Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Safesearch Brower Virus


  • This topic is locked This topic is locked
19 replies to this topic

#1 VicMJ

VicMJ

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 10 July 2014 - 11:09 AM

This virus redirects my web page whenever I open a new tap or when my brower first opens to the following page:

 

In firefox

http://mysearch.avg.com/tab?pid=&coid=&cid=&mid=&ds=&v=&lang=&pr=&sg=&d=&sap=nt&src=xp

 

or

 

in Internet Explorer

http://www.safesear.ch/?type=20140705-145-ie-sr

 

I have gotten both of these pages on both browers but the above is the current status.

 

How do I get rid of this problem?

 

 



BC AdBot (Login to Remove)

 


#2 wpgwpg

wpgwpg

  • Members
  • 1,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US of A
  • Local time:04:01 PM

Posted 10 July 2014 - 12:06 PM

Please download and run Speccy from here: http://www.bleepingcomputer.com/download/speccy/ .  After running it click File -> Publish snapshot... Copy and paste the link it gives you into your next post.  

 

 In addition, download Malwarebytes from here http://www.bleepingcomputer.com/download/malwarebytes-anti-malware/ , get it up to date and do a scan with it.  After the scan runs, click the Quarantine All button and follow the onscreen instructions.  Then boot to Safe Mode and do a full system scan with your antivirus.

 

Good luck.


Everyone with a computer should back his system up to an external hard drive regularly.  :thumbsup:

#3 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:04:01 PM

Posted 10 July 2014 - 03:56 PM

Hello this is an AutoSearch parasite variant

Download 51a46ae42d560-malwarebytes_anti_malware.MalwareBytes Anti-Malware to your desktop.
  • Double-click mbam-setup-2.0.exe to start the installation of Malwarebytes Anti-Malware.
  • Follow the instructions on your screen to complete the installation. You can find the complete installation procedure here.
  • Click Scan at the top of the screen and hit Detection and Protection.
  • Choose Custom Scan and click Scan Now.
  • Check the box next to Scan for rootkits.
  • MalwareBytes Anti-Malware will now check for the latest updates. Click Update Now if new updates are available.
  • Your computer is now being scanned, please do not use your computer during the scan.
  • If no threats were found, click View detailed log.
    • Click Export and save the log as a .txt file on your Desktop or another location.
  • If the scan detected any threats, click Apply Actions.
    • To complete any actions taken you will be prompted to restart your computer...click on Yes.
    • After reboot, start Malwarebytes Anti-Malware again and click the History Tab at the top and select Application Logs.
    • Check the box next to Scan Log. Choose the most current scan and click View.
    • Click Export and save the log as a .txt file on your Desktop or another location.
Providing the MalwareBytes' Anti-Malware log file
  • Attach the log file you just saved to your next reply for further review.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#4 VicMJ

VicMJ
  • Topic Starter

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 10 July 2014 - 08:41 PM

Here is the Malwarebytes Log

 

 

 

Here is the image from Speccy

 

Unable to post the above, I get the following error.  I used the past icon on the top tool bar.

An error occurred

You are not allowed to use that image extension on this community.



#5 VicMJ

VicMJ
  • Topic Starter

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 10 July 2014 - 08:50 PM

I did run Malwarebytes and it shows nothing.



#6 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:06:01 AM

Posted 11 July 2014 - 10:20 AM

Hello -

 

To find your Malwarebytes log, download mbam-check.exe from Here and save it to your Desktop.
To open the log double click on mbam-check.exe on your desktop. 
When the log opens, scroll down toward the bottom of the log to Quarantined Items

Copy and Paste this in your next post.

 

Any Speccy link is not required at this time.



#7 VicMJ

VicMJ
  • Topic Starter

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 11 July 2014 - 03:02 PM

I ran Malwarebyte again this time I remember to enable the rootkit scan option

This time it removed 5 safesearch files. But I still have the AVG toolbar loading on FireFox into a blank page.  IE looks okay.

Here is the Malwarebytes Log

 

mbam-check result log version:     2.1.1.1001
========================================

User Account type:                 Administrator
OS:                                Windows 7 Service Pack 1 Service Pack 1 64 bit Operating System
Current Version and Build:         6.1.7601.0
Malwarebytes Anti-Malware:         2.0.2.1012
Installed On:                      2014/05/30
Malware Database:                  2014.07.11.10
Rootkit Database:                  2014.07.09.01
Remediation Database:              2013.10.16.01
IP Database:                       0000.00.00.00
Domain Database:                   0000.00.00.00
License:                           Premium
Malware Protection:                4 (The service is running.)
Malicious Website Protection:      4 (The service is running.)
Chameleon:                         4 (The service is running.)
Log Created:                       2014/07/11 19:59:12
Compatibility Flag Settings:
=================================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
    SIGN.MEDIA=3E752E8 setup\blocksysuserinstall.exeREG_SZ        VISTARTM
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_WinterHoliday_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\setup_snagitstamps_time_enu.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Spring_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Smiley_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Smiley_2_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Shapes_lrg.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_ProofreaderMarks_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Map_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Keyboard_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Fall_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Education2_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Document_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Cursorsbw.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_CreatedWith_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Callouts-SnagIt81_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Callouts_largebw.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Callouts_large.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_BracketsBraces_ENU.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Arrows_largebw.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Arrows_large.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Accents_largebw.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\Snagit\Setup_SnagItStamps_Accents_large.exeREG_SZ        WINXPSP2
    C:\Users\VIctor Morano\Downloads\IS-505 scanner\arcsoft\arcsoft\Setup.exeREG_SZ        WINXPSP2
    C:\Program Files (x86)\Norton 360 Premier Edition\Engine\21.1.0.18\n360.exeREG_SZ        FaultTolerantHeap
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
    C:\Program Files (x86)\2nd Speech Center\iisc.exeREG_SZ        WIN95 RUNASADMIN
    C:\Program Files (x86)\ArcSoft\PhotoImpression 6\PhotoImpression.exeREG_SZ        ELEVATECREATEPROCESS
    C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exeREG_SZ        RUNASADMIN
    C:\Program Files (x86)\IVT Corporation\BlueSoleil cPhone\Android\cPhoneDriverInstaller_32.exeREG_SZ        ~ RUNASADMIN WIN7RTM
    C:\Program Files (x86)\IVT Corporation\BlueSoleil cPhone\Android\cPhoneDriverInstaller_64.exeREG_SZ        ~ RUNASADMIN WIN7RTM
    C:\Program Files (x86)\IVT Corporation\BlueSoleil cPhone\Android\RefreshDevice.exeREG_SZ        ~ RUNASADMIN WIN7RTM


Malwarebytes Anti-Malware Shell Extension Block Check:
======================================================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked:

MBAM Startup Entries:
=====================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Malwarebytes Anti-Malware Service and Driver Status:
=======================================================

--------------Driver File Info:--------------
C:\windows\system32\drivers\mbam.sys
File Size: 25816     BYTES    FileVersion: 0.1.13.0    MD5: [f92b0e478c0faa6d6661e6e977247e60]
C:\windows\system32\drivers\mwac.sys
File Size: 63704     BYTES    FileVersion: 1.0.1.0    MD5: [15e8abc06843672955ce26a009533bad]
C:\windows\system32\drivers\mbamswissarmy.sys
File Size: 122584    BYTES    FileVersion: 0.1.7.0    MD5: [8a50d5304e6ae48664cf5838ec32f647]
C:\windows\system32\drivers\mbamchameleon.sys
File Size: 91352     BYTES    FileVersion: 1.0.4.0    MD5: [9d9ed48f841ea37aa5310d54b9e5d3c7]

--------------MBAMProtector:--------------
Type:                   2
State:                  4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
WIN32_EXIT_CODE:        0
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


--------------MBAMService:--------------
Type:                   16
State:                  4 (The service is running.)
WIN32_EXIT_CODE:        0
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


--------------MBAMScheduler:--------------
Type:                   16
State:                  4 (The service is running.)
WIN32_EXIT_CODE:        0
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


--------------MBAMChameleon:--------------
Type:                   2
State:                  4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
WIN32_EXIT_CODE:        0
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


--------------MBAMWebAccessControl:--------------
Type:                   1
State:                  4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
WIN32_EXIT_CODE:        0
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


Required Dependencies:
======================

--------------BFE:--------------
Type:                   32
State:                  4 (The service is running.)
WIN32_EXIT_CODE:        0
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE
    DisplayName                   REG_SZ        @%SystemRoot%\system32\bfe.dll,-1001
    Group                         REG_SZ        NetworkProvider
    ImagePath                     REG_EXPAND_SZ    %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
    Description                   REG_SZ        @%SystemRoot%\system32\bfe.dll,-1002
    ObjectName                    REG_SZ        NT AUTHORITY\LocalService
    ErrorControl                  REG_DWORD        1
    Start                         REG_DWORD        2
    Type                          REG_DWORD        32
    DependOnService               REG_MULTI_SZ    RpcSs

    ServiceSidType                REG_DWORD        3
    RequiredPrivileges            REG_MULTI_SZ    SeAuditPrivilege

    FailureActions                REG_BINARY    Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters
    ServiceDll                    REG_EXPAND_SZ    %SystemRoot%\System32\bfe.dll
    ServiceDllUnloadOnStop        REG_DWORD        1
    ServiceMain                   REG_SZ        BfeServiceMain
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTime
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTime\Filter
    {8c300c03-7d30-1b44-8a83-dcc8c09cfa85}REG_BINARY    Binary Data

    {e88282c2-f90f-ef54-1a60-13cbe22eceaa}REG_BINARY    Binary Data

    {e1739739-ee27-4492-b61b-b1fd907d9e88}REG_BINARY    Binary Data

    {0f14dd31-cf58-4fab-9127-e085c7547d7a}REG_BINARY    Binary Data

    {034c737b-f629-a1b4-6afb-1a2f44a1a1d7}REG_BINARY    Binary Data

    {cfb4c757-0bff-94e4-7801-a2b2f62f35ce}REG_BINARY    Binary Data

    {47a3a498-021c-7304-b85a-6bb5e43ade96}REG_BINARY    Binary Data

    {5bb9675e-0064-2cb4-d89d-bcd4e20e11c8}REG_BINARY    Binary Data

    {ca70ae30-59e8-46ef-b483-c22ee366ab29}REG_BINARY    Binary Data

    {b18f04c9-f2e9-4d39-9510-b9265a6b071d}REG_BINARY    Binary Data

    {430f2767-3528-2784-289e-b0860d99a608}REG_BINARY    Binary Data

    {a06ae492-b0c1-1f94-caa4-bb9b226ca22d}REG_BINARY    Binary Data

    {c540d974-3c6c-be64-5bff-3db65b322a1d}REG_BINARY    Binary Data

    {3e3f092e-1288-a8c4-28bf-2b4ef96df312}REG_BINARY    Binary Data

    {e20f0605-5735-38d4-6aea-19d1b15c7868}REG_BINARY    Binary Data

    {2dc4271a-246e-a1a4-3a70-4c8f14fd7ba0}REG_BINARY    Binary Data

    {638ffdf7-a3ff-66c4-7b65-4f406b0da651}REG_BINARY    Binary Data

    {f9bc3444-96d0-0ca4-8920-5425ed611a9e}REG_BINARY    Binary Data

    {0ff1f959-c0d4-3ca4-a8a5-cb469d318b39}REG_BINARY    Binary Data

    {1dd94704-a218-0d34-18d3-1ba50d201728}REG_BINARY    Binary Data

    {39f29298-8fa5-0144-fab3-bcd9ad227c3b}REG_BINARY    Binary Data

    {f154d790-c121-3a84-7824-f7ff97bea29e}REG_BINARY    Binary Data

    {a708428d-50f4-9d44-aa15-fd48988b7d66}REG_BINARY    Binary Data

    {98b0b712-aa06-f734-0bec-c14f445161c4}REG_BINARY    Binary Data

    {70e10304-e806-1af4-4a65-791688215398}REG_BINARY    Binary Data

    {fb588d62-f991-4044-bba6-5e96cf3939df}REG_BINARY    Binary Data

    {64f39050-d77f-7a74-8a07-2a7c2dd7802d}REG_BINARY    Binary Data

    {e69be8e1-869d-0e34-99f6-f82ea91df33d}REG_BINARY    Binary Data

    {dcae098a-dff1-ffe4-9b22-0bb2738885db}REG_BINARY    Binary Data

    {113ba551-0a01-aa84-1944-25df351f74ab}REG_BINARY    Binary Data

    {ef11fc1e-9d20-ff14-3b74-55b7e55eeb97}REG_BINARY    Binary Data

    {b457115e-0fc4-89f4-2b7d-85e7d94efcaa}REG_BINARY    Binary Data

    {2265f512-4d6b-8484-fbf8-7d6ec7579b67}REG_BINARY    Binary Data

    {1b0fa1a4-5e46-8cc4-18c0-f5ff3dd69546}REG_BINARY    Binary Data

    {d663476c-94a3-c5e4-db44-7aa6c8fabd83}REG_BINARY    Binary Data

    {d4de1868-54d9-b4e4-ab30-b9c378cb4b18}REG_BINARY    Binary Data

    {c8e26ddd-a426-73e4-b848-a5c31a087eca}REG_BINARY    Binary Data

    {f67c8b29-2d24-0a74-fbd7-a5cbbe16f710}REG_BINARY    Binary Data

    {fbe3d017-fb99-8c14-aad9-631321b22614}REG_BINARY    Binary Data

    {b47f0b6a-3185-6434-c8b0-e1e69c18eb94}REG_BINARY    Binary Data

    {68487fdc-3301-cef4-ea7a-583c54b3069c}REG_BINARY    Binary Data

    {21e3a753-0ccf-f284-abd6-7221adbd9311}REG_BINARY    Binary Data

    {ffb717c4-ecc7-8b14-3978-dca6602db705}REG_BINARY    Binary Data

    {c40bc20f-87a8-8e24-e824-38f14fb83d7e}REG_BINARY    Binary Data

    {9cd26f24-b76d-2e14-ca19-d17d552bb424}REG_BINARY    Binary Data

    {3bbaa68c-b062-66a4-8a85-648680f757ca}REG_BINARY    Binary Data

    {cd1b16b0-cc00-0be4-79f2-7b4ae69a2037}REG_BINARY    Binary Data

    {511094b4-6ffd-e2e4-0bcf-9794e77d95ae}REG_BINARY    Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Callout
    {288d1fdb-0317-7e44-cb75-83debf2aebf5}REG_BINARY    Binary Data

