZte3xxdHJucCF0dFsne35rVG1bX11hcml0IS8nJiY7MXE6KD46QjY+QTR7QDxIeyBN[...]
Line Deleted : user_pref("CT2780387./9b+7e06cg5el8:.from_oldbar.enc", "bm1pbmtxc21ycw==");
Line Deleted : user_pref("CT2780387./9b+7e06cg5el;8i:k.from_oldbar.enc", "JH4tLyJqdHNvdHF3eXN4eSQvS0lHT0I1fV1cPQ==");
Line Deleted : user_pref("CT2780387./9b+7e0x305.from_oldbar.enc", "JH4sQDpAd0M4OyhwKnd8dX0vJjE+QSlVR0hNUVpOWlkyXVJVQitEMjcwN0lAS1heaF5wbm5mdGJuaWtNeG1wXUZfTVJLUWRbZnMje3csKiovJWQwJSh0XXZkaWJne3J9KzZ0OjYyPUBANXxIPUAt[...]
Line Deleted : user_pref("CT2780387./9b+7e1x305.from_oldbar.enc", "JH4tQTE9QDJ5RTo9KnIsend5fjEoM0FHPkVHRUgvWk9SPyhBMC0vM0Y9SFZiZWhca2dfbXBgSHNoa1hBWklGSEtfVmFvfCF9dHR6eCdfKyAjb1hxYF1fYXZteCc3OjYwMio9QXZCNzonbyl3dHZ3[...]
Line Deleted : user_pref("CT2780387./9b+7e2x305.from_oldbar.enc", "JH4uNUIxPT05OntHPD8sdC55IH0yKTRDVlVORy5ZTlEyXk9BKkM1NzIxSD9KWWVfX2JsW3FzaXVpdXRNeG1wUX5rYEliUlBUUWdeaXgoLXx8Yy8kJ3NcdWRmZmh6cXwsO0AwQDx0eDQ9MHxIPUAt[...]
Line Deleted : user_pref("CT2780387./9b+7e31;cjc9gl:loef&qfi.from_oldbar.enc", "JH5hOT8jayV2b3N4dysiLW9CUEVOM3s1UEZUWUdZXFJTM15TVkM6RShlWlVdWFtVTjdQfSFTSlU4dXhmWkNcTVBfVmFzcnYjciZ1aVJxbE98LCB8KzIxdV53YnlwezE+LD46Imo[...]
Line Deleted : user_pref("CT2780387./9b+7e31;cjc<=fbj#ncf.from_oldbar.enc", "JH5hOT8jayV1dndxKiEsbkFPRE0yejRPSElSTlYvWk9SPzZBJFBMVmJHMEk7S0JNMGxib3RxZmlnbHRmdn15eXMgaGFKY1RXWFloX2pNeXokb1hxYHNqdSgnKzcnOip9ZkYnImQyQT[...]
Line Deleted : user_pref("CT2780387./9b+7e31;cjdjihl@af%peh.from_oldbar.enc", "JH5hOT8jayV2cXJyeisiLW9CUEVOM3s1UVdWVVlNTlMyXVJVQjlEJ1NUXUkySzw7TkVQYmFlcWF0ZFhBIWFccX5sfnpiS2plSCAmaVJrKyF+V05KPls1KSV3bnlcKT04fmchIngk[...]
Line Deleted : user_pref("CT2780387./9b+7e3x305.from_oldbar.enc", "JH4vQT87NjM/R0Y/fUk+QS52MH4iJCE1LDdHS1lXS0pIWFhOXjdiVzpTXkkySzo9PztQR1JibGJddXhtdmp8UXxxdGFKY1JVV1JoX2p6LSYsLCR+LzIuaTUqLXlie2ptb2khdyMzQUEzN0hHRz0/[...]
Line Deleted : user_pref("CT2780387./9b+7e4x305.from_oldbar.enc", "JH4wLEB2Qjc6J28pd3t0di4lMEE+T0lKUitVVTojPCsvKClBOENUUV5dVmFfVmhcQm1iZVI7VENGSUpZUFtsaXp+IXAjcHZZJXl8XSp6bFVuXWBjY3NqdSckMTgxNzI2KHM/NDd3RTInbyl3en18[...]
Line Deleted : user_pref("CT2780387./9b+7e5x305.from_oldbar.enc", "JH4xNkIrd0M4OyhwKnl1encvJjFDSz1JVkpQWS5ZTjFKVUApQjIuMy9HPklbXVlaal5YcHJiZ0l0aWxZQltLR0tRYFdidHwkc3N3JiAkICpiLiMmclt0ZGBkaXlwey42PS4uNDR3Qzh6ND8qcix7[...]
Line Deleted : user_pref("CT2780387./9b+7e6x305.from_oldbar.enc", "JH4yLD4yMjI4RT58SD1ALXUvfnskJDQrNklTVFJZWFpaUFJONmFWWUYvSDg1PTxNRE9ibG1rcnFqd2FNeG1wXUZfT0xUUWRbZnl7Jnh4KX4vKS0yMGczKCt3YHlpZm5qfnUhNDZAQ0Y8PXxIPUAt[...]
Line Deleted : user_pref("CT2780387./9b+7e7x305.from_oldbar.enc", "JH4zPSw/Pj95RTo9KnIse3p5ejEoM0dRP0RVWUJMWjFcUVRBKkMzMjA3SD9KXmhWW1lwYG5sZmFkc0x3bG9cRV5OTUtRY1pleSR6KSN4emEtIiVxWnNjYmBleG96Ly8rODg0PEIwMjQ5QzY0SztJ[...]
Line Deleted : user_pref("CT2780387./9b+7e8x305.from_oldbar.enc", "JH40PT87NTc7PzZ8R0csdC5+eCMyKTRJVlVARy5ZTlE+J0AwMjUzRTxHXFVYY2plbmJebGFrcGhzS3ZrbltEXU1PUk9iWWR5J3ZyKnkoYCwhJHBZcmJkZ2J3bnkvNCs8MXM/NHYwOyZuKHd5fHYt[...]
Line Deleted : user_pref("CT2780387./9b+7e9x305.from_oldbar.enc", "JH41Myw/MnhEOTwpcSt7dXl5MCcySExPT0RQTEdUWFxQSDRfVFdELUY3MTU0S0JNY2tdX19zaWtKdWptWkNcTUdLSWFYY3kib3QlKCR5YCwhJHBZcmNdYGh3bnkwOjorKi50QDU4JW0nd3F0eywj[...]
Line Deleted : user_pref("CT2780387./9b+7e:x305.from_oldbar.enc", "JH42Mzs4MnhEOTwpcSt7dnl6MCcySUhVRUQsV0xPPCU+LyotLUM6RVxnVVteP2pfYk84UUI9QD9WTVhvemh4bHFxVCB0d2RNZldSVVNrYm0lfi16ZjInKnZfeGlkZm59dCA3QjIyMkZENXxHRyx0[...]
Line Deleted : user_pref("CT2780387./9b+7e;x305.from_oldbar.enc", "JH43PzM/NzhCL3tHPD8sdC5+enoiMyo1TUYsV0xPPCU+LysrMUM6RV1jVldcXFpBbGFkUTpTREBARVhPWnJzcXp4bSJWInZ5Zk9oWVVVWW1kbygkLCcqMiEwJ205LjF9ZiBwbGxuJXsnPzpIfklJ[...]
Line Deleted : user_pref("CT2780387./9b+7e<x305.from_oldbar.enc", "JH44NDAwRC9GNkQ3fUk+QS52MCF9JCY1LDdQTEdXUUtPRzRfVFdELUY3NDo6S0JNZl5wW2RlcWNKdWptWkNcTUpQT2FYY3xxeSB1JiFfKyAjb1hxYl9lYnZteDIuMCUsODIydUE2OSZuKHh1e3ct[...]
Line Deleted : user_pref("CT2780387./9b+7e=x305.from_oldbar.enc", "JH45MzY/QUE3OTV8SD1ALXUvIH4gIjQrNlBUWVdMVU9RWzRfVFdELUY3Njc4S0JNZ2twbmBvYWZrY2ZNeG1wXUZfUE9QUGRbZiElfHlzemEtIiVxWnNkY2RjeG96NT0yM0A/Oz8zeEQ5PClxK3t6[...]
Line Deleted : user_pref("CT2780387./9b+7e>x305.from_oldbar.enc", "JH46QTY/MjI4OHtHPD8sdC5+ICF8Myo1UE9TRkgvWk9SPyhBMjM0L0Y9SGNcXWZiakNuY2ZTPFVGR0hCWlFcd3B3cyAjcSFZJXl8aVJrXF1dYXBnci4hLiQ4KDg3Lyo6LnM/NDckbCZ2d3d6KyIt[...]
Line Deleted : user_pref("CT2780387./9b+7e?x305.from_oldbar.enc", "JH47LS8vM0E0QDo6fUlMLXUvICMgfjQrNlJQTFJJVVJWUlw1YFVYRS5HODs4NkxDTmpwb19lY11zb2d1eGhMZXBrVCB0d2RNZldaV1RrYm0qIisvJS5oNCkseGF6a25rZyB2Ij5EQkEzNkE8PiBL[...]
Line Deleted : user_pref("CT2780387./9b+7e@x305.from_oldbar.enc", "JH48QEIrd0M4OyhwKnt2fngvJjFOUlQ9KlVKLUZRPCU+MCszLEM6RWJnVlFiWWVfX0NuY0ZfalU+V0lETERcU157IXR8eCF0WiZ6fWpTbF5ZYGJxaHMxNCkmJm05LjF9ZiBxbHN0JXsnRDY5PT9F[...]
Line Deleted : user_pref("CT2780387./9b+7eax305.from_oldbar.enc", "JH49PTc4d0M4OyhwKnt6dX4vJjFPS1JLREVJS0lIVFBYWVJTX1E4Y1hbSDFKPDs2PU9GUW9rbm1jd21odmZQe3BzYEliVFNOVGdeaSgsdCsrMCZlMSYpdV53aWhjaHxzfj0wLj0yMjg2RHxIPUAt[...]
Line Deleted : user_pref("CT2780387./9b+7ebe3g=;d9n9=d.from_oldbar.enc", "NywtMml1di46PHs6OUNKSUhBQ0smUUZJKWVQRlZJZXFzTTNLVw==");
Line Deleted : user_pref("CT2780387./9b+7ebx305.from_oldbar.enc", "JH4+OTFBMD0zRUA2Mn5KP0IvdzF7fSM1LDdWWUlITk9RUlxOTFVTW1RgWlo+aV5hTjdQOz1BVEtWdXVlbXNneW1tfFUhdXhlTmdSVFdrYm0tIiUuIGczKGokL3lie2ZoaiB2IkEvM3lFOj0qcix2[...]
Line Deleted : user_pref("CT2780387./9b+7ecx305.from_oldbar.enc", "JH4/PTAwQzEuekY7PitzLXsgfjEoM1NRVlVRV1pPWExeM15TVkMsRTQ4NklAS2tZVmxoa0ZxZmlWP1hHS0hcU15+bGlWInZ5Zk9oV1tXbGNuLzEhJjAjNio1LCw6MTlxPTI1ImokcnZxKH4qSkE/[...]
Line Deleted : user_pref("CT2780387./9b+7edx305.from_oldbar.enc", "JH5ANUIqNjh5RTo9KnIsfSAvJjFSR1Q8SEosV1o7JD0vL0A3QmNYZU1ZWz1oXUBkX084UUNCVEtWd2x5YW1vUXluYEliVFJlXGcpJnl9fSB8fDEnL2czKCt3YHlraHxzfkA+NDJEOUZ6Rjs+K3Mt[...]
Line Deleted : user_pref("CT2780387./9b+7etx305.from_oldbar.enc", "JH5uLy47MjNCNXtEOStzLXp7e3wyKTQjUkxUV0dKTlBWXUphUV9dV1JVZD1oXWBNNk89Pj49VEtWRUhqc21pb1J9cnViS2RSU1NRaWBrWnt7dyYueWczKCt3YHlnaGdvfnUhcm01Pjg0OnxIPUAt[...]
Line Deleted : user_pref("CT2780387./9b-0?3g>d.from_oldbar.enc", "am9sbUBAcEJ6cHNHRSBHfU0gJXskUFIqI1JUVFkpJS5ZL1tg");
Line Deleted : user_pref("CT2780387./9b-0?3g@6:5;.from_oldbar.enc", "AA==");
Line Deleted : user_pref("CT2780387./9b-0?3gfa7ef.from_oldbar.enc", "Ky4sPQ==");
Line Deleted : user_pref("CT2780387./9b-3=3eccja=f>.from_oldbar.enc", "JH4zPSxFL0E1J28penkgfiIhMCcyP0NKNn44UkdITSUxMk5dUU5cY2I7WVhiaWhnYGJqRXBlaEgraXdxb3d+enB8Uz9+fiVxe3RcKnh8dVAufFUtLm80IVtnZW1sb215MS5lTDs3QjgxNiBd[...]
Line Deleted : user_pref("CT2780387./9b/>01=9a6k6<im;krie@pdawm.from_oldbar.enc", "amlrcnN0dXY=");
Line Deleted : user_pref("CT2780387./9b3=>@44i48?.from_oldbar.enc", "NywtMml1djNCNjNBSEcgPj1HTk1MRUdPKlVKTS1YWFheS1VONmNSVk8=");
Line Deleted : user_pref("CT2780387./9b5ba==9cjag.from_oldbar.enc", "OT5scm9yQHR6c0Z3dHpKTXZ3T08k");
Line Deleted : user_pref("CT2780387./9b6b11g28b8jhhokg>b.from_oldbar.enc", "bm1pbm9scHF0dHBxeg==");
Line Deleted : user_pref("CT2780387./9b6b11g4c56b>f;p;anr@p.from_oldbar.enc", "bm1pbmtxc21ycXJ3eg==");
Line Deleted : user_pref("CT2780387./9b9643g3/9e.from_oldbar.enc", "ag==");
Line Deleted : user_pref("CT2780387./9b;45>:bi9i7ie.from_oldbar.enc", "Ky4sPQ==");
Line Deleted : user_pref("CT2780387./9b<:222h64<.from_oldbar.enc", "OT81Lz4=");
Line Deleted : user_pref("CT2780387./9b<:222h64<l8daj.from_oldbar.enc", "bXBwb3ZzdXl0eCp5d3J6fXUheg==");
Line Deleted : user_pref("CT2780387./9b=+03eh8h8j?:.from_oldbar.enc", "REM=");
Line Deleted : user_pref("CT2780387./9b?+e2a52d8.from_oldbar.enc", "NywtMml1di46PHs6OUNKSUhBQ0smUUZJKWVQRlZkcHJ5UVVeXlI=");
Line Deleted : user_pref("CT2780387./9b?b0d:8aj62<h.from_oldbar.enc", "bQ==");
Line Deleted : user_pref("CT2780387./9ba@0<0bi6a7gn:6@l?.from_oldbar.enc", "bA==");
Line Deleted : user_pref("CT2780387.1000082.isPlayDisplay", "true");
Line Deleted : user_pref("CT2780387.1000082.state", "{\"state\":\"stopped\",\"text\":\"????\\\"?\",\"description\":\"????\\\"?\",\"url\":\"hxxp://radio.glz.co.il:8000/galgalatz\"}");
Line Deleted : user_pref("CT2780387.1000234.TWC_locId", "USCA0987");
Line Deleted : user_pref("CT2780387.1000234.TWC_temp_dis", "c");
Line Deleted : user_pref("CT2780387.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
Line Deleted : user_pref("CT2780387.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Line Deleted : user_pref("CT2780387.BrowserCompStateIsOpen_129785298853016368", true);
Line Deleted : user_pref("CT2780387.BrowserCompStateIsOpen_1367164610000", true);
Line Deleted : user_pref("CT2780387.CT2780387", "CT2780387");
Line Deleted : user_pref("CT2780387.CT2780387.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT2780387&octid=CT2780387&SearchSource=15&CUI=SB_CUI&SSPV=EB_SSPV&Lay=1&UM=UM_I[...]
Line Deleted : user_pref("CT2780387.CT2780387ads1.enc", "JTdCJTIyYWRzJTIyJTNBJTVCJTdCJTIyYWlkJTIyJTNBJTIyMTIzMjczJTIyJTJDJTIydGl0bGUlMjIlM0ElMjIldTAyREIldTIwMjIqJTIwJTI4RnJlZSUyOSUyMFNpbmdsZXMlMjBMaXZlJTIwQ2hhdCUyMC[...]
Line Deleted : user_pref("CT2780387.CT2780387current_term.enc", "");
Line Deleted : user_pref("CT2780387.CT2780387isAdsDisabled", "%EC%E7%F2%F9%EB");
Line Deleted : user_pref("CT2780387.CT2780387isAdsDisabled.enc", "ZmFsc2U=");
Line Deleted : user_pref("CT2780387.CT2780387sdate.enc", "Mw==");
Line Deleted : user_pref("CT2780387.ConfigurationLastCheckTime", "Mon Nov 18 2013 19:56:02 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.CurrentServerDate", "19-11-2013");
Line Deleted : user_pref("CT2780387.DSInstall", true);
Line Deleted : user_pref("CT2780387.DialogsAlignMode", "RTL");
Line Deleted : user_pref("CT2780387.DialogsGetterLastCheckTime", "Wed Nov 13 2013 07:24:09 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.DownloadReferralCookieData", "");
Line Deleted : user_pref("CT2780387.EMailNotifierPollDate", "Tue Nov 19 2013 07:16:22 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2780387.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2780387.FirstServerDate", "30-10-2013");
Line Deleted : user_pref("CT2780387.FirstTime", true);
Line Deleted : user_pref("CT2780387.FirstTimeFF3", true);
Line Deleted : user_pref("CT2780387.FirstTimeHiddenVer", true);
Line Deleted : user_pref("CT2780387.FixPageNotFoundErrors", true);
Line Deleted : user_pref("CT2780387.GroupingServerCheckInterval", 1440);
Line Deleted : user_pref("CT2780387.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Line Deleted : user_pref("CT2780387.HPChangedManually", false);
Line Deleted : user_pref("CT2780387.HPInstall", true);
Line Deleted : user_pref("CT2780387.HasUserGlobalKeys", true);
Line Deleted : user_pref("CT2780387.HomePageProtectorEnabled", false);
Line Deleted : user_pref("CT2780387.HomepageBeforeUnload", "hxxp://www.yahoo.com/|hxxp://www.yahoo.com/");
Line Deleted : user_pref("CT2780387.Initialize", true);
Line Deleted : user_pref("CT2780387.InitializeCommonPrefs", true);
Line Deleted : user_pref("CT2780387.InstallationAndCookieDataSentCount", 3);
Line Deleted : user_pref("CT2780387.InstallationType", "Unknown");
Line Deleted : user_pref("CT2780387.InstalledDate", "Wed Oct 30 2013 07:30:50 GMT-0700 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.InvalidateCache", false);
Line Deleted : user_pref("CT2780387.IsAlertDBUpdated", true);
Line Deleted : user_pref("CT2780387.IsGrouping", false);
Line Deleted : user_pref("CT2780387.IsInitSetupIni", true);
Line Deleted : user_pref("CT2780387.IsMulticommunity", false);
Line Deleted : user_pref("CT2780387.IsOpenThankYouPage", true);
Line Deleted : user_pref("CT2780387.IsOpenUninstallPage", true);
Line Deleted : user_pref("CT2780387.IsProtectorsInit", true);
Line Deleted : user_pref("CT2780387.LanguagePackLastCheckTime", "Mon Nov 18 2013 19:56:03 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.LanguagePackReloadIntervalMM", 1440);
Line Deleted : user_pref("CT2780387.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Line Deleted : user_pref("CT2780387.LastLogin_3.20.0.4", "Tue Nov 19 2013 07:02:17 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.LatestVersion", "3.20.0.4");
Line Deleted : user_pref("CT2780387.Locale", "he-il");
Line Deleted : user_pref("CT2780387.MCDetectTooltipHeight", "83");
Line Deleted : user_pref("CT2780387.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Line Deleted : user_pref("CT2780387.MCDetectTooltipWidth", "295");
Line Deleted : user_pref("CT2780387.MyStuffEnabledAtInstallation", true);
Line Deleted : user_pref("CT2780387.OriginalFirstVersion", "3.20.0.4");
Line Deleted : user_pref("CT2780387.RadioIsPodcast", false);
Line Deleted : user_pref("CT2780387.RadioLastCheckTime", "Mon Nov 18 2013 19:56:23 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.RadioLastUpdateIPServer", "0");
Line Deleted : user_pref("CT2780387.RadioLastUpdateServer", "129978911739230000");
Line Deleted : user_pref("CT2780387.RadioMediaID", "21427990");
Line Deleted : user_pref("CT2780387.RadioMediaType", "Media Player");
Line Deleted : user_pref("CT2780387.RadioMenuSelectedID", "EBRadioMenu_CT278038721427990");
Line Deleted : user_pref("CT2780387.RadioShrinkedFromSetup", false);
Line Deleted : user_pref("CT2780387.RadioStationName", "%D7%92%D7%9C%D7%92%D7%9C''%D7%A6%20");
Line Deleted : user_pref("CT2780387.RadioStationURL", "hxxp://radio.glz.co.il:8000/galgalatz");
Line Deleted : user_pref("CT2780387.SavedHomepage", "hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13");
Line Deleted : user_pref("CT2780387.SearchAPILastCheckTime", "Mon Nov 18 2013 19:56:01 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.SearchCaption", "isradiobar Customized Web Search");
Line Deleted : user_pref("CT2780387.SearchEngineBeforeUnload", "isradiobar Customized Web Search");
Line Deleted : user_pref("CT2780387.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("CT2780387.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2780387&SearchSource=2&CUI=SB_CUI&UM=UM_ID&q=");
Line Deleted : user_pref("CT2780387.SearchInNewTabEnabled", true);
Line Deleted : user_pref("CT2780387.SearchInNewTabIntervalMM", 1440);
Line Deleted : user_pref("CT2780387.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
Line Deleted : user_pref("CT2780387.SearchInNewTabURLFromSearchAPI", "hxxp://search.conduit.com/?ctid=CT2780387&octid=CT2780387&SearchSource=15&CUI=SB_CUI&SSPV=EB_SSPV&Lay=1&UM=UM_ID");
Line Deleted : user_pref("CT2780387.SearchProtectorEnabled", true);
Line Deleted : user_pref("CT2780387.SearchProtectorToolbarDisabled", false);
Line Deleted : user_pref("CT2780387.SendProtectorDataViaLogin", true);
Line Deleted : user_pref("CT2780387.ServiceMapLastCheckTime", "Mon Nov 18 2013 19:56:01 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.SettingsLastCheckTime", "Mon Nov 18 2013 19:02:12 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.SettingsLastUpdate", "1384764965");
Line Deleted : user_pref("CT2780387.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13");
Line Deleted : user_pref("CT2780387.ThirdPartyComponentsInterval", 504);
Line Deleted : user_pref("CT2780387.ThirdPartyComponentsLastCheck", "Wed Oct 30 2013 07:30:34 GMT-0700 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.ThirdPartyComponentsLastUpdate", "1331806002");
Line Deleted : user_pref("CT2780387.ToolbarShrinkedFromSetup", false);
Line Deleted : user_pref("CT2780387.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCity[...]
Line Deleted : user_pref("CT2780387.UserID", "UN36278143559559695");
Line Deleted : user_pref("CT2780387.ValidationData_Toolbar", 2);
Line Deleted : user_pref("CT2780387.WeatherNetwork", "");
Line Deleted : user_pref("CT2780387.WeatherPollDate", "Tue Nov 19 2013 07:05:25 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.WeatherUnit", "C");
Line Deleted : user_pref("CT2780387._9b90e_.3c;7b=?ofb>>rhiqs.from_oldbar.enc", "OT81Lz4=");
Line Deleted : user_pref("CT2780387._9b_7e.:2z527.from_oldbar.enc", "JH5ANUIqNjh5RTp8NkEsdC4gITEoM1RJVj5KTC5YWD0mPy4yQkc=");
Line Deleted : user_pref("CT2780387._9b_7e.x305.from_oldbar.enc", "JH4qQTc3RDQzekY7PitzLXp9fCEyKTQ/VkZUUkxHSllaSFFQXlFSOWRZXEkySzk8Oz5QR1JdbGprb3htaFBqb3FxdCJWInZ5Zk9oVllYWm1kb3p7Mn1oNCkseGF6aGtqayB2Ii1AOjNGQD5HfklJ[...]
Line Deleted : user_pref("CT2780387._key_cl_active.from_oldbar.enc", "MmU3ZGRhMDMtNDY0NS00NjU1LThlZDgtYzIxNzIzOWU2Yjg5");
Line Deleted : user_pref("CT2780387.acp_personal.appstate.from_oldbar.enc", "ZW5hYmxl");
Line Deleted : user_pref("CT2780387.addressBarTakeOverEnabledInHidden", "true");
Line Deleted : user_pref("CT2780387.alertChannelId", "1172478");
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e+x305", "247E27413334363379453A3D2A722C797A7E7A3128333B474953462D584D503D263F2D2E3135443B464E4F5B565E695B426D6265523B544243464959505B637D737B6E55217578654E675[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e,x305", "247E28412F3F3E3779453A3D2A722C797B787D3128333C4748402C574C4F3C253E2C2E2B2F433A454E59505B57676A66426D62455E69543D56444643465B525D66716C216E6B587D73675[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e-x305", "247E29327641363937333545397E3F493B2F77317E202520362D3842474A58515A5C585D505F593964595C49324B393A3F395047525C4173686B6965677B796F6D7B6E552175785926766[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e.:2z527", "247E4035422A363879453A7C36412C742E20213128335449563E4A4C2E58583D263F2E324247");
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e.x305", "247E2A4137374434337A463B3E2B732D7A7D7C213229343F564654524C474A595A4851505E51523964595C49324B393C3B3E5047525D6C6A6B6F786D68506A6F7171742256227679664F6[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e/x305", "247E2B413536327844393C29712B787C7B773027323E4C4343534E2D585B3C253E2C302E34433A45515862695E675A416C6164513A5341454348584F5A666D7B7C7174726E702174745B2[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e06cg5el8:", "6E6D696E6B71736D7273");
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A74736F74717779737879242F4B49474F42357D5D5C3D");
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e0x305", "247E2C403A407743383B28702A777C757D2F26313E41295547484D515A4E5A59325D5255422B443237303749404B585E685E706E6E6674626E696B4D786D705D465F4D524B51645B66732[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e1x305", "247E2D41313D403279453A3D2A722C7A77797E31283341473E454745482F5A4F523F2841302D2F33463D48566265685C6B675F6D70604873686B58415A4946484B5F56616F7C217D74747[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e2x305", "247E2E3542313D3D393A7B473C3F2C742E79207D3229344356554E472E594E51325E4F412A4335373231483F4A59655F5F626C5B717369756975744D786D70517E6B60496252505451675[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e31;cjc9gl:loef&qfi", "247E61393F236B25766F7378772B222D6F4250454E337B355046545947595C5253335E5356433A4528655A555D585B554E37507D21534A55387578665A435C4D505F5661[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e31;cjc<=fbj#ncf", "247E61393F236B25757677712A212C6E414F444D327A344F4849524E562F5A4F523F364124504C56624730493B4B424D306C626F74716669676C7466767D7979732068614A6[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e31;cjdjihl@af%peh", "247E61393F236B25767172727A2B222D6F4250454E337B3551575655594D4E53325D52554239442753545D49324B3C3B4E455062616571617464584121615C717E6C7E7A6[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e3x305", "247E2F413F3B36333F47463F7D493E412E76307E222421352C37474B59574B4A4858584E5E3762573A535E49324B3A3D3F3B504752626C625D75786D766A7C517C7174614A63525557526[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e4x305", "247E302C407642373A276F29777B74762E2530413E4F494A522B55553A233C2B2F282941384354515E5D56615F56685C426D6265523B544346494A59505B6C697A7E21702370765925797[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e5x305", "247E3136422B7743383B28702A79757A772F2631434B3D49564A50592E594E314A55402942322E332F473E495B5D595A6A5E58707262674974696C59425B4B474B51605762747C2473737[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e6x305", "247E322C3E32323238453E7C483D402D752F7E7B2424342B364953545259585A5A50524E36615659462F4838353D3C4D444F626C6D6B72716A77614D786D705D465F4F4C5451645B66797[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e7x305", "247E333D2C3F3E3F79453A3D2A722C7B7A797A31283347513F445559424C5A315C5154412A4333323037483F4A5E68565B5970606E6C666164734C776C6F5C455E4E4D4B51635A6579247[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e8x305", "247E343D3F3B35373B3F367C47472C742E7E782332293449565540472E594E513E274030323533453C475C5558636A656E625E6C616B7068734B766B6E5B445D4D4F524F6259647927767[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e9x305", "247E35332C3F327844393C29712B7B757979302732484C4F4F44504C4754585C5048345F5457442D46373135344B424D636B5D5F5F73696B4A756A6D5A435C4D474B4961586379226F742[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e:x305", "247E36333B38327844393C29712B7B76797A30273249485545442C574C4F3C253E2F2A2D2D433A455C67555B5E3F6A5F624F3851423D403F564D586F7A68786C717154207477644D66575[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e;x305", "247E373F333F3738422F7B473C3F2C742E7E7A7A22332A354D462C574C4F3C253E2F2B2B31433A455D6356575C5C5A416C6164513A5344404045584F5A7273717A786D2256227679664F6[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e<x305", "247E38343030442F463644377D493E412E7630217D2426352C37504C4757514B4F47345F5457442D4637343A3A4B424D665E705B646571634A756A6D5A435C4D4A504F6158637C7179207[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e=x305", "247E3933363F41413739357C483D402D752F207E2022342B36505459574C554F515B345F5457442D46373637384B424D676B706E606F61666B63664D786D705D465F504F5050645B66212[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e>x305", "247E3A41363F323238387B473C3F2C742E7E20217C332A35504F5346482F5A4F523F28413233342F463D48635C5D66626A436E6366533C55464748425A515C77707773202371215925797[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e?x305", "247E3B2D2F2F334134403A3A7D494C2D752F2023207E342B3652504C5249555256525C35605558452E47383B38364C434E6A706F5F65635D736F677578684C65706B54207477644D66575[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7e@x305", "247E3C40422B7743383B28702A7B767E782F26314E52543D2A554A2D46513C253E302B332C433A45626756516259655F5F436E63465F6A553E5749444C445C535E7B21747C7821745A267[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7eax305", "247E3D3D37387743383B28702A7B7A757E2F26314F4B524B4445494B49485450585952535F513863585B48314A3C3B363D4F46516F6B6E6D63776D687666507B707360496254534E54675[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7ebe3g=;d9n9=d", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57");
Line Deleted : user_pref("CT2780387.backendstorage./9b+7ebx305", "247E3E393141303D33454036327E4A3F422F77317B7D23352C37565949484E4F51525C4E4C55535B54605A5A3E695E614E37503B3D41544B567575656D7367796D6D7C55217578654E675[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7ecx305", "247E3F3D303043312E7A463B3E2B732D7B207E3128335351565551575A4F584C5E335E5356432C4534383649404B6B59566C686B46716669563F58474B485C535E7E6C6956227679664F6[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7edx305", "247E4035422A363879453A3D2A722C7D202F26315247543C484A2C575A3B243D2F2F4037426358654D595B3D685D40645F4F38514342544B56776C79616D6F51796E6049625452655C672[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b+7etx305", "247E6E2F2E3B323342357B44392B732D7A7B7B7C32293423524C5457474A4E50565D4A61515F5D575255643D685D604D364F3D3E3E3D544B5645486A736D696F527D7275624B645253535[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b-0?3g>d", "6A6F6C6D404070427A7073474520477D4D20257B2450522A235254545929252E592F5B60");
Line Deleted : user_pref("CT2780387.backendstorage./9b-0?3g@6:5;", "");
Line Deleted : user_pref("CT2780387.backendstorage./9b-0?3gfa7ef", "2B2E2C3D");
Line Deleted : user_pref("CT2780387.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F297A79207E22213027323F434A367E385247484D2531324E5D514E5C63623B59586269686760626A45706568482B6977716F777E7A707C533F7E7E25717[...]
Line Deleted : user_pref("CT2780387.backendstorage./9b/>01=9a6k6<im;krie@pdawm", "6A696B7273747576");
Line Deleted : user_pref("CT2780387.backendstorage./9b3=>@44i48?", "372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F");
Line Deleted : user_pref("CT2780387.backendstorage./9b5ba==9cjag", "393E6C726F7240747A734677747A4A4D76774F4F24");
Line Deleted : user_pref("CT2780387.backendstorage./9b6b11g28b8jhhokg>b", "6E6D696E6F6C7071747470717A");
Line Deleted : user_pref("CT2780387.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D696E6B71736D727172777A");
Line Deleted : user_pref("CT2780387.backendstorage./9b90e@.3c;7b=?ofb>>rhiqs", "393F352F3E");
Line Deleted : user_pref("CT2780387.backendstorage./9b9643g3/9e", "6A");
Line Deleted : user_pref("CT2780387.backendstorage./9b;45>:bi9i7ie", "2B2E2C3D");
Line Deleted : user_pref("CT2780387.backendstorage./9b<:222h64<", "393F352F3E");
Line Deleted : user_pref("CT2780387.backendstorage./9b<:222h64<l8daj", "6D70706F7673757974782A7977727A7D75217A");
Line Deleted : user_pref("CT2780387.backendstorage./9b=+03eh8h8j?:", "4443");
Line Deleted : user_pref("CT2780387.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
Line Deleted : user_pref("CT2780387.backendstorage./9b?b0d:8aj62<h", "6D");
Line Deleted : user_pref("CT2780387.backendstorage./9ba@0<0bi6a7gn:6@l?", "6C");
Line Deleted : user_pref("CT2780387.backendstorage._key_cl_active", "32653764646130332D343634352D343635352D386564382D633231373233396536623839");
Line Deleted : user_pref("CT2780387.backendstorage.acp_personal.appstate", "656E61626C65");
Line Deleted : user_pref("CT2780387.backendstorage.cb_experience_000", "39");
Line Deleted : user_pref("CT2780387.backendstorage.cb_firstuse0100", "31");
Line Deleted : user_pref("CT2780387.backendstorage.cb_user_id_000", "43423132343136323331353031325F313338343031373430333035365F46697265666F78");
Line Deleted : user_pref("CT2780387.backendstorage.cbfirsttime", "576564204F637420333020323031332030373A33313A303720474D542D30373030202850616369666963205374616E646172642054696D6529");
Line Deleted : user_pref("CT2780387.backendstorage.ct2780387ads1", "2537422532326164732532322533412535422537422532326169642532322533412532323132333639322532322532432532327469746C6525323225334125323254686572652532377[...]
Line Deleted : user_pref("CT2780387.backendstorage.ct2780387current_term", "");
Line Deleted : user_pref("CT2780387.backendstorage.ct2780387isadsdisabled", "66616C7365");
Line Deleted : user_pref("CT2780387.backendstorage.ct2780387sdate", "3139");
Line Deleted : user_pref("CT2780387.backendstorage.discover-experiments-photopop", "7B226E616D65223A2270686F746F706F705F6E61222C2276657273696F6E223A31307D");
Line Deleted : user_pref("CT2780387.backendstorage.discover-periodic-reports", "7B2270696E675F30223A5B313338343836353732333133302C31343430303030305D7D");
Line Deleted : user_pref("CT2780387.backendstorage.discover-user-id", "2263663861343065642D613538612D346636652D623333352D66636533623833363634626222");
Line Deleted : user_pref("CT2780387.backendstorage.ground-country-code", "22555322");
Line Deleted : user_pref("CT2780387.backendstorage.hover_counter", "31");
Line Deleted : user_pref("CT2780387.backendstorage.impression_counter", "3531");
Line Deleted : user_pref("CT2780387.backendstorage.impression_session_counter", "3439");
Line Deleted : user_pref("CT2780387.backendstorage.impression_session_id", "2230326333336564632D663661632D343264642D623330342D36633264623234636137666622");
Line Deleted : user_pref("CT2780387.backendstorage.impression_session_last_active", "31333834383333333239353036");
Line Deleted : user_pref("CT2780387.backendstorage.last_client_stats_submit_2", "31333833313933313532");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_last_submit_6", "31333833363235363432");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_site_irrelevant", "31");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_site_new", "30");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_site_not_supported", "30");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_site_supported", "3132");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_use_history", "30");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_use_pop", "30");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_use_related", "30");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_stats_stats_use_typed", "30");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_throttle_baseadd_stats|0|local_cookie_stats_stats_site_irrelevant", "31333833363237373531");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_throttle_baseadd_stats|0|local_cookie_stats_stats_site_supported", "31333833363237383431");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_throttle_baseadd_stats|local_cookie_stats_stats_use_typed", "31333833343936373736");
Line Deleted : user_pref("CT2780387.backendstorage.local_cookie_throttle_baseloopback|hxxp://up.autocompleteplus.com/up?q=qcom&l=quote-stocks.com&t=2&v=0.51&d=conduit2", "31333833343936373131");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appsconfig", "7B2241707073436F6E66696775726174696F6E223A5B7B226964223A22436C61726974795F416374697665222C2275726C223A22687474703A2F2F73746F726167652E636F6E647[...]
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appsdefaultenabled", "6E756C6C");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_acplus", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_clarity_active", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_couponbuddy", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_discover", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_easytobook", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_easytobook_targeted", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_easytobookcars", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_find-a-pro", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_jobsminer", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_piclickv2-websearch", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_pricegong", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstate_windowshopper", "6F6E");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_appstatereporttime", "31333834383733333632333634");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_calledsetupservice", "31");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_currentbadgevalue", "31");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_currentversion", "312E31312E342E32");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_eventscache", "7B2262373461306239612D633161382D346138342D616137632D353662616339363462623635223A7B22746F706963223A2273686F774261646765222C2264617461223A22222C[...]
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_existingusersrecoverydone", "31");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_first_time", "31");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_globalkeysmigratedtolocalstorage", "31");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_lastlogintime", "31333834383733333634323336");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_localization", "7B226469616C6F674F4B223A7B2254657874223A224F4B227D2C22646D626F7831223A7B2254657874223A224465616C5C725C6E6F662074686520646179227D2C22646D626F7[...]
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_mamenabled", "74727565");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_new_welcome_experience", "31");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_newapps", "5B5D");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_settings1.10.4.0", "7B22537461747573223A22737563636565646564222C2244617461223A7B2263757272656E7444617465223A223230313331313033222C22696E74657276616C223A32343[...]
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_settings1.11.4.2", "7B22537461747573223A22737563636565646564222C2244617461223A7B2263757272656E7444617465223A223230313331313139222C22696E74657276616C223A32343[...]
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_showwelcomegadget", "66616C7365");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_stamp", "313034335F30");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_user_approval_interacted", "31");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_userid", "31363132313363302D656339662D343938322D623632632D633338396462343132366564");
Line Deleted : user_pref("CT2780387.backendstorage.mam_gk_welcomedialogmode", "31");
Line Deleted : user_pref("CT2780387.backendstorage.pg_enable", "74727565");
Line Deleted : user_pref("CT2780387.backendstorage.rematch_agent_dups", "7B22687474703A2F2F66696E616E63652E7961686F6F2E636F6D2F713F733D51434F4D223A313338333439363738373035327D");
Line Deleted : user_pref("CT2780387.backendstorage.rematchagent-periodic-reports", "7B2270696E675F30223A5B313338333439363735313339312C31343430303030305D7D");
Line Deleted : user_pref("CT2780387.backendstorage.rematchagent-user-id", "2232393566303635312D313464622D343534632D383563652D61613230316335306436373422");
Line Deleted : user_pref("CT2780387.backendstorage.rematchground-country-code", "22555322");
Line Deleted : user_pref("CT2780387.backendstorage.response_cache", "7B226368616E6E656C223A7B226C696E6B223A22687474703A2F2F7777772E7961686F6F2E636F6D2F222C226465736372697074696F6E223A2254727566666C657320427920436F6E[...]
Line Deleted : user_pref("CT2780387.backendstorage.sf_just_installed", "46414C5345");
Line Deleted : user_pref("CT2780387.backendstorage.sf_status", "454E41424C4544");
Line Deleted : user_pref("CT2780387.backendstorage.sf_user_id", "6369645F33303130323031333733313635383737343430");
Line Deleted : user_pref("CT2780387.backendstorage.url_history0001", "687474703A2F2F7777772E6861617265747A2E636F2E696C2F626C6F67732F6D69736761762F2E7072656D69756D2D312E323136373332353A3A3A636C69636B68616E646C65723A3[...]
Line Deleted : user_pref("CT2780387.cb_experience_000.from_oldbar.enc", "OQ==");
Line Deleted : user_pref("CT2780387.cb_firstuse0100.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.cb_user_id_000.from_oldbar.enc", "Q0IxMjQxNjIzMTUwMTJfMTM4NDAxNzQwMzA1Nl9GaXJlZm94");
Line Deleted : user_pref("CT2780387.cbfirsttime.from_oldbar.enc", "V2VkIE9jdCAzMCAyMDEzIDA3OjMxOjA3IEdNVC0wNzAwIChQYWNpZmljIFN0YW5kYXJkIFRpbWUp");
Line Deleted : user_pref("CT2780387.components.1000034", true);
Line Deleted : user_pref("CT2780387.components.1000234", true);
Line Deleted : user_pref("CT2780387.countryCode", "US");
Line Deleted : user_pref("CT2780387.ct2780387ads1.from_oldbar.enc", "JTdCJTIyYWRzJTIyJTNBJTVCJTdCJTIyYWlkJTIyJTNBJTIyMTIzNjkyJTIyJTJDJTIydGl0bGUlMjIlM0ElMjJUaGVyZSUyN3MlMjgxJTI5JTIwaVBob25lJTIwV2FpdGluZyUyMiUyQyUyMm[...]
Line Deleted : user_pref("CT2780387.ct2780387current_term.from_oldbar.enc", "AA==");
Line Deleted : user_pref("CT2780387.ct2780387sdate.from_oldbar.enc", "MTk=");
Line Deleted : user_pref("CT2780387.discover-experiments-photopop.from_oldbar.enc", "eyJuYW1lIjoicGhvdG9wb3BfbmEiLCJ2ZXJzaW9uIjoxMH0=");
Line Deleted : user_pref("CT2780387.discover-periodic-reports.from_oldbar.enc", "eyJwaW5nXzAiOlsxMzg0ODY1NzIzMTMwLDE0NDAwMDAwXX0=");
Line Deleted : user_pref("CT2780387.discover-user-id.from_oldbar.enc", "ImNmOGE0MGVkLWE1OGEtNGY2ZS1iMzM1LWZjZTNiODM2NjRiYiI=");
Line Deleted : user_pref("CT2780387.embeddedsData", "[{\"appId\":\"129291227456956988\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"getSearchTerm\":true,\"insta[...]
Line Deleted : user_pref("CT2780387.enableAlerts", "always");
Line Deleted : user_pref("CT2780387.firstTimeDialogOpened", true);
Line Deleted : user_pref("CT2780387.fixPageNotFoundErrorByUser", "TRUE");
Line Deleted : user_pref("CT2780387.fixPageNotFoundErrorInHidden", "true");
