Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Hi Jack This


  • This topic is locked This topic is locked
9 replies to this topic

#1 confused82

confused82

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:07:00 PM

Posted 03 April 2015 - 07:10 AM

Please can anybody help me? I believe i have some kind of problem with my Asus x502c running windows 8.1. Any help will be beneficial to this log from HiJack This.

Attached Files


Edited by computerxpds, 03 April 2015 - 07:33 AM.
Moved to MRL from windows 8


BC AdBot (Login to Remove)

 


#2 confused82

confused82
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:07:00 PM

Posted 03 April 2015 - 07:14 AM

Please can anybody help me? I believe i have some kind of problem with my Asus x502c running windows 8.1. Any help will be beneficial to this log from HiJack This.



#3 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:03:00 PM

Posted 03 April 2015 - 10:44 AM

Hello and welcome to bleeping computer.

Exactly what issues are you having with the PC?

Please run the following:

Please download the appropriate version of Farbar Recovery Scan Tool (FRST.exe) from here:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ (for 32bit systems)
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ (for 64bit systems)
save it to your desktop.
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#4 confused82

confused82
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:07:00 PM

Posted 04 April 2015 - 04:24 AM

 I appreciate your help, I have 3 logs here for you, the 2 that you mentioned and the shortcut log if that will be any help to you?

 

I keep being directed to other pages, mainly with chrome and adds keep popping up, also my shockwave in both firefox and chrome keeps becoming un responsive



#5 confused82

confused82
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:07:00 PM

Posted 04 April 2015 - 04:27 AM

addition.txt

 



#6 confused82

confused82
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:07:00 PM

Posted 04 April 2015 - 04:30 AM

ive exceeded my allotted space :/

 

FRST.txt

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by jamie (administrator) on JAMIES on 04-04-2015 07:11:15
Running from C:\Users\jamie\Downloads\Software\Farbar Recovery
Loaded Profiles: jamie (Available profiles: jamie & kerry_000 & Administrator)
Platform: Windows 8.1 (X64) OS Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\ABService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Crawler.com) C:\Program Files (x86)\CStart8\CStart8Tray64.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
() C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(XBMC-Foundation) C:\Program Files (x86)\Kodi\Kodi.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
 

 

 



#7 confused82

confused82
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:07:00 PM

Posted 04 April 2015 - 04:31 AM

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by jamie at 2015-04-04 07:25:20
Running from C:\Users\jamie\Downloads\Software\Farbar Recovery
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\...\uTorrent) (Version: 3.4.2.38656 - BitTorrent Inc.)
Ableton Live 9 Suite (HKLM\...\{11DF5764-52FF-4149-8B65-FB4D721975C9}) (Version: 9.0.0.0 - Ableton)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.7.157 - Adobe Systems, Inc.)
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 3.9.145.62246 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 3.9.145.62246 - Alcor Micro Corp.) Hidden
AOMEI Backupper Standard Edition 2.0.3 (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536C09F}_is1) (Version:  - AOMEI Technology Co., Ltd.)
Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ASUS Backtracker (HKLM-x32\...\{C15C060C-ED1C-49EB-83B3-F7C0FD1CD661}) (Version: 3.0.7 - ASUS)
ASUS InstantOn (HKLM-x32\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 3.0.4 - ASUS)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.1.9 - ASUS)
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.2.2 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 2.0.4 - ASUS)
ASUS Screen Saver (HKLM\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.1 - ASUS)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.1.3 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0005 - ASUS)
ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 2.1.5 - ASUS)
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.26 - ASUS)
ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.18.159 - ASUS Cloud Corporation)
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Atheros Communications Inc.)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0027 - ASUS)
Audacity 1.2.6 (HKLM-x32\...\Audacity_is1) (Version:  - )
Avast License by ZeNiX [2014-03-14] (HKLM-x32\...\Avast_2050_ZeNiX [2014-03-14]_is1) (Version:  - )
avast! Pro Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2018 - Avast Software)
BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.9.17.4138 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM-x32\...\{4FCF716C-CEB4-499D-AFB8-A5375105EC2A}) (Version: 0.9.17.4138 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
ChromecastApp (HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\...\{079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1) (Version: 1.5.1383.0 - Google Inc.)
Classic Start 8 (HKLM-x32\...\{913D024D-5EB4-4AC3-A412-C87588574A74}_is1) (Version: 1.0.0.16 - Crawler, LLC)
ConvertXtoDVD 4.1.19.365 (HKLM-x32\...\{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1) (Version: 4.1.19.365 - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DC8.1 (HKLM-x32\...\{7B80A277-E418-4B6C-85F4-F4C738BFA662}) (Version: 8.15.00 - Diamond Cut Productions)
Dropbox (HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.)
EarCatch Ringtone Express 9.2.1 (HKLM-x32\...\EarCatch Ringtone Express_is1) (Version:  - meMedia Co., Ltd.)
EPSON Attach To Email (HKLM-x32\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Attach To Email (x32 Version: 1.01.0000 - SEIKO EPSON) Hidden
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION2)
EPSON File Manager (HKLM-x32\...\{D02F30FB-0BC4-419A-9B9C-ADC610029B50}) (Version: 1.3.2.0 - )
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON Scan Assistant (HKLM-x32\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
EPSON SX130 Series Printer Uninstall (HKLM\...\EPSON SX130 Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Config V4 (HKLM-x32\...\{08013FB5-DF8B-4D29-9B5E-B3DE88EBA6CA}) (Version: 4.1.1 - SEIKO EPSON CORPORATION)
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Free EXE Lock 5.5.2 (HKLM-x32\...\Free EXE Lock_is1) (Version:  - FreeEXELock Co., Ltd.)
Free YouTube to iPod Converter version 3.11.56.301 (HKLM-x32\...\Free YouTube to iPod Converter_is1) (Version: 3.11.56.301 - DVDVideoSoft Ltd.)
Free YouTube to MP3 Converter version 3.12.56.301 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.56.301 - DVDVideoSoft Ltd.)
Glary Utilities PRO 5.19 (HKLM-x32\...\Glary Utilities 5) (Version: 5.19.0.32 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.118 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Helium Audio Joiner (build 331) (HKLM-x32\...\{1C7BCE67-6479-4D56-AD92-E50479028171}_is1) (Version: 1.9.0.331 - Imploded Software)
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.232 - SurfRight B.V.)
iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation)
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Kingo Android ROOT version 1.1.8.1835 (HKLM-x32\...\{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1) (Version: 1.1.8.1835 - Kingosoft Technology Ltd.)
Kodi (HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\...\Kodi) (Version:  - XBMC-Foundation)
Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
Media Go (HKLM-x32\...\{AF06B8FA-B916-4001-AE51-6645488DEF09}) (Version: 2.8.303 - Sony)
Media Go Network Downloader (HKLM-x32\...\{5562F05F-908C-4F15-9B3C-98D5FD32DCAB}) (Version: 1.5.19.0 - Sony)
Media Go Video Playback Engine 2.12.103.06300 (HKLM-x32\...\{CB7048B4-5D1F-E24E-41FC-2AB7AAFE6597}) (Version: 2.12.103.06300 - Sony)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 35.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 en-US)) (Version: 35.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0.2 - Mozilla)
MP3 Editor for Free v9.2.1 (HKLM-x32\...\MP3 Editor for Free_is1) (Version:  - meMedia Co., Ltd.)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MyBitCast 2.0 (HKLM-x32\...\MyBitCast) (Version: 2.0 - ASUS)
Nero 2015 (HKLM-x32\...\{407A3427-28FA-4383-8472-972AE71E3262}) (Version: 16.0.03000 - Nero AG)
Nero Info (HKLM-x32\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 16.0.1003 - Nero AG)
Nero SoundTrax (HKLM-x32\...\{3D62438A-C6E0-4160-B3CC-D6B5158782D3}) (Version: 12.0.03300 - Nero AG)
Nero WaveEditor (HKLM-x32\...\{EE430B59-A026-4C96-8906-E4C05B7FCC37}) (Version: 12.5.01500 - Nero AG)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PokerStars.uk (HKLM-x32\...\PokerStars.uk) (Version:  - PokerStars.uk)
Prerequisite installer (x32 Version: 12.0.0005 - Nero AG) Hidden
Prerequisite installer (x32 Version: 16.0.0000 - Nero AG) Hidden
Raccolta foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.41 - Ralink)
Rapport (x32 Version: 3.5.1404.84 - Trusteer) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6878 - Realtek Semiconductor Corp.)
RedKings Poker 1.0.0 (HKLM-x32\...\RedKings Poker_is1) (Version: 1.0.0 - redkings)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version:  - Microsoft) Hidden
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Shoebox (HKLM-x32\...\{9D83AA93-BAA4-4F75-80AF-AABC12B65E3C}) (Version: 3.0.0 - Couch Labs)
Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.15.2.201501291105 - Sony Mobile Communications Inc.)
Sony PC Companion 2.10.251 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.251 - Sony)
Spyware Terminator 2012 (HKLM-x32\...\{56736259-613E-4A3B-B428-6235F2E76F44}_is1) (Version: 3.0.0.82 - Crawler, LLC)
StorageCrypt 4.1.0 (HKLM-x32\...\{C1F113F5-7EA6-43E4-9F01-4AF0EF86EAF7}_is1) (Version:  - Magiclab software)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1130 - SUPERAntiSpyware.com)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Trusteer Endpoint Protection (HKLM-x32\...\Rapport_msi) (Version: 3.5.1404.84 - Trusteer)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes)
Windows Driver Package - ASUS (ATP) Mouse  (04/03/2013 2.0.0.16) (HKLM\...\ABFE641926C15116CB09A41A6F65DE6F260D04E3) (Version: 04/03/2013 2.0.0.16 - ASUS)
Windows Driver Package - Synaptics (SmbDrv) System  (12/20/2012 16.3.7.0) (HKLM\...\8D889180E2A10B494B566FD27B7483E5AA652B51) (Version: 12/20/2012 16.3.7.0 - Synaptics)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.41.1 - ASUS)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
WinX HD Video Converter Deluxe 5.0.8 (HKLM-x32\...\WinX HD Video Converter Deluxe_is1) (Version:  - Digiarty Software, Inc.)
Xilisoft ISO Burner (HKLM-x32\...\Xilisoft ISO Burner) (Version: 1.0.56.1224 - Xilisoft)
 