    {43ebc567-3739-d724-e89c-cd57f7f662be}REG_BINARY    Binary Data

    {e07dc617-78d7-4317-8d98-1de4a06a7447}REG_BINARY    Binary Data

    {fa50a7a7-58aa-48cc-b795-039f0519e05d}REG_BINARY    Binary Data

    {83b672f1-37df-f3d4-c8be-2d0ed09451ed}REG_BINARY    Binary Data

    {1938590a-37c1-4754-e9ee-c9198f101b57}REG_BINARY    Binary Data

    {63ceb950-c8c2-62c4-197a-70815d052de9}REG_BINARY    Binary Data

    {7f44d536-a1d5-04b4-5821-f9d3f05e7b77}REG_BINARY    Binary Data

    {0c1ac9f9-08e1-4a93-b969-f2cc78ab71da}REG_BINARY    Binary Data

    {ba7a59eb-6441-4b0a-8867-5e8b896c2786}REG_BINARY    Binary Data

    {822c8b33-e507-cad4-ab50-e06d74102386}REG_BINARY    Binary Data

    {ce939e38-be51-53f4-d98e-c7905ea7af84}REG_BINARY    Binary Data

    {b787f560-894f-8db4-1bd5-ea38d2f4006a}REG_BINARY    Binary Data

    {5040b65d-0ecd-5fc4-99ee-7bccd3941b13}REG_BINARY    Binary Data

    {e53d1460-4afc-e1e4-8a2e-e210cc564688}REG_BINARY    Binary Data

    {2e971130-3bf4-ea64-9ab5-cb9c3a0cad57}REG_BINARY    Binary Data

    {bff0c14d-5646-7644-3a01-f0344e4cb231}REG_BINARY    Binary Data

    {3ce1de5f-d7ef-e064-1991-abe3beefda33}REG_BINARY    Binary Data

    {d384de9c-320b-7564-788b-7e17bd4f3e06}REG_BINARY    Binary Data

    {b6fe0628-75e9-41d4-c85b-106b79a9605c}REG_BINARY    Binary Data

    {6db2047b-4844-4a34-c9f7-612acd816b15}REG_BINARY    Binary Data

    {7dbcb70a-fa99-76c4-2bb7-44e9545c290b}REG_BINARY    Binary Data

    {f0888ff5-e13d-e844-1b13-64f885451c9e}REG_BINARY    Binary Data

    {1e6f2082-dc1c-e774-9889-d77bc276de17}REG_BINARY    Binary Data

    {34392ca1-05dd-d324-d886-a1db63fd0a1c}REG_BINARY    Binary Data

    {2c8aea04-7f81-44e4-380a-4f1f1fd3ec8b}REG_BINARY    Binary Data

    {4d6ff4f5-33fc-04a4-5a43-580d83238c1f}REG_BINARY    Binary Data

    {056d0c54-b875-6b54-3b6b-85fb20ef945b}REG_BINARY    Binary Data

    {d9bf7a23-80e2-16f4-4916-10b6881da7f4}REG_BINARY    Binary Data

    {3b15de27-387f-0b04-b8fd-9cfec1fc2b53}REG_BINARY    Binary Data

    {ff60487c-9b38-8b74-eaad-a723fe2920f3}REG_BINARY    Binary Data

    {e113abe3-c2c2-e7d4-981a-1d81cef728cd}REG_BINARY    Binary Data

    {f9c69fee-fab9-4d14-7bf0-4150924172c3}REG_BINARY    Binary Data

    {013bfb29-c999-4f74-e91a-163592356489}REG_BINARY    Binary Data

    {a1f52b10-d3a0-5584-db3f-4fbff5ee691e}REG_BINARY    Binary Data

    {a66e372d-6ad2-32b4-fa7a-9e5406a06efb}REG_BINARY    Binary Data

    {25452abe-22c4-46e4-4b43-4e63c44ff052}REG_BINARY    Binary Data

    {d2186677-8f09-80c4-9a3c-fb95a7cafe47}REG_BINARY    Binary Data

    {13d22885-8869-6194-8a68-eabf78dc7b1d}REG_BINARY    Binary Data

    {85d443eb-d02f-35b4-09b6-17a55933e9a9}REG_BINARY    Binary Data

    {468aa82e-7c0b-3484-f976-c96cac54f548}REG_BINARY    Binary Data

    {d7167dab-073c-70f4-eaa7-27a7f9058100}REG_BINARY    Binary Data

    {aa75c41d-0567-9754-fbb4-98314d2e1025}REG_BINARY    Binary Data

    {72d8a0b2-f9e8-3a14-5947-53b26053e2cc}REG_BINARY    Binary Data

    {1e83b45d-73c2-3c74-69ca-ca49a21a9471}REG_BINARY    Binary Data

    {124cd831-d190-26d4-1912-9d66a2f87850}REG_BINARY    Binary Data

    {f4965f1d-9b1d-c1b4-a9bf-7f14d9558673}REG_BINARY    Binary Data

    {d9fbf698-6e04-4044-e834-05a80e2c7216}REG_BINARY    Binary Data

    {3c565f9a-e9d1-52d4-280a-204519ae9b74}REG_BINARY    Binary Data

    {cae4853d-d48a-5094-9998-a654d8a1f201}REG_BINARY    Binary Data

    {c195d6cb-28ba-0244-f9ea-d52c30774a2f}REG_BINARY    Binary Data

    {945df99a-f3cd-63b4-1925-816ce9429e3b}REG_BINARY    Binary Data

    {323a84ef-da67-4c44-3940-200827d6c044}REG_BINARY    Binary Data

    {379a9aa8-6286-9274-6a9a-1b9f9fef5ea2}REG_BINARY    Binary Data

    {3162ae5d-fd53-7894-badc-9910318def3f}REG_BINARY    Binary Data

    {83ad9a09-ff8f-4a54-d99a-cec7b98984ff}REG_BINARY    Binary Data

    {2de5159c-7a8e-f814-58c2-236f884dbb18}REG_BINARY    Binary Data

    {539b7c6d-8ad7-ea54-cbba-f028c6a88719}REG_BINARY    Binary Data

    {6329feaf-fae0-51e4-aba7-9107bc00d060}REG_BINARY    Binary Data

    {b99aa75f-8721-98a4-e952-f03e1e644994}REG_BINARY    Binary Data

    {a49c4ab8-c054-9914-2b9c-7d0ae48d8505}REG_BINARY    Binary Data

    {7df4b338-f782-f0f4-9bed-e9b45deb580e}REG_BINARY    Binary Data

    {f319fd16-192f-13a4-ea06-180e16c755f9}REG_BINARY    Binary Data

    {3cc23cb2-30bd-6674-3bf9-81d622fde73d}REG_BINARY    Binary Data

    {4053bd41-f27e-8bc4-39d8-4420fc25b014}REG_BINARY    Binary Data

    {92517201-7702-8bf4-dbea-9fdfe8a32410}REG_BINARY    Binary Data

    {1d0f6316-1e62-7cb4-b908-aebc52d7af48}REG_BINARY    Binary Data

    {c28099d7-7ef3-3f64-785c-9e82ff2678a9}REG_BINARY    Binary Data

    {9a81b08a-d239-9f14-ea63-fa043703c04b}REG_BINARY    Binary Data

    {a739d627-00a3-9634-ebf2-0b0c7977fea1}REG_BINARY    Binary Data

    {bd54f486-7316-ae84-bad6-efec4ca12d63}REG_BINARY    Binary Data

    {9d16cb2a-7eb4-db64-5980-d989275b5c6a}REG_BINARY    Binary Data

    {b95281e9-0df5-3664-289a-2cda6a45f97d}REG_BINARY    Binary Data

    {ca4cad28-4dd9-6034-69c5-d5362f3cc1cb}REG_BINARY    Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Filter
    {8c300c03-7d30-1b44-8a83-dcc8c09cfa85}REG_BINARY    Binary Data

    {e311ae9f-e0fb-7f04-7b55-8a257506650f}REG_BINARY    Binary Data

    {e88282c2-f90f-ef54-1a60-13cbe22eceaa}REG_BINARY    Binary Data

    {4ef2b2de-4b97-0234-3bbf-eaa6719814d6}REG_BINARY    Binary Data

    {e1739739-ee27-4492-b61b-b1fd907d9e88}REG_BINARY    Binary Data

    {e7609227-f261-4b39-a7f5-64e338ade472}REG_BINARY    Binary Data

    {0f14dd31-cf58-4fab-9127-e085c7547d7a}REG_BINARY    Binary Data

    {f3009b7d-992b-4cce-b65a-2792465c6ea4}REG_BINARY    Binary Data

    {034c737b-f629-a1b4-6afb-1a2f44a1a1d7}REG_BINARY    Binary Data

    {dcbbcd6b-37fe-0914-2b3e-a5a15ed83c24}REG_BINARY    Binary Data

    {cfb4c757-0bff-94e4-7801-a2b2f62f35ce}REG_BINARY    Binary Data

    {a5f90f38-2ba6-0c84-3a97-906cc41a4860}REG_BINARY    Binary Data

    {47a3a498-021c-7304-b85a-6bb5e43ade96}REG_BINARY    Binary Data

    {3bb6a48a-db01-da24-6b94-b0890b8da96f}REG_BINARY    Binary Data

    {5bb9675e-0064-2cb4-d89d-bcd4e20e11c8}REG_BINARY    Binary Data

    {642969df-6023-55a4-384d-a00571e7a98a}REG_BINARY    Binary Data

    {ca70ae30-59e8-46ef-b483-c22ee366ab29}REG_BINARY    Binary Data

    {c91d1d66-421c-4b87-ac5b-a18193abbd64}REG_BINARY    Binary Data

    {b18f04c9-f2e9-4d39-9510-b9265a6b071d}REG_BINARY    Binary Data

    {bb623a72-5252-4284-a365-1cd0f83e55ce}REG_BINARY    Binary Data

    {430f2767-3528-2784-289e-b0860d99a608}REG_BINARY    Binary Data

    {3ba7deb2-a886-ae74-f87a-72194738a423}REG_BINARY    Binary Data

    {a06ae492-b0c1-1f94-caa4-bb9b226ca22d}REG_BINARY    Binary Data

    {11cc978e-2782-1724-79bf-9a7edca87fae}REG_BINARY    Binary Data

    {c540d974-3c6c-be64-5bff-3db65b322a1d}REG_BINARY    Binary Data

    {9de53702-392d-8044-2953-fc2bc7af47ad}REG_BINARY    Binary Data

    {3e3f092e-1288-a8c4-28bf-2b4ef96df312}REG_BINARY    Binary Data

    {d96b0bca-4c17-2b34-48b1-60566dd3e999}REG_BINARY    Binary Data

    {e20f0605-5735-38d4-6aea-19d1b15c7868}REG_BINARY    Binary Data

    {e448f4a4-8392-a954-699a-41c712f4a5d3}REG_BINARY    Binary Data

    {2dc4271a-246e-a1a4-3a70-4c8f14fd7ba0}REG_BINARY    Binary Data

    {e1de2d9d-2a11-f554-0acf-db826b0f4bd6}REG_BINARY    Binary Data

    {638ffdf7-a3ff-66c4-7b65-4f406b0da651}REG_BINARY    Binary Data

    {5342d19f-180e-3124-b95c-cc8d73fef5b1}REG_BINARY    Binary Data

    {f9bc3444-96d0-0ca4-8920-5425ed611a9e}REG_BINARY    Binary Data

    {1c5aab44-1a9b-9c04-9a1d-f9f85ec51e98}REG_BINARY    Binary Data

    {0ff1f959-c0d4-3ca4-a8a5-cb469d318b39}REG_BINARY    Binary Data

    {b5db1d35-04c6-07f4-3912-a48d9266dc36}REG_BINARY    Binary Data

    {1dd94704-a218-0d34-18d3-1ba50d201728}REG_BINARY    Binary Data

    {a95b3da7-c453-a294-cacb-b5065e5a9dd0}REG_BINARY    Binary Data

    {39f29298-8fa5-0144-fab3-bcd9ad227c3b}REG_BINARY    Binary Data

    {4dbfdcf1-8cd6-79a4-1b57-d3ce0245e8ed}REG_BINARY    Binary Data

    {f154d790-c121-3a84-7824-f7ff97bea29e}REG_BINARY    Binary Data

    {b00673e4-f4be-01d4-cab1-cab8f7f217a8}REG_BINARY    Binary Data

    {a708428d-50f4-9d44-aa15-fd48988b7d66}REG_BINARY    Binary Data

    {ad3611e0-f9e2-ebf4-49e1-59361a5ffbea}REG_BINARY    Binary Data

    {98b0b712-aa06-f734-0bec-c14f445161c4}REG_BINARY    Binary Data

    {605a11a1-39e0-8eb4-2850-e2b24f317d76}REG_BINARY    Binary Data

    {70e10304-e806-1af4-4a65-791688215398}REG_BINARY    Binary Data

    {883a9337-5ef5-f4c4-5b87-239da3ee190f}REG_BINARY    Binary Data

    {fb588d62-f991-4044-bba6-5e96cf3939df}REG_BINARY    Binary Data

    {b14c171c-cba7-ebd4-fbb8-ce1071abca6d}REG_BINARY    Binary Data

    {64f39050-d77f-7a74-8a07-2a7c2dd7802d}REG_BINARY    Binary Data

    {24c60015-9c25-3f34-cacf-92da9840e906}REG_BINARY    Binary Data

    {e69be8e1-869d-0e34-99f6-f82ea91df33d}REG_BINARY    Binary Data

    {6d7c050d-a47a-9914-9b9c-3ec20b9d7698}REG_BINARY    Binary Data

    {dcae098a-dff1-ffe4-9b22-0bb2738885db}REG_BINARY    Binary Data

    {2efb3fad-ff4c-e684-5b3c-af1df1bf1ca9}REG_BINARY    Binary Data

    {113ba551-0a01-aa84-1944-25df351f74ab}REG_BINARY    Binary Data

    {125c4673-2cbe-b8d4-8aee-faf905c18997}REG_BINARY    Binary Data

    {ef11fc1e-9d20-ff14-3b74-55b7e55eeb97}REG_BINARY    Binary Data

    {49339bce-1676-b564-79f0-9dedba6ac5a0}REG_BINARY    Binary Data

    {b457115e-0fc4-89f4-2b7d-85e7d94efcaa}REG_BINARY    Binary Data

    {d167b2f1-e18b-4644-2b1f-c8c84095db6b}REG_BINARY    Binary Data

    {2265f512-4d6b-8484-fbf8-7d6ec7579b67}REG_BINARY    Binary Data

    {65bd1b95-7c25-1cb4-e8cf-5f77cf66fc7e}REG_BINARY    Binary Data

    {1b0fa1a4-5e46-8cc4-18c0-f5ff3dd69546}REG_BINARY    Binary Data

    {aea589d8-0f00-bc04-0a41-f96b266d758d}REG_BINARY    Binary Data

    {d663476c-94a3-c5e4-db44-7aa6c8fabd83}REG_BINARY    Binary Data

    {db7b7458-6817-ce44-0abe-440eae0c2b57}REG_BINARY    Binary Data

    {d4de1868-54d9-b4e4-ab30-b9c378cb4b18}REG_BINARY    Binary Data

    {60268e51-b7fd-c1e4-6b82-638aa19227bd}REG_BINARY    Binary Data

    {c8e26ddd-a426-73e4-b848-a5c31a087eca}REG_BINARY    Binary Data

    {1ad00215-eb30-eda4-69bd-346d8371787a}REG_BINARY    Binary Data

    {f67c8b29-2d24-0a74-fbd7-a5cbbe16f710}REG_BINARY    Binary Data

    {60286bb2-acca-67d4-58d8-3610a6618e15}REG_BINARY    Binary Data

    {fbe3d017-fb99-8c14-aad9-631321b22614}REG_BINARY    Binary Data

    {169d6be1-b993-6af4-c9f7-74f6946781e4}REG_BINARY    Binary Data

    {b47f0b6a-3185-6434-c8b0-e1e69c18eb94}REG_BINARY    Binary Data

    {30146aff-3c2c-0aa4-3905-894aa433e953}REG_BINARY    Binary Data

    {7587f941-cafe-99d4-fb05-f470e11db9d0}REG_BINARY    Binary Data

    {a3d09149-cc40-6854-f9b2-5a83e63b5aa9}REG_BINARY    Binary Data

    {08851390-28f1-d024-0a30-96424e7f2a8c}REG_BINARY    Binary Data

    {e00fb75c-bfb8-a0b4-ea1a-aad548b5cb38}REG_BINARY    Binary Data

    {d1d8fe07-0f6f-3bb4-8b2d-ac54185b9ea4}REG_BINARY    Binary Data

    {07a51945-f0a0-a984-19dd-a2fa6df50ca1}REG_BINARY    Binary Data

    {aa959992-13eb-eab4-c8c3-344b164dedc0}REG_BINARY    Binary Data

    {e124c736-1dd5-f034-181e-202a6f0d45e3}REG_BINARY    Binary Data

    {45b3b6b8-08a0-0eb4-2b3f-7cba6fcff68a}REG_BINARY    Binary Data

    {63f3d0c3-b230-3384-a9a0-05fe70c051a9}REG_BINARY    Binary Data

    {7d972967-373f-53c4-c822-6d9b98040aac}REG_BINARY    Binary Data

    {8b0216d4-8c51-5674-d977-0d4c5873c41f}REG_BINARY    Binary Data

    {68487fdc-3301-cef4-ea7a-583c54b3069c}REG_BINARY    Binary Data

    {63421a09-1e6b-1724-88be-ac3012cda100}REG_BINARY    Binary Data

    {21e3a753-0ccf-f284-abd6-7221adbd9311}REG_BINARY    Binary Data

    {d0bbb240-772e-3144-4bcd-ef6b426e90ba}REG_BINARY    Binary Data

    {0259c1da-7cce-f914-7a21-487e1e084a28}REG_BINARY    Binary Data

    {1dd6069a-5a11-49c4-ba9a-67c6a44f5b4c}REG_BINARY    Binary Data

    {104e67d6-ec8f-28b4-bb61-00fde33ab1eb}REG_BINARY    Binary Data

    {b4251f4a-2d5a-b014-0a4a-ed36b5e10ea0}REG_BINARY    Binary Data

    {ffb717c4-ecc7-8b14-3978-dca6602db705}REG_BINARY    Binary Data

    {4f8e204e-5624-9234-8a78-8f16aae3ef20}REG_BINARY    Binary Data

    {c40bc20f-87a8-8e24-e824-38f14fb83d7e}REG_BINARY    Binary Data

    {c55f646a-7d0e-5ff4-9b56-abc231ba1bef}REG_BINARY    Binary Data

    {4776b92a-fed9-d8e4-9a0e-f85cf5865d35}REG_BINARY    Binary Data

    {9f3078ed-3bb3-2e24-ab4a-71722a21fd64}REG_BINARY    Binary Data

    {92ac1647-5cd5-a1d4-0bc1-5fd3213c8c4b}REG_BINARY    Binary Data

    {02cca994-9a30-25a4-3b7c-bd328cba6209}REG_BINARY    Binary Data

    {a64e2fd7-fb02-4674-8819-10780570e8b7}REG_BINARY    Binary Data

    {8daa920a-dfd9-7844-5bf9-ab95051685aa}REG_BINARY    Binary Data

    {9cd26f24-b76d-2e14-ca19-d17d552bb424}REG_BINARY    Binary Data

    {9c8380e5-0d81-eef4-a88b-21dd395c25fa}REG_BINARY    Binary Data

    {3bbaa68c-b062-66a4-8a85-648680f757ca}REG_BINARY    Binary Data

    {22482d59-35d6-1f44-3b51-19ad61d3114c}REG_BINARY    Binary Data

    {cd1b16b0-cc00-0be4-79f2-7b4ae69a2037}REG_BINARY    Binary Data

    {87dc86f5-72ee-2fc4-8a83-0363327f1b96}REG_BINARY    Binary Data

    {511094b4-6ffd-e2e4-0bcf-9794e77d95ae}REG_BINARY    Binary Data

    {d7429422-150f-0c74-3bba-dc048e9baf3d}REG_BINARY    Binary Data

    {bf1b654b-5339-2a44-1923-64119b05b796}REG_BINARY    Binary Data

    {36ed884e-2b1f-e2d4-5b52-d7b9371a4b93}REG_BINARY    Binary Data

    {f0b80ade-0944-73b4-09cc-ba867baba6d6}REG_BINARY    Binary Data

    {3627ecb2-b18b-74a4-7b8a-4dc864cfe05e}REG_BINARY    Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Provider
    {decc16ca-3f33-4346-be1e-8fb4ae0f3d62}REG_BINARY    Binary Data