Line Deleted : user_pref("CT2780387.fullUserID", "UN36278143559559695.UP.2087");
Line Deleted : user_pref("CT2780387.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
Line Deleted : user_pref("CT2780387.globalFirstTimeInfoLastCheckTime", "Sat Nov 09 2013 08:21:01 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.ground-country-code.from_oldbar.enc", "IlVTIg==");
Line Deleted : user_pref("CT2780387.homepageProtectorEnableByLogin", true);
Line Deleted : user_pref("CT2780387.hover_counter.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.impression_counter.from_oldbar.enc", "NTE=");
Line Deleted : user_pref("CT2780387.impression_session_counter.from_oldbar.enc", "NDk=");
Line Deleted : user_pref("CT2780387.impression_session_id.from_oldbar.enc", "IjAyYzMzZWRjLWY2YWMtNDJkZC1iMzA0LTZjMmRiMjRjYTdmZiI=");
Line Deleted : user_pref("CT2780387.impression_session_last_active.from_oldbar.enc", "MTM4NDgzMzMyOTUwNg==");
Line Deleted : user_pref("CT2780387.initDone", true);
Line Deleted : user_pref("CT2780387.installType", "Unknown");
Line Deleted : user_pref("CT2780387.isAppTrackingManagerOn", false);
Line Deleted : user_pref("CT2780387.isCheckedStartAsHidden", true);
Line Deleted : user_pref("CT2780387.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2780387.isFirstRadioInstallation", false);
Line Deleted : user_pref("CT2780387.isFirstTimeToolbarLoading", "false");
Line Deleted : user_pref("CT2780387.isPerformedSmartBarTransition", "true");
Line Deleted : user_pref("CT2780387.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Deleted : user_pref("CT2780387.keyword", true);
Line Deleted : user_pref("CT2780387.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT2780387&octid=CT2780387&SearchSource=15&CUI=UN36278143559559695&SSPV=&Lay=1&UM=UM_ID\"}[...]
Line Deleted : user_pref("CT2780387.lastVersion", "10.23.0.822");
Line Deleted : user_pref("CT2780387.last_client_stats_submit_2.from_oldbar.enc", "MTM4MzE5MzE1Mg==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_last_submit_6.from_oldbar.enc", "MTM4MzYyNTY0Mg==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_site_irrelevant.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_site_new.from_oldbar.enc", "MA==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_site_not_supported.from_oldbar.enc", "MA==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_site_supported.from_oldbar.enc", "MTI=");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_use_history.from_oldbar.enc", "MA==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_use_pop.from_oldbar.enc", "MA==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_use_related.from_oldbar.enc", "MA==");
Line Deleted : user_pref("CT2780387.local_cookie_stats_stats_use_typed.from_oldbar.enc", "MA==");
Line Deleted : user_pref("CT2780387.local_cookie_throttle_baseadd_stats|0|local_cookie_stats_stats_site_irrelevant.from_oldbar.enc", "MTM4MzYyNzc1MQ==");
Line Deleted : user_pref("CT2780387.local_cookie_throttle_baseadd_stats|0|local_cookie_stats_stats_site_supported.from_oldbar.enc", "MTM4MzYyNzg0MQ==");
Line Deleted : user_pref("CT2780387.local_cookie_throttle_baseadd_stats|local_cookie_stats_stats_use_typed.from_oldbar.enc", "MTM4MzQ5Njc3Ng==");
Line Deleted : user_pref("CT2780387.mam_gk_appsconfig.from_oldbar.enc", "eyJBcHBzQ29uZmlndXJhdGlvbiI6W3siaWQiOiJDbGFyaXR5X0FjdGl2ZSIsInVybCI6Imh0dHA6Ly9zdG9yYWdlLmNvbmR1aXQuY29tL21hbS8zcmRwYXJ0eWFwcHMvY2xhcml0eVJheS[...]
Line Deleted : user_pref("CT2780387.mam_gk_appsdefaultenabled.from_oldbar.enc", "bnVsbA==");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_acplus.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_clarity_active.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_couponbuddy.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_discover.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_easytobook.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_easytobook_targeted.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_easytobookcars.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_find-a-pro.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_jobsminer.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_piclickv2-websearch.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_pricegong.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstate_windowshopper.from_oldbar.enc", "b24=");
Line Deleted : user_pref("CT2780387.mam_gk_appstatereporttime.from_oldbar.enc", "MTM4NDg3MzM2MjM2NA==");
Line Deleted : user_pref("CT2780387.mam_gk_calledsetupservice.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.mam_gk_currentVersion", "%B7%B4%B7%B7%B4%BA%B4%B8");
Line Deleted : user_pref("CT2780387.mam_gk_currentVersion.enc", "MS4xMS40LjI=");
Line Deleted : user_pref("CT2780387.mam_gk_currentbadgevalue.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.mam_gk_currentversion.from_oldbar.enc", "MS4xMS40LjI=");
Line Deleted : user_pref("CT2780387.mam_gk_eventscache.from_oldbar.enc", "eyJiNzRhMGI5YS1jMWE4LTRhODQtYWE3Yy01NmJhYzk2NGJiNjUiOnsidG9waWMiOiJzaG93QmFkZ2UiLCJkYXRhIjoiIiwidW5pcXVlSWQiOiJiNzRhMGI5YS1jMWE4LTRhODQtYWE3Y[...]
Line Deleted : user_pref("CT2780387.mam_gk_existingusersrecoverydone.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.mam_gk_first_time.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.mam_gk_globalKeysMigratedToLocalStorage", "%B7");
Line Deleted : user_pref("CT2780387.mam_gk_globalKeysMigratedToLocalStorage.enc", "MQ==");
Line Deleted : user_pref("CT2780387.mam_gk_lastlogintime.from_oldbar.enc", "MTM4NDg3MzM2NDIzNg==");
Line Deleted : user_pref("CT2780387.mam_gk_localization.from_oldbar.enc", "eyJkaWFsb2dPSyI6eyJUZXh0IjoiT0sifSwiZG1ib3gxIjp7IlRleHQiOiJEZWFsXHJcbm9mIHRoZSBkYXkifSwiZG1ib3gyIjp7IlRleHQiOiJGcmVlXHJcblNoaXBtZW50In0sImRt[...]
Line Deleted : user_pref("CT2780387.mam_gk_mamenabled.from_oldbar.enc", "dHJ1ZQ==");
Line Deleted : user_pref("CT2780387.mam_gk_new_welcome_experience.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.mam_gk_newapps.from_oldbar.enc", "W10=");
Line Deleted : user_pref("CT2780387.mam_gk_pgUnloadedOnce", "%FA%F8%FB%EB");
Line Deleted : user_pref("CT2780387.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
Line Deleted : user_pref("CT2780387.mam_gk_settings1.11.4.2", "ā%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%EB%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%E7%A8%C0ā%A8%E9%FB%F8%F8%EB%F4%FA%CA%E7%FA%EB%A8%C0%A8%B8%B6%B7%B[...]
Line Deleted : user_pref("CT2780387.mam_gk_settings1.11.4.2.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImN1cnJlbnREYXRlIjoiMjAxMzExMTkiLCJpbnRlcnZhbCI6MjQwLCJzdGFtcCI6IjEwNDNfMCIsImlzVGVzdCI6dHJ1ZSwiVXNlckNvdW50[...]
Line Deleted : user_pref("CT2780387.mam_gk_showwelcomegadget.from_oldbar.enc", "ZmFsc2U=");
Line Deleted : user_pref("CT2780387.mam_gk_stamp.from_oldbar.enc", "MTA0M18w");
Line Deleted : user_pref("CT2780387.mam_gk_user_approval_interacted.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.mam_gk_userid.from_oldbar.enc", "MTYxMjEzYzAtZWM5Zi00OTgyLWI2MmMtYzM4OWRiNDEyNmVk");
Line Deleted : user_pref("CT2780387.mam_gk_welcomedialogmode.from_oldbar.enc", "MQ==");
Line Deleted : user_pref("CT2780387.myStuffEnabled", true);
Line Deleted : user_pref("CT2780387.myStuffPublihserMinWidth", 400);
Line Deleted : user_pref("CT2780387.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT2780387.myStuffServiceIntervalMM", 1440);
Line Deleted : user_pref("CT2780387.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Line Deleted : user_pref("CT2780387.navigateToUrlOnSearch", false);
Line Deleted : user_pref("CT2780387.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fwww.themarker.com%2Fmarkerweek%2F1.2201066\",\"EB_MAIN_FRAME_TITLE\":\"%D7%96%D7%9C%D7%99%D7[...]
Line Deleted : user_pref("CT2780387.originalHomepage", "hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13");
Line Deleted : user_pref("CT2780387.originalSearchAddressUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2780387&SearchSource=2&CUI=SB_CUI&UM=UM_ID&q=");
Line Deleted : user_pref("CT2780387.originalSearchEngine", "isradiobar Customized Web Search");
Line Deleted : user_pref("CT2780387.pg_enable.from_oldbar.enc", "dHJ1ZQ==");
Line Deleted : user_pref("CT2780387.rematch_agent_dups.from_oldbar.enc", "eyJodHRwOi8vZmluYW5jZS55YWhvby5jb20vcT9zPVFDT00iOjEzODM0OTY3ODcwNTJ9");
Line Deleted : user_pref("CT2780387.rematchagent-periodic-reports.from_oldbar.enc", "eyJwaW5nXzAiOlsxMzgzNDk2NzUxMzkxLDE0NDAwMDAwXX0=");
Line Deleted : user_pref("CT2780387.rematchagent-user-id.from_oldbar.enc", "IjI5NWYwNjUxLTE0ZGItNDU0Yy04NWNlLWFhMjAxYzUwZDY3NCI=");
Line Deleted : user_pref("CT2780387.rematchground-country-code.from_oldbar.enc", "IlVTIg==");
Line Deleted : user_pref("CT2780387.response_cache.from_oldbar.enc", "eyJjaGFubmVsIjp7ImxpbmsiOiJodHRwOi8vd3d3LnlhaG9vLmNvbS8iLCJkZXNjcmlwdGlvbiI6IlRydWZmbGVzIEJ5IENvbmR1aXQiLCJzb3VyY2UiOnsidXJsIjoiaHR0cDovL3d3dy55Y[...]
Line Deleted : user_pref("CT2780387.revertSettingsEnabled", true);
Line Deleted : user_pref("CT2780387.search.searchAppId", "129291227456956988");
Line Deleted : user_pref("CT2780387.search.searchCount", "0");
Line Deleted : user_pref("CT2780387.searchFromAddressBarEnabledByUser", "true");
Line Deleted : user_pref("CT2780387.searchInNewTabEnabledByUser", "true");
Line Deleted : user_pref("CT2780387.searchInNewTabEnabledInHidden", "true");
Line Deleted : user_pref("CT2780387.searchProtectorDialogDelayInSec", 10);
Line Deleted : user_pref("CT2780387.searchProtectorEnableByLogin", true);
Line Deleted : user_pref("CT2780387.searchSuggestEnabledByUser", "true");
Line Deleted : user_pref("CT2780387.searchUserMode", "UM_ID");
Line Deleted : user_pref("CT2780387.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2780387.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2780387.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Line Deleted : user_pref("CT2780387.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2780387\"}");
Line Deleted : user_pref("CT2780387.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://isradiobar.ourtoolbar.com//xpi\"}");
Line Deleted : user_pref("CT2780387.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"isradiobar \"}");
Line Deleted : user_pref("CT2780387.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2780387.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
Line Deleted : user_pref("CT2780387.serviceLayer_services_Configuration_lastUpdate", "1388207630821");
Line Deleted : user_pref("CT2780387.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1387604142738");
Line Deleted : user_pref("CT2780387.serviceLayer_services_appsMetadata_lastUpdate", "1388207630658");
Line Deleted : user_pref("CT2780387.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1387380482195");
Line Deleted : user_pref("CT2780387.serviceLayer_services_login_10.20.101.5_lastUpdate", "1384917130489");
Line Deleted : user_pref("CT2780387.serviceLayer_services_login_10.22.5.510_lastUpdate", "1386644702553");
Line Deleted : user_pref("CT2780387.serviceLayer_services_login_10.23.0.822_lastUpdate", "1388207631726");
Line Deleted : user_pref("CT2780387.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1387380482754");
Line Deleted : user_pref("CT2780387.serviceLayer_services_searchAPI_lastUpdate", "1388207630603");
Line Deleted : user_pref("CT2780387.serviceLayer_services_serviceMap_lastUpdate", "1388207631615");
Line Deleted : user_pref("CT2780387.serviceLayer_services_toolbarContextMenu_lastUpdate", "1388207630549");
Line Deleted : user_pref("CT2780387.serviceLayer_services_toolbarSettings_lastUpdate", "1388207630744");
Line Deleted : user_pref("CT2780387.serviceLayer_services_translation_lastUpdate", "1388207631644");
Line Deleted : user_pref("CT2780387.settingsINI", true);
Line Deleted : user_pref("CT2780387.sf_just_installed.from_oldbar.enc", "RkFMU0U=");
Line Deleted : user_pref("CT2780387.sf_status.from_oldbar.enc", "RU5BQkxFRA==");
Line Deleted : user_pref("CT2780387.sf_user_id.from_oldbar.enc", "Y2lkXzMwMTAyMDEzNzMxNjU4Nzc0NDA=");
Line Deleted : user_pref("CT2780387.showToolbarPermission", "false");
Line Deleted : user_pref("CT2780387.smartbar.CTID", "CT2780387");
Line Deleted : user_pref("CT2780387.smartbar.Uninstall", "0");
Line Deleted : user_pref("CT2780387.smartbar.toolbarName", "isradiobar ");
Line Deleted : user_pref("CT2780387.testingCtid", "");
Line Deleted : user_pref("CT2780387.toolbarAppMetaDataLastCheckTime", "Mon Nov 18 2013 19:56:03 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.toolbarBornServerTime", "30-10-2013");
Line Deleted : user_pref("CT2780387.toolbarContextMenuLastCheckTime", "Mon Nov 18 2013 19:56:03 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.toolbarCurrentServerTime", "26-12-2013");
Line Deleted : user_pref("CT2780387.toolbarLoginClientTime", "Tue Nov 19 2013 19:12:10 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CT2780387.upgradeFromOBVersion", true);
Line Deleted : user_pref("CT2780387.url_history0001.from_oldbar.enc", "aHR0cDovL3d3dy5oYWFyZXR6LmNvLmlsL2Jsb2dzL21pc2dhdi8ucHJlbWl1bS0xLjIxNjczMjU6OjpjbGlja2hhbmRsZXI6OjoxMzg0NzQ4MTM2NDA1LCwsaHR0cDovL3d3dy5oYWFyZXR6[...]
Line Deleted : user_pref("CT2780387.usagesFlag", 2);
Line Deleted : user_pref("CT2780387_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1388209532871,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Line Deleted : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13,hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13,hxxp://search.conduit.com/?ctid=[...]
Line Deleted : user_pref("CommunityToolbar.ConduitSearchList", "isradiobar Customized Web Search,isradiobar Customized Web Search,isradiobar Customized Web Search,isradiobar Customized Web Search,isradiobar Customiz[...]
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2780387/CT2780387", "\"6c0927586def90cdefb3d78413de84713\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1172478/1168163/US", "\"0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2780387", "\"1367217552\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=EB_LOCALE&ctid=CT2780387", "uG7mdamLoNmpmgC2c0JctQ==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=he-il&ctid=CT2780387", "NYQZZSAaAbKLSGApys6RRg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=EB_LOCALE&ctid=CT2780387", "jf4tQQjNr2TQ31uHimzTMg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=he-il&ctid=CT2780387", "iBkbrX86jHF1lqo9Czog4A==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=EB_LOCALE&ctid=CT2780387", "0BEXfBAJ1PdxmWK9VOejOg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=he-il&ctid=CT2780387", "4Pa9YsByarYQpaJBkpT8yw==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=EB_LOCALE&ctid=CT2780387", "ZU6zjERHpZr7lBpInn+HyA==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=he-il&ctid=CT2780387", "m8zB+0B0SqSG00l+bGRMJA==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=he-il&ctid=CT2780387&UM=UM_UNINSTALL_ID", "m8zB+0B0SqSG00l+bGRMJA==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"f4cb1557a8bece1:16f8\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.20.0.4", "\"f414eeaa6bece1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2780387", "\"52c3f1538cb4af4ada257fcbc6b15d49\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=he-il", "\"d032a1b0aa36a8ac952ec25b36dcd845\"");
Line Deleted : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Documents and Settings\\arie\\Application Data\\Mozilla\\Firefox\\Profiles\\de2rpnp5.default\\conduitCommon\\modules\\3.20.0.4");
Line Deleted : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.20.0.4");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList", "CT2780387");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT2780387");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList4", "CT2780387");
Line Deleted : user_pref("CommunityToolbar.globalUserId", "4e287b8c-7ef0-4ed2-a167-d98d94a5a6a5");
Line Deleted : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Line Deleted : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Line Deleted : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2780387");
Line Deleted : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Nov 13 2013 07:24:11 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CommunityToolbar.notifications.alertEnabled", true);
Line Deleted : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
Line Deleted : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Mon Nov 18 2013 19:56:04 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
Line Deleted : user_pref("CommunityToolbar.notifications.locale", "en");
Line Deleted : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
Line Deleted : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Mon Nov 18 2013 19:55:59 GMT-0800 (Pacific Standard Time)");
Line Deleted : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
Line Deleted : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
Line Deleted : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
Line Deleted : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
Line Deleted : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
Line Deleted : user_pref("CommunityToolbar.notifications.userId", "0665df92-011b-402a-8d96-4ca46362b729");
Line Deleted : user_pref("CommunityToolbar.originalHomepage", "hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13");
Line Deleted : user_pref("CommunityToolbar.originalSearchEngine", "isradiobar Customized Web Search");
Line Deleted : user_pref("Smartbar.ConduitSearchEngineList", "isradiobar Customized Web Search");
Line Deleted : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2780387&SearchSource=3&q={searchTerms}&CUI=UN36278143559559695");
Line Deleted : user_pref("Smartbar.keywordURLSelectedCTID", "CT2780387");
Line Deleted : user_pref("browser.newtab.url", "hxxp://feed.snapdo.com/?publisher=QuickOC&dpid=QuickOC&co=US&userid=27ada144-4f5b-4cc7-a3f4-9350e9906578&searchtype=nt&installDate=24/09/2013");
Line Deleted : user_pref("browser.search.defaultengine", "Ask.com Search");
Line Deleted : user_pref("browser.search.defaultenginename", "Web Search");
Line Deleted : user_pref("browser.search.defaultthis.engineName", "isradiobar Customized Web Search");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2780387&SearchSource=3&q={searchTerms}");
Line Deleted : user_pref("browser.search.selectedEngine", "Web Search");
Line Deleted : user_pref("browser.startup.homepage", "hxxp://feed.snapdo.com/?publisher=QuickOC&dpid=QuickOC&co=US&userid=27ada144-4f5b-4cc7-a3f4-9350e9906578&searchtype=hp&installDate=24/09/2013");
Line Deleted : user_pref("extensions.delta.admin", false);
Line Deleted : user_pref("extensions.delta.aflt", "babsst");
Line Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Line Deleted : user_pref("extensions.delta.autoRvrt", "false");
Line Deleted : user_pref("extensions.delta.dfltLng", "en");
Line Deleted : user_pref("extensions.delta.excTlbr", false);
Line Deleted : user_pref("extensions.delta.ffxUnstlRst", true);
Line Deleted : user_pref("extensions.delta.id", "a6e8750100000000000000ff00bb1785");
Line Deleted : user_pref("extensions.delta.instlDay", "15973");
Line Deleted : user_pref("extensions.delta.instlRef", "sst");
Line Deleted : user_pref("extensions.delta.newTab", false);
Line Deleted : user_pref("extensions.delta.prdct", "delta");
Line Deleted : user_pref("extensions.delta.prtnrId", "delta");
Line Deleted : user_pref("extensions.delta.rvrt", "false");
Line Deleted : user_pref("extensions.delta.smplGrp", "none");
Line Deleted : user_pref("extensions.delta.tlbrId", "base");
Line Deleted : user_pref("extensions.delta.tlbrSrchUrl", "");
Line Deleted : user_pref("extensions.delta.vrsn", "1.8.24.6");
Line Deleted : user_pref("extensions.delta.vrsnTs", "1.8.24.619:36:47");
Line Deleted : user_pref("extensions.delta.vrsni", "1.8.24.6");
Line Deleted : user_pref("extensions.delta_i.babExt", "");
Line Deleted : user_pref("extensions.delta_i.babTrack", "affID=119351&tt=240913_91213&tsp=5016");
Line Deleted : user_pref("extensions.delta_i.srcExt", "ss");
Line Deleted : user_pref("extensions.enabledAddons", "firefox%40webconnect.co:1.0.0,nuance%40pdf7:1.0,powerinbox%40powerinbox.com:1.13.1.0,%7B27ada144-4f5b-4cc7-a3f4-9350e9906578%7D:1.1,%7B5911488E-9D1E-40ec-8CBB-06[...]
Line Deleted : user_pref("extensions.helperbar.DockingPositionDown", false);
Line Deleted : user_pref("extensions.helperbar.SmartbarDisabled", false);
Line Deleted : user_pref("extensions.helperbar.SmartbarStateMinimaized", false);
Line Deleted : user_pref("extensions.helperbar.Visibility", false);
Line Deleted : user_pref("extensions.helperbar.countryiso", "us");
Line Deleted : user_pref("extensions.helperbar.downloadprovider", "quickoc");
Line Deleted : user_pref("extensions.helperbar.installationid", "27ada144-4f5b-4cc7-a3f4-9350e9906578");
Line Deleted : user_pref("extensions.helperbar.installdate", "24/09/2013");
Line Deleted : user_pref("extensions.helperbar.publisher", "quickoc");
Line Deleted : user_pref("extensions.powerinbox.welcomeshown", true);
Line Deleted : user_pref("keyword.URL", "hxxp://feed.snapdo.com/?publisher=QuickOC&dpid=QuickOC&co=US&userid=27ada144-4f5b-4cc7-a3f4-9350e9906578&searchtype=ds&installDate=24/09/2013&q=");
Line Deleted : user_pref("plugin.state.npconduitfirefoxplugin", 2);
Line Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT2780387");
Line Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13,hxxp://search.conduit.com/?ctid=CT2780387&SearchSource=13,hxxp://search.conduit.com/?ctid=CT2780387[...]
Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2780387&SearchSource=2&CUI=SB_CUI&UM=UM_ID&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT27803[...]
Line Deleted : user_pref("smartbar.defaultSearchOwnerCTID", "CT2780387");
Line Deleted : user_pref("smartbar.machineId", "VBMWAT4WD++WQQO8PKKY/LVBDHBBDYSMQQ+A4GJCL2QBABXTDY6B5NRCRU2NXJTS582HG1AE0OBRZWNBLQHJ8Q");
Line Deleted : user_pref("valueApps.CT2780387./9B+7E,x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E.:2z527", "247E4035422A363879453A7C36412C742E20213128335449563E4A4C2E58583D263F2E324247");
Line Deleted : user_pref("valueApps.CT2780387./9B+7E.:2z527.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E06CG5EL8:", "6E6D696A71746C70756F");
Line Deleted : user_pref("valueApps.CT2780387./9B+7E06CG5EL8:.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E06CG5EL;8I:K", "247E2D2F226A74736F70777A72767B75242F4B49474F42357D5D5C3D");
Line Deleted : user_pref("valueApps.CT2780387./9B+7E06CG5EL;8I:K.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E1x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E2x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJ69KJH@BL%PEH", "247E61393F236B2575787472732B222D6F4250454E337B3543465857554D4F59325D5255423944276459545C575A544D364F7C205249543774776559425B4C4F5E5560436F7079[...]
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJ69KJH@BL%PEH.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJ7FK;KG#8QKEF)TIL.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJ7FK;KG#NCEP@MC+VKN.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJC<=FBJ#NCF.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJDJIHL@AF%PEH.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJI>K3?A#NCF.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E31;CJIG=KI\"MBE.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E6x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E9x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E=x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E>x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7E?x305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7EBE3G=;D9N9=D", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57");
Line Deleted : user_pref("valueApps.CT2780387./9B+7EBE3G=;D9N9=D.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B+7EBx305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B+7EDx305.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387./9B-0?3G>D", "6A6F6C6D404070427A7073474520477D4D20257B2450522A235254545929252E592F5B60");
Line Deleted : user_pref("valueApps.CT2780387./9B-0?3G>D.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B-0?3G@6:5;", "");
Line Deleted : user_pref("valueApps.CT2780387./9B-0?3G@6:5;.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B-0?3GFA7EF", "2B2E2C3D");
Line Deleted : user_pref("valueApps.CT2780387./9B-0?3GFA7EF.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B-3=3ECCJA=F>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A23282E2E3132333435363B466068576C5E6857705A6C60606B6668563F73796F697861");
Line Deleted : user_pref("valueApps.CT2780387./9B-3=3ECCJA=F>.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B/>01=9A6K6<IM;KRIE@PDAWM", "6A696B7273747576");
Line Deleted : user_pref("valueApps.CT2780387./9B/>01=9A6K6<IM;KRIE@PDAWM.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B3=>@44I48?", "372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F");
Line Deleted : user_pref("valueApps.CT2780387./9B3=>@44I48?.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B5BA==9CJAG", "393E6C726F7240747A734677747A4A4D76774F4F24");
Line Deleted : user_pref("valueApps.CT2780387./9B5BA==9CJAG.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B6B11G28B8JHHOKG>B", "6E6D696E6F6C7071747470717A");
Line Deleted : user_pref("valueApps.CT2780387./9B6B11G28B8JHHOKG>B.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B6B11G4C56B>F;P;ANR@P", "6E6D696A71746C707376727378");
Line Deleted : user_pref("valueApps.CT2780387./9B6B11G4C56B>F;P;ANR@P.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B90E@.3C;7B=?OFB>>RHIQS", "393F352F3E");
Line Deleted : user_pref("valueApps.CT2780387./9B90E@.3C;7B=?OFB>>RHIQS.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B9643G3/9E", "6A");
Line Deleted : user_pref("valueApps.CT2780387./9B9643G3/9E.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B;45>:BI9I7IE", "2B2E2C3D");
Line Deleted : user_pref("valueApps.CT2780387./9B;45>:BI9I7IE.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B<:222H64<", "393F352F3E");
Line Deleted : user_pref("valueApps.CT2780387./9B<:222H64<.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B<:222H64<L8DAJ", "6D70706F7673757974782A7977727A7D75217A");
Line Deleted : user_pref("valueApps.CT2780387./9B<:222H64<L8DAJ.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B=+03EH8H8J?:", "4443");
Line Deleted : user_pref("valueApps.CT2780387./9B=+03EH8H8J?:.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B?+E2A52D8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
Line Deleted : user_pref("valueApps.CT2780387./9B?+E2A52D8.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9B?B0D:8AJ62<H", "6D");
Line Deleted : user_pref("valueApps.CT2780387./9B?B0D:8AJ62<H.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387./9BA@0<0BI6A7GN:6@L?", "6C");
Line Deleted : user_pref("valueApps.CT2780387./9BA@0<0BI6A7GN:6@L?.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.PG_ENABLE", "74727565");
Line Deleted : user_pref("valueApps.CT2780387.PG_ENABLE.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.SF_JUST_INSTALLED", "46414C5345");
Line Deleted : user_pref("valueApps.CT2780387.SF_JUST_INSTALLED.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.SF_USER_ID", "6369645F33303130323031333733313635383737343430");
Line Deleted : user_pref("valueApps.CT2780387.SF_USER_ID.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387._key_cl_active", "32653764646130332D343634352D343635352D386564382D633231373233396536623839");
Line Deleted : user_pref("valueApps.CT2780387._key_cl_active.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.cb_experience_000", "35");
Line Deleted : user_pref("valueApps.CT2780387.cb_experience_000.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.cb_firstuse0100", "31");
Line Deleted : user_pref("valueApps.CT2780387.cb_firstuse0100.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.cb_user_id_000", "43423634383839383131343835325F313338353636333632323937395F46697265666F78");
Line Deleted : user_pref("valueApps.CT2780387.cb_user_id_000.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.cbfirsttime", "576564204F637420333020323031332030373A33313A303720474D542D30373030202850616369666963205374616E646172642054696D6529");
Line Deleted : user_pref("valueApps.CT2780387.cbfirsttime.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.discover-experiments-photopop", "7B226E616D65223A2270686F746F706F705F6E61222C2276657273696F6E223A31307D");
Line Deleted : user_pref("valueApps.CT2780387.discover-experiments-photopop.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.discover-periodic-reports", "7B2270696E675F30223A5B313338363536373230303336312C31343430303030305D7D");
Line Deleted : user_pref("valueApps.CT2780387.discover-periodic-reports.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.discover-user-id", "2263663861343065642D613538612D346636652D623333352D66636533623833363634626222");
Line Deleted : user_pref("valueApps.CT2780387.discover-user-id.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.ground-country-code", "22555322");
Line Deleted : user_pref("valueApps.CT2780387.ground-country-code.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.hover_counter", "31");
Line Deleted : user_pref("valueApps.CT2780387.hover_counter.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.impression_counter", "3532");
Line Deleted : user_pref("valueApps.CT2780387.impression_counter.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.impression_session_counter", "3534");
Line Deleted : user_pref("valueApps.CT2780387.impression_session_counter.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.impression_session_id", "2236306362663666642D323366342D346565322D616634622D62303064356430353065636122");
Line Deleted : user_pref("valueApps.CT2780387.impression_session_id.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.impression_session_last_active", "31333836353637323031343139");
Line Deleted : user_pref("valueApps.CT2780387.impression_session_last_active.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appStateReportTime", "31333838323039353938393339");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appStateReportTime.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_ACplus", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_ACplus.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Clarity_Active", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Clarity_Active.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_CouponBuddy", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_CouponBuddy.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Discover", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Discover.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Easytobook", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Easytobook.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Easytobook_targeted", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Easytobook_targeted.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Easytobookcars", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Easytobookcars.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Find-a-Pro", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_Find-a-Pro.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_JobsMiner", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_JobsMiner.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_PiclickV2-WebSearch", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_PiclickV2-WebSearch.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_PriceGong", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_PriceGong.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_WindowShopper", "6F6E");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appState_WindowShopper.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appsConfig.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appsDefaultEnabled", "6E756C6C");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_appsDefaultEnabled.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_calledSetupService", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_calledSetupService.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_currentBadgeValue", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_currentBadgeValue.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_currentVersion", "312E31322E302E35");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_currentVersion.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_eventsCache.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_existingUsersRecoveryDone", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_existingUsersRecoveryDone.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_first_time", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_first_time.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_globalKeysMigratedToLocalStorage", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_globalKeysMigratedToLocalStorage.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_lastLoginTime", "31333838323039363032373339");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_lastLoginTime.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_localization.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_mamEnabled", "74727565");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_mamEnabled.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_migrated_from_ls", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_migrated_from_ls.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_newApps", "5B5D");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_newApps.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_new_welcome_experience", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_new_welcome_experience.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_pgUnloadedOnce", "74727565");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_pgUnloadedOnce.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_settings1.10.4.0.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_settings1.11.4.2.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_settings1.11.5.1.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_settings1.12.0.5.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_showWelcomeGadget", "66616C7365");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_showWelcomeGadget.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_stamp", "313034335F30");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_stamp.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_userId", "31363132313363302D656339662D343938322D623632632D633338396462343132366564");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_userId.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_user_approval_interacted", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_user_approval_interacted.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_welcomeDialogMode", "31");
Line Deleted : user_pref("valueApps.CT2780387.mam_gk_welcomeDialogMode.storedInFile", false);
Line Deleted : user_pref("valueApps.CT2780387.response_cache.storedInFile", true);
Line Deleted : user_pref("valueApps.CT2780387.url_history0001.storedInFile", true);
Line Deleted : user_pref("{5911488E-9D1E-40ec-8CBB-06B231CC153F}.name", "StartNow Toolbar");
Line Deleted : user_pref("{5911488E-9D1E-40ec-8CBB-06B231CC153F}.startpage", "tr.startnow.com");