==================== Custom CLSID (selected items): ==========================
 
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
 
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\jamie\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\jamie\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\jamie\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3113827510-3719860129-3176997691-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
 
==================== Restore Points  =========================
 
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2012-07-26 06:26 - 2014-10-19 18:39 - 00000081 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1       localhost
 
==================== Scheduled Tasks (whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
 
Task: {062539BF-C74D-4C9B-A9F1-3AA493386334} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {0B74DF00-DB77-4C9E-9150-EF68BE0948EB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {1596CF7E-3AB3-4FB2-9274-06C5DC93157F} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-02-26] (ASUSTeK Computer Inc.)
Task: {196313B6-C04E-47E9-91A6-9816D1840AAA} - System32\Tasks\REGSERVO => C:\Program Files\REGSERVO\RegSERVO.exe <==== ATTENTION
Task: {2B1687C3-1779-4C31-94D9-0352992F0EC9} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2013-03-20] (ASUSTeK Computer Inc.)
Task: {32AE9C66-5ECA-4950-AEFD-6AB5268F5D1B} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-03] (Adobe Systems Incorporated)
Task: {35D72A49-612E-493C-947A-481FBAC01B37} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {45AB375E-6F5C-483E-B961-20A81E808E55} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-27] (Adobe Systems Incorporated)
Task: {476BCA80-C1A1-4677-BF81-C4A98C211A18} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3113827510-3719860129-3176997691-1001Core => C:\Users\jamie\AppData\Local\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {4DE69488-EC56-4292-8BB0-A641607B147B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {5EB8CA21-5D51-4B27-9696-814CEF27843B} - System32\Tasks\SUPERAntiSpyware Scheduled Task 2182c4fa-6454-440d-acec-2fc88630365f => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {6835E7AD-3A0B-410C-9039-06651254CCF1} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-08-24] (ASUS)
Task: {785FE4EF-84DF-49A0-8146-ED3B8F81723B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3113827510-3719860129-3176997691-1001UA => C:\Users\jamie\AppData\Local\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {7FA2E225-25A9-454D-8F5D-045722535811} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2015-02-12] (Glarysoft Ltd)
Task: {8439F3C0-CAC2-4423-9353-053CCEA746B6} - System32\Tasks\ASUS Touchpad Launcher (x64) => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2013-04-16] (AsusTek)
Task: {8FD7D9AC-E8A3-4E01-BA67-2FED2ED6CDCB} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [2015-02-12] (Glarysoft Ltd)
Task: {92592DD7-20C1-47BF-A77A-7423C6753CAA} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2012-09-18] (ASUSTek Computer Inc.)
Task: {930205F7-0A25-4DEB-9B28-81C709C70B05} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2015-02-07] ()
Task: {93B97380-6B29-40A6-9211-B744D6FB9071} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-11-28] (ASUS)
Task: {9A8F4124-52CE-43B3-9063-A87552D8E8EB} - System32\Tasks\arp_flush => C:\Program Files (x86)\hide.me VPN\FlushArpCache.exe
Task: {9B383F4F-672D-44C2-BA15-9B957CB1B09D} - System32\Tasks\SUPERAntiSpyware Scheduled Task 69189518-4386-4b97-bf96-ee523a73cb7a => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {A5759C83-B568-416E-8937-D977D83CB70F} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-03-29] (AVAST Software)
Task: {A6FCEA83-CF8B-47C9-BAAC-B18BF96623B0} - System32\Tasks\Microsoft Office 15 Sync Maintenance for JAMIES-jamie Jamies => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-02-10] (Microsoft Corporation)
Task: {B217E773-387E-4B79-85A1-59CE60102D8E} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2013-03-20] (ASUSTeK Computer Inc.)
Task: {C3E6C63E-15ED-4A61-AF99-8919A46221F7} - System32\Tasks\ASUS InstantOn Config => C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [2012-09-24] (ASUS)
Task: {C54E25EE-C21A-45C5-86F3-7A08107BF9FE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
Task: {CC784FA4-F6BE-41CF-B50F-535B5D67750B} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-02-10] (Oracle Corporation)
Task: {CE8290FA-69A9-4943-A918-E7ABB2E599B8} - System32\Tasks\Shoebox\ShoeboxUploader-1c138fd5 => C:\Program Files (x86)\Couch Labs\Shoebox\Shoebox.exe [2015-02-18] (Couch Labs)
Task: {D0C958A5-A44E-427E-A943-8469535CFFCD} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-3113827510-3719860129-3176997691-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {DB8D180A-C74C-4E55-932F-C6E0CB46A4C9} - System32\Tasks\GlaryOneClickOptimizer 5 => C:\Program Files (x86)\Glary Utilities 5\OneClickMaintenance.exe [2015-02-12] (Glarysoft Ltd)
Task: {EE802C28-907F-4F8A-8EE3-10A44BE394AB} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-03-18] (Microsoft Corporation)
Task: {F7AD3651-C20A-4997-945E-F6AF771159C2} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2014-07-21] (Nero AG)
Task: {FC8538FB-33DD-480B-95C4-49780C72B7EF} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
Task: C:\WINDOWS\Tasks\GlaryOneClickOptimizer 5.job => C:\Program Files (x86)\Glary Utilities 5\OneClickMaintenance.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3113827510-3719860129-3176997691-1001Core.job => C:\Users\jamie\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3113827510-3719860129-3176997691-1001UA.job => C:\Users\jamie\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\REGSERVO.job => C:\Program Files\REGSERVO\RegSERVO.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 2182c4fa-6454-440d-acec-2fc88630365f.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 69189518-4386-4b97-bf96-ee523a73cb7a.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
 