    {4b153735-1049-4480-aab4-d1b9bdc03710}REG_BINARY    Binary Data

    {1bebc969-61a5-4732-a177-847a0817862a}REG_BINARY    Binary Data

    {aa6a7d87-7f8f-4d2a-be53-fda555cd5fe3}REG_BINARY    Binary Data

    {06e9d64c-15e9-4615-a862-1f0dc2674c6a}REG_BINARY    Binary Data

    {d4bd4a0f-7591-4da2-ae67-3aa97c3c34c2}REG_BINARY    Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\SubLayer
    {b3cdd441-af90-41ba-a745-7c6008ff2300}REG_BINARY    Binary Data

    {b3cdd441-af90-41ba-a745-7c6008ff2301}REG_BINARY    Binary Data

    {b3cdd441-af90-41ba-a745-7c6008ff2302}REG_BINARY    Binary Data

    {9ba30013-c84e-47e5-ac6e-1e1aed72fa69}REG_BINARY    Binary Data

    {138d8cf9-63ce-0264-2a6a-82012a3041e9}REG_BINARY    Binary Data

    {e104491e-e3ff-5884-297d-4a606059202a}REG_BINARY    Binary Data

    {944c7c85-2d3e-3ca4-b96c-45f1fbacf534}REG_BINARY    Binary Data

    {7ad177f7-b8b6-f044-982b-02fba7bb5a4b}REG_BINARY    Binary Data

    {982a8b99-8fda-5af4-394e-b3a86eeae3a2}REG_BINARY    Binary Data

    {716551c6-d81c-c314-8b60-8e802d17af65}REG_BINARY    Binary Data

    {fa440e9d-3210-9e34-0941-9e24589c14a7}REG_BINARY    Binary Data

    {3659e00e-8c62-9174-8be9-e4e562795f04}REG_BINARY    Binary Data

    {a98edafe-8f64-8144-fa1b-ba21cc1c77dd}REG_BINARY    Binary Data

    {7e0920ad-bcec-bb94-f850-b022eac09779}REG_BINARY    Binary Data

--------------fltmgr:--------------
Type:                   2
State:                  4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
WIN32_EXIT_CODE:        0
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr
    AttachWhenLoaded              REG_DWORD        1
    DisplayName                   REG_SZ        @%SystemRoot%\system32\drivers\fltmgr.sys,-10001
    Group                         REG_SZ        FSFilter Infrastructure
    ImagePath                     REG_EXPAND_SZ    system32\drivers\fltmgr.sys
    Description                   REG_SZ        @%SystemRoot%\system32\drivers\fltmgr.sys,-10000
    ErrorControl                  REG_DWORD        3
    Start                         REG_DWORD        0
    Tag                           REG_DWORD        1
    Type                          REG_DWORD        2
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr\Enum
    0                             REG_SZ        Root\LEGACY_FLTMGR\0000
    Count                         REG_DWORD        1
    NextInstance                  REG_DWORD        1


C:\windows\system32\drivers\fltmgr.sys
File Size: 289664    BYTES    FileVersion: 6.1.7601.17514    MD5: [da6b67270fd9db3697b20fce94950741]
C:\windows\SysWOW64\comctl32.ocx
File Size: 608448    BYTES    FileVersion: 6.0.81.5    MD5: [eb5f811c1f78005b3c147599a0cccf51]
C:\windows\SysWOW64\mscomctl.ocx
File Size: 1070232   BYTES    FileVersion: 6.1.98.39    MD5: [766f501b61c22723536af696a74133d4]
C:\windows\SysWOW64\olepro32.dll
File Size: 90112     BYTES    FileVersion: 6.1.7601.17514    MD5: [703ffd301ab900b047337c5d40fd6f96]


MBAM Registry Settings and License Info:
========================================
--------------Settings:--------------
Advanced:
    AutomaticQuarantine:                                       true
    AutostartProtection:                                       true
    SelfProtection:                                            true
    StartSilentMode:                                           false
General:
    Language:                                                  en
    RightClickAccess:                                          false
Logging:
ProtectionTray:
    DisplayMilliseconds:                                       5000
ScanHistory:
    Duration_Complete:                                         231000
    Duration_Driver:                                           16000
    Duration_Filesystem:                                       1000
    Duration_Heuristics:                                       726000
    Duration_MasterBootRecord:                                 0
    Duration_PreScan:                                          27000
    Duration_Registry:                                         13000
    Duration_SectorMemory:                                     1000
    Duration_Startup:                                          25000
    ItemCount_Complete:                                        231442
    ItemCount_Driver:                                          346
    ItemCount_Filesystem:                                      59752
    ItemCount_Heuristics:                                      19986
    ItemCount_MasterBootRecord:                                2
    ItemCount_PreScan:                                         0
    ItemCount_Registry:                                        719
    ItemCount_SectorMemory:                                    223
    ItemCount_Startup:                                         5047
    LastScanDateEpoch:                                         1405110272234
    LastScanType:                                              3 (Hyper Scan)
Update:
    LastUpdate:                                                2014-07-11T22:42:11
    NotifyOutdatedDatabase:                                    0
--------------Account:--------------
  Account Status:                                              Premium
  Expiration Time:                                             2034/04/11 16:36:45
  Activation Time:                                             2014/04/11 16:36:45
  Trial Used:                                                  false
--------------Access Policies:--------------

Scheduler Queue:
================

tasks:
    b38bb629-f6d5-466e-9585-5cf29d2124ea:                       
      parameters:                                               
        CheckForUpdatesBeforeScanStart:                        true
        ProcessLaunchedFromScheduler:                          true
        ScanConfig:                                             
          ExitWhenNoMalwareDetected:                           false
          ExportLog:                                           true
          FileSystemOption:                                    true
          RebootSystemWhenMalwareDetected:                     false
          RemoveMalwareAutomaticallyWhenScanEnds:              false
          ScanArchives:                                        true
          ScanExtra:                                           true
          ScanHeuristic:                                       true
          ScanMemoryObjects:                                   true
          ScanPUM:                                             2
          ScanPUP:                                             1
          ScanRegistry:                                        true
          ScanRootkits:                                        false
          ScanStartup:                                         true
          ScanTargets:                                          
          ScanType:                                            1 (Threat Scan)
          Silent:                                              true
          TerminateExplorerWhenMalwareIsRemoved:               false
        StartTaskFromSystemAccount:                            false
        TaskType:                                              0
      triggers:                                                 
        a4bdd6fa-755f-4dce-bb83-60a9b7e84b61:                   
          dateinterval:                                        1:0:0
          lastscheduled:                                       Thu, 10 Jul 2014 20:05:24.622471 -0400
          lasttriggered:                                       Thu, 10 Jul 2014 20:05:24.622471 -0400
          nextscheduled:                                       Fri, 11 Jul 2014 20:02:32.622471 -0400
          recovery:                                            23:00:00
          start:                                               Sat, 12 Apr 2014 03:34:22 -0400
          timeinterval:                                        00:00:00
          type:                                                4
          uuid:                                                a4bdd6fa-755f-4dce-bb83-60a9b7e84b61
      type:                                                    scan
      uuid:                                                    b38bb629-f6d5-466e-9585-5cf29d2124ea
    d393af58-d8ec-464b-ba94-e508678749ac:                       
      parameters:                                               
        NotifyWhenUpdateCompletes:                             true
        ProcessLaunchedFromScheduler:                          true
        TaskType:                                              3
      triggers:                                                 
        6080db2b-3976-4e40-a767-f6953a88bb7a:                   
          dateinterval:                                        0:0:0
          lastscheduled:                                       Fri, 11 Jul 2014 19:31:51.614148 -0400
          lasttriggered:                                       Fri, 11 Jul 2014 19:31:51.614148 -0400
          nextscheduled:                                       Fri, 11 Jul 2014 20:20:25.614148 -0400
          recovery:                                            00:00:00
          start:                                               Fri, 11 Apr 2014 17:05:51.725749 -0400
          timeinterval:                                        01:00:00
          type:                                                3
          uuid:                                                6080db2b-3976-4e40-a767-f6953a88bb7a
      type:                                                    update
      uuid:                                                    d393af58-d8ec-464b-ba94-e508678749ac

Pending File Rename Operations:
================================
If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation.
Pending File Rename Operations:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\
    PendingFileRenameOperations    REG_MULTI_SZ    \??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\cleanup.old



MBAMProtector Registry Values:
==============================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector
    Type                          REG_DWORD        2
    Start                         REG_DWORD        3
    ErrorControl                  REG_DWORD        1
    ImagePath                     REG_EXPAND_SZ    \??\C:\windows\system32\drivers\mbam.sys
    Group                         REG_SZ        FSFilter Anti-Virus
    DependOnService               REG_MULTI_SZ    FltMgr

    WOW64                         REG_DWORD        1
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances
    DefaultInstance               REG_SZ        MBAMProtector Instance
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector Instance
    Altitude                      REG_SZ        328800
    Flags                         REG_DWORD        0
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Parameters
    PassThruFile                  REG_SZ        mbampt.exe
    ProductPath                   REG_SZ        C:\Program Files (x86)\Malwarebytes Anti-Malware
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Enum
    0                             REG_SZ        Root\LEGACY_MBAMPROTECTOR\0000
    Count                         REG_DWORD        1
    NextInstance                  REG_DWORD        1

MBAMService Registry Values:
============================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMService
    Type                          REG_DWORD        16
    Start                         REG_DWORD        2
    ErrorControl                  REG_DWORD        1
    ImagePath                     REG_EXPAND_SZ    "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
    DependOnService               REG_MULTI_SZ    MBAMProtector

    WOW64                         REG_DWORD        1
    ObjectName                    REG_SZ        LocalSystem
    Description                   REG_SZ        Malwarebytes Anti-Malware service
    DelayedAutostart              REG_DWORD        0

MBAMScheduler Registry Values:
==============================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMScheduler
    Type                          REG_DWORD        16
    Start                         REG_DWORD        2
    ErrorControl                  REG_DWORD        1
    ImagePath                     REG_EXPAND_SZ    "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
    WOW64                         REG_DWORD        1
    ObjectName                    REG_SZ        LocalSystem
    Description                   REG_SZ        Malwarebytes Anti-Malware scheduler

Terminal Services Status for (null) entries in PM logs and GetUserToken errors:
===============================================================================

--------------TERMService:--------------
Type:                   32
State:                  1 (The service is not running.) (State is stopped)
WIN32_EXIT_CODE:        1077
SERVICE_EXIT_CODE:      0
CHECKPOINT:             0
WAIT_HINT:              0


TermService Start is set to: 3 (Manual Startup)

Proxy Status: No proxy is Set

LAN Settings:
=============

only 'Automatically detect settings' is selected

SystemPartition:
================

HKEY_LOCAL_MACHINE\SYSTEM\Setup\
    SystemPartition    REG_SZ        \Device\HarddiskVolume2

Balloon Tips Status:
====================

Enabled

Time Format Settings:
=====================

Should be:
        h:mm:ss tt
        AM
        PM
        :

Currently:
REG_SZ        h:mm:ss tt
REG_SZ        AM
REG_SZ        PM
REG_SZ        :

Language and Regional Settings:
===============================

ACP:     Language is English (United States)
MACCP:     Language is English (United States)
OEMCP:     Language is English (United States)

Startup Folders for Error_Expanding_Variables Check:
====================================================

All Users Startup Folder Exists.
Current User's Startup Folder Exists.


