Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Ransomware USA Virus Help Request


  • This topic is locked This topic is locked
15 replies to this topic

#1 Fhallest

Fhallest

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 26 March 2014 - 01:11 PM

I was recently lucky enough to have this lovely virus on my machine and used this post  http://www.bleepingcomputer.com/forums/t/528472/ice-crime-center-virus to create a rescue disk to remove the virus from my computer.  This little bug would not let me use safe mode in any form to remove it from my machine.  I think I have removed it from my machine but am not sure if I got it all and some programs are not running correctly.  I do not want to mess up my machine further and using the rescue disk worked great but not sure how to use FRST yet.  Any help would be greatly appreciated.

 

Randy



BC AdBot (Login to Remove)

 


#2 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:31 AM

Posted 27 March 2014 - 06:22 AM

Hi there,
my name is Marius and I will assist you with your malware related problems.

Before we move on, please read the following points carefully.

  • First, read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.
  • Perform everything in the correct order. Sometimes one step requires the previous one.
  • If you have any problems while following my instructions, Stop there and tell me the exact nature of your problem.
  • Do not run any other scans without instruction or add/remove software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
  • Post all logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
  • If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.
  • Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
  • My first language is not english. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.

 
 
 
 
 
HijackThis is not the preferred initial scanning tool in this forum. With today's malware, a more comprehensive set of logs is required to determine the presence of malware.
 
 
 
 
Scan with FRST in normal mode

Please download Farbar's Recovery Scan Tool to your desktop: FRST 32bit or FRST 64bit (If not sure: Start --> Computer (right click) --> properties)
 
  • Run FRST.
  • Don´t change one of the checkboxes and hit Scan.
  • Logfiles are created on your desktop.
  • Poste the FRST.txt and (after the first scan only!) the Addition.txt.

 
 
 
 
 
Scan with TDSS-Killer

Please read and follow these instructions carefully. We do not want it to fix anything yet (if found), we need to see a report first.

Download TDSSKiller.zip and extract to your desktop
  • Execute TDSSKiller.exe by doubleclicking on it.
  • Press Start Scan
  • If Malicious objects are found, do NOT select Copy to quarantine. Change the action to Skip, and save the log.
  • Once complete, a log will be produced at the root drive which is typically C:\ ,for example, C:\TDSSKiller.<version_date_time>log.txt



Please attach this file to your next reply.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#3 Fhallest

Fhallest
  • Topic Starter

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 28 March 2014 - 02:09 PM

Hey Marius,

 

I have completed all the scans as completed.  I have a few errors that occur on my machine but wanted to wait untill these scan were completed to see if this will fix it.  My windows update will no longer work on my computer and was wondering if you could help with that issue?  I was wondering what is your native language?

 

 

Thanks again for everything

 

Randy

 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2014  01
Ran by Randy (administrator) on HOME-49A505CF77 on 28-03-2014 12:41:30
Running from E:\Documents and Settings\Randy\My Documents\Downloads
Microsoft Windows XP Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(AVAST Software) E:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) E:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avid Technology, Inc.) E:\Program Files\M-Audio\Revo 7.1\Revo71Task.exe
(Apple Inc.) E:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) E:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) E:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) E:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Mozilla Corporation) E:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AvastUI.exe] - E:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-02-16] (AVAST Software)
HKLM\...\Run: [NvCplDaemon] - E:\WINDOWS\system32\NvCpl.dll [15709984 2013-10-23] (NVIDIA Corporation)
HKLM\...\Run: [Adobe ARM] - E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\RunOnce: [20131224] - E:\Program Files\AVAST Software\Avast\setup\emupdate\27f8e703-1e32-41a3-a367-87dbc6279eb1.exe /check [181136 2014-03-28] (AVAST Software)
HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "E:\WINDOWS\system32\config\systemprofile\Application Data\SearchProtect"
HKU\S-1-5-21-1957994488-1606980848-725345543-1003\...\MountPoints2: {d2c151f8-48e4-11e3-9f4a-806d6172696f} - D:\LaunchEAWG.exe
HKU\S-1-5-21-1957994488-1606980848-725345543-1003\...\MountPoints2: {f5fc6acf-4897-11e3-9626-806d6172696f} - D:\ASUSACPI.exe
Startup: E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Revo7.1_Tray.lnk
ShortcutTarget: Revo7.1_Tray.lnk -> E:\Program Files\M-Audio\Revo 7.1\Revo71Task.exe (Avid Technology, Inc.)
Startup: E:\Documents and Settings\Randy\Start Menu\Programs\Startup\ih0lcbmq.lnk
ShortcutTarget: ih0lcbmq.lnk -> E:\DOCUME~1\ALLUSE~1\APPLIC~1\qmbcl0hi.gsa (No File)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.bing.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3306061&CUI=UN33949004782547640&UM=2&SSPV=&UP=SP643439C4-3BA7-411B-875B-0DD27E347605
SearchScopes: HKCU - {528BDA08-ED14-4FBD-9DDE-E0F1BB9740C3} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3306061&CUI=UN33949004782547640&UM=2&SSPV=S41BIE
SearchScopes: HKCU - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - E:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - E:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - E:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1384106712375
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - E:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2008-05-26] (Microsoft Corporation)
Winsock: Catalog5 04 E:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default
FF Homepage: hxxp://xfinity.comcast.net/
FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&SearchSource=2&CUI=UN34606743717410117&UM=2&sspv=S41C&q=
FF Plugin: @adobe.com/FlashPlayer - E:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - E:\WINDOWS\system32\Adobe\Director\np32dsw_1205146.dll (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 - E:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - e:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - E:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - E:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.0 - E:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.1 - E:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 - E:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - E:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\searchplugins\conduit-search.xml
FF SearchPlugin: E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\searchplugins\conduit.xml
FF Extension: Connect DLC 5  - E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\Extensions\{d1b5aad5-d1ae-4b20-88b1-feeaeb4c1ebc} [2013-12-24]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - E:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - E:\Program Files\AVAST Software\Avast\WebRep\FF [2013-11-10]

========================== Services (Whitelisted) =================

R2 avast! Antivirus; E:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-02-16] (AVAST Software)
S2 winmgmt; E:\DOCUME~1\ALLUSE~1\APPLIC~1\qmbcl0hi.gsa [X]

==================== Drivers (Whitelisted) ====================

R1 AmdPPM; E:\WINDOWS\System32\DRIVERS\AmdPPM.sys [33792 2007-04-16] (Advanced Micro Devices)
R2 aswMonFlt; E:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-02-16] (AVAST Software)
R1 aswRdr; E:\WINDOWS\system32\drivers\aswRdr.sys [54832 2014-02-16] (AVAST Software)
R0 aswRvrt; E:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2013-11-10] ()
R1 aswSnx; E:\WINDOWS\system32\drivers\aswSnx.sys [775952 2014-02-16] (AVAST Software)
R1 aswSP; E:\WINDOWS\system32\drivers\aswSP.sys [410784 2014-02-16] (AVAST Software)
R1 aswTdi; E:\WINDOWS\system32\drivers\aswTdi.sys [57672 2014-02-16] (AVAST Software)
R0 aswVmm; E:\WINDOWS\system32\Drivers\aswVmm.sys [180248 2014-01-06] ()
R3 gameenum; E:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation)
R3 ms_mpu401; E:\WINDOWS\System32\drivers\msmpu401.sys [2944 2001-08-17] (Microsoft Corporation)
R3 MTsensor; E:\WINDOWS\System32\DRIVERS\ASACPI.sys [5810 2004-08-12] ()
R0 nvata; E:\WINDOWS\System32\DRIVERS\nvata.sys [92800 2005-05-17] (NVIDIA Corporation)
R3 NVENETFD; E:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54784 2008-08-01] (NVIDIA Corporation)
R3 NVHDA; E:\WINDOWS\System32\drivers\nvhda32.sys [124264 2013-02-18] (NVIDIA Corporation)
R3 nvnetbus; E:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2008-08-01] (NVIDIA Corporation)
R3 REVO71; E:\WINDOWS\System32\DRIVERS\revo71.sys [132992 2008-03-18] (Avid Technology, Inc.)
S4 IntelIde; No ImagePath
U5 ScsiPort; E:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-03-28 12:41 - 2014-03-28 12:41 - 00000000 ____D () E:\FRST
2014-03-27 19:28 - 2014-03-27 21:06 - 00000000 ____D () E:\Program Files\Galaxies At War
2014-03-27 16:11 - 2014-03-27 16:11 - 00020530 _____ () E:\WINDOWS\setupapi.log
2014-03-27 16:10 - 2014-03-27 16:10 - 00002044 _____ () E:\Documents and Settings\All Users\Desktop\SpellForce 2 Demons of the Past.lnk
2014-03-27 16:10 - 2014-03-27 16:10 - 00000000 ____D () E:\Documents and Settings\All Users\Start Menu\Programs\SpellForce 2 Demons of the Past
2014-03-27 15:59 - 2014-03-27 15:59 - 00000000 ____D () E:\Documents and Settings\Randy\My Documents\SpellForce2
2014-03-27 15:46 - 2014-03-27 15:46 - 00000000 ____D () E:\Program Files\Nordic Games
2014-03-25 18:20 - 2014-03-25 18:20 - 00000000 ____D () E:\WINDOWS\CSC
2014-03-25 17:31 - 2014-03-26 04:49 - 00000000 ____D () E:\Kaspersky Rescue Disk 10.0
2014-03-25 17:20 - 2014-03-26 08:12 - 95027928 ____T () E:\Documents and Settings\All Users\Application Data\ih0lcbmq.bbr
2014-03-10 22:54 - 2014-03-10 22:54 - 00000079 _____ () E:\WINDOWS\wininit.ini
2014-03-04 01:17 - 2014-03-04 01:17 - 00333736 _____ () E:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1957994488-1606980848-725345543-1003-0.dat
2014-03-04 01:17 - 2014-03-04 01:17 - 00283514 _____ () E:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
2014-03-04 01:06 - 2014-03-04 01:06 - 00000743 _____ () E:\Documents and Settings\Randy\Desktop\Stargate Pegasus Chronicles.lnk
2014-03-03 20:20 - 2014-03-04 21:04 - 00000000 ____D () E:\Documents and Settings\Randy\Desktop\Red
2014-03-03 19:08 - 2014-03-03 19:08 - 00002033 _____ () E:\Documents and Settings\All Users\Desktop\Republic at War.lnk
2014-03-03 18:56 - 2014-03-03 18:56 - 00002012 _____ () E:\Documents and Settings\All Users\Desktop\Star Wars Empire at War Forces of Corruption.lnk
2014-02-26 00:13 - 2014-03-03 19:50 - 00000000 ____D () E:\Documents and Settings\Randy\Application Data\Petroglyph

==================== One Month Modified Files and Folders =======

2014-03-28 12:41 - 2014-03-28 12:41 - 00000000 ____D () E:\FRST
2014-03-28 12:28 - 2014-02-16 23:13 - 00000364 ____H () E:\WINDOWS\Tasks\avast! Emergency Update.job
2014-03-28 12:26 - 2013-11-08 20:03 - 01790366 _____ () E:\WINDOWS\WindowsUpdate.log
2014-03-28 12:23 - 2013-12-03 20:04 - 00000159 _____ () E:\WINDOWS\wiadebug.log
2014-03-28 12:23 - 2013-12-03 20:04 - 00000049 _____ () E:\WINDOWS\wiaservc.log
2014-03-28 12:23 - 2013-11-15 17:21 - 00000200 _____ () E:\WINDOWS\Tasks\AutoKMS.job
2014-03-28 12:23 - 2013-11-09 21:21 - 00011424 _____ () E:\WINDOWS\system32\nvAppTimestamps
2014-03-28 12:23 - 2013-11-08 20:07 - 00000006 ____H () E:\WINDOWS\Tasks\SA.DAT
2014-03-28 12:23 - 2006-02-28 06:00 - 00013646 _____ () E:\WINDOWS\system32\wpa.dbl
2014-03-28 00:57 - 2013-11-08 20:08 - 00000178 ___SH () E:\Documents and Settings\Randy\ntuser.ini
2014-03-28 00:57 - 2013-11-08 20:07 - 00032526 _____ () E:\WINDOWS\SchedLgU.Txt
2014-03-27 22:43 - 2013-11-25 17:52 - 00000000 ____D () E:\Documents and Settings\Randy\Local Settings\Application Data\Axialis
2014-03-27 21:52 - 2014-02-24 21:31 - 00000000 ____D () E:\Documents and Settings\Randy\Application Data\vlc
2014-03-27 21:10 - 2014-02-25 17:18 - 00000000 ____D () E:\Program Files\LucasArts
2014-03-27 21:06 - 2014-03-27 19:28 - 00000000 ____D () E:\Program Files\Galaxies At War
2014-03-27 17:09 - 2013-11-15 17:21 - 00000202 _____ () E:\WINDOWS\Tasks\AutoKMSDaily.job
2014-03-27 16:11 - 2014-03-27 16:11 - 00020530 _____ () E:\WINDOWS\setupapi.log
2014-03-27 16:11 - 2013-11-08 20:03 - 00000000 ____D () E:\WINDOWS\system32\DirectX
2014-03-27 16:10 - 2014-03-27 16:10 - 00002044 _____ () E:\Documents and Settings\All Users\Desktop\SpellForce 2 Demons of the Past.lnk
2014-03-27 16:10 - 2014-03-27 16:10 - 00000000 ____D () E:\Documents and Settings\All Users\Start Menu\Programs\SpellForce 2 Demons of the Past
2014-03-27 15:59 - 2014-03-27 15:59 - 00000000 ____D () E:\Documents and Settings\Randy\My Documents\SpellForce2
2014-03-27 15:46 - 2014-03-27 15:46 - 00000000 ____D () E:\Program Files\Nordic Games
2014-03-27 13:39 - 2013-11-09 15:16 - 00000000 ____D () E:\Documents and Settings\Randy\Application Data\BitTorrent
2014-03-27 00:29 - 2013-11-14 17:45 - 00037888 _____ () E:\Documents and Settings\Randy\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-03-26 08:12 - 2014-03-25 17:20 - 95027928 ____T () E:\Documents and Settings\All Users\Application Data\ih0lcbmq.bbr
2014-03-26 04:49 - 2014-03-25 17:31 - 00000000 ____D () E:\Kaspersky Rescue Disk 10.0
2014-03-25 18:20 - 2014-03-25 18:20 - 00000000 ____D () E:\WINDOWS\CSC
2014-03-25 18:05 - 2013-11-09 21:15 - 00000178 ___SH () E:\Documents and Settings\UpdatusUser\ntuser.ini
2014-03-25 18:03 - 2013-11-08 20:20 - 00000000 __SHD () E:\Documents and Settings\Randy\UserData
2014-03-25 18:03 - 2013-11-08 20:08 - 00000000 ____D () E:\Documents and Settings\Randy
2014-03-25 12:18 - 2013-11-16 01:10 - 00043520 _____ () E:\WINDOWS\system32\CmdLineExt03.dll
2014-03-15 17:51 - 2014-02-10 17:24 - 00000000 ____D () E:\Program Files\Total War ROME II
2014-03-15 13:59 - 2013-11-15 16:14 - 00065536 _____ () E:\WINDOWS\system32\config\OAlerts.evt
2014-03-10 22:56 - 2013-11-10 12:15 - 00000000 ____D () E:\Documents and Settings\Randy\Local Settings\Application Data\Google
2014-03-10 22:54 - 2014-03-10 22:54 - 00000079 _____ () E:\WINDOWS\wininit.ini
2014-03-10 22:54 - 2013-11-15 16:04 - 00458752 _____ () E:\WINDOWS\system32\config\SpybotSD.evt
2014-03-10 22:54 - 2013-11-15 16:03 - 00000000 ____D () E:\Program Files\Spybot - Search & Destroy 2
2014-03-10 22:54 - 2013-11-15 16:03 - 00000000 ____D () E:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2014-03-09 13:56 - 2013-11-08 12:30 - 00636150 _____ () E:\WINDOWS\system32\PerfStringBackup.INI
2014-03-07 23:11 - 2013-11-09 21:33 - 00000000 __HDC () E:\WINDOWS\$NtUninstallKB2440591$
2014-03-07 23:10 - 2013-11-16 01:02 - 00000000 ____D () E:\Documents and Settings\Randy\Desktop\home211trn3
2014-03-04 21:04 - 2014-03-03 20:20 - 00000000 ____D () E:\Documents and Settings\Randy\Desktop\Red
2014-03-04 01:17 - 2014-03-04 01:17 - 00333736 _____ () E:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1957994488-1606980848-725345543-1003-0.dat
2014-03-04 01:17 - 2014-03-04 01:17 - 00283514 _____ () E:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
2014-03-04 01:06 - 2014-03-04 01:06 - 00000743 _____ () E:\Documents and Settings\Randy\Desktop\Stargate Pegasus Chronicles.lnk
2014-03-03 19:50 - 2014-02-26 00:13 - 00000000 ____D () E:\Documents and Settings\Randy\Application Data\Petroglyph
2014-03-03 19:08 - 2014-03-03 19:08 - 00002033 _____ () E:\Documents and Settings\All Users\Desktop\Republic at War.lnk
2014-03-03 18:56 - 2014-03-03 18:56 - 00002012 _____ () E:\Documents and Settings\All Users\Desktop\Star Wars Empire at War Forces of Corruption.lnk
2014-03-03 18:54 - 2014-02-25 17:18 - 00000000 ____D () E:\Documents and Settings\All Users\Start Menu\Programs\LucasArts
2014-03-03 18:54 - 2013-11-08 20:14 - 00000000 ___HD () E:\Program Files\InstallShield Installation Information
2014-02-28 01:23 - 2013-11-15 18:07 - 00000000 ____D () E:\Documents and Settings\Randy\Application Data\foobar2000
2014-02-27 17:22 - 2013-12-24 11:37 - 00000000 ____D () E:\Documents and Settings\Randy\Local Settings\Application Data\Conduit

==================== Bamital & volsnap Check =================

E:\WINDOWS\explorer.exe => MD5 is legit
E:\WINDOWS\system32\winlogon.exe => MD5 is legit
E:\WINDOWS\system32\svchost.exe => MD5 is legit
E:\WINDOWS\system32\services.exe => MD5 is legit
E:\WINDOWS\system32\User32.dll => MD5 is legit
E:\WINDOWS\system32\userinit.exe => MD5 is legit
E:\WINDOWS\system32\rpcss.dll => MD5 is legit
E:\WINDOWS\system32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================

 

 

 

 

 

 

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13-03-2014  01
Ran by Randy at 2014-03-28 12:41:49
Running from E:\Documents and Settings\Randy\My Documents\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================


==================== Installed Programs ======================

7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.9.900.117 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 11.9.900.152 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM\...\Adobe Shockwave Player) (Version: 12.0.5.146 - Adobe Systems, Inc.)
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0592EF96-69D8-4E4B-9CC9-88F58EA86F01}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2013 - Avast Software)
BitTorrent (HKCU\...\BitTorrent) (Version: 7.8.2.30332 - BitTorrent Inc.)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.08 - Piriform)
Cheat Engine 6.1 (HKLM\...\Cheat Engine 6.1_is1) (Version:  - Dark Byte)
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
foobar2000 v1.2.9 (HKLM\...\foobar2000) (Version: 1.2.9 - Peter Pawlowski)
Forged Alliance Forever (HKLM\...\{B0221F91-A689-40FD-9E19-7C5192B529D8}) (Version: 240.10.98 - FAF Community)
GPGNet (HKLM\...\{C194D333-B84A-4BB7-B35E-060732D98DC4}) (Version: 1.0.0 - Gas Powered Games)
Homeworld2 (HKLM\...\Homeworld2) (Version:  - Sierra)
iTunes (HKLM\...\{C197BC08-3D82-4651-8886-E68C21578A38}) (Version: 11.1.3.8 - Apple Inc.)
Kukuxumusu Digital Clock Screensaver (HKLM\...\Kukuxumusu Digital Clock Screensaver) (Version:  - )
Malwarebytes Anti-Malware version 1.75.0.1300 (HKLM\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
Mass Effect 3 (HKLM\...\Mass Effect 3_is1) (Version: Mass Effect 3 - )
Microsoft .NET Framework 1.1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Base Smart Card Cryptographic Service Provider Package (HKLM\...\KB909520) (Version:  - Microsoft Corporation)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Internationalized Domain Names Mitigation APIs (Version:  - Microsoft Corporation) Hidden
Microsoft National Language Support Downlevel APIs (Version:  - Microsoft Corporation) Hidden
Microsoft Office Access MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft Software Update for Web Folders  (English) 14 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft User-Mode Driver Framework Feature Pack 1.0 (HKLM\...\Wudf01000) (Version:  - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (HKLM\...\Microsoft Visual J# 2.0 Redistributable Package) (Version:  - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (Version: 2.0.50727 - Microsoft Corporation) Hidden
Mozilla Firefox 27.0.1 (x86 en-US) (HKLM\...\Mozilla Firefox 27.0.1 (x86 en-US)) (Version: 27.0.1 - Mozilla)
NVIDIA Control Panel 331.65 (Version: 331.65 - NVIDIA Corporation) Hidden
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
NVIDIA GeForce Experience 1.7 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.7 - NVIDIA Corporation)
NVIDIA Graphics Driver 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.140.952 - NVIDIA Corporation) Hidden
NVIDIA nView 140.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 140.75 - NVIDIA Corporation)
NVIDIA PhysX (Version: 9.13.0725 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
NVIDIA Update 9.3.16 (Version: 9.3.16 - NVIDIA Corporation) Hidden
NVIDIA Update Components (Version: 9.3.16 - NVIDIA Corporation) Hidden
PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC)
ProPilkki2 (HKLM\...\ProPilkki2) (Version:  - )
Republic at War 1.1.5 (HKLM\...\{1F3630F5-C636-49FF-9BF0-F9E2A221E60B}) (Version: 1.1.5 - Republic at War Modding Team)
Revo 7.1 Drivers (HKLM\...\{57217148-69B8-48D8-B517-77AA6415C2D3}) (Version: 5.10.00.5063v2 - M-AUDIO)
SpellForce 2 Demons of the Past (HKLM\...\{42F4C025-9AF9-402E-ADC5-7057AA6473AA}_is1) (Version:  - Nordic Games GmbH)
Star Wars Empire at War (HKLM\...\{99AE7207-8612-4DBA-A8F8-BAE5C633390D}) (Version: 1.0 - LucasArts)
Star Wars Empire at War Forces of Corruption (HKLM\...\{6592FDEC-2C1A-413A-9985-25FEC2F0848D}) (Version: 1.0 - LucasArts)
Supreme Commander - Forged Alliance (HKLM\...\{31D95937-B237-405D-920C-A3EF4E482395}) (Version: 1.00.0000 - Gas Powered Games)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Sword of the Stars ANY (HKLM\...\Sword of the Stars) (Version: 1.8.0 - Lighthouse Interactive)
Total War ROME II (HKLM\...\VG90YWxXYXJST01FSUk=_is1) (Version: 1 - )
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (HKLM\...\{0A0CADCF-78DA-33C4-A350-CD51849B9702}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (HKLM\...\{0A0CADCF-78DA-33C4-A350-CD51849B9702}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (HKLM\...\{0A0CADCF-78DA-33C4-A350-CD51849B9702}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (HKLM\...\{0A0CADCF-78DA-33C4-A350-CD51849B9702}.KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM\...\{0A0CADCF-78DA-33C4-A350-CD51849B9702}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Windows Internet Explorer 8 (KB2598845) (HKLM\...\KB2598845-IE8) (Version: 1 - Microsoft Corporation)
Update for Windows Internet Explorer 8 (KB2632503) (HKLM\...\KB2632503-IE8) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2345886) (HKLM\...\KB2345886) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2467659) (HKLM\...\KB2467659) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2492386) (HKLM\...\KB2492386) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2661254-v2) (HKLM\...\KB2661254-v2) (Version: 2 - Microsoft Corporation)
Update for Windows XP (KB2749655) (HKLM\...\KB2749655) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2808679) (HKLM\...\KB2808679) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2863058) (HKLM\...\KB2863058) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB898461) (HKLM\...\KB898461) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB951978) (HKLM\...\KB951978) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB955759) (HKLM\...\KB955759) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB968389) (HKLM\...\KB968389) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB971029) (HKLM\...\KB971029) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB973815) (HKLM\...\KB973815) (Version: 1 - Microsoft Corporation)
VLC media player 2.1.3 (HKLM\...\VLC media player) (Version: 2.1.3 - VideoLAN)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Genuine Advantage Notifications (KB905474) (HKLM\...\WgaNotify) (Version: 1.9.0040.0 - Microsoft Corporation)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\WGA) (Version: 1.7.0069.2 - Microsoft Corporation)
Windows Imaging Component (HKLM\...\WIC) (Version: 3.0.0.0 - Microsoft Corporation)
Windows Internet Explorer 7 (Version: 20070813.185237 - Microsoft Corporation) Hidden
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Management Framework Core (HKLM\...\KB968930) (Version:  - Microsoft Corporation)
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version:  - )
Windows Media Format 11 runtime (Version:  - Microsoft Corporation) Hidden
Windows Media Player 11 (HKLM\...\Windows Media Player) (Version:  - )
Windows Media Player 11 (Version:  - Microsoft Corporation) Hidden
Windows Search 4.0 (HKLM\...\KB940157) (Version: 04.00.6001.503 - Microsoft Corporation)
Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031525 - Microsoft Corporation)
WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)

==================== Restore Points  =========================

Could not list Restore Points. Check "winmgmt" service or repair WMI.