==================== Loaded Modules (whitelisted) ==============
 
2015-03-01 05:44 - 2014-06-23 09:07 - 00113376 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
2015-01-21 16:01 - 2015-01-21 16:01 - 08898728 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-03-29 21:43 - 2014-03-14 08:00 - 00695808 _____ () C:\Program Files\AVAST Software\Avast\VERSION.dll
2015-04-01 20:02 - 2015-04-01 20:02 - 02923520 _____ () C:\Program Files\AVAST Software\Avast\defs\15040102\algo.dll
2015-04-02 15:23 - 2015-04-02 15:23 - 02923520 _____ () C:\Program Files\AVAST Software\Avast\defs\15040201\algo.dll
2015-04-03 19:35 - 2015-04-03 19:35 - 02923520 _____ () C:\Program Files\AVAST Software\Avast\defs\15040303\algo.dll
2014-10-11 14:06 - 2014-10-11 14:06 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-10-11 14:05 - 2014-10-11 14:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00270040 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\UiLogic.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00229080 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\diskmgr.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00265944 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Comn.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00106200 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\FuncLogic.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00335576 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\ImgFile.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00028376 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Encrypt.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00483032 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\EnumFolder.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00069336 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Compress.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00098008 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\BrLog.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00077528 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Ldm.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00061144 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Device.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00257752 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\BrFat.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00376536 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\BrNtfs.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00233176 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Clone.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00102104 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Backup.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00147160 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\FlBackup.dll
2014-11-23 10:39 - 2013-01-17 18:38 - 02403504 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\QtCore4.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00093912 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\BrVol.dll
2014-11-23 10:39 - 2014-10-31 19:13 - 00188120 _____ () C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\GptBcd.dll
2014-03-23 17:04 - 2014-03-23 17:04 - 00557056 _____ () C:\Program Files (x86)\Trusteer\Rapport\bin\js32.dll
2015-03-29 21:25 - 2015-03-29 21:25 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-02-12 09:07 - 2015-02-12 09:07 - 00080160 _____ () C:\Program Files (x86)\Glary Utilities 5\zlib1.dll
2015-03-01 05:44 - 2012-04-30 11:57 - 00039936 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\TMonitorAPI.dll
2015-03-01 05:44 - 2014-12-04 15:18 - 00241152 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\MExplorer.dll
2013-06-11 10:31 - 2013-06-11 10:31 - 00090112 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\CalEngine.dll
2011-01-05 16:01 - 2011-01-05 16:01 - 00053248 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\PimNotes.dll
2011-07-07 15:54 - 2011-07-07 15:54 - 00233984 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\Report.dll
2015-03-01 05:44 - 2010-01-11 16:44 - 00053248 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\VObject.dll
2012-04-04 15:33 - 2012-04-04 15:33 - 00139776 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\CAgdLNotes.dll
2013-01-08 18:02 - 2013-01-08 18:02 - 00163840 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\CAgdOutlook.dll
2012-07-26 12:51 - 2012-07-26 12:51 - 00208896 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\VistaCalendar.dll
2015-03-01 05:44 - 2013-05-20 12:58 - 00620718 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\sqlite3.dll
2011-12-20 11:25 - 2011-12-20 11:25 - 00743157 _____ () C:\Program Files (x86)\Kodi\libcdio-13.dll
2011-06-19 20:52 - 2011-06-19 20:52 - 00987136 _____ () C:\Program Files (x86)\Kodi\libxml2.dll
2010-10-02 12:21 - 2010-10-02 12:21 - 00077824 _____ () C:\Program Files (x86)\Kodi\zlib1.dll
2013-08-03 08:07 - 2013-08-03 08:07 - 00723998 _____ () C:\Program Files (x86)\Kodi\system\players\dvdplayer\libgmp-10.dll
2013-08-03 08:49 - 2013-08-03 08:49 - 01600107 _____ () C:\Program Files (x86)\Kodi\system\players\dvdplayer\libgnutls-28.dll
2013-08-03 08:07 - 2013-08-03 08:07 - 04372384 _____ () C:\Program Files (x86)\Kodi\system\players\dvdplayer\libhogweed-2-5.dll
2013-08-03 08:07 - 2013-08-03 08:07 - 03397336 _____ () C:\Program Files (x86)\Kodi\system\players\dvdplayer\libnettle-4-7.dll
2013-08-03 08:07 - 2013-08-03 08:07 - 00512332 _____ () C:\Program Files (x86)\Kodi\system\players\dvdplayer\libp11-kit-0.dll
2014-08-19 15:04 - 2014-08-19 15:04 - 00708608 _____ () C:\Program Files (x86)\Kodi\system\sqlite3.dll
2015-03-26 19:44 - 2015-03-26 19:44 - 00066048 _____ () C:\Program Files (x86)\Kodi\system\cpluff.dll
2009-01-31 22:42 - 2009-01-31 22:42 - 00143096 _____ () C:\Program Files (x86)\Kodi\system\libexpat.dll
2010-03-30 20:29 - 2010-03-30 20:29 - 00279955 _____ () C:\Program Files (x86)\Kodi\system\libidn-11.dll
2011-02-14 17:07 - 2011-02-14 17:07 - 01552412 _____ () C:\Program Files (x86)\Kodi\system\libeay32.dll
2011-02-14 17:07 - 2011-02-14 17:07 - 00354814 _____ () C:\Program Files (x86)\Kodi\system\libssl32.dll
2014-06-30 17:04 - 2014-06-30 17:04 - 00715264 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\_hashlib.pyd
2014-06-30 17:03 - 2014-06-30 17:03 - 00046080 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\_socket.pyd
2014-06-30 17:04 - 2014-06-30 17:04 - 01160704 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\_ssl.pyd
2014-06-30 17:04 - 2014-06-30 17:04 - 00686080 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\unicodedata.pyd
2014-06-30 17:04 - 2014-06-30 17:04 - 00048128 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\_sqlite3.pyd
2014-06-30 17:04 - 2014-06-30 17:04 - 00087552 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\_ctypes.pyd
2014-06-30 17:04 - 2014-06-30 17:04 - 00010240 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\select.pyd
2014-06-30 17:04 - 2014-06-30 17:04 - 00127488 _____ () C:\Program Files (x86)\Kodi\system\python\DLLs\pyexpat.pyd
2012-03-15 11:48 - 2012-03-15 11:48 - 00221184 _____ () C:\Program Files (x86)\ASUS\VirtualCamera\virtualCamera.ax
2015-04-03 17:42 - 2015-03-30 22:07 - 01174856 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\libglesv2.dll
2015-04-03 17:42 - 2015-03-30 22:07 - 00080200 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\libegl.dll
2015-04-03 17:42 - 2015-03-30 22:07 - 09279304 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\pdf.dll
2015-04-03 17:42 - 2015-03-30 22:07 - 14974280 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
 
AlternateDataStreams: C:\Users\jamie\OneDrive:ms-properties
AlternateDataStreams: C:\Users\jamie\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\kerry_000\SkyDrive:ms-properties
 
==================== Safe Mode (whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\19482574.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\19482574.sys => ""="Driver"
 
==================== EXE Association (whitelisted) ===============
 
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\jamie\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\asus.jpg
DNS Servers: 192.168.0.1
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\Services: !SASCORE => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AFBAgent => 2
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: ASLDRService => 3
MSCONFIG\Services: ASUS InstantOn => 3
MSCONFIG\Services: Asus WebStorage Windows Service => 3
MSCONFIG\Services: ATKGFNEXSrv => 3
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: GamesAppService => 3
MSCONFIG\Services: HitmanProScheduler => 2
MSCONFIG\Services: Intel® Capability Licensing Service Interface => 3
MSCONFIG\Services: Intel® ME Service => 3
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: jhi_service => 3
MSCONFIG\Services: LMS => 3
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: RapportMgmtService => 2
MSCONFIG\Services: Sony PC Companion => 3
MSCONFIG\Services: ST2012_Svc => 2
MSCONFIG\Services: TuneUp.UtilitiesSvc => 2
MSCONFIG\Services: UNS => 3
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: ASUSPRP => "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
MSCONFIG\startupreg: DisableS3S4 => 
MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
MSCONFIG\startupreg: mcpltui_exe => 
MSCONFIG\startupreg: RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3 
MSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
HKLM\...\StartupApproved\Run: => "SpywareTerminatorShield"
HKLM\...\StartupApproved\Run: => "SpywareTerminatorUpdater"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-3113827510-3719860129-3176997691-1001\...\StartupApproved\Run: => "SUPERAntiSpyware"
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3113827510-3719860129-3176997691-500 - Administrator - Disabled) => C:\Users\Administrator
Guest (S-1-5-21-3113827510-3719860129-3176997691-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3113827510-3719860129-3176997691-1006 - Limited - Enabled)
jamie (S-1-5-21-3113827510-3719860129-3176997691-1001 - Administrator - Enabled) => C:\Users\jamie
kerry_000 (S-1-5-21-3113827510-3719860129-3176997691-1004 - Limited - Enabled) => C:\Users\kerry_000
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (04/04/2015 06:57:37 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Failed to create restore point (Process = C:\WINDOWS\system32\srtasks.exe ExecuteScheduledSPPCreation; Description = Scheduled Checkpoint; Error = 0x80070422).
 