Context Menu Entries:
=====================
















List of MBAM Related Directories:
=================================

C:\Program Files (x86)\Malwarebytes Anti-Malware\
7z.dll                                      File Size: 920888    BYTES    FileVersion:  9.20.0.0       MD5: [9f522b2708cab181c0f137abbcd1de2e]
atl100.dll                                  File Size: 159032    BYTES    FileVersion:  10.0.40219.325 MD5: [e013127ee031f1418b72fde79b1c2366]
changes.txt                                 File Size: 2261      BYTES    FileVersion:  N/A            MD5: [af70267bdf9a37a96f1a79a5c3720ae6]
license.rtf                                 File Size: 39478     BYTES    FileVersion:  N/A            MD5: [8627b31943a534aad30d154c2b2c1aaf]
master.conf                                 File Size: 1258      BYTES    FileVersion:  N/A            MD5: [9702ca5e82d3756c6d8af34a2ababaea]
mbam.dll                                    File Size: 579896    BYTES    FileVersion:  1.0.7.0        MD5: [d32c2a98859cb22d57a665f15f351e7d]
mbam.exe                                    File Size: 6970168   BYTES    FileVersion:  1.0.0.532      MD5: [4fbc630768570e6ac35c3de8f6ec79f5]
mbamcore.dll                                File Size: 1680696   BYTES    FileVersion:  1.0.11.0       MD5: [f722fa26739eafcbd8d5f3829b632cd7]
mbamdor.exe                                 File Size: 54072     BYTES    FileVersion:  1.0.1.0        MD5: [4da2f2da54a92850f56c0db712058188]
mbamext.dll                                 File Size: 184632    BYTES    FileVersion:  3.0.4.0        MD5: [945bb364b09f3a8e998dbff02a0a5a58]
mbampt.exe                                  File Size: 39736     BYTES    FileVersion:  1.0.0.0        MD5: [9acd7583584c93ee542c273df8e91dc1]
mbamscheduler.exe                           File Size: 1809720   BYTES    FileVersion:  3.0.2.0        MD5: [d84aea3f3329d622dfc1297dddf6163b]
mbamservice.exe                             File Size: 860472    BYTES    FileVersion:  3.0.2.0        MD5: [4f45ed469906494f9bf754e476390dbd]
mbamsrv.dll                                 File Size: 4437816   BYTES    FileVersion:  1.1.0.0        MD5: [9b48e38c35f08fa831b387a0b27c40aa]
msvcp100.dll                                File Size: 421688    BYTES    FileVersion:  10.0.40219.325 MD5: [e4b829081e639e42985853bae754a53d]
msvcr100.dll                                File Size: 774456    BYTES    FileVersion:  10.0.40219.325 MD5: [80fcedbe920e9cbe30d9d3665bd6efed]
QtCore4.dll                                 File Size: 2732856   BYTES    FileVersion:  4.8.4.0        MD5: [30490eed6a1e20e8259c0b9c58f488fe]
QtGui4.dll                                  File Size: 8575288   BYTES    FileVersion:  4.8.4.0        MD5: [15e21aa7d0c0c994cd565eeb96d13c20]
QtNetwork4.dll                              File Size: 909112    BYTES    FileVersion:  4.8.4.0        MD5: [d7588d42e29080c32a003bee465160d8]
unins000.dat                                File Size: 43650     BYTES    FileVersion:  N/A            MD5: [f37f359d24a770a062cb68e331727883]
unins000.exe                                File Size: 718037    BYTES    FileVersion:  51.52.0.0      MD5: [d2796ecf50731e696f0c065d24c0827a]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon\Windows
chameleon.chm                               File Size: 235882    BYTES    FileVersion:  N/A            MD5: [c4190b71f037714aa77aba294434ba5b]
firefox.com                                 File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
firefox.exe                                 File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
firefox.pif                                 File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
firefox.scr                                 File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
iexplore.exe                                File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
mbam-chameleon.com                          File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
mbam-chameleon.exe                          File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
mbam-chameleon.pif                          File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
mbam-chameleon.scr                          File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
mbam-killer.exe                             File Size: 1181496   BYTES    FileVersion:  N/A            MD5: [c6927fd8f7e9105b64db5d5a08b53731]
rundll32.exe                                File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
svchost.exe                                 File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
windows.exe                                 File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]
winlogon.exe                                File Size: 750392    BYTES    FileVersion:  3.0.4.0        MD5: [09882e8edd1144e6ef1af6d1f98305ee]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\imageformats
qgif4.dll                                   File Size: 32568     BYTES    FileVersion:  4.8.4.0        MD5: [e59f533c26c8375cd120b4791482217e]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Languages
lang_bg.qm                                  File Size: 144048    BYTES    FileVersion:  N/A            MD5: [9ccb79999432d56b9843a3e2b2c90325]
lang_bs.qm                                  File Size: 145523    BYTES    FileVersion:  N/A            MD5: [6ab7a6274d4f9f7553c944f5c66201ba]
lang_ca.qm                                  File Size: 132254    BYTES    FileVersion:  N/A            MD5: [68a83ec63b6e7bc5dbdd412bcc49c6ce]
lang_cs.qm                                  File Size: 141243    BYTES    FileVersion:  N/A            MD5: [6b8acee7f461fa69b83d2c45c3725427]
lang_da.qm                                  File Size: 130101    BYTES    FileVersion:  N/A            MD5: [8539796784746218b229419e99ab308d]
lang_de.qm                                  File Size: 149462    BYTES    FileVersion:  N/A            MD5: [fcd3bc376ad219396e8c7d3c87cd8864]
lang_el.qm                                  File Size: 149912    BYTES    FileVersion:  N/A            MD5: [74f13f95f63fe96c08e571598df052d6]
lang_en.qm                                  File Size: 115961    BYTES    FileVersion:  N/A            MD5: [8c9da1c0ce06b89f8d323bf948bfba4e]
lang_es.qm                                  File Size: 130487    BYTES    FileVersion:  N/A            MD5: [33e1c6d40b841cc2e783ec8d8102e66f]
lang_et.qm                                  File Size: 138126    BYTES    FileVersion:  N/A            MD5: [aa215b5f37a72a69854c9163ac543b51]
lang_fi.qm                                  File Size: 144256    BYTES    FileVersion:  N/A            MD5: [18912c339939c3a6629004ec900f4fe4]
lang_fr.qm                                  File Size: 149253    BYTES    FileVersion:  N/A            MD5: [ec2bf2f431c4273f151b8c8a7b84c387]
lang_he.qm                                  File Size: 116101    BYTES    FileVersion:  N/A            MD5: [9e692744e77051c6ce14df32f9b71920]
lang_hr.qm                                  File Size: 139841    BYTES    FileVersion:  N/A            MD5: [3e3737fe86eb595c5f6817eebf731aa7]
lang_hu.qm                                  File Size: 145621    BYTES    FileVersion:  N/A            MD5: [52d3d7fcf8c8db071ef0573a1357c2fd]
lang_id.qm                                  File Size: 143102    BYTES    FileVersion:  N/A            MD5: [80473d2c73d2f54f2b23c9316f2d0ceb]
lang_it.qm                                  File Size: 146851    BYTES    FileVersion:  N/A            MD5: [7e7aea7d0b433d7e912ed9f0887684a7]
lang_ja.qm                                  File Size: 121282    BYTES    FileVersion:  N/A            MD5: [19ac79b7a5e05d665e417c2dd75afc94]
lang_ko.qm                                  File Size: 118033    BYTES    FileVersion:  N/A            MD5: [de213178c14490bf452ea45278d3442d]
lang_nl.qm                                  File Size: 146325    BYTES    FileVersion:  N/A            MD5: [5aec6f6bdc5e6c28744e6ef374709eeb]
lang_no.qm                                  File Size: 142918    BYTES    FileVersion:  N/A            MD5: [4388c08217618af2e24173af6f5d3f97]
lang_pl.qm                                  File Size: 145434    BYTES    FileVersion:  N/A            MD5: [699700c889447d1f9b607c04f07fff67]
lang_pt_BR.qm                               File Size: 131739    BYTES    FileVersion:  N/A            MD5: [a3430222223d59da8ec6ea1edae5ee2f]
lang_pt_PT.qm                               File Size: 149128    BYTES    FileVersion:  N/A            MD5: [afdf1907af4c95f9af510d5fc1bb9067]
lang_ro.qm                                  File Size: 121166    BYTES    FileVersion:  N/A            MD5: [1672a2b3a9807a1497fe43824c0026c0]
lang_ru.qm                                  File Size: 122186    BYTES    FileVersion:  N/A            MD5: [d4dd1eea2b0f52aba2fca4d159c387f7]
lang_sk.qm                                  File Size: 119827    BYTES    FileVersion:  N/A            MD5: [8b200d162e8028843e41aa1a927cfd84]
lang_sl.qm                                  File Size: 143191    BYTES    FileVersion:  N/A            MD5: [1760a6aa6990b2f0c4c71ec04b25ac9c]
lang_sr.qm                                  File Size: 143261    BYTES    FileVersion:  N/A            MD5: [377d15c0da0249f4a7a58978b6307d81]
lang_sv.qm                                  File Size: 142525    BYTES    FileVersion:  N/A            MD5: [2587ead21967296fefdd0ee0684fe8b4]
lang_tr.qm                                  File Size: 142194    BYTES    FileVersion:  N/A            MD5: [880fcbe97ec6f13ec094f7371b5b295f]
lang_vi.qm                                  File Size: 126874    BYTES    FileVersion:  N/A            MD5: [c61281786b5bfec68afc742a19f6abd9]
lang_zh_tr.qm                               File Size: 110870    BYTES    FileVersion:  N/A            MD5: [f223d83580b1ee35edea13293cb2c80d]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Plugins
fixdamage.exe                               File Size: 821560    BYTES    FileVersion:  1.1.0.1010     MD5: [3a4dcd021d9f3a5305a22e5e309da305]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware
actions.ref                                 File Size: 314       BYTES    FileVersion:  N/A            MD5: [b26a36c0696e299fdfebe180c09c2737]
cleanup.old                                 File Size: 1680696   BYTES    FileVersion:  1.0.11.0       MD5: [f722fa26739eafcbd8d5f3829b632cd7]
domains.ref                                 File Size: 38        BYTES    FileVersion:  N/A            MD5: [8c30b536b67543eb68e68b9640d4d498]
exclusions.dat                              File Size: 2         BYTES    FileVersion:  N/A            MD5: [cf056a8f13f792f4413a75a30a5cdd95]
ips.ref                                     File Size: 33        BYTES    FileVersion:  N/A            MD5: [8a1c580788ea8de3f32862c2c1cf373c]
mbam-setup.exe                              File Size: 17292760  BYTES    FileVersion:  2.0.2.1012     MD5: [e90bf9e1562f40140161573b79cd5720]
mbamdor.old                                 File Size: 54072     BYTES    FileVersion:  1.0.1.0        MD5: [4da2f2da54a92850f56c0db712058188]
rules.ref                                   File Size: 8794827   BYTES    FileVersion:  N/A            MD5: [271ec7e46a587963daee43ce5eb442ff]
swissarmy.ref                               File Size: 21908     BYTES    FileVersion:  N/A            MD5: [440fd09ffb48aa2b4cbb1e7645ae5bc6]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration
build.conf                                  File Size: 4501      BYTES    FileVersion:  N/A            MD5: [f436d4faac9b6e3517abec7f48252ef0]
database.conf                               File Size: 4         BYTES    FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
gatekeeper.conf                             File Size: 4         BYTES    FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
license.conf                                File Size: 572       BYTES    FileVersion:  N/A            MD5: [00c3769285a3c32d7ebb6ed6c787d553]
manifest.conf                               File Size: 2133      BYTES    FileVersion:  N/A            MD5: [fc86b81df182fa4e5f72a0f65775e719]
marketing.conf                              File Size: 1434      BYTES    FileVersion:  N/A            MD5: [19533c40d9c9778b2ab423dbcf063d80]
net.conf                                    File Size: 6111      BYTES    FileVersion:  N/A            MD5: [33b10f3956155d9c0b86197b8aa143ac]
notifications.conf                          File Size: 4         BYTES    FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
scheduler.conf                              File Size: 2282      BYTES    FileVersion:  N/A            MD5: [4814a2edac8532867b10f05a802d5eb9]
settings.conf                               File Size: 1176      BYTES    FileVersion:  N/A            MD5: [e1d14d9f569bf59296481ac2c436dd43]
statistics.conf                             File Size: 597       BYTES    FileVersion:  N/A            MD5: [aa58d06bdef00bcea1d4dc8b026f0f13]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs
mbam-log-2014-04-11 (16-39-43).xml          File Size: 3016      BYTES    FileVersion:  N/A            MD5: [6d41a86bce93c572cdfff6b1fd75b1b9]
mbam-log-2014-04-12 (11-26-54).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [814a06154e03897b97e28afb310b3212]
mbam-log-2014-04-14 (18-26-40).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [76530f3a4a393d1d1ad2caf6376ff6a5]
mbam-log-2014-04-15 (14-11-46).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [0af59546ffa27414a5adc3a77ef7f8a7]
mbam-log-2014-04-17 (17-49-23).xml          File Size: 2478      BYTES    FileVersion:  N/A            MD5: [50390b706e9a4632259d506c9d97c6d2]
mbam-log-2014-04-19 (16-47-30).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [7233aa7315561a617d584fa1a0876194]
mbam-log-2014-04-20 (16-56-46).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [0f8ad0c13732324e24a298ac3c70636c]
mbam-log-2014-04-21 (16-45-43).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [d7f891c854921c7a57f0b5ddf53ca1f9]
mbam-log-2014-04-23 (19-16-46).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [f151bab935e6098d1732cb6121c7dcf3]
mbam-log-2014-04-24 (19-22-48).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [6e48537c69e7187bdd5d9aa53127abf6]
mbam-log-2014-04-25 (10-30-05).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [0f97df9a044812bd24366c9d7321096d]
mbam-log-2014-04-25 (19-20-28).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [845c7bd55f924918e4245870cc80f928]
mbam-log-2014-04-26 (19-27-23).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [297d9872a37a6a870961b9051ba0b2d4]
mbam-log-2014-04-27 (19-26-00).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [19b06abcf767ae55a932b2f094fe44b7]
mbam-log-2014-05-01 (11-40-00).xml          File Size: 2478      BYTES    FileVersion:  N/A            MD5: [b2e57108cc02a45a1a365a32eb744270]
mbam-log-2014-05-07 (17-38-02).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [b53d25c62f1c6ea7c84ee1707862b0bb]
mbam-log-2014-05-08 (17-26-09).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [47f219118c70831a888e25c6baf7fca7]
mbam-log-2014-05-09 (17-31-27).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [ee1a11dfe9ac6280f6a57fad120bf7a3]
mbam-log-2014-05-10 (17-32-13).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [dcc0443c744b2bcf0e8c5e10bd04be01]
mbam-log-2014-05-11 (17-23-38).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [8fd36f14062690cc24b9af223f1d5ba5]
mbam-log-2014-05-12 (07-42-29).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [f7c57c48be4cfa0c9ec9311c5d74e4d4]
mbam-log-2014-05-18 (19-24-57).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [eef443179f0dd76d4a00a7bf1f107217]
mbam-log-2014-05-21 (12-40-50).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [5d5c57cbc8f9e7a6af07809c1404edfd]
mbam-log-2014-05-26 (19-29-31).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [a6ae562882de175186ebf40cf2b02626]
mbam-log-2014-05-27 (19-38-38).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [1728e6711e967aaf18b694cafe6dcee9]
mbam-log-2014-05-28 (19-48-51).xml          File Size: 2486      BYTES    FileVersion:  N/A            MD5: [57c900edae67458ad133f319ef1217f4]
mbam-log-2014-06-06 (12-06-21).xml          File Size: 2510      BYTES    FileVersion:  N/A            MD5: [9bb6d41febaf8667db711a38d19410c8]
mbam-log-2014-06-09 (14-08-28).xml          File Size: 2510      BYTES    FileVersion:  N/A            MD5: [c5119cb9103ff5ab25419c3dc4d5fb49]
mbam-log-2014-06-10 (14-06-33).xml          File Size: 2510      BYTES    FileVersion:  N/A            MD5: [cee493282c3b73732c8aef0f1f0bd62d]
mbam-log-2014-06-12 (15-32-24).xml          File Size: 2510      BYTES    FileVersion:  N/A            MD5: [b752d5baebcb553312a6cc3c170e3b9b]
mbam-log-2014-06-23 (18-31-56).xml          File Size: 2510      BYTES    FileVersion:  N/A            MD5: [a0eb9cca40eefdc09dded4f818cb785f]
mbam-log-2014-07-03 (19-02-52).xml          File Size: 2508      BYTES    FileVersion:  N/A            MD5: [2b5c4091c882c33b4398aa920710bf04]
mbam-log-2014-07-04 (19-16-30).xml          File Size: 2508      BYTES    FileVersion:  N/A            MD5: [f732e2f02c0e220601f6e502523f1875]
protection-log-2014-04-11.xml               File Size: 7669      BYTES    FileVersion:  N/A            MD5: [68f9741ea855c422c46f5e28323bc826]
protection-log-2014-04-12.xml               File Size: 8599      BYTES    FileVersion:  N/A            MD5: [b37c71032810ba61e9b2cc9ccf869842]
protection-log-2014-04-13.xml               File Size: 5313      BYTES    FileVersion:  N/A            MD5: [78b1cac2aeb0884c7cff8c03e949aa16]
protection-log-2014-04-14.xml               File Size: 9405      BYTES    FileVersion:  N/A            MD5: [fecee49aa3ff5a82626187990b30519a]
protection-log-2014-04-15.xml               File Size: 9403      BYTES    FileVersion:  N/A            MD5: [7b3e1d63f43542df5a68f864e39c90fd]
protection-log-2014-04-16.xml               File Size: 11120     BYTES    FileVersion:  N/A            MD5: [3747101c048fe05ab2c5c87c79efe6b8]
protection-log-2014-04-17.xml               File Size: 8186      BYTES    FileVersion:  N/A            MD5: [28a47a67a2a73b1b2784fa892ff600c8]
protection-log-2014-04-18.xml               File Size: 7359      BYTES    FileVersion:  N/A            MD5: [90d6e90f61f88ef097753110c42c2b13]
protection-log-2014-04-19.xml               File Size: 15678     BYTES    FileVersion:  N/A            MD5: [42597b81f500835336f291374e74f113]
protection-log-2014-04-20.xml               File Size: 9405      BYTES    FileVersion:  N/A            MD5: [c384aa06806b440fcdc60b7ca3a5e717]
protection-log-2014-04-21.xml               File Size: 5313      BYTES    FileVersion:  N/A            MD5: [87fe5da2fb2173070ff246cc43e68b64]
protection-log-2014-04-22.xml               File Size: 12900     BYTES    FileVersion:  N/A            MD5: [88966df54da374da52f0deaa64fffcfc]
protection-log-2014-04-23.xml               File Size: 7359      BYTES    FileVersion:  N/A            MD5: [39301d8f7f8888794973530f8e9919e4]
protection-log-2014-04-24.xml               File Size: 11400     BYTES    FileVersion:  N/A            MD5: [1c9abb0c0833c8df822a369541ef145b]
protection-log-2014-04-25.xml               File Size: 17590     BYTES    FileVersion:  N/A            MD5: [014576cc18ea5c816d9ee7224825c73c]
protection-log-2014-04-26.xml               File Size: 9406      BYTES    FileVersion:  N/A            MD5: [8abd2272f2b42514a76c3c77c50737ff]
protection-log-2014-04-27.xml               File Size: 6911      BYTES    FileVersion:  N/A            MD5: [154d8c22791579bdac6d7e00539a02f1]
protection-log-2014-04-28.xml               File Size: 7359      BYTES    FileVersion:  N/A            MD5: [989591cce3f19a7fcffa6ea5c8e362f7]
protection-log-2014-04-29.xml               File Size: 14323     BYTES    FileVersion:  N/A            MD5: [2dc8dc54dcbf96a05dd50f907fee3974]
protection-log-2014-04-30.xml               File Size: 5316      BYTES    FileVersion:  N/A            MD5: [731102a34dea5f8868c256238307bf03]
protection-log-2014-05-01.xml               File Size: 9400      BYTES    FileVersion:  N/A            MD5: [4883a6a8b784a29b8b8c25c342e7ae91]
protection-log-2014-05-02.xml               File Size: 9691      BYTES    FileVersion:  N/A            MD5: [feaa2a4d9da82c48571ab03c585e1f52]
protection-log-2014-05-03.xml               File Size: 3266      BYTES    FileVersion:  N/A            MD5: [f6f0145ad851a1d9a716c0711daa6b7f]
protection-log-2014-05-04.xml               File Size: 5309      BYTES    FileVersion:  N/A            MD5: [7180c74d7b8be7ce8f6c572867340e3c]
protection-log-2014-05-05.xml               File Size: 17272     BYTES    FileVersion:  N/A            MD5: [b39cd0371325747cb5c04288623d5f6c]
protection-log-2014-05-06.xml               File Size: 3266      BYTES    FileVersion:  N/A            MD5: [8ad735a1e433faf5b6e2e9b25726e489]
protection-log-2014-05-07.xml               File Size: 13091     BYTES    FileVersion:  N/A            MD5: [34b6a6ee78417533f630d9ab0a4df546]
protection-log-2014-05-08.xml               File Size: 13490     BYTES    FileVersion:  N/A            MD5: [fd5d3d6b569f6bf4600da7de8eceab1a]
protection-log-2014-05-09.xml               File Size: 10567     BYTES    FileVersion:  N/A            MD5: [f7538494025511961fd944a99e7ef413]
protection-log-2014-05-10.xml               File Size: 15581     BYTES    FileVersion:  N/A            MD5: [2d806661eed5c48ec06af50ec42681ce]
protection-log-2014-05-11.xml               File Size: 12272     BYTES    FileVersion:  N/A            MD5: [17bba729a05deb512a761edf9043a125]
protection-log-2014-05-12.xml               File Size: 10231     BYTES    FileVersion:  N/A            MD5: [6c477cbe9fdd2c211523daa8e3591068]
protection-log-2014-05-13.xml               File Size: 17551     BYTES    FileVersion:  N/A            MD5: [a72ff39084ab2de12209bc76b1c38edf]
protection-log-2014-05-14.xml               File Size: 12300     BYTES    FileVersion:  N/A            MD5: [efa5c0763e8fe1856c64d6b00438123d]
protection-log-2014-05-15.xml               File Size: 7365      BYTES    FileVersion:  N/A            MD5: [e65f083aaef37904e44393ba3b51ff73]
protection-log-2014-05-16.xml               File Size: 6481      BYTES    FileVersion:  N/A            MD5: [137f4b2e0be29992868b50929f6d60b3]
protection-log-2014-05-17.xml               File Size: 5317      BYTES    FileVersion:  N/A            MD5: [ec70a2d73b68e2c3b8d6fc0d7f8ab519]
protection-log-2014-05-18.xml               File Size: 9409      BYTES    FileVersion:  N/A            MD5: [24adc9a4523b8faa6271d7e64aa8f805]
protection-log-2014-05-20.xml               File Size: 18831     BYTES    FileVersion:  N/A            MD5: [3cd2c8ee2ffd1791726fab2d67122df8]
protection-log-2014-05-21.xml               File Size: 11455     BYTES    FileVersion:  N/A            MD5: [0b70c7ed2307810903d58a9d9118cdee]
protection-log-2014-05-22.xml               File Size: 5314      BYTES    FileVersion:  N/A            MD5: [965741a6f12485f133e8343093fc421d]
protection-log-2014-05-23.xml               File Size: 3268      BYTES    FileVersion:  N/A            MD5: [d1bf50809554b76d0c314269a5d3cf70]
protection-log-2014-05-24.xml               File Size: 11452     BYTES    FileVersion:  N/A            MD5: [4acb5513a01fdc61cd9faf17b4f55ad3]
protection-log-2014-05-25.xml               File Size: 3270      BYTES    FileVersion:  N/A            MD5: [07af8e27a3b0c034d544aea413bff7e6]
protection-log-2014-05-26.xml               File Size: 7359      BYTES    FileVersion:  N/A            MD5: [1d3389312668b3ca46c68f798dd6ff00]
protection-log-2014-05-27.xml               File Size: 7364      BYTES    FileVersion:  N/A            MD5: [a1ce78e611a95eca96f4eb3a9aa90644]
protection-log-2014-05-28.xml               File Size: 11452     BYTES    FileVersion:  N/A            MD5: [b4374857e95f8219be2eabf48c854a3a]
protection-log-2014-05-29.xml               File Size: 6480      BYTES    FileVersion:  N/A            MD5: [4ec0193e50cddd75db08d1815ea9bd20]
protection-log-2014-05-30.xml               File Size: 10602     BYTES    FileVersion:  N/A            MD5: [ce331403a6952d326e7661669d2c073c]
protection-log-2014-05-31.xml               File Size: 5318      BYTES    FileVersion:  N/A            MD5: [b3c6c68dfb046eb6db32c1dfdf9e9a78]
protection-log-2014-06-01.xml               File Size: 3265      BYTES    FileVersion:  N/A            MD5: [769ae2b9c4aceb07e0d5ae0ef57d94aa]
protection-log-2014-06-02.xml               File Size: 12895     BYTES    FileVersion:  N/A            MD5: [0603b87a6b0450d4251e9e8c3aea9bfc]
protection-log-2014-06-03.xml               File Size: 3570      BYTES    FileVersion:  N/A            MD5: [363c68099428945e5686cae4d4b74cfe]
protection-log-2014-06-04.xml               File Size: 3265      BYTES    FileVersion:  N/A            MD5: [5c5f0d53886f41435f827b318af2a6e4]
protection-log-2014-06-05.xml               File Size: 7356      BYTES    FileVersion:  N/A            MD5: [eeee78328d5a85fabf8bd1e6d9070d0d]
protection-log-2014-06-06.xml               File Size: 16702     BYTES    FileVersion:  N/A            MD5: [0f6f221af5bb53b76dabde0542aba410]
protection-log-2014-06-07.xml               File Size: 7354      BYTES    FileVersion:  N/A            MD5: [bd81327e7508c3956200093c567a5c4d]
protection-log-2014-06-08.xml               File Size: 5309      BYTES    FileVersion:  N/A            MD5: [dde56ea83ca7488e9369c603f0e84e17]
protection-log-2014-06-09.xml               File Size: 14308     BYTES    FileVersion:  N/A            MD5: [f3be8fb127961fb2bc6bc08b4fa0bf1a]
protection-log-2014-06-10.xml               File Size: 16584     BYTES    FileVersion:  N/A            MD5: [d3f176de0aa40638edfbf12bc94af3b3]
protection-log-2014-06-11.xml               File Size: 6482      BYTES    FileVersion:  N/A            MD5: [f912ef6ebd919d3e3da8ef7c2f8269c6]
protection-log-2014-06-12.xml               File Size: 20078     BYTES    FileVersion:  N/A            MD5: [cf4a6b032f1a1bb686afd9ff336fd809]
protection-log-2014-06-13.xml               File Size: 8526      BYTES    FileVersion:  N/A            MD5: [6327dd86c14ea4bc950f1bc6a4c5eb73]
protection-log-2014-06-14.xml               File Size: 5313      BYTES    FileVersion:  N/A            MD5: [884baa92fe920aa20387172b770706aa]
protection-log-2014-06-15.xml               File Size: 9347      BYTES    FileVersion:  N/A            MD5: [1accfce950d817c8f44550abac025af9]
protection-log-2014-06-16.xml               File Size: 5316      BYTES    FileVersion:  N/A            MD5: [564cb1c2129000b6bc1f52abf62a87a3]
protection-log-2014-06-17.xml               File Size: 8525      BYTES    FileVersion:  N/A            MD5: [2b1080d318ad0679619093e79474a768]
protection-log-2014-06-19.xml               File Size: 5626      BYTES    FileVersion:  N/A            MD5: [bd603b3e402eebf20070704ffd16155d]
protection-log-2014-06-21.xml               File Size: 3574      BYTES    FileVersion:  N/A            MD5: [f502a52fc90852746e6acd84885b26ad]
protection-log-2014-06-22.xml               File Size: 3267      BYTES    FileVersion:  N/A            MD5: [e9a23e057c4cb4983366c1c8748b82d2]
protection-log-2014-06-23.xml               File Size: 5316      BYTES    FileVersion:  N/A            MD5: [0edaa880677dd824fc20dc5258876f22]
protection-log-2014-06-24.xml               File Size: 7670      BYTES    FileVersion:  N/A            MD5: [b150910cfce1d75287218a4de311d03e]
protection-log-2014-06-25.xml               File Size: 5316      BYTES    FileVersion:  N/A            MD5: [f32d8c319ea5cadf4e647571194d3d15]
protection-log-2014-06-26.xml               File Size: 3269      BYTES    FileVersion:  N/A            MD5: [878b00a1aa9a4504872faceb5e2d5804]
protection-log-2014-06-27.xml               File Size: 5314      BYTES    FileVersion:  N/A            MD5: [222a4da5a17931d8fe94764e8208764d]
protection-log-2014-06-29.xml               File Size: 7359      BYTES    FileVersion:  N/A            MD5: [34d99b6a037453e93316728fb733d99a]
protection-log-2014-06-30.xml               File Size: 8525      BYTES    FileVersion:  N/A            MD5: [a3bb011bf289183995c8e4f898edde4c]
protection-log-2014-07-01.xml               File Size: 6758      BYTES    FileVersion:  N/A            MD5: [b06e960062cf63206003ff665a37953e]
protection-log-2014-07-02.xml               File Size: 5309      BYTES    FileVersion:  N/A            MD5: [79dc65169289fdc21cd29fd32a0985dd]
protection-log-2014-07-03.xml               File Size: 9707      BYTES    FileVersion:  N/A            MD5: [da41ea4a0df9a83a340ee26f5b99e723]
protection-log-2014-07-04.xml               File Size: 6477      BYTES    FileVersion:  N/A            MD5: [579f4ac845aa8bd72d4fdb1a094fcd76]
protection-log-2014-07-05.xml               File Size: 8521      BYTES    FileVersion:  N/A            MD5: [32e56ba168183bfe78029c941ca781af]
protection-log-2014-07-06.xml               File Size: 3265      BYTES    FileVersion:  N/A            MD5: [de0e72bea0d94e63d48a51ae51a4628b]
protection-log-2014-07-07.xml               File Size: 11441     BYTES    FileVersion:  N/A            MD5: [145660d18ad915c91e764e5d0036586e]
protection-log-2014-07-08.xml               File Size: 17287     BYTES    FileVersion:  N/A            MD5: [990b9a2fb1b8a6b5c730f52d06dbf1f0]
protection-log-2014-07-09.xml               File Size: 21019     BYTES    FileVersion:  N/A            MD5: [d4336ef06a1c427fdfc5e41480399b3c]
protection-log-2014-07-10.xml               File Size: 4434      BYTES    FileVersion:  N/A            MD5: [997150b746029014e5b35fd15481648d]
protection-log-2014-07-11.xml               File Size: 6481      BYTES    FileVersion:  N/A            MD5: [bb68bd278a1a61e7d7c6eec4a3462ed3]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine
0054037288.data                             File Size: 802       BYTES    FileVersion:  N/A            MD5: [eedced57a291970b16a5ffca6f6aa750]
0054037288.quar                             File Size: 870       BYTES    FileVersion:  N/A            MD5: [af44ae13864fa622f4646e051f4d9a3e]
0645268212.data                             File Size: 785       BYTES    FileVersion:  N/A            MD5: [fa458170461739ab75cde437cf067393]
0645268212.quar                             File Size: 373424    BYTES    FileVersion:  N/A            MD5: [541b6c580d410cd0151207354688aca2]
1138865593.data                             File Size: 805       BYTES    FileVersion:  N/A            MD5: [b6b493eef10cd38e3d9af2571ffef664]
1138865593.quar                             File Size: 670       BYTES    FileVersion:  N/A            MD5: [ed9415f621c598290e237c9e3cc0d614]
2165496553.data                             File Size: 754       BYTES    FileVersion:  N/A            MD5: [42b5eb71b9c203e3cb762e6a18d62fcf]
2165496553.quar                             File Size: 7992528   BYTES    FileVersion:  N/A            MD5: [e629e8d087441ff02769ef48c77cf139]
2196919730.data                             File Size: 774       BYTES    FileVersion:  N/A            MD5: [0144d668cc5a0c342b2ef08a0748d6b4]
2196919730.quar                             File Size: 1633984   BYTES    FileVersion:  N/A            MD5: [05256082b0c5330512a980178bb7ae3e]
2314569539.data                             File Size: 853       BYTES    FileVersion:  N/A            MD5: [bb4a47483687dbf341a54df9f91c54aa]
2628549890.data                             File Size: 747       BYTES    FileVersion:  N/A            MD5: [a86efd1a02c604162bfb7966f4ea544f]
2628549890.quar                             File Size: 676       BYTES    FileVersion:  N/A            MD5: [40e33652960601265b2da093628def02]
2784031588.data                             File Size: 775       BYTES    FileVersion:  N/A            MD5: [49b4053678e7d2d885bed65776e01894]
2784031588.quar                             File Size: 1654976   BYTES    FileVersion:  N/A            MD5: [27a18ce72ccb11766a1fde2595849d64]
2828708870.data                             File Size: 1052      BYTES    FileVersion:  N/A            MD5: [33cb5e031b37063378170123c1551d48]
2857089713.data                             File Size: 755       BYTES    FileVersion:  N/A            MD5: [cb3b532521f9e1a392f6f82646434b80]
2857089713.quar                             File Size: 282008    BYTES    FileVersion:  N/A            MD5: [e98bf953dcd767880c2153487d9d9ead]
2995552532.data                             File Size: 1067      BYTES    FileVersion:  N/A            MD5: [8fe31947a75aab9db332d87fa58653dc]
3064432211.data                             File Size: 786       BYTES    FileVersion:  N/A            MD5: [4bf216eda1a4866ec59a316de736572e]
3064432211.quar                             File Size: 2040184   BYTES    FileVersion:  N/A            MD5: [e0e2365d1920af203f91e0642316569b]
3847205514.data                             File Size: 756       BYTES    FileVersion:  N/A            MD5: [ff54cbd702ec763aa4b8e7db2448d7ae]
3847205514.quar                             File Size: 1518      BYTES    FileVersion:  N/A            MD5: [02eea8dc8fd322494a9743099166d442]
4197336146.data                             File Size: 824       BYTES    FileVersion:  N/A            MD5: [651d8d433a1538d3380072813eb678d6]
4197336146.quar                             File Size: 356       BYTES    FileVersion:  N/A            MD5: [7b668f1b092e68494feee942bb3cec1e]
4430686699.data                             File Size: 771       BYTES    FileVersion:  N/A            MD5: [2e232cf2608931eae0dfdabf4ea99c17]
4430686699.quar                             File Size: 500440    BYTES    FileVersion:  N/A            MD5: [8c18d66cdda20077e4b50bb29b9aeb39]
4457610489.data                             File Size: 762       BYTES    FileVersion:  N/A            MD5: [9cd8a2328ee1a76cb8fdf2ae950e6c62]
4457610489.quar                             File Size: 271024    BYTES    FileVersion:  N/A            MD5: [6719aa4e41ae2f262710b6a54dceb15d]
4522378701.data                             File Size: 1055      BYTES    FileVersion:  N/A            MD5: [fc1aeae0fd86afd4b5abd78377143cb2]
4562590430.data                             File Size: 1040      BYTES    FileVersion:  N/A            MD5: [6f5747e53d019428007116c967923f1d]
4843652006.data                             File Size: 774       BYTES    FileVersion:  N/A            MD5: [0b57c022a044dd1ac4ade04c4db5beee]
4843652006.quar                             File Size: 1633984   BYTES    FileVersion:  N/A            MD5: [05256082b0c5330512a980178bb7ae3e]
5102510879.data                             File Size: 843       BYTES    FileVersion:  N/A            MD5: [92712b9bc7af735f47f87861f7306372]
5805003652.data                             File Size: 749       BYTES    FileVersion:  N/A            MD5: [1d0bd7e331af4f1e845edd6e15172677]
5805003652.quar                             File Size: 466       BYTES    FileVersion:  N/A            MD5: [3b077c6940f884b72d5371f710465b18]
6354135697.data                             File Size: 774       BYTES    FileVersion:  N/A            MD5: [3bf90175e53f55c456d12938ca99466e]
6354135697.quar                             File Size: 1654976   BYTES    FileVersion:  N/A            MD5: [27a18ce72ccb11766a1fde2595849d64]
8356991426.data                             File Size: 793       BYTES    FileVersion:  N/A            MD5: [479615e3490c20cdd6cebda323c9f4d5]
8356991426.quar                             File Size: 600       BYTES    FileVersion:  N/A            MD5: [7583fdb196256ec217c25d82ea7b0efa]
9486813322.data                             File Size: 755       BYTES    FileVersion:  N/A            MD5: [92ab3ef3b8dbb11d8515624179bd259a]
9486813322.quar                             File Size: 7992528   BYTES    FileVersion:  N/A            MD5: [e629e8d087441ff02769ef48c77cf139]