==================== Hosts content: ==========================

2006-02-28 06:00 - 2013-11-30 15:25 - 00450543 ___RA E:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1    localhost
127.0.0.1    www.007guard.com
127.0.0.1    007guard.com
127.0.0.1    008i.com
127.0.0.1    www.008k.com
127.0.0.1    008k.com
127.0.0.1    www.00hq.com
127.0.0.1    00hq.com
127.0.0.1    010402.com
127.0.0.1    www.032439.com
127.0.0.1    032439.com
127.0.0.1    www.0scan.com
127.0.0.1    0scan.com
127.0.0.1    1000gratisproben.com
127.0.0.1    www.1000gratisproben.com
127.0.0.1    1001namen.com
127.0.0.1    www.1001namen.com
127.0.0.1    100888290cs.com
127.0.0.1    www.100888290cs.com
127.0.0.1    www.100sexlinks.com
127.0.0.1    100sexlinks.com
127.0.0.1    10sek.com
127.0.0.1    www.10sek.com
127.0.0.1    www.1-2005-search.com
127.0.0.1    1-2005-search.com
127.0.0.1    123fporn.info
127.0.0.1    www.123fporn.info
127.0.0.1    123haustiereundmehr.com
127.0.0.1    www.123haustiereundmehr.com

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

Task: E:\WINDOWS\Tasks\AutoKMS.job => E:\WINDOWS\AutoKMS.exe
Task: E:\WINDOWS\Tasks\AutoKMSDaily.job => E:\WINDOWS\AutoKMS.exe
Task: E:\WINDOWS\Tasks\avast! Emergency Update.job => E:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-03-28 12:24 - 2014-03-28 02:09 - 02189312 _____ () E:\Program Files\AVAST Software\Avast\defs\14032800\algo.dll
2013-11-16 01:10 - 2014-03-25 12:18 - 00043520 _____ () E:\WINDOWS\system32\CmdLineExt03.dll
2013-11-09 21:14 - 2013-10-23 04:14 - 00468768 _____ () E:\Program Files\NVIDIA Corporation\nview\nvshell.dll
2013-11-10 12:15 - 2013-11-10 12:15 - 19336120 _____ () E:\Program Files\AVAST Software\Avast\libcef.dll
2013-09-13 20:51 - 2013-09-13 20:51 - 00087952 _____ () E:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2013-09-13 20:51 - 2013-09-13 20:51 - 01242952 _____ () E:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2014-02-14 20:07 - 2014-02-14 20:07 - 03578992 _____ () E:\Program Files\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== Disabled items from MSCONFIG ==============


==================== Faulty Device Manager Devices =============

Could not list Devices. Check "winmgmt" service or repair WMI.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/26/2014 11:18:27 PM) (Source: Application Hang) (User: )
Description: Hanging application swfoc.exe, version 1.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (03/16/2014 10:12:58 AM) (Source: Windows Search Service) (User: )
Description: The entry <E:\DOCUMENTS AND SETTINGS\RANDY\MY DOCUMENTS\DOWNLOADS\UFC 171 15TH MARCH 2014 HDTV X264 720P-SIR PAUL\UFC.171.15TH.MARCH.2014.HDTV.X264.720P-SIR.PAUL.MKV> in the hash map cannot be updated.

Context:  Application, SystemIndex Catalog


Details:
    A device attached to the system is not functioning.   (0x8007001f)

Error: (03/10/2014 00:26:37 AM) (Source: Application Error) (User: )
Description: Faulting application forgedalliance.exe, version 1.5.0.1, faulting module forgedalliance.exe, version 1.5.0.1, fault address 0x00507573.
Processing media-specific event for [forgedalliance.exe!ws!]

Error: (03/05/2014 04:18:36 PM) (Source: Application Hang) (User: )
Description: Hanging application firefox.exe, version 27.0.1.5156, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (03/03/2014 06:37:06 PM) (Source: Application Error) (User: )
Description: Faulting application swfoc.exe, version 1.0.0.0, faulting module unknown, version 0.0.0.0, fault address 0x05b8ff27.
Processing media-specific event for [swfoc.exe!ws!]

Error: (03/03/2014 04:59:45 PM) (Source: Application Error) (User: )
Description: Faulting application swfoc.exe, version 1.0.0.0, faulting module unknown, version 0.0.0.0, fault address 0x05cdff11.
Processing media-specific event for [swfoc.exe!ws!]

Error: (03/01/2014 01:11:48 AM) (Source: Application Hang) (User: )
Description: Hanging application firefox.exe, version 27.0.1.5156, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (02/25/2014 05:27:11 PM) (Source: Application Error) (User: )
Description: Faulting application CDKey.exe, version 0.0.0.0, faulting module CDKey.exe, version 0.0.0.0, fault address 0x00003bc5.
Processing media-specific event for [CDKey.exe!ws!]

Error: (02/25/2014 05:27:09 PM) (Source: Application Error) (User: )
Description: Windows cannot access the file D:\EAWX\INSTALL\CDKEY.EXE for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program CDKEY.EXE because of this error.

Program: CDKEY.EXE
File: D:\EAWX\INSTALL\CDKEY.EXE

The error value is listed in the Additional Data section.
User Action
1. Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
2.
If the file still cannot be accessed and
    - It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
    - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.
Additional Data
Error value: C000009C
Disk type: 5

Error: (02/25/2014 05:25:37 PM) (Source: Application Error) (User: )
Description: Faulting application CDKey.exe, version 0.0.0.0, faulting module CDKey.exe, version 0.0.0.0, fault address 0x00004c6e.
Processing media-specific event for [CDKey.exe!ws!]


System errors:
=============
Error: (03/27/2014 05:57:05 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 05:56:35 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 05:56:05 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 05:55:35 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 05:55:05 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 05:54:35 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 05:54:05 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 05:53:35 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 04:47:28 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {8BC3F05E-D86B-11D0-A075-00C04FB68820} did not register with DCOM within the required timeout.

Error: (03/27/2014 04:10:43 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The server {C49E32C6-BC8B-11D2-85D4-00105A1F8304} did not register with DCOM within the required timeout.


Microsoft Office Sessions:
=========================
Error: (03/26/2014 11:18:27 PM) (Source: Application Hang)(User: )
Description: swfoc.exe1.0.0.0hungapp0.0.0.000000000

Error: (03/16/2014 10:12:58 AM) (Source: Windows Search Service)(User: )
Description: Context:  Application, SystemIndex Catalog


Details:
    A device attached to the system is not functioning.   (0x8007001f)
E:\DOCUMENTS AND SETTINGS\RANDY\MY DOCUMENTS\DOWNLOADS\UFC 171 15TH MARCH 2014 HDTV X264 720P-SIR PAUL\UFC.171.15TH.MARCH.2014.HDTV.X264.720P-SIR.PAUL.MKV

Error: (03/10/2014 00:26:37 AM) (Source: Application Error)(User: )
Description: forgedalliance.exe1.5.0.1forgedalliance.exe1.5.0.100507573

Error: (03/05/2014 04:18:36 PM) (Source: Application Hang)(User: )
Description: firefox.exe27.0.1.5156hungapp0.0.0.000000000

Error: (03/03/2014 06:37:06 PM) (Source: Application Error)(User: )
Description: swfoc.exe1.0.0.0unknown0.0.0.005b8ff27

Error: (03/03/2014 04:59:45 PM) (Source: Application Error)(User: )
Description: swfoc.exe1.0.0.0unknown0.0.0.005cdff11

Error: (03/01/2014 01:11:48 AM) (Source: Application Hang)(User: )
Description: firefox.exe27.0.1.5156hungapp0.0.0.000000000

Error: (02/25/2014 05:27:11 PM) (Source: Application Error)(User: )
Description: CDKey.exe0.0.0.0CDKey.exe0.0.0.000003bc5

Error: (02/25/2014 05:27:09 PM) (Source: Application Error)(User: )
Description: D:\EAWX\INSTALL\CDKEY.EXECDKEY.EXEC000009C5

Error: (02/25/2014 05:25:37 PM) (Source: Application Error)(User: )
Description: CDKey.exe0.0.0.0CDKey.exe0.0.0.000004c6e

 

 

 

 

 

 

 

 

 

 

