Taryn
Topic Starter
I don't know why, but everytime I open my firefox browser, the homepage is searchqu.com. I tried changing the homepage to google, but when I close it, and open firefox up again as a test, searchqu is back