Malware Exclusions:
===================
Web Exclusions:
================
Quarantined Items:
===================
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.Softonic.A, Date: 2014/02/19 13:40:30, Type: File, Location: C:\Users\VIctor Morano\Downloads\Cane & Able\SoftonicDownloader_for_cain-abel.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.PasswordTool, Date: 2012/10/22 00:53:09, Type: File, Location: C:\Users\VIctor Morano\Downloads\Cane & Able\ca_setup.exe
Vendor: PUP.BundleOffers.IIQ, Date: 2012/10/21 23:15:05, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer_730.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Value, Location: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCR\SearchToolbarLib.CSearchToolbarImpl
Vendor: PUP.BundleOffers.IIQ, Date: 2012/09/26 16:58:21, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer1_730.exe
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND|
Vendor: PUP.BundleInstaller.OI, Date: 2012/08/28 23:39:33, Type: File, Location: C:\Users\VIctor Morano\Downloads\Miro\Miro_setup.exe
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND|
Vendor: PUP.Optional.SafeInstall.A, Date: 2014/07/11 20:24:32, Type: File, Location: C:\Users\VIctor Morano\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\O0OFLKDI\manualdownload.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCR\CLSID\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: Adware.InstallCore, Date: 2012/09/26 16:58:21, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\YouTubeToMP3Setup.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: File, Location: C:\Program Files (x86)\Search Toolbar\SearchToolbar.dll
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND|
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND|
Vendor: PUP.BundleOffers.IIQ, Date: 2012/10/13 20:53:27, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer_730.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Value, Location: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCR\SearchToolbarLib.CSearchToolbarImpl.1
Vendor: PUP.BundleOffers.IIQ, Date: 2012/09/26 16:58:21, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer_730.exe
Vendor: PUP.Optional.Softonic.A, Date: 2014/04/11 20:52:19, Type: Registry Key, Location: HKU\S-1-5-21-3621028071-1008099766-2742997306-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader
Vendor: PUP.PasswordTool, Date: 2012/10/26 01:08:42, Type: File, Location: C:\Users\VIctor Morano\Downloads\Cane & Able\1ca_setup.exe
===============================================================
END OF FILE


Edited by VicMJ, 11 July 2014 - 07:02 PM.


#8 wpgwpg

wpgwpg

  • Members
  • 1,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US of A
  • Local time:04:01 PM

Posted 11 July 2014 - 03:10 PM

 After you run Speccy click File -> Publish snapshot... Copy and paste the link it gives you into your next post.  


Everyone with a computer should back his system up to an external hard drive regularly.  :thumbsup:

#9 VicMJ

VicMJ
  • Topic Starter

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 11 July 2014 - 07:07 PM

I did rerun the Malwarebytes again and this time I remembered to set the rootkit scan option.  It found 5 problems and after I removed them I still had the AVG problem on an opening blank tab on FireFox but IE looks okay.

 

Okay here it is.