12:53:38.0921 0x092c  TDSS rootkit removing tool 3.0.0.26 Mar 24 2014 07:28:43
12:53:43.0296 0x092c  ============================================================
12:53:43.0296 0x092c  Current date / time: 2014/03/28 12:53:43.0296
12:53:43.0296 0x092c  SystemInfo:
12:53:43.0296 0x092c  
12:53:43.0296 0x092c  OS Version: 5.1.2600 ServicePack: 3.0
12:53:43.0296 0x092c  Product type: Workstation
12:53:43.0296 0x092c  ComputerName: HOME-49A505CF77
12:53:43.0296 0x092c  UserName: Randy
12:53:43.0296 0x092c  Windows directory: E:\WINDOWS
12:53:43.0296 0x092c  System windows directory: E:\WINDOWS
12:53:43.0296 0x092c  Processor architecture: Intel x86
12:53:43.0296 0x092c  Number of processors: 2
12:53:43.0296 0x092c  Page size: 0x1000
12:53:43.0296 0x092c  Boot type: Normal boot
12:53:43.0296 0x092c  ============================================================
12:53:43.0421 0x092c  KLMD registered as E:\WINDOWS\system32\drivers\35890804.sys
12:53:43.0625 0x092c  System UUID: {4A25BD24-AFEF-F992-2BD4-EDE3C8211449}
12:53:44.0359 0x092c  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
12:53:44.0359 0x092c  Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
12:53:44.0359 0x092c  Drive \Device\Harddisk2\DR5 - Size: 0x3BA800000 (14.91 Gb), SectorSize: 0x200, Cylinders: 0x79A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
12:53:44.0375 0x092c  ============================================================
12:53:44.0375 0x092c  \Device\Harddisk0\DR0:
12:53:44.0375 0x092c  MBR partitions:
12:53:44.0375 0x092c  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C0681
12:53:44.0375 0x092c  \Device\Harddisk1\DR1:
12:53:44.0375 0x092c  MBR partitions:
12:53:44.0375 0x092c  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3D08FC7E
12:53:44.0375 0x092c  \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x3D08FCFC, BlocksNum 0x37671E04
12:53:44.0375 0x092c  \Device\Harddisk2\DR5:
12:53:44.0375 0x092c  MBR partitions:
12:53:44.0375 0x092c  \Device\Harddisk2\DR5\Partition1: MBR, Type 0xC, StartLBA 0x1F80, BlocksNum 0x1DD2080
12:53:44.0375 0x092c  ============================================================
12:53:44.0406 0x092c  E: <-> \Device\Harddisk1\DR1\Partition1
12:53:44.0421 0x092c  F: <-> \Device\Harddisk1\DR1\Partition2
12:53:44.0421 0x092c  ============================================================
12:53:44.0421 0x092c  Initialize success
12:53:44.0421 0x092c  ============================================================
12:53:48.0031 0x09b4  ============================================================
12:53:48.0031 0x09b4  Scan started
12:53:48.0031 0x09b4  Mode: Manual;
12:53:48.0031 0x09b4  ============================================================
12:53:48.0031 0x09b4  KSN ping started
12:53:50.0500 0x09b4  KSN ping finished: true
12:53:50.0671 0x09b4  ================ Scan system memory ========================
12:53:50.0671 0x09b4  System memory - ok
12:53:50.0671 0x09b4  ================ Scan services =============================
12:53:50.0781 0x09b4  Abiosdsk - ok
12:53:50.0796 0x09b4  abp480n5 - ok
12:53:50.0828 0x09b4  [ 8FD99680A539792A30E97944FDAECF17, 594F8E0C3695400B0C09A797AF6BDFAC6F750ECD67D0EE803914C572B1DCC43C ] ACPI            E:\WINDOWS\system32\DRIVERS\ACPI.sys
12:53:50.0828 0x09b4  ACPI - ok
12:53:50.0906 0x09b4  [ 9859C0F6936E723E4892D7141B1327D5, 5E8F6A2FC4DF2E5E92A1D66ECC2810E08B42B64E9CD0DF4AD3F78EA8558B90AF ] ACPIEC          E:\WINDOWS\system32\drivers\ACPIEC.sys
12:53:50.0906 0x09b4  ACPIEC - ok
12:53:50.0921 0x09b4  adpu160m - ok
12:53:50.0937 0x09b4  [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec             E:\WINDOWS\system32\drivers\aec.sys
12:53:50.0953 0x09b4  aec - ok
12:53:50.0984 0x09b4  [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD             E:\WINDOWS\System32\drivers\afd.sys
12:53:50.0984 0x09b4  AFD - ok
12:53:50.0984 0x09b4  Aha154x - ok
12:53:51.0000 0x09b4  aic78u2 - ok
12:53:51.0000 0x09b4  aic78xx - ok
12:53:51.0046 0x09b4  [ A9A3DAA780CA6C9671A19D52456705B4, 67C959144B57AE0BBF1D82DBED197F32CDB06FECD883A80C441A0202FE83FAB4 ] Alerter         E:\WINDOWS\system32\alrsvc.dll
12:53:51.0046 0x09b4  Alerter - ok
12:53:51.0062 0x09b4  [ 8C515081584A38AA007909CD02020B3D, A5E13CA10F702928E0DE84C74D0EA8ACCB117FD76FBABC55220C75C4FFD596DC ] ALG             E:\WINDOWS\System32\alg.exe
12:53:51.0062 0x09b4  ALG - ok
12:53:51.0062 0x09b4  AliIde - ok
12:53:51.0093 0x09b4  [ 033448D435E65C4BD72E70521FD05C76, A5462C22D5461F1BA06E81CD7E1ECE5409092DE53A8E4D3E78D089B65CB474D4 ] AmdPPM          E:\WINDOWS\system32\DRIVERS\AmdPPM.sys
12:53:51.0093 0x09b4  AmdPPM - ok
12:53:51.0109 0x09b4  amsint - ok
12:53:51.0156 0x09b4  [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device E:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
12:53:51.0156 0x09b4  Apple Mobile Device - ok
12:53:51.0187 0x09b4  [ D8849F77C0B66226335A59D26CB4EDC6, 4990031453204C57E36E850252A39B05D6ECDAB9E71A8136FB4900F17E59C9CA ] AppMgmt         E:\WINDOWS\System32\appmgmts.dll
12:53:51.0203 0x09b4  AppMgmt - ok
12:53:51.0218 0x09b4  [ B5B8A80875C1DEDEDA8B02765642C32F, AD0C71D73B1B8225351FBF4FFB43001A32B4DAE69504C59970CD2428BB33D4EF ] Arp1394         E:\WINDOWS\system32\DRIVERS\arp1394.sys
12:53:51.0218 0x09b4  Arp1394 - ok
12:53:51.0234 0x09b4  asc - ok
12:53:51.0234 0x09b4  asc3350p - ok
12:53:51.0234 0x09b4  asc3550 - ok
12:53:51.0296 0x09b4  [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state    E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
12:53:51.0328 0x09b4  aspnet_state - ok
12:53:51.0343 0x09b4  [ 7021F01CCAC1538CCF9AE004723AF033, 698B199D378426D9A07B01600BA265B8E8EDBEB29BEE223FB22592E59FB5B92E ] aswMonFlt       E:\WINDOWS\system32\drivers\aswMonFlt.sys
12:53:51.0343 0x09b4  aswMonFlt - ok
12:53:51.0359 0x09b4  [ 98C18C78B0C3E7EFBDDA7BD0C35F5903, 92128EA70472EBA8804C2972DAA8557F460C2E082084E29B40CE93A05447592F ] aswRdr          E:\WINDOWS\system32\drivers\aswRdr.sys
12:53:51.0375 0x09b4  aswRdr - ok
12:53:51.0375 0x09b4  [ F385467DF95D0A73775CB3B076B8B969, D427A5F4FB4D1DAB04AFC29E7EC510844F907ABBA053538995E65747BAD37422 ] aswRvrt         E:\WINDOWS\system32\drivers\aswRvrt.sys
12:53:51.0375 0x09b4  aswRvrt - ok
12:53:51.0421 0x09b4  [ 8CD8710457FCC1CDE88CBFA3AA119B92, B750481B2D44E2D01DEF500276A7253731EDD2BCB117B083EE10FAA7A8FFF729 ] aswSnx          E:\WINDOWS\system32\drivers\aswSnx.sys
12:53:51.0437 0x09b4  aswSnx - ok
12:53:51.0468 0x09b4  [ C1F95C9481F46B96E23A276639C55AC9, 75F7BCF74E46E3A8EC9AF0DB5D7FCA280DCAF97BD932767DCBDE66E26BF0E7CE ] aswSP           E:\WINDOWS\system32\drivers\aswSP.sys
12:53:51.0484 0x09b4  aswSP - ok
12:53:51.0515 0x09b4  [ E6390554DCB2A730702188547267093C, 1F97F23A2C1767ABD52041DFA0EF9065567CDB02B12F674CF4EE4E8FBA69773B ] aswTdi          E:\WINDOWS\system32\drivers\aswTdi.sys
12:53:51.0515 0x09b4  aswTdi - ok
12:53:51.0531 0x09b4  [ 1B0662514A68C3A42E60D240C5ABEF28, 71301759C135895C72CAED297A669BA58B3F73E0B7E46DB981F6559D5D5E2B89 ] aswVmm          E:\WINDOWS\system32\drivers\aswVmm.sys
12:53:51.0531 0x09b4  aswVmm - ok
12:53:51.0578 0x09b4  [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac        E:\WINDOWS\system32\DRIVERS\asyncmac.sys
12:53:51.0578 0x09b4  AsyncMac - ok
12:53:51.0578 0x09b4  [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi           E:\WINDOWS\system32\DRIVERS\atapi.sys
12:53:51.0593 0x09b4  atapi - ok
12:53:51.0593 0x09b4  Atdisk - ok
12:53:51.0625 0x09b4  [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc         E:\WINDOWS\system32\DRIVERS\atmarpc.sys
12:53:51.0625 0x09b4  Atmarpc - ok
12:53:51.0656 0x09b4  [ DEF7A7882BEC100FE0B2CE2549188F9D, 462C95B63D0A1058291A2DC8CBFCB13D7D74CCD1CA43B613A7EB43D49E3276F8 ] AudioSrv        E:\WINDOWS\System32\audiosrv.dll
12:53:51.0671 0x09b4  AudioSrv - ok
12:53:51.0671 0x09b4  [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub         E:\WINDOWS\system32\DRIVERS\audstub.sys
12:53:51.0671 0x09b4  audstub - ok
12:53:51.0703 0x09b4  [ CC42F104172B4A62793083D380867317, 0B09823419B328E29EB9FFBD033B3295590E414F31E7B37F11F62BD4B7EBAF06 ] avast! Antivirus E:\Program Files\AVAST Software\Avast\AvastSvc.exe
12:53:51.0703 0x09b4  avast! Antivirus - ok
12:53:51.0734 0x09b4  [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep            E:\WINDOWS\system32\drivers\Beep.sys
12:53:51.0734 0x09b4  Beep - ok
12:53:51.0796 0x09b4  [ 574738F61FCA2935F5265DC4E5691314, 3C7CCF064397186C3A3863DD2370AB6414A61B330097DCA4F299CA7BBAA3D1B4 ] BITS            E:\WINDOWS\system32\qmgr.dll
12:53:51.0812 0x09b4  BITS - ok
12:53:51.0859 0x09b4  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service E:\Program Files\Bonjour\mDNSResponder.exe
12:53:51.0875 0x09b4  Bonjour Service - ok
12:53:51.0906 0x09b4  [ CFD4E51402DA9838B5A04AE680AF54A0, 5378F42B195B5832B00A05AD64E00473A45FFB86AC25C57241F26EA82B149FE1 ] Browser         E:\WINDOWS\System32\browser.dll
12:53:51.0906 0x09b4  Browser - ok
12:53:51.0937 0x09b4  [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k         E:\WINDOWS\system32\drivers\cbidf2k.sys
12:53:51.0953 0x09b4  cbidf2k - ok
12:53:51.0953 0x09b4  cd20xrnt - ok
12:53:51.0968 0x09b4  [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio         E:\WINDOWS\system32\drivers\Cdaudio.sys
12:53:51.0968 0x09b4  Cdaudio - ok
12:53:51.0984 0x09b4  [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs            E:\WINDOWS\system32\drivers\Cdfs.sys
12:53:51.0984 0x09b4  Cdfs - ok
12:53:52.0000 0x09b4  [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom           E:\WINDOWS\system32\DRIVERS\cdrom.sys
12:53:52.0000 0x09b4  Cdrom - ok
12:53:52.0000 0x09b4  Changer - ok
12:53:52.0031 0x09b4  [ 1CFE720EB8D93A7158A4EBC3AB178BDE, 65D2A9D9A88F38D4AF323134C151BA0F4B3CD0F6A134AF86E7AC9D07319F1726 ] CiSvc           E:\WINDOWS\system32\cisvc.exe
12:53:52.0031 0x09b4  CiSvc - ok
12:53:52.0078 0x09b4  [ 34CBE729F38138217F9C80212A2A0C82, A9FD7A758D12E0818A11BEEF1CE772FEFA8373E92EF6C0DA8628CD4572CC9A43 ] ClipSrv         E:\WINDOWS\system32\clipsrv.exe
12:53:52.0078 0x09b4  ClipSrv - ok
12:53:52.0109 0x09b4  [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 e:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:53:52.0125 0x09b4  clr_optimization_v2.0.50727_32 - ok
12:53:52.0156 0x09b4  [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
12:53:52.0187 0x09b4  clr_optimization_v4.0.30319_32 - ok
12:53:52.0187 0x09b4  CmdIde - ok
12:53:52.0203 0x09b4  COMSysApp - ok
12:53:52.0203 0x09b4  Cpqarray - ok
12:53:52.0250 0x09b4  [ 3D4E199942E29207970E04315D02AD3B, 0825960894CF9C86CC8775BDD2A262948A09CA495AA7FE9F210FAF49E7086383 ] CryptSvc        E:\WINDOWS\System32\cryptsvc.dll
12:53:52.0265 0x09b4  CryptSvc - ok
12:53:52.0265 0x09b4  dac2w2k - ok
12:53:52.0265 0x09b4  dac960nt - ok
12:53:52.0328 0x09b4  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] DcomLaunch      E:\WINDOWS\system32\rpcss.dll
12:53:52.0343 0x09b4  DcomLaunch - ok
12:53:52.0375 0x09b4  [ 5E38D7684A49CACFB752B046357E0589, F192AD4190BCFB6939A5CBC91648FE63168AF79A5E227A111DEAD6A92E42AB8D ] Dhcp            E:\WINDOWS\System32\dhcpcsvc.dll
12:53:52.0390 0x09b4  Dhcp - ok
12:53:52.0390 0x09b4  [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk            E:\WINDOWS\system32\DRIVERS\disk.sys
12:53:52.0390 0x09b4  Disk - ok
12:53:52.0406 0x09b4  dmadmin - ok
12:53:52.0437 0x09b4  [ D992FE1274BDE0F84AD826ACAE022A41, C82BD6561A14F2932A761F5883A787B99031250EE5E9B7B5714AA045545C9B99 ] dmboot          E:\WINDOWS\system32\drivers\dmboot.sys
12:53:52.0468 0x09b4  dmboot - ok
12:53:52.0484 0x09b4  [ 7C824CF7BBDE77D95C08005717A95F6F, A73CB323B7A6410C3D3F258BF204E716ADF8C84C9E4F6562C57AB73DAED8CCDE ] dmio            E:\WINDOWS\system32\drivers\dmio.sys
12:53:52.0484 0x09b4  dmio - ok
12:53:52.0531 0x09b4  [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload          E:\WINDOWS\system32\drivers\dmload.sys
12:53:52.0531 0x09b4  dmload - ok
12:53:52.0546 0x09b4  [ 57EDEC2E5F59F0335E92F35184BC8631, 61F6F0DC2D1A6C61D5EF0D5CC4BE0FFC217F1E61FDA3EA9F704709293656600F ] dmserver        E:\WINDOWS\System32\dmserver.dll
12:53:52.0546 0x09b4  dmserver - ok
12:53:52.0578 0x09b4  [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic          E:\WINDOWS\system32\drivers\DMusic.sys
12:53:52.0578 0x09b4  DMusic - ok
12:53:52.0593 0x09b4  [ 5F7E24FA9EAB896051FFB87F840730D2, 356EEFDCD54DECAD0170B34B993E4BF80DD039E2B2922D7A8D09B84031E9FC7A ] Dnscache        E:\WINDOWS\System32\dnsrslvr.dll
12:53:52.0593 0x09b4  Dnscache - ok
12:53:52.0609 0x09b4  [ 0F0F6E687E5E15579EF4DA8DD6945814, 5C32D88119EB1465B2D719BEE2E05888D1A73454B5E33F2D4928DA710F8BFBA3 ] Dot3svc         E:\WINDOWS\System32\dot3svc.dll
12:53:52.0609 0x09b4  Dot3svc - ok
12:53:52.0625 0x09b4  dpti2o - ok
12:53:52.0640 0x09b4  [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud         E:\WINDOWS\system32\drivers\drmkaud.sys
12:53:52.0640 0x09b4  drmkaud - ok
12:53:52.0656 0x09b4  [ 2187855A7703ADEF0CEF9EE4285182CC, 8233CC11F637866C0074043835A785EA2B616739B6B1181B143A253CF2508CFD ] EapHost         E:\WINDOWS\System32\eapsvc.dll
12:53:52.0656 0x09b4  EapHost - ok
12:53:52.0671 0x09b4  [ BC93B4A066477954555966D77FEC9ECB, 27F5B780175EF46DA102EE33F7F33559C8B40C077EEA4405D579D9507F4B1C23 ] ERSvc           E:\WINDOWS\System32\ersvc.dll
12:53:52.0671 0x09b4  ERSvc - ok
12:53:52.0687 0x09b4  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] Eventlog        E:\WINDOWS\system32\services.exe
12:53:52.0703 0x09b4  Eventlog - ok
12:53:52.0718 0x09b4  [ D4991D98F2DB73C60D042F1AEF79EFAE, 58AF949EAEBF4FF3E3314DFB66CE4198BF65F0836B68CD27A6ED319742CCCCD2 ] EventSystem     E:\WINDOWS\system32\es.dll
12:53:52.0734 0x09b4  EventSystem - ok
12:53:52.0750 0x09b4  [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat         E:\WINDOWS\system32\drivers\Fastfat.sys
12:53:52.0750 0x09b4  Fastfat - ok
12:53:52.0781 0x09b4  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] FastUserSwitchingCompatibility E:\WINDOWS\System32\shsvcs.dll
12:53:52.0796 0x09b4  FastUserSwitchingCompatibility - ok
12:53:52.0796 0x09b4  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc             E:\WINDOWS\system32\DRIVERS\fdc.sys
12:53:52.0796 0x09b4  Fdc - ok
12:53:52.0812 0x09b4  [ D45926117EB9FA946A6AF572FBE1CAA3, 4C94EF009D778BE0BDF8F812F026B96F91F641BE30AA2531427A5E63DBD280DA ] Fips            E:\WINDOWS\system32\drivers\Fips.sys
12:53:52.0828 0x09b4  Fips - ok
12:53:52.0828 0x09b4  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk        E:\WINDOWS\system32\DRIVERS\flpydisk.sys
12:53:52.0828 0x09b4  Flpydisk - ok
12:53:52.0843 0x09b4  [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr          E:\WINDOWS\system32\drivers\fltmgr.sys
12:53:52.0843 0x09b4  FltMgr - ok
12:53:52.0890 0x09b4  [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 e:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
12:53:52.0890 0x09b4  FontCache3.0.0.0 - ok
12:53:52.0906 0x09b4  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec          E:\WINDOWS\system32\drivers\Fs_Rec.sys
12:53:52.0906 0x09b4  Fs_Rec - ok
12:53:52.0921 0x09b4  [ 6AC26732762483366C3969C9E4D2259D, FF2C9A23CC17F380093F0BEA955B1925794271C2FEA16B9B7639668E6999BAE3 ] Ftdisk          E:\WINDOWS\system32\DRIVERS\ftdisk.sys
12:53:52.0921 0x09b4  Ftdisk - ok
12:53:52.0921 0x09b4  [ 065639773D8B03F33577F6CDAEA21063, F20D0F3256F5F894CCA48755B23679619B5D02A0F64A142FC6CB619FC0952067 ] gameenum        E:\WINDOWS\system32\DRIVERS\gameenum.sys
12:53:52.0937 0x09b4  gameenum - ok
12:53:52.0953 0x09b4  [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM     E:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
12:53:52.0953 0x09b4  GEARAspiWDM - ok
12:53:52.0953 0x09b4  [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc             E:\WINDOWS\system32\DRIVERS\msgpc.sys
12:53:52.0953 0x09b4  Gpc - ok
12:53:52.0968 0x09b4  [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus        E:\WINDOWS\system32\DRIVERS\HDAudBus.sys
12:53:52.0968 0x09b4  HDAudBus - ok
12:53:53.0000 0x09b4  [ 4FCCA060DFE0C51A09DD5C3843888BCD, D82417706B517F2610DDF7C86BE03A72EFA9A2A389DF5C8F8ADEAB8144E2C80A ] helpsvc         E:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
12:53:53.0000 0x09b4  helpsvc - ok
12:53:53.0015 0x09b4  HidServ - ok
12:53:53.0031 0x09b4  [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] HidUsb          E:\WINDOWS\system32\DRIVERS\hidusb.sys
12:53:53.0031 0x09b4  HidUsb - ok
12:53:53.0046 0x09b4  [ 8878BD685E490239777BFE51320B88E9, C5C3ECF6B049B6736E35B39518A8F830B45C45A88FFE8E3A6B7922AD946597E2 ] hkmsvc          E:\WINDOWS\System32\kmsvc.dll
12:53:53.0062 0x09b4  hkmsvc - ok
12:53:53.0062 0x09b4  hpn - ok
12:53:53.0093 0x09b4  [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP            E:\WINDOWS\system32\Drivers\HTTP.sys
12:53:53.0109 0x09b4  HTTP - ok
12:53:53.0140 0x09b4  [ 6100A808600F44D999CEBDEF8841C7A3, 61A75118C327812C60622010985A2E80E79B6FD9030A5732390EE5426E4AF6C9 ] HTTPFilter      E:\WINDOWS\System32\w3ssl.dll
12:53:53.0140 0x09b4  HTTPFilter - ok
12:53:53.0156 0x09b4  i2omgmt - ok
12:53:53.0156 0x09b4  i2omp - ok
12:53:53.0171 0x09b4  [ 4A0B06AA8943C1E332520F7440C0AA30, DB2452390CCFE67E0C5FEB4FD42CA24ABE2DDD40D0B22DD5F5B8F70416863918 ] i8042prt        E:\WINDOWS\system32\DRIVERS\i8042prt.sys
12:53:53.0171 0x09b4  i8042prt - ok
12:53:53.0250 0x09b4  [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc           e:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
12:53:53.0296 0x09b4  idsvc - ok
12:53:53.0312 0x09b4  [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi           E:\WINDOWS\system32\DRIVERS\imapi.sys
12:53:53.0312 0x09b4  Imapi - ok
12:53:53.0328 0x09b4  [ 30DEAF54A9755BB8546168CFE8A6B5E1, 3936228CD3125C763ABFCB93E86E4B43838202BCC0913A28E84AC0263B43EE0D ] ImapiService    E:\WINDOWS\system32\imapi.exe
12:53:53.0343 0x09b4  ImapiService - ok
12:53:53.0343 0x09b4  ini910u - ok
12:53:53.0359 0x09b4  IntelIde - ok
12:53:53.0375 0x09b4  [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw           E:\WINDOWS\system32\drivers\ip6fw.sys
12:53:53.0390 0x09b4  Ip6Fw - ok
12:53:53.0406 0x09b4  [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver  E:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
12:53:53.0406 0x09b4  IpFilterDriver - ok
12:53:53.0421 0x09b4  [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp          E:\WINDOWS\system32\DRIVERS\ipinip.sys
12:53:53.0421 0x09b4  IpInIp - ok
12:53:53.0437 0x09b4  [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat           E:\WINDOWS\system32\DRIVERS\ipnat.sys
12:53:53.0453 0x09b4  IpNat - ok
12:53:53.0484 0x09b4  [ 066F2BBE2EEC9A42B065B552BF356B4E, AE86DB5BFD4748C54C0C224E7FBEA3C032F1071A39303DF35AA04869D3950B7A ] iPod Service    E:\Program Files\iPod\bin\iPodService.exe
12:53:53.0515 0x09b4  iPod Service - ok
12:53:53.0546 0x09b4  [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec           E:\WINDOWS\system32\DRIVERS\ipsec.sys
12:53:53.0546 0x09b4  IPSec - ok
12:53:53.0562 0x09b4  [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM          E:\WINDOWS\system32\DRIVERS\irenum.sys
12:53:53.0562 0x09b4  IRENUM - ok
12:53:53.0578 0x09b4  [ 05A299EC56E52649B1CF2FC52D20F2D7, 2654619DB3E6D6C385B63AB02F87D4241C4F0250CC31383D1B3586917166C2DC ] isapnp          E:\WINDOWS\system32\DRIVERS\isapnp.sys
12:53:53.0578 0x09b4  isapnp - ok
12:53:53.0593 0x09b4  [ 463C1EC80CD17420A542B7F36A36F128, E3B11BA26AFEAFB50B0FC168EA07F6049DA6B88BCDDEEE20310602D7FC27A3A7 ] Kbdclass        E:\WINDOWS\system32\DRIVERS\kbdclass.sys
12:53:53.0593 0x09b4  Kbdclass - ok
12:53:53.0609 0x09b4  [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer          E:\WINDOWS\system32\drivers\kmixer.sys
12:53:53.0609 0x09b4  kmixer - ok
12:53:53.0625 0x09b4  [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD          E:\WINDOWS\system32\drivers\KSecDD.sys
12:53:53.0640 0x09b4  KSecDD - ok
12:53:53.0656 0x09b4  [ 3A7C3CBE5D96B8AE96CE81F0B22FB527, 0044F03132596A494448CCE5F3D6ECC12617BB4CF6BAE348F79D4DC40ACD6EE0 ] lanmanserver    E:\WINDOWS\System32\srvsvc.dll
12:53:53.0656 0x09b4  lanmanserver - ok
12:53:53.0687 0x09b4  [ A8888A5327621856C0CEC4E385F69309, B08B63300D824E35E31EEEA2C4C086DFA2C2A964CEDAE512E74D3D88AADAA2C1 ] lanmanworkstation E:\WINDOWS\System32\wkssvc.dll
12:53:53.0703 0x09b4  lanmanworkstation - ok
12:53:53.0703 0x09b4  lbrtfdc - ok
12:53:53.0734 0x09b4  [ A7DB739AE99A796D91580147E919CC59, EDF4E039BA277B0E6D66FEB0B28096E67D682C09DFC18ECECF062D9DCFB75ACF ] LmHosts         E:\WINDOWS\System32\lmhsvc.dll
12:53:53.0734 0x09b4  LmHosts - ok
12:53:53.0765 0x09b4  [ 986B1FF5814366D71E0AC5755C88F2D3, E6AF051174531C24B38E73987755D366ABEC595476C6D17793E8DCCC73F55340 ] Messenger       E:\WINDOWS\System32\msgsvc.dll
12:53:53.0765 0x09b4  Messenger - ok
12:53:53.0765 0x09b4  [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd           E:\WINDOWS\system32\drivers\mnmdd.sys
12:53:53.0765 0x09b4  mnmdd - ok
12:53:53.0781 0x09b4  [ D18F1F0C101D06A1C1ADF26EED16FCDD, BA0837C7780BD8262E143E2935AFA63BE59C3C39EF56CB8608EED0F50AF070D4 ] mnmsrvc         E:\WINDOWS\system32\mnmsrvc.exe
12:53:53.0781 0x09b4  mnmsrvc - ok
12:53:53.0796 0x09b4  [ DFCBAD3CEC1C5F964962AE10E0BCC8E1, B342CC9EC3729AB1AB4B5E2E99F890C1E0CA649162DE91F6768AB857B719E97B ] Modem           E:\WINDOWS\system32\drivers\Modem.sys
12:53:53.0796 0x09b4  Modem - ok
12:53:53.0796 0x09b4  [ 35C9E97194C8CFB8430125F8DBC34D04, 0C0FCE6B0A23FB0ECB92E1663E1C72D2DD5B177D82E04782957690B69530DB39 ] Mouclass        E:\WINDOWS\system32\DRIVERS\mouclass.sys
12:53:53.0812 0x09b4  Mouclass - ok
12:53:53.0812 0x09b4  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr        E:\WINDOWS\system32\drivers\MountMgr.sys
12:53:53.0812 0x09b4  MountMgr - ok
12:53:53.0828 0x09b4  mraid35x - ok
12:53:53.0843 0x09b4  [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV          E:\WINDOWS\system32\DRIVERS\mrxdav.sys
12:53:53.0843 0x09b4  MRxDAV - ok
12:53:53.0875 0x09b4  [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb          E:\WINDOWS\system32\DRIVERS\mrxsmb.sys
12:53:53.0890 0x09b4  MRxSmb - ok
12:53:53.0906 0x09b4  [ A137F1470499A205ABBB9AAFB3B6F2B1, FB4951727543030D9E6ED74149C3FAACE2CA9DA8C1B5F616301B30B858C724E8 ] MSDTC           E:\WINDOWS\system32\msdtc.exe
12:53:53.0906 0x09b4  MSDTC - ok
12:53:53.0921 0x09b4  [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs            E:\WINDOWS\system32\drivers\Msfs.sys
12:53:53.0921 0x09b4  Msfs - ok
12:53:53.0937 0x09b4  MSIServer - ok
12:53:53.0953 0x09b4  [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV         E:\WINDOWS\system32\drivers\MSKSSRV.sys
12:53:53.0953 0x09b4  MSKSSRV - ok
12:53:53.0953 0x09b4  [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK        E:\WINDOWS\system32\drivers\MSPCLOCK.sys
12:53:53.0953 0x09b4  MSPCLOCK - ok
12:53:53.0968 0x09b4  [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM           E:\WINDOWS\system32\drivers\MSPQM.sys
12:53:53.0968 0x09b4  MSPQM - ok
12:53:53.0984 0x09b4  [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios        E:\WINDOWS\system32\DRIVERS\mssmbios.sys
12:53:53.0984 0x09b4  mssmbios - ok
12:53:54.0000 0x09b4  [ CA3E22598F411199ADC2DFEE76CD0AE0, 73ACE780A198467657CD2AF6019F0FC753B4FC6D26A9D6477C88C5396273F77C ] ms_mpu401       E:\WINDOWS\system32\drivers\msmpu401.sys
12:53:54.0000 0x09b4  ms_mpu401 - ok
12:53:54.0015 0x09b4  [ D48659BB24C48345D926ECB45C1EBDF5, EDEDE58316827530C25F8085F62AD48EA6D44B0F8AC1917B940F53B02CF72EA6 ] MTsensor        E:\WINDOWS\system32\DRIVERS\ASACPI.sys
12:53:54.0015 0x09b4  MTsensor - ok
12:53:54.0031 0x09b4  [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup             E:\WINDOWS\system32\drivers\Mup.sys
12:53:54.0031 0x09b4  Mup - ok
12:53:54.0062 0x09b4  [ 0102140028FAD045756796E1C685D695, 5335B8278418CA200E2772124F0602C3E15A5CAF2D5CC59F6785DFAABF339B09 ] napagent        E:\WINDOWS\System32\qagentrt.dll
12:53:54.0078 0x09b4  napagent - ok
12:53:54.0093 0x09b4  [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS            E:\WINDOWS\system32\drivers\NDIS.sys
12:53:54.0093 0x09b4  NDIS - ok
12:53:54.0109 0x09b4  [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi        E:\WINDOWS\system32\DRIVERS\ndistapi.sys
12:53:54.0109 0x09b4  NdisTapi - ok
12:53:54.0125 0x09b4  [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio         E:\WINDOWS\system32\DRIVERS\ndisuio.sys