-\\ Google Chrome v31.0.1650.63

[ File : C:\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]

Deleted : icon_url
Deleted : search_url
Deleted : keyword
Deleted : homepage
Deleted : urls_to_restore_on_startup

*************************

AdwCleaner[R0].txt - [107383 octets] - [29/12/2013 21:51:39]
AdwCleaner[S0].txt - [108019 octets] - [29/12/2013 21:55:02]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [108081 octets] ##########

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Microsoft Windows XP x86
Ran by arie on Sun 12/29/2013 at 22:10:18.78
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

~~~ Services

 

~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\startnow search protect
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
Successfully deleted [Registry Value] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\\bProtectTabs

 

~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2165517387-1017937101-1279371858-1006\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"

 

~~~ Files

 

~~~ Folders

Successfully deleted: [Folder] "C:\Program Files\free youtube downloader"
Successfully deleted: [Folder] "C:\WINDOWS\system32\ai_recyclebin"

 

~~~ FireFox

Successfully deleted the following from C:\Documents and Settings\arie\Application Data\mozilla\firefox\profiles\de2rpnp5.default\prefs.js

user_pref("{5911488E-9D1E-40ec-8CBB-06B231CC153F}.update_url", "hxxp://tbupdate.zugo.com/ztb/update?partner_id={partner_id}&product_id={product_id}&affiliate_id={affiliate_id}
Emptied folder: C:\Documents and Settings\arie\Application Data\mozilla\firefox\profiles\de2rpnp5.default\minidumps [21 files]

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sun 12/29/2013 at 22:27:31.21
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4L2NOTQB\genfix-e-uld[1] Win32/Toolbar.Zugo.D application 
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4L2NOTQB\genfix2-a[1] Win32/Toolbar.Zugo.D application 
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4L2NOTQB\search-update-d[1] Win32/Toolbar.Zugo.D application 
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\8P6N41M3\updater-startnow-200-2.5-g[1].exe multiple threats 
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\KTEVWHQR\genfix-e[1] Win32/Toolbar.Zugo.D application 
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\KTEVWHQR\genfix2-a[1] Win32/Toolbar.Zugo.D application 
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\KTEVWHQR\search-update-d[1] Win32/Toolbar.Zugo.D application 
C:\Documents and Settings\nurit\My Documents\Downloads\sumatrapdf.exe a variant of Win32/InstallIQ.A application 
C:\RECYCLER\S-1-5-21-2165517387-1017937101-1279371858-1006\Dc36.exe a variant of Win32/Bundled.Toolbar.Ask application 
C:\RECYCLER\S-1-5-21-2165517387-1017937101-1279371858-1006\Dc57.exe Win32/DownloadAdmin.A.Gen application 
C:\RECYCLER\S-1-5-21-2165517387-1017937101-1279371858-1006\Dc59.exe a variant of Win32/InstallCore.CF application 
C:\RECYCLER\S-1-5-21-2165517387-1017937101-1279371858-1006\Dc61.exe a variant of Win32/Toolbar.SearchSuite.G application 
C:\RECYCLER\S-1-5-21-2165517387-1017937101-1279371858-1006\Dc63.exe a variant of Win32/Toolbar.SearchSuite.G application 
C:\WINDOWS\Installer\e0243.msi a variant of MSIL/Toolbar.Linkury.C application 
C:\WINDOWS\Temp\TBU001\ToolbarUpdate.exe multiple threats 
C:\WINDOWS\Temp\TBU002\ToolbarUpdate.exe multiple threats 
C:\WINDOWS\Temp\TBU003\ToolbarUpdate.exe Win32/Toolbar.Zugo.D application 
C:\WINDOWS\Temp\TBU004\ToolbarUpdate.exe Win32/Toolbar.Zugo.D application 
C:\Documents and Settings\arie\My Documents\My Pictures\Downloads\jZipSetup(1).exe Win32/Toolbar.SearchSuite application cleaned by deleting - quarantined
C:\Documents and Settings\arie\My Documents\My Pictures\Downloads\jZipSetup.exe Win32/Toolbar.SearchSuite application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Application Data\BabSolution\Shared\BabMaint.exe.vir Win32/Toolbar.Babylon.I application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\Extensions\firefox@webconnect.co.xpi.vir Win32/BrowseFox.B application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\GoogleChromeRemotePlugin.dll.vir Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ieakfmpjhljbpbfpldjkddkjmmgjmgon\1.0.0_0\background.js.vir Win32/BrowseFox.B application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ieakfmpjhljbpbfpldjkddkjmmgjmgon\1.0.0_0\content.js.vir Win32/BrowseFox.B application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\iLivid\Uninstall.exe.vir a variant of Win32/Toolbar.SearchSuite.G application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\BrowserHelper.exe.vir a variant of MSIL/Toolbar.Linkury.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\QuickShare.exe.vir a variant of Win32/Toolbar.Linkury.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\SmartbarInternetExplorerBHO.dll.vir a variant of Win32/Toolbar.Linkury.B application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\SmartbarInternetExplorerBHO2.dll.vir a variant of Win32/Toolbar.Linkury.B application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\SmartbarInternetExplorerExtension.dll.vir a variant of MSIL/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\SmartbarInternetExplorerExtension2.dll.vir a variant of MSIL/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\srbs.dll.vir a variant of MSIL/Toolbar.Linkury.C application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\GoogleChromeRemotePlugin.dll.vir Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_20.dll.vir Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_21.dll.vir Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_22.dll.vir a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_23.dll.vir a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_24.dll.vir a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\arie\Local Settings\Application Data\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_25.dll.vir a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\StartNow Toolbar\genfix.exe.vir Win32/Toolbar.Zugo.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\StartNow Toolbar\Reactivate.exe.vir a variant of Win32/Toolbar.Zugo application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\StartNow Toolbar\search_protect.exe.vir Win32/Toolbar.Zugo.D application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\StartNow Toolbar\StartNowToolbarUninstall.exe.vir Win32/Toolbar.Zugo.E application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\StartNow Toolbar\Toolbar32.dll.vir a variant of Win32/Toolbar.Zugo application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\StartNow Toolbar\ToolbarBroker.exe.vir a variant of Win32/Toolbar.Zugo application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe.vir a variant of Win32/Toolbar.Zugo application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\WebConnect\ieakfmpjhljbpbfpldjkddkjmmgjmgon.crx.vir Win32/BrowseFox.B application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\WebConnect\updateWebConnect.exe.vir a variant of Win32/BrowseFox.G application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\WebConnect\WebConnect.Common.dll.vir a variant of MSIL/BrowseFox.A application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\WebConnect\WebConnectBHO.dll.vir a variant of Win32/BrowseFox.F application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\WebConnect\WebConnectUninstall.exe.vir Win32/BrowseFox.C application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\WebConnect\bin\utilWebConnect.exe.vir a variant of Win32/BrowseFox.G application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\WebConnect\update\h2mwjxnn.lc3.exe.vir a variant of Win32/BrowseFox.G application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\extensions\{27ada144-4f5b-4cc7-a3f4-9350e9906578}\components\SmartbarFireFoxRemotePlugin_20.dll Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\extensions\{27ada144-4f5b-4cc7-a3f4-9350e9906578}\components\SmartbarFireFoxRemotePlugin_21.dll Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\extensions\{27ada144-4f5b-4cc7-a3f4-9350e9906578}\components\SmartbarFireFoxRemotePlugin_22.dll a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\extensions\{27ada144-4f5b-4cc7-a3f4-9350e9906578}\components\SmartbarFireFoxRemotePlugin_23.dll a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\extensions\{27ada144-4f5b-4cc7-a3f4-9350e9906578}\components\SmartbarFireFoxRemotePlugin_24.dll a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Application Data\Mozilla\Firefox\Profiles\de2rpnp5.default\extensions\{27ada144-4f5b-4cc7-a3f4-9350e9906578}\components\SmartbarFireFoxRemotePlugin_25.dll a variant of Win32/Toolbar.Linkury.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\1L3RAKVa.exe.part a variant of Win32/OutBrowse.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\ApnStub.exe a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\jar_cache5052486131810683405.tmp a variant of Java/Exploit.CVE-2010-0842.O trojan cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\setup.exe a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\26167A6C-BAB0-7891-BD4C-41085654EFF3\Latest\BabMaint.exe Win32/Toolbar.Babylon.I application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\26167A6C-BAB0-7891-BD4C-41085654EFF3\Latest\BExternal.dll a variant of Win32/Toolbar.Babylon.F application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\26167A6C-BAB0-7891-BD4C-41085654EFF3\Latest\CrxInstaller.dll Win32/Toolbar.Babylon.U application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\26167A6C-BAB0-7891-BD4C-41085654EFF3\Latest\IEHelper.dll Win32/Toolbar.Babylon.E application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\26167A6C-BAB0-7891-BD4C-41085654EFF3\Latest\MntrDLLInstall.dll Win32/Toolbar.Babylon.V application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\26167A6C-BAB0-7891-BD4C-41085654EFF3\Latest\MyDeltaTB.exe Win32/Toolbar.Babylon.J application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\26167A6C-BAB0-7891-BD4C-41085654EFF3\Latest\Setup.exe a variant of Win32/Toolbar.Babylon.H application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\is1244477948\18169504_Setup.EXE Win32/OpenCandy application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\is1244477948\DeltaTB.exe a variant of Win32/Toolbar.Babylon.F application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\is1244477948\WebConnect.exe Win32/BrowseFox.C application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\nsg7.tmp\zplugins.dll Win32/Toolbar.Zugo.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\nsm7.tmp\zplugins.dll Win32/Toolbar.Zugo.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\nss3CD\Uninstall.exe a variant of Win32/Toolbar.SearchSuite.G application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\nsu22.tmp\zplugins.dll Win32/Toolbar.Zugo.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\nsv8.tmp\zplugins.dll Win32/Toolbar.Zugo.D application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\scoped_dir_2044_12230\ieakfmpjhljbpbfpldjkddkjmmgjmgon.crx Win32/BrowseFox.B application deleted - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\scoped_dir_2044_12230\CRX_INSTALL\background.js Win32/BrowseFox.B application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temp\scoped_dir_2044_12230\CRX_INSTALL\content.js Win32/BrowseFox.B application cleaned by deleting - quarantined
C:\Documents and Settings\arie\Local Settings\Temporary Internet Files\Content.IE5\9QZOCQ6Q\pack[1].7z multiple threats deleted - quarantined
C:\Documents and Settings\arie\Local Settings\Temporary Internet Files\Content.IE5\BIBMKT70\pack[1].7z multiple threats deleted - quarantined
C:\Documents and Settings\arie\Local Settings\Temporary Internet Files\Content.IE5\BIBMKT70\Setup[1].exe multiple threats cleaned by deleting - quarantined
C:\Documents and Settings\arie\My Documents\Downloads\Firefox_Setup(1).exe.part a variant of Win32/AdWare.iBryte.J.gen application cleaned by deleting - quarantined
C:\Documents and Settings\arie\My Documents\Downloads\Firefox_Setup.exe.part a variant of Win32/AdWare.iBryte.J.gen application cleaned by deleting - quarantined
C:\Documents and Settings\arie\My Documents\Downloads\google-chrome.exe a variant of MSIL/DomaIQ.J application cleaned by deleting - quarantined
C:\Documents and Settings\arie\My Documents\Downloads\iLividSetup-r418-n-bf(2).exe.part a variant of Win32/Toolbar.SearchSuite.G application cleaned by deleting - quarantined
C:\Documents and Settings\arie\My Documents\Downloads\winrar setup.exe a variant of Win32/Soft32Downloader.D application cleaned by deleting - quarantined
 

Yuval



#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,199 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:22 PM

Posted 30 December 2013 - 02:15 PM

Nice clean up...

In Control Panel ..Uninstall this
Java 7 Update 15 (Version: 7.0.150)
Reboot the machine.

To install the Newest Java go here... Version 7 Update 45

 

Scroll down to and click on Windows Offline 32 bit and install that

 

How is it?