Error: (04/03/2015 03:05:18 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {e66cfeea-2dfa-4b1b-95b9-450d7169967c}
 
Error: (04/03/2015 03:04:20 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {e66cfeea-2dfa-4b1b-95b9-450d7169967c}
 
Error: (04/03/2015 11:35:13 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2144927151 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (04/03/2015 11:35:07 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2144927151 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (04/03/2015 11:34:56 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2144927151 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (04/03/2015 11:34:45 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2144927151 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (04/03/2015 11:34:23 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2144927151 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
 
System errors:
=============
Error: (04/04/2015 07:25:51 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:14:08 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:13:37 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:13:07 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:12:37 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:12:06 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:11:36 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:11:05 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:10:35 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
Error: (04/04/2015 07:10:05 AM) (Source: DCOM) (EventID: 10010) (User: JAMIES)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}
 
 
Microsoft Office Sessions:
=========================
Error: (04/04/2015 06:57:37 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: C:\WINDOWS\system32\srtasks.exe ExecuteScheduledSPPCreationScheduled Checkpoint0x80070422
 
Error: (04/03/2015 03:05:18 PM) (Source: VSS) (EventID: 8194) (User: )
Description: 0x80070005, Access is denied.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {e66cfeea-2dfa-4b1b-95b9-450d7169967c}
 
Error: (04/03/2015 03:04:20 PM) (Source: VSS) (EventID: 8194) (User: )
Description: 0x80070005, Access is denied.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {e66cfeea-2dfa-4b1b-95b9-450d7169967c}
 
Error: (04/03/2015 11:35:13 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2144927151
 
Error: (04/03/2015 11:35:07 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2144927151
 
Error: (04/03/2015 11:34:56 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2144927151
 
Error: (04/03/2015 11:34:45 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2144927151
 
Error: (04/03/2015 11:34:23 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JAMIES)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2144927151
 
 
==================== Memory info =========================== 
 
Processor: Intel® Celeron® CPU 1007U @ 1.50GHz
Percentage of memory in use: 65%
Total physical RAM: 3981.72 MB
Available physical RAM: 1377.73 MB
Total Pagefile: 8077.72 MB
Available Pagefile: 4740.67 MB
Total Virtual: 131072 MB
Available Virtual: 131071.77 MB
 
==================== Drives ================================
 
Drive c: (Copy of C) (Fixed) (Total:184.99 GB) (Free:75.23 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (DATA) (Fixed) (Total:258.34 GB) (Free:257.72 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 568814A2)
 
Partition: GPT Partition Type.
 
==================== End Of Log ============================


#8 confused82

confused82
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:07:00 PM

Posted 04 April 2015 - 04:32 AM

Users shortcut scan result (x64) Version: 11-03-2015
Ran by jamie at 2015-04-04 07:27:32
Running from C:\Users\jamie\Downloads\Software\Farbar Recovery
Boot Mode: Normal
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
 