12:53:54.0125 0x09b4  Ndisuio - ok
12:53:54.0140 0x09b4  [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan         E:\WINDOWS\system32\DRIVERS\ndiswan.sys
12:53:54.0140 0x09b4  NdisWan - ok
12:53:54.0171 0x09b4  [ 9282BD12DFB069D3889EB3FCC1000A9B, 09A46F1712BD9165068D8E153585FE3E6E5CBF4F1DDEC142115555D3A91AEC09 ] NDProxy         E:\WINDOWS\system32\drivers\NDProxy.sys
12:53:54.0171 0x09b4  NDProxy - ok
12:53:54.0171 0x09b4  [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS         E:\WINDOWS\system32\DRIVERS\netbios.sys
12:53:54.0171 0x09b4  NetBIOS - ok
12:53:54.0187 0x09b4  [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT           E:\WINDOWS\system32\DRIVERS\netbt.sys
12:53:54.0187 0x09b4  NetBT - ok
12:53:54.0218 0x09b4  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDE          E:\WINDOWS\system32\netdde.exe
12:53:54.0234 0x09b4  NetDDE - ok
12:53:54.0234 0x09b4  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDEdsdm      E:\WINDOWS\system32\netdde.exe
12:53:54.0250 0x09b4  NetDDEdsdm - ok
12:53:54.0265 0x09b4  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] Netlogon        E:\WINDOWS\system32\lsass.exe
12:53:54.0265 0x09b4  Netlogon - ok
12:53:54.0281 0x09b4  [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE, 4E0A67B3CC897E80D4B342FFE8B7B4CC4F6CA2EF2D34C136027A098B2E1C6166 ] Netman          E:\WINDOWS\System32\netman.dll
12:53:54.0296 0x09b4  Netman - ok
12:53:54.0328 0x09b4  [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing e:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
12:53:54.0343 0x09b4  NetTcpPortSharing - ok
12:53:54.0359 0x09b4  [ E9E47CFB2D461FA0FC75B7A74C6383EA, 544136F5BFD4DC23D45E90F12FA48B82FD9EAEA9EAF3E0F5F0BD27E23D672C3E ] NIC1394         E:\WINDOWS\system32\DRIVERS\nic1394.sys
12:53:54.0359 0x09b4  NIC1394 - ok
12:53:54.0375 0x09b4  [ 943337D786A56729263071623BBB9DE5, B631B47C869FE4ACF46E4AA272435D9A9CA536E3349E3FFBB8602636FEE7AFD4 ] Nla             E:\WINDOWS\System32\mswsock.dll
12:53:54.0390 0x09b4  Nla - ok
12:53:54.0406 0x09b4  [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs            E:\WINDOWS\system32\drivers\Npfs.sys
12:53:54.0406 0x09b4  Npfs - ok
12:53:54.0437 0x09b4  [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs            E:\WINDOWS\system32\drivers\Ntfs.sys
12:53:54.0453 0x09b4  Ntfs - ok
12:53:54.0453 0x09b4  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] NtLmSsp         E:\WINDOWS\system32\lsass.exe
12:53:54.0468 0x09b4  NtLmSsp - ok
12:53:54.0515 0x09b4  [ 156F64A3345BD23C600655FB4D10BC08, 9611BE411586E068D9297D77102DB3BE48AA67F1BAD6F61A84F83FC3043FA9CD ] NtmsSvc         E:\WINDOWS\system32\ntmssvc.dll
12:53:54.0546 0x09b4  NtmsSvc - ok
12:53:54.0546 0x09b4  [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null            E:\WINDOWS\system32\drivers\Null.sys
12:53:54.0546 0x09b4  Null - ok
12:53:54.0984 0x09b4  [ 4D171DB452C5D558E9CBE7E1D6F3635A, AD527D5BC369D3008B2889924073327279FA2FC6C206DB7E03FB166A613FAFD8 ] nv              E:\WINDOWS\system32\DRIVERS\nv4_mini.sys
12:53:55.0296 0x09b4  nv - ok
12:53:55.0359 0x09b4  [ DCE353985C988BFB7E84FD942068151F, B58C7884B6148D248D5ABDCD88C0F44E1A019D06A90BE45551985B4504F4B188 ] nvata           E:\WINDOWS\system32\DRIVERS\nvata.sys
12:53:55.0359 0x09b4  nvata - ok
12:53:55.0375 0x09b4  [ 7D275ECDA4628318912F6C945D5CF963, 78C5125F5A9B5EE1A5AC394BB0D9EDA954EB35103B588B6A98D41E2C32354A96 ] NVENETFD        E:\WINDOWS\system32\DRIVERS\NVENETFD.sys
12:53:55.0390 0x09b4  NVENETFD - ok
12:53:55.0390 0x09b4  [ A211AB524324E84C2C805B52DFCDD544, E9BB0A441837A538B3D7F57ECD43A88152E9F54BA4DE145F2E2E1913CDB54914 ] NVHDA           E:\WINDOWS\system32\drivers\nvhda32.sys
12:53:55.0390 0x09b4  NVHDA - ok
12:53:55.0406 0x09b4  [ B64AACEFAD2BE5BFF5353FE681253C67, A4D81BF67E6D4DBD559C27C8103277D30DA5B37269E0FD6571FC273DA21E892F ] nvnetbus        E:\WINDOWS\system32\DRIVERS\nvnetbus.sys
12:53:55.0406 0x09b4  nvnetbus - ok
12:53:55.0421 0x09b4  [ 34411734F476368AA7BA9404798644CF, D728D0044FBAD7E08C06002C3395BF8862E98DE35281699A4EA88205F5975684 ] NVSvc           E:\WINDOWS\system32\nvsvc32.exe
12:53:55.0437 0x09b4  NVSvc - ok
12:53:55.0515 0x09b4  [ 10DEF604B1929D9515969E1CAE7D250A, AC343E716453B9CA16B4763A714FB4B09671D8EB56A8C46C22CBD769EB7937C4 ] nvUpdatusService E:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
12:53:55.0609 0x09b4  nvUpdatusService - ok
12:53:55.0640 0x09b4  [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt        E:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
12:53:55.0640 0x09b4  NwlnkFlt - ok
12:53:55.0640 0x09b4  [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd        E:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
12:53:55.0640 0x09b4  NwlnkFwd - ok
12:53:55.0656 0x09b4  [ CA33832DF41AFB202EE7AEB05145922F, 9DD0089C2E13C7F81214C3B5A4A61276292052F9BBFEA7FCD0F6AA27815D5F95 ] ohci1394        E:\WINDOWS\system32\DRIVERS\ohci1394.sys
12:53:55.0656 0x09b4  ohci1394 - ok
12:53:55.0703 0x09b4  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             E:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:53:55.0718 0x09b4  ose - ok
12:53:55.0890 0x09b4  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc         E:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
12:53:56.0062 0x09b4  osppsvc - ok
12:53:56.0093 0x09b4  [ 5575FAF8F97CE5E713D108C2A58D7C7C, 96D4595D19A78CCBE8B325A08780AC077AE5CC99642ACD72FB47AEAE8D344D3B ] Parport         E:\WINDOWS\system32\DRIVERS\parport.sys
12:53:56.0093 0x09b4  Parport - ok
12:53:56.0093 0x09b4  [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr         E:\WINDOWS\system32\drivers\PartMgr.sys
12:53:56.0109 0x09b4  PartMgr - ok
12:53:56.0125 0x09b4  [ 70E98B3FD8E963A6A46A2E6247E0BEA1, 6771313EC41B3B5BFD398F60706E40BE71617046880CC352DD110B001AFC22A1 ] ParVdm          E:\WINDOWS\system32\drivers\ParVdm.sys
12:53:56.0125 0x09b4  ParVdm - ok
12:53:56.0140 0x09b4  [ A219903CCF74233761D92BEF471A07B1, D4E6C360A1D2FCA4D17C991B834D68BF20F5111DD06B1FAB8B22984804CEC269 ] PCI             E:\WINDOWS\system32\DRIVERS\pci.sys
12:53:56.0140 0x09b4  PCI - ok
12:53:56.0156 0x09b4  PCIDump - ok
12:53:56.0171 0x09b4  [ CCF5F451BB1A5A2A522A76E670000FF0, D63F7E5A39653EC9CCE94B7D84B2D3EBD4F54533BD65701020198724042C9257 ] PCIIde          E:\WINDOWS\system32\DRIVERS\pciide.sys
12:53:56.0171 0x09b4  PCIIde - ok
12:53:56.0187 0x09b4  [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1, 0BA3DB21DC7C641C181E2635B5C9B73965FDCDCD3EBBBE48FCFEC1C8C987F617 ] Pcmcia          E:\WINDOWS\system32\drivers\Pcmcia.sys
12:53:56.0187 0x09b4  Pcmcia - ok
12:53:56.0203 0x09b4  PDCOMP - ok
12:53:56.0203 0x09b4  PDFRAME - ok
12:53:56.0218 0x09b4  PDRELI - ok
12:53:56.0218 0x09b4  PDRFRAME - ok
12:53:56.0218 0x09b4  perc2 - ok
12:53:56.0234 0x09b4  perc2hib - ok
12:53:56.0281 0x09b4  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] PlugPlay        E:\WINDOWS\system32\services.exe
12:53:56.0281 0x09b4  PlugPlay - ok
12:53:56.0296 0x09b4  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] PolicyAgent     E:\WINDOWS\system32\lsass.exe
12:53:56.0296 0x09b4  PolicyAgent - ok
12:53:56.0296 0x09b4  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport    E:\WINDOWS\system32\DRIVERS\raspptp.sys
12:53:56.0312 0x09b4  PptpMiniport - ok
12:53:56.0312 0x09b4  [ A32BEBAF723557681BFC6BD93E98BD26, 35039BA72A29F87B2CA37DCDE4EFDAABBDEAD8CE3EB8652ACC665994118145A6 ] Processor       E:\WINDOWS\system32\DRIVERS\processr.sys
12:53:56.0312 0x09b4  Processor - ok
12:53:56.0328 0x09b4  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] ProtectedStorage E:\WINDOWS\system32\lsass.exe
12:53:56.0328 0x09b4  ProtectedStorage - ok
12:53:56.0343 0x09b4  [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched          E:\WINDOWS\system32\DRIVERS\psched.sys
12:53:56.0343 0x09b4  PSched - ok
12:53:56.0359 0x09b4  [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink         E:\WINDOWS\system32\DRIVERS\ptilink.sys
12:53:56.0359 0x09b4  Ptilink - ok
12:53:56.0359 0x09b4  ql1080 - ok
12:53:56.0375 0x09b4  Ql10wnt - ok
12:53:56.0375 0x09b4  ql12160 - ok
12:53:56.0390 0x09b4  ql1240 - ok
12:53:56.0390 0x09b4  ql1280 - ok
12:53:56.0421 0x09b4  [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd          E:\WINDOWS\system32\DRIVERS\rasacd.sys
12:53:56.0421 0x09b4  RasAcd - ok
12:53:56.0453 0x09b4  [ AD188BE7BDF94E8DF4CA0A55C00A5073, C7D76CB579FAEBCCC2873499441BACDD6BD6668ACF5ED7F31862656E96E2B20C ] RasAuto         E:\WINDOWS\System32\rasauto.dll
12:53:56.0468 0x09b4  RasAuto - ok
12:53:56.0484 0x09b4  [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp         E:\WINDOWS\system32\DRIVERS\rasl2tp.sys
12:53:56.0484 0x09b4  Rasl2tp - ok
12:53:56.0515 0x09b4  [ 76A9A3CBEADD68CC57CDA5E1D7448235, 4AFD048C5D2306AB8DE46F3AA60AC0213333DDA3B09A9E91F7585DB6EB978EC8 ] RasMan          E:\WINDOWS\System32\rasmans.dll
12:53:56.0531 0x09b4  RasMan - ok
12:53:56.0546 0x09b4  [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe        E:\WINDOWS\system32\DRIVERS\raspppoe.sys
12:53:56.0546 0x09b4  RasPppoe - ok
12:53:56.0546 0x09b4  [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti          E:\WINDOWS\system32\DRIVERS\raspti.sys
12:53:56.0546 0x09b4  Raspti - ok
12:53:56.0562 0x09b4  [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss           E:\WINDOWS\system32\DRIVERS\rdbss.sys
12:53:56.0578 0x09b4  Rdbss - ok
12:53:56.0593 0x09b4  [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD          E:\WINDOWS\system32\DRIVERS\RDPCDD.sys
12:53:56.0593 0x09b4  RDPCDD - ok
12:53:56.0625 0x09b4  [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr           E:\WINDOWS\system32\DRIVERS\rdpdr.sys
12:53:56.0625 0x09b4  rdpdr - ok
12:53:56.0656 0x09b4  [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD           E:\WINDOWS\system32\drivers\RDPWD.sys
12:53:56.0656 0x09b4  RDPWD - ok
12:53:56.0671 0x09b4  [ 3C37BF86641BDA977C3BF8A840F3B7FA, AB9A6E54DBA3F4561CD4837372BECCE0D73943D02E3288F944333039375AC08C ] RDSessMgr       E:\WINDOWS\system32\sessmgr.exe
12:53:56.0687 0x09b4  RDSessMgr - ok
12:53:56.0703 0x09b4  [ F828DD7E1419B6653894A8F97A0094C5, E6150E1F598BA4CFEDB8FF075BC0D576518C331B864388F1CAE8812EFF106ECF ] redbook         E:\WINDOWS\system32\DRIVERS\redbook.sys
12:53:56.0703 0x09b4  redbook - ok
12:53:56.0718 0x09b4  [ 7E699FF5F59B5D9DE5390E3C34C67CF5, 3FCF0442D80AB181FED4303E570378736AA1F8718C0B8B70F689A1E45200FFE4 ] RemoteAccess    E:\WINDOWS\System32\mprdim.dll
12:53:56.0734 0x09b4  RemoteAccess - ok
12:53:56.0750 0x09b4  [ 5B19B557B0C188210A56A6B699D90B8F, 0FA880B81AE615206FD1738B83428AAA491D54B24168339DE6E87FDE8C6C14B0 ] RemoteRegistry  E:\WINDOWS\system32\regsvc.dll
12:53:56.0750 0x09b4  RemoteRegistry - ok
12:53:56.0765 0x09b4  [ 44275833E1EEE97890BBD70E5D3C9FB2, 223208B6C311245AE56DD466898A63DCEB50D0DB9538FA9F02FB7546EC0D1804 ] REVO71          E:\WINDOWS\system32\DRIVERS\revo71.sys
12:53:56.0765 0x09b4  REVO71 - ok
12:53:56.0781 0x09b4  [ AAED593F84AFA419BBAE8572AF87CF6A, CC0FFC5A69394C8830DC66320DA01A820BBF41AD7E57D0FC343561DC5EF9A360 ] RpcLocator      E:\WINDOWS\system32\locator.exe
12:53:56.0796 0x09b4  RpcLocator - ok
12:53:56.0812 0x09b4  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] RpcSs           E:\WINDOWS\system32\rpcss.dll
12:53:56.0828 0x09b4  RpcSs - ok
12:53:56.0859 0x09b4  [ 471B3F9741D762ABE75E9DEEA4787E47, D9ADE42965EC22AEB4B2AD21D429C3C8232A60AA9853DEFDA7AED86A13FE8623 ] RSVP            E:\WINDOWS\system32\rsvp.exe
12:53:56.0859 0x09b4  RSVP - ok
12:53:56.0875 0x09b4  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] SamSs           E:\WINDOWS\system32\lsass.exe
12:53:56.0875 0x09b4  SamSs - ok
12:53:56.0890 0x09b4  [ 86D007E7A654B9A71D1D7D856B104353, 7B1DE53D637A5FC9619D5D07C48927AFEC89D959207F6F2E2F45DD054EEA04C7 ] SCardSvr        E:\WINDOWS\System32\SCardSvr.exe
12:53:56.0890 0x09b4  SCardSvr - ok
12:53:56.0921 0x09b4  [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA, 0B582F47BD70732BAC48B8B86E5D06CE7F299A20E8177F3F2E6F28217C3FB605 ] Schedule        E:\WINDOWS\system32\schedsvc.dll
12:53:56.0937 0x09b4  Schedule - ok
12:53:56.0953 0x09b4  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv          E:\WINDOWS\system32\DRIVERS\secdrv.sys
12:53:56.0953 0x09b4  Secdrv - ok
12:53:56.0968 0x09b4  [ CBE612E2BB6A10E3563336191EDA1250, C331797DC3569F0E715766561DE2562F60B924378842246C35D2B1CF867E9D96 ] seclogon        E:\WINDOWS\System32\seclogon.dll
12:53:56.0968 0x09b4  seclogon - ok
12:53:56.0984 0x09b4  [ 7FDD5D0684ECA8C1F68B4D99D124DCD0, 7105B026F966A992430F86C3698ABE15EC73E4772F1A3E362E29FD5247A5DCA6 ] SENS            E:\WINDOWS\system32\sens.dll
12:53:57.0000 0x09b4  SENS - ok
12:53:57.0000 0x09b4  [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum         E:\WINDOWS\system32\DRIVERS\serenum.sys
12:53:57.0000 0x09b4  serenum - ok
12:53:57.0015 0x09b4  [ CCA207A8896D4C6A0C9CE29A4AE411A7, 5999B39242283CD803319AADCA171CCCC6E2A40FB2FAFA51B1D29F3FF2DD8D6C ] Serial          E:\WINDOWS\system32\DRIVERS\serial.sys
12:53:57.0015 0x09b4  Serial - ok
12:53:57.0046 0x09b4  [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy         E:\WINDOWS\system32\drivers\Sfloppy.sys
12:53:57.0046 0x09b4  Sfloppy - ok
12:53:57.0078 0x09b4  [ 83F41D0D89645D7235C051AB1D9523AC, B681F33EEAA511D6A2DCB9FBAA407B739184C9FF6067C6B7E51F1FC37E9D4DD7 ] SharedAccess    E:\WINDOWS\System32\ipnathlp.dll
12:53:57.0093 0x09b4  SharedAccess - ok
12:53:57.0109 0x09b4  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] ShellHWDetection E:\WINDOWS\System32\shsvcs.dll
12:53:57.0109 0x09b4  ShellHWDetection - ok
12:53:57.0125 0x09b4  Simbad - ok
12:53:57.0140 0x09b4  Sparrow - ok
12:53:57.0156 0x09b4  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter        E:\WINDOWS\system32\drivers\splitter.sys
12:53:57.0156 0x09b4  splitter - ok
12:53:57.0171 0x09b4  [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler         E:\WINDOWS\system32\spoolsv.exe
12:53:57.0171 0x09b4  Spooler - ok
12:53:57.0187 0x09b4  [ 76BB022C2FB6902FD5BDD4F78FC13A5D, 6031CB2344D7277FC703480EB43CF856A0F8F818EA98FF26A2CA532336CD2DFA ] sr              E:\WINDOWS\system32\DRIVERS\sr.sys
12:53:57.0187 0x09b4  sr - ok
12:53:57.0203 0x09b4  [ 3805DF0AC4296A34BA4BF93B346CC378, B57A14F1B7B0997E619DDD62B73157AA2399A9852166FB58139CBB358A88F6F3 ] srservice       E:\WINDOWS\system32\srsvc.dll
12:53:57.0218 0x09b4  srservice - ok
12:53:57.0250 0x09b4  [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv             E:\WINDOWS\system32\DRIVERS\srv.sys
12:53:57.0265 0x09b4  Srv - ok
12:53:57.0281 0x09b4  [ 0A5679B3714EDAB99E357057EE88FCA6, 01E1A101FFF48402C77E385A78FEF27876E04533B60EB1C18558A737E57E5FA8 ] SSDPSRV         E:\WINDOWS\System32\ssdpsrv.dll
12:53:57.0296 0x09b4  SSDPSRV - ok
12:53:57.0328 0x09b4  [ 8BAD69CBAC032D4BBACFCE0306174C30, 2AA0DA710FCBFF38FE8DA91EE02E7A4503269347E61F8D3246FCA3384BBA2305 ] stisvc          E:\WINDOWS\system32\wiaservc.dll
12:53:57.0343 0x09b4  stisvc - ok
12:53:57.0343 0x09b4  [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum          E:\WINDOWS\system32\DRIVERS\swenum.sys
12:53:57.0343 0x09b4  swenum - ok
12:53:57.0359 0x09b4  [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi          E:\WINDOWS\system32\drivers\swmidi.sys
12:53:57.0375 0x09b4  swmidi - ok
12:53:57.0375 0x09b4  SwPrv - ok
12:53:57.0390 0x09b4  symc810 - ok
12:53:57.0390 0x09b4  symc8xx - ok
12:53:57.0406 0x09b4  sym_hi - ok
12:53:57.0406 0x09b4  sym_u3 - ok
12:53:57.0421 0x09b4  [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio        E:\WINDOWS\system32\drivers\sysaudio.sys
12:53:57.0421 0x09b4  sysaudio - ok
12:53:57.0437 0x09b4  [ C7ABBC59B43274B1109DF6B24D617051, 4384CA0AA6CE9B603CF7DB775A3C721E46715D5B120B94FB57DEADAADE18535B ] SysmonLog       E:\WINDOWS\system32\smlogsvc.exe
12:53:57.0437 0x09b4  SysmonLog - ok
12:53:57.0453 0x09b4  [ 3CB78C17BB664637787C9A1C98F79C38, F35C31F6B7F366CB949D1044B357C76DEC9170441C5E559802794F62B72FD255 ] TapiSrv         E:\WINDOWS\System32\tapisrv.dll
12:53:57.0468 0x09b4  TapiSrv - ok
12:53:57.0515 0x09b4  [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip           E:\WINDOWS\system32\DRIVERS\tcpip.sys
12:53:57.0531 0x09b4  Tcpip - ok
12:53:57.0546 0x09b4  [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE          E:\WINDOWS\system32\drivers\TDPIPE.sys
12:53:57.0546 0x09b4  TDPIPE - ok
12:53:57.0546 0x09b4  [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP           E:\WINDOWS\system32\drivers\TDTCP.sys
12:53:57.0562 0x09b4  TDTCP - ok
12:53:57.0562 0x09b4  [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD          E:\WINDOWS\system32\DRIVERS\termdd.sys
12:53:57.0562 0x09b4  TermDD - ok
12:53:57.0578 0x09b4  [ FF3477C03BE7201C294C35F684B3479F, D6246521539BA4ACD022D26983182F5E323D2EF1EA7C54265A248C43A1CE5202 ] TermService     E:\WINDOWS\System32\termsrv.dll
12:53:57.0593 0x09b4  TermService - ok
12:53:57.0609 0x09b4  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] Themes          E:\WINDOWS\System32\shsvcs.dll
12:53:57.0625 0x09b4  Themes - ok
12:53:57.0656 0x09b4  [ DB7205804759FF62C34E3EFD8A4CC76A, 13A4248F528CE98ACA66898E56822E4FC49B11F491FF1F61A687BA601BF0A802 ] TlntSvr         E:\WINDOWS\system32\tlntsvr.exe
12:53:57.0656 0x09b4  TlntSvr - ok
12:53:57.0656 0x09b4  TosIde - ok
12:53:57.0671 0x09b4  [ 55BCA12F7F523D35CA3CB833C725F54E, 849FB1AE31B143B14B298BBC0D91230693D41DEB95F46516878F53A7F4186C38 ] TrkWks          E:\WINDOWS\system32\trkwks.dll
12:53:57.0687 0x09b4  TrkWks - ok
12:53:57.0718 0x09b4  [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs            E:\WINDOWS\system32\drivers\Udfs.sys
12:53:57.0718 0x09b4  Udfs - ok
12:53:57.0734 0x09b4  ultra - ok
12:53:57.0750 0x09b4  [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update          E:\WINDOWS\system32\DRIVERS\update.sys
12:53:57.0765 0x09b4  Update - ok
12:53:57.0796 0x09b4  [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91, 7746916DB48E3F5B243B63C066596AD9037A494BF1AD935946DD04AC85D983DF ] upnphost        E:\WINDOWS\System32\upnphost.dll
12:53:57.0812 0x09b4  upnphost - ok
12:53:57.0812 0x09b4  [ 05365FB38FCA1E98F7A566AAAF5D1815, 16843048CEEC3DAA3B953A12FF1EE339E86783A08F2A56DA7F94AD9F9717D77D ] UPS             E:\WINDOWS\System32\ups.exe
12:53:57.0828 0x09b4  UPS - ok
12:53:57.0859 0x09b4  [ 6E421CCC57059B0186C6259CA3B6DFC9, E348BF23CCD6C14FD10C1689BBDC77E125245331F97BFE60D4C8FD9A8711CB59 ] USBAAPL         E:\WINDOWS\system32\Drivers\usbaapl.sys
12:53:57.0859 0x09b4  USBAAPL - ok
12:53:57.0875 0x09b4  [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci         E:\WINDOWS\system32\DRIVERS\usbehci.sys
12:53:57.0875 0x09b4  usbehci - ok
12:53:57.0890 0x09b4  [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub          E:\WINDOWS\system32\DRIVERS\usbhub.sys
12:53:57.0890 0x09b4  usbhub - ok
12:53:57.0906 0x09b4  [ 0DAECCE65366EA32B162F85F07C6753B, 3C33AC2FC95E876933F2016CF0CDA2745491679728684DA8DF95A515CE4804BD ] usbohci         E:\WINDOWS\system32\DRIVERS\usbohci.sys
12:53:57.0906 0x09b4  usbohci - ok
12:53:57.0937 0x09b4  [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan         E:\WINDOWS\system32\DRIVERS\usbscan.sys
12:53:57.0937 0x09b4  usbscan - ok
12:53:57.0953 0x09b4  [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR         E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
12:53:57.0953 0x09b4  USBSTOR - ok
12:53:57.0968 0x09b4  [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave         E:\WINDOWS\System32\drivers\vga.sys
12:53:57.0968 0x09b4  VgaSave - ok
12:53:57.0968 0x09b4  ViaIde - ok
12:53:58.0000 0x09b4  [ 4C8FCB5CC53AAB716D810740FE59D025, 010EAC43DBED700B73E4FC908FAAF9F6A0168EBBD5D86751E49BC33AAA18BFA4 ] VolSnap         E:\WINDOWS\system32\drivers\VolSnap.sys
12:53:58.0000 0x09b4  VolSnap - ok
12:53:58.0015 0x09b4  [ 7A9DB3A67C333BF0BD42E42B8596854B, D31A9A3B1AAAB373EDD73B674102395212FCB616F829E938B7B2B7BE7D4752C5 ] VSS             E:\WINDOWS\System32\vssvc.exe
12:53:58.0031 0x09b4  VSS - ok
12:53:58.0046 0x09b4  [ 54AF4B1D5459500EF0937F6D33B1914F, FA1876888BCB9C72A92369DBED4FF1A8666784523FB41E618FA0919490FCDDB9 ] W32Time         E:\WINDOWS\system32\w32time.dll
12:53:58.0062 0x09b4  W32Time - ok
12:53:58.0078 0x09b4  [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp          E:\WINDOWS\system32\DRIVERS\wanarp.sys
12:53:58.0078 0x09b4  Wanarp - ok
12:53:58.0078 0x09b4  WDICA - ok
12:53:58.0109 0x09b4  [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud          E:\WINDOWS\system32\drivers\wdmaud.sys
12:53:58.0109 0x09b4  wdmaud - ok
12:53:58.0125 0x09b4  [ 77A354E28153AD2D5E120A5A8687BC06, 8B2D37A4443501C0A8E70BC2079BE27F0A36FD07B561E6F68B40A72EABBC2DFE ] WebClient       E:\WINDOWS\System32\webclnt.dll
12:53:58.0125 0x09b4  WebClient - ok
12:53:58.0140 0x09b4  winmgmt - ok
12:53:58.0203 0x09b4  [ 18F347402DA544A780949B8FDF83351B, D1AD972D438A51A4998FEF68670395DAE3353240AD2A17F35794287AF0826FFB ] WinRM           E:\WINDOWS\system32\WsmSvc.dll
12:53:58.0250 0x09b4  WinRM - ok
12:53:58.0281 0x09b4  [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN        E:\WINDOWS\system32\MsPMSNSv.dll
12:53:58.0296 0x09b4  WmdmPmSN - ok
12:53:58.0328 0x09b4  [ E76F8807070ED04E7408A86D6D3A6137, BFCF5361B7335760A7AE4B6958DE516A27AC60AA09135A46F0B49F588FAFE3A0 ] Wmi             E:\WINDOWS\System32\advapi32.dll
12:53:58.0359 0x09b4  Wmi - ok
12:53:58.0390 0x09b4  [ E0673F1106E62A68D2257E376079F821, 12992F18C9653050B10DC61D12988067933FCFDF02123D3A7EF5DE607A785DDC ] WmiApSrv        E:\WINDOWS\system32\wbem\wmiapsrv.exe
12:53:58.0406 0x09b4  WmiApSrv - ok
12:53:58.0453 0x09b4  [ F74E3D9A7FA9556C3BBB14D4E5E63D3B, C71FAAC752F6D58BF8556661252DBF8C5DDD090CAE002A2C7E09C9A014526066 ] WMPNetworkSvc   E:\Program Files\Windows Media Player\WMPNetwk.exe
12:53:58.0484 0x09b4  WMPNetworkSvc - ok
12:53:58.0546 0x09b4  [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
12:53:58.0578 0x09b4  WPFFontCache_v0400 - ok
12:53:58.0593 0x09b4  [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL         E:\WINDOWS\System32\drivers\ws2ifsl.sys
12:53:58.0593 0x09b4  WS2IFSL - ok
12:53:58.0625 0x09b4  [ 7C278E6408D1DCE642230C0585A854D5, DA46079A04F6E8E3441E4AE454AEAC02B3E935DE29CE7F6D4476F57867FCC12A ] wscsvc          E:\WINDOWS\system32\wscsvc.dll
12:53:58.0640 0x09b4  wscsvc - ok
12:53:58.0640 0x09b4  WSearch - ok
12:53:58.0656 0x09b4  [ 35321FB577CDC98CE3EB3A3EB9E4610A, C9A6F5CF282D8FCB3CDFCC4B306013480E78E1B664E1A60A4E27B161F9FFD4CD ] wuauserv        E:\WINDOWS\system32\wuauserv.dll
12:53:58.0671 0x09b4  wuauserv - ok
12:53:58.0703 0x09b4  [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf          E:\WINDOWS\system32\DRIVERS\WudfPf.sys
12:53:58.0703 0x09b4  WudfPf - ok
12:53:58.0718 0x09b4  [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd          E:\WINDOWS\system32\DRIVERS\wudfrd.sys
12:53:58.0718 0x09b4  WudfRd - ok
12:53:58.0750 0x09b4  [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc         E:\WINDOWS\System32\WUDFSvc.dll
12:53:58.0750 0x09b4  WudfSvc - ok
12:53:58.0796 0x09b4  [ 81DC3F549F44B1C1FFF022DEC9ECF30B, 3D14BFEA539F9CEB16555BD56C5E3C7C8F6692FC62C2789F8AAEA1C042E63940 ] WZCSVC          E:\WINDOWS\System32\wzcsvc.dll
12:53:58.0812 0x09b4  WZCSVC - ok
12:53:58.0828 0x09b4  [ 295D21F14C335B53CB8154E5B1F892B9, 9418477C2E3EA93E93D931A4EDD4500DA568FAD6040204B5201D1080203B0BBC ] xmlprov         E:\WINDOWS\System32\xmlprov.dll
12:53:58.0843 0x09b4  xmlprov - ok
12:53:58.0859 0x09b4  ================ Scan global ===============================
12:53:58.0890 0x09b4  [ 42F1F4C0AFB08410E5F02D4B13EBB623, 924C30587C51C0D1E1F47991969AF492A644552E15F2480EA991DCB74A3E68D5 ] E:\WINDOWS\system32\basesrv.dll
12:53:58.0906 0x09b4  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] E:\WINDOWS\system32\winsrv.dll
12:53:58.0937 0x09b4  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] E:\WINDOWS\system32\winsrv.dll
12:53:58.0968 0x09b4  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] E:\WINDOWS\system32\services.exe
12:53:58.0968 0x09b4  [ Global ] - ok
12:53:58.0968 0x09b4  ================ Scan MBR ==================================
12:53:58.0984 0x09b4  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
12:53:58.0984 0x09b4  \Device\Harddisk0\DR0 - ok
12:53:59.0000 0x09b4  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
12:53:59.0078 0x09b4  \Device\Harddisk1\DR1 - ok