 


 


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 31 December 2013 - 12:28 AM

I removed and then installed the Java update. PC looks much better :) Can we do temp cleanup with CCleaner?



#6 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 31 December 2013 - 02:40 AM

... Also, since Microsoft Essentials is installed, up-to-date with weekly scans and realtime protection on, and still ESET found 90 threats that Microfoft Essentials didn't - which Antivirus do you recommend to use? AVG? ESET? Do I need to unistall Microsoft Essentials, or can both products co-exist? Thanks, yuval 



#7 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,199 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:22 PM

Posted 31 December 2013 - 10:52 AM

yes clean the Temp files.

Use either MSE or AVG not both.. That said I like Avira free the best.. ESET or Kaspersky are the best Pay for AV's.

Yuval I'd like to run this to see if it fixes some of those errors in the MinitoolBox log.

Download Windows Repair (All in One) from this site

Install the program then run it.

NOTE 1. In Windows Vista, 7 and 8 right click on the program, click "Run As Administrator".
NOTE 2. Disable your antivirus program before running Windows Repair.


Go to Step 2 and click on Check button next to 1. See If Check Disk Is Needed.
If the tool that the Check Disk is needed click on Do It button next to 2. Check Disk.
In that case make sure you restart computer.

p22004342.gif


Once the above is done go to Step 3 and allow it to run System File Check by clicking on Do It button:

p22004343.gif


Go to Step 4 and under "System Restore" click on Create button:

p22004346.gif


Go to Start Repairs tab and click Start button.

Leave all checkmarks as they're.
NOTE for Windows 8 users. Reset Registry Permissions is NOT checked by design.

Click on Start button.

p22004347.gif

Post Windows Repair log which is located in the following folder:
64-bit systems - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Logs
32-bit systems - C:\Program Files\Tweaking.com\Windows Repair (All in One)\Logs
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#8 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 31 December 2013 - 11:55 AM

The Windows Repair link seems broken:

 

Windows Repair (All in One) from this site

http://www.tweaking.com/content/page/windows_repair_all_in_one.html

 

Do you have another one?

 

For CCleaner, is this a good place to download it:

https://www.piriform.com/ccleaner



#9 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 31 December 2013 - 04:12 PM

Got the CCLeaner done.

After awhile, the link to Windows Repair worked again, but there were bunch of logs created (for each job), so here they are:

 

Starting Repairs...
   Start (12/31/2013 11:48:13 AM)

01 - Reset Registry Permissions 01/03
   HKEY_CURRENT_USER & Sub Keys
   Start (12/31/2013 11:48:13 AM)
   Running Repair Under Current User Account
   Done (12/31/2013 11:48:29 AM)

01 - Reset Registry Permissions 02/03
   HKEY_LOCAL_MACHINE & Sub Keys
   Start (12/31/2013 11:48:29 AM)
   Running Repair Under System Account
   Done (12/31/2013 11:51:44 AM)

01 - Reset Registry Permissions 03/03
   HKEY_CLASSES_ROOT & Sub Keys
   Start (12/31/2013 11:51:44 AM)
   Running Repair Under System Account
   Done (12/31/2013 11:53:53 AM)

03 - Register System Files
   Start (12/31/2013 11:53:53 AM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 11:57:04 AM)

04 - Repair WMI
   Start (12/31/2013 11:57:04 AM)
   Running Repair Under Current User Account
   Done (12/31/2013 12:00:51 PM)

05 - Repair Windows Firewall
   Start (12/31/2013 12:00:51 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:01:10 PM)

06 - Repair Internet Explorer
   Start (12/31/2013 12:01:10 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:04:35 PM)

07 - Repair MDAC/MS Jet
   Start (12/31/2013 12:04:35 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:05:04 PM)

08 - Repair Hosts File
   Start (12/31/2013 12:05:04 PM)
   Running Repair Under System Account
   Done (12/31/2013 12:05:06 PM)

09 - Remove Policies Set By Infections
   Start (12/31/2013 12:05:07 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:05:11 PM)

11 - Repair Icons
   Start (12/31/2013 12:05:11 PM)
   Running Repair Under System Account
   Done (12/31/2013 12:05:14 PM)

12 - Repair Winsock & DNS Cache
   Start (12/31/2013 12:05:14 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:05:27 PM)

14 - Repair Proxy Settings
   Start (12/31/2013 12:05:27 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:05:31 PM)

16 - Repair Windows Updates
   Start (12/31/2013 12:05:31 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:06:25 PM)

17 - Repair CD/DVD Missing/Not Working
   Start (12/31/2013 12:06:25 PM)
   Done (12/31/2013 12:06:26 PM)

18 - Repair Volume Shadow Copy Service
   Start (12/31/2013 12:06:26 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:07:06 PM)

20 - Repair MSI (Windows Installer)
   Start (12/31/2013 12:07:06 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:07:34 PM)

22.01 - Repair bat Association
   Start (12/31/2013 12:07:34 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:07:40 PM)

22.02 - Repair cmd Association
   Start (12/31/2013 12:07:40 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:07:44 PM)

22.03 - Repair com Association
   Start (12/31/2013 12:07:45 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:07:49 PM)

22.04 - Repair Directory Association
   Start (12/31/2013 12:07:49 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:07:54 PM)

22.05 - Repair Drive Association
   Start (12/31/2013 12:07:54 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:07:59 PM)

22.06 - Repair exe Association
   Start (12/31/2013 12:07:59 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:04 PM)

22.07 - Repair Folder Association
   Start (12/31/2013 12:08:04 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:09 PM)

22.08 - Repair inf Association
   Start (12/31/2013 12:08:09 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:14 PM)

22.09 - Repair lnk (Shortcuts) Association
   Start (12/31/2013 12:08:14 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:19 PM)

22.10 - Repair msc Association
   Start (12/31/2013 12:08:19 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:24 PM)

22.11 - Repair reg Association
   Start (12/31/2013 12:08:24 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:29 PM)

22.12 - Repair scr Association
   Start (12/31/2013 12:08:29 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:33 PM)

23 - Repair Windows Safe Mode
   Start (12/31/2013 12:08:33 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:08:38 PM)

24 - Repair Print Spooler
   Start (12/31/2013 12:08:38 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:09:00 PM)

25 - Restore Important Windows Services
   Start (12/31/2013 12:09:00 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:09:13 PM)

26 - Set Windows Services To Default Startup
   Start (12/31/2013 12:09:13 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (12/31/2013 12:09:57 PM)

   Skipping Repair.
   Repair is for Windows v6.2 (Windows 8 & Newer) or higher.
   Current version: 5.1

Cleaning up empty logs...

All Selected Repairs Done.
   Done (12/31/2013 12:09:57 PM)
   Total Repair Time: 00:21:44

...YOU MUST RESTART YOUR SYSTEM...
   Running Repair Under Current User Account

 

reset   SYSTEM\CurrentControlSet\Services\Dhcp\Parameters\Options\15\RegLocation
            old REG_MULTI_SZ =
                SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpDomain
                SYSTEM\CurrentControlSet\Services\TcpIp\Parameters\DhcpDomain

added   SYSTEM\CurrentControlSet\Services\Netbt\Parameters\Interfaces\Tcpip_{91187917-AE83-4675-BBE5-C90E7143134E}\NetbiosOptions
added   SYSTEM\CurrentControlSet\Services\Netbt\Parameters\Interfaces\Tcpip_{ED302EFB-3F34-4F52-8FF3-6B6B3BF3F31C}\NetbiosOptions
deleted SYSTEM\CurrentControlSet\Services\Netbt\Parameters\EnableLmhosts
added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\DisableDynamicUpdate
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\DisableDynamicUpdate
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\AddressType
added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\DisableDynamicUpdate
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\AddressType
added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\DisableDynamicUpdate
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\DisableDynamicUpdate
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

added   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\DisableDynamicUpdate
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DontAddDefaultGatewayDefault
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableIcmpRedirect
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableSecurityFilters
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\SearchList
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\UseDomainNameDevolution
reset   Linkage\Bind for ms_tcpip.  bad value was:
            REG_MULTI_SZ =
                \Device\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}
                \Device\{7B260CE4-4C44-425F-85D5-965DC1047DCF}
                \Device\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}
                \Device\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}
                \Device\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}
                \Device\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}
                \Device\NdisWanIp

reset   Linkage\Route for ms_tcpip.  bad value was:
            REG_MULTI_SZ =
                "{A49D5E84-6E08-4E77-A2C3-46104A9A9661}"
                "{7B260CE4-4C44-425F-85D5-965DC1047DCF}"
                "{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}"
                "{0B0AD45B-90BF-417B-9941-7DC5357A35AE}"
                "{CD10D2C3-9EC7-473B-8958-63F3FD51807B}"
                "{49B5DF9F-3C88-47C6-9189-D5022F2F947D}"
                "NdisWanIp"

reset   Linkage\Export for ms_tcpip.  bad value was:
            REG_MULTI_SZ =
                \Device\Tcpip_{A49D5E84-6E08-4E77-A2C3-46104A9A9661}
                \Device\Tcpip_{7B260CE4-4C44-425F-85D5-965DC1047DCF}
                \Device\Tcpip_{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}
                \Device\Tcpip_{0B0AD45B-90BF-417B-9941-7DC5357A35AE}
                \Device\Tcpip_{CD10D2C3-9EC7-473B-8958-63F3FD51807B}
                \Device\Tcpip_{49B5DF9F-3C88-47C6-9189-D5022F2F947D}
                \Device\Tcpip_{91187917-AE83-4675-BBE5-C90E7143134E}
                \Device\Tcpip_{ED302EFB-3F34-4F52-8FF3-6B6B3BF3F31C}

reset   Linkage\UpperBind for ROOT\DSNCADPT\0000.  bad value was:
            REG_MULTI_SZ =
                PSched

reset   Linkage\UpperBind for USB\VID_148F&PID_3070\1.0.  bad value was:
            REG_MULTI_SZ =
                PSched

reset   Linkage\UpperBind for USB\VID_0846&PID_4200\6&39C8419B&0&3.  bad value was:
            REG_MULTI_SZ =
                PSched

reset   Linkage\UpperBind for USB\VID_0846&PID_4200\5&2D14D68B&0&6.  bad value was:
            REG_MULTI_SZ =
                PSched

reset   Linkage\UpperBind for {1A3E09BE-1E45-494B-9174-D7385B45BBF5}\NVNET_DEV0AB0\4&A1415BE&0&00.  bad value was:
            REG_MULTI_SZ =
                PSched

reset   Linkage\UpperBind for ROOT\MS_NDISWANIP\0000.  bad value was:
            REG_MULTI_SZ =
                PSched

<completed>

deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0B0AD45B-90BF-417B-9941-7DC5357A35AE}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{482787A8-AC1F-4A04-85A5-ACF5ECDECD55}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49B5DF9F-3C88-47C6-9189-D5022F2F947D}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7B260CE4-4C44-425F-85D5-965DC1047DCF}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A49D5E84-6E08-4E77-A2C3-46104A9A9661}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\IpAutoconfigurationAddress
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\IpAutoconfigurationMask
deleted SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\IpAutoconfigurationSeed
reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\RawIpAllowedProtocols
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\TcpAllowedPorts
            old REG_MULTI_SZ =
                0

reset   SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD10D2C3-9EC7-473B-8958-63F3FD51807B}\UdpAllowedPorts
            old REG_MULTI_SZ =
                0

<completed>

 

File not found - C:\Documents and Settings\arie\Local Settings\Application Data\IconCache.db.bak
Could Not Find C:\Documents and Settings\arie\Local Settings\Application Data\IconCache.db.bak
Could Not Find C:\Documents and Settings\arie\Local Settings\Application Data\IconCache.db
 

[SC] ChangeServiceConfig SUCCESS
The Windows Installer service is not started.

More help is available by typing NET HELPMSG 3521.

The Windows Installer service is starting.
The Windows Installer service was started successfully.

[SC] ChangeServiceConfig SUCCESS
The Windows Installer service is stopping.
The Windows Installer service was stopped successfully.

The Windows Installer service is starting.
The Windows Installer service was started successfully.

 

Deleted file - C:\WINDOWS\System32\spool\PRINTERS\FP00001.SHD
Deleted file - C:\WINDOWS\System32\spool\PRINTERS\FP00001.SPL
The system cannot find the file specified.
The system cannot find the file specified.
 

 

The Volume Shadow Copy service is not started.

More help is available by typing NET HELPMSG 3521.

The MS Software Shadow Copy Provider service is not started.

More help is available by typing NET HELPMSG 3521.

The Volume Shadow Copy service is not started.

More help is available by typing NET HELPMSG 3521.

The MS Software Shadow Copy Provider service is not started.

More help is available by typing NET HELPMSG 3521.

 

 

System error 1060 has occurred.

The specified service does not exist as an installed service.

The Windows Firewall/Internet Connection Sharing (ICS) service is not started.

More help is available by typing NET HELPMSG 3521.

System error 1060 has occurred.

The specified service does not exist as an installed service.

[SC] OpenService FAILED 1060:

The specified service does not exist as an installed service.

[SC] ChangeServiceConfig SUCCESS
[SC] OpenService FAILED 1060:

The specified service does not exist as an installed service.

[SC] ChangeServiceConfig SUCCESS
The service name is invalid.

More help is available by typing NET HELPMSG 2185.

The Windows Firewall/Internet Connection Sharing (ICS) service is starting.
The Windows Firewall/Internet Connection Sharing (ICS) service was started successfully.

The service name is invalid.

More help is available by typing NET HELPMSG 2185.

System error 1060 has occurred.

The specified service does not exist as an installed service.

The Windows Firewall/Internet Connection Sharing (ICS) service was stopped successfully.

System error 1060 has occurred.

The specified service does not exist as an installed service.

[SC] OpenService FAILED 1060:

The specified service does not exist as an installed service.

[SC] ChangeServiceConfig SUCCESS
[SC] OpenService FAILED 1060:

The specified service does not exist as an installed service.

[SC] ChangeServiceConfig SUCCESS
The service name is invalid.

More help is available by typing NET HELPMSG 2185.

The Windows Firewall/Internet Connection Sharing (ICS) service is starting.
The Windows Firewall/Internet Connection Sharing (ICS) service was started successfully.

The service name is invalid.

More help is available by typing NET HELPMSG 2185.

 

 

[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
The Cryptographic Services service is stopping..
The Cryptographic Services service was stopped successfully.

The Background Intelligent Transfer Service service is stopping.
The Background Intelligent Transfer Service service was stopped successfully.

The Automatic Updates service is not started.

More help is available by typing NET HELPMSG 3521.

The system cannot find the file specified.
Deleted file - C:\WINDOWS\SoftwareDistribution\ReportingEvents.log
Deleted file - C:\WINDOWS\SoftwareDistribution\AuthCabs\authcab.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\AuthCabs\muauth.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\authcab.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\AuthCabs\Redir\9482F4B4-E343-43B6-B170-9A65BC822C77\muv4wuredir.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\AuthCabs\Redir\9482F4B4-E343-43B6-B170-9A65BC822C77\wuredir.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb
Deleted file - C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.chk
Deleted file - C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log
Deleted file - C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb021C5.log
Deleted file - C:\WINDOWS\SoftwareDistribution\DataStore\Logs\res1.log
Deleted file - C:\WINDOWS\SoftwareDistribution\DataStore\Logs\res2.log
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0326dd62c680d25c8b7b2e756de8b60efe97e51f
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0f9e4aa355dc21c037be1d9c84cccd05fe7d66eb
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\14d19c27b28cc3990260d7191f6e0ff6c7483623
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\2053f314d3b29c1a7fd50d776963ede420d7fc6a
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\20b631a2c2a58d693861922272501298393affb9
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\226d246a1c64e693791de5c727509002d089b0d5
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\230a23468158eb2ae8a69f95a4f3bc6f7a23394a
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\304589eb8687847949101e29c2883e25fd3be715
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\33d8a4b8183134ca79120bb436c18ddab713e713
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\37bedcd22fb7769d0b58c3bbcc58eb8d923ff9fd
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\3c05f1188b58af72e15ebc60706fea9a0c1493c7
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\45d52fcc0a3c37c790f6c709319a758e75a5033b
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\479834b7ad2ebf3585530d918becf4ff3801b8fd
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\4c0248d0a1d83278442cc468a3c2ea9a9b65d2b2
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\5333d4f3be10ce6e7e784a5e11f3023dd1443de6
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\6353b629a21ff5ead6b66e1da7d86c48fccb81f8
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\67eae3e913e5e71caacc8d0d13ad03b5a3559a3a
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\734f9a55fd332aa69ef10d5da5f90c4b70e8b317
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\805debda274cf4192b47507c4e5439863e5d3d5a
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\806ab3456d03221c070095ce005b4050a2a886e7
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\84cffa4da91a1174393ab5abe4e3e1b3a49f297d
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\85605e276a7d714b23cce78face8f915f1b7242c
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\89320fbdfd6611db44607b50d9d60959884e8b4b
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\8a14dd826a2fbfad3f17c7aeaaf85ac8ed39cfff
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\8ce2670dd3ba11e5f3f089ea4e1a2b7aa234561f
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\94abe7d9a36e38e87eeb49d81699059df1879a87
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\9b98c9895b9c672b38047cbcc3ecf9843bbabeaf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\9f8f8369716f6100ea04b6549aaf8e2a22fb0042
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\a3625c59d7a2995fb60877b5f5324892a1693b2a
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\a59a53760526530baf74aa238decf1b96da0a3c3
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\ac7d33c1827624bd05ec182ba9b8d0b28d441bc6
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\aca515f4dad805478c0efdee43c74e0f42ea517e
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\b28852ef695d1d1444fd8413674902d297373c79
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\b395caa1b989b580cd4ebff07a7feb80930f08c5
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\b763712ee43f0fd0430236022685ae9e6e5707bb
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bd67ca7913bd31327f595382e40c33644e9aa1b5
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\c3248eb572cb5f82e63ce9c6d73cfbf39b1052ae
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\d05bfd0261fa313ab2610e5e347a8324c9946f27
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\d707c0dd44c85849df48707f49135ae20734a695
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e0aed2276ea0b7120f6605502e593caf732327b3
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\f8108b5d17019575a47f2c2ae2fdf72e86c75930
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\spmsg.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\spuninst.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\_downloadprogress_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\_file_to_execute_.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\_unpacked_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\_useselfcontained_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\SP3GDR\iecompat.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\SP3QFE\iecompat.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\branches.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\eula.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\KB982632-IE8.CAT
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\spcustom.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\update.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\update.ver
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\updatebr.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\update_SP3GDR.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\update_SP3QFE.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\0398653f856abc5856afe1cdcbf31fe5\update\updspapi.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\37ea7d9587e54acc7afa27dc26096f4f\WindowsXP-KB954459-x86-express-ENU.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\37ea7d9587e54acc7afa27dc26096f4f\_downloadprogress_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\37ea7d9587e54acc7afa27dc26096f4f\_usedelta_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\465051190fb8d828b4627a17e6ebb718\mso.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\empty.cat
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\spmsg.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\spuninst.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\_downloadprogress_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\_file_to_execute_.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\_unpacked_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\_useselfcontained_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\update\eula.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\update\kb973442.cat
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\update\update.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\update\update.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\update\update.ver
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\update\updspapi.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\7367cc85a3216a04275b2b934e848fad\wm11\wmvdecod.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\spmsg.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\spuninst.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\susdl.req
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\WindowsXP-KB954459-x86-ENU.psm
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\_downloadprogress_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\_unpacked_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\_usedelta_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\backup\sp3gdr\msxml6.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\backup\sp3qfe\msxml6.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\download\BIT8.tmp
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\branches.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\eula.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\KB954459.cat
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\spcustom.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\update.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\update.url
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\update.ver
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\updatebr.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\update_SP3GDR.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\update_SP3QFE.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bc2ad6db5316eb1d3eac8b2fd9b863c6\update\updspapi.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\bd29afd3f639530bf85ce5815b193bba\dw20shared.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\spmsg.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\spuninst.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\_downloadprogress_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\_file_to_execute_.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\_unpacked_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\_useselfcontained_.state
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\ie4uinit.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\iedkcs32.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\iedvtool.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\ieframe.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\iepeers.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\ieproxy.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\iertutil.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\ieuinit.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\inetcpl.cpl
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\jsproxy.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\msfeeds.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\msfeedsbs.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\mshtml.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\mstime.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\occache.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\urlmon.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\wininet.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\xpshims.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\ie4uinit.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\iedkcs32.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\iedvtool.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\ieframe.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\iepeers.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\ieproxy.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\iertutil.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\ieuinit.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\inetcpl.cpl
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\jsproxy.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\msfeeds.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\msfeedsbs.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\mshtml.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\mstime.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\occache.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\urlmon.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\wininet.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\xpshims.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\branches.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\eula.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\KB982381-IE8.CAT
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\spcustom.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\update.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\update.ver
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\updatebr.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\update_SP3GDR.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\update_SP3QFE.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\update\updspapi.dll
Deleted file - C:\WINDOWS\SoftwareDistribution\Download\Install\AM_Delta_Patch_1.165.870.0.exe
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default\wsus3setup.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default\wsus3setup.cat
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default\wsus3setup.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default\wuident.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default\wuident.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Registered\muident.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Registered\muident.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Registered\musetup.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Registered\musetup.cat
Deleted file - C:\WINDOWS\SoftwareDistribution\SelfUpdate\Registered\musetup.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\WebSetup\wsus3setup.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\WebSetup\wsus3setup.cat
Deleted file - C:\WINDOWS\SoftwareDistribution\WebSetup\wsus3setup.inf
Deleted file - C:\WINDOWS\SoftwareDistribution\WebSetup\wuident.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\WebSetup\wuident.txt
Deleted file - C:\WINDOWS\SoftwareDistribution\WuRedir\7971F918-A847-4430-9279-4A52D1EFE18D\muredir.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\WuRedir\7971F918-A847-4430-9279-4A52D1EFE18D\muv4muredir.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\WuRedir\7971F918-A847-4430-9279-4A52D1EFE18D\wuredir.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77\muv4wuredir.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77\wuredir.cab
Deleted file - C:\WINDOWS\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77\wuredir.xml
Deleted file - C:\WINDOWS\system32\catroot2\dberr.txt
Deleted file - C:\WINDOWS\system32\catroot2\edb.chk
Deleted file - C:\WINDOWS\system32\catroot2\edb.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00220.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00221.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00222.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00223.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00224.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00225.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00226.log
Deleted file - C:\WINDOWS\system32\catroot2\edb00227.log
Deleted file - C:\WINDOWS\system32\catroot2\res1.log
Deleted file - C:\WINDOWS\system32\catroot2\res2.log
Deleted file - C:\WINDOWS\system32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
Deleted file - C:\WINDOWS\system32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\TimeStamp
Deleted file - C:\WINDOWS\system32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
Deleted file - C:\WINDOWS\system32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\TimeStamp
[SC] SetServiceObjectSecurity SUCCESS
[SC] SetServiceObjectSecurity SUCCESS

Sucessfully reset the Winsock Catalog.
You must restart the machine in order to complete the reset.

[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
The Cryptographic Services service is not started.

More help is available by typing NET HELPMSG 3521.

The Background Intelligent Transfer Service service is not started.

More help is available by typing NET HELPMSG 3521.

The Automatic Updates service is not started.

More help is available by typing NET HELPMSG 3521.

The system cannot find the file specified.
Could Not Find C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr*.dat
Path not found - C:\WINDOWS\SoftwareDistribution
The system cannot find the file specified.
The system cannot find the file specified.
Deleted file - C:\WINDOWS\system32\catroot2\dberr.txt
Deleted file - C:\WINDOWS\system32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\TimeStamp
[SC] SetServiceObjectSecurity SUCCESS
[SC] SetServiceObjectSecurity SUCCESS

Sucessfully reset the Winsock Catalog.
You must restart the machine in order to complete the reset.

[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS

 

Sucessfully reset the Winsock Catalog.
You must restart the machine in order to complete the reset.

 

Windows IP Configuration

 

Successfully flushed the DNS Resolver Cache.

 

Windows IP Configuration

 

Registration of the DNS resource records for all adapters of this computer has been initiated. Any errors will be reported in the Event Viewer in 15 minutes..

Sucessfully reset the Winsock Catalog.
You must restart the machine in order to complete the reset.

 

Windows IP Configuration

 

Successfully flushed the DNS Resolver Cache.

 

Windows IP Configuration

 

Registration of the DNS resource records for all adapters of this computer has been initiated. Any errors will be reported in the Event Viewer in 15 minutes..

 

 

The following services are dependent on the Windows Management Instrumentation service.
Stopping the Windows Management Instrumentation service will also stop these services.

   Security Center
   Windows Firewall/Internet Connection Sharing (ICS)
   ForceWare IP service
   ForceWare Intelligent Application Manager (IAM)

The Security Center service is stopping.
The Security Center service was stopped successfully.

The Windows Firewall/Internet Connection Sharing (ICS) service was stopped successfully.

The ForceWare IP service service is stopping..
The ForceWare IP service service was stopped successfully.

The ForceWare Intelligent Application Manager (IAM) service is stopping.
The ForceWare Intelligent Application Manager (IAM) service was stopped successfully.

The Windows Management Instrumentation service is stopping.
The Windows Management Instrumentation service was stopped successfully.

Deleted file - C:\WINDOWS\System32\Wbem\Repository\$WinMgmt.CFG
Deleted file - C:\WINDOWS\System32\Wbem\Repository\FS\INDEX.BTR
Deleted file - C:\WINDOWS\System32\Wbem\Repository\FS\INDEX.MAP
Deleted file - C:\WINDOWS\System32\Wbem\Repository\FS\MAPPING.VER
Deleted file - C:\WINDOWS\System32\Wbem\Repository\FS\MAPPING1.MAP
Deleted file - C:\WINDOWS\System32\Wbem\Repository\FS\MAPPING2.MAP
Deleted file - C:\WINDOWS\System32\Wbem\Repository\FS\OBJECTS.DATA
Deleted file - C:\WINDOWS\System32\Wbem\Repository\FS\OBJECTS.MAP
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\02E78424AB18BDBFA706C08B7D7B9F1D.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\092389D621F5A8834203DAAC74CCA279.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\0A9DBC92D554324656F61F9862679F27.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\14C5A2A3C41254184B007011E5565E5B.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\1E97A05DE566CF6EEAE29D0634E27392.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\1EBE968EB7AF815A32641E6185350A9E.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\20D2C3B8CE10B96CE6B8A3C241EF4416.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\26C097A9392F8C541AD42E89B7909073.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\26D6C4EB696DD0C83F5D5BF2235000A7.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\2A61A823DC2C1C838EE71C4351BED0B4.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\2AA23BB86A5EBD8BC2D820944E55B233.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\2B8B1A8B0ACD3EE28B421D3918DC1F29.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\2C142C4C15E3B8D139B98154CD083071.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\2CE64FBD51953C097BB5470043A6DAF9.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\2DA80135BA8EC175C9B1C1598F659434.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\37134956F76D3C30C9BE0C12571CAF43.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\3EC317800FF508210BB945C81C0EACE7.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\42355E8E232EF8CADD187D531DEC55DD.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\42C894EEACAD83A4E41154685841B3E1.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\608B41C6A2CD9460C2263E6CD80C335A.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\6B38F33147D0369D5038BBB61C7A31C8.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\701B705ED7DF100F88D5BC4A595E938D.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\72F867EF62976CE9F70993FF3E68A4EB.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\731AE1FC8C795979F40FAD645FFBAEB1.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\79E817BC978E2D450EB9E3794DFDA6CF.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\7A62FA52E22CE751514BC93BE067BC80.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\7BDE76979585395D59B5DA1D62E63C50.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\7E27EAAD25AA36FEADFF502991DFC5C1.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\7F417E1A6D819A9B2FEB55DA6858EA0A.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\808DA771D27710539621CD5ADC7606AC.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\852ECCDBABE77624586E4417FE66F857.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\8636DC7F9479DACE6778109CB4FB4B01.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\903E49C444C46FEF5F2C3A189C9CEF71.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\958A50DFF8A9DF5FAEA042AC9F60815F.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\9AD3182A2F39A3E091E15109132EC6CC.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\A7575F8DE31A912FFE91A7A41B1E382A.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\A99860BB696AE92ED001E48B014365CE.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\ABB70D53B97FC8002205F77E02C97304.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\AE7023598F41510BF261111652046301.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\AEA50E449C23761CA4D9B7F9ED0D9C89.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\BE81B2C0741907C1FC1C42B6223E59AD.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\C6300BFE37ADE6B52EC023F66124985F.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\C81ACF420917AA0F87487BC4D958BEB4.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\C92641594A6F2DA8A55FE4738AFDA539.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\CA0106054EB09C302ED3E0669F99D021.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\CFC35B349D24A8495FD2CEAB15C32D88.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\DBD781C2C031C708BCB490F228E7BEF9.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\DC999686F8B85B326CEDFA199DD07F72.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\DFB9AD54AC2D3B8122567AAD3BF3EB7F.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\DFD614E4D613EF4506AC8F525F5F514B.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\E04DE4CDFEC284A342159BB920976701.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\E441354B9FE5F63362A481C9B9195A73.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\E478A5DB75C9721E744C05D78DBACFD3.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\E737DE61441445E1FDFCA45EF5E7D987.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\EDBF963FB003D0670AA9C2219BD091FB.mof
Deleted file - C:\WINDOWS\System32\Wbem\AutoRecover\FAAD7D567E76CAB10704AFD7C0488F23.mof
The Windows Management Instrumentation service is starting.
The Windows Management Instrumentation service was started successfully.

Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\documents and settings\arie\local settings\application data\tomtom\home\profiles\7jw2jixk.default\xpc.mfl
c:\documents and settings\arie\local settings\application data\tomtom\home\profiles\7jw2jixk.default\xpc.mfl (1): error SYNTAX 0X8004400a: Unexpected token at file scope

Compiler returned error 0x8004400aMicrosoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\documents and settings\arie\local settings\application data\tomtom\home\profiles\7jw2jixk.default\xul.mfl
c:\documents and settings\arie\local settings\application data\tomtom\home\profiles\7jw2jixk.default\xul.mfl (1): error SYNTAX 0X8004400a: Unexpected token at file scope

Compiler returned error 0x8004400aMicrosoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppwmi.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\program files\zune\drivers\zunebusenum\zumbus.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\valueadd\msft\mgmt\cimv2r5\cimv2r5.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\microsoft.net\framework\v1.1.4322\aspnet.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\microsoft.net\framework\v2.0.50727\adonetdiag.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\microsoft.net\framework\v2.0.50727\aspnet.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\microsoft.net\framework\v2.0.50727\clr.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\microsoft.net\framework\v3.0\windows communication foundation\servicemodel.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\microsoft.net\framework\v3.5\mof\servicemodel35.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\msdtc\trace\msdtctr.mof
c:\windows\system32\msdtc\trace\msdtctr.mof (5): error SYNTAX 0X8004400a: Unexpected token at file scope

Compiler returned error 0x8004400aMicrosoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\cimwin32.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\dgnet.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\dsprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\evntrprv.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\fconprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\fevprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\hnetcfg.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\ieinfo5.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\krnlprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\licwmi.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\msi.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\napclientprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\napclientschema.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\ncprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\ntevt.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\outlook_01cbe5ec9be8791c.mof
MOF file has been successfully parsed
Storing data in the repository...
An error occurred while creating object 1 defined on lines 31 - 163:
0X80041002 Class, instance, or property 'Win32_PerfRawData' was not found.
Compiler returned error 0x80041001Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\regevent.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\scm.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\scrcons.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\secrcw32.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\smtpcons.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\sr.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\subscrpt.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\system.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\tmplprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\trnsprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\tscfgwmi.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\updprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wbemcons.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\whqlprov.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmi.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipcima.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipdskq.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipicmp.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipiprt.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipjobj.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipsess.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmitimep.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wscenter.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\cimwin32.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\dsprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\fconprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\fevprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\krnlprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\licwmi.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\msi.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\ncprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\ntevt.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\regevent.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\scrcons.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\secrcw32.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\smtpcons.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\tmplprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\trnsprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\tscfgwmi.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\updprov.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wbemcons.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmi.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipcima.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipdskq.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipicmp.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipiprt.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipjobj.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmipsess.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\wmitimep.mfl
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\system32\wbem\mof\good\msioff10.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\wbem\msfeeds.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!
Microsoft ® 32-bit MOF Compiler Version 5.1.2600.5512
Copyright © Microsoft Corp. 1997-2001. All rights reserved.
Parsing MOF file: c:\windows\wbem\msfeedsbs.mof
MOF file has been successfully parsed
Storing data in the repository...
Done!

 

Error:  The system cannot find the file specified.

 
Error:  The system cannot find the file specified.

 
Error:  The system cannot find the file specified.

 
Error:  The system cannot find the file specified.

 
Error:  The system cannot find the file specified.

 
Error:  The system cannot find the file specified.

 
Error:  The system cannot find the file specified.

 
Error:  The system cannot find the file specified.

 

 

WARNING HKEY_CLASSES_ROOT\* : registry key is skipped (contains wildcard)

WARNING HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\mk\* : registry key is skipped (contains wildcard)

 

 

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4536918A-95A8-498F-B542-CB906C561A43}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\microsoft.com\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Classes\* : registry key is skipped (contains wildcard)

 

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4536918A-95A8-498F-B542-CB906C561A43}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\microsoft.com\* : registry key is skipped (contains wildcard)

WARNING HKEY_CURRENT_USER\Software\Classes\* : registry key is skipped (contains wildcard)

 

HKEY_LOCAL_MACHINE\SECURITY\Policy\Secrets\SAC : 2 The system cannot find the file specified.

HKEY_LOCAL_MACHINE\SECURITY\Policy\Secrets\SAI : 2 The system cannot find the file specified.

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Classes\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\mk\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\AutoConfigDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\AutoConfigDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\AutoConfigDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\Dlwin.exe\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\MSWIN.EXE\* : registry key is skipped (contains wildcard)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009 - RegSetKeySecurity Error : 6 The handle is invalid.

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

 

HKEY_LOCAL_MACHINE\SECURITY\Policy\Secrets\SAC : 2 The system cannot find the file specified.

HKEY_LOCAL_MACHINE\SECURITY\Policy\Secrets\SAI : 2 The system cannot find the file specified.

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Classes\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\mk\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\AutoConfigDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\AutoConfigDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\AutoConfigDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\iexplore\AllowedDomains\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\Dlwin.exe\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\MSWIN.EXE\* : registry key is skipped (contains wildcard)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009 - RegSetKeySecurity Error : 6 The handle is invalid.

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SOFTWARE\ODBC\ODBCINST.INI\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)

WARNING HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\* : registry key is skipped (contains wildcard)



#10 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 31 December 2013 - 05:37 PM

I just found the TDSSKiller log, so attaching this and hoping it's not too late to look :)

 