 

http://speccy.piriform.com/results/p4Ea5UbmXUYrh8GrSkhXA4s


Edited by VicMJ, 11 July 2014 - 07:13 PM.


#10 wpgwpg

wpgwpg

  • Members
  • 1,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US of A
  • Local time:04:01 PM

Posted 11 July 2014 - 07:23 PM

 Do you still have the problem?  I see Malwarebytes fixed some things and the Speccy report looks good from what I can see.  Your temperatures are all OK, and the SMART data from all 3 of your hard drives is good.  If you still have the problem, please download MiniToolBox and run it with the following boxes checked:

 
List last 10 Event Viewer Errors
 
List Installed Programs
 
Copy the resulting log and paste into a reply here.  I want to see what that Windows system error log has.

Everyone with a computer should back his system up to an external hard drive regularly.  :thumbsup:

#11 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:06:01 AM

Posted 11 July 2014 - 07:31 PM

Thanks but it was not required at this time -

 

These are the infections removed by MBAM, with the item listed, and after each one is the date it was removed.

 

Typical = Vendor: PUP Optional.SearchToolbar,(Potentially Unwanted Program). Date:(Date and time of scan) 2014/02/19 13:40:30, Type: (Removed from this area) Registry Key, Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\

 

Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, << This is the problem.

 

 

Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.Softonic.A, Date: 2014/02/19 13:40:30, Type: File, Location: C:\Users\VIctor Morano\Downloads\Cane & Able\SoftonicDownloader_for_cain-abel.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.PasswordTool, Date: 2012/10/22 00:53:09, Type: File, Location: C:\Users\VIctor Morano\Downloads\Cane & Able\ca_setup.exe
Vendor: PUP.BundleOffers.IIQ, Date: 2012/10/21 23:15:05, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer_730.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Value, Location: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCR\SearchToolbarLib.CSearchToolbarImpl
Vendor: PUP.BundleOffers.IIQ, Date: 2012/09/26 16:58:21, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer1_730.exe
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND|
Vendor: PUP.BundleInstaller.OI, Date: 2012/08/28 23:39:33, Type: File, Location: C:\Users\VIctor Morano\Downloads\Miro\Miro_setup.exe
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND|
Vendor: PUP.Optional.SafeInstall.A, Date: 2014/07/11 20:24:32, Type: File, Location: C:\Users\VIctor Morano\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\O0OFLKDI\manualdownload.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCR\CLSID\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: Adware.InstallCore, Date: 2012/09/26 16:58:21, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\YouTubeToMP3Setup.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: File, Location: C:\Program Files (x86)\Search Toolbar\SearchToolbar.dll
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND|
Vendor: PUP.Optional.Safesear.A, Date: 2014/07/11 20:24:32, Type: Registry Value, Location: HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND|
Vendor: PUP.BundleOffers.IIQ, Date: 2012/10/13 20:53:27, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer_730.exe
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Value, Location: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{9D425283-D487-4337-BAB6-AB8354A81457}
Vendor: PUP.Optional.SearchToolbar, Date: 2014/02/19 13:40:30, Type: Registry Key, Location: HKCR\SearchToolbarLib.CSearchToolbarImpl.1
Vendor: PUP.BundleOffers.IIQ, Date: 2012/09/26 16:58:21, Type: File, Location: C:\Users\VIctor Morano\Downloads\Free File viewers\freefileviewer_730.exe
Vendor: PUP.Optional.Softonic.A, Date: 2014/04/11 20:52:19, Type: Registry Key, Location: HKU\S-1-5-21-3621028071-1008099766-2742997306-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader
Vendor: PUP.PasswordTool, Date: 2012/10/26 01:08:42, Type: File, Location: C:\Users\VIctor Morano\Downloads\Cane & Able\1ca_setup.exe
===============================================================
END OF FILE

 

First - This is a "basic clean-up" and we will go further depending on your answers.

 

Please download and run RKill by Grinler.
 A black DOS box will appear for a short time and then disappear.
 This is normal and indicates the tool ran successfully.
 At most the tool will usually run for about 2 minutes
 Please Copy / Paste the small log back here.

 

Important: Do not reboot your computer until you complete the next step.

 

* NOW :
 Please download AdwCleaner by Xplode and save to your Desktop.
 * Double-click on AdwCleaner.exe to run the tool.
 * Vista/Windows 7/8 users right-click and select Run As Administrator.
 * Click on the Scan button (only once)
 * AdwCleaner will begin...be patient as the scan may take some time to complete.
 * After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
* Check the removals and see if you are OK with the list.

* Now
 * Click on the Clean button (only once)
 * Press OK when asked to close all programs and follow the onscreen prompts.
 * Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
 * After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
 * Copy and Paste the contents of that logfile in your next reply.

* A copy of all logfiles are also saved in the C:\AdwCleaner folder which was created when running the tool.

 

 

Next -

Please download Junkware Removal Tool by Thisisu

Open your browser and go to Downloads, then click on the Junkware Removal Tool to install it. 

Click on Run to initiate the installation.

To avoid potential conflicts, Temporarily Disable your Antivirus.

You may want to be offline when you do this.

Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select Run as Administrator.

The tool will open and start scanning your system.

Please be patient as this can take a while to complete depending on your system's specifications.

On completion, a log (JRT.txt) is saved to your desktop and will automatically open. 
Copy and this in your next post..



#12 VicMJ

VicMJ
  • Topic Starter

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 11 July 2014 - 10:27 PM

Rkill 2.6.7 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 07/11/2014 09:38:28 PM in x64 mode.
Windows Version: Windows 7 Professional Service Pack 1

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * C:\Windows\SysWOW64\obroker.exe (PID: 6484) [WD-HEUR]

1 proccess terminated!

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * Windows Defender Disabled

   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001

Checking Windows Service Integrity:

 * Windows Defender (WinDefend) is not Running.
   Startup Type set to: Manual

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * Cannot edit the HOSTS file.
 * Permissions Fixed. Administrators can now edit the HOSTS file.

 * HOSTS file entries found:

  127.0.0.1    www.007guard.com
  127.0.0.1    007guard.com
  127.0.0.1    008i.com
  127.0.0.1    www.008k.com
  127.0.0.1    008k.com
  127.0.0.1    www.00hq.com
  127.0.0.1    00hq.com
  127.0.0.1    010402.com
  127.0.0.1    www.032439.com
  127.0.0.1    032439.com
  127.0.0.1    www.0scan.com
  127.0.0.1    0scan.com
  127.0.0.1    1000gratisproben.com
  127.0.0.1    www.1000gratisproben.com
  127.0.0.1    1001namen.com
  127.0.0.1    www.1001namen.com
  127.0.0.1    100888290cs.com
  127.0.0.1    www.100888290cs.com
  127.0.0.1    www.100sexlinks.com
  127.0.0.1    100sexlinks.com

  20 out of 15492 HOSTS entries shown.
  Please review HOSTS file for further entries.

Program finished at: 07/11/2014 09:40:40 PM
Execution time: 0 hours(s), 2 minute(s), and 11 seconds(s)

 

===================================================================

 

# AdwCleaner v3.215 - Report created 11/07/2014 at 23:14:51
# Updated 09/07/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : VIctor Morano - GATEWAYCR
# Running from : C:\Users\VIctor Morano\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\VIctor Morano\AppData\Local\AVG SafeGuard toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207


-\\ Mozilla Firefox v30.0 (en-US)

[ File : C:\Users\VIctor Morano\AppData\Roaming\Mozilla\Firefox\Profiles\j3nrqb6u.default\prefs.js ]


*************************

AdwCleaner[R0].txt - [871 octets] - [11/07/2014 21:43:51]
AdwCleaner[S0].txt - [795 octets] - [11/07/2014 23:14:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [854 octets] ##########

 

====================================================================

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Professional x64
Ran by VIctor Morano on Sat 07/12/2014 at  4:04:57.69
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\GTaskMMC_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\GTaskMMC_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\taskman_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\taskman_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\softonic-us-silent_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\softonic-us-silent_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\GTaskMMC_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\GTaskMMC_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\taskman_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\taskman_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\softonic-us-silent_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\softonic-us-silent_RASMANCS