12:53:59.0093 0x09b4  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk2\DR5
12:53:59.0093 0x09b4  \Device\Harddisk2\DR5 - ok
12:53:59.0093 0x09b4  ================ Scan VBR ==================================
12:53:59.0093 0x09b4  [ AEE7F35BB118A9F5EC8BDFBE325855A9 ] \Device\Harddisk0\DR0\Partition1
12:53:59.0093 0x09b4  \Device\Harddisk0\DR0\Partition1 - ok
12:53:59.0109 0x09b4  [ C39420799E9F1DD72121EBD035F4BB22 ] \Device\Harddisk1\DR1\Partition1
12:53:59.0140 0x09b4  \Device\Harddisk1\DR1\Partition1 - ok
12:53:59.0140 0x09b4  [ FF9F436CF16C83AE225335C4B6444B6F ] \Device\Harddisk1\DR1\Partition2
12:53:59.0187 0x09b4  \Device\Harddisk1\DR1\Partition2 - ok
12:53:59.0203 0x09b4  [ 9EBBE5929255E6F53F1EF5B1420D0749 ] \Device\Harddisk2\DR5\Partition1
12:53:59.0203 0x09b4  \Device\Harddisk2\DR5\Partition1 - ok
12:53:59.0203 0x09b4  Waiting for KSN requests completion. In queue: 118
12:54:00.0203 0x09b4  Waiting for KSN requests completion. In queue: 118
12:54:01.0203 0x09b4  Waiting for KSN requests completion. In queue: 118
12:55:04.0765 0x09b4  ============================================================
12:55:04.0765 0x09b4  Scan finished
12:55:04.0765 0x09b4  ============================================================
12:55:04.0765 0x0134  Detected object count: 0
12:55:04.0765 0x0134  Actual detected object count: 0
12:56:15.0312 0x0ec8  ============================================================
12:56:15.0312 0x0ec8  Scan started
12:56:15.0312 0x0ec8  Mode: Manual; TDLFS;
12:56:15.0312 0x0ec8  ============================================================
12:56:15.0312 0x0ec8  KSN ping started
12:56:17.0812 0x0ec8  KSN ping finished: true
12:56:17.0968 0x0ec8  ================ Scan system memory ========================
12:56:17.0968 0x0ec8  System memory - ok
12:56:17.0968 0x0ec8  ================ Scan services =============================
12:56:18.0062 0x0ec8  Abiosdsk - ok
12:56:18.0078 0x0ec8  abp480n5 - ok
12:56:18.0093 0x0ec8  [ 8FD99680A539792A30E97944FDAECF17, 594F8E0C3695400B0C09A797AF6BDFAC6F750ECD67D0EE803914C572B1DCC43C ] ACPI            E:\WINDOWS\system32\DRIVERS\ACPI.sys
12:56:18.0109 0x0ec8  ACPI - ok
12:56:18.0125 0x0ec8  [ 9859C0F6936E723E4892D7141B1327D5, 5E8F6A2FC4DF2E5E92A1D66ECC2810E08B42B64E9CD0DF4AD3F78EA8558B90AF ] ACPIEC          E:\WINDOWS\system32\drivers\ACPIEC.sys
12:56:18.0125 0x0ec8  ACPIEC - ok
12:56:18.0125 0x0ec8  adpu160m - ok
12:56:18.0187 0x0ec8  [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec             E:\WINDOWS\system32\drivers\aec.sys
12:56:18.0187 0x0ec8  aec - ok
12:56:18.0218 0x0ec8  [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD             E:\WINDOWS\System32\drivers\afd.sys
12:56:18.0218 0x0ec8  AFD - ok
12:56:18.0234 0x0ec8  Aha154x - ok
12:56:18.0234 0x0ec8  aic78u2 - ok
12:56:18.0234 0x0ec8  aic78xx - ok
12:56:18.0265 0x0ec8  [ A9A3DAA780CA6C9671A19D52456705B4, 67C959144B57AE0BBF1D82DBED197F32CDB06FECD883A80C441A0202FE83FAB4 ] Alerter         E:\WINDOWS\system32\alrsvc.dll
12:56:18.0265 0x0ec8  Alerter - ok
12:56:18.0281 0x0ec8  [ 8C515081584A38AA007909CD02020B3D, A5E13CA10F702928E0DE84C74D0EA8ACCB117FD76FBABC55220C75C4FFD596DC ] ALG             E:\WINDOWS\System32\alg.exe
12:56:18.0281 0x0ec8  ALG - ok
12:56:18.0281 0x0ec8  AliIde - ok
12:56:18.0312 0x0ec8  [ 033448D435E65C4BD72E70521FD05C76, A5462C22D5461F1BA06E81CD7E1ECE5409092DE53A8E4D3E78D089B65CB474D4 ] AmdPPM          E:\WINDOWS\system32\DRIVERS\AmdPPM.sys
12:56:18.0312 0x0ec8  AmdPPM - ok
12:56:18.0328 0x0ec8  amsint - ok
12:56:18.0375 0x0ec8  [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device E:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
12:56:18.0390 0x0ec8  Apple Mobile Device - ok
12:56:18.0406 0x0ec8  [ D8849F77C0B66226335A59D26CB4EDC6, 4990031453204C57E36E850252A39B05D6ECDAB9E71A8136FB4900F17E59C9CA ] AppMgmt         E:\WINDOWS\System32\appmgmts.dll
12:56:18.0421 0x0ec8  AppMgmt - ok
12:56:18.0437 0x0ec8  [ B5B8A80875C1DEDEDA8B02765642C32F, AD0C71D73B1B8225351FBF4FFB43001A32B4DAE69504C59970CD2428BB33D4EF ] Arp1394         E:\WINDOWS\system32\DRIVERS\arp1394.sys
12:56:18.0437 0x0ec8  Arp1394 - ok
12:56:18.0437 0x0ec8  asc - ok
12:56:18.0453 0x0ec8  asc3350p - ok
12:56:18.0453 0x0ec8  asc3550 - ok
12:56:18.0500 0x0ec8  [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state    E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
12:56:18.0500 0x0ec8  aspnet_state - ok
12:56:18.0515 0x0ec8  [ 7021F01CCAC1538CCF9AE004723AF033, 698B199D378426D9A07B01600BA265B8E8EDBEB29BEE223FB22592E59FB5B92E ] aswMonFlt       E:\WINDOWS\system32\drivers\aswMonFlt.sys
12:56:18.0515 0x0ec8  aswMonFlt - ok
12:56:18.0531 0x0ec8  [ 98C18C78B0C3E7EFBDDA7BD0C35F5903, 92128EA70472EBA8804C2972DAA8557F460C2E082084E29B40CE93A05447592F ] aswRdr          E:\WINDOWS\system32\drivers\aswRdr.sys
12:56:18.0531 0x0ec8  aswRdr - ok
12:56:18.0546 0x0ec8  [ F385467DF95D0A73775CB3B076B8B969, D427A5F4FB4D1DAB04AFC29E7EC510844F907ABBA053538995E65747BAD37422 ] aswRvrt         E:\WINDOWS\system32\drivers\aswRvrt.sys
12:56:18.0546 0x0ec8  aswRvrt - ok
12:56:18.0578 0x0ec8  [ 8CD8710457FCC1CDE88CBFA3AA119B92, B750481B2D44E2D01DEF500276A7253731EDD2BCB117B083EE10FAA7A8FFF729 ] aswSnx          E:\WINDOWS\system32\drivers\aswSnx.sys
12:56:18.0593 0x0ec8  aswSnx - ok
12:56:18.0625 0x0ec8  [ C1F95C9481F46B96E23A276639C55AC9, 75F7BCF74E46E3A8EC9AF0DB5D7FCA280DCAF97BD932767DCBDE66E26BF0E7CE ] aswSP           E:\WINDOWS\system32\drivers\aswSP.sys
12:56:18.0640 0x0ec8  aswSP - ok
12:56:18.0656 0x0ec8  [ E6390554DCB2A730702188547267093C, 1F97F23A2C1767ABD52041DFA0EF9065567CDB02B12F674CF4EE4E8FBA69773B ] aswTdi          E:\WINDOWS\system32\drivers\aswTdi.sys
12:56:18.0656 0x0ec8  aswTdi - ok
12:56:18.0671 0x0ec8  [ 1B0662514A68C3A42E60D240C5ABEF28, 71301759C135895C72CAED297A669BA58B3F73E0B7E46DB981F6559D5D5E2B89 ] aswVmm          E:\WINDOWS\system32\drivers\aswVmm.sys
12:56:18.0671 0x0ec8  aswVmm - ok
12:56:18.0687 0x0ec8  [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac        E:\WINDOWS\system32\DRIVERS\asyncmac.sys
12:56:18.0687 0x0ec8  AsyncMac - ok
12:56:18.0703 0x0ec8  [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi           E:\WINDOWS\system32\DRIVERS\atapi.sys
12:56:18.0703 0x0ec8  atapi - ok
12:56:18.0703 0x0ec8  Atdisk - ok
12:56:18.0734 0x0ec8  [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc         E:\WINDOWS\system32\DRIVERS\atmarpc.sys
12:56:18.0734 0x0ec8  Atmarpc - ok
12:56:18.0765 0x0ec8  [ DEF7A7882BEC100FE0B2CE2549188F9D, 462C95B63D0A1058291A2DC8CBFCB13D7D74CCD1CA43B613A7EB43D49E3276F8 ] AudioSrv        E:\WINDOWS\System32\audiosrv.dll
12:56:18.0765 0x0ec8  AudioSrv - ok
12:56:18.0781 0x0ec8  [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub         E:\WINDOWS\system32\DRIVERS\audstub.sys
12:56:18.0781 0x0ec8  audstub - ok
12:56:18.0812 0x0ec8  [ CC42F104172B4A62793083D380867317, 0B09823419B328E29EB9FFBD033B3295590E414F31E7B37F11F62BD4B7EBAF06 ] avast! Antivirus E:\Program Files\AVAST Software\Avast\AvastSvc.exe
12:56:18.0812 0x0ec8  avast! Antivirus - ok
12:56:18.0843 0x0ec8  [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep            E:\WINDOWS\system32\drivers\Beep.sys
12:56:18.0843 0x0ec8  Beep - ok
12:56:18.0875 0x0ec8  [ 574738F61FCA2935F5265DC4E5691314, 3C7CCF064397186C3A3863DD2370AB6414A61B330097DCA4F299CA7BBAA3D1B4 ] BITS            E:\WINDOWS\system32\qmgr.dll
12:56:18.0890 0x0ec8  BITS - ok
12:56:18.0921 0x0ec8  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service E:\Program Files\Bonjour\mDNSResponder.exe
12:56:18.0937 0x0ec8  Bonjour Service - ok
12:56:18.0968 0x0ec8  [ CFD4E51402DA9838B5A04AE680AF54A0, 5378F42B195B5832B00A05AD64E00473A45FFB86AC25C57241F26EA82B149FE1 ] Browser         E:\WINDOWS\System32\browser.dll
12:56:18.0968 0x0ec8  Browser - ok
12:56:18.0984 0x0ec8  [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k         E:\WINDOWS\system32\drivers\cbidf2k.sys
12:56:19.0000 0x0ec8  cbidf2k - ok
12:56:19.0000 0x0ec8  cd20xrnt - ok
12:56:19.0015 0x0ec8  [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio         E:\WINDOWS\system32\drivers\Cdaudio.sys
12:56:19.0015 0x0ec8  Cdaudio - ok
12:56:19.0031 0x0ec8  [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs            E:\WINDOWS\system32\drivers\Cdfs.sys
12:56:19.0031 0x0ec8  Cdfs - ok
12:56:19.0046 0x0ec8  [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom           E:\WINDOWS\system32\DRIVERS\cdrom.sys
12:56:19.0046 0x0ec8  Cdrom - ok
12:56:19.0046 0x0ec8  Changer - ok
12:56:19.0078 0x0ec8  [ 1CFE720EB8D93A7158A4EBC3AB178BDE, 65D2A9D9A88F38D4AF323134C151BA0F4B3CD0F6A134AF86E7AC9D07319F1726 ] CiSvc           E:\WINDOWS\system32\cisvc.exe
12:56:19.0078 0x0ec8  CiSvc - ok
12:56:19.0093 0x0ec8  [ 34CBE729F38138217F9C80212A2A0C82, A9FD7A758D12E0818A11BEEF1CE772FEFA8373E92EF6C0DA8628CD4572CC9A43 ] ClipSrv         E:\WINDOWS\system32\clipsrv.exe
12:56:19.0093 0x0ec8  ClipSrv - ok
12:56:19.0125 0x0ec8  [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 e:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:56:19.0125 0x0ec8  clr_optimization_v2.0.50727_32 - ok
12:56:19.0140 0x0ec8  [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
12:56:19.0156 0x0ec8  clr_optimization_v4.0.30319_32 - ok
12:56:19.0156 0x0ec8  CmdIde - ok
12:56:19.0171 0x0ec8  COMSysApp - ok
12:56:19.0187 0x0ec8  Cpqarray - ok
12:56:19.0203 0x0ec8  [ 3D4E199942E29207970E04315D02AD3B, 0825960894CF9C86CC8775BDD2A262948A09CA495AA7FE9F210FAF49E7086383 ] CryptSvc        E:\WINDOWS\System32\cryptsvc.dll
12:56:19.0218 0x0ec8  CryptSvc - ok
12:56:19.0218 0x0ec8  dac2w2k - ok
12:56:19.0218 0x0ec8  dac960nt - ok
12:56:19.0250 0x0ec8  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] DcomLaunch      E:\WINDOWS\system32\rpcss.dll
12:56:19.0265 0x0ec8  DcomLaunch - ok
12:56:19.0296 0x0ec8  [ 5E38D7684A49CACFB752B046357E0589, F192AD4190BCFB6939A5CBC91648FE63168AF79A5E227A111DEAD6A92E42AB8D ] Dhcp            E:\WINDOWS\System32\dhcpcsvc.dll
12:56:19.0296 0x0ec8  Dhcp - ok
12:56:19.0312 0x0ec8  [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk            E:\WINDOWS\system32\DRIVERS\disk.sys
12:56:19.0312 0x0ec8  Disk - ok
12:56:19.0312 0x0ec8  dmadmin - ok
12:56:19.0343 0x0ec8  [ D992FE1274BDE0F84AD826ACAE022A41, C82BD6561A14F2932A761F5883A787B99031250EE5E9B7B5714AA045545C9B99 ] dmboot          E:\WINDOWS\system32\drivers\dmboot.sys
12:56:19.0375 0x0ec8  dmboot - ok
12:56:19.0390 0x0ec8  [ 7C824CF7BBDE77D95C08005717A95F6F, A73CB323B7A6410C3D3F258BF204E716ADF8C84C9E4F6562C57AB73DAED8CCDE ] dmio            E:\WINDOWS\system32\drivers\dmio.sys
12:56:19.0390 0x0ec8  dmio - ok
12:56:19.0406 0x0ec8  [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload          E:\WINDOWS\system32\drivers\dmload.sys
12:56:19.0406 0x0ec8  dmload - ok
12:56:19.0421 0x0ec8  [ 57EDEC2E5F59F0335E92F35184BC8631, 61F6F0DC2D1A6C61D5EF0D5CC4BE0FFC217F1E61FDA3EA9F704709293656600F ] dmserver        E:\WINDOWS\System32\dmserver.dll
12:56:19.0421 0x0ec8  dmserver - ok
12:56:19.0437 0x0ec8  [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic          E:\WINDOWS\system32\drivers\DMusic.sys
12:56:19.0437 0x0ec8  DMusic - ok
12:56:19.0437 0x0ec8  [ 5F7E24FA9EAB896051FFB87F840730D2, 356EEFDCD54DECAD0170B34B993E4BF80DD039E2B2922D7A8D09B84031E9FC7A ] Dnscache        E:\WINDOWS\System32\dnsrslvr.dll
12:56:19.0437 0x0ec8  Dnscache - ok
12:56:19.0468 0x0ec8  [ 0F0F6E687E5E15579EF4DA8DD6945814, 5C32D88119EB1465B2D719BEE2E05888D1A73454B5E33F2D4928DA710F8BFBA3 ] Dot3svc         E:\WINDOWS\System32\dot3svc.dll
12:56:19.0468 0x0ec8  Dot3svc - ok
12:56:19.0468 0x0ec8  dpti2o - ok
12:56:19.0500 0x0ec8  [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud         E:\WINDOWS\system32\drivers\drmkaud.sys
12:56:19.0500 0x0ec8  drmkaud - ok
12:56:19.0515 0x0ec8  [ 2187855A7703ADEF0CEF9EE4285182CC, 8233CC11F637866C0074043835A785EA2B616739B6B1181B143A253CF2508CFD ] EapHost         E:\WINDOWS\System32\eapsvc.dll
12:56:19.0515 0x0ec8  EapHost - ok
12:56:19.0515 0x0ec8  [ BC93B4A066477954555966D77FEC9ECB, 27F5B780175EF46DA102EE33F7F33559C8B40C077EEA4405D579D9507F4B1C23 ] ERSvc           E:\WINDOWS\System32\ersvc.dll
12:56:19.0515 0x0ec8  ERSvc - ok
12:56:19.0546 0x0ec8  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] Eventlog        E:\WINDOWS\system32\services.exe
12:56:19.0562 0x0ec8  Eventlog - ok
12:56:19.0578 0x0ec8  [ D4991D98F2DB73C60D042F1AEF79EFAE, 58AF949EAEBF4FF3E3314DFB66CE4198BF65F0836B68CD27A6ED319742CCCCD2 ] EventSystem     E:\WINDOWS\system32\es.dll
12:56:19.0578 0x0ec8  EventSystem - ok
12:56:19.0609 0x0ec8  [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat         E:\WINDOWS\system32\drivers\Fastfat.sys
12:56:19.0609 0x0ec8  Fastfat - ok
12:56:19.0640 0x0ec8  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] FastUserSwitchingCompatibility E:\WINDOWS\System32\shsvcs.dll
12:56:19.0640 0x0ec8  FastUserSwitchingCompatibility - ok
12:56:19.0656 0x0ec8  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc             E:\WINDOWS\system32\DRIVERS\fdc.sys
12:56:19.0656 0x0ec8  Fdc - ok
12:56:19.0671 0x0ec8  [ D45926117EB9FA946A6AF572FBE1CAA3, 4C94EF009D778BE0BDF8F812F026B96F91F641BE30AA2531427A5E63DBD280DA ] Fips            E:\WINDOWS\system32\drivers\Fips.sys
12:56:19.0671 0x0ec8  Fips - ok
12:56:19.0671 0x0ec8  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk        E:\WINDOWS\system32\DRIVERS\flpydisk.sys
12:56:19.0671 0x0ec8  Flpydisk - ok
12:56:19.0687 0x0ec8  [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr          E:\WINDOWS\system32\drivers\fltmgr.sys
12:56:19.0687 0x0ec8  FltMgr - ok
12:56:19.0734 0x0ec8  [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 e:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
12:56:19.0734 0x0ec8  FontCache3.0.0.0 - ok
12:56:19.0750 0x0ec8  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec          E:\WINDOWS\system32\drivers\Fs_Rec.sys
12:56:19.0750 0x0ec8  Fs_Rec - ok
12:56:19.0750 0x0ec8  [ 6AC26732762483366C3969C9E4D2259D, FF2C9A23CC17F380093F0BEA955B1925794271C2FEA16B9B7639668E6999BAE3 ] Ftdisk          E:\WINDOWS\system32\DRIVERS\ftdisk.sys
12:56:19.0765 0x0ec8  Ftdisk - ok
12:56:19.0765 0x0ec8  [ 065639773D8B03F33577F6CDAEA21063, F20D0F3256F5F894CCA48755B23679619B5D02A0F64A142FC6CB619FC0952067 ] gameenum        E:\WINDOWS\system32\DRIVERS\gameenum.sys
12:56:19.0765 0x0ec8  gameenum - ok
12:56:19.0781 0x0ec8  [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM     E:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
12:56:19.0781 0x0ec8  GEARAspiWDM - ok
12:56:19.0796 0x0ec8  [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc             E:\WINDOWS\system32\DRIVERS\msgpc.sys
12:56:19.0796 0x0ec8  Gpc - ok
12:56:19.0812 0x0ec8  [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus        E:\WINDOWS\system32\DRIVERS\HDAudBus.sys
12:56:19.0812 0x0ec8  HDAudBus - ok
12:56:19.0843 0x0ec8  [ 4FCCA060DFE0C51A09DD5C3843888BCD, D82417706B517F2610DDF7C86BE03A72EFA9A2A389DF5C8F8ADEAB8144E2C80A ] helpsvc         E:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
12:56:19.0843 0x0ec8  helpsvc - ok
12:56:19.0843 0x0ec8  HidServ - ok
12:56:19.0875 0x0ec8  [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] HidUsb          E:\WINDOWS\system32\DRIVERS\hidusb.sys
12:56:19.0875 0x0ec8  HidUsb - ok
12:56:19.0890 0x0ec8  [ 8878BD685E490239777BFE51320B88E9, C5C3ECF6B049B6736E35B39518A8F830B45C45A88FFE8E3A6B7922AD946597E2 ] hkmsvc          E:\WINDOWS\System32\kmsvc.dll
12:56:19.0890 0x0ec8  hkmsvc - ok
12:56:19.0906 0x0ec8  hpn - ok
12:56:19.0937 0x0ec8  [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP            E:\WINDOWS\system32\Drivers\HTTP.sys
12:56:19.0937 0x0ec8  HTTP - ok
12:56:19.0968 0x0ec8  [ 6100A808600F44D999CEBDEF8841C7A3, 61A75118C327812C60622010985A2E80E79B6FD9030A5732390EE5426E4AF6C9 ] HTTPFilter      E:\WINDOWS\System32\w3ssl.dll
12:56:19.0968 0x0ec8  HTTPFilter - ok
12:56:19.0984 0x0ec8  i2omgmt - ok
12:56:19.0984 0x0ec8  i2omp - ok
12:56:20.0000 0x0ec8  [ 4A0B06AA8943C1E332520F7440C0AA30, DB2452390CCFE67E0C5FEB4FD42CA24ABE2DDD40D0B22DD5F5B8F70416863918 ] i8042prt        E:\WINDOWS\system32\DRIVERS\i8042prt.sys
12:56:20.0000 0x0ec8  i8042prt - ok
12:56:20.0078 0x0ec8  [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc           e:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
12:56:20.0093 0x0ec8  idsvc - ok
12:56:20.0109 0x0ec8  [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi           E:\WINDOWS\system32\DRIVERS\imapi.sys
12:56:20.0109 0x0ec8  Imapi - ok
12:56:20.0140 0x0ec8  [ 30DEAF54A9755BB8546168CFE8A6B5E1, 3936228CD3125C763ABFCB93E86E4B43838202BCC0913A28E84AC0263B43EE0D ] ImapiService    E:\WINDOWS\system32\imapi.exe
12:56:20.0140 0x0ec8  ImapiService - ok
12:56:20.0156 0x0ec8  ini910u - ok
12:56:20.0156 0x0ec8  IntelIde - ok
12:56:20.0187 0x0ec8  [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw           E:\WINDOWS\system32\drivers\ip6fw.sys
12:56:20.0187 0x0ec8  Ip6Fw - ok
12:56:20.0203 0x0ec8  [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver  E:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
12:56:20.0218 0x0ec8  IpFilterDriver - ok
12:56:20.0218 0x0ec8  [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp          E:\WINDOWS\system32\DRIVERS\ipinip.sys
12:56:20.0218 0x0ec8  IpInIp - ok
12:56:20.0234 0x0ec8  [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat           E:\WINDOWS\system32\DRIVERS\ipnat.sys
12:56:20.0250 0x0ec8  IpNat - ok
12:56:20.0281 0x0ec8  [ 066F2BBE2EEC9A42B065B552BF356B4E, AE86DB5BFD4748C54C0C224E7FBEA3C032F1071A39303DF35AA04869D3950B7A ] iPod Service    E:\Program Files\iPod\bin\iPodService.exe
12:56:20.0296 0x0ec8  iPod Service - ok
12:56:20.0328 0x0ec8  [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec           E:\WINDOWS\system32\DRIVERS\ipsec.sys
12:56:20.0328 0x0ec8  IPSec - ok
12:56:20.0359 0x0ec8  [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM          E:\WINDOWS\system32\DRIVERS\irenum.sys
12:56:20.0359 0x0ec8  IRENUM - ok
12:56:20.0359 0x0ec8  [ 05A299EC56E52649B1CF2FC52D20F2D7, 2654619DB3E6D6C385B63AB02F87D4241C4F0250CC31383D1B3586917166C2DC ] isapnp          E:\WINDOWS\system32\DRIVERS\isapnp.sys
12:56:20.0375 0x0ec8  isapnp - ok
12:56:20.0375 0x0ec8  [ 463C1EC80CD17420A542B7F36A36F128, E3B11BA26AFEAFB50B0FC168EA07F6049DA6B88BCDDEEE20310602D7FC27A3A7 ] Kbdclass        E:\WINDOWS\system32\DRIVERS\kbdclass.sys
12:56:20.0375 0x0ec8  Kbdclass - ok
12:56:20.0390 0x0ec8  [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer          E:\WINDOWS\system32\drivers\kmixer.sys
12:56:20.0406 0x0ec8  kmixer - ok
12:56:20.0406 0x0ec8  [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD          E:\WINDOWS\system32\drivers\KSecDD.sys
12:56:20.0421 0x0ec8  KSecDD - ok
12:56:20.0437 0x0ec8  [ 3A7C3CBE5D96B8AE96CE81F0B22FB527, 0044F03132596A494448CCE5F3D6ECC12617BB4CF6BAE348F79D4DC40ACD6EE0 ] lanmanserver    E:\WINDOWS\System32\srvsvc.dll
12:56:20.0437 0x0ec8  lanmanserver - ok
12:56:20.0468 0x0ec8  [ A8888A5327621856C0CEC4E385F69309, B08B63300D824E35E31EEEA2C4C086DFA2C2A964CEDAE512E74D3D88AADAA2C1 ] lanmanworkstation E:\WINDOWS\System32\wkssvc.dll
12:56:20.0468 0x0ec8  lanmanworkstation - ok
12:56:20.0484 0x0ec8  lbrtfdc - ok
12:56:20.0500 0x0ec8  [ A7DB739AE99A796D91580147E919CC59, EDF4E039BA277B0E6D66FEB0B28096E67D682C09DFC18ECECF062D9DCFB75ACF ] LmHosts         E:\WINDOWS\System32\lmhsvc.dll
12:56:20.0500 0x0ec8  LmHosts - ok
12:56:20.0515 0x0ec8  [ 986B1FF5814366D71E0AC5755C88F2D3, E6AF051174531C24B38E73987755D366ABEC595476C6D17793E8DCCC73F55340 ] Messenger       E:\WINDOWS\System32\msgsvc.dll
12:56:20.0531 0x0ec8  Messenger - ok
12:56:20.0546 0x0ec8  [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd           E:\WINDOWS\system32\drivers\mnmdd.sys
12:56:20.0546 0x0ec8  mnmdd - ok
12:56:20.0562 0x0ec8  [ D18F1F0C101D06A1C1ADF26EED16FCDD, BA0837C7780BD8262E143E2935AFA63BE59C3C39EF56CB8608EED0F50AF070D4 ] mnmsrvc         E:\WINDOWS\system32\mnmsrvc.exe
12:56:20.0562 0x0ec8  mnmsrvc - ok
12:56:20.0578 0x0ec8  [ DFCBAD3CEC1C5F964962AE10E0BCC8E1, B342CC9EC3729AB1AB4B5E2E99F890C1E0CA649162DE91F6768AB857B719E97B ] Modem           E:\WINDOWS\system32\drivers\Modem.sys
12:56:20.0578 0x0ec8  Modem - ok
12:56:20.0578 0x0ec8  [ 35C9E97194C8CFB8430125F8DBC34D04, 0C0FCE6B0A23FB0ECB92E1663E1C72D2DD5B177D82E04782957690B69530DB39 ] Mouclass        E:\WINDOWS\system32\DRIVERS\mouclass.sys
12:56:20.0578 0x0ec8  Mouclass - ok
12:56:20.0593 0x0ec8  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr        E:\WINDOWS\system32\drivers\MountMgr.sys
12:56:20.0593 0x0ec8  MountMgr - ok
12:56:20.0593 0x0ec8  mraid35x - ok
12:56:20.0609 0x0ec8  [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV          E:\WINDOWS\system32\DRIVERS\mrxdav.sys
12:56:20.0625 0x0ec8  MRxDAV - ok
12:56:20.0640 0x0ec8  [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb          E:\WINDOWS\system32\DRIVERS\mrxsmb.sys
12:56:20.0656 0x0ec8  MRxSmb - ok
12:56:20.0671 0x0ec8  [ A137F1470499A205ABBB9AAFB3B6F2B1, FB4951727543030D9E6ED74149C3FAACE2CA9DA8C1B5F616301B30B858C724E8 ] MSDTC           E:\WINDOWS\system32\msdtc.exe
12:56:20.0671 0x0ec8  MSDTC - ok
12:56:20.0687 0x0ec8  [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs            E:\WINDOWS\system32\drivers\Msfs.sys
12:56:20.0687 0x0ec8  Msfs - ok
12:56:20.0687 0x0ec8  MSIServer - ok
12:56:20.0703 0x0ec8  [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV         E:\WINDOWS\system32\drivers\MSKSSRV.sys
12:56:20.0703 0x0ec8  MSKSSRV - ok
12:56:20.0718 0x0ec8  [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK        E:\WINDOWS\system32\drivers\MSPCLOCK.sys
12:56:20.0718 0x0ec8  MSPCLOCK - ok
12:56:20.0718 0x0ec8  [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM           E:\WINDOWS\system32\drivers\MSPQM.sys
12:56:20.0718 0x0ec8  MSPQM - ok
12:56:20.0734 0x0ec8  [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios        E:\WINDOWS\system32\DRIVERS\mssmbios.sys
12:56:20.0734 0x0ec8  mssmbios - ok
12:56:20.0765 0x0ec8  [ CA3E22598F411199ADC2DFEE76CD0AE0, 73ACE780A198467657CD2AF6019F0FC753B4FC6D26A9D6477C88C5396273F77C ] ms_mpu401       E:\WINDOWS\system32\drivers\msmpu401.sys
12:56:20.0765 0x0ec8  ms_mpu401 - ok
12:56:20.0765 0x0ec8  [ D48659BB24C48345D926ECB45C1EBDF5, EDEDE58316827530C25F8085F62AD48EA6D44B0F8AC1917B940F53B02CF72EA6 ] MTsensor        E:\WINDOWS\system32\DRIVERS\ASACPI.sys
12:56:20.0765 0x0ec8  MTsensor - ok
12:56:20.0781 0x0ec8  [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup             E:\WINDOWS\system32\drivers\Mup.sys
12:56:20.0796 0x0ec8  Mup - ok
12:56:20.0812 0x0ec8  [ 0102140028FAD045756796E1C685D695, 5335B8278418CA200E2772124F0602C3E15A5CAF2D5CC59F6785DFAABF339B09 ] napagent        E:\WINDOWS\System32\qagentrt.dll
12:56:20.0828 0x0ec8  napagent - ok
12:56:20.0843 0x0ec8  [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS            E:\WINDOWS\system32\drivers\NDIS.sys
12:56:20.0843 0x0ec8  NDIS - ok
12:56:20.0859 0x0ec8  [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi        E:\WINDOWS\system32\DRIVERS\ndistapi.sys
12:56:20.0859 0x0ec8  NdisTapi - ok
12:56:20.0875 0x0ec8  [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio         E:\WINDOWS\system32\DRIVERS\ndisuio.sys
12:56:20.0875 0x0ec8  Ndisuio - ok
12:56:20.0890 0x0ec8  [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan         E:\WINDOWS\system32\DRIVERS\ndiswan.sys
12:56:20.0890 0x0ec8  NdisWan - ok
12:56:20.0906 0x0ec8  [ 9282BD12DFB069D3889EB3FCC1000A9B, 09A46F1712BD9165068D8E153585FE3E6E5CBF4F1DDEC142115555D3A91AEC09 ] NDProxy         E:\WINDOWS\system32\drivers\NDProxy.sys
12:56:20.0906 0x0ec8  NDProxy - ok
12:56:20.0906 0x0ec8  [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS         E:\WINDOWS\system32\DRIVERS\netbios.sys
12:56:20.0906 0x0ec8  NetBIOS - ok
12:56:20.0921 0x0ec8  [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT           E:\WINDOWS\system32\DRIVERS\netbt.sys
12:56:20.0937 0x0ec8  NetBT - ok
12:56:20.0953 0x0ec8  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDE          E:\WINDOWS\system32\netdde.exe
12:56:20.0968 0x0ec8  NetDDE - ok
12:56:20.0968 0x0ec8  [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDEdsdm      E:\WINDOWS\system32\netdde.exe
12:56:20.0984 0x0ec8  NetDDEdsdm - ok
12:56:21.0000 0x0ec8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] Netlogon        E:\WINDOWS\system32\lsass.exe