21:48:17.0000 0x1658  TDSS rootkit removing tool 3.0.0.19 Nov 18 2013 09:27:50
21:48:23.0234 0x1658  ============================================================
21:48:23.0234 0x1658  Current date / time: 2013/12/29 21:48:23.0234
21:48:23.0234 0x1658  SystemInfo:
21:48:23.0234 0x1658 
21:48:23.0234 0x1658  OS Version: 5.1.2600 ServicePack: 3.0
21:48:23.0234 0x1658  Product type: Workstation
21:48:23.0234 0x1658  ComputerName: ACER-42041E6643
21:48:23.0234 0x1658  UserName: arie
21:48:23.0234 0x1658  Windows directory: C:\WINDOWS
21:48:23.0234 0x1658  System windows directory: C:\WINDOWS
21:48:23.0234 0x1658  Processor architecture: Intel x86
21:48:23.0234 0x1658  Number of processors: 2
21:48:23.0234 0x1658  Page size: 0x1000
21:48:23.0234 0x1658  Boot type: Normal boot
21:48:23.0234 0x1658  ============================================================
21:48:25.0281 0x1658  KLMD registered as C:\WINDOWS\system32\drivers\46335428.sys
21:48:26.0484 0x1658  System UUID: {4402786A-6E48-30E4-C27B-04FDBF63F44C}
21:48:29.0671 0x1658  Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000058
21:48:29.0734 0x1658  Drive \Device\Harddisk1\DR5 - Size: 0x774488000 (29.82 Gb), SectorSize: 0x200, Cylinders: 0xF34, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
21:48:29.0734 0x1658  ============================================================
21:48:29.0734 0x1658  \Device\Harddisk0\DR0:
21:48:29.0750 0x1658  MBR partitions:
21:48:29.0750 0x1658  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1E00800, BlocksNum 0x10C18800
21:48:29.0750 0x1658  \Device\Harddisk1\DR5:
21:48:29.0765 0x1658  MBR partitions:
21:48:29.0765 0x1658  \Device\Harddisk1\DR5\Partition1: MBR, Type 0xC, StartLBA 0x20, BlocksNum 0x3BA2420
21:48:29.0765 0x1658  ============================================================
21:48:29.0953 0x1658  C: <-> \Device\Harddisk0\DR0\Partition1
21:48:29.0953 0x1658  ============================================================
21:48:29.0953 0x1658  Initialize success
21:48:29.0953 0x1658  ============================================================
21:48:35.0953 0x16ec  ============================================================
21:48:35.0953 0x16ec  Scan started
21:48:35.0953 0x16ec  Mode: Manual;
21:48:35.0953 0x16ec  ============================================================
21:48:35.0953 0x16ec  KSN ping started
21:48:38.0781 0x16ec  KSN ping finished: true
21:48:39.0000 0x16ec  ================ Scan system memory ========================
21:48:39.0000 0x16ec  System memory - ok
21:48:39.0000 0x16ec  ================ Scan services =============================
21:48:39.0468 0x16ec  Abiosdsk - ok
21:48:39.0562 0x16ec  [ 6ABB91494FE6C59089B9336452AB2EA3, FA28396820E44F991891042E051A4414485B54D456F252E03E3FFE1B4B4CF843 ] abp480n5        C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
21:48:39.0562 0x16ec  abp480n5 - ok
21:48:39.0875 0x16ec  [ 8FD99680A539792A30E97944FDAECF17, 594F8E0C3695400B0C09A797AF6BDFAC6F750ECD67D0EE803914C572B1DCC43C ] ACPI            C:\WINDOWS\system32\DRIVERS\ACPI.sys
21:48:39.0906 0x16ec  ACPI - ok
21:48:39.0937 0x16ec  [ 9859C0F6936E723E4892D7141B1327D5, 5E8F6A2FC4DF2E5E92A1D66ECC2810E08B42B64E9CD0DF4AD3F78EA8558B90AF ] ACPIEC          C:\WINDOWS\system32\drivers\ACPIEC.sys
21:48:39.0937 0x16ec  ACPIEC - ok
21:48:40.0062 0x16ec  [ 1BA1AB4141A92EB34DA99F1249CA2D4D, 43ADF35146E61E0DE58D2ACC2994538F6025135ECEB30073BEF05A804BB38107 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:48:40.0109 0x16ec  AdobeFlashPlayerUpdateSvc - ok
21:48:40.0187 0x16ec  [ 9A11864873DA202C996558B2106B0BBC, 4C68F1DBD1541291DD0FAB78DB42B25FA051CD9F55ED869173E3219CD31500C4 ] adpu160m        C:\WINDOWS\system32\DRIVERS\adpu160m.sys
21:48:40.0203 0x16ec  adpu160m - ok
21:48:40.0312 0x16ec  [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec             C:\WINDOWS\system32\drivers\aec.sys
21:48:40.0343 0x16ec  aec - ok
21:48:40.0421 0x16ec  [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD             C:\WINDOWS\System32\drivers\afd.sys
21:48:40.0437 0x16ec  AFD - ok
21:48:40.0500 0x16ec  [ 08FD04AA961BDC77FB983F328334E3D7, A784EC8A9EDB579262366B5A9AB177DB7BEC0A421BDE85431D0AD4959D5AF5E7 ] agp440          C:\WINDOWS\system32\DRIVERS\agp440.sys
21:48:40.0515 0x16ec  agp440 - ok
21:48:40.0531 0x16ec  [ 03A7E0922ACFE1B07D5DB2EEB0773063, 93EEA872A5642C95FF19C81F8EFFB9B52742A14DBF138784F0F713AD18C413ED ] agpCPQ          C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
21:48:40.0531 0x16ec  agpCPQ - ok
21:48:40.0609 0x16ec  [ C23EA9B5F46C7F7910DB3EAB648FF013, 92C84E9AF278A3B55D56C4F8E6C10E3EF1F7B336A44A018AED6DC51A46671F0B ] Aha154x         C:\WINDOWS\system32\DRIVERS\aha154x.sys
21:48:40.0609 0x16ec  Aha154x - ok
21:48:40.0640 0x16ec  [ 19DD0FB48B0C18892F70E2E7D61A1529, 95BA1568E8E08314508CA0E1F95555891E70399AEC312C793B46A841F56FFDCF ] aic78u2         C:\WINDOWS\system32\DRIVERS\aic78u2.sys
21:48:40.0640 0x16ec  aic78u2 - ok
21:48:40.0671 0x16ec  [ B7FE594A7468AA0132DEB03FB8E34326, BF0DC2B8C474DB151589BA9968264413521DDD9E7316B752B2FA40C24200FBE0 ] aic78xx         C:\WINDOWS\system32\DRIVERS\aic78xx.sys
21:48:40.0671 0x16ec  aic78xx - ok
21:48:40.0718 0x16ec  [ A9A3DAA780CA6C9671A19D52456705B4, 67C959144B57AE0BBF1D82DBED197F32CDB06FECD883A80C441A0202FE83FAB4 ] Alerter         C:\WINDOWS\system32\alrsvc.dll
21:48:40.0734 0x16ec  Alerter - ok
21:48:40.0765 0x16ec  [ 8C515081584A38AA007909CD02020B3D, A5E13CA10F702928E0DE84C74D0EA8ACCB117FD76FBABC55220C75C4FFD596DC ] ALG             C:\WINDOWS\System32\alg.exe
21:48:40.0781 0x16ec  ALG - ok
21:48:40.0796 0x16ec  [ 1140AB9938809700B46BB88E46D72A96, 369379ECC5941ACE984A7F31EAABB66A2E693EDBADA639B86D26FD681D45608E ] AliIde          C:\WINDOWS\system32\DRIVERS\aliide.sys
21:48:40.0796 0x16ec  AliIde - ok
21:48:40.0828 0x16ec  [ CB08AED0DE2DD889A8A820CD8082D83C, B1A9D493390AEDF6EFF8BCAA3B33EC31758452AB497C34C0728CDDA1D8DCBF2A ] alim1541        C:\WINDOWS\system32\DRIVERS\alim1541.sys
21:48:40.0828 0x16ec  alim1541 - ok
21:48:41.0046 0x16ec  [ F6AF59D6EEE5E1C304F7F73706AD11D8, F5D39EF40CDB5102A84C8594CFC54DDBD5060E193E6D07421A9003D2ABC63E30 ] Ambfilt         C:\WINDOWS\system32\drivers\Ambfilt.sys
21:48:42.0140 0x16ec  Ambfilt - ok
21:48:42.0187 0x16ec  [ 95B4FB835E28AA1336CEEB07FD5B9398, 36CD3B14EF78B01FB653B78187FAA63C4DD5F4137AC3B91D81256A350EEDCBC1 ] amdagp          C:\WINDOWS\system32\DRIVERS\amdagp.sys
21:48:42.0203 0x16ec  amdagp - ok
21:48:42.0234 0x16ec  [ 79F5ADD8D24BD6893F2903A3E2F3FAD6, 9B179F0B6A559639D3AE3975CEBF2718294BE5743517BEE06586F0D258164C81 ] amsint          C:\WINDOWS\system32\DRIVERS\amsint.sys
21:48:42.0296 0x16ec  amsint - ok
21:48:42.0312 0x16ec  AppMgmt - ok
21:48:42.0406 0x16ec  [ 62D318E9A0C8FC9B780008E724283707, 1A69806AB2BDECCEB5EB23A80700B3F98983D5D67F78839CBF269087FA460757 ] asc             C:\WINDOWS\system32\DRIVERS\asc.sys
21:48:42.0421 0x16ec  asc - ok
21:48:42.0437 0x16ec  [ 69EB0CC7714B32896CCBFD5EDCBEA447, 1CB506B5F71F84EFD26961010681D0A79AA7B266573378E3D2755125DF5D6BB6 ] asc3350p        C:\WINDOWS\system32\DRIVERS\asc3350p.sys
21:48:42.0437 0x16ec  asc3350p - ok
21:48:42.0468 0x16ec  [ 5D8DE112AA0254B907861E9E9C31D597, 557C93E82A71131D226267151C84B197503831A16263DDFE040E996B605CA9E8 ] asc3550         C:\WINDOWS\system32\DRIVERS\asc3550.sys
21:48:42.0468 0x16ec  asc3550 - ok
21:48:42.0703 0x16ec  [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state    C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:48:42.0781 0x16ec  aspnet_state - ok
21:48:42.0859 0x16ec  [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac        C:\WINDOWS\system32\DRIVERS\asyncmac.sys
21:48:42.0875 0x16ec  AsyncMac - ok
21:48:42.0984 0x16ec  [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi           C:\WINDOWS\system32\DRIVERS\atapi.sys
21:48:43.0062 0x16ec  atapi - ok
21:48:43.0078 0x16ec  Atdisk - ok
21:48:43.0125 0x16ec  [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc         C:\WINDOWS\system32\DRIVERS\atmarpc.sys
21:48:43.0140 0x16ec  Atmarpc - ok
21:48:43.0187 0x16ec  [ DEF7A7882BEC100FE0B2CE2549188F9D, 462C95B63D0A1058291A2DC8CBFCB13D7D74CCD1CA43B613A7EB43D49E3276F8 ] AudioSrv        C:\WINDOWS\System32\audiosrv.dll
21:48:43.0187 0x16ec  AudioSrv - ok
21:48:43.0265 0x16ec  [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub         C:\WINDOWS\system32\DRIVERS\audstub.sys
21:48:43.0265 0x16ec  audstub - ok
21:48:43.0343 0x16ec  [ 15ACA2AD17ACECA4814F249783E63AD3, AB8E74A5B8FC2FD04BA2B495610A8BE76408E9362A447D7069D5AAB8F3512F33 ] avgtp           C:\WINDOWS\system32\drivers\avgtpx86.sys
21:48:43.0343 0x16ec  avgtp - ok
21:48:43.0421 0x16ec  [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
21:48:43.0453 0x16ec  Beep - ok
21:48:43.0531 0x16ec  [ 574738F61FCA2935F5265DC4E5691314, 3C7CCF064397186C3A3863DD2370AB6414A61B330097DCA4F299CA7BBAA3D1B4 ] BITS            C:\WINDOWS\system32\qmgr.dll
21:48:43.0687 0x16ec  BITS - ok
21:48:43.0765 0x16ec  [ CFD4E51402DA9838B5A04AE680AF54A0, 5378F42B195B5832B00A05AD64E00473A45FFB86AC25C57241F26EA82B149FE1 ] Browser         C:\WINDOWS\System32\browser.dll
21:48:43.0765 0x16ec  Browser - ok
21:48:43.0859 0x16ec  [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf           C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
21:48:43.0859 0x16ec  cbidf - ok
21:48:43.0890 0x16ec  [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k         C:\WINDOWS\system32\drivers\cbidf2k.sys
21:48:43.0890 0x16ec  cbidf2k - ok
21:48:43.0937 0x16ec  [ 0BE5AEF125BE881C4F854C554F2B025C, 1770DD70B3F115A0EF460907DEDC1E4B7241C08615A98F194D61A49C3E2BAA54 ] CCDECODE        C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
21:48:43.0968 0x16ec  CCDECODE - ok
21:48:44.0000 0x16ec  [ F3EC03299634490E97BBCE94CD2954C7, CDC85ADA27E0D501581CE6F28D7E1941E90411FA8E8F2C43A68BAA8CB78E85DD ] cd20xrnt        C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
21:48:44.0000 0x16ec  cd20xrnt - ok
21:48:44.0046 0x16ec  [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio         C:\WINDOWS\system32\drivers\Cdaudio.sys
21:48:44.0046 0x16ec  Cdaudio - ok
21:48:44.0109 0x16ec  [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs            C:\WINDOWS\system32\drivers\Cdfs.sys
21:48:44.0125 0x16ec  Cdfs - ok
21:48:44.0187 0x16ec  [ 4B0A100EAF5C49EF3CCA8C641431EACC, 88D9C066FFB863910EE1863CE63D38846ACA2DF72D6B5FDFCE0F3379A6DA5EF9 ] Cdrom           C:\WINDOWS\system32\DRIVERS\cdrom.sys
21:48:44.0218 0x16ec  Cdrom - ok
21:48:44.0234 0x16ec  Changer - ok
21:48:44.0359 0x16ec  [ 1CFE720EB8D93A7158A4EBC3AB178BDE, 65D2A9D9A88F38D4AF323134C151BA0F4B3CD0F6A134AF86E7AC9D07319F1726 ] CiSvc           C:\WINDOWS\system32\cisvc.exe
21:48:44.0390 0x16ec  CiSvc - ok
21:48:44.0437 0x16ec  [ 34CBE729F38138217F9C80212A2A0C82, A9FD7A758D12E0818A11BEEF1CE772FEFA8373E92EF6C0DA8628CD4572CC9A43 ] ClipSrv         C:\WINDOWS\system32\clipsrv.exe
21:48:44.0437 0x16ec  ClipSrv - ok
21:48:44.0500 0x16ec  [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:48:44.0609 0x16ec  clr_optimization_v2.0.50727_32 - ok
21:48:44.0640 0x16ec  [ E5DCB56C533014ECBC556A8357C929D5, B2915C0C07EDBA59C5D02680804C4C2DE099D73DE0D0DD0CDA748F34F11057E0 ] CmdIde          C:\WINDOWS\system32\DRIVERS\cmdide.sys
21:48:44.0640 0x16ec  CmdIde - ok
21:48:44.0671 0x16ec  COMSysApp - ok
21:48:44.0781 0x16ec  [ 3EE529119EED34CD212A215E8C40D4B6, A6B71F3D4EE7358CA85F010E6271A6B72226D25DF30ED331DA830639ED3E9903 ] Cpqarray        C:\WINDOWS\system32\DRIVERS\cpqarray.sys
21:48:44.0796 0x16ec  Cpqarray - ok
21:48:44.0859 0x16ec  [ 3D4E199942E29207970E04315D02AD3B, 0825960894CF9C86CC8775BDD2A262948A09CA495AA7FE9F210FAF49E7086383 ] CryptSvc        C:\WINDOWS\System32\cryptsvc.dll
21:48:44.0875 0x16ec  CryptSvc - ok
21:48:44.0906 0x16ec  [ E550E7418984B65A78299D248F0A7F36, 52F6BD1027E91F9A90AFAB82C7F2A0314B7E55262F5293D5F9F8F12135EDD88C ] dac2w2k         C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
21:48:44.0937 0x16ec  dac2w2k - ok
21:48:44.0953 0x16ec  [ 683789CAA3864EB46125AE86FF677D34, B725D026E069AD253192E21245260CBA44EF3C72781616A2CAD0BF0E2D86D510 ] dac960nt        C:\WINDOWS\system32\DRIVERS\dac960nt.sys
21:48:44.0968 0x16ec  dac960nt - ok
21:48:45.0062 0x16ec  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
21:48:45.0109 0x16ec  DcomLaunch - ok
21:48:45.0234 0x16ec  [ 5E38D7684A49CACFB752B046357E0589, F192AD4190BCFB6939A5CBC91648FE63168AF79A5E227A111DEAD6A92E42AB8D ] Dhcp            C:\WINDOWS\System32\dhcpcsvc.dll
21:48:45.0250 0x16ec  Dhcp - ok
21:48:45.0296 0x16ec  [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk            C:\WINDOWS\system32\DRIVERS\disk.sys
21:48:45.0312 0x16ec  Disk - ok
21:48:45.0328 0x16ec  dmadmin - ok
21:48:45.0468 0x16ec  [ D992FE1274BDE0F84AD826ACAE022A41, C82BD6561A14F2932A761F5883A787B99031250EE5E9B7B5714AA045545C9B99 ] dmboot          C:\WINDOWS\system32\drivers\dmboot.sys
21:48:45.0531 0x16ec  dmboot - ok
21:48:45.0578 0x16ec  [ 7C824CF7BBDE77D95C08005717A95F6F, A73CB323B7A6410C3D3F258BF204E716ADF8C84C9E4F6562C57AB73DAED8CCDE ] dmio            C:\WINDOWS\system32\drivers\dmio.sys
21:48:45.0593 0x16ec  dmio - ok
21:48:45.0750 0x16ec  [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload          C:\WINDOWS\system32\drivers\dmload.sys
21:48:45.0765 0x16ec  dmload - ok
21:48:45.0828 0x16ec  [ 57EDEC2E5F59F0335E92F35184BC8631, 61F6F0DC2D1A6C61D5EF0D5CC4BE0FFC217F1E61FDA3EA9F704709293656600F ] dmserver        C:\WINDOWS\System32\dmserver.dll
21:48:45.0828 0x16ec  dmserver - ok
21:48:45.0875 0x16ec  [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic          C:\WINDOWS\system32\drivers\DMusic.sys
21:48:45.0890 0x16ec  DMusic - ok
21:48:45.0984 0x16ec  [ 5F7E24FA9EAB896051FFB87F840730D2, 356EEFDCD54DECAD0170B34B993E4BF80DD039E2B2922D7A8D09B84031E9FC7A ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
21:48:46.0031 0x16ec  Dnscache - ok
21:48:46.0125 0x16ec  [ 0F0F6E687E5E15579EF4DA8DD6945814, 5C32D88119EB1465B2D719BEE2E05888D1A73454B5E33F2D4928DA710F8BFBA3 ] Dot3svc         C:\WINDOWS\System32\dot3svc.dll
21:48:46.0140 0x16ec  Dot3svc - ok
21:48:46.0187 0x16ec  [ 40F3B93B4E5B0126F2F5C0A7A5E22660, 8AFFF28903037F5E36BB5352F2B236A217558FCC0146B23C787606C3F21243DB ] dpti2o          C:\WINDOWS\system32\DRIVERS\dpti2o.sys
21:48:46.0187 0x16ec  dpti2o - ok
21:48:46.0265 0x16ec  [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
21:48:46.0265 0x16ec  drmkaud - ok
21:48:46.0328 0x16ec  [ B2C3F71B86E25C3DF78339DDB40A7562, E8B821B0F9DE213C9C5115FDCE3C59F98CB6C4015B3E4A1F96387C81E3EBA56A ] dsNcAdpt        C:\WINDOWS\system32\DRIVERS\dsNcAdpt.sys
21:48:46.0328 0x16ec  dsNcAdpt - ok
21:48:46.0531 0x16ec  [ 586855D6FD2BD978723B502306D6EC78, B9983EA0861DAFA16180EE8D4068E907D9FACB07B98AC56085448B6C67549BEA ] dsNcService     C:\Program Files\Juniper Networks\Common Files\dsNcService.exe
21:48:46.0609 0x16ec  dsNcService - ok
21:48:46.0640 0x16ec  [ 2187855A7703ADEF0CEF9EE4285182CC, 8233CC11F637866C0074043835A785EA2B616739B6B1181B143A253CF2508CFD ] EapHost         C:\WINDOWS\System32\eapsvc.dll
21:48:46.0656 0x16ec  EapHost - ok
21:48:46.0781 0x16ec  [ ABDD5AD016AFFD34AD40E944CE94BF59, 61089124CD8FEA31142CD4D3C47224A6310B9BE7B7FA974956D9EDDAD4381503 ] EpsonBidirectionalService C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe
21:48:46.0968 0x16ec  EpsonBidirectionalService - ok
21:48:47.0109 0x16ec  [ B78436CA173FF723A1EACE5CD4900375, 6B80EAD3111FB0A48AFF35C07F0FF7BEDDF1E34200EFC599B8E92CEE4B372736 ] EpsonCustomerParticipation C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
21:48:47.0187 0x16ec  EpsonCustomerParticipation - ok
21:48:47.0234 0x16ec  [ BC93B4A066477954555966D77FEC9ECB, 27F5B780175EF46DA102EE33F7F33559C8B40C077EEA4405D579D9507F4B1C23 ] ERSvc           C:\WINDOWS\System32\ersvc.dll
21:48:47.0250 0x16ec  ERSvc - ok
21:48:47.0265 0x16ec  eswamyiz - ok
21:48:47.0343 0x16ec  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] Eventlog        C:\WINDOWS\system32\services.exe
21:48:47.0390 0x16ec  Eventlog - ok
21:48:47.0484 0x16ec  [ D4991D98F2DB73C60D042F1AEF79EFAE, 58AF949EAEBF4FF3E3314DFB66CE4198BF65F0836B68CD27A6ED319742CCCCD2 ] EventSystem     C:\WINDOWS\system32\es.dll
21:48:47.0578 0x16ec  EventSystem - ok
21:48:47.0687 0x16ec  [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat         C:\WINDOWS\system32\drivers\Fastfat.sys
21:48:47.0750 0x16ec  Fastfat - ok
21:48:47.0843 0x16ec  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
21:48:47.0890 0x16ec  FastUserSwitchingCompatibility - ok
21:48:48.0046 0x16ec  [ E97D6A8684466DF94FF3BC24FB787A07, 89E5A6889E3C5AB9AD3E80FFC16DD608278F3ADC282048B40B60196336A5CBEB ] Fax             C:\WINDOWS\system32\fxssvc.exe
21:48:48.0062 0x16ec  Fax - ok
21:48:48.0109 0x16ec  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc             C:\WINDOWS\system32\drivers\Fdc.sys
21:48:48.0109 0x16ec  Fdc - ok
21:48:48.0203 0x16ec  [ D45926117EB9FA946A6AF572FBE1CAA3, 4C94EF009D778BE0BDF8F812F026B96F91F641BE30AA2531427A5E63DBD280DA ] Fips            C:\WINDOWS\system32\drivers\Fips.sys
21:48:48.0234 0x16ec  Fips - ok
21:48:48.0312 0x16ec  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk        C:\WINDOWS\system32\drivers\Flpydisk.sys
21:48:48.0312 0x16ec  Flpydisk - ok
21:48:48.0375 0x16ec  [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr          C:\WINDOWS\system32\DRIVERS\fltMgr.sys
21:48:48.0375 0x16ec  FltMgr - ok
21:48:48.0562 0x16ec  [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
21:48:48.0578 0x16ec  FontCache3.0.0.0 - ok
21:48:48.0875 0x16ec  [ 34D2E12226269789BB5F292915B089D7, 5B10898706CC45BC9A027EFD33A5B60BE921A9D4C8F9E05A58E0AADE6EFA2DE6 ] ForceWare Intelligent Application Manager (IAM) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
21:48:48.0906 0x16ec  ForceWare Intelligent Application Manager (IAM) - ok
21:48:48.0968 0x16ec  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
21:48:48.0968 0x16ec  Fs_Rec - ok
21:48:49.0046 0x16ec  [ 6AC26732762483366C3969C9E4D2259D, FF2C9A23CC17F380093F0BEA955B1925794271C2FEA16B9B7639668E6999BAE3 ] Ftdisk          C:\WINDOWS\system32\DRIVERS\ftdisk.sys
21:48:49.0078 0x16ec  Ftdisk - ok
21:48:49.0218 0x16ec  [ 9F5F2F0FB0A7F5AA9F16B9A7B6DAD89F, 6D2B301E77839FFF1C74425B37D02C3F3837CE50E856C21AE4CF7ABABB04ADDC ] GoogleDesktopManager-051210-111108 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
21:48:49.0250 0x16ec  GoogleDesktopManager-051210-111108 - ok
21:48:49.0296 0x16ec  [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc             C:\WINDOWS\system32\DRIVERS\msgpc.sys
21:48:49.0296 0x16ec  Gpc - ok
21:48:49.0406 0x16ec  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
21:48:49.0421 0x16ec  gupdate - ok
21:48:49.0453 0x16ec  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
21:48:49.0453 0x16ec  gupdatem - ok
21:48:49.0562 0x16ec  [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc           C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
21:48:49.0593 0x16ec  gusvc - ok
21:48:49.0656 0x16ec  [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus        C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
21:48:49.0671 0x16ec  HDAudBus - ok
21:48:49.0687 0x16ec  hdchmrnv - ok
21:48:49.0828 0x16ec  [ 4FCCA060DFE0C51A09DD5C3843888BCD, D82417706B517F2610DDF7C86BE03A72EFA9A2A389DF5C8F8ADEAB8144E2C80A ] helpsvc         C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
21:48:49.0828 0x16ec  helpsvc - ok
21:48:49.0875 0x16ec  [ DEB04DA35CC871B6D309B77E1443C796, F66A15C9528D661940F1F4CA453B3E95036D68C74C3B8AB53644211DBD3D2F32 ] HidServ         C:\WINDOWS\System32\hidserv.dll
21:48:49.0875 0x16ec  HidServ - ok
21:48:49.0906 0x16ec  [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] hidusb          C:\WINDOWS\system32\DRIVERS\hidusb.sys
21:48:49.0921 0x16ec  hidusb - ok
21:48:49.0953 0x16ec  [ 8878BD685E490239777BFE51320B88E9, C5C3ECF6B049B6736E35B39518A8F830B45C45A88FFE8E3A6B7922AD946597E2 ] hkmsvc          C:\WINDOWS\System32\kmsvc.dll
21:48:49.0968 0x16ec  hkmsvc - ok
21:48:50.0015 0x16ec  [ B028377DEA0546A5FCFBA928A8AEFAE0, FD7B34A6036AD443014B16394A5F051A298CEE4276D50525FB9F15A0D2684C8B ] hpn             C:\WINDOWS\system32\DRIVERS\hpn.sys
21:48:50.0046 0x16ec  hpn - ok
21:48:50.0140 0x16ec  [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP            C:\WINDOWS\system32\Drivers\HTTP.sys
21:48:50.0156 0x16ec  HTTP - ok
21:48:50.0218 0x16ec  [ 6100A808600F44D999CEBDEF8841C7A3, 61A75118C327812C60622010985A2E80E79B6FD9030A5732390EE5426E4AF6C9 ] HTTPFilter      C:\WINDOWS\System32\w3ssl.dll
21:48:50.0234 0x16ec  HTTPFilter - ok
21:48:50.0265 0x16ec  [ 9368670BD426EBEA5E8B18A62416EC28, 0ED865F8FB79F0B6309521925280E8640DB5CA6F75377434830536899734B6EE ] i2omgmt         C:\WINDOWS\system32\drivers\i2omgmt.sys
21:48:50.0265 0x16ec  i2omgmt - ok
21:48:50.0328 0x16ec  [ F10863BF1CCC290BABD1A09188AE49E0, BC038EAE6C8A76D56A5AD27035DC0369D6E766711E9FAA7467144370851F1615 ] i2omp           C:\WINDOWS\system32\DRIVERS\i2omp.sys
21:48:50.0359 0x16ec  i2omp - ok
21:48:50.0609 0x16ec  [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc           c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:48:50.0796 0x16ec  idsvc - ok
21:48:50.0859 0x16ec  [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi           C:\WINDOWS\system32\DRIVERS\imapi.sys
21:48:50.0875 0x16ec  Imapi - ok
21:48:50.0984 0x16ec  [ 30DEAF54A9755BB8546168CFE8A6B5E1, 3936228CD3125C763ABFCB93E86E4B43838202BCC0913A28E84AC0263B43EE0D ] ImapiService    C:\WINDOWS\system32\imapi.exe
21:48:51.0000 0x16ec  ImapiService - ok
21:48:51.0062 0x16ec  [ 4A40E045FAEE58631FD8D91AFC620719, 7A2FD81BD483821B3DA01B1CD7215423EDD719CBE3862C0342FF7D21A17AF437 ] ini910u         C:\WINDOWS\system32\DRIVERS\ini910u.sys
21:48:51.0062 0x16ec  ini910u - ok
21:48:52.0078 0x16ec  [ 0CACDCBBC8E6F11E2865C47BFC509848, DD415DD9564BB1E99DA0DBE084CBF321DD55784F3ECC160521BFB4E06AC44523 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
21:48:54.0375 0x16ec  IntcAzAudAddService - ok
21:48:54.0468 0x16ec  [ B5466A9250342A7AA0CD1FBA13420678, 87E735C4E8924A883AB692D387A83BCBFAE6E165688336AE7AB488F7CA8D339E ] IntelIde        C:\WINDOWS\system32\DRIVERS\intelide.sys
21:48:54.0468 0x16ec  IntelIde - ok
21:48:54.0515 0x16ec  [ 8C953733D8F36EB2133F5BB58808B66B, 555868F246D73652E998B0B1296476E42FCEDED30D646CC000F31ECE4EBC25E6 ] intelppm        C:\WINDOWS\system32\DRIVERS\intelppm.sys
21:48:54.0515 0x16ec  intelppm - ok
21:48:54.0578 0x16ec  [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw           C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
21:48:54.0578 0x16ec  Ip6Fw - ok
21:48:54.0625 0x16ec  [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
21:48:54.0625 0x16ec  IpFilterDriver - ok
21:48:54.0687 0x16ec  [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp          C:\WINDOWS\system32\DRIVERS\ipinip.sys
21:48:54.0718 0x16ec  IpInIp - ok
21:48:54.0750 0x16ec  [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat           C:\WINDOWS\system32\DRIVERS\ipnat.sys
21:48:54.0765 0x16ec  IpNat - ok
21:48:54.0796 0x16ec  [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec           C:\WINDOWS\system32\DRIVERS\ipsec.sys
21:48:54.0812 0x16ec  IPSec - ok
21:48:54.0890 0x16ec  [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM          C:\WINDOWS\system32\DRIVERS\irenum.sys
21:48:54.0890 0x16ec  IRENUM - ok
21:48:54.0953 0x16ec  [ 05A299EC56E52649B1CF2FC52D20F2D7, 2654619DB3E6D6C385B63AB02F87D4241C4F0250CC31383D1B3586917166C2DC ] isapnp          C:\WINDOWS\system32\DRIVERS\isapnp.sys
21:48:54.0953 0x16ec  isapnp - ok
21:48:55.0062 0x16ec  [ 1758AF653723679E3746FC7DDD93C69B, 292132F6C19A9903203E3FF69665B0C90BFB2BE53ED92EC5644C397615525D40 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
21:48:55.0078 0x16ec  JavaQuickStarterService - ok
21:48:55.0156 0x16ec  [ 463C1EC80CD17420A542B7F36A36F128, E3B11BA26AFEAFB50B0FC168EA07F6049DA6B88BCDDEEE20310602D7FC27A3A7 ] Kbdclass        C:\WINDOWS\system32\DRIVERS\kbdclass.sys
21:48:55.0171 0x16ec  Kbdclass - ok
21:48:55.0187 0x16ec  [ 9EF487A186DEA361AA06913A75B3FA99, B94EBA4EC6D85E11C81AF9927E9EF0AF2E6FE134CFF1FDB0535B7C5A794B4261 ] kbdhid          C:\WINDOWS\system32\DRIVERS\kbdhid.sys
21:48:55.0203 0x16ec  kbdhid - ok
21:48:55.0281 0x16ec  [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer          C:\WINDOWS\system32\drivers\kmixer.sys
21:48:55.0296 0x16ec  kmixer - ok
21:48:55.0390 0x16ec  [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD          C:\WINDOWS\system32\drivers\KSecDD.sys
21:48:55.0406 0x16ec  KSecDD - ok
21:48:55.0453 0x16ec  [ 3A7C3CBE5D96B8AE96CE81F0B22FB527, 0044F03132596A494448CCE5F3D6ECC12617BB4CF6BAE348F79D4DC40ACD6EE0 ] LanmanServer    C:\WINDOWS\System32\srvsvc.dll
21:48:55.0468 0x16ec  LanmanServer - ok
21:48:55.0562 0x16ec  [ A8888A5327621856C0CEC4E385F69309, B08B63300D824E35E31EEEA2C4C086DFA2C2A964CEDAE512E74D3D88AADAA2C1 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
21:48:55.0578 0x16ec  lanmanworkstation - ok
21:48:55.0593 0x16ec  lbrtfdc - ok
21:48:55.0703 0x16ec  [ A7DB739AE99A796D91580147E919CC59, EDF4E039BA277B0E6D66FEB0B28096E67D682C09DFC18ECECF062D9DCFB75ACF ] LmHosts         C:\WINDOWS\System32\lmhsvc.dll
21:48:55.0718 0x16ec  LmHosts - ok
21:48:55.0734 0x16ec  maickoxv - ok
21:48:55.0796 0x16ec  [ 986B1FF5814366D71E0AC5755C88F2D3, E6AF051174531C24B38E73987755D366ABEC595476C6D17793E8DCCC73F55340 ] Messenger       C:\WINDOWS\System32\msgsvc.dll
21:48:55.0812 0x16ec  Messenger - ok
21:48:55.0937 0x16ec  Microsoft SharePoint Workspace Audit Service - ok
21:48:55.0984 0x16ec  [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd           C:\WINDOWS\system32\drivers\mnmdd.sys
21:48:55.0984 0x16ec  mnmdd - ok
21:48:56.0031 0x16ec  [ D18F1F0C101D06A1C1ADF26EED16FCDD, BA0837C7780BD8262E143E2935AFA63BE59C3C39EF56CB8608EED0F50AF070D4 ] mnmsrvc         C:\WINDOWS\system32\mnmsrvc.exe
21:48:56.0046 0x16ec  mnmsrvc - ok
21:48:56.0093 0x16ec  [ DFCBAD3CEC1C5F964962AE10E0BCC8E1, B342CC9EC3729AB1AB4B5E2E99F890C1E0CA649162DE91F6768AB857B719E97B ] Modem           C:\WINDOWS\system32\drivers\Modem.sys
21:48:56.0093 0x16ec  Modem - ok
21:48:56.0234 0x16ec  [ 9FA7207D1B1ADEAD88AE8EED9CDBBAA5, 2AC3875B2E7D9B0692253A9867B940CF214DE03574808B42C3702843BC1D5696 ] Monfilt         C:\WINDOWS\system32\drivers\Monfilt.sys
21:48:56.0343 0x16ec  Monfilt - ok
21:48:56.0390 0x16ec  [ 35C9E97194C8CFB8430125F8DBC34D04, 0C0FCE6B0A23FB0ECB92E1663E1C72D2DD5B177D82E04782957690B69530DB39 ] Mouclass        C:\WINDOWS\system32\DRIVERS\mouclass.sys
21:48:56.0406 0x16ec  Mouclass - ok
21:48:56.0468 0x16ec  [ B1C303E17FB9D46E87A98E4BA6769685, 161A45488522055D0F0474ABEDA04DDD0B5DAC2411AF9154B15190BBD66E7153 ] mouhid          C:\WINDOWS\system32\DRIVERS\mouhid.sys
21:48:56.0468 0x16ec  mouhid - ok
21:48:56.0531 0x16ec  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr        C:\WINDOWS\system32\drivers\MountMgr.sys
21:48:56.0531 0x16ec  MountMgr - ok
21:48:56.0640 0x16ec  [ 3B9398E0146855B1DC0E3D9769C80F01, DF69DB5CA30A5577648635C27DD468AF98515D07DF379B3FFDCC6B40744EDE66 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
21:48:56.0953 0x16ec  MozillaMaintenance - ok
21:48:57.0031 0x16ec  [ E77DC03DD3C8E5A388BF9EED2A28F3D1, ED0DAA975D1EC35CE036F02596218E15CC6A054167628D12A0A5AD91B841F422 ] MpFilter        C:\WINDOWS\system32\DRIVERS\MpFilter.sys
21:48:57.0046 0x16ec  MpFilter - ok
21:48:57.0218 0x16ec  [ 06D4F934E09C359B0EFBFB3146F1D910, 484F57CD6F8757137F3B3491B8AC8ECF6C6385A666CD1671833DDD9E962AAB4A ] MpKsl84a77b17   c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FF1D1440-C7BC-4FE1-8CD3-ECFFA08356E4}\MpKsl84a77b17.sys
21:48:57.0218 0x16ec  MpKsl84a77b17 - ok
21:48:57.0281 0x16ec  [ 3F4BB95E5A44F3BE34824E8E7CAF0737, 9A4F9E63AA55B779AF3563C66C8E40D9C42FF3BB5F533F70905ADC7A44EA7DAD ] mraid35x        C:\WINDOWS\system32\DRIVERS\mraid35x.sys
21:48:57.0281 0x16ec  mraid35x - ok
21:48:57.0359 0x16ec  [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV          C:\WINDOWS\system32\DRIVERS\mrxdav.sys
21:48:57.0390 0x16ec  MRxDAV - ok
21:48:57.0515 0x16ec  [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
21:48:57.0562 0x16ec  MRxSmb - ok
21:48:57.0625 0x16ec  [ A137F1470499A205ABBB9AAFB3B6F2B1, FB4951727543030D9E6ED74149C3FAACE2CA9DA8C1B5F616301B30B858C724E8 ] MSDTC           C:\WINDOWS\system32\msdtc.exe
21:48:57.0640 0x16ec  MSDTC - ok
21:48:57.0687 0x16ec  [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
21:48:57.0703 0x16ec  Msfs - ok
21:48:57.0718 0x16ec  MSIServer - ok
21:48:57.0765 0x16ec  [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
21:48:57.0781 0x16ec  MSKSSRV - ok
21:48:57.0875 0x16ec  [ B0F49DA36F30922F5DDC3B623B778FCE, EE025AEFA4A2095AFEABFB3A49639DA77D78068A3F5EEDA6C15D34853AFD5609 ] MsMpSvc         c:\Program Files\Microsoft Security Client\MsMpEng.exe
21:48:57.0875 0x16ec  MsMpSvc - ok
21:48:57.0937 0x16ec  [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
21:48:57.0937 0x16ec  MSPCLOCK - ok
21:48:57.0953 0x16ec  [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
21:48:57.0968 0x16ec  MSPQM - ok
21:48:58.0000 0x16ec  [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios        C:\WINDOWS\system32\DRIVERS\mssmbios.sys
21:48:58.0000 0x16ec  mssmbios - ok
21:48:58.0062 0x16ec  [ E53736A9E30C45FA9E7B5EAC55056D1D, 38602F280BF69EBA3706AD175AFC1AEB561A8302B4B61E3FECB3C27D7A9BDB41 ] MSTEE           C:\WINDOWS\system32\drivers\MSTEE.sys
21:48:58.0078 0x16ec  MSTEE - ok
21:48:58.0156 0x16ec  [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup             C:\WINDOWS\system32\drivers\Mup.sys
21:48:58.0187 0x16ec  Mup - ok
21:48:58.0234 0x16ec  [ A4A79414483ECF56EB1664A709B4D9A5, 12928225404A0387C5402E0E14FE392407DB397F2D082BDBBE5DC266769109B9 ] mwlPSDFilter    C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys
21:48:58.0234 0x16ec  mwlPSDFilter - ok
21:48:58.0265 0x16ec  [ 2B535201B7EBF06653099C318066E036, F424D2F22C0154744202F00975752C6BF8031C01F5EC59359BA6DD66B142C53B ] mwlPSDNServ     C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys
21:48:58.0265 0x16ec  mwlPSDNServ - ok
21:48:58.0296 0x16ec  [ 8EDBA480BE33B8B3F6BBB7A4ECB21454, 0FEECFEB3496B6917209C87644D27D916CBBACD7B183F372EAC19B622158008A ] mwlPSDVDisk     C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys
21:48:58.0312 0x16ec  mwlPSDVDisk - ok
21:48:58.0453 0x16ec  [ FD257CD94057D02108B954156D7B2770, E518D3E5FAE3AA919E5F54C0309DEBBAAC8647F982F7DDE1D8FB4ADFD6F4C620 ] MWLService      C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe
21:48:58.0468 0x16ec  MWLService - ok
21:48:58.0531 0x16ec  [ 5B50F1B2A2ED47D560577B221DA734DB, C16A554B6E1A7F5F98C94DFA88163E0F7426506BF2F51FD351B1A05FC0DB3BC5 ] NABTSFEC        C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
21:48:58.0531 0x16ec  NABTSFEC - ok
21:48:58.0593 0x16ec  [ 0102140028FAD045756796E1C685D695, 5335B8278418CA200E2772124F0602C3E15A5CAF2D5CC59F6785DFAABF339B09 ] napagent        C:\WINDOWS\System32\qagentrt.dll
21:48:58.0640 0x16ec  napagent - ok
21:48:58.0703 0x16ec  [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS            C:\WINDOWS\system32\drivers\NDIS.sys
21:48:58.0734 0x16ec  NDIS - ok
21:48:58.0765 0x16ec  [ 7FF1F1FD8609C149AA432F95A8163D97, 18CD1FF5AC1EF8A38D1EC53014F2BADD28D9CDF4ECE2EBC2313D08903776F323 ] NdisIP          C:\WINDOWS\system32\DRIVERS\NdisIP.sys
21:48:58.0781 0x16ec  NdisIP - ok
21:48:58.0828 0x16ec  [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
21:48:58.0843 0x16ec  NdisTapi - ok
21:48:58.0875 0x16ec  [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
21:48:58.0875 0x16ec  Ndisuio - ok
21:48:58.0890 0x16ec  [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
21:48:58.0906 0x16ec  NdisWan - ok
21:48:58.0953 0x16ec  [ 9282BD12DFB069D3889EB3FCC1000A9B, 09A46F1712BD9165068D8E153585FE3E6E5CBF4F1DDEC142115555D3A91AEC09 ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
21:48:58.0968 0x16ec  NDProxy - ok
21:48:59.0000 0x16ec  [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
21:48:59.0015 0x16ec  NetBIOS - ok
21:48:59.0062 0x16ec  [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
21:48:59.0078 0x16ec  NetBT - ok
21:48:59.0125 0x16ec  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDE          C:\WINDOWS\system32\netdde.exe
21:48:59.0140 0x16ec  NetDDE - ok
21:48:59.0156 0x16ec  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDEdsdm      C:\WINDOWS\system32\netdde.exe
21:48:59.0171 0x16ec  NetDDEdsdm - ok
21:48:59.0234 0x16ec  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] Netlogon        C:\WINDOWS\system32\lsass.exe