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Users\VIctor Morano\AppData\Roaming\getrighttogo"
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{3CF7220F-DE7A-4796-B7AA-CA1C3A527B97}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{4C93E1E6-B2FF-4D33-A112-17C71E0A2F62}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{69565846-74E9-4F7C-824E-3670E85EEEF4}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{8D94AC9D-A233-4B6B-A04B-29BD2AA5389B}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{D7BB1822-A7D4-42E2-8C60-CE7FF694528A}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{E28CB952-15EB-4F84-AE1E-DAD4F65B818D}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{EBFB7760-7487-4237-9014-CEBCAEC93C36}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{EC840B27-36FC-4277-B516-13E786FCE012}
Successfully deleted: [Empty Folder] C:\Users\VIctor Morano\appdata\local\{F0174917-D6EE-4F7A-9A1D-21AA9FC8213C}



~~~ FireFox

Successfully deleted: [File] C:\Users\VIctor Morano\AppData\Roaming\mozilla\firefox\profiles\j3nrqb6u.default\searchplugins\bing-zugo.xml
Successfully deleted the following from C:\Users\VIctor Morano\AppData\Roaming\mozilla\firefox\profiles\j3nrqb6u.default\prefs.js

user_pref("browser.search.order.1", "SafeSearch");
user_pref("extensions.searchtoolbar@zugo.com.install-event-fired", true);
Emptied folder: C:\Users\VIctor Morano\AppData\Roaming\mozilla\firefox\profiles\j3nrqb6u.default\minidumps [94 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 07/12/2014 at  4:14:36.31
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

=====================================================================

 

I still have the Safesearch tool bar problem.  It opens in a new tab, and if I don't close it and open another new tab the AVG search tool bar will open in that tab.  So they are both still there.


Edited by VicMJ, 12 July 2014 - 07:42 AM.


#13 VicMJ

VicMJ
  • Topic Starter

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 12 July 2014 - 08:16 AM

Here are the results from mimitoolbox.

 

MiniToolBox by Farbar  Version: 06-07-2014
Ran by VIctor Morano (administrator) on 12-07-2014 at 09:14:50
Running from "C:\Users\VIctor Morano\Desktop"
Microsoft Windows 7 Professional  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (07/12/2014 08:21:39 AM) (Source: Application Error) (User: )
Description: Faulting application name: PaperPortAnywhere.exe, version: 1.1.4276.25481, time stamp: 0x4e739ee3
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x53159a86
Exception code: 0xe0434352
Fault offset: 0x0000c42d
Faulting process id: 0x11c4
Faulting application start time: 0xPaperPortAnywhere.exe0
Faulting application path: PaperPortAnywhere.exe1
Faulting module path: PaperPortAnywhere.exe2
Report Id: PaperPortAnywhere.exe3

Error: (07/12/2014 08:21:34 AM) (Source: .NET Runtime) (User: )
Description: Application: PaperPortAnywhere.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: Microsoft.Http.HttpStageProcessingException
Stack:
   at OfficeDrop.Sync.RestClient.RecoverableHttpClient.Send(Microsoft.Http.HttpMethod, System.String, OfficeDrop.Sync.RestClient.ContentCreator)
   at OfficeDrop.Sync.RestClient.Session.Login(System.String, System.String)
   at OfficeDrop.Sync.RestClient.Session.LoginWithDefaultCredentials()
   at OfficeDrop.Sync.App.StartReplica()
   at OfficeDrop.Sync.App.OnNetworkChange(System.Object, System.EventArgs)
   at System.Net.NetworkInformation.NetworkChange+AddressChangeListener.RunHandlerCallback(System.Object)
   at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   at System.Net.NetworkInformation.NetworkChange+AddressChangeListener.AddressChangedCallback(System.Object, Boolean)
   at System.Threading._ThreadPoolWaitOrTimerCallback.PerformWaitOrTimerCallback(System.Object, Boolean)

Error: (07/12/2014 08:20:23 AM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister   23 GatewayCR._printershare._tcp.local. SRV 0 0 13924 GatewayCR.local.

Error: (07/12/2014 08:20:23 AM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.144:5353   23 GatewayCR._printershare._tcp.local. SRV 0 0 25654 GatewayCR.local.

Error: (07/12/2014 08:20:22 AM) (Source: Bonjour Service) (User: )
Description: mDNSCoreReceiveResponse: Ignoring response received before we even began probing:   23 GatewayCR._printershare._tcp.local. SRV 0 0 13924 GatewayCR.local.

Error: (07/12/2014 08:20:22 AM) (Source: Bonjour Service) (User: )
Description: ResolveSimultaneousProbe: 0000000000000000 Our Record 3 lost: 62795C37   23 GatewayCR._printershare._tcp.local. SRV 0 0 13924 GatewayCR.local.

Error: (07/12/2014 08:20:22 AM) (Source: Bonjour Service) (User: )
Description: ResolveSimultaneousProbe: 000000000163BAE0 Pkt Record:        62795C37   23 GatewayCR._printershare._tcp.local. SRV 0 0 25654 GatewayCR.local.

Error: (07/12/2014 08:20:22 AM) (Source: Bonjour Service) (User: )
Description: ResolveSimultaneousProbe: 0000000000000000 Our Record 3 lost: 62795C37   23 GatewayCR._printershare._tcp.local. SRV 0 0 13924 GatewayCR.local.

Error: (07/12/2014 08:20:22 AM) (Source: Bonjour Service) (User: )
Description: ResolveSimultaneousProbe: 000000000163BAE0 Pkt Record:        62795C37   23 GatewayCR._printershare._tcp.local. SRV 0 0 25654 GatewayCR.local.

Error: (07/12/2014 08:20:21 AM) (Source: Bonjour Service) (User: )
Description: ResolveSimultaneousProbe: 0000000000000000 Our Record 2 won:  62795C37   23 GatewayCR._printershare._tcp.local. SRV 0 0 25654 GatewayCR.local.


System errors:
=============
Error: (07/12/2014 08:20:08 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/12/2014 04:25:15 AM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}


Microsoft Office Sessions:
=========================
Error: (12/06/2013 05:03:31 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 207 seconds with 180 seconds of active time.  This session ended with a crash.



 Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version:  - Microsoft)
=========================== Installed Programs ============================
2nd Speech Center 4.15.10.1202 (HKLM-x32\...\2nd Speech Center_is1) (Version: 4.15.10.1202 - Zero2000.com)
3Planesoft Screensaver Manager 1.4 (HKLM-x32\...\3Planesoft Screensaver Manager_is1) (Version: 1.4 - 3Planesoft)
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
8500A909_eDocs (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909_Help (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909g (x32 Version: 50.0.165.000 - Hewlett-Packard) Hidden
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden
Adobe Community Help (x32 Version: 3.2.1 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Photoshop Elements 9 (x32 Version: 9.0.3.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop.com Inspiration Browser (x32 Version: 3.07 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 (x32 Version: 9.0.1 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 Content (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 Content 1 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 Content 2 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 Content 3 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 HD Content 1 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 HD Content 2 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Elements 9 HD Content 3 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Reader XI (11.0.07) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
Amazon Kindle (HKCU\...\Amazon Kindle) (Version:  - Amazon)
AMD DnD V1.0.19 (x32 Version: 1.0.19 - AMD) Hidden
Ancient Castle 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Ancient Castle 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
ArcSoft PhotoImpression 6 (HKLM-x32\...\{E7E01744-E50E-4B93-AD73-AEF0AC65BD88}) (Version: 6 - ArcSoft)
ArcSoft PhotoStudio 5.5 (HKLM-x32\...\{4A81B632-07AB-4CAC-BB04-DF20DFFBFFA0}) (Version:  - ArcSoft)
ATI AVIVO64 Codecs (Version: 10.12.0.00113 - ATI Technologies Inc.) Hidden
ATI Catalyst Install Manager (HKLM\...\{C42B7876-FA88-4F4A-9A5F-E175AD143F2A}) (Version: 3.0.762.0 - ATI Technologies, Inc.)
Autumn Forest 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Autumn Forest 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Autumn Wonderland 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Autumn Wonderland 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Avanquest update (HKLM-x32\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.09 - Avanquest Software)
Backup Manager Advance (x32 Version: 2.0.2.39 - NewTech Infosystems) Hidden
Battleship Missouri 3D Screensaver 1.0 (HKLM-x32\...\Battleship Missouri 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation)
Bing Desktop (HKLM-x32\...\{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}) (Version: 1.3.470.0 - Microsoft Corporation)
Blooming Sakura 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Blooming Sakura 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
BlueSoleil 10.0.457.0 (HKLM\...\{F56591B4-0DEA-4C64-984A-28CB687E4BB0}) (Version: 10.0.457.0 - IVT Corporation)
BlueSoleil cPhone 1.0.63.0 (HKLM-x32\...\{A89DC39D-873E-4920-94E8-D9B2DAFEF32D}) (Version: 1.0.63.0 - IVT Corporation)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BPD_DSWizards (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
bpd_scan (x32 Version: 3.00.0000 - Hewlett-Packard) Hidden
BPDSoftware (x32 Version: 50.0.165.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
Camera Support Core Library (x32 Version: 7.3.0.4 - Canon) Hidden
Camera Window DS (x32 Version: 5.3.1 - Canon) Hidden
Camera Window DVC (x32 Version: 5.4.4 - Canon) Hidden
Camera Window MC (x32 Version: 5.4.3 - Canon) Hidden
CameraHelperMsi (x32 Version: 13.30.1395.0 - Logitech) Hidden
Canon Camera Support Core Library (HKLM-x32\...\InstallShield_{A1D0D14A-B776-4907-BC00-5149F2298086}) (Version: 7.3.0.4 - Canon)
Canon Camera WIA Driver (x32 Version: 5.6 - Canon) Hidden
Canon Camera Window DC_DV 5 for ZoomBrowser EX (HKLM-x32\...\InstallShield_{A2EB8F2E-6D9B-4F8B-96EB-F976D33F416F}) (Version: 5.4.4 - Canon)
Canon Camera Window DSLR 5 for ZoomBrowser EX (HKLM-x32\...\InstallShield_{0A146245-DB79-4197-BF5D-FE1A699A2CC7}) (Version: 5.3.1 - Canon)
Canon Camera Window MC 5 for ZoomBrowser EX (HKLM-x32\...\InstallShield_{36C65B50-37BA-4467-AAD5-0523EFDF6F62}) (Version: 5.4.3 - Canon)
Canon EOS Kiss_N REBEL_XT 350D WIA Driver (HKLM-x32\...\InstallShield_{33CF7CDF-9805-4500-9CC7-D19D52AD63C4}) (Version: 5.6 - Canon)
Canon PhotoRecord (HKLM-x32\...\{BBBC2B89-E193-4348-A83C-C8DD8210A4AC}) (Version: 02.02.03002 - Cisra)
Canon RAW Image Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{BAA43DA2-B6C5-46EC-B163-0E8EEAF975A4}) (Version: 2.2 - Canon)
Canon Utilities Digital Photo Professional 2.0 (HKLM-x32\...\InstallShield_{17BF3045-AB1D-4048-8356-6C584B83565E}) (Version: 2.0 - Canon)
Canon Utilities Digital Photo Professional 2.0 (x32 Version: 2.0 - Canon) Hidden
Canon Utilities EOS Capture 1.5 (HKLM-x32\...\InstallShield_{589D17BB-C997-48C0-BCD2-CC8DC3375FE8}) (Version: 1.5 - Canon)
Canon Utilities PhotoStitch 3.1 (HKLM-x32\...\InstallShield_{874E44F3-B9A7-4AA1-B4BA-83E5684ED9C6}) (Version: 3.1.16 - Canon)
Canon ZoomBrowser EX (E) (HKLM-x32\...\{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2}) (Version: 5.05.0000 - Canon)
Caribbean Islands 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Caribbean Islands 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden
Catalyst Control Center Core Implementation (x32 Version: 2010.0113.2208.39662 - ATI) Hidden
Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0113.2208.39662 - ATI) Hidden
Catalyst Control Center Graphics Full New (x32 Version: 2010.0113.2208.39662 - ATI) Hidden
Catalyst Control Center Graphics Light (x32 Version: 2010.0113.2208.39662 - ATI) Hidden
Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0113.2208.39662 - ATI) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2010.0113.2208.39662 - ATI Technologies, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2010.0113.2208.39662 - ATI) Hidden
CCC Help Chinese Standard (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Chinese Traditional (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Czech (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Danish (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Dutch (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help English (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Finnish (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help French (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help German (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Greek (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Hungarian (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Italian (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Japanese (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Korean (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Norwegian (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Polish (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Portuguese (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Russian (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Spanish (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Swedish (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Thai (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
CCC Help Turkish (x32 Version: 2010.0113.2207.39662 - ATI) Hidden
ccc-core-static (x32 Version: 2010.0113.2208.39662 - ATI) Hidden
ccc-utility64 (Version: 2010.0113.2208.39662 - ATI) Hidden
Christmas 3D Screensaver 1.0 (HKLM-x32\...\Christmas 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Christmas Bells 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Christmas Bells 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Christmas Evening 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Christmas Evening 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Cisco Network Magic (x32 Version: 5.5.09195.0 - Pure Networks) Hidden
Clock Tower 3D Screensaver 1.1 (HKLM-x32\...\Clock Tower 3D Screensaver_is1) (Version: 1.1 - 3Planesoft)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Coral Clock 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Coral Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Coral Reef 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Coral Reef 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Creative 3DMIDI Player (HKLM-x32\...\3DMIDI) (Version: 1.11 - Creative Technology Limited)
Creative Audio Control Panel (HKLM-x32\...\AudioCS) (Version: 3.00 - Creative Technology Limited)
Creative Diagnostics (HKLM-x32\...\Diagnostics 4_5) (Version: 5.11 - Creative Technology Limited)
Creative Media Toolbox 6 (HKLM-x32\...\{F1A14CB2-A048-45A6-AFDA-3571296E1D76}) (Version: 6.02 - Creative Technology Limited)
Creative Media Toolbox 6 (Shared Components) (HKLM-x32\...\Uninstaller_B4736000_Creative Media Toolbox 6) (Version: 2.80.12 - Creative Labs)
Creative MediaSource 5 (HKLM-x32\...\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}) (Version: 5.26 - Creative Technology Limited)
Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.41 - Creative Technology Limited)
Creative Sound Blaster Properties x64 Edition (HKLM-x32\...\Creative Sound Blaster Properties x64 Edition) (Version: 1.03 - Creative Technology Limited)
Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited)
Creative WaveStudio 7 (HKLM-x32\...\WaveStudio 7) (Version: 7.14 - Creative Technology Limited)
Crystal Fireplace 3D Screensaver 1.0 (HKLM-x32\...\Crystal Fireplace 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Cuckoo Clock 3D Screensaver 1.0 (HKLM-x32\...\Cuckoo Clock 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Cyberfish 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Cyberfish 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
CyberLink PowerDVD 9 (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.0.2610.50 - CyberLink Corp.)
CyberLink PowerDVD 9 (x32 Version: 9.0.2610.50 - CyberLink Corp.) Hidden
CyberPower PowerPanel Personal Edition 1.2.7 (HKLM-x32\...\{6604C31C-A3F5-4B19-A75F-BF7B87369C89}) (Version: 1.2.7 - Cyber Power Systems, Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Deep Space 3D Screensaver 1.0 (HKLM-x32\...\Deep Space 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden
Digital Clock 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Digital Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
DIRECTV GenieGO (HKCU\...\InstallShield_{194D74FC-B8AA-40E3-86C1-91977E0C1951}) (Version: 2.0.0.44 - DIRECTV, LLC)
DIRECTV GenieGO (x32 Version: 2.0.0.44 - DIRECTV, LLC) Hidden
DIRECTV Player (HKLM-x32\...\{69b8745b-65c2-4a2d-b5db-00e0cd841f1e}) (Version: 9.0 - DIRECTV)
Discovery 3D Screensaver 1.1 (HKLM-x32\...\Discovery 3D Screensaver_is1) (Version: 1.1 - 3Planesoft)
DiskMax 4.56 (HKLM\...\DiskMax) (Version: 4.56 - KoshyJohn.com)
DocMgr (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden
DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.00 - Creative Technology Limited)
Dolphins 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Dolphins 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
DTS Connect Pack (HKLM-x32\...\DTS Connect Pack) (Version: 1.00 - Creative Technology Limited)
DubIt (HKLM-x32\...\DubIt) (Version: 2.0 - TechSmith Corporation)
Dutch Windmills 3D Screensaver 1.0 (HKLM-x32\...\Dutch Windmills 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Earth 3D Screensaver and Animated Wallpaper 2.0 (HKLM-x32\...\Earth 3D Screensaver and Animated Wallpaper_is1) (Version: 2.0 - 3Planesoft)
Elements 9 Organizer (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Elements STI Installer (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
EOS Capture 1.5 (x32 Version: 1.5 - Canon) Hidden
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
Facebook Video Calling 1.2.0.159 (HKLM-x32\...\{7CAC6A44-C3DE-4153-ACA6-7524602C789E}) (Version: 1.2.159 - Skype Limited)
Fantasy Moon 3D Screensaver 1.3 (HKLM-x32\...\Fantasy Moon 3D Screensaver_is1) (Version: 1.3 - 3Planesoft)
Faraway Planet 3D Screensaver 1.0 (HKLM-x32\...\Faraway Planet 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden
File Type Assistant (HKLM-x32\...\Trusted Software Assistant_is1) (Version:  - Trusted Software)
Fireplace 3D Screensaver and Animated Wallpaper 3.0 (HKLM-x32\...\Fireplace 3D Screensaver and Animated Wallpaper_is1) (Version: 3.0 - 3Planesoft)
Fireside Christmas 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Fireside Christmas 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Flag 3D Screensaver 1.0 (HKLM-x32\...\Flag 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Fog Horses 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Fog Horses 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Fog Lake Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Fog Lake Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Free YouTube to MP3 TURBO Converter 2012 (HKLM-x32\...\FreeYoutubeToMP3TURBOConverter_is1) (Version:  - Bitberry Software)
Futuristic City 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Futuristic City 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Gaaiho Collaboration (HKLM-x32\...\{3A1B43F9-48D2-4B86-B792-0A4FC4163005}) (Version: 3.5 - ZEON Corporation)
Galleon 3D Screensaver 1.3 (HKLM-x32\...\Galleon 3D Screensaver_is1) (Version: 1.3 - 3Planesoft)
Gateway InfoCentre (HKLM-x32\...\Gateway InfoCentre) (Version: 3.02.3000 - Gateway Incorporated)
Gateway MyBackup (HKLM-x32\...\InstallShield_{30075A70-B5D2-440B-AFA3-FB2021740121}) (Version: 2.0.2.39 - NewTech Infosystems)
Gateway Recovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3007 - Gateway Incorporated)
Gateway Registration (HKLM-x32\...\Gateway Registration) (Version: 1.02.3006 - Gateway Incorporated)
Gateway ScreenSaver (HKLM-x32\...\Gateway Screensaver) (Version: 1.1.0812 - Gateway Incorporated)
Gateway Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3001 - Gateway Incorporated)
GoodSync (HKLM\...\{B26B00DA-2E5D-4CF2-83C5-911198C0F009}) (Version: 9.3.4.5 - Siber Systems)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google)
GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
Grand Canyon 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Grand Canyon 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Grassland 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Grassland 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Great Pyramids 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Great Pyramids 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Greeting Card Factory Deluxe 9.0 (HKLM-x32\...\{F2274C6A-6B2F-42D5-A328-12E666D4CFEF}) (Version: 9.0.0.22 - Nova Development)
Halloween 3D Screensaver 1.1 (HKLM-x32\...\Halloween 3D Screensaver_is1) (Version: 1.1 - 3Planesoft)
Haunted House 3D Screensaver and Animated Wallpaper 2.0 (HKLM-x32\...\Haunted House 3D Screensaver and Animated Wallpaper_is1) (Version: 2.0 - 3Planesoft)
Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.220 - SurfRight B.V.)
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP)
HP ePrint (HKLM-x32\...\{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}) (Version: 14.0.14176.1823 - Hewlett-Packard)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Officejet Pro 8500 A910 Basic Device Software (HKLM\...\{13BE337F-9557-416D-A696-F91A6807B170}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet Pro 8500 A910 Help (HKLM-x32\...\{871B2A9D-0F12-44B3-88C1-E0CB10A232E4}) (Version: 140.0.2.2 - Hewlett Packard)