12:56:21.0000 0x0ec8  Netlogon - ok
12:56:21.0015 0x0ec8  [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE, 4E0A67B3CC897E80D4B342FFE8B7B4CC4F6CA2EF2D34C136027A098B2E1C6166 ] Netman          E:\WINDOWS\System32\netman.dll
12:56:21.0015 0x0ec8  Netman - ok
12:56:21.0062 0x0ec8  [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing e:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
12:56:21.0062 0x0ec8  NetTcpPortSharing - ok
12:56:21.0093 0x0ec8  [ E9E47CFB2D461FA0FC75B7A74C6383EA, 544136F5BFD4DC23D45E90F12FA48B82FD9EAEA9EAF3E0F5F0BD27E23D672C3E ] NIC1394         E:\WINDOWS\system32\DRIVERS\nic1394.sys
12:56:21.0109 0x0ec8  NIC1394 - ok
12:56:21.0109 0x0ec8  [ 943337D786A56729263071623BBB9DE5, B631B47C869FE4ACF46E4AA272435D9A9CA536E3349E3FFBB8602636FEE7AFD4 ] Nla             E:\WINDOWS\System32\mswsock.dll
12:56:21.0125 0x0ec8  Nla - ok
12:56:21.0140 0x0ec8  [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs            E:\WINDOWS\system32\drivers\Npfs.sys
12:56:21.0140 0x0ec8  Npfs - ok
12:56:21.0156 0x0ec8  [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs            E:\WINDOWS\system32\drivers\Ntfs.sys
12:56:21.0171 0x0ec8  Ntfs - ok
12:56:21.0187 0x0ec8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] NtLmSsp         E:\WINDOWS\system32\lsass.exe
12:56:21.0187 0x0ec8  NtLmSsp - ok
12:56:21.0250 0x0ec8  [ 156F64A3345BD23C600655FB4D10BC08, 9611BE411586E068D9297D77102DB3BE48AA67F1BAD6F61A84F83FC3043FA9CD ] NtmsSvc         E:\WINDOWS\system32\ntmssvc.dll
12:56:21.0265 0x0ec8  NtmsSvc - ok
12:56:21.0265 0x0ec8  [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null            E:\WINDOWS\system32\drivers\Null.sys
12:56:21.0265 0x0ec8  Null - ok
12:56:21.0703 0x0ec8  [ 4D171DB452C5D558E9CBE7E1D6F3635A, AD527D5BC369D3008B2889924073327279FA2FC6C206DB7E03FB166A613FAFD8 ] nv              E:\WINDOWS\system32\DRIVERS\nv4_mini.sys
12:56:22.0015 0x0ec8  nv - ok
12:56:22.0078 0x0ec8  [ DCE353985C988BFB7E84FD942068151F, B58C7884B6148D248D5ABDCD88C0F44E1A019D06A90BE45551985B4504F4B188 ] nvata           E:\WINDOWS\system32\DRIVERS\nvata.sys
12:56:22.0078 0x0ec8  nvata - ok
12:56:22.0093 0x0ec8  [ 7D275ECDA4628318912F6C945D5CF963, 78C5125F5A9B5EE1A5AC394BB0D9EDA954EB35103B588B6A98D41E2C32354A96 ] NVENETFD        E:\WINDOWS\system32\DRIVERS\NVENETFD.sys
12:56:22.0109 0x0ec8  NVENETFD - ok
12:56:22.0125 0x0ec8  [ A211AB524324E84C2C805B52DFCDD544, E9BB0A441837A538B3D7F57ECD43A88152E9F54BA4DE145F2E2E1913CDB54914 ] NVHDA           E:\WINDOWS\system32\drivers\nvhda32.sys
12:56:22.0125 0x0ec8  NVHDA - ok
12:56:22.0140 0x0ec8  [ B64AACEFAD2BE5BFF5353FE681253C67, A4D81BF67E6D4DBD559C27C8103277D30DA5B37269E0FD6571FC273DA21E892F ] nvnetbus        E:\WINDOWS\system32\DRIVERS\nvnetbus.sys
12:56:22.0140 0x0ec8  nvnetbus - ok
12:56:22.0156 0x0ec8  [ 34411734F476368AA7BA9404798644CF, D728D0044FBAD7E08C06002C3395BF8862E98DE35281699A4EA88205F5975684 ] NVSvc           E:\WINDOWS\system32\nvsvc32.exe
12:56:22.0171 0x0ec8  NVSvc - ok
12:56:22.0250 0x0ec8  [ 10DEF604B1929D9515969E1CAE7D250A, AC343E716453B9CA16B4763A714FB4B09671D8EB56A8C46C22CBD769EB7937C4 ] nvUpdatusService E:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
12:56:22.0312 0x0ec8  nvUpdatusService - ok
12:56:22.0328 0x0ec8  [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt        E:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
12:56:22.0328 0x0ec8  NwlnkFlt - ok
12:56:22.0343 0x0ec8  [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd        E:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
12:56:22.0343 0x0ec8  NwlnkFwd - ok
12:56:22.0359 0x0ec8  [ CA33832DF41AFB202EE7AEB05145922F, 9DD0089C2E13C7F81214C3B5A4A61276292052F9BBFEA7FCD0F6AA27815D5F95 ] ohci1394        E:\WINDOWS\system32\DRIVERS\ohci1394.sys
12:56:22.0359 0x0ec8  ohci1394 - ok
12:56:22.0406 0x0ec8  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             E:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:56:22.0421 0x0ec8  ose - ok
12:56:22.0593 0x0ec8  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc         E:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
12:56:22.0703 0x0ec8  osppsvc - ok
12:56:22.0750 0x0ec8  [ 5575FAF8F97CE5E713D108C2A58D7C7C, 96D4595D19A78CCBE8B325A08780AC077AE5CC99642ACD72FB47AEAE8D344D3B ] Parport         E:\WINDOWS\system32\DRIVERS\parport.sys
12:56:22.0750 0x0ec8  Parport - ok
12:56:22.0750 0x0ec8  [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr         E:\WINDOWS\system32\drivers\PartMgr.sys
12:56:22.0750 0x0ec8  PartMgr - ok
12:56:22.0781 0x0ec8  [ 70E98B3FD8E963A6A46A2E6247E0BEA1, 6771313EC41B3B5BFD398F60706E40BE71617046880CC352DD110B001AFC22A1 ] ParVdm          E:\WINDOWS\system32\drivers\ParVdm.sys
12:56:22.0781 0x0ec8  ParVdm - ok
12:56:22.0796 0x0ec8  [ A219903CCF74233761D92BEF471A07B1, D4E6C360A1D2FCA4D17C991B834D68BF20F5111DD06B1FAB8B22984804CEC269 ] PCI             E:\WINDOWS\system32\DRIVERS\pci.sys
12:56:22.0796 0x0ec8  PCI - ok
12:56:22.0796 0x0ec8  PCIDump - ok
12:56:22.0812 0x0ec8  [ CCF5F451BB1A5A2A522A76E670000FF0, D63F7E5A39653EC9CCE94B7D84B2D3EBD4F54533BD65701020198724042C9257 ] PCIIde          E:\WINDOWS\system32\DRIVERS\pciide.sys
12:56:22.0812 0x0ec8  PCIIde - ok
12:56:22.0828 0x0ec8  [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1, 0BA3DB21DC7C641C181E2635B5C9B73965FDCDCD3EBBBE48FCFEC1C8C987F617 ] Pcmcia          E:\WINDOWS\system32\drivers\Pcmcia.sys
12:56:22.0828 0x0ec8  Pcmcia - ok
12:56:22.0843 0x0ec8  PDCOMP - ok
12:56:22.0843 0x0ec8  PDFRAME - ok
12:56:22.0859 0x0ec8  PDRELI - ok
12:56:22.0859 0x0ec8  PDRFRAME - ok
12:56:22.0875 0x0ec8  perc2 - ok
12:56:22.0875 0x0ec8  perc2hib - ok
12:56:22.0906 0x0ec8  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] PlugPlay        E:\WINDOWS\system32\services.exe
12:56:22.0921 0x0ec8  PlugPlay - ok
12:56:22.0921 0x0ec8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] PolicyAgent     E:\WINDOWS\system32\lsass.exe
12:56:22.0937 0x0ec8  PolicyAgent - ok
12:56:22.0937 0x0ec8  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport    E:\WINDOWS\system32\DRIVERS\raspptp.sys
12:56:22.0937 0x0ec8  PptpMiniport - ok
12:56:22.0953 0x0ec8  [ A32BEBAF723557681BFC6BD93E98BD26, 35039BA72A29F87B2CA37DCDE4EFDAABBDEAD8CE3EB8652ACC665994118145A6 ] Processor       E:\WINDOWS\system32\DRIVERS\processr.sys
12:56:22.0953 0x0ec8  Processor - ok
12:56:22.0968 0x0ec8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] ProtectedStorage E:\WINDOWS\system32\lsass.exe
12:56:22.0968 0x0ec8  ProtectedStorage - ok
12:56:22.0968 0x0ec8  [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched          E:\WINDOWS\system32\DRIVERS\psched.sys
12:56:22.0984 0x0ec8  PSched - ok
12:56:23.0000 0x0ec8  [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink         E:\WINDOWS\system32\DRIVERS\ptilink.sys
12:56:23.0000 0x0ec8  Ptilink - ok
12:56:23.0000 0x0ec8  ql1080 - ok
12:56:23.0015 0x0ec8  Ql10wnt - ok
12:56:23.0015 0x0ec8  ql12160 - ok
12:56:23.0031 0x0ec8  ql1240 - ok
12:56:23.0031 0x0ec8  ql1280 - ok
12:56:23.0046 0x0ec8  [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd          E:\WINDOWS\system32\DRIVERS\rasacd.sys
12:56:23.0046 0x0ec8  RasAcd - ok
12:56:23.0078 0x0ec8  [ AD188BE7BDF94E8DF4CA0A55C00A5073, C7D76CB579FAEBCCC2873499441BACDD6BD6668ACF5ED7F31862656E96E2B20C ] RasAuto         E:\WINDOWS\System32\rasauto.dll
12:56:23.0093 0x0ec8  RasAuto - ok
12:56:23.0093 0x0ec8  [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp         E:\WINDOWS\system32\DRIVERS\rasl2tp.sys
12:56:23.0093 0x0ec8  Rasl2tp - ok
12:56:23.0125 0x0ec8  [ 76A9A3CBEADD68CC57CDA5E1D7448235, 4AFD048C5D2306AB8DE46F3AA60AC0213333DDA3B09A9E91F7585DB6EB978EC8 ] RasMan          E:\WINDOWS\System32\rasmans.dll
12:56:23.0140 0x0ec8  RasMan - ok
12:56:23.0156 0x0ec8  [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe        E:\WINDOWS\system32\DRIVERS\raspppoe.sys
12:56:23.0156 0x0ec8  RasPppoe - ok
12:56:23.0156 0x0ec8  [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti          E:\WINDOWS\system32\DRIVERS\raspti.sys
12:56:23.0156 0x0ec8  Raspti - ok
12:56:23.0171 0x0ec8  [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss           E:\WINDOWS\system32\DRIVERS\rdbss.sys
12:56:23.0187 0x0ec8  Rdbss - ok
12:56:23.0187 0x0ec8  [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD          E:\WINDOWS\system32\DRIVERS\RDPCDD.sys
12:56:23.0187 0x0ec8  RDPCDD - ok
12:56:23.0218 0x0ec8  [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr           E:\WINDOWS\system32\DRIVERS\rdpdr.sys
12:56:23.0218 0x0ec8  rdpdr - ok
12:56:23.0250 0x0ec8  [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD           E:\WINDOWS\system32\drivers\RDPWD.sys
12:56:23.0250 0x0ec8  RDPWD - ok
12:56:23.0265 0x0ec8  [ 3C37BF86641BDA977C3BF8A840F3B7FA, AB9A6E54DBA3F4561CD4837372BECCE0D73943D02E3288F944333039375AC08C ] RDSessMgr       E:\WINDOWS\system32\sessmgr.exe
12:56:23.0281 0x0ec8  RDSessMgr - ok
12:56:23.0296 0x0ec8  [ F828DD7E1419B6653894A8F97A0094C5, E6150E1F598BA4CFEDB8FF075BC0D576518C331B864388F1CAE8812EFF106ECF ] redbook         E:\WINDOWS\system32\DRIVERS\redbook.sys
12:56:23.0296 0x0ec8  redbook - ok
12:56:23.0328 0x0ec8  [ 7E699FF5F59B5D9DE5390E3C34C67CF5, 3FCF0442D80AB181FED4303E570378736AA1F8718C0B8B70F689A1E45200FFE4 ] RemoteAccess    E:\WINDOWS\System32\mprdim.dll
12:56:23.0328 0x0ec8  RemoteAccess - ok
12:56:23.0343 0x0ec8  [ 5B19B557B0C188210A56A6B699D90B8F, 0FA880B81AE615206FD1738B83428AAA491D54B24168339DE6E87FDE8C6C14B0 ] RemoteRegistry  E:\WINDOWS\system32\regsvc.dll
12:56:23.0343 0x0ec8  RemoteRegistry - ok
12:56:23.0359 0x0ec8  [ 44275833E1EEE97890BBD70E5D3C9FB2, 223208B6C311245AE56DD466898A63DCEB50D0DB9538FA9F02FB7546EC0D1804 ] REVO71          E:\WINDOWS\system32\DRIVERS\revo71.sys
12:56:23.0359 0x0ec8  REVO71 - ok
12:56:23.0375 0x0ec8  [ AAED593F84AFA419BBAE8572AF87CF6A, CC0FFC5A69394C8830DC66320DA01A820BBF41AD7E57D0FC343561DC5EF9A360 ] RpcLocator      E:\WINDOWS\system32\locator.exe
12:56:23.0390 0x0ec8  RpcLocator - ok
12:56:23.0406 0x0ec8  [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] RpcSs           E:\WINDOWS\system32\rpcss.dll
12:56:23.0421 0x0ec8  RpcSs - ok
12:56:23.0437 0x0ec8  [ 471B3F9741D762ABE75E9DEEA4787E47, D9ADE42965EC22AEB4B2AD21D429C3C8232A60AA9853DEFDA7AED86A13FE8623 ] RSVP            E:\WINDOWS\system32\rsvp.exe
12:56:23.0453 0x0ec8  RSVP - ok
12:56:23.0453 0x0ec8  [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] SamSs           E:\WINDOWS\system32\lsass.exe
12:56:23.0468 0x0ec8  SamSs - ok
12:56:23.0468 0x0ec8  [ 86D007E7A654B9A71D1D7D856B104353, 7B1DE53D637A5FC9619D5D07C48927AFEC89D959207F6F2E2F45DD054EEA04C7 ] SCardSvr        E:\WINDOWS\System32\SCardSvr.exe
12:56:23.0484 0x0ec8  SCardSvr - ok
12:56:23.0515 0x0ec8  [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA, 0B582F47BD70732BAC48B8B86E5D06CE7F299A20E8177F3F2E6F28217C3FB605 ] Schedule        E:\WINDOWS\system32\schedsvc.dll
12:56:23.0515 0x0ec8  Schedule - ok
12:56:23.0531 0x0ec8  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv          E:\WINDOWS\system32\DRIVERS\secdrv.sys
12:56:23.0531 0x0ec8  Secdrv - ok
12:56:23.0562 0x0ec8  [ CBE612E2BB6A10E3563336191EDA1250, C331797DC3569F0E715766561DE2562F60B924378842246C35D2B1CF867E9D96 ] seclogon        E:\WINDOWS\System32\seclogon.dll
12:56:23.0562 0x0ec8  seclogon - ok
12:56:23.0578 0x0ec8  [ 7FDD5D0684ECA8C1F68B4D99D124DCD0, 7105B026F966A992430F86C3698ABE15EC73E4772F1A3E362E29FD5247A5DCA6 ] SENS            E:\WINDOWS\system32\sens.dll
12:56:23.0578 0x0ec8  SENS - ok
12:56:23.0593 0x0ec8  [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum         E:\WINDOWS\system32\DRIVERS\serenum.sys
12:56:23.0593 0x0ec8  serenum - ok
12:56:23.0593 0x0ec8  [ CCA207A8896D4C6A0C9CE29A4AE411A7, 5999B39242283CD803319AADCA171CCCC6E2A40FB2FAFA51B1D29F3FF2DD8D6C ] Serial          E:\WINDOWS\system32\DRIVERS\serial.sys
12:56:23.0609 0x0ec8  Serial - ok
12:56:23.0640 0x0ec8  [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy         E:\WINDOWS\system32\drivers\Sfloppy.sys
12:56:23.0640 0x0ec8  Sfloppy - ok
12:56:23.0671 0x0ec8  [ 83F41D0D89645D7235C051AB1D9523AC, B681F33EEAA511D6A2DCB9FBAA407B739184C9FF6067C6B7E51F1FC37E9D4DD7 ] SharedAccess    E:\WINDOWS\System32\ipnathlp.dll
12:56:23.0687 0x0ec8  SharedAccess - ok
12:56:23.0703 0x0ec8  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] ShellHWDetection E:\WINDOWS\System32\shsvcs.dll
12:56:23.0703 0x0ec8  ShellHWDetection - ok
12:56:23.0718 0x0ec8  Simbad - ok
12:56:23.0734 0x0ec8  Sparrow - ok
12:56:23.0734 0x0ec8  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter        E:\WINDOWS\system32\drivers\splitter.sys
12:56:23.0734 0x0ec8  splitter - ok
12:56:23.0750 0x0ec8  [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler         E:\WINDOWS\system32\spoolsv.exe
12:56:23.0750 0x0ec8  Spooler - ok
12:56:23.0765 0x0ec8  [ 76BB022C2FB6902FD5BDD4F78FC13A5D, 6031CB2344D7277FC703480EB43CF856A0F8F818EA98FF26A2CA532336CD2DFA ] sr              E:\WINDOWS\system32\DRIVERS\sr.sys
12:56:23.0765 0x0ec8  sr - ok
12:56:23.0781 0x0ec8  [ 3805DF0AC4296A34BA4BF93B346CC378, B57A14F1B7B0997E619DDD62B73157AA2399A9852166FB58139CBB358A88F6F3 ] srservice       E:\WINDOWS\system32\srsvc.dll
12:56:23.0796 0x0ec8  srservice - ok
12:56:23.0812 0x0ec8  [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv             E:\WINDOWS\system32\DRIVERS\srv.sys
12:56:23.0828 0x0ec8  Srv - ok
12:56:23.0843 0x0ec8  [ 0A5679B3714EDAB99E357057EE88FCA6, 01E1A101FFF48402C77E385A78FEF27876E04533B60EB1C18558A737E57E5FA8 ] SSDPSRV         E:\WINDOWS\System32\ssdpsrv.dll
12:56:23.0859 0x0ec8  SSDPSRV - ok
12:56:23.0875 0x0ec8  [ 8BAD69CBAC032D4BBACFCE0306174C30, 2AA0DA710FCBFF38FE8DA91EE02E7A4503269347E61F8D3246FCA3384BBA2305 ] stisvc          E:\WINDOWS\system32\wiaservc.dll
12:56:23.0890 0x0ec8  stisvc - ok
12:56:23.0890 0x0ec8  [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum          E:\WINDOWS\system32\DRIVERS\swenum.sys
12:56:23.0906 0x0ec8  swenum - ok
12:56:23.0921 0x0ec8  [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi          E:\WINDOWS\system32\drivers\swmidi.sys
12:56:23.0921 0x0ec8  swmidi - ok
12:56:23.0921 0x0ec8  SwPrv - ok
12:56:23.0937 0x0ec8  symc810 - ok
12:56:23.0953 0x0ec8  symc8xx - ok
12:56:23.0953 0x0ec8  sym_hi - ok
12:56:23.0968 0x0ec8  sym_u3 - ok
12:56:23.0968 0x0ec8  [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio        E:\WINDOWS\system32\drivers\sysaudio.sys
12:56:23.0968 0x0ec8  sysaudio - ok
12:56:23.0984 0x0ec8  [ C7ABBC59B43274B1109DF6B24D617051, 4384CA0AA6CE9B603CF7DB775A3C721E46715D5B120B94FB57DEADAADE18535B ] SysmonLog       E:\WINDOWS\system32\smlogsvc.exe
12:56:24.0000 0x0ec8  SysmonLog - ok
12:56:24.0015 0x0ec8  [ 3CB78C17BB664637787C9A1C98F79C38, F35C31F6B7F366CB949D1044B357C76DEC9170441C5E559802794F62B72FD255 ] TapiSrv         E:\WINDOWS\System32\tapisrv.dll
12:56:24.0031 0x0ec8  TapiSrv - ok
12:56:24.0062 0x0ec8  [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip           E:\WINDOWS\system32\DRIVERS\tcpip.sys
12:56:24.0062 0x0ec8  Tcpip - ok
12:56:24.0093 0x0ec8  [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE          E:\WINDOWS\system32\drivers\TDPIPE.sys
12:56:24.0093 0x0ec8  TDPIPE - ok
12:56:24.0109 0x0ec8  [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP           E:\WINDOWS\system32\drivers\TDTCP.sys
12:56:24.0109 0x0ec8  TDTCP - ok
12:56:24.0125 0x0ec8  [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD          E:\WINDOWS\system32\DRIVERS\termdd.sys
12:56:24.0125 0x0ec8  TermDD - ok
12:56:24.0140 0x0ec8  [ FF3477C03BE7201C294C35F684B3479F, D6246521539BA4ACD022D26983182F5E323D2EF1EA7C54265A248C43A1CE5202 ] TermService     E:\WINDOWS\System32\termsrv.dll
12:56:24.0156 0x0ec8  TermService - ok
12:56:24.0171 0x0ec8  [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] Themes          E:\WINDOWS\System32\shsvcs.dll
12:56:24.0171 0x0ec8  Themes - ok
12:56:24.0203 0x0ec8  [ DB7205804759FF62C34E3EFD8A4CC76A, 13A4248F528CE98ACA66898E56822E4FC49B11F491FF1F61A687BA601BF0A802 ] TlntSvr         E:\WINDOWS\system32\tlntsvr.exe
12:56:24.0203 0x0ec8  TlntSvr - ok
12:56:24.0218 0x0ec8  TosIde - ok
12:56:24.0234 0x0ec8  [ 55BCA12F7F523D35CA3CB833C725F54E, 849FB1AE31B143B14B298BBC0D91230693D41DEB95F46516878F53A7F4186C38 ] TrkWks          E:\WINDOWS\system32\trkwks.dll
12:56:24.0234 0x0ec8  TrkWks - ok
12:56:24.0250 0x0ec8  [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs            E:\WINDOWS\system32\drivers\Udfs.sys
12:56:24.0265 0x0ec8  Udfs - ok
12:56:24.0265 0x0ec8  ultra - ok
12:56:24.0296 0x0ec8  [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update          E:\WINDOWS\system32\DRIVERS\update.sys
12:56:24.0312 0x0ec8  Update - ok
12:56:24.0343 0x0ec8  [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91, 7746916DB48E3F5B243B63C066596AD9037A494BF1AD935946DD04AC85D983DF ] upnphost        E:\WINDOWS\System32\upnphost.dll
12:56:24.0359 0x0ec8  upnphost - ok
12:56:24.0359 0x0ec8  [ 05365FB38FCA1E98F7A566AAAF5D1815, 16843048CEEC3DAA3B953A12FF1EE339E86783A08F2A56DA7F94AD9F9717D77D ] UPS             E:\WINDOWS\System32\ups.exe
12:56:24.0375 0x0ec8  UPS - ok
12:56:24.0390 0x0ec8  [ 6E421CCC57059B0186C6259CA3B6DFC9, E348BF23CCD6C14FD10C1689BBDC77E125245331F97BFE60D4C8FD9A8711CB59 ] USBAAPL         E:\WINDOWS\system32\Drivers\usbaapl.sys
12:56:24.0390 0x0ec8  USBAAPL - ok
12:56:24.0406 0x0ec8  [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci         E:\WINDOWS\system32\DRIVERS\usbehci.sys
12:56:24.0406 0x0ec8  usbehci - ok
12:56:24.0437 0x0ec8  [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub          E:\WINDOWS\system32\DRIVERS\usbhub.sys
12:56:24.0437 0x0ec8  usbhub - ok
12:56:24.0453 0x0ec8  [ 0DAECCE65366EA32B162F85F07C6753B, 3C33AC2FC95E876933F2016CF0CDA2745491679728684DA8DF95A515CE4804BD ] usbohci         E:\WINDOWS\system32\DRIVERS\usbohci.sys
12:56:24.0453 0x0ec8  usbohci - ok
12:56:24.0468 0x0ec8  [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan         E:\WINDOWS\system32\DRIVERS\usbscan.sys
12:56:24.0468 0x0ec8  usbscan - ok
12:56:24.0484 0x0ec8  [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR         E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
12:56:24.0500 0x0ec8  USBSTOR - ok
12:56:24.0500 0x0ec8  [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave         E:\WINDOWS\System32\drivers\vga.sys
12:56:24.0500 0x0ec8  VgaSave - ok
12:56:24.0515 0x0ec8  ViaIde - ok
12:56:24.0515 0x0ec8  [ 4C8FCB5CC53AAB716D810740FE59D025, 010EAC43DBED700B73E4FC908FAAF9F6A0168EBBD5D86751E49BC33AAA18BFA4 ] VolSnap         E:\WINDOWS\system32\drivers\VolSnap.sys
12:56:24.0515 0x0ec8  VolSnap - ok
12:56:24.0531 0x0ec8  [ 7A9DB3A67C333BF0BD42E42B8596854B, D31A9A3B1AAAB373EDD73B674102395212FCB616F829E938B7B2B7BE7D4752C5 ] VSS             E:\WINDOWS\System32\vssvc.exe
12:56:24.0546 0x0ec8  VSS - ok
12:56:24.0578 0x0ec8  [ 54AF4B1D5459500EF0937F6D33B1914F, FA1876888BCB9C72A92369DBED4FF1A8666784523FB41E618FA0919490FCDDB9 ] W32Time         E:\WINDOWS\system32\w32time.dll
12:56:24.0578 0x0ec8  W32Time - ok
12:56:24.0593 0x0ec8  [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp          E:\WINDOWS\system32\DRIVERS\wanarp.sys
12:56:24.0593 0x0ec8  Wanarp - ok
12:56:24.0609 0x0ec8  WDICA - ok
12:56:24.0625 0x0ec8  [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud          E:\WINDOWS\system32\drivers\wdmaud.sys
12:56:24.0625 0x0ec8  wdmaud - ok
12:56:24.0640 0x0ec8  [ 77A354E28153AD2D5E120A5A8687BC06, 8B2D37A4443501C0A8E70BC2079BE27F0A36FD07B561E6F68B40A72EABBC2DFE ] WebClient       E:\WINDOWS\System32\webclnt.dll
12:56:24.0640 0x0ec8  WebClient - ok
12:56:24.0671 0x0ec8  winmgmt - ok
12:56:24.0718 0x0ec8  [ 18F347402DA544A780949B8FDF83351B, D1AD972D438A51A4998FEF68670395DAE3353240AD2A17F35794287AF0826FFB ] WinRM           E:\WINDOWS\system32\WsmSvc.dll
12:56:24.0750 0x0ec8  WinRM - ok
12:56:24.0796 0x0ec8  [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN        E:\WINDOWS\system32\MsPMSNSv.dll
12:56:24.0796 0x0ec8  WmdmPmSN - ok
12:56:24.0828 0x0ec8  [ E76F8807070ED04E7408A86D6D3A6137, BFCF5361B7335760A7AE4B6958DE516A27AC60AA09135A46F0B49F588FAFE3A0 ] Wmi             E:\WINDOWS\System32\advapi32.dll
12:56:24.0843 0x0ec8  Wmi - ok
12:56:24.0906 0x0ec8  [ E0673F1106E62A68D2257E376079F821, 12992F18C9653050B10DC61D12988067933FCFDF02123D3A7EF5DE607A785DDC ] WmiApSrv        E:\WINDOWS\system32\wbem\wmiapsrv.exe
12:56:24.0906 0x0ec8  WmiApSrv - ok
12:56:24.0968 0x0ec8  [ F74E3D9A7FA9556C3BBB14D4E5E63D3B, C71FAAC752F6D58BF8556661252DBF8C5DDD090CAE002A2C7E09C9A014526066 ] WMPNetworkSvc   E:\Program Files\Windows Media Player\WMPNetwk.exe
12:56:24.0984 0x0ec8  WMPNetworkSvc - ok
12:56:25.0046 0x0ec8  [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
12:56:25.0062 0x0ec8  WPFFontCache_v0400 - ok
12:56:25.0093 0x0ec8  [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL         E:\WINDOWS\System32\drivers\ws2ifsl.sys
12:56:25.0093 0x0ec8  WS2IFSL - ok
12:56:25.0125 0x0ec8  [ 7C278E6408D1DCE642230C0585A854D5, DA46079A04F6E8E3441E4AE454AEAC02B3E935DE29CE7F6D4476F57867FCC12A ] wscsvc          E:\WINDOWS\system32\wscsvc.dll
12:56:25.0125 0x0ec8  wscsvc - ok
12:56:25.0140 0x0ec8  WSearch - ok
12:56:25.0171 0x0ec8  [ 35321FB577CDC98CE3EB3A3EB9E4610A, C9A6F5CF282D8FCB3CDFCC4B306013480E78E1B664E1A60A4E27B161F9FFD4CD ] wuauserv        E:\WINDOWS\system32\wuauserv.dll
12:56:25.0171 0x0ec8  wuauserv - ok
12:56:25.0203 0x0ec8  [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf          E:\WINDOWS\system32\DRIVERS\WudfPf.sys
12:56:25.0203 0x0ec8  WudfPf - ok
12:56:25.0218 0x0ec8  [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd          E:\WINDOWS\system32\DRIVERS\wudfrd.sys
12:56:25.0218 0x0ec8  WudfRd - ok
12:56:25.0250 0x0ec8  [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc         E:\WINDOWS\System32\WUDFSvc.dll
12:56:25.0250 0x0ec8  WudfSvc - ok
12:56:25.0296 0x0ec8  [ 81DC3F549F44B1C1FFF022DEC9ECF30B, 3D14BFEA539F9CEB16555BD56C5E3C7C8F6692FC62C2789F8AAEA1C042E63940 ] WZCSVC          E:\WINDOWS\System32\wzcsvc.dll
12:56:25.0312 0x0ec8  WZCSVC - ok
12:56:25.0328 0x0ec8  [ 295D21F14C335B53CB8154E5B1F892B9, 9418477C2E3EA93E93D931A4EDD4500DA568FAD6040204B5201D1080203B0BBC ] xmlprov         E:\WINDOWS\System32\xmlprov.dll
12:56:25.0343 0x0ec8  xmlprov - ok
12:56:25.0359 0x0ec8  ================ Scan global ===============================
12:56:25.0390 0x0ec8  [ 42F1F4C0AFB08410E5F02D4B13EBB623, 924C30587C51C0D1E1F47991969AF492A644552E15F2480EA991DCB74A3E68D5 ] E:\WINDOWS\system32\basesrv.dll
12:56:25.0421 0x0ec8  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] E:\WINDOWS\system32\winsrv.dll
12:56:25.0437 0x0ec8  [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] E:\WINDOWS\system32\winsrv.dll
12:56:25.0468 0x0ec8  [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] E:\WINDOWS\system32\services.exe
12:56:25.0484 0x0ec8  [ Global ] - ok
12:56:25.0484 0x0ec8  ================ Scan MBR ==================================
12:56:25.0484 0x0ec8  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
12:56:25.0531 0x0ec8  \Device\Harddisk0\DR0 - ok
12:56:25.0546 0x0ec8  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
12:56:25.0671 0x0ec8  \Device\Harddisk1\DR1 - ok
12:56:25.0687 0x0ec8  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk2\DR5
12:56:27.0453 0x0ec8  \Device\Harddisk2\DR5 - ok
12:56:27.0453 0x0ec8  ================ Scan VBR ==================================
12:56:27.0468 0x0ec8  [ AEE7F35BB118A9F5EC8BDFBE325855A9 ] \Device\Harddisk0\DR0\Partition1
12:56:27.0468 0x0ec8  \Device\Harddisk0\DR0\Partition1 - ok
12:56:27.0468 0x0ec8  [ C39420799E9F1DD72121EBD035F4BB22 ] \Device\Harddisk1\DR1\Partition1
12:56:27.0515 0x0ec8  \Device\Harddisk1\DR1\Partition1 - ok
12:56:27.0515 0x0ec8  [ FF9F436CF16C83AE225335C4B6444B6F ] \Device\Harddisk1\DR1\Partition2
12:56:27.0562 0x0ec8  \Device\Harddisk1\DR1\Partition2 - ok
12:56:27.0562 0x0ec8  [ 9EBBE5929255E6F53F1EF5B1420D0749 ] \Device\Harddisk2\DR5\Partition1
12:56:27.0562 0x0ec8  \Device\Harddisk2\DR5\Partition1 - ok
12:57:30.0125 0x0ec8  ============================================================
12:57:30.0125 0x0ec8  Scan finished
12:57:30.0125 0x0ec8  ============================================================
12:57:30.0125 0x05ec  Detected object count: 0
12:57:30.0125 0x05ec  Actual detected object count: 0