 
Shortcut: C:\Users\Administrator\Links\Desktop.lnk -> C:\Users\jamie\Desktop ()
Shortcut: C:\Users\Administrator\Links\Downloads.lnk -> C:\Users\jamie\Downloads ()
Shortcut: C:\Users\Administrator\Desktop\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\jamie\Documents ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\jamie\Pictures ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PokerStars.uk.lnk -> C:\Program Files (x86)\PokerStars.UK\PokerStarsUpdate.exe (PokerStars)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer (2).lnk -> C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Libraries ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Libraries ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (2).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\PokerStars.uk.lnk -> C:\Program Files (x86)\PokerStars.UK\PokerStarsUpdate.exe (PokerStars)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk -> C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AB0000000001}\SC_Reader.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camera.lnk -> C:\Windows\Camera\Camera.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk -> C:\Windows\FileManager\FileManager.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk -> C:\Program Files (x86)\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotosApp.lnk -> C:\Windows\FileManager\PhotosApp.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Store.lnk -> C:\Windows\WinStore\WinStore.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\What is new in the latest version.lnk -> C:\Program Files\WinRAR\WhatsNew.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO\ConvertXtoDVD 4\ConvertXtoDVD 4.lnk -> C:\Program Files (x86)\VSO\ConvertX\4\ConvertXtoDvd.exe (VSO Software SARL)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO\ConvertXtoDVD 4\l glp license.lnk -> C:\Program Files (x86)\VSO\ConvertX\4\lgpl-2.1.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO\ConvertXtoDVD 4\Uninstall  ConvertXToDVD.lnk -> C:\Program Files (x86)\VSO\ConvertX\4\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Alternate Start.lnk -> C:\Program Files\SUPERAntiSpyware\RUNSAS.EXE (SUPERAdBlocker.com and SUPERAntiSpyware.com)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Professional.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StorageCrypt\Check for update.lnk -> C:\Program Files (x86)\StorageCrypt\update.EXE (Sunisoft)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StorageCrypt\StorageCrypt.lnk -> C:\Program Files (x86)\StorageCrypt\StorageCrypt.exe (Magiclab)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StorageCrypt\Uninstall StorageCrypt.lnk -> C:\Program Files (x86)\StorageCrypt\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StorageCrypt\UserGuide for StorageCrypt.lnk -> C:\Program Files (x86)\StorageCrypt\userguide.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2012\Spyware Terminator 2012.lnk -> C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe (Crawler.com)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2012\Uninstall Spyware Terminator 2012.lnk -> C:\Program Files (x86)\Spyware Terminator\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Sony PC Companion\Sony PC Companion 2.1.lnk -> C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Sony)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Media Go\Media Go.lnk -> C:\Program Files (x86)\Sony\Media Go\MediaGo.exe (Sony Network Entertainment International LLC)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedKings Poker\RedKings Poker.lnk -> C:\RedKings\StartRedKingsPoker.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedKings Poker\Uninstall RedKings Poker.lnk -> C:\RedKings\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.UK\Network Status.lnk -> C:\Program Files (x86)\PokerStars.UK\Tracer.exe (PokerStars)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.UK\PokerStars.uk.lnk -> C:\Program Files (x86)\PokerStars.UK\PokerStarsUpdate.exe (PokerStars)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero Blu-ray Player.lnk -> C:\Program Files (x86)\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe (Nero AG)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero Disc To Device.lnk -> C:\Windows\Installer\{6662156E-31EE-4A90-A49A-26E30BF7A6F2}\ScDisc2DeviceStart_31C5D7D15DA846FBB6553A0819A0C381.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero MediaBrowser.lnk -> C:\Program Files (x86)\Nero\KM\MediaBrowser.exe (Nero AG)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero MediaHome.lnk -> C:\Program Files (x86)\Nero\KM\MediaHome.exe (Nero AG)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 2015\Nero 2015.lnk -> C:\Windows\Installer\{9D780839-6E97-4E2A-A5F7-711AF221B609}\NeroLauncher.ex_2882597C6E684EBDA23F3CF2CA0CBC30.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 2015\Nero Burning ROM.lnk -> C:\Windows\Installer\{B3756FCF-13D3-460B-88D5-33CB88CE6CFA}\ARPPRODUCTICON.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 2015\Nero Express.lnk -> C:\Windows\Installer\{6EEF61AB-CC0B-4917-A3F2-97902CD11073}\ARPPRODUCTICON.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 2015\Nero Recode.lnk -> C:\Windows\Installer\{0B67C0D3-AE80-40A0-8727-32D22230A693}\ScRecodeStartMenu_563A75F05683422E8C558ED3B6DA617D.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 2015\Nero RescueAgent.lnk -> C:\Windows\Installer\{38BC5B60-4E70-470A-AE76-E06C15700C68}\NeroRescueAgent.ex_2882597C6E684EBDA23F3CF2CA0CBC30.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 2015\Nero Video.lnk -> C:\Windows\Installer\{A8E6436B-9B20-4764-98C1-5A09FD39553E}\ScVisionStartMenu_88036A9DCD1D412A84701A23A35FB37B.exe (Acresso Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Editor for Free\MP3 Editor for Free.lnk -> C:\Program Files (x86)\MP3 Editor for Free\MP3EditorforFree.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Editor for Free\Uninstall.lnk -> C:\Program Files (x86)\MP3 Editor for Free\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\Silverlight.Configuration.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\accicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Filler 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\inficon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Lync 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\grv_icons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\outicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pubs.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Send to OneNote 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Database Compare 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\dbcicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Lync Recording Manager.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Language Preferences.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Upload Center.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\msouc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Spreadsheet Compare 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\sscicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Telemetry Dashboard for Office 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\osmadminicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Telemetry Log for Office 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\osmclienticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Uninstall Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo Android ROOT\Kingo Android ROOT.lnk -> C:\Program Files (x86)\Kingo Android ROOT\SuperRoot.exe (Kingosoft Technology Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo Android ROOT\Uninstall Kingo Android ROOT.lnk -> C:\Program Files (x86)\Kingo Android ROOT\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\About iTunes.lnk -> C:\Program Files (x86)\iTunes\iTunes.Resources\en_GB.lproj\About iTunes.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk -> C:\Program Files (x86)\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud Photos.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\ShellStreamsShortcut.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Helium Audio Joiner\Helium Audio Joiner.lnk -> C:\Program Files (x86)\Imploded Software\Helium Audio Joiner\HeliumAudioJoiner.exe (Imploded Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Glary Utilities 5.lnk -> C:\Program Files (x86)\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free EXE Lock\Free EXE Lock.lnk -> C:\Program Files (x86)\Free EXE Lock\FreeEXELock.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free EXE Lock\Uninstall.lnk -> C:\Program Files (x86)\Free EXE Lock\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EpsonNet\EpsonNet Config V4\EpsonNet Config Manual.lnk -> C:\Program Files (x86)\EpsonNet\EpsonNet Config V4\HELP\en\EpsonNet Config Manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EpsonNet\EpsonNet Config V4\EpsonNet Config User's Guide.lnk -> C:\Program Files (x86)\EpsonNet\EpsonNet Config V4\HELP\en\ENConfig.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EpsonNet\EpsonNet Config V4\EpsonNet Config.lnk -> C:\Program Files (x86)\EpsonNet\EpsonNet Config V4\ENConfig.exe (SEIKO EPSON CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\EPSON File Manager.lnk -> C:\Program Files (x86)\epson\Creativity Suite\File Manager\EFileManager.exe (SEIKO EPSON CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\Scan Assistant\Scan Assistant.lnk -> C:\Program Files (x86)\epson\Creativity Suite\Scan Assistant\EScanAssist.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\File Manager\EPSON File Manager.lnk -> C:\Program Files (x86)\epson\Creativity Suite\File Manager\EFileManager.exe (SEIKO EPSON CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\File Manager\Readme.lnk -> C:\Program Files (x86)\epson\Creativity Suite\File Manager\DspReadMe.exe (SEIKO EPSON CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\Attach To Email\EPSON Attach To Email.lnk -> C:\Program Files (x86)\epson\Creativity Suite\Attach To Email\AttachToEmail.exe (SEIKO EPSON Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\Attach To Email\Read Me.lnk -> C:\Program Files (x86)\epson\Creativity Suite\Attach To Email\DspReadMe.exe (SEIKO EPSON CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON Scan\EPSON Scan.lnk -> C:\Windows\twain_32\escndv\escndv.exe (SEIKO EPSON CORP.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Manual.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\HelpLauncher.exe (Elaborate Bytes AG)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Uninstall.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\vcd-uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Virtual CloneDrive Revision History.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\manual\changes_vcd.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Virtual CloneDrive.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDPrefs.exe (Elaborate Bytes AG)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EarCatch Ringtone Express\EarCatch Ringtone Express.lnk -> C:\Program Files (x86)\EarCatch Ringtone Express\EarCatchRingtoneExpress.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EarCatch Ringtone Express\Uninstall.lnk -> C:\Program Files (x86)\EarCatch Ringtone Express\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\DVDVideoSoft Free Studio.lnk -> C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe (DVDVideoSoft Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Free YouTube to iPod Converter.lnk -> C:\Program Files (x86)\DVDVideoSoft\Free YouTube to iPod Converter\FreeYouTubeToiPodConverter.exe (DVDVideoSoft Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Free YouTube to MP3 Converter.lnk -> C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe (DVDVideoSoft Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Log Report.lnk -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\DVSSysReport.exe (DVDVideoSoft Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Premium Membership.lnk -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\PremiumMembershipOffer.exe (DVDVideoSoft Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Uninstall.lnk -> C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\Uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digiarty\WinX HD Video Converter Deluxe\Uninstall WinX HD Video Converter Deluxe.lnk -> C:\Program Files (x86)\Digiarty\WinX_HD_Video_Converter_Deluxe\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digiarty\WinX HD Video Converter Deluxe\WinX HD Video Converter Deluxe.lnk -> C:\Program Files (x86)\Digiarty\WinX_HD_Video_Converter_Deluxe\WinX_HD_Video_Converter_Deluxe.exe (Digiarty Software, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diamond Cut Audio\DC8.1 Help.lnk -> C:\Windows\Installer\{7B80A277-E418-4B6C-85F4-F4C738BFA662}\_D5A76FA59293C822786BD6.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diamond Cut Audio\Diamond Cut DC8.1.lnk -> C:\Windows\Installer\{7B80A277-E418-4B6C-85F4-F4C738BFA662}\_6C23363B9D7E06CFA8EBC9.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Start 8\Classic Start 8.lnk -> C:\Program Files (x86)\CStart8\CStart8Tray64.exe (Crawler.com)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Start 8\Uninstall Classic Start 8.lnk -> C:\Program Files (x86)\CStart8\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks\Start BlueStacks.lnk -> C:\Program Files (x86)\BlueStacks\HD-StartLauncher.exe (BlueStack Systems, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast\avast! Pro Antivirus.lnk -> C:\Program Files\AVAST Software\Avast\avastui.exe (AVAST Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS Backtracker.lnk -> C:\Program Files (x86)\ASUS\ASUS Backtracker\ASUS Backtracker.