HP Officejet Pro 8500 A910 Product Improvement Study (HKLM\...\{24E45339-C750-4EAE-8241-BA25A7DABBDD}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Product Detection (HKLM-x32\...\{A436F67F-687E-4736-BD2B-537121A804CF}) (Version: 11.14.0001 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Unified IO (Version: 2.0.0.434 - HP) Hidden
HP Unified IO (x32 Version: 2.0.0.434 - HP) Hidden
HP Update (HKLM-x32\...\{97486FBE-A3FC-4783-8D55-EA37E9D171CC}) (Version: 5.005.000.002 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Ice Clock 3D Screensaver and Animated Wallpaper 2.0 (HKLM-x32\...\Ice Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 2.0 - 3Planesoft)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Gateway Incorporated)
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
Jacquie Lawson Alpine Advent Calendar (x32 Version: 1.0.2 - MicroCourt Limited) Hidden
Jacquie Lawson Edwardian Advent Calendar (x32 Version: 1.0.1 - MicroCourt Limited) Hidden
Jacquie Lawson London Advent Calendar (x32 Version: 1.5.2 - MicroCourt Limited) Hidden
Jacquie Lawson Village Advent Calendar (x32 Version: 2.0.0 - MicroCourt Limited) Hidden
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Jing (HKLM-x32\...\{22800204-9E53-45C7-B6F3-5BB0F1C1A147}) (Version: 2.8.13007.1 - TechSmith Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Koi Fish 3D Screensaver and Animated Wallpaper 2.0 (HKLM-x32\...\Koi Fish 3D Screensaver and Animated Wallpaper_is1) (Version: 2.0 - 3Planesoft)
Lagoon 3D Screensaver 1.0 (HKLM-x32\...\Lagoon 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Lake Tree 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Lake Tree 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Lantern 3D Screensaver 1.0 (HKLM-x32\...\Lantern 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Lernout & Hauspie TruVoice American English TTS Engine (HKLM-x32\...\tv_enua) (Version:  - )
Lighthouse Point 3D Screensaver 1.1 (HKLM-x32\...\Lighthouse Point 3D Screensaver_is1) (Version: 1.1 - 3Planesoft)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.)
Logos 5 Prerequisites (HKLM-x32\...\{C91113DC-B860-43B8-9029-E2B71968631D}) (Version: 5.33.0744 - Logos Bible Software)
Logos Bible Software (HKLM-x32\...\{86B78132-519A-4ACE-A497-E8CF945DA544}) (Version: 5.33.155 - Logos Bible Software)
LWS Facebook (x32 Version: 13.30.1346.0 - Logitech) Hidden
LWS Gallery (x32 Version: 13.30.1379.0 - Logitech) Hidden
LWS Help_main (x32 Version: 13.30.1396.0 - Logitech) Hidden
LWS Launcher (x32 Version: 13.30.1379.0 - Logitech) Hidden
LWS Motion Detection (x32 Version: 13.30.1395.0 - Logitech) Hidden
LWS Pictures And Video (x32 Version: 13.30.1395.0 - Logitech) Hidden
LWS Twitter (x32 Version: 13.30.1346.0 - Logitech) Hidden
LWS Video Mask Maker (x32 Version: 13.30.1379.0 - Logitech) Hidden
LWS VideoEffects (Version: 13.30.1379.0 - Logitech) Hidden
LWS Webcam Software (x32 Version: 13.30.1379.0 - Logitech) Hidden
LWS WLM Plugin (x32 Version: 1.30.1201.0 - Logitech) Hidden
LWS YouTube Plugin (x32 Version: 13.30.1346.0 - Logitech) Hidden
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Marketsplash Print Software (HKLM-x32\...\{61933675-EFC7-4190-90B6-5AD56E1D9294}) (Version: 1.0.1.31 - Hewlett-Packard)
Marketsplash Shortcuts (HKLM-x32\...\{16FCDD97-AE09-476B-88CD-261D852BD34C}) (Version: 1.0.1.7 - Hewlett-Packard)
Mayan Waterfall 3D Screensaver 1.0 (HKLM-x32\...\Mayan Waterfall 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Mechanical Clock 3D Screensaver and Animated Wallpaper 1.2 (HKLM-x32\...\Mechanical Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 1.2 - 3Planesoft)
Medieval Castle 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Medieval Castle 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 (HKLM\...\{91415F19-4C22-3609-A105-92ED3522D83C}) (Version: 9.0.30729.4048 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 (HKLM-x32\...\{5B1F2843-B379-3FF2-B0D3-64DD143ED53A}) (Version: 9.0.30729.4048 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{67E03279-F703-408F-B4BF-46B5FC8D70CD}) (Version: 9.7.0621 - Microsoft Corporation)
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Mountain Waterfall 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Mountain Waterfall 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Mozilla Firefox 30.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 en-US)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MPM (HKLM-x32\...\{CD8C5C7F-7C58-4F85-8977-A6C08C087912}) (Version: 1.00.0000 - Hewlett-Packard)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
MyLogoMaker 2.0 (HKLM-x32\...\MyLogoMaker_is1) (Version:  - Avanquest USA, Inc.)
MyProfessionalBusinessCards (HKLM-x32\...\{CC263FFC-23D9-4C78-BBA2-61A41DD947C7}) (Version: 5.5.0.0 - Avanquest Publishing USA, Inc.)
MySoftware Fonts (HKLM-x32\...\{6C6F0968-2B86-42B4-AF34-46A5F06E8FA4}) (Version:  - )
Nature 3D Screensaver 1.1 (HKLM-x32\...\Nature 3D Screensaver_is1) (Version: 1.1 - 3Planesoft)
Nautilus 3D Screensaver 1.2 (HKLM-x32\...\Nautilus 3D Screensaver_is1) (Version: 1.2 - 3Planesoft)
Nero 11 (HKLM-x32\...\{810B7362-6B05-4714-AF6A-EF3A20CCD634}) (Version: 11.2.00600 - Nero AG)
Nero 9 Essentials (HKLM-x32\...\{b0941905-5fb6-42ad-9804-609e3ae602c6}) (Version:  - Nero AG)
Nero Audio Pack 1 (x32 Version: 11.0.11500.110.0 - Nero AG) Hidden
Nero BackItUp 11 (x32 Version: 6.2.18400.2.100 - Nero AG) Hidden
Nero BackItUp 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
Nero Backup Drivers (HKLM\...\{D600D357-5CB9-4DE9-8FD4-14E208BD1970}) (Version: 12.0.4000 - Nero AG)
Nero Blu-ray Player (x32 Version: 12.0.20012 - Nero AG) Hidden
Nero Burning ROM 11 (x32 Version: 11.2.10300.0.0 - Nero AG) Hidden
Nero Burning ROM 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Cliparts (x32 Version: 12.0.11500 - Nero AG) Hidden
Nero ControlCenter (x32 Version: 11.0.15500 - Nero AG) Hidden
Nero ControlCenter (x32 Version: 9.0.0.1 - Nero AG) Hidden
Nero ControlCenter Help (CHM) (x32 Version: 12.0.5000 - Nero AG) Hidden
Nero Core Components (x32 Version: 11.0.19400 - Nero AG) Hidden
Nero CoverDesigner 11 (x32 Version: 6.0.11000.13.100 - Nero AG) Hidden
Nero CoverDesigner 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Disc Menus Basic (x32 Version: 12.0.11500 - Nero AG) Hidden
Nero DiscSpeed (x32 Version: 5.4.13.100 - Nero AG) Hidden
Nero DiscSpeed Help (x32 Version: 5.4.4.100 - Nero AG) Hidden
Nero DriveSpeed (x32 Version: 4.4.12.100 - Nero AG) Hidden
Nero DriveSpeed Help (x32 Version: 4.4.4.100 - Nero AG) Hidden
Nero Effects Basic (x32 Version: 12.0.11500 - Nero AG) Hidden
Nero Express 11 (x32 Version: 11.2.10300.0.0 - Nero AG) Hidden
Nero Express 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Express Help (x32 Version: 9.6.2.101 - Nero AG) Hidden
Nero Image Samples (x32 Version: 12.0.11500 - Nero AG) Hidden
Nero InfoTool (x32 Version: 6.4.12.100 - Nero AG) Hidden
Nero InfoTool Help (x32 Version: 6.4.4.100 - Nero AG) Hidden
Nero Installer (x32 Version: 4.4.9.0 - Nero AG) Hidden
Nero Kwik Media (x32 Version: 1.18.19600 - Nero AG) Hidden
Nero Kwik Media Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden
Nero Kwik Themes Basic (x32 Version: 12.0.11500 - Nero AG) Hidden
Nero Online Upgrade (x32 Version: 1.3.0.0 - Nero AG) Hidden
Nero PiP Effects Basic (x32 Version: 12.0.11500 - Nero AG) Hidden
Nero Recode 11 (x32 Version: 5.2.11300.0.0 - Nero AG) Hidden
Nero Recode 11 Help (CHM) (x32 Version: 11.0.10600 - Nero AG) Hidden
Nero RescueAgent 11 (x32 Version: 4.0.10600.10.100 - Nero AG) Hidden
Nero RescueAgent 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
Nero SharedVideoCodecs (x32 Version: 1.0.12100.2.0 - Nero AG) Hidden
Nero SoundTrax 11 (x32 Version: 5.0.10700.6.100 - Nero AG) Hidden
Nero SoundTrax 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
Nero StartSmart (x32 Version: 9.4.37.100 - Nero AG) Hidden
Nero StartSmart Help (x32 Version: 9.4.27.100 - Nero AG) Hidden
Nero StartSmart OEM (x32 Version: 9.4.10.100 - Nero AG) Hidden
Nero Update (x32 Version: 11.0.11500.28.0 - Nero AG) Hidden
Nero Video 11 (x32 Version: 8.2.16000.4.100 - Nero AG) Hidden
Nero Video 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Video Samples (x32 Version: 12.0.11500 - Nero AG) Hidden
Nero WaveEditor 11 (x32 Version: 6.2.11300.0.100 - Nero AG) Hidden
Nero WaveEditor 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
nero.prerequisites.msi (x32 Version: 11.0.20010 - Nero AG) Hidden
NeroExpress (x32 Version: 9.4.33.100 - Nero AG) Hidden
neroxml (x32 Version: 1.0.0 - Nero AG) Hidden
Network Magic (HKLM-x32\...\Network MagicUninstall) (Version: 5.5.9195.0 - Cisco Systems, Inc.)
Network64 (Version: 130.0.579.000 - Hewlett-Packard) Hidden
Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden
NetWorx 5.3.2 (HKLM\...\NetWorx_is1) (Version:  - Softperfect Research)
Newsflash (HKLM-x32\...\{1A722192-4AEA-4911-9F71-EBECEDC970B5}) (Version: 1.0.0.7 - )
NextUp.com-NeoSpeech Kate16 Voice (HKLM-x32\...\{35A99070-E9E0-42BB-8F8B-C00854A03E59}) (Version: 1.01.0000 - NextUp.com)
NextUp.com-NeoSpeech Paul16 Voice (HKLM-x32\...\{5D97F812-3F0D-4AFE-A377-27DD67DE9079}) (Version: 1.01.0000 - NextUp.com)
Nokia Connectivity Cable Driver (HKLM-x32\...\{C3F19A5F-35A8-4FDB-A6ED-0F4CE398DA48}) (Version: 7.0.2.0 - Nokia)
Norton 360 (HKLM-x32\...\N360) (Version: 21.3.0.12 - Symantec Corporation)
Nuance OmniPage 18 (HKLM-x32\...\{4761F31F-291F-46AA-9F00-17BADAB76371}) (Version: 18.0.0000 - Nuance Communications, Inc.)
Nuance PaperPort 14 (HKLM-x32\...\{C158E4E4-B2A2-4D62-9C61-D0FC62D78E6D}) (Version: 14.0.0000 - Nuance Communications, Inc.)
Nuance PDF Converter Professional 8 (HKLM\...\{E645E501-5E3D-4DA2-9A47-BDC0C8A74336}) (Version: 8.10.6214 - Nuance Communications, Inc.)
Nuance PDF Converter Professional 8 (HKLM-x32\...\{E645E501-5E3D-4DA2-9A47-BDC0C8A74336}) (Version: 8.00.6214 - Nuance Communications, Inc.)
Nuance PDF Converter Professional 8 Update x64 (HKLM\...\{45AE5880-34A1-4575-92A6-11D0DC182F24}) (Version: 8.11.0000 - Nuance Communications, Inc.)
Nuance PDF Reader (HKLM-x32\...\{5F6C549F-78DA-4E0E-AE70-0BD981936D99}) (Version: 7.00.0000 - Nuance Communications, Inc.)
Nuance Power PDF Advanced (HKLM\...\{BD71D245-1A8B-4FB3-83E4-74F77FB39267}) (Version: 1.00.7472 - Nuance Communications, Inc.)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
Office Printing Essentials (HKLM-x32\...\{49501F7D-99A9-46E8-AECF-7ABFD90823EE}) (Version: 1.0.0.3 - Nova Development)
Officejet Pro 8500 A909 Series (HKLM\...\{D850BEF5-67AF-4071-9538-FA9AC725D62C}) (Version: 13.0 - HP)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Orbital Sunset 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Orbital Sunset 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
OVT Scanner (HKLM-x32\...\{A746CE98-A755-4AD7-B4B8-346DC74CDECD}) (Version: 1.00.0000 - OVT)
Palm Desktop by ACCESS (HKLM-x32\...\{FD6034A3-655C-49F0-B496-D4CBFD74D7A7}) (Version: 6.4.0.0 - Palm, Inc.)
PaperPort Anywhere 1.1.4269.39023 powered by OfficeDrop (HKLM\...\{52357C6C-FE7F-4E8C-B045-EDE5146A1F9C}) (Version: 1.1.4269.39023 - OfficeDrop)
PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 14.00.0001 - Nuance Communications, Inc.)
PC Connectivity Solution (HKLM-x32\...\{83258E90-1F76-4E13-9F60-A0F8ED41E76F}) (Version: 8.22.7.0 - Nokia)
Photo Frame (HKLM-x32\...\{733C5FC0-F0C4-405B-A983-61C24CC60E39}_is1) (Version: 5.0.0.3 - Northstar Systems Corp.)
PhotoImpression (HKLM-x32\...\{063E409E-3D7C-4A4A-95AB-2F124B9224B3}) (Version:  - ArcSoft)
PhotoStitch (x32 Version: 3.1.16 - Canon) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.2.10 - Prolific Technology INC)
PrinterShare 2.3.07 (HKLM\...\{FA9BB954-1D36-4DD9-8E6B-45A1183F59B6}) (Version: 2.3.7.0 - Printer Anywhere Inc.)
ProductContext (x32 Version: 50.0.165.000 - Hewlett-Packard) Hidden
Pure Networks Platform (x32 Version: 11.2.09195.1 - Pure Networks) Hidden
RAW Image Task 2.2 (x32 Version: 2.2 - Canon) Hidden
Readiris Pro 12 (HKLM-x32\...\{3AC26580-A695-4134-84AE-5121B3AAE545}) (Version: 12.00.5965 - I.R.I.S.)
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.17.304.2010 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6045 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 3.0.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.8 - VS Revo Group, Ltd.)
RoboForm 7-9-8-5 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-8-5 - Siber Systems)
SAMSUNG Intelli-studio (HKLM-x32\...\Intelli-studio) (Version:  - )
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.42.0 - SAMSUNG Electronics Co., Ltd.)
Sandy Beach 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Sandy Beach 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Santa Claus 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Santa Claus 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Scansoft PDF Professional (x32 Version:  - ) Hidden
Security Task Manager 1.8f (HKLM-x32\...\Security Task Manager) (Version: 1.8f - Neuber Software)
Sharks - Great White 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Sharks - Great White 3D Screensaver and Animated~7A7BEC62_is1) (Version: 1.0 - 3Planesoft)
Sharks 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Sharks 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP)
ShopSafe (HKLM-x32\...\{87358FDB-7A27-4F53-9BFB-1566FA03A9C5}) (Version: 3.4.13.0 - ShopSafe)
ShopSafe (x32 Version: 1.4.3.0 - ShopSafe) Hidden
Shorter Oxford English Dictionary (Sixth Edition) (HKLM-x32\...\Shorter Oxford English Dictionary (Sixth Edition)) (Version:  - )
Simple 1.1 (HKLM-x32\...\Simple) (Version: 1.1 - Simple)
SiSoftware Sandra Personal 2014.RTM (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2396}_is1) (Version: 20.10.2014.2 - SiSoftware)
Skeleton Clock 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Skeleton Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Sky Citadel 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Sky Citadel 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.2.15747.10003 - Microsoft Corporation)
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
SmartSound Quicktracks for Premiere Elements 9.0 (HKLM-x32\...\InstallShield_{6748E773-5DA0-4D19-8AA5-273B4133A09B}) (Version: 3.12.3090 - SmartSound Software Inc)
SmartSound Quicktracks for Premiere Elements 9.0 (x32 Version: 3.12.3090 - SmartSound Software Inc) Hidden
Snagit 10.0.2 (HKLM-x32\...\{92D194E7-AEF9-4A9E-8620-8F3AE712E3F7}) (Version: 10.0.2 - TechSmith Corporation)
Snagit 11 (HKLM-x32\...\{A56C6348-59D0-433B-A48A-75914858664E}) (Version: 11.2.1 - TechSmith Corporation)
Snow Village 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Snow Village 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
SoftPerfect Network Protocol Analyzer 2.8 (HKLM-x32\...\SoftPerfect Network Protocol Analyzer_is1) (Version:  - SoftPerfect Research)
SoftPerfect WiFi Guard version 1.0.2 (HKLM\...\{38AFD787-4D2E-4442-92D2-7739F5F92CF4}_is1) (Version: 1.0.2 - SoftPerfect Research)
SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
Sound Blaster X-Fi (HKLM-x32\...\{20288888-A7AF-4B24-8AEB-398D20CD563C}) (Version: 1.0 - Creative Technology Limited)
SoundFont Bank Manager (HKLM-x32\...\SFBM) (Version: 3.21 - Creative Technology Limited)
Speccy (HKLM\...\Speccy) (Version: 1.22 - Piriform)
Spirit of Fire 3D Screensaver 2.4 (HKLM-x32\...\Spirit of Fire 3D Screensaver_is1) (Version: 2.4 - 3Planesoft)
Springtime 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Springtime 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)
Starry Night 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Starry Night 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden
Steam Clock 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Steam Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Stock Car Racing 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Stock Car Racing 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Stonehenge 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Stonehenge 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Summer Forest 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Summer Forest 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Sun Village 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Sun Village 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Sunny Patio 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Sunny Patio 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Sweethearts 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Sweethearts 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Thanksgiving Day 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Thanksgiving Day 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
The Lost Watch 3D Screensaver and Animated Wallpaper 2.0 (HKLM-x32\...\The Lost Watch 3D Screensaver and Animated Wallpaper_is1) (Version: 2.0 - 3Planesoft)
The Lost Watch II 3D Screensaver 1.0 (HKLM-x32\...\The Lost Watch II 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
The One Ring 3D Screensaver 1.0 (HKLM-x32\...\The One Ring 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
THX TruStudio PC (HKLM-x32\...\{F1F5C7EE-23BB-47A3-943E-9F290DD267F0}) (Version: 1.0 - Creative Technology Limited)
Tiger Sharks 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Tiger Sharks 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Titanic Memories 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Titanic Memories 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden
Tropical Fish 3D Screensaver and Animated Wallpaper 1.2 (HKLM-x32\...\Tropical Fish 3D Screensaver and Animated Wallpaper_is1) (Version: 1.2 - 3Planesoft)
Tyrannosaurus Rex 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Tyrannosaurus Rex 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Unix Utilities for Yahoo! Widgets (HKLM-x32\...\UnixUtils for Yahoo! Widgets) (Version:  - )
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version:  - Microsoft)
Valentine 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Valentine 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Valentine Musicbox 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Valentine Musicbox 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Venice Carnival 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Venice Carnival 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Vintage Aircraft 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Vintage Aircraft 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Visual Thesaurus 3.0.2 (HKLM-x32\...\Visual Thesaurus 3.0.2) (Version:  - Thinkmap, Inc.)
VLC media player 2.0.8 (HKLM-x32\...\VLC media player) (Version: 2.0.8 - VideoLAN)
Voyage of Columbus 3D Screensaver 1.0 (HKLM-x32\...\Voyage of Columbus 3D Screensaver_is1) (Version: 1.0 - 3Planesoft)
Wallpaper Downloader 2.7 (HKLM-x32\...\{6452D097-5646-4039-93B6-183B54E208C0}_is1) (Version:  - WallpaperDownloader.com)
Water Clock 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Water Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Watermill 3D Screensaver and Animated Wallpaper 2.0 (HKLM-x32\...\Watermill 3D Screensaver and Animated Wallpaper_is1) (Version: 2.0 - 3Planesoft)
WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
Welcome App (Start-up experience) (x32 Version: 11.0.23500.0.0 - Nero AG) Hidden
Welcome Center (HKLM-x32\...\Gateway Welcome Center) (Version: 1.00.3013 - Gateway Incorporated)
Western Railway 3D Screensaver 2.0 (HKLM-x32\...\Western Railway 3D Screensaver_is1) (Version: 2.0 - 3Planesoft)
White Christmas 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\White Christmas 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)
Wildflowers 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Wildflowers 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Windows 7 Logon Background Changer (HKLM-x32\...\{2E6044C5-3495-485F-91BC-46D1B6430E51}) (Version: 1.5.2 - Julien MANICI)
Windows Driver Package - Nokia pccsmcfd  (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
Winter Wonderland 3D Screensaver and Animated Wallpaper 1.1 (HKLM-x32\...\Winter Wonderland 3D Screensaver and Animated Wallpaper_is1) (Version: 1.1 - 3Planesoft)
Wireshark 1.8.2 (64-bit) (HKLM-x32\...\Wireshark) (Version: 1.8.2 - The Wireshark developer community, http://www.wireshark.org)
Yahoo! Widgets (HKLM-x32\...\Yahoo! Widget Engine) (Version: 4.5.2.0 - Yahoo! Inc.)
Zodiac Clock 3D Screensaver and Animated Wallpaper 1.0 (HKLM-x32\...\Zodiac Clock 3D Screensaver and Animated Wallpaper_is1) (Version: 1.0 - 3Planesoft)

**** End of log ****



#14 wpgwpg

wpgwpg

  • Members
  • 1,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US of A
  • Local time:04:01 PM

Posted 12 July 2014 - 08:48 AM

 I see a couple of errors in PaperPortAnywhere.exe, a whole lot of errors in Bonjour Service, and you have Java 7 Update 55 installed.  Java has had a great deal of security exposures in the past, so if you need to keep it, you should upgrade it to Update 60 ASAP.  I've seen a number of threads on BC reporting problems with Bonjour Service which is an Apple product.  If you can get rid of it, that would be good; if not, contact Apple and see if you can get an updated version or a fix.

 

Good luck.


Everyone with a computer should back his system up to an external hard drive regularly.  :thumbsup:

#15 VicMJ

VicMJ
  • Topic Starter

  • Members
  • 107 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Massachusetts, United States
  • Local time:03:01 PM

Posted 12 July 2014 - 10:20 AM

I undated to Java 7. 60, and I uninstalled Bonjour.  I noticed it was only installed on 7-8-2014.  I used Revo Uninstalled Pro.  Now it looks like I only have the AVG problem.

 

Nope, on a reboot Safeseach is back when you open a new tab.


Edited by VicMJ, 12 July 2014 - 10:34 AM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users