 


Edited by Fhallest, 28 March 2014 - 02:18 PM.


#4 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:31 AM

Posted 31 March 2014 - 02:40 AM

Your logs show obvious signs of having cracked software on your system. This is the main reason your computer is infected. Visiting cracksites/warezsites - and other questionable/illegal sites is always a risk.

Even a single click on the site can drop multiple forms of very serious malware, many of which disable your onboard protection, and System Restore.

If you install the cracked software, you are running executable files from these dubious, unknown sources. You are in effect giving these sources access to information on your hard disk, and potential control over the operation of your computer.

Additionally, cracked programs are illegal. Referring to the Forum Rules which you should have read at the time of Registering at this forum, this forum does not support illegal activity. As such, be advised that any request for assistance in removing malware may go unanswered, or may be discontinued, if the cracked (illegal) software is still present on the machine

Having said that we can help you clean your machine this time BUT this would be a ONCE ONLY offer on the understanding that all cracks are removed. This would apply not only here but at many other Malware Support forums if you were to appear again with cracks onboard, as many of us analysts work at multiple support sites. Please remove all cracked software and illegally obtained copyrighted material you have on the system so we may continue with the clean up.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#5 Fhallest

Fhallest
  • Topic Starter

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 31 March 2014 - 10:45 AM

Marius,

 

I think I have fixed the issues and sorry about the bad  :nono:  stuff.  I was using as a way to look at Games but alas it was one of those not too bright ideas. I just left them on the Machine as I did not want to do no more harm but alas I have removed all that I can remember.  I have been directed to steam as it is a good source for games.  I do not like the fact one you get beat up by bad software, game does not always run correctly, cannot update, etc..  I agree just better to leave alone.  I think I got everything but if I missed anything please let me know and that is why I am here trying to fix these mistakes so it does not turn into a fubar ( fracked up beyond repair) mistake.

 

Let me know what I have to do next to make this right and get my firewall and update working.  If I missed anything please let me know one how to look for these things so I can remove and they are way more trouble than they are worth.   I guess we sometimes people just do dumb things.

 

Randy


Edited by Fhallest, 31 March 2014 - 09:52 PM.


#6 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:31 AM

Posted 01 April 2014 - 02:29 AM

Fix with FRST (normal mode)

WARNING: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
 

  • Download the attached fixlist.txt and save it to the location where FRST is saved to.
  • Run FRST.exe (on 64bit, run FRST64.exe) and press the Fix button just once and wait.
  • The tool will make a log (Fixlog.txt) which you find where you saved FRST. Please post it to your reply.

 

 

 

 

 

Full System Scan with Malwarebytes Antimalware
 

  • If not existing, please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mb3-setup-1878.1878-3.5.1.2522.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to the following:
    • Launch Malwarebytes Anti-Malware
    • A 14 day trial of the Premium features is pre-selected. You may deselect this if you wish, and it will not diminish the scanning and removal capabilities of the program.
  • Click Finish.

If the program is already installed:

  • Run Malwarebytes Antimalware
  • On the Dashboard, click the 'Update Now >>' link
  • After the update completes, click the 'Scan Now >>' button.
  • Or, on the Dashboard, click the Scan Now >> button.
  • If an update is available, click the Update Now button.
  • A Threat Scan will begin.
  • When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.
  • In most cases, a restart will be required.
  • Wait for the prompt to restart the computer to appear, then click on Yes.

  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the scan log which shows the Date and time of the scan just performed.
  • Click 'Copy to Clipboard'
  • Paste the contents of the clipboard into your reply.

 

Attached Files


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#7 Fhallest

Fhallest
  • Topic Starter

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 02 April 2014 - 12:48 PM

Marius,

 

I have completed the scans as requested and pasted the requested output reports in this reply.  I do have a question about Malwarebytes now that I have the update and was hoping you could help address this situation.  Which scan is the quick scan and the deep scan from the older version?  It returned a bunch of hits but it stated ignore once but they were from conduit which I know is a PIB ( pain in the Butt)  Again thanks for all of you help.  In addition to what you stated earlier what else can using cracked software do to ones machine.  I can see how they can use this like bait in a mouse trap to catch the mice and then bang.  I again thank you for making me take the time to think as that is the best think someone can do for another.

 

Randy

 

 

 

 

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 4/2/2014
Scan Time: 11:34:02 AM
Logfile:
Administrator: Yes

Version: 2.00.0.1000
Malware Database: v2014.04.02.06
Rootkit Database: v2014.03.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Chameleon: Disabled

OS: Windows XP Service Pack 3
CPU: x86
File System: NTFS
User: Randy

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 248429
Time Elapsed: 12 min, 54 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Warn
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 2
PUP.Optional.Conduit.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\lipgolpfajiadodbcbljdpmbmbdmfcil, No Action By User, [f995ea3b7cffad89b42ddfbc4fb4a25e],
PUP.Optional.Conduit.A, HKU\S-1-5-21-1957994488-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\lipgolpfajiadodbcbljdpmbmbdmfcil, No Action By User, [d8b6d74e83f85adc6d754a511be85fa1],

Registry Values: 0
(No malicious items detected)

Registry Data: 3
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|AntiVirusDisableNotify, 1, Good: (0), Bad: (1),Replaced,[6f1f66bf205bf442e33924e87193d12f]
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|FirewallDisableNotify, 1, Good: (0), Bad: (1),Replaced,[19758d9886f5aa8cf92442ca778df010]
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|UpdatesDisableNotify, 1, Good: (0), Bad: (1),Replaced,[1c729b8aeb90b086ce5031dbf80ce719]

Folders: 117
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\lib, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\options, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\tabs, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\tabs\back, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\toolbarAPI, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\scripts, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\scripts\contentScripts, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\nativeMessaging, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\plugins, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\res, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\api, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\msd, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\js\resources, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gadgetFrame, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\img, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\APPLICATION_BUTTON, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\APPLICATION_BUTTON\Js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\APPLICATION_BUTTON\resources, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\img, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\js\resources, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\Optimizer, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\Optimizer\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\css\custom-theme, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\css\custom-theme, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\buildSettings, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\Css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\resources, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view\script, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view\style, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view\style\rsx, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\img, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\core, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts\images, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.jscrollpane, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\sl, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\TBHostSupport, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\_locales, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\_locales\en, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\CT3306061, No Action By User, [444a2df8d0abbc7ad386b0a9d62cfb05],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_10, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_6, No Action By User, [bcd29095cbb0de5848160455b64ca65a],