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS Install.lnk -> C:\eSupport\eDriver\AsInsWiz.exe (ASUSTek Computer INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS InstantOn.lnk -> C:\Windows\Installer\{749F674B-2674-47E8-879C-5626A06B2A91}\_39190FC4A9290712755E7B.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS Live Update.Lnk -> C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ASUSTeK Computer Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS Virtual Camera.lnk -> C:\Windows\Installer\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}\_DD6BB7CCB61B3F6F56681D.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\eManual.Lnk -> C:\eSupport\Manual\eManual.exe (ASUSTek Computer Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\LifeFrame.lnk -> C:\Program Files (x86)\ASUS\ASUS LifeFrame3\LifeFrame.exe (ASUSTek Computer Inc. All rights reserved.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\Power4Gear Hybrid.lnk -> C:\Windows\Installer\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}\_E1C683070CBA8103C92CF8.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\USB Charger Plus.lnk -> C:\Windows\Installer\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}\_E8FD568838FE0C8B34DA59.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\WinFlash.Lnk -> C:\Program Files (x86)\ASUS\WinFlash\WinFlash.exe (ASUSTek Computer Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\WebStorage Sync Agent\WebStorage Sync Agent.lnk -> C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe (ASUS Cloud Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\MyBitCast\MyBitcast.lnk -> C:\Program Files (x86)\ASUS\MyBitCast\MyBitCast.exe (Asus)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\MyBitCast\Uninstall.lnk -> C:\Program Files (x86)\ASUS\MyBitCast\uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS Splendid Utility\Splendid Utility.Lnk -> C:\Program Files (x86)\ASUS\Splendid\ACVT.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper Standard Edition 2.0.3\AOMEI Backupper Standard Edition 2.0.3.lnk -> C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Backupper.exe (AOMEI Tech Co., Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper Standard Edition 2.0.3\Uninstall AOMEI Backupper.lnk -> C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\Links\SkyDrive.lnk -> C:\Program Files (x86)\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\jamie\Documents ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\jamie\Pictures ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk -> C:\Program Files (x86)\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\Links\Desktop.lnk -> C:\Users\jamie\Desktop ()
Shortcut: C:\Users\jamie\Links\Downloads.lnk -> C:\Users\jamie\Downloads ()
Shortcut: C:\Users\jamie\Links\SkyDrive (1).lnk -> C:\Users\jamie\SkyDrive ()
Shortcut: C:\Users\jamie\Downloads\Software\Avast 2015 Crack Till 2050\Dropbox.lnk -> C:\Users\jamie\Dropbox ()
Shortcut: C:\Users\jamie\Desktop\Continue MP3 Editor for Free Installation.lnk -> C:\Users\jamie\AppData\Local\Temp\ICReinstall_MP3EditorforFree.exe (No File)
Shortcut: C:\Users\jamie\Desktop\Glary Utilities 5.lnk -> C:\Program Files (x86)\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\Users\jamie\Desktop\Virus Tools\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
Shortcut: C:\Users\jamie\Desktop\Virus Tools\Spyware Terminator 2012.lnk -> C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe (Crawler.com)
Shortcut: C:\Users\jamie\Desktop\Virus Tools\SUPERAntiSpyware Professional.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
Shortcut: C:\Users\jamie\Desktop\File Backing Up Programs\AOMEI Backupper Standard Edition 2.0.3.lnk -> C:\Program Files (x86)\AOMEI Backupper Standard Edition 2.0.3\Backupper.exe (AOMEI Tech Co., Ltd.)
Shortcut: C:\Users\jamie\Desktop\File Backing Up Programs\ASUS Backtracker.lnk -> C:\Program Files (x86)\ASUS\ASUS Backtracker\ASUS Backtracker.exe ()
Shortcut: C:\Users\jamie\Desktop\File Backing Up Programs\Free EXE Lock.lnk -> C:\Program Files (x86)\Free EXE Lock\FreeEXELock.exe ()
Shortcut: C:\Users\jamie\Desktop\File Backing Up Programs\Shoebox.lnk -> C:\Users\jamie\AppData\Roaming\Microsoft\Installer\{9D83AA93-BAA4-4F75-80AF-AABC12B65E3C}\_230E83568215D305512808.exe ()
Shortcut: C:\Users\jamie\Desktop\File Backing Up Programs\StorageCrypt.lnk -> C:\Program Files (x86)\StorageCrypt\StorageCrypt.exe (Magiclab)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe ()
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\ConvertXtoDVD 4.lnk -> C:\Program Files (x86)\VSO\ConvertX\4\ConvertXtoDvd.exe (VSO Software SARL)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\Diamond Cut DC8.1.lnk -> C:\Windows\Installer\{7B80A277-E418-4B6C-85F4-F4C738BFA662}\_90DB19563DEF2C7F227F45.exe ()
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\DVDVideoSoft Free Studio.lnk -> C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe (DVDVideoSoft Ltd.)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\Free YouTube to MP3 Converter.lnk -> C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe (DVDVideoSoft Ltd.)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\Helium Audio Joiner.lnk -> C:\Program Files (x86)\Imploded Software\Helium Audio Joiner\HeliumAudioJoiner.exe (Imploded Software)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\iTunes.lnk -> C:\Program Files (x86)\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\Media Go.lnk -> C:\Program Files (x86)\Sony\Media Go\MediaGo.exe (Sony Network Entertainment International LLC)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\Nero 2015.lnk -> C:\Windows\Installer\{9D780839-6E97-4E2A-A5F7-711AF221B609}\NeroLauncher.ex_06255901E67449719980557FAA5EC1C6.exe (Acresso Software Inc.)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\WinX HD Video Converter Deluxe.lnk -> C:\Program Files (x86)\Digiarty\WinX_HD_Video_Converter_Deluxe\WinX_HD_Video_Converter_Deluxe.exe (Digiarty Software, Inc.)
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\Xilisoft ISO Burner.lnk -> C:\Program Files (x86)\Xilisoft\ISO Burner\isoburn.exe ()
Shortcut: C:\Users\jamie\Desktop\Burning N Editing Programs\µTorrent.lnk -> C:\Users\jamie\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\jamie\Desktop\Browsers\Chromecast.lnk -> C:\Users\jamie\AppData\Local\Google\Chromecast\ChromecastApp.exe (Google)
Shortcut: C:\Users\jamie\Desktop\Browsers\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\jamie\Desktop\Browsers\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\jamie\Desktop\BlueStacks Stuff\Apps.lnk -> C:\Users\Public\Libraries\Apps.library-ms ()
Shortcut: C:\Users\jamie\Desktop\BlueStacks Stuff\Start BlueStacks.lnk -> C:\Program Files (x86)\BlueStacks\HD-StartLauncher.exe (BlueStack Systems, Inc.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\EarCatch Ringtone Express.lnk -> C:\Program Files (x86)\EarCatch Ringtone Express\EarCatchRingtoneExpress.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Free EXE Lock.lnk -> C:\Program Files (x86)\Free EXE Lock\FreeEXELock.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\MP3 Editor for Free.lnk -> C:\Program Files (x86)\MP3 Editor for Free\MP3EditorforFree.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ableton Live 9 Suite.lnk -> C:\ProgramData\Ableton\Live 9 Suite\Program\Ableton Live 9 Suite.exe (Ableton)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\jamie\Documents ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\jamie\Pictures ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Shoebox.lnk -> C:\Users\jamie\AppData\Roaming\Microsoft\Installer\{9D83AA93-BAA4-4F75-80AF-AABC12B65E3C}\_02A655DF2B50EB50FE2D2D.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\ISO Burner\Uninstall.lnk -> C:\Program Files (x86)\Xilisoft\ISO Burner\Uninstall.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\ISO Burner\Xilisoft ISO Burner Help.lnk -> C:\Program Files (x86)\Xilisoft\ISO Burner\isoburn.chm ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\ISO Burner\Xilisoft ISO Burner.lnk -> C:\Program Files (x86)\Xilisoft\ISO Burner\isoburn.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\What is new in the latest version.lnk -> C:\Program Files\WinRAR\WhatsNew.txt ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi\Kodi.lnk -> C:\Program Files (x86)\Kodi\Kodi.exe (XBMC-Foundation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi\Uninstall Kodi.lnk -> C:\Program Files (x86)\Kodi\Uninstall.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe (Dropbox, Inc.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast\Chromecast.lnk -> C:\Users\jamie\AppData\Local\Google\Chromecast\ChromecastApp.exe (Google)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast\Uninstall Chromecast.lnk -> C:\Users\jamie\AppData\Local\Google\Chromecast\unins000.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth File Transfer.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\SendTo\Dropbox.lnk -> C:\Users\jamie\Dropbox ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EarCatch Ringtone Express.lnk -> C:\Program Files (x86)\EarCatch Ringtone Express\EarCatchRingtoneExpress.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Free EXE Lock.lnk -> C:\Program Files (x86)\Free EXE Lock\FreeEXELock.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 5.lnk -> C:\Program Files (x86)\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PokerStars.uk.lnk -> C:\Program Files (x86)\PokerStars.UK\PokerStarsUpdate.exe (PokerStars)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\RedKings Poker.lnk -> C:\RedKings\StartRedKingsPoker.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinX HD Video Converter Deluxe.lnk -> C:\Program Files (x86)\Digiarty\WinX_HD_Video_Converter_Deluxe\WinX_HD_Video_Converter_Deluxe.exe (Digiarty Software, Inc.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Xilisoft ISO Burner.lnk -> C:\Program Files (x86)\Xilisoft\ISO Burner\isoburn.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -> C:\Users\jamie\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ASUS Install.lnk -> C:\eSupport\eDriver\AsInsWiz.exe (ASUSTek Computer INC.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ASUS InstantOn.lnk -> C:\Windows\Installer\{749F674B-2674-47E8-879C-5626A06B2A91}\_39190FC4A9290712755E7B.exe ()
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\DVDVideoSoft Free Studio.lnk -> C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe (DVDVideoSoft Ltd.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Kodi.lnk -> C:\Program Files (x86)\Kodi\Kodi.exe (XBMC-Foundation)
Shortcut: C:\Users\jamie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\Application Shortcuts\BlueStacks\com.amazon.venezia.lnk -> C:\ProgramData\BlueStacks\UserData\TileData\000001\Launcher.vbs ()
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\Application Shortcuts\BlueStacks\com.facebook.katana.lnk -> C:\ProgramData\BlueStacks\UserData\TileData\000000\Launcher.vbs ()
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\Application Shortcuts\BlueStacks\com.tdo.showbox.lnk -> C:\ProgramData\BlueStacks\UserData\TileData\000003\Launcher.vbs ()
Shortcut: C:\Users\jamie\AppData\Local\Microsoft\Windows\Application Shortcuts\BlueStacks\com.twitter.android.lnk -> C:\ProgramData\BlueStacks\UserData\TileData\000002\Launcher.vbs ()
Shortcut: C:\Users\kerry_000\Links\Desktop.lnk -> C:\Users\jamie\Desktop ()
Shortcut: C:\Users\kerry_000\Links\Downloads.lnk -> C:\Users\jamie\Downloads ()
Shortcut: C:\Users\kerry_000\Links\SkyDrive.lnk -> C:\Program Files (x86)\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\Documents\Desktop - Shortcut.lnk -> C:\Users\jamie\Desktop ()
Shortcut: C:\Users\kerry_000\Desktop\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe ()
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\jamie\Documents ()
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\jamie\Pictures ()
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth File Transfer.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PokerStars.uk.lnk -> C:\Program Files (x86)\PokerStars.UK\PokerStarsUpdate.exe (PokerStars)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ASUS Install.lnk -> C:\eSupport\eDriver\AsInsWiz.exe (ASUSTek Computer INC.)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\eManual.Lnk -> C:\eSupport\Manual\eManual.exe (ASUSTek Computer Inc.)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Libraries ()
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\kerry_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Adobe Reader XI.lnk -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\Users\Public\Desktop\avast! Pro Antivirus.lnk -> C:\Program Files\AVAST Software\Avast\avastui.exe (AVAST Software)
Shortcut: C:\Users\Public\Desktop\EPSON File Manager.lnk -> C:\Program Files (x86)\epson\Creativity Suite\File Manager\EFileManager.exe (SEIKO EPSON CORPORATION)
Shortcut: C:\Users\Public\Desktop\EPSON Scan.lnk -> C:\Windows\twain_32\escndv\escndv.exe (SEIKO EPSON CORP.)
Shortcut: C:\Users\Public\Desktop\Kingo Android ROOT.lnk -> C:\Program Files (x86)\Kingo Android ROOT\SuperRoot.exe (Kingosoft Technology Ltd.)
Shortcut: C:\Users\Public\Desktop\PokerStars.uk.lnk -> C:\Program Files (x86)\PokerStars.UK\PokerStarsUpdate.exe (PokerStars)
Shortcut: C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk -> C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Sony)
Shortcut: C:\Users\Public\Desktop\Virtual CloneDrive.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDPrefs.exe (Elaborate Bytes AG)
 