21:48:59.0234 0x16ec  Netlogon - ok
21:48:59.0281 0x16ec  [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE, 4E0A67B3CC897E80D4B342FFE8B7B4CC4F6CA2EF2D34C136027A098B2E1C6166 ] Netman          C:\WINDOWS\System32\netman.dll
21:48:59.0296 0x16ec  Netman - ok
21:48:59.0359 0x16ec  [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:48:59.0375 0x16ec  NetTcpPortSharing - ok
21:48:59.0421 0x16ec  [ 943337D786A56729263071623BBB9DE5, B631B47C869FE4ACF46E4AA272435D9A9CA536E3349E3FFBB8602636FEE7AFD4 ] Nla             C:\WINDOWS\System32\mswsock.dll
21:48:59.0437 0x16ec  Nla - ok
21:48:59.0500 0x16ec  [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
21:48:59.0515 0x16ec  Npfs - ok
21:48:59.0562 0x16ec  [ 0DC1D52722CEBA645B4D460E66D58AEE, 627C05A2AF624A59EFCAA9C5464FD605F2700711EAFCECE8EFA2DA212274B97A ] nSvcIp          C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
21:48:59.0593 0x16ec  nSvcIp - ok
21:48:59.0718 0x16ec  [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
21:48:59.0765 0x16ec  Ntfs - ok
21:48:59.0812 0x16ec  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] NtLmSsp         C:\WINDOWS\system32\lsass.exe
21:48:59.0812 0x16ec  NtLmSsp - ok
21:48:59.0921 0x16ec  [ 156F64A3345BD23C600655FB4D10BC08, 9611BE411586E068D9297D77102DB3BE48AA67F1BAD6F61A84F83FC3043FA9CD ] NtmsSvc         C:\WINDOWS\system32\ntmssvc.dll
21:48:59.0953 0x16ec  NtmsSvc - ok
21:49:00.0000 0x16ec  [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null            C:\WINDOWS\system32\drivers\Null.sys
21:49:00.0000 0x16ec  Null - ok
21:49:00.0828 0x16ec  [ E2FACCAA3D194245ACDA43C531460B71, 39C7CBD9598F33A6845893D6DD9F685D30D1D3E427A91F5FFF0041D935CA8B1E ] nv              C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
21:49:01.0500 0x16ec  nv - ok
21:49:01.0578 0x16ec  [ 7D275ECDA4628318912F6C945D5CF963, 78C5125F5A9B5EE1A5AC394BB0D9EDA954EB35103B588B6A98D41E2C32354A96 ] NVENETFD        C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
21:49:01.0593 0x16ec  NVENETFD - ok
21:49:01.0671 0x16ec  [ 75E2E77C5497F34E60491D27BF03F1CB, E8989FD0A54E40B211E4BA95C916CE602BD3283C8465A312114EB0EC61C12768 ] nvgts           C:\WINDOWS\system32\drivers\nvgts.sys
21:49:01.0687 0x16ec  nvgts - ok
21:49:01.0734 0x16ec  [ 422BBE63A70950440E1DB5FE7A9557A7, F0EEA3E447FD324D7F6C588639C511B15CE3B70F960C3BBC63B652E160B5EAF4 ] NVHDA           C:\WINDOWS\system32\drivers\nvhda32.sys
21:49:01.0750 0x16ec  NVHDA - ok
21:49:01.0781 0x16ec  [ B64AACEFAD2BE5BFF5353FE681253C67, A4D81BF67E6D4DBD559C27C8103277D30DA5B37269E0FD6571FC273DA21E892F ] nvnetbus        C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
21:49:01.0796 0x16ec  nvnetbus - ok
21:49:01.0828 0x16ec  [ 2A085AEC3AB2B1211611D2A7B9E22456, 4EDEAA43E1BC1EB2C5179E3EDA43526B26CBB278CEF58E32F0F1A4A4639E50A0 ] nvsmu           C:\WINDOWS\system32\DRIVERS\nvsmu.sys
21:49:01.0828 0x16ec  nvsmu - ok
21:49:01.0906 0x16ec  [ 45F4A4D3B3170E74BA0503C8AE077112, A66988AE13427F16BB3712C8CB3B4F93BA4746694D8549E0850AD93051F3CC5D ] nvsvc           C:\WINDOWS\system32\nvsvc32.exe
21:49:02.0875 0x16ec  nvsvc - ok
21:49:02.0890 0x16ec  [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt        C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
21:49:02.0906 0x16ec  NwlnkFlt - ok
21:49:02.0937 0x16ec  [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd        C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
21:49:02.0953 0x16ec  NwlnkFwd - ok
21:49:03.0062 0x16ec  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:49:03.0062 0x16ec  ose - ok
21:49:03.0640 0x16ec  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
21:49:04.0140 0x16ec  osppsvc - ok
21:49:04.0250 0x16ec  [ 5575FAF8F97CE5E713D108C2A58D7C7C, 96D4595D19A78CCBE8B325A08780AC077AE5CC99642ACD72FB47AEAE8D344D3B ] Parport         C:\WINDOWS\system32\drivers\Parport.sys
21:49:04.0265 0x16ec  Parport - ok
21:49:04.0312 0x16ec  [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr         C:\WINDOWS\system32\drivers\PartMgr.sys
21:49:04.0312 0x16ec  PartMgr - ok
21:49:04.0359 0x16ec  [ 70E98B3FD8E963A6A46A2E6247E0BEA1, 6771313EC41B3B5BFD398F60706E40BE71617046880CC352DD110B001AFC22A1 ] ParVdm          C:\WINDOWS\system32\drivers\ParVdm.sys
21:49:04.0359 0x16ec  ParVdm - ok
21:49:04.0375 0x16ec  [ A219903CCF74233761D92BEF471A07B1, D4E6C360A1D2FCA4D17C991B834D68BF20F5111DD06B1FAB8B22984804CEC269 ] PCI             C:\WINDOWS\system32\DRIVERS\pci.sys
21:49:04.0390 0x16ec  PCI - ok
21:49:04.0421 0x16ec  PCIDump - ok
21:49:04.0468 0x16ec  [ CCF5F451BB1A5A2A522A76E670000FF0, D63F7E5A39653EC9CCE94B7D84B2D3EBD4F54533BD65701020198724042C9257 ] PCIIde          C:\WINDOWS\system32\DRIVERS\pciide.sys
21:49:04.0468 0x16ec  PCIIde - ok
21:49:04.0515 0x16ec  [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1, 0BA3DB21DC7C641C181E2635B5C9B73965FDCDCD3EBBBE48FCFEC1C8C987F617 ] Pcmcia          C:\WINDOWS\system32\drivers\Pcmcia.sys
21:49:04.0515 0x16ec  Pcmcia - ok
21:49:04.0546 0x16ec  PDCOMP - ok
21:49:04.0703 0x16ec  [ B0C25EA5278579EC685E32E16BBFF24F, D2239647F16778085EC5A1508E9DE4D3E546ECF5A758ABA787B6D9D96F2E614D ] PDFProFiltSrv   C:\Program Files\Nuance\PDF Professional 7\PDFProFiltSrv.exe
21:49:04.0734 0x16ec  PDFProFiltSrv - ok
21:49:04.0750 0x16ec  PDFRAME - ok
21:49:04.0765 0x16ec  PDRELI - ok
21:49:04.0796 0x16ec  PDRFRAME - ok
21:49:04.0843 0x16ec  [ 6C14B9C19BA84F73D3A86DBA11133101, 2CFB7E027E43C1B3890985DFD7987B23E4E3CC003E3FD2583E4A8AC1F8A13B26 ] perc2           C:\WINDOWS\system32\DRIVERS\perc2.sys
21:49:04.0843 0x16ec  perc2 - ok
21:49:04.0859 0x16ec  [ F50F7C27F131AFE7BEBA13E14A3B9416, C0498EA65B908C07A734324ED70DB27F434FAAA815DD02F1BC429A3AB6C663D5 ] perc2hib        C:\WINDOWS\system32\DRIVERS\perc2hib.sys
21:49:04.0859 0x16ec  perc2hib - ok
21:49:04.0968 0x16ec  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] PlugPlay        C:\WINDOWS\system32\services.exe
21:49:04.0984 0x16ec  PlugPlay - ok
21:49:05.0000 0x16ec  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] PolicyAgent     C:\WINDOWS\system32\lsass.exe
21:49:05.0015 0x16ec  PolicyAgent - ok
21:49:05.0078 0x16ec  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport    C:\WINDOWS\system32\DRIVERS\raspptp.sys
21:49:05.0078 0x16ec  PptpMiniport - ok
21:49:05.0093 0x16ec  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
21:49:05.0093 0x16ec  ProtectedStorage - ok
21:49:05.0125 0x16ec  [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched          C:\WINDOWS\system32\DRIVERS\psched.sys
21:49:05.0140 0x16ec  PSched - ok
21:49:05.0156 0x16ec  [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink         C:\WINDOWS\system32\DRIVERS\ptilink.sys
21:49:05.0156 0x16ec  Ptilink - ok
21:49:05.0218 0x16ec  [ 0A63FB54039EB5662433CABA3B26DBA7, A1FB923EB2D08D89D24E8AD7042BBED7CB1DBDA9A5B77BDD188E9913BADAB0EF ] ql1080          C:\WINDOWS\system32\DRIVERS\ql1080.sys
21:49:05.0234 0x16ec  ql1080 - ok
21:49:05.0250 0x16ec  [ 6503449E1D43A0FF0201AD5CB1B8C706, F1EFC2DE5998615CB182D7984366631FE956AE1ECA9AC777F26FCA2E6F2E05A6 ] Ql10wnt         C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
21:49:05.0265 0x16ec  Ql10wnt - ok
21:49:05.0296 0x16ec  [ 156ED0EF20C15114CA097A34A30D8A01, 7490B90D4C88B7A9BADB9473D4033535F054C797ABF6D542CB859DA5C9B2586A ] ql12160         C:\WINDOWS\system32\DRIVERS\ql12160.sys
21:49:05.0296 0x16ec  ql12160 - ok
21:49:05.0343 0x16ec  [ 70F016BEBDE6D29E864C1230A07CC5E6, 895BC2C888F6566086FC1399F499A401D447E57333BC9F9C6DBAFE0F117603D6 ] ql1240          C:\WINDOWS\system32\DRIVERS\ql1240.sys
21:49:05.0343 0x16ec  ql1240 - ok
21:49:05.0375 0x16ec  [ 907F0AEEA6BC451011611E732BD31FCF, F9E7023BD1042963110D0A613054D094437868B20779F23C316A38E4781A6152 ] ql1280          C:\WINDOWS\system32\DRIVERS\ql1280.sys
21:49:05.0375 0x16ec  ql1280 - ok
21:49:05.0500 0x16ec  [ 2EE6D9CAB03900646D1D3D9077167BD6, 61F1C78A56537483FCD4B49AB6D0189EE05ECB7BF4AF88573E0F7EEBFE088865 ] RalinkRegistryWriter C:\Program Files\Zoom Wireless-N USB\Common\RaRegistry.exe
21:49:05.0953 0x16ec  RalinkRegistryWriter - ok
21:49:06.0000 0x16ec  [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
21:49:06.0000 0x16ec  RasAcd - ok
21:49:06.0062 0x16ec  [ AD188BE7BDF94E8DF4CA0A55C00A5073, C7D76CB579FAEBCCC2873499441BACDD6BD6668ACF5ED7F31862656E96E2B20C ] RasAuto         C:\WINDOWS\System32\rasauto.dll
21:49:06.0078 0x16ec  RasAuto - ok
21:49:06.0109 0x16ec  [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp         C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
21:49:06.0125 0x16ec  Rasl2tp - ok
21:49:06.0171 0x16ec  [ 76A9A3CBEADD68CC57CDA5E1D7448235, 4AFD048C5D2306AB8DE46F3AA60AC0213333DDA3B09A9E91F7585DB6EB978EC8 ] RasMan          C:\WINDOWS\System32\rasmans.dll
21:49:06.0187 0x16ec  RasMan - ok
21:49:06.0203 0x16ec  [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
21:49:06.0218 0x16ec  RasPppoe - ok
21:49:06.0250 0x16ec  [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti          C:\WINDOWS\system32\DRIVERS\raspti.sys
21:49:06.0265 0x16ec  Raspti - ok
21:49:06.0328 0x16ec  [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
21:49:06.0343 0x16ec  Rdbss - ok
21:49:06.0375 0x16ec  [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD          C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
21:49:06.0375 0x16ec  RDPCDD - ok
21:49:06.0468 0x16ec  [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr           C:\WINDOWS\system32\DRIVERS\rdpdr.sys
21:49:06.0515 0x16ec  rdpdr - ok
21:49:06.0593 0x16ec  [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD           C:\WINDOWS\system32\drivers\RDPWD.sys
21:49:06.0593 0x16ec  RDPWD - ok
21:49:06.0671 0x16ec  [ 3C37BF86641BDA977C3BF8A840F3B7FA, AB9A6E54DBA3F4561CD4837372BECCE0D73943D02E3288F944333039375AC08C ] RDSessMgr       C:\WINDOWS\system32\sessmgr.exe
21:49:06.0687 0x16ec  RDSessMgr - ok
21:49:06.0750 0x16ec  [ F828DD7E1419B6653894A8F97A0094C5, E6150E1F598BA4CFEDB8FF075BC0D576518C331B864388F1CAE8812EFF106ECF ] redbook         C:\WINDOWS\system32\DRIVERS\redbook.sys
21:49:06.0765 0x16ec  redbook - ok
21:49:06.0812 0x16ec  [ 7E699FF5F59B5D9DE5390E3C34C67CF5, 3FCF0442D80AB181FED4303E570378736AA1F8718C0B8B70F689A1E45200FFE4 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
21:49:06.0828 0x16ec  RemoteAccess - ok
21:49:06.0890 0x16ec  [ AAED593F84AFA419BBAE8572AF87CF6A, CC0FFC5A69394C8830DC66320DA01A820BBF41AD7E57D0FC343561DC5EF9A360 ] RpcLocator      C:\WINDOWS\system32\locator.exe
21:49:06.0906 0x16ec  RpcLocator - ok
21:49:06.0968 0x16ec  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] RpcSs           C:\WINDOWS\system32\rpcss.dll
21:49:07.0000 0x16ec  RpcSs - ok
21:49:07.0078 0x16ec  [ 471B3F9741D762ABE75E9DEEA4787E47, D9ADE42965EC22AEB4B2AD21D429C3C8232A60AA9853DEFDA7AED86A13FE8623 ] RSVP            C:\WINDOWS\system32\rsvp.exe
21:49:07.0093 0x16ec  RSVP - ok
21:49:07.0203 0x16ec  [ AD0BAD5D585AFC1CB1CD5EAFCAE50ED4, 7FC36E8B841823D4EF3025CBCEC5953046CE65B7565ED68740FFD6DD24D7FC1C ] rt2870          C:\WINDOWS\system32\DRIVERS\rt2870.sys
21:49:07.0250 0x16ec  rt2870 - ok
21:49:07.0296 0x16ec  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] SamSs           C:\WINDOWS\system32\lsass.exe
21:49:07.0296 0x16ec  SamSs - ok
21:49:07.0359 0x16ec  [ 86D007E7A654B9A71D1D7D856B104353, 7B1DE53D637A5FC9619D5D07C48927AFEC89D959207F6F2E2F45DD054EEA04C7 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.exe
21:49:07.0375 0x16ec  SCardSvr - ok
21:49:07.0406 0x16ec  [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA, 0B582F47BD70732BAC48B8B86E5D06CE7F299A20E8177F3F2E6F28217C3FB605 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
21:49:07.0437 0x16ec  Schedule - ok
21:49:07.0484 0x16ec  [ F34C06D1C706A6D9433570B087A18B02, 5A1B059458CD71FA9883C8E92F9300B86B79A6E6FBBC87431630DA43D1508319 ] Scutum50        C:\WINDOWS\system32\Drivers\Scutum50.sys
21:49:07.0625 0x16ec  Scutum50 - ok
21:49:07.0687 0x16ec  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv          C:\WINDOWS\system32\DRIVERS\secdrv.sys
21:49:07.0687 0x16ec  Secdrv - ok
21:49:07.0718 0x16ec  [ CBE612E2BB6A10E3563336191EDA1250, C331797DC3569F0E715766561DE2562F60B924378842246C35D2B1CF867E9D96 ] seclogon        C:\WINDOWS\System32\seclogon.dll
21:49:07.0734 0x16ec  seclogon - ok
21:49:07.0796 0x16ec  [ 7FDD5D0684ECA8C1F68B4D99D124DCD0, 7105B026F966A992430F86C3698ABE15EC73E4772F1A3E362E29FD5247A5DCA6 ] SENS            C:\WINDOWS\system32\sens.dll
21:49:07.0796 0x16ec  SENS - ok
21:49:07.0875 0x16ec  [ A2CC81C30BEF6AC9F27055490EEF6DE3, 58EA0AE83249B78028ACA8A738DEAD8C82AA8774BD4D9F3009AD7E043F1A4747 ] Sentinel        C:\WINDOWS\System32\Drivers\SENTINEL.SYS
21:49:08.0390 0x16ec  Sentinel - ok
21:49:08.0515 0x16ec  [ A9EEB7B09B898A53EC8B7063B923AC32, 3C520AF55460496F55B236F22D26116C2E547E305B2C135C751466580D3B468E ] SentinelKeysServer C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe
21:49:17.0609 0x16ec  SentinelKeysServer - ok
21:49:17.0703 0x16ec  [ FD8723219C907C7AB753C93334FA4610, 4DBBE1961882B5C0A0453BAF039B06D49B7A4FF40DF4532E8A0E7DA2D0920286 ] SentinelProtectionServer C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe
21:49:24.0625 0x16ec  SentinelProtectionServer - ok
21:49:24.0703 0x16ec  [ CCA207A8896D4C6A0C9CE29A4AE411A7, 5999B39242283CD803319AADCA171CCCC6E2A40FB2FAFA51B1D29F3FF2DD8D6C ] Serial          C:\WINDOWS\system32\drivers\Serial.sys
21:49:24.0718 0x16ec  Serial - ok
21:49:24.0796 0x16ec  [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy         C:\WINDOWS\system32\drivers\Sfloppy.sys
21:49:24.0796 0x16ec  Sfloppy - ok
21:49:24.0875 0x16ec  [ 83F41D0D89645D7235C051AB1D9523AC, B681F33EEAA511D6A2DCB9FBAA407B739184C9FF6067C6B7E51F1FC37E9D4DD7 ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
21:49:24.0906 0x16ec  SharedAccess - ok
21:49:24.0937 0x16ec  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
21:49:24.0953 0x16ec  ShellHWDetection - ok
21:49:24.0968 0x16ec  Simbad - ok
21:49:25.0062 0x16ec  [ 6B33D0EBD30DB32E27D1D78FE946A754, CDA3D082D370B079C06D943DA124D76BAF0C5DB264FB0C893148EF6322D2FABE ] sisagp          C:\WINDOWS\system32\DRIVERS\sisagp.sys
21:49:25.0062 0x16ec  sisagp - ok
21:49:25.0140 0x16ec  [ 7C15061CD0372487903B07B9BB03AFAD, FB96CDA29C7C1E8A315BA89E8B150918E59F32CE749D3EF43FCBEB3FB57BF1C6 ] SkypeUpdate     C:\Program Files\Skype\Updater\Updater.exe
21:49:25.0156 0x16ec  SkypeUpdate - ok
21:49:25.0218 0x16ec  [ 866D538EBE33709A5C9F5C62B73B7D14, BC94BEB7C17B4FCAC8B5D0D5006A203BC209E0504EECE149651D8691935696CD ] SLIP            C:\WINDOWS\system32\DRIVERS\SLIP.sys
21:49:25.0218 0x16ec  SLIP - ok
21:49:25.0296 0x16ec  [ 9DE6E60CE7FD82B4985DE5D9C22265AD, 73FB5810A7EC7C1F259FA61F5B11FCE9D182669CBA0EE94B7DA29A0BACD4C6D2 ] SNTNLUSB        C:\WINDOWS\system32\DRIVERS\SNTNLUSB.SYS
21:49:25.0296 0x16ec  SNTNLUSB - ok
21:49:25.0328 0x16ec  [ 83C0F71F86D3BDAF915685F3D568B20E, 10B24723914A5A9E27A592FD58DAE2207B6E49F13A17CD2B1477C51D2D609D2E ] Sparrow         C:\WINDOWS\system32\DRIVERS\sparrow.sys
21:49:25.0328 0x16ec  Sparrow - ok
21:49:25.0375 0x16ec  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter        C:\WINDOWS\system32\drivers\splitter.sys
21:49:25.0390 0x16ec  splitter - ok
21:49:25.0437 0x16ec  [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler         C:\WINDOWS\system32\spoolsv.exe
21:49:25.0453 0x16ec  Spooler - ok
21:49:25.0500 0x16ec  [ 76BB022C2FB6902FD5BDD4F78FC13A5D, 6031CB2344D7277FC703480EB43CF856A0F8F818EA98FF26A2CA532336CD2DFA ] sr              C:\WINDOWS\system32\DRIVERS\sr.sys
21:49:25.0515 0x16ec  sr - ok
21:49:25.0593 0x16ec  [ 3805DF0AC4296A34BA4BF93B346CC378, B57A14F1B7B0997E619DDD62B73157AA2399A9852166FB58139CBB358A88F6F3 ] srservice       C:\WINDOWS\system32\srsvc.dll
21:49:25.0625 0x16ec  srservice - ok
21:49:25.0687 0x16ec  [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv             C:\WINDOWS\system32\DRIVERS\srv.sys
21:49:25.0718 0x16ec  Srv - ok
21:49:25.0750 0x16ec  [ 0A5679B3714EDAB99E357057EE88FCA6, 01E1A101FFF48402C77E385A78FEF27876E04533B60EB1C18558A737E57E5FA8 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
21:49:25.0765 0x16ec  SSDPSRV - ok
21:49:25.0859 0x16ec  [ 8BAD69CBAC032D4BBACFCE0306174C30, 2AA0DA710FCBFF38FE8DA91EE02E7A4503269347E61F8D3246FCA3384BBA2305 ] stisvc          C:\WINDOWS\system32\wiaservc.dll
21:49:25.0875 0x16ec  stisvc - ok
21:49:25.0921 0x16ec  [ 77813007BA6265C4B6098187E6ED79D2, 93939120E803C46FBFD577C8FC2E6C7E71C0460E01D25CB29579490640AB50C7 ] streamip        C:\WINDOWS\system32\DRIVERS\StreamIP.sys
21:49:25.0937 0x16ec  streamip - ok
21:49:25.0968 0x16ec  [ 965F4DD2870F83642BC9CC7B4F1A1C7B, 8E5B3C4AFB116EE40D9841C38E9D9A6E2094C67900A2063D7D774512EEDD2224 ] SWDUMon         C:\WINDOWS\system32\DRIVERS\SWDUMon.sys
21:49:26.0062 0x16ec  SWDUMon - ok
21:49:26.0093 0x16ec  [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum          C:\WINDOWS\system32\DRIVERS\swenum.sys
21:49:26.0093 0x16ec  swenum - ok
21:49:26.0171 0x16ec  [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi          C:\WINDOWS\system32\drivers\swmidi.sys
21:49:26.0171 0x16ec  swmidi - ok
21:49:26.0187 0x16ec  SwPrv - ok
21:49:26.0218 0x16ec  [ 1FF3217614018630D0A6758630FC698C, 78A3075BBFF5D7ADEAC1527E65ACA8527BFC509DF124D44410BB46C4D96C96BB ] symc810         C:\WINDOWS\system32\DRIVERS\symc810.sys
21:49:26.0234 0x16ec  symc810 - ok
21:49:26.0250 0x16ec  [ 070E001D95CF725186EF8B20335F933C, B98B29FB01741AF3B4BB02C76A4D117EA04FE4CC4F8CDB491F9216931704A6D8 ] symc8xx         C:\WINDOWS\system32\DRIVERS\symc8xx.sys
21:49:26.0265 0x16ec  symc8xx - ok
21:49:26.0296 0x16ec  [ 80AC1C4ABBE2DF3B738BF15517A51F2C, CCF82D09C63F4FA98BCBEF3A1DC8C02D4269B78256D0B6213E815D9BBE174432 ] sym_hi          C:\WINDOWS\system32\DRIVERS\sym_hi.sys
21:49:26.0296 0x16ec  sym_hi - ok
21:49:26.0312 0x16ec  [ BF4FAB949A382A8E105F46EBB4937058, FE7C114A19D50E37463CDD3605C26105A779EEA79CB92BF98267C7BE809D853B ] sym_u3          C:\WINDOWS\system32\DRIVERS\sym_u3.sys
21:49:26.0328 0x16ec  sym_u3 - ok
21:49:26.0359 0x16ec  [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio        C:\WINDOWS\system32\drivers\sysaudio.sys
21:49:26.0375 0x16ec  sysaudio - ok
21:49:26.0421 0x16ec  [ C7ABBC59B43274B1109DF6B24D617051, 4384CA0AA6CE9B603CF7DB775A3C721E46715D5B120B94FB57DEADAADE18535B ] SysmonLog       C:\WINDOWS\system32\smlogsvc.exe
21:49:26.0437 0x16ec  SysmonLog - ok
21:49:26.0484 0x16ec  [ 3CB78C17BB664637787C9A1C98F79C38, F35C31F6B7F366CB949D1044B357C76DEC9170441C5E559802794F62B72FD255 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
21:49:26.0515 0x16ec  TapiSrv - ok
21:49:26.0593 0x16ec  [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip           C:\WINDOWS\system32\DRIVERS\tcpip.sys
21:49:26.0640 0x16ec  Tcpip - ok
21:49:26.0718 0x16ec  [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE          C:\WINDOWS\system32\drivers\TDPIPE.sys
21:49:26.0718 0x16ec  TDPIPE - ok
21:49:26.0750 0x16ec  [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP           C:\WINDOWS\system32\drivers\TDTCP.sys
21:49:26.0765 0x16ec  TDTCP - ok
21:49:27.0609 0x16ec  [ DF4A7E1E2BA788E28747F1EF49692ED6, 3417C0C713AB086E31CA20D6DCE923FF224093CFF2BAA6F29DCCBD2BEE5EEED6 ] TeamViewer9     C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
21:49:28.0343 0x16ec  TeamViewer9 - ok
21:49:28.0406 0x16ec  [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD          C:\WINDOWS\system32\DRIVERS\termdd.sys
21:49:28.0406 0x16ec  TermDD - ok
21:49:28.0515 0x16ec  [ FF3477C03BE7201C294C35F684B3479F, D6246521539BA4ACD022D26983182F5E323D2EF1EA7C54265A248C43A1CE5202 ] TermService     C:\WINDOWS\System32\termsrv.dll
21:49:28.0546 0x16ec  TermService - ok
21:49:28.0609 0x16ec  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] Themes          C:\WINDOWS\System32\shsvcs.dll
21:49:28.0625 0x16ec  Themes - ok
21:49:28.0734 0x16ec  [ 3199A477F0F06EEDE41BD55179F8EB05, FBDEBF2F79B982F6EAC2ADB46E8B140828DF2789EA81FC229DEDB4D904AE97DC ] TomTomHOMEService C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
21:49:28.0750 0x16ec  TomTomHOMEService - ok
21:49:28.0765 0x16ec  [ F2790F6AF01321B172AA62F8E1E187D9, 5644B5EFA0065C0CC9DB28E5520AAD2F4B3BCE48337F165BF9F166ECC164630C ] TosIde          C:\WINDOWS\system32\DRIVERS\toside.sys
21:49:28.0781 0x16ec  TosIde - ok
21:49:28.0843 0x16ec  [ 55BCA12F7F523D35CA3CB833C725F54E, 849FB1AE31B143B14B298BBC0D91230693D41DEB95F46516878F53A7F4186C38 ] TrkWks          C:\WINDOWS\system32\trkwks.dll
21:49:28.0859 0x16ec  TrkWks - ok
21:49:28.0906 0x16ec  [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs            C:\WINDOWS\system32\drivers\Udfs.sys
21:49:28.0906 0x16ec  Udfs - ok
21:49:28.0937 0x16ec  [ 1B698A51CD528D8DA4FFAED66DFC51B9, FC3F12D25EE0E99AFE056502FCCFC052854699C21B99D559FAF1244F206DFB4F ] ultra           C:\WINDOWS\system32\DRIVERS\ultra.sys
21:49:28.0937 0x16ec  ultra - ok
21:49:29.0031 0x16ec  [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update          C:\WINDOWS\system32\DRIVERS\update.sys
21:49:29.0062 0x16ec  Update - ok
21:49:29.0171 0x16ec  [ A6CAC3BF5BAE0B02A5D2100A5397DFFD, 74D0F916C17AE39B77E73FEE77E54BD82F106100AA38890063FD70FC5E2CE598 ] Update WebConnect C:\Program Files\WebConnect\updateWebConnect.exe
21:49:29.0171 0x16ec  Update WebConnect - ok
21:49:29.0312 0x16ec  [ 1E9993AC255B3220BCE71FE9E056BBC9, 4F651236F6B69EE5CD6BD7F48BEE28F52998EA76695A37A4D0E7AF56CF5438B7 ] Updater Service for StartNow Toolbar C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
21:49:29.0328 0x16ec  Updater Service for StartNow Toolbar - ok
21:49:29.0390 0x16ec  [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91, 7746916DB48E3F5B243B63C066596AD9037A494BF1AD935946DD04AC85D983DF ] upnphost        C:\WINDOWS\System32\upnphost.dll
21:49:29.0421 0x16ec  upnphost - ok
21:49:29.0437 0x16ec  [ 05365FB38FCA1E98F7A566AAAF5D1815, 16843048CEEC3DAA3B953A12FF1EE339E86783A08F2A56DA7F94AD9F9717D77D ] UPS             C:\WINDOWS\System32\ups.exe
21:49:29.0453 0x16ec  UPS - ok
21:49:29.0484 0x16ec  [ 65898A183FBF1D1F7759D5CCB364DCD4, 85E823123FDB4CA5F8255064E22A444627999055EC3419DFD001371893F36AB9 ] usbaudio        C:\WINDOWS\system32\drivers\usbaudio.sys
21:49:29.0500 0x16ec  usbaudio - ok
21:49:29.0546 0x16ec  [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp         C:\WINDOWS\system32\DRIVERS\usbccgp.sys
21:49:29.0546 0x16ec  usbccgp - ok
21:49:29.0578 0x16ec  [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci         C:\WINDOWS\system32\DRIVERS\usbehci.sys
21:49:29.0578 0x16ec  usbehci - ok
21:49:29.0640 0x16ec  [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub          C:\WINDOWS\system32\DRIVERS\usbhub.sys
21:49:29.0656 0x16ec  usbhub - ok
21:49:29.0703 0x16ec  [ 0DAECCE65366EA32B162F85F07C6753B, 3C33AC2FC95E876933F2016CF0CDA2745491679728684DA8DF95A515CE4804BD ] usbohci         C:\WINDOWS\system32\DRIVERS\usbohci.sys
21:49:29.0703 0x16ec  usbohci - ok
21:49:29.0781 0x16ec  [ A717C8721046828520C9EDF31288FC00, 1530BBE832EDBB0974AD89D723A03FF7A0094B368992D73C2C3E62A181DF1E0A ] usbprint        C:\WINDOWS\system32\DRIVERS\usbprint.sys
21:49:29.0781 0x16ec  usbprint - ok
21:49:29.0812 0x16ec  [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
21:49:29.0812 0x16ec  usbscan - ok
21:49:29.0906 0x16ec  [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR         C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
21:49:29.0906 0x16ec  USBSTOR - ok
21:49:29.0953 0x16ec  [ 813236B1183CFCF289E367BD5DE6E29E, 167FE18A96F330AEEC1A4C419770C15EFEB536D43838285E51E7A62E95DF4674 ] usbvideo        C:\WINDOWS\system32\Drivers\usbvideo.sys
21:49:29.0968 0x16ec  usbvideo - ok
21:49:30.0015 0x16ec  [ A6CAC3BF5BAE0B02A5D2100A5397DFFD, 74D0F916C17AE39B77E73FEE77E54BD82F106100AA38890063FD70FC5E2CE598 ] Util WebConnect C:\Program Files\WebConnect\bin\utilWebConnect.exe
21:49:30.0031 0x16ec  Util WebConnect - ok
21:49:30.0078 0x16ec  [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave         C:\WINDOWS\System32\drivers\vga.sys
21:49:30.0078 0x16ec  VgaSave - ok
21:49:30.0125 0x16ec  [ 754292CE5848B3738281B4F3607EAEF4, B0DCC9E9F8F78671FF878B493264C3B1DD2ED4A7167E3F5495F66ABF5FACB86C ] viaagp          C:\WINDOWS\system32\DRIVERS\viaagp.sys
21:49:30.0125 0x16ec  viaagp - ok
21:49:30.0171 0x16ec  [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E, FC7FFD53FCC0F81587EFF26A43C141D25C43DBC68311520CE2BCDD739CA58CA9 ] ViaIde          C:\WINDOWS\system32\DRIVERS\viaide.sys
21:49:30.0171 0x16ec  ViaIde - ok
21:49:30.0218 0x16ec  [ 4C8FCB5CC53AAB716D810740FE59D025, 010EAC43DBED700B73E4FC908FAAF9F6A0168EBBD5D86751E49BC33AAA18BFA4 ] VolSnap         C:\WINDOWS\system32\drivers\VolSnap.sys
21:49:30.0218 0x16ec  VolSnap - ok
21:49:30.0296 0x16ec  [ 7A9DB3A67C333BF0BD42E42B8596854B, D31A9A3B1AAAB373EDD73B674102395212FCB616F829E938B7B2B7BE7D4752C5 ] VSS             C:\WINDOWS\System32\vssvc.exe
21:49:30.0328 0x16ec  VSS - ok
21:49:30.0453 0x16ec  vToolbarUpdater17.2.0 - ok
21:49:30.0500 0x16ec  [ 54AF4B1D5459500EF0937F6D33B1914F, FA1876888BCB9C72A92369DBED4FF1A8666784523FB41E618FA0919490FCDDB9 ] W32Time         C:\WINDOWS\system32\w32time.dll
21:49:30.0515 0x16ec  W32Time - ok
21:49:30.0656 0x16ec  [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
21:49:30.0656 0x16ec  Wanarp - ok
21:49:30.0750 0x16ec  [ D918617B46457B9AC28027722E30F647, 407284D3055DC11944D4EE7E4357E7CF9CAF8CA40CA50633AB6FD4A82CB7EEA6 ] Wdf01000        C:\WINDOWS\system32\Drivers\wdf01000.sys
21:49:30.0796 0x16ec  Wdf01000 - ok
21:49:30.0828 0x16ec  WDICA - ok
21:49:30.0890 0x16ec  [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud          C:\WINDOWS\system32\drivers\wdmaud.sys
21:49:30.0906 0x16ec  wdmaud - ok
21:49:30.0968 0x16ec  [ 77A354E28153AD2D5E120A5A8687BC06, 8B2D37A4443501C0A8E70BC2079BE27F0A36FD07B561E6F68B40A72EABBC2DFE ] WebClient       C:\WINDOWS\System32\webclnt.dll
21:49:30.0984 0x16ec  WebClient - ok
21:49:31.0015 0x16ec  wg121 - ok
21:49:31.0140 0x16ec  [ 2D0E4ED081963804CCC196A0929275B5, E1D75C7D7233D81DFDE13160B0C80138DF8B35230D04FB79B367A52FACF69BF8 ] winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
21:49:31.0156 0x16ec  winmgmt - ok
21:49:31.0234 0x16ec  [ FD600B032E741EB6AAB509FC630F7C42, 2AF671D0648A5C2D2C4A7D0FDE803F07CC079CF1FA4E237DB912A8C77D9EC1F6 ] WinUSB          C:\WINDOWS\system32\DRIVERS\WinUSB.sys
21:49:31.0234 0x16ec  WinUSB - ok
21:49:31.0281 0x16ec  [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN        C:\WINDOWS\system32\MsPMSNSv.dll
21:49:31.0296 0x16ec  WmdmPmSN - ok
21:49:31.0359 0x16ec  [ C42584FD66CE9E17403AEBCA199F7BDB, E3F2E1066F36AE5D33D4482239B2E556BE0C137923C9A120DFB36EC82F2E77B0 ] WmiAcpi         C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
21:49:31.0359 0x16ec  WmiAcpi - ok
21:49:31.0421 0x16ec  [ E0673F1106E62A68D2257E376079F821, 12992F18C9653050B10DC61D12988067933FCFDF02123D3A7EF5DE607A785DDC ] WmiApSrv        C:\WINDOWS\system32\wbem\wmiapsrv.exe
21:49:31.0437 0x16ec  WmiApSrv - ok
21:49:31.0609 0x16ec  [ F74E3D9A7FA9556C3BBB14D4E5E63D3B, C71FAAC752F6D58BF8556661252DBF8C5DDD090CAE002A2C7E09C9A014526066 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\WMPNetwk.exe
21:49:32.0765 0x16ec  WMPNetworkSvc - ok
21:49:32.0890 0x16ec  [ A3BA4712EBF768EDFBCCEC09FA120B6F, 25A1E2FF64959E41F944BE69360BAFFE14E0D41566F5343795FB8D61C7DBE593 ] WMZuneComm      c:\Program Files\Zune\WMZuneComm.exe
21:49:32.0921 0x16ec  WMZuneComm - ok
21:49:32.0953 0x16ec  [ CF4DEF1BF66F06964DC0D91844239104, CC1D9CECE2056D29A9651D51BB57C3F4F9BF9E90A4808CF7496C683C874FBD51 ] WpdUsb          C:\WINDOWS\system32\DRIVERS\wpdusb.sys
21:49:32.0968 0x16ec  WpdUsb - ok
21:49:33.0015 0x16ec  [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL         C:\WINDOWS\System32\drivers\ws2ifsl.sys
21:49:33.0031 0x16ec  WS2IFSL - ok
21:49:33.0078 0x16ec  [ 7C278E6408D1DCE642230C0585A854D5, DA46079A04F6E8E3441E4AE454AEAC02B3E935DE29CE7F6D4476F57867FCC12A ] wscsvc          C:\WINDOWS\system32\wscsvc.dll
21:49:33.0093 0x16ec  wscsvc - ok
21:49:33.0156 0x16ec  [ C98B39829C2BBD34E454150633C62C78, 71B60EA3AD0E2637917D528C6A9E7ECF2949E3E5E91036AA5BBADA95BD725511 ] WSTCODEC        C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
21:49:33.0156 0x16ec  WSTCODEC - ok
21:49:33.0203 0x16ec  [ 35321FB577CDC98CE3EB3A3EB9E4610A, C9A6F5CF282D8FCB3CDFCC4B306013480E78E1B664E1A60A4E27B161F9FFD4CD ] wuauserv        C:\WINDOWS\system32\wuauserv.dll
21:49:33.0203 0x16ec  wuauserv - ok
21:49:33.0265 0x16ec  [ EAA6324F51214D2F6718977EC9CE0DEF, B9DE1521395E09233FE519873702979C3EAF65FEC4B94B12A46CECB16C488543 ] WudfPf          C:\WINDOWS\system32\DRIVERS\WudfPf.sys
21:49:33.0281 0x16ec  WudfPf - ok
21:49:33.0312 0x16ec  [ F91FF1E51FCA30B3C3981DB7D5924252, D7052B58F22638CA8B59C6FD7408D6D6DD1C33910912CACC05C133472CE0DDCE ] WudfRd          C:\WINDOWS\system32\DRIVERS\wudfrd.sys
21:49:33.0328 0x16ec  WudfRd - ok
21:49:33.0359 0x16ec  [ DDEE3682FE97037C45F4D7AB467CB8B6, D5A8F07AF4EDD9D7E17FEC6222D187E2981C177A479511E407756E0E5CB8D387 ] WudfSvc         C:\WINDOWS\System32\WUDFSvc.dll
21:49:33.0375 0x16ec  WudfSvc - ok
21:49:33.0453 0x16ec  [ 81DC3F549F44B1C1FFF022DEC9ECF30B, 3D14BFEA539F9CEB16555BD56C5E3C7C8F6692FC62C2789F8AAEA1C042E63940 ] WZCSVC          C:\WINDOWS\System32\wzcsvc.dll
21:49:33.0500 0x16ec  WZCSVC - ok
21:49:33.0578 0x16ec  [ 295D21F14C335B53CB8154E5B1F892B9, 9418477C2E3EA93E93D931A4EDD4500DA568FAD6040204B5201D1080203B0BBC ] xmlprov         C:\WINDOWS\System32\xmlprov.dll
21:49:33.0593 0x16ec  xmlprov - ok
21:49:33.0640 0x16ec  [ 337B9607F041B77824411750069AFF2D, CE8489BBBD4D052F1914E2BA9ED4BD4F53FC44509E01F086357BDA912D3D73D7 ] zumbus          C:\WINDOWS\system32\DRIVERS\zumbus.sys
21:49:33.0656 0x16ec  zumbus - ok
21:49:33.0703 0x16ec  [ DEE869820C3483EC7B92A9FD9BA332A7, A585C3EAECBC7BC0DD0226559B45276FA69275251CEDD5A1774152D2BA225717 ] ZuneBusEnum     c:\Program Files\Zune\ZuneBusEnum.exe
21:49:33.0703 0x16ec  ZuneBusEnum - ok
21:49:34.0296 0x16ec  [ 5BDCACD5B2B0FB972BC570E70F616ACF, 90DAA2A5E5733DDD0898544F82B1371065DBD8D181DAF2AF29767A39D35F3D1D ] ZuneNetworkSvc  c:\Program Files\Zune\ZuneNss.exe
21:49:34.0937 0x16ec  ZuneNetworkSvc - ok
21:49:35.0046 0x16ec  [ E22E48654A66AA3E24F4646C6BC1756C, 2F6DDFCD5E4271C605EDFAD460DF8D9CD0EE5998CF862F47EB3F108DB2A712D1 ] ZuneWlanCfgSvc  c:\Program Files\Zune\ZuneWlanCfgSvc.exe
21:49:35.0078 0x16ec  ZuneWlanCfgSvc - ok
21:49:35.0140 0x16ec  ================ Scan global ===============================
21:49:35.0218 0x16ec  [ 42F1F4C0AFB08410E5F02D4B13EBB623, 924C30587C51C0D1E1F47991969AF492A644552E15F2480EA991DCB74A3E68D5 ] C:\WINDOWS\system32\basesrv.dll
21:49:35.0296 0x16ec  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] C:\WINDOWS\system32\winsrv.dll
21:49:35.0343 0x16ec  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] C:\WINDOWS\system32\winsrv.dll
21:49:35.0437 0x16ec  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] C:\WINDOWS\system32\services.exe
21:49:35.0453 0x16ec  [ Global ] - ok
21:49:35.0453 0x16ec  ================ Scan MBR ==================================
21:49:35.0484 0x16ec  [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
21:49:35.0812 0x16ec  \Device\Harddisk0\DR0 - ok
21:49:35.0828 0x16ec  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR5
21:49:35.0828 0x16ec  \Device\Harddisk1\DR5 - ok
21:49:35.0828 0x16ec  ================ Scan VBR ==================================
21:49:35.0843 0x16ec  [ A0C45B960B5D9CD7AE3FF326AEA9AB1C ] \Device\Harddisk0\DR0\Partition1
21:49:35.0859 0x16ec  \Device\Harddisk0\DR0\Partition1 - ok
21:49:35.0875 0x16ec  [ 15E1C9525DCD6B7D03DA101DAA106CB3 ] \Device\Harddisk1\DR5\Partition1
21:49:35.0875 0x16ec  \Device\Harddisk1\DR5\Partition1 - ok
21:49:35.0890 0x16ec  Waiting for KSN requests completion. In queue: 84
21:49:36.0890 0x16ec  Waiting for KSN requests completion. In queue: 84
21:49:37.0890 0x16ec  Waiting for KSN requests completion. In queue: 84
21:49:39.0078 0x16ec  AV detected via SS1: Microsoft Security Essentials, 4.4.0304.0, enabled, updated
21:49:39.0078 0x16ec  AV detected via SS1: Microsoft Security Essentials, 2.1.6805.0, disabled, updated
21:49:39.0078 0x16ec  Win FW state via NFM: enabled
21:49:41.0812 0x16ec  ============================================================
21:49:41.0812 0x16ec  Scan finished
21:49:41.0812 0x16ec  ============================================================
21:49:41.0859 0x16e8  Detected object count: 0
21:49:41.0859 0x16e8  Actual detected object count: 0
21:51:06.0640 0x14d4  Deinitialize success
 