Files: 570
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\CRE\lipgolpfajiadodbcbljdpmbmbdmfcil.crx, No Action By User, [eda144e19fdc8ea810d0722961a24eb2],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\635040680223907925.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\blank.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\ConduitAbstractionLayerBack.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\ConduitAbstractionLayerFront.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\CT3306061.txt, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\CT3306061_public.txt, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\icon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\initdata.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\manifest.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\shouldShowTB.txt, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\contentScript.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\bcview.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\chromeBackstage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\chromeBackstage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\chromeBackstageLoader.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\communicator.back.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\compatibility.end.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\compatibility.service.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\compatibility.start.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\conduitEnv.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\framework.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\iframeHost.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\iframeHost.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\JSONStringify.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\logger.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\match.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\nativeMsgCom.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\navigationHandler.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\pluginLoader.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\pricegongMigration.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\updatesManager.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\verlyEarly.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\lib\jquery-1.5.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\options\Options.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\tabs\back\postNavigation.htm, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\js\toolbarAPI\toolbarAPI.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\background.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\settings.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\scripts\background.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\scripts\iframeHost.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\scripts\iframeHost.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\scripts\popup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\mam\scripts\contentScripts\contentScript.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\nativeMessaging\nmHostConfig.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\nativeMessaging\nmHostManifest.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\nativeMessaging\TBMessagingHost.exe, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\plugins\ConduitChromeApiPlugin.dll, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\plugins\TBVerifier.dll, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\initData.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\html\SearchBackground.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\html\searchInNewTabAPI.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Applications.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Bookmarks.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\DeveloperMode.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\EmbeddedConfig.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\enable_disable.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\EventHandler.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Global.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\LocationService.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\LogMsg.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\MostVisited.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\NewTabAPI.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\RecentlyClosed.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\SearchBox.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\ServiceMap.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Settings.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\startupSequence.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Thumbnails.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Toolbar.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Translation.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\API\Usage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\about_memory.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\alert_overlay.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\apps_page.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\bubble.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\chrome_shared.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\chrome_shared2.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\chrome_shared2_touch.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\dialogs.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\expandable_bubble.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\footer_menu.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\list.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\menu.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\most_visited_page.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\nav_dot.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\new_tab.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\new_tab_theme.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\overlay.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\spinner.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\suggestions_page.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\table.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\tabs.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\throbber.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\tile_page.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\trash.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\tree.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\ui_account_tweaks.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\css\widgets.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\alert_overlay.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\appLauncher.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\loadfile.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\NewTabBackground.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\new_tab.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\Options.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\redirect.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\html\trash.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar_mask.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\exclamationIcon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\history_section.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\app_promo_button.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\check.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\checkbox_black.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\checkbox_white.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\closed_window.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar_2x.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar_h.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar_h_2x.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar_mask_2x.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar_p.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\close_bar_p_2x.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\detected_sd.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\detected_usb.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\disabled_select.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\disclosure_triangle_mask.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\downloads_section.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\favicon.ico, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\favicon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\folder_closed.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\folder_closed_rtl.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\folder_open.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\folder_open_rtl.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\gear.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\google-transparent.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\guest_icon_standalone.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\help.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon128.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon16.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon48.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon_checkmark.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon_file.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon_folder.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon_warning.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\icon_warning2.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\IDR_PRODUCT_LOGO.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\ImagesRepository.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\insert.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\minus.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\nub.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\nub_mask.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\otr_icon_standalone.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\phishing_icon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\plus.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\select.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\small_bubble.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\spinner.svg, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\star_small.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\success.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\throbber.svg, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\thumbnailPlaceHolder.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\trash.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\trashBinN.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\WebStore128.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\x-hover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\x.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\img\__IDR_PRODUCT_LOGO.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\context_menu_handler.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\i18n_template.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\alert_overlay.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\appLauncher.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\apps_page.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\autocomplete_list.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\Base64.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\bubble.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\card_slider.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\color-thief.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\command.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\command_line.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\context_menu_button.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\cr.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\database.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\dialogs.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\dot_list.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\drag_wrapper.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\event_target.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\event_tracker.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\expandable_bubble.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\focus_outline_manager.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\i18n_process.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\i18n_template2.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\jquery.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\link_controller.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\loadFile.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\load_time_data.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\local_strings.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\logerror.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\logging.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\md5.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\media_common.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\menu.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\menu_button.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\menu_item.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\most_visited_page.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\nav_dot.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\NewTabBackground.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\newTabBeforeStart.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\newTabLoadTimeData.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\new_tab.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\options.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\other_sessions.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\overlay.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\page_list_view.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\page_switcher.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\parse_html_subset.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\position_util.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\promise.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\quantize.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\recently_closed.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\repeating_button.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\SearchBoxPage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\splitter.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\suggestions_page.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\tile_page.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\touch_handler.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\trash.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\tree.css.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\tree.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\ui.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\ui_account_tweaks.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\util.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\Search\NewTabPages\js\ZipFile.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\backstage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\searchversion.txt, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\version.txt, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\al.view.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\aboutBox.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images\conduit-logo-OLD.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images\conduit-logo.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images\OK-Button-Default.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images\OK-Button-MouseOver.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images\OK-Button-OnClick.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images\truste.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\images\x.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\aboutBox\js\aboutBox.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\appManager.controller.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\appManager.model.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\appManager.view.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\css\toolbar.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\minibrowser24.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\ajax-loader.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\buttonSprites.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\chevron_sprites.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\fallback24.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\ie8_mouseover_button.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\ie8_onclick_button.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\loader-icon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\menu_arrow.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\minibrowser.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\mp_sprites.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\new_chevron_sprites.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\rounded_corners_left_transparent.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\rounded_corners_left_white.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\rounded_corners_left_white_34.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\rounded_corners_right_transparent.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\rounded_corners_right_white.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\rounded_corners_right_white_34.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\separator.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\separator_hover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\img\uus.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ac\res\yoxscroll.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\api\toolbarapi.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\api\webAppApi.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\api\webAppApiFront.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\msd\excanvas.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\msd\trusted.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\msd\trusted.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\msd\untrusted.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\msd\untrusted.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\msd\untrusted.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\options.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\css\jquery.jscrollpane.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\css\options.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\css\reset.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\bg-hide-click.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\bg-hide.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\checkbox-check-off.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\checkbox-check-on.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\conduit-logo.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\ic_Closer.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\ic_Closer_hover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\minibrowser.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\scroller.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\sprite-ok-button.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\truste.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\images\x.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\js\html5SupportIe.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\js\options.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\js\resources\html5shiv.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\js\resources\jquery.jscrollpane.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\options\js\resources\jquery.mousewheel.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\js\searchProtectorManager.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\bubble.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\bubble.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\main.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\images\information.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\images\x-default-LTR.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\images\x-default-RTL.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\images\x-mouseover-LTR.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spbd\images\x-mouseover-RTL.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd\main.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd\SearchProtector.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd\settings.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd\images\ok-button.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd\images\separation-line.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\sp\spsd\images\warning.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menus.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\popups.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\DialogsAPI.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\excanvas.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\generalDialogStyle.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\PIE.htc, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\settings.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\main.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\ToolbarFirstTimeDialog.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\ToolbarFirstTimeDialog.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\app-store-icon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\arrow.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\dialog_tip_left.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\dialog_tip_right.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\divider.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\emailNotifier.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\facebook.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\radio.GIF, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\Thumbs.db, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\truste_welcome.GIF, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\dlg\ftd\images\weather.GIF, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gadgetFrame\gf.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gadgetFrame\lgf.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\gf.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\lgf.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\css\gf.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\css\gf_ie.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\img\ie_back.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\img\loader.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\img\resize.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\img\sprites.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\js\gf.view.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\gf\js\lgf.view.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\popup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\css\menu.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img\arrow-down-strong.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img\arrow-down.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img\arrow-left-strong.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img\arrow-left.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img\arrow-right-strong.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img\arrow-right.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\img\arrows.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\js\jquery.ellipsis.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\js\jquery.scrollTo-1.4.2-min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\js\menu.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\js\renderHandler.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\js\scrollers.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\ui\menu\js\showHandler.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\browserAppApi.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\APPLICATION_BUTTON\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\APPLICATION_BUTTON\Js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\APPLICATION_BUTTON\resources\defaultEngineImage.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\bgPage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\popup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\css\en.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\css\en_rtl.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\css\jquery.jscrollpane.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\AccountManager.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\bgPage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\EN.model.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\IMAPExecuter.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\Inboxer.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\Invoker.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\MailDecoder.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\MailMerger.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\POP3Executer.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\Popup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\providerHelper.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\Providers.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\SettingsManager.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\Timer.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\Translation.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\EMAIL_NOTIFIER\js\Utils.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\embedded.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\popup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\css\embedded.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\css\popup.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\css\reset.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\js\embedded.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\js\higlighter_script.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\HIGHLIGHTER\js\popup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\popup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\css\popup.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\img\arrows.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\img\badges.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\img\icons.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\js\popup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\MULTI_RSS\js\resources\webAppUtils.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\embedded.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\NotificationPopup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\Settings.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\css\gadget.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\css\general.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\css\Main.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\css\newMain.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\css\settings.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\css\ui.stepper.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\closeIcon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\downArrow.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\settingsIcon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\upArrow.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark\close.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark\Next.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark\Next_hover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark\powered-by.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark\Prev.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark\Prev_hover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\dark\settings.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light\close.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light\Next.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light\Next_hover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light\powered-by.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light\Prev.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light\Prev_hover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\images\light\settings.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\AppName.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\bgpageEarly.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\commons.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\jquery.ezmark.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\notification.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\NotificationSettings.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\notificationUIManger.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\Settings.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\stepper.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\NOTIFICATION\js\ToolbarAndAppsSettings.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\Optimizer\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\Optimizer\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\pg_offers.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\pg_offers.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement\agree.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement\agree.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement\Close.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement\Image.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement\Logo.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement\OK_Btn.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\agreement\Topbg.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\css\gadget.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\css\ie7styles.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\css\iestyle.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\css\custom-theme\jquery-ui-1.8.10.custom.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\PRICE_GONG\images\icon.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\embedded.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\popup2.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\css\gadget.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\css\jquery.jscrollpane.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\css\reset.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\css\stations.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\css\custom-theme\jquery-ui-1.8.10.custom.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\bgpageEarly.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\embedded.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\embeddedEarly.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\localization.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\player.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\popup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources\BrowserDetect.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources\jquery-ui-1.8.10.custom.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources\jquery.jscrollpane.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources\jquery.scrollTo-1.4.2-min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources\radioCommon.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources\system.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\RADIO_PLAYER\js\resources\utils.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\embedded.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\information.popup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\buildSettings\SearchApp_Ant.xml, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\Css\information.popup.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\common.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\contentManager.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\historyProvider.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\information.popup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\layoutManager.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\searchListener.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\selectionListener.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\js\suggestProvider.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\resources\history--x-default.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\resources\history--x-mouseover.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\resources\menu.icon.apps.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view\script\view.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view\style\default.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view\style\rsx\dd-arrow.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\SEARCH\view\style\rsx\ie8.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\popup.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\popup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\img\icons.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\img\inbox.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\img\scroll_down.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\img\scroll_up.png, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\js\localization.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\TWITTER\js\popup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\bgpage.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\popup.html, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\css\gadget.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\css\ie7styles.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\css\iestyle.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\bgpage.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\common.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\date-functions.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\gadget.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\jquery.autocomplete.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\jquery.textshadow.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\logic.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\main.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\al\wa\WEATHER\js\xPath.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\core\corelibs.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\core\framework.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\core\utils.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\al.view.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\al.viewPerformanceLog.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\background.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\ie_fix.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.mousewheel.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.text-overflow.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.tmpl.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.xml2json.custom.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.xml2json.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\json2.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\json2.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\script2injectEmbedded.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\script2injectPopup.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\sdk.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts\jquery.alerts.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts\jquery.alerts.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts\images\help.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts\images\important.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts\images\info.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.alerts\images\title.gif, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.jscrollpane\jquery.jscrollpane.css, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\lib\jquery.jscrollpane\jquery.jscrollpane.min.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\tb\sl\serviceLayer.js, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\TBHostSupport\TBHostSupport.dll, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lipgolpfajiadodbcbljdpmbmbdmfcil\10.23.0.729_0\_locales\en\messages.json, No Action By User, [f698a580037858de3b1dce8bae54e41c],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\CT3306061\CT3306061.fullUserID, No Action By User, [444a2df8d0abbc7ad386b0a9d62cfb05],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\CT3306061\CT3306061.UserID, No Action By User, [444a2df8d0abbc7ad386b0a9d62cfb05],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\nmHostManifest.json, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_10\nmHostConfig.json, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_10\nmHostManifest.json, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_10\TBMessagingHost.exe, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_6\nmHostConfig.json, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_6\nmHostManifest.json, No Action By User, [bcd29095cbb0de5848160455b64ca65a],
PUP.Optional.Conduit.A, E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging\CT3306061\1_0_0_6\TBMessagingHost.exe, No Action By User, [bcd29095cbb0de5848160455b64ca65a],

Physical Sectors: 0
(No malicious items detected)


(end)

 

 

 

 

 

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 13-03-2014  01
Ran by Randy at 2014-04-02 11:11:51 Run:1
Running from E:\Documents and Settings\Randy\My Documents\Downloads
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Task: E:\WINDOWS\Tasks\AutoKMS.job => E:\WINDOWS\AutoKMS.exe
Task: E:\WINDOWS\Tasks\AutoKMSDaily.job => E:\WINDOWS\AutoKMS.exe
FF SearchPlugin: E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\searchplugins\conduit-search.xml
FF SearchPlugin: E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\searchplugins\conduit.xml
FF Extension: Connect DLC 5  - E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\Extensions\{d1b5aad5-d1ae-4b20-88b1-feeaeb4c1ebc} [2013-12-24]
FF Homepage: hxxp://xfinity.comcast.net/
FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&SearchSource=2&CUI=UN34606743717410117&UM=2&sspv=S41C&q=
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3306061&CUI=UN33949004782547640&UM=2&SSPV=&UP=SP643439C4-3BA7-411B-875B-0DD27E347605
SearchScopes: HKCU - {528BDA08-ED14-4FBD-9DDE-E0F1BB9740C3} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3306061&CUI=UN33949004782547640&UM=2&SSPV=S41BIE
SearchScopes: HKCU - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
Startup: E:\Documents and Settings\Randy\Start Menu\Programs\Startup\ih0lcbmq.lnk
ShortcutTarget: ih0lcbmq.lnk -> E:\DOCUME~1\ALLUSE~1\APPLIC~1\qmbcl0hi.gsa (No File)

S2 winmgmt; E:\DOCUME~1\ALLUSE~1\APPLIC~1\qmbcl0hi.gsa [X]

E:\WINDOWS\AutoKMS.exe
E:\DOCUME~1\ALLUSE~1\APPLIC~1\qmbcl0hi.gsa

2014-02-27 17:22 - 2013-12-24 11:37 - 00000000 ____D () E:\Documents and Settings\Randy\Local Settings\Application Data\Conduit
2014-03-07 23:10 - 2013-11-16 01:02 - 00000000 ____D () E:\Documents and Settings\Randy\Desktop\home211trn3
2014-03-26 08:12 - 2014-03-25 17:20 - 95027928 ____T () E:\Documents and Settings\All Users\Application Data\ih0lcbmq.bbr
2014-03-27 17:09 - 2013-11-15 17:21 - 00000202 _____ () E:\WINDOWS\Tasks\AutoKMSDaily.job
E:\Documents and Settings\Randy\Start Menu\Programs\Startup\ih0lcbmq.lnk
*****************

E:\WINDOWS\Tasks\AutoKMS.job => Moved successfully.
E:\WINDOWS\Tasks\AutoKMSDaily.job => Moved successfully.
E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\searchplugins\conduit-search.xml => Moved successfully.
E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\searchplugins\conduit.xml => Moved successfully.
E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\Extensions\{d1b5aad5-d1ae-4b20-88b1-feeaeb4c1ebc} => Moved successfully.
Firefox homepage deleted successfully.
Firefox Keyword.URL deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{528BDA08-ED14-4FBD-9DDE-E0F1BB9740C3} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{528BDA08-ED14-4FBD-9DDE-E0F1BB9740C3} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key not found.
E:\Documents and Settings\Randy\Start Menu\Programs\Startup\ih0lcbmq.lnk => Moved successfully.
E:\DOCUME~1\ALLUSE~1\APPLIC~1\qmbcl0hi.gsa not found.
winmgmt => Service restored successfully.
"E:\WINDOWS\AutoKMS.exe" => File/Directory not found.
"E:\DOCUME~1\ALLUSE~1\APPLIC~1\qmbcl0hi.gsa" => File/Directory not found.
E:\Documents and Settings\Randy\Local Settings\Application Data\Conduit => Moved successfully.
E:\Documents and Settings\Randy\Desktop\home211trn3 => Moved successfully.
E:\Documents and Settings\All Users\Application Data\ih0lcbmq.bbr => Moved successfully.
"E:\WINDOWS\Tasks\AutoKMSDaily.job" => File/Directory not found.
"E:\Documents and Settings\Randy\Start Menu\Programs\Startup\ih0lcbmq.lnk" => File/Directory not found.


The system needed a reboot.

==== End of Fixlog ====


Edited by Fhallest, 02 April 2014 - 12:51 PM.


#8 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:31 AM

Posted 03 April 2014 - 04:20 AM

Hi there,

 

the quick and deep scanning options are completely reconstructured. What I told you to run is the new quick scan.

Please rescan and take out everything MBAM found.

 

 

Scan with ESET Online Scan

Please go to here to run the online scannner from ESET.

  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activex control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked
  • Click on Advanced Settings and ensure these options are ticked:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Click Scan
  • Wait for the scan to finish
  • If any threats were found, click the 'List of found threats' , then click Export to text file....
  • Save it to your desktop, then please copy and paste that log as a reply to this topic.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#9 Fhallest

Fhallest
  • Topic Starter

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 04 April 2014 - 11:46 PM

Marius,

 

I have included the text file as requested and removed what the MBAM Scan found.  Let me know what I need to do next.  At times like this, I feel like the redneck geek who said to the next geek. "hey watch this" Just as he proceeded to press the enter key and his computer suddenly tried to kill him by bursting into flames after being infected with the killer operator virus.

 

 

Thanks again for everything

 

Randy

 

E:\Documents and Settings\Randy\My Documents\Downloads\Games\CheatEngine61.exe    Win32/OpenCandy potentially unsafe application
E:\Documents and Settings\Randy\My Documents\Downloads\Games\me3-fhallest-bbf3a1cf848e0da.zip    a variant of Win32/GameHack.BE potentially unsafe application
E:\Documents and Settings\Randy\My Documents\Downloads\Games\forged alliance\ujcucc.zip    Win32/HackTool.Patcher.A potentially unsafe application
E:\Documents and Settings\Randy\My Documents\Downloads\Games\me3-fhallest-bbf3a1cf848e0da\me3-Fhallest.exe    a variant of Win32/GameHack.BE potentially unsafe application
E:\FRST\Quarantine\E\Documents and Settings\Randy\Local Settings\Application Data\Conduit\APISupport\APISupport.dll    a variant of Win32/Toolbar.Conduit.Z potentially unwanted application
E:\FRST\Quarantine\E\Documents and Settings\Randy\Local Settings\Application Data\Conduit\APISupport\APISupport.old    a variant of Win32/Toolbar.Conduit.Z potentially unwanted application
E:\FRST\Quarantine\E\Documents and Settings\Randy\Local Settings\Application Data\Conduit\APISupport\APISupport_2.0.4.3\ApiSupport.dll    a variant of Win32/Toolbar.Conduit.Z potentially unwanted application
E:\FRST\Quarantine\E\Documents and Settings\Randy\Local Settings\Application Data\Conduit\APISupport\MiniSP_1.0.2.76\MiniSP.dll    a variant of Win32/Conduit.SearchProtect.H potentially unwanted application
E:\Program Files\Cheat Engine 6.1\cheatengine-i386.exe    a variant of Win32/HackTool.CheatEngine.AB potentially unsafe application
E:\Program Files\THQ\Gas Powered Games\forged alliance\ujcucc.zip    Win32/HackTool.Patcher.A potentially unsafe application
E:\Program Files\THQ\Gas Powered Games\forged alliance\ujcucc\bin\My Speed.exe    Win32/HackTool.Patcher.A potentially unsafe application
 


Edited by Fhallest, 04 April 2014 - 11:51 PM.


#10 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:31 AM

Posted 07 April 2014 - 02:47 AM

Then we can do the cleanup - if you are facing any issues, report that immediately.

Delete junk with adwCleaner


Please download AdwCleaner to your desktop.


  • Run adwcleaner.exe
  • Hit Scan and wait for the scan to finish.
  • Confirm the message but don´t uncheck anything.
  • Hit Clean
  • When the run is finished, it will open up a text file
  • Please post its contents within your next reply
  • You´ll find the log file at C:\AdwCleaner[S1].txt also


SecurityCheck

Please download SecurityCheck: LINK1 LINK2

  • Save it to your desktop, start it and follow the instructions in the window.
  • After the scan finished the (checkup.txt) will open. Copy its content to your thread.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#11 Fhallest

Fhallest
  • Topic Starter

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 07 April 2014 - 08:19 AM

Marius,

 

I have recently tried to run windows update but it is not working correctly.  It will find the updates but it will fail to install the updates.  I was hoping you could help with this as I think it was the result of a viral infection on my computer.  Again thanks for everything and you time.

 

Randy



#12 Fhallest

Fhallest
  • Topic Starter

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 07 April 2014 - 08:33 AM

Marius,

 

I have performed the directed scans.  Here are the results.

 

 

Thanks again,

 

Randy

 

 

# AdwCleaner v3.023 - Report created 07/04/2014 at 07:23:34
# Updated 01/04/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Randy - HOME-49A505CF77
# Running from : E:\Documents and Settings\Randy\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : E:\Documents and Settings\All Users\Application Data\Conduit
Folder Deleted : E:\Documents and Settings\Randy\Local Settings\Application Data\genienext
Folder Deleted : E:\Documents and Settings\Randy\Local Settings\Application Data\Mobogenie
Folder Deleted : E:\Documents and Settings\Randy\Local Settings\Application Data\NativeMessaging
File Deleted : E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\searchplugins\zonealarm.xml
File Deleted : E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3306061
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKLM\Software\Conduit

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v28.0 (en-US)

[ File : E:\Documents and Settings\Randy\Application Data\Mozilla\Firefox\Profiles\j5i7baaq.default\prefs.js ]

Line Deleted : user_pref("CT3306061.FF19Solved", "true");
Line Deleted : user_pref("CT3306061.UserID", "UN34606743717410117");
Line Deleted : user_pref("CT3306061.browser.search.defaultthis.engineName", "true");
Line Deleted : user_pref("CT3306061.fullUserID", "UN34606743717410117.IN.20131224103635");
Line Deleted : user_pref("CT3306061.installDate", "24/12/2013 10:36:37");
Line Deleted : user_pref("CT3306061.installSessionId", "{2DFF2F50-4399-4BF8-B522-1E9FD37604F6}");
Line Deleted : user_pref("CT3306061.installSp", "TRUE");
Line Deleted : user_pref("CT3306061.installerVersion", "1.8.1.4");
Line Deleted : user_pref("CT3306061.keyword", "true");
Line Deleted : user_pref("CT3306061.originalHomepage", "hxxp://xfinity.comcast.net/");
Line Deleted : user_pref("CT3306061.originalSearchAddressUrl", "");
Line Deleted : user_pref("CT3306061.originalSearchEngine", "");
Line Deleted : user_pref("CT3306061.originalSearchEngineName", "");
Line Deleted : user_pref("CT3306061.searchRevert", "true");
Line Deleted : user_pref("CT3306061.searchUninstallUserMode", "2");
Line Deleted : user_pref("CT3306061.searchUserMode", "2");
Line Deleted : user_pref("CT3306061.smartbar.homepage", "true");
Line Deleted : user_pref("CT3306061.toolbarInstallDate", "24-12-2013 10:36:35");
Line Deleted : user_pref("CT3306061.versionFromInstaller", "10.23.0.729");
Line Deleted : user_pref("CT3306061.xpeMode", "0");
Line Deleted : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3306061&octid=CT3306061&SearchSource=61&CUI=UN34606743717410117&UM=2&UP=SP643439C4-3BA7-411B-875B-0DD27E347605");
Line Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
Line Deleted : user_pref("browser.search.defaultthis.engineName", "Connect DLC 5 Customized Web Search");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&CUI=UN34606743717410117&UM=2&SearchSource=3&q={searchTerms}&sspv=S41C");
Line Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT3306061");
Line Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3306061&CUI=UN34606743717410117&UM=2&SearchSource=13&sspv=S41C,hxxp://search.conduit.com/?ctid=CT3306061&octid=CT3306061&Se[...]
Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&SearchSource=2&CUI=UN34606743717410117&UM=2&sspv=S41C&q=");
Line Deleted : user_pref("smartbar.defaultSearchOwnerCTID", "CT3306061");
Line Deleted : user_pref("smartbar.homePageOwnerCTID", "CT3306061");
Line Deleted : user_pref("smartbar.machineId", "Y76H9O8TH2KIMEKI/HBJEUGLZPMMSHA8GUACCBZMOBNUZPYT5QES57ASZYBY81XWTJ1WGQMCMK/IP8Y0AIV60G");

-\\ Google Chrome v33.0.1750.154

[ File : E:\Documents and Settings\Randy\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [5643 octets] - [07/04/2014 07:22:21]
AdwCleaner[S0].txt - [5684 octets] - [07/04/2014 07:23:34]

########## EOF - E:\AdwCleaner\AdwCleaner[S0].txt - [5744 octets] ##########
 

 

 

 

 

 Results of screen317's Security Check version 0.99.81  
 Windows XP Service Pack 3 x86   
 Internet Explorer 8  
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled!  
Please wait while WMIC is being installed.d
i
s
p
l
a
y
N
a
m
e
ECHO is off.
a
v
a
s
t
!
ECHO is off.
A
n
t
i
v
i
r
u
s
ECHO is off.
 Antivirus up to date!  
`````````Anti-malware/Other Utilities Check:`````````
 MVPS Hosts File  
 CCleaner     
  Adobe Flash Player     11.9.900.152 Flash Player out of Date!  
 Adobe Reader XI  
 Mozilla Firefox (28.0)
 Google Chrome 33.0.1750.154  
````````Process Check: objlist.exe by Laurent````````  
 AVAST Software Avast AvastSvc.exe  
 AVAST Software Avast AvastUI.exe  
`````````````````System Health check`````````````````
 Total Fragmentation on Drive E:: 14% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````
 



#13 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:31 AM

Posted 07 April 2014 - 09:09 AM

Plrease reboot and run security check again.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#14 Fhallest

Fhallest
  • Topic Starter

  • Members
  • 121 posts
  • OFFLINE
  •  
  • Local time:02:31 AM

Posted 07 April 2014 - 01:39 PM

 Marius,

 

Ok here is the now one and this looks much better.

 

Thanks,

 

Randy

 

Results of screen317's Security Check version 0.99.81  
 Windows XP Service Pack 3 x86   
 Internet Explorer 8  
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled!  
avast! Antivirus   
 Antivirus up to date!  
`````````Anti-malware/Other Utilities Check:`````````
 MVPS Hosts File  
 CCleaner     
  Adobe Flash Player     11.9.900.152 Flash Player out of Date!  
 Adobe Reader XI  
 Mozilla Firefox (28.0)
 Google Chrome 33.0.1750.154  
````````Process Check: objlist.exe by Laurent````````  
 AVAST Software Avast AvastSvc.exe  
 AVAST Software Avast AvastUI.exe  
`````````````````System Health check`````````````````
 Total Fragmentation on Drive E:: 14% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````
 



#15 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:31 AM

Posted 08 April 2014 - 08:28 AM

Your system is clean now! :)

 

 

 

Adobe Flash Player out of date

Your Adobe flash player is outdated. We will fix this.

  • Get the actual player from here. Important: Uncheck any optional software (for example Google Chrome, etc.) offered.
  • Click upon Start-->control panel-->add/remove programs.
  • Search for and remove any older reader versions.

 

 

 

 

Defrag your hard drive
 
Your hard drive is heavily fragmented. This may result in performance losses. If it is NOT an SSD drive, use a tool like Auslogic DiskDefrag to defrag the drive.

 

 

 

 

Uninstall our tools using delfix

Please follow these steps in order:

  • In the case we used Defogger to turn off your CD emulation software. You can start it again and use the Enable button.
  • In the case we used Combofix. Deactivate your antivirus software once more, then rename the combofix.exe to uninstall.exe and run it one last time. You shall be noted that Combofix has been removed.
  • In any case please download delfix to your desktop.
    • Close all other programms and start delfix.
    • Please check all the boxes and run the tool.
    • delfix will now delete all found traces of our removal process
  • If there is still something left please delete it manualy.

 

 

 

Recommendations: How to protect yourself

  • System Updates
    Please ensure to have automatic updates activated in your control panel.
    For further information and a tutorial, see this Microsoft Support article.
  • Protection
    What you need is one (not more) virus scanner with background protection. Additionally I recommend a special malware scanner to run on demand weekly.
    Personally I am using avast! Antivirus Free Edition and Malwarebytes Anti-Malware. They offer good protection for free.
    • To keep your browser free of advertising, you may install the Adblock Plus browser extension.
      It will filter unwanted advertising out of the website´s content.
    • To protect yourself from accidentally visiting malicious web sites, install the Web of Trust (WOT) browser extension.
      It will display a green (safe), yellow (unknown) or red (potentially dangerous) icon for a visited website within your browser.
      In addition, before accessing a dangerous classified web site, a warning screen is displayed.

  • Up to date Software
    Keep your Windows and your third party software up to date. The easiest way to get infected is an outdated windows, followed by: browser(s) (including add-ons and plug-ins), Adobe Flash Player and Adobe Reader, Java Runtime Environment, your antivirus program and so on. These links may help you to check:

  • Backup
    Hardware issues, malware, fire, lightning strike: There is a long list of different ways to loose all your data. Back up your files regularly. Use the windows internal backup function or a third party tool and save your data onto an external hard drive, cloud storage, optical media like CDs or DVDs or (if available) a professional network backup system.
  • Behaviour
    The commonest error when using a computer is "error 80" - what means that the error is located about 80cm in front of the monitor. This is a common joke between IT support technicians but it shows that all the safety mechanisms won´t help if you aren´t careful enough.
    • While surfing the internet, don´t click on anything you don´t know. In the worst case, it infects your system with malware.
    • Watch your step in social networks! Many cyber criminals use them to spread malware, mine personal pata (to be sold to advertising companies, for example) or simply do damage to other users. Even if a received hyperlink within a message seems to be coming from one of your friends, have a closer look. In addition, don´t click everything.
    • When installing software, have a look to each of the setup windows and uncheck any additional toolbars or free programs that may be offered additionally. Most of today´s setup procedures contain potentially unwanted programs so keep them off your system.
    • Avoid gaming sites, pirated software, cracking tools, keygens, and peer-to-peer (P2P) file sharing programs.
      They are a security risk which can make your computer susceptible to a wide variety of malware infections, remote attacks, exposure of personal information, and identity theft. Many malicious worms and Trojans spread across P2P file sharing networks, gaming and underground sites.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users