 
 
 
ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> -sta {C90FB8CA-3295-4462-A721-2935E83694BA}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO\ConvertXtoDVD 4\ Drivers\ Remove Driver (Compatibility Mode).lnk -> C:\Program Files (x86)\VSO\pcsetup\PcSetup.exe (VSO Software SARL) -> /remove /removeatip " Run compatibility mode for burning... Please reboot aftwerwards!"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Endpoint Protection\Start Trusteer Endpoint Protection.lnk -> C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe (IBM Corp.) -> -userstart
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Endpoint Protection\Stop Trusteer Endpoint Protection.lnk -> C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe (IBM Corp.) -> -shutdown
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Endpoint Protection\Trusteer Endpoint Protection Console.lnk -> C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe (IBM Corp.) -> -config
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Registration-Activation.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware) ->  /register
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.UK\Uninstall PokerStars.uk.lnk -> C:\Program Files (x86)\PokerStars.UK\PokerStarsUninstall.exe () -> /u:PokerStars.uk
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Designer 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\inficon.exe () ->  /design 
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Calendar.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> calendar
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Contacts.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> contacts
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Find My iPhone.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> find
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Mail.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> mail
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Notes.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> notes
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Reminders.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> reminders
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Casual Games.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Enthusiast Games.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=26352374-af55-4b53-b07b-6b0288ed97df /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Family Games.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Kids Games.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=3eda1e54-8889-41f5-a649-5a306789b7ef /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All MMO Games.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=c3c636e0-1b04-11de-8c30-0800200c9a66 /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\File Manager\EPSON File Manager Uninstall.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{D02F30FB-0BC4-419A-9B9C-ADC610029B50}\Setup.exe" -l0x9 UNINST
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite\Attach To Email\Uninstall EPSON Attach To Email.lnk -> C:\Program Files (x86)\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe () -> /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /x
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX130 Series\Driver Update.lnk -> C:\Windows\System32\spool\drivers\x64\3\E_IUCHJE.EXE (SEIKO EPSON CORPORATION) -> /RUN /D "EPSON SX130 Series"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX130 Series\EPSON Printer Software Uninstall.lnk -> C:\Windows\System32\spool\drivers\x64\3\E_IINSHJE.EXE (SEIKO EPSON CORPORATION) -> /R /APD /P:"EPSON SX130 Series"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX130 Series\Technical Support.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IGEPHJE.DLL,GE_OpenELINK "Epson Stylus SX130" 
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embedded Lockdown Manager\Embedded Lockdown Manager.lnk -> C:\Windows\System32\mmc.exe (Microsoft Corporation) -> "%windir%\system32\EmbeddedLockdown.msc"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diamond Cut Audio\Demo Wave Files\Big Click Cracked 78 Demo.lnk -> C:\Windows\Installer\{7B80A277-E418-4B6C-85F4-F4C738BFA662}\_D201850643C53BD6D9677D.exe () -> BigClickCracked78Demo.wav
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diamond Cut Audio\Demo Wave Files\Demo1.lnk -> C:\Windows\Installer\{7B80A277-E418-4B6C-85F4-F4C738BFA662}\_547867A13598E42C92DEB3.exe () -> demo1.wav
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diamond Cut Audio\Demo Wave Files\Hiss Burst Demo.lnk -> C:\Windows\Installer\{7B80A277-E418-4B6C-85F4-F4C738BFA662}\_1CA44CB1E816A549BF5E0D.exe () -> HissBurstDemo.wav
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diamond Cut Audio\Demo Wave Files\Radio Demo.lnk -> C:\Windows\Installer\{7B80A277-E418-4B6C-85F4-F4C738BFA662}\_1BB900BB05447D0A22AD65.exe () -> RadioDemo.wav
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast\avast! SafeZone.lnk -> C:\Program Files\AVAST Software\Avast\avastui.exe (AVAST Software) -> /sfzonebrowser
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Embedded Lockdown Manager.lnk -> C:\Windows\System32\mmc.exe (Microsoft Corporation) -> "%windir%\system32\EmbeddedLockdown.msc"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{d58eecb0-0816-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{c3c636e0-1b04-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=c3c636e0-1b04-11de-8c30-0800200c9a66 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{3eda1e54-8889-41f5-a649-5a306789b7ef}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=3eda1e54-8889-41f5-a649-5a306789b7ef /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{26352374-af55-4b53-b07b-6b0288ed97df}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=26352374-af55-4b53-b07b-6b0288ed97df /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{000d96f5-8034-4b74-a429-b6f0b04c75f4}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\BlueStacks\UserData\Library\My Apps\Appstore.lnk -> C:\Program Files (x86)\BlueStacks\HD-RunApp.exe (BlueStack Systems, Inc.) -> -p com.amazon.venezia -a com.amazon.venezia.Venezia
ShortcutWithArgument: C:\ProgramData\BlueStacks\UserData\Library\My Apps\Facebook.lnk -> C:\Program Files (x86)\BlueStacks\HD-RunApp.exe (BlueStack Systems, Inc.) -> -p com.facebook.katana -a com.facebook.katana.LoginActivity
ShortcutWithArgument: C:\ProgramData\BlueStacks\UserData\Library\My Apps\Help.lnk -> C:\Program Files (x86)\BlueStacks\HD-RunApp.exe (BlueStack Systems, Inc.) -> -p com.bluestacks.help -a com.bluestacks.help.HelpActivity
ShortcutWithArgument: C:\ProgramData\BlueStacks\UserData\Library\My Apps\Show Box.lnk -> C:\Program Files (x86)\BlueStacks\HD-RunApp.exe (BlueStack Systems, Inc.) -> -p com.tdo.showbox -a com.tdo.showbox.activities.MainActivity
ShortcutWithArgument: C:\ProgramData\BlueStacks\UserData\Library\My Apps\Twitter.lnk -> C:\Program Files (x86)\BlueStacks\HD-RunApp.exe (BlueStack Systems, Inc.) -> -p com.twitter.android -a com.twitter.android.StartActivity
ShortcutWithArgument: C:\ProgramData\BlueStacks\UserData\Library\App Stores\1Mobile Market.lnk -> C:\Program Files (x86)\BlueStacks\HD-RunApp.exe (BlueStack Systems, Inc.) -> -p me.onemobile.android -a me.onemobile.android.MainPagerActivity
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\jamie\Desktop\File Backing Up Programs\Dropbox.lnk -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) -> /home
ShortcutWithArgument: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\ISO Burner\Buy.lnk -> C:\Program Files (x86)\Xilisoft\ISO Burner\isoburn.exe () -> -buyurl
ShortcutWithArgument: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk -> C:\Users\jamie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) -> /home
ShortcutWithArgument: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Play Music.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=fahmaaghhglfmonjliepjlchgpgfmobi
ShortcutWithArgument: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\jamie\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\kerry_000\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\kerry_000\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\Public\Desktop\avast! SafeZone.lnk -> C:\Program Files\AVAST Software\Avast\avastui.exe (AVAST Software) -> /sfzonebrowser
 