#11 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 31 December 2013 - 05:38 PM

Followed your advice, MSE uninstalled, Avira installed and scanned ...



#12 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,199 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:22 PM

Posted 31 December 2013 - 06:13 PM

OK, should be running well now. Do not run the registry cleaning side of CCleaner.
 
I want to look at one last thing to be sure.
 
I'll look back tomorrow as I am going out.
 
Please download Farbar Service Scanner and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#13 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 31 December 2013 - 08:00 PM

Here's FSS log:

 

Farbar Service Scanner Version: 05-12-2013
Ran by arie (administrator) on 31-12-2013 at 16:57:14
Running from "C:\Documents and Settings\arie\Desktop\Yuval Cleanup\Farber Service Scanner"
Microsoft Windows XP Home Edition Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.

Windows Firewall:
=============

Firewall Disabled Policy:
==================

System Restore:
============

System Restore Disabled Policy:
========================

Security Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================

Other Services:
==============

File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit

Extra List:
=======
Gpc(6) IPSec(4) NetBT(5) PSched(7) Tcpip(3)
0x080000000400000001000000020000000300000008000000050000000600000007000000
IpSec Tag value is correct.

**** End of log ****

 

And here's Avira AV scan log (found 16 threats):

 

 

Avira Free Antivirus
Report file date: Tuesday, December 31, 2013  14:10

The program is running as an unrestricted full version.
Online services are available.

Licensee        : Avira Free Antivirus
Serial number   : 0000149996-ADJIE-0000001
Platform        : Microsoft Windows XP
Windows version : (Service Pack 3)  [5.1.2600]
Boot mode       : Normally booted
Username        : SYSTEM
Computer name   : ACER-42041E6643

Version information:
BUILD.DAT       : 14.0.2.286     55547 Bytes   12/9/2013 11:37:00
AVSCAN.EXE      : 14.0.2.254   1032760 Bytes  12/31/2013 20:37:28
AVSCANRC.DLL    : 14.0.2.180     52280 Bytes  12/31/2013 20:37:29
LUKE.DLL        : 14.0.2.234     65592 Bytes  12/31/2013 20:39:15
AVSCPLR.DLL     : 14.0.2.254    124472 Bytes  12/31/2013 20:37:30
AVREG.DLL       : 14.0.2.212    250424 Bytes  12/31/2013 20:37:25
avlode.dll      : 14.0.2.254    540216 Bytes  12/31/2013 20:37:15
avlode.rdf      : 13.0.1.62      56973 Bytes  12/31/2013 20:40:42
VBASE000.VDF    : 7.11.70.0   66736640 Bytes    4/4/2013 20:29:31
VBASE001.VDF    : 7.11.74.226  2201600 Bytes   4/30/2013 20:30:00
VBASE002.VDF    : 7.11.80.60   2751488 Bytes   5/28/2013 20:30:40
VBASE003.VDF    : 7.11.85.214  2162688 Bytes   6/21/2013 20:31:14
VBASE004.VDF    : 7.11.91.176  3903488 Bytes   7/23/2013 20:32:08
VBASE005.VDF    : 7.11.98.186  6822912 Bytes   8/29/2013 20:33:38
VBASE006.VDF    : 7.11.103.230  2293248 Bytes   9/24/2013 20:34:12
VBASE007.VDF    : 7.11.116.38  5485568 Bytes  11/28/2013 20:34:51
VBASE008.VDF    : 7.11.120.140  1154560 Bytes  12/19/2013 20:34:55
VBASE009.VDF    : 7.11.120.141     2048 Bytes  12/19/2013 20:34:56
VBASE010.VDF    : 7.11.120.142     2048 Bytes  12/19/2013 20:34:56
VBASE011.VDF    : 7.11.120.143     2048 Bytes  12/19/2013 20:34:57
VBASE012.VDF    : 7.11.120.144     2048 Bytes  12/19/2013 20:34:57
VBASE013.VDF    : 7.11.120.145     2048 Bytes  12/19/2013 20:34:58
VBASE014.VDF    : 7.11.121.19   126976 Bytes  12/21/2013 20:34:59
VBASE015.VDF    : 7.11.121.147   122880 Bytes  12/24/2013 20:35:00
VBASE016.VDF    : 7.11.121.233   115712 Bytes  12/25/2013 20:35:01
VBASE017.VDF    : 7.11.122.57   325120 Bytes  12/27/2013 20:35:03
VBASE018.VDF    : 7.11.122.123   199680 Bytes  12/28/2013 20:35:05
VBASE019.VDF    : 7.11.122.124     2048 Bytes  12/28/2013 20:35:05
VBASE020.VDF    : 7.11.122.125     2048 Bytes  12/28/2013 20:35:06
VBASE021.VDF    : 7.11.122.126     2048 Bytes  12/28/2013 20:35:06
VBASE022.VDF    : 7.11.122.127     2048 Bytes  12/28/2013 20:35:07
VBASE023.VDF    : 7.11.122.128     2048 Bytes  12/28/2013 20:35:07
VBASE024.VDF    : 7.11.122.129     2048 Bytes  12/28/2013 20:35:08
VBASE025.VDF    : 7.11.122.130     2048 Bytes  12/28/2013 20:35:08
VBASE026.VDF    : 7.11.122.131     2048 Bytes  12/28/2013 20:35:09
VBASE027.VDF    : 7.11.122.132     2048 Bytes  12/28/2013 20:35:09
VBASE028.VDF    : 7.11.122.133     2048 Bytes  12/28/2013 20:35:10
VBASE029.VDF    : 7.11.122.134     2048 Bytes  12/28/2013 20:35:10
VBASE030.VDF    : 7.11.122.135     2048 Bytes  12/28/2013 20:35:11
VBASE031.VDF    : 7.11.122.216   416256 Bytes  12/31/2013 20:35:13
Engine version  : 8.2.12.166
AEVDF.DLL       : 8.1.3.4       102774 Bytes  12/31/2013 20:35:41
AESCRIPT.DLL    : 8.1.4.176     520574 Bytes  12/31/2013 20:35:40
AESCN.DLL       : 8.1.10.6      131447 Bytes  12/31/2013 20:35:39
AESBX.DLL       : 8.2.16.26    1245560 Bytes  12/31/2013 20:35:43
AERDL.DLL       : 8.2.0.138     704888 Bytes  12/31/2013 20:35:38
AEPACK.DLL      : 8.3.3.8       762232 Bytes  12/31/2013 20:35:36
AEOFFICE.DLL    : 8.1.2.76      205181 Bytes  12/31/2013 20:35:33
AEHEUR.DLL      : 8.1.4.830    6386042 Bytes  12/31/2013 20:35:32
AEHELP.DLL      : 8.1.27.10     266618 Bytes  12/31/2013 20:35:21
AEGEN.DLL       : 8.1.7.20      446839 Bytes  12/31/2013 20:35:20
AEEXP.DLL       : 8.4.1.138     418168 Bytes  12/31/2013 20:35:44
AEEMU.DLL       : 8.1.3.2       393587 Bytes  12/31/2013 20:35:18
AECORE.DLL      : 8.1.33.0      225657 Bytes  12/31/2013 20:35:17
AEBB.DLL        : 8.1.1.4        53619 Bytes  12/31/2013 20:35:16
AVWINLL.DLL     : 14.0.2.180     23608 Bytes  12/31/2013 20:19:44
AVPREF.DLL      : 14.0.2.180     48696 Bytes  12/31/2013 20:37:24
AVREP.DLL       : 14.0.2.180    175672 Bytes  12/31/2013 20:37:26
AVARKT.DLL      : 14.0.2.254    256056 Bytes  12/31/2013 20:36:39
AVEVTLOG.DLL    : 14.0.2.180    165944 Bytes  12/31/2013 20:36:48
SQLITE3.DLL     : 3.7.0.1       394808 Bytes  12/31/2013 20:39:56
AVSMTP.DLL      : 14.0.2.180     60472 Bytes  12/31/2013 20:37:35
NETNT.DLL       : 14.0.2.180     13368 Bytes  12/31/2013 20:39:21
RCIMAGE.DLL     : 14.0.2.180   4788792 Bytes  12/31/2013 20:19:49
RCTEXT.DLL      : 14.0.2.236     72760 Bytes  12/31/2013 20:19:50

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: c:\program files\avira\antivir desktop\sysscan.avp
Reporting...........................: default
Primary action......................: Interactive
Secondary action....................: Ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Limit recursion depth...............: 20
Smart extensions....................: on
Macrovirus heuristic................: on
File heuristic......................: extended

Start of the scan: Tuesday, December 31, 2013  14:10

Start scanning boot sectors:
Boot sector 'HDD0(C:)'
    [INFO]      No virus was found!

Starting search for hidden objects.
An ARK library instance is already running.

The scan of running processes will be started:
Scan process 'avscan.exe' - '90' Module(s) have been scanned
Scan process 'avscan.exe' - '90' Module(s) have been scanned
Scan process 'avcenter.exe' - '89' Module(s) have been scanned
Scan process 'avgnt.exe' - '75' Module(s) have been scanned
Scan process 'sched.exe' - '43' Module(s) have been scanned
Scan process 'avshadow.exe' - '22' Module(s) have been scanned
Scan process 'avguard.exe' - '88' Module(s) have been scanned
Scan process 'RaUI.exe' - '46' Module(s) have been scanned
Scan process 'LeumiComposer.exe' - '21' Module(s) have been scanned
Scan process 'fbaSched.exe' - '37' Module(s) have been scanned
Scan process 'TomTomHOMERunner.exe' - '29' Module(s) have been scanned
Scan process 'ctfmon.exe' - '28' Module(s) have been scanned
Scan process 'jusched.exe' - '51' Module(s) have been scanned
Scan process 'EEventManager.exe' - '53' Module(s) have been scanned
Scan process 'pdfpro7hook.exe' - '48' Module(s) have been scanned
Scan process 'ZuneLauncher.exe' - '28' Module(s) have been scanned
Scan process 'PDVD8Serv.exe' - '27' Module(s) have been scanned
Scan process 'mwlDaemon.exe' - '52' Module(s) have been scanned
Scan process 'EgisUpdate.exe' - '39' Module(s) have been scanned
Scan process 'RTHDCPL.EXE' - '39' Module(s) have been scanned
Scan process 'RUNDLL32.EXE' - '32' Module(s) have been scanned
Scan process 'tv_w32.exe' - '40' Module(s) have been scanned
Scan process 'TeamViewer.exe' - '111' Module(s) have been scanned
Scan process 'Explorer.EXE' - '137' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '43' Module(s) have been scanned
Scan process 'alg.exe' - '35' Module(s) have been scanned
Scan process 'nSvcIp.exe' - '53' Module(s) have been scanned
Scan process 'nSvcAppFlt.exe' - '44' Module(s) have been scanned
Scan process 'WMPNetwk.exe' - '61' Module(s) have been scanned
Scan process 'ZuneBusEnum.exe' - '29' Module(s) have been scanned
Scan process 'TomTomHOMEService.exe' - '9' Module(s) have been scanned
Scan process 'TeamViewer_Service.exe' - '85' Module(s) have been scanned
Scan process 'svchost.exe' - '41' Module(s) have been scanned
Scan process 'spnsrvnt.exe' - '24' Module(s) have been scanned
Scan process 'sntlkeyssrvr.exe' - '25' Module(s) have been scanned
Scan process 'RaRegistry.exe' - '31' Module(s) have been scanned
Scan process 'PDFProFiltSrv.exe' - '16' Module(s) have been scanned
Scan process 'MWLService.exe' - '35' Module(s) have been scanned
Scan process 'jqs.exe' - '35' Module(s) have been scanned
Scan process 'svchost.exe' - '36' Module(s) have been scanned
Scan process 'EPCP.exe' - '38' Module(s) have been scanned
Scan process 'dsNcService.exe' - '37' Module(s) have been scanned
Scan process 'eEBSVC.exe' - '28' Module(s) have been scanned
Scan process 'spoolsv.exe' - '62' Module(s) have been scanned
Scan process 'svchost.exe' - '43' Module(s) have been scanned
Scan process 'svchost.exe' - '35' Module(s) have been scanned
Scan process 'svchost.exe' - '33' Module(s) have been scanned
Scan process 'svchost.exe' - '163' Module(s) have been scanned
Scan process 'svchost.exe' - '40' Module(s) have been scanned
Scan process 'svchost.exe' - '55' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '40' Module(s) have been scanned
Scan process 'lsass.exe' - '62' Module(s) have been scanned
Scan process 'services.exe' - '29' Module(s) have been scanned
Scan process 'winlogon.exe' - '68' Module(s) have been scanned
Scan process 'csrss.exe' - '14' Module(s) have been scanned
Scan process 'smss.exe' - '2' Module(s) have been scanned

Starting to scan executable files (registry):
The registry was scanned ( '10969' files ).

Starting the file scan:

Begin scan in 'C:\' <ACER>
    [0] Archive type: RSRC
    --> C:\Program Files\Dropbox\DropboxProxy.exe
        [1] Archive type: RSRC
      --> C:\Documents and Settings\arie\Application Data\Dropbox\bin\Dropbox.exe
          [2] Archive type: RSRC
        --> C:\Documents and Settings\arie\Application Data\Sun\Java\Deployment\cache\6.0\50\50732f32-788b2b4e
            [3] Archive type: ZIP
          --> datas/Hlos.class
              [DETECTION] Contains recognition pattern of the EXP/CVE-201-0840.A.129 exploit
              [WARNING]   Infected files in archives cannot be repaired
          --> datas/K.class
              [DETECTION] Contains recognition pattern of the EXP/2011-3544.CZ exploit
              [WARNING]   Infected files in archives cannot be repaired
          --> datas/Mmmzuuuu.class
              [DETECTION] Contains recognition pattern of the EXP/CVE-2010-0840.A.112 exploit
              [WARNING]   Infected files in archives cannot be repaired
          --> datas/Muuum.class
              [DETECTION] Contains recognition pattern of the EXP/2011-3544.BS exploit
              [WARNING]   Infected files in archives cannot be repaired
          --> datas/wall$1.class
              [DETECTION] Contains recognition pattern of the EXP/2011-3544.DH exploit
              [WARNING]   Infected files in archives cannot be repaired
          --> datas/wall$clopto.class
              [DETECTION] Contains recognition pattern of the JAVA/Dldr.Pesur.JF Java virus
              [WARNING]   Infected files in archives cannot be repaired
          --> datas/wall.class
              [DETECTION] Contains recognition pattern of the EXP/2010-0840.CT exploit
              [WARNING]   Infected files in archives cannot be repaired
C:\Documents and Settings\arie\Application Data\Sun\Java\Deployment\cache\6.0\50\50732f32-788b2b4e
  [DETECTION] Contains recognition pattern of the EXP/2010-0840.CT exploit
        --> C:\Documents and Settings\arie\My Documents\Downloads\Dropbox 2.4.7(2).exe
            [3] Archive type: NSIS
          --> C:\Documents and Settings\arie\My Documents\Downloads\Dropbox 2.4.7.exe
              [4] Archive type: NSIS
            --> C:\Documents and Settings\arie\My Documents\My Pictures\Downloads\Google Nexus 7 ToolKit v2.0.0.exe
                [5] Archive type: CAB SFX (self extracting)
              --> drivers\amd64\winusbcoinstaller2.dll
                  [6] Archive type: RSRC
                --> drivers\amd64\WUDFUpdate_01009.dll
                    [7] Archive type: RSRC
                  --> drivers\i386\winusbcoinstaller2.dll
                      [8] Archive type: RSRC
                    --> C:\Documents and Settings\nurit\Local Settings\Temp\jre-6u20-windows-i586-iftw-rv.exe
                        [9] Archive type: Runtime Packed
                      --> C:\Documents and Settings\nurit\Local Settings\Temp\jre-6u29-windows-i586-iftw-rv.exe
                          [10] Archive type: Runtime Packed
                        --> C:\Documents and Settings\nurit\My Documents\Downloads\sumatrapdf.exe
                            [11] Archive type: RSRC
                          --> C:\Google Nexus 7 ToolKit\drivers\amd64\winusbcoinstaller2.dll
                              [12] Archive type: RSRC
                            --> C:\Google Nexus 7 ToolKit\drivers\amd64\WUDFUpdate_01009.dll
                                [13] Archive type: RSRC
                              --> C:\Google Nexus 7 ToolKit\drivers\i386\winusbcoinstaller2.dll
                                  [14] Archive type: RSRC
                                --> C:\Google Nexus 7 ToolKit\drivers\i386\WUDFUpdate_01009.dll
                                    [15] Archive type: RSRC
                                  --> C:\Program Files\Dropbox\DropboxProxy.exe
                                      [16] Archive type: RSRC
                                    --> C:\Program Files\EgisTec\MyWinLocker 3\HTCA_SelfExtract.bin
                                        [17] Archive type: OVL
                                      --> C:\Program Files\Riverdeep\Offers\ELPPC\PeoplePCOnline.exe
                                          [18] Archive type: CAB SFX (self extracting)
                                        --> \Dialer\dialer.exe
                                            [DETECTION] Is the TR/Rogue.7329503 Trojan
                                            [WARNING]   Infected files in archives cannot be repaired
                                        --> \System\PPCRunOnce.exe
                                            [DETECTION] Is the TR/Agent.24576.887 Trojan
                                            [WARNING]   Infected files in archives cannot be repaired
                                        --> \Utilities\AtlBrowser.exe
                                            [DETECTION] Contains recognition pattern of the DIAL/90112 dialer
                                            [WARNING]   Infected files in archives cannot be repaired
C:\Program Files\Riverdeep\Offers\ELPPC\PeoplePCOnline.exe
  [DETECTION] Contains recognition pattern of the DIAL/90112 dialer
                                      --> C:\Program Files\Zune\Drivers\Zune\WUDFUpdate_01009.dll
                                          [18] Archive type: RSRC
                                        --> C:\System Volume Information\_restore{CC54333A-3BB1-4A29-82AE-61DB29C9A493}\RP1429\A0084462.exe
                                            [19] Archive type: RSRC
                                          --> C:\System Volume Information\_restore{CC54333A-3BB1-4A29-82AE-61DB29C9A493}\RP1438\A0087190.exe
                                              [20] Archive type: NSIS
                                            --> C:\System Volume Information\_restore{CC54333A-3BB1-4A29-82AE-61DB29C9A493}\RP1439\A0090505.exe
                                                [21] Archive type: CAB SFX (self extracting)
                                              --> \Dialer\dialer.exe
                                                  [DETECTION] Is the TR/Rogue.7329503 Trojan
                                                  [WARNING]   Infected files in archives cannot be repaired
                                              --> \System\PPCRunOnce.exe
                                                  [DETECTION] Is the TR/Agent.24576.887 Trojan
                                                  [WARNING]   Infected files in archives cannot be repaired
                                              --> \Utilities\AtlBrowser.exe
                                                  [DETECTION] Contains recognition pattern of the DIAL/90112 dialer
                                                  [WARNING]   Infected files in archives cannot be repaired
C:\System Volume Information\_restore{CC54333A-3BB1-4A29-82AE-61DB29C9A493}\RP1439\A0090505.exe
  [DETECTION] Contains recognition pattern of the DIAL/90112 dialer

Beginning disinfection:
C:\System Volume Information\_restore{CC54333A-3BB1-4A29-82AE-61DB29C9A493}\RP1439\A0090505.exe
  [DETECTION] Contains recognition pattern of the DIAL/90112 dialer
  [NOTE]      The file was moved to the quarantine directory under the name '57d3c122.qua'!
C:\Program Files\Riverdeep\Offers\ELPPC\PeoplePCOnline.exe
  [DETECTION] Contains recognition pattern of the DIAL/90112 dialer
  [WARNING]   An error has occurred and the file was not deleted. ErrorID: 26004
  [WARNING]   The source file could not be found.
  [NOTE]      The file is scheduled for deleting after reboot.
  [NOTE]      It is recommended to restart your computer in order to finish the repair.
C:\Documents and Settings\arie\Application Data\Sun\Java\Deployment\cache\6.0\50\50732f32-788b2b4e
  [DETECTION] Contains recognition pattern of the EXP/2010-0840.CT exploit
  [WARNING]   An error has occurred and the file was not deleted. ErrorID: 26004
  [WARNING]   The source file could not be found.
  [NOTE]      The file is scheduled for deleting after reboot.
  [NOTE]      It is recommended to restart your computer in order to finish the repair.



#14 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,199 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:22 PM

Posted 01 January 2014 - 02:17 PM

Ok, these are in the System Restore files. That why they cannot be repaired.

This will remove them and free up some space too.




Create a New Restore Point to prevent possible reinfection from an old one. Some of the malware you picked up could have been backed up, renamed and saved in System Restore. Since this is a protected directory your tools cannot access to delete these files, they sometimes can re-infect your system if you accidentally use an old restore point. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state. The easiest and safest way to do this is:
  • Go to Start > Programs > Accessories > System Tools and click "System Restore".
  • Choose the radio button marked "Create a Restore Point" on the first screen then click "Next". Give the R.P. a name, then click "Create". The new point will be stamped with the current date and time. Keep a log of this so you can find it easily should you need to use System Restore.
  • Then use Disk Cleanup
  • to remove all but the most recently created Restore Point.
  • Go to Start > Run and type: Cleanmgr
  • Click "Ok". Disk Cleanup will scan your files for several minutes, then open.
  • Click the "More Options" tab, then click the "Clean up" button under System Restore.
  • Click Ok. You will be prompted with "Are you sure you want to delete all but the most recent restore point?"
  • Click Yes, then click Ok.
  • Click Yes again when prompted with "Are you sure you want to perform these actions?"
  • Disk Cleanup will remove the files and close automatically. Vista and Windows 7 users can refer to these links:
  • Create a New Restore Point in Vista
  • Create a New Restore Point in Windows 7 (alternate method)
  • Disk Cleanup in Vista
  • Disk Cleanup in Windows 7
  • ◾Reboot and see how it is.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#15 yhelfman

yhelfman
  • Topic Starter

  • Members
  • 152 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Mountain View, CA
  • Local time:09:22 AM

Posted 01 January 2014 - 02:40 PM

Great! Everything looks good now :)






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users