 
InternetURL: C:\Users\Administrator\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\Administrator\Favorites\ASUS E-Service\ASUS Homepage.url -> hxxp://www.asus.com/
InternetURL: C:\Users\Administrator\Favorites\ASUS E-Service\ASUS Member.url -> hxxp://member.asus.com/
InternetURL: C:\Users\Administrator\Favorites\ASUS E-Service\ASUS Software Download.url -> hxxp://support.asus.com/download
InternetURL: C:\Users\Administrator\Favorites\ASUS E-Service\ASUS Technical Support.url -> hxxp://support.asus.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StorageCrypt\StorageCrypt on the Web.url -> hxxp://www.magic2003.net
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2012\SpywareTerminator.com.url -> hxxp://www.spywareterminator.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Editor for Free\More Tools.url -> hxxp://www.freeaudiovideosoft.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Editor for Free\MP3 Editor for Free on the Web.url -> hxxp://www.mp3-editor.net/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo Android ROOT\Kingo Android ROOT on the Web.url -> hxxp://www.kingoapp.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Website.url -> hxxp://www.glarysoft.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free EXE Lock\Free EXE Lock on the Web.url -> hxxp://www.freeexelock.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free EXE Lock\More Tools.url -> hxxp://www.freeaudiovideosoft.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EarCatch Ringtone Express\EarCatch Ringtone Express on the Web.url -> hxxp://www.mp3-editor.net/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EarCatch Ringtone Express\More Free Tools.url -> hxxp://www.mp3-editor.net/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digiarty\WinX HD Video Converter Deluxe\WinX HD Video Converter Deluxe on the Web.url -> hxxp://www.winxdvd.com/hd-video-converter-deluxe/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Start 8\classicstart8.com.url -> hxxp://www.classicstart8.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper Standard Edition 2.0.3\Visit our website.url -> hxxp://www.backup-utility.com
InternetURL: C:\Users\jamie\OneDrive\Documents\jamie's Notebook.url -> https://skydrive.live.com/redir.aspx?cid=d22faa6a2785983e&resid=D22FAA6A2785983E!764&type=3
InternetURL: C:\Users\jamie\FILE BACK UP DRIVE\jamie\JAMIES\Data\C\Users\jamie\Favorites\Bing (2014_06_22 08_26_45 UTC).url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\jamie\FILE BACK UP DRIVE\jamie\JAMIES\Data\C\Users\jamie\Favorites\Come In — Unlock Bittorrent! (2014_06_22 08_26_45 UTC).url -> hxxp://come.in/
InternetURL: C:\Users\jamie\FILE BACK UP DRIVE\jamie\JAMIES\Data\C\Users\jamie\Favorites\ASUS E-Service\ASUS Homepage (2014_06_22 08_26_45 UTC).url -> hxxp://www.asus.com/
InternetURL: C:\Users\jamie\FILE BACK UP DRIVE\jamie\JAMIES\Data\C\Users\jamie\Favorites\ASUS E-Service\ASUS Member (2014_06_22 08_26_45 UTC).url -> hxxp://member.asus.com/
InternetURL: C:\Users\jamie\FILE BACK UP DRIVE\jamie\JAMIES\Data\C\Users\jamie\Favorites\ASUS E-Service\ASUS Software Download (2014_06_22 08_26_45 UTC).url -> hxxp://support.asus.com/download
InternetURL: C:\Users\jamie\FILE BACK UP DRIVE\jamie\JAMIES\Data\C\Users\jamie\Favorites\ASUS E-Service\ASUS Technical Support (2014_06_22 08_26_45 UTC).url -> hxxp://support.asus.com/
InternetURL: C:\Users\jamie\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\jamie\Favorites\Come In — Unlock Bittorrent!.url -> hxxp://come.in/
InternetURL: C:\Users\jamie\Favorites\ASUS E-Service\ASUS Homepage.url -> hxxp://www.asus.com/
InternetURL: C:\Users\jamie\Favorites\ASUS E-Service\ASUS Member.url -> hxxp://member.asus.com/
InternetURL: C:\Users\jamie\Favorites\ASUS E-Service\ASUS Software Download.url -> hxxp://support.asus.com/download
InternetURL: C:\Users\jamie\Favorites\ASUS E-Service\ASUS Technical Support.url -> hxxp://support.asus.com/
InternetURL: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi\Visit Kodi Online.url -> hxxp://kodi.tv
InternetURL: C:\Users\jamie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox Website.URL -> hxxp://www.dropbox.com
InternetURL: C:\Users\kerry_000\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\kerry_000\Favorites\ASUS E-Service\ASUS Homepage.url -> hxxp://www.asus.com/
InternetURL: C:\Users\kerry_000\Favorites\ASUS E-Service\ASUS Member.url -> hxxp://member.asus.com/
InternetURL: C:\Users\kerry_000\Favorites\ASUS E-Service\ASUS Software Download.url -> hxxp://support.asus.com/download
InternetURL: C:\Users\kerry_000\Favorites\ASUS E-Service\ASUS Technical Support.url -> hxxp://support.asus.com/
 
==================== End of log =============================


#9 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:03:00 PM

Posted 04 April 2015 - 07:50 AM

The FRST.txt has been cut off, please attach it if it is too large to paste into your reply  (that's the most important log for me to see)


Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#10 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:03:00 PM

Posted 29 August 2015 - 06:24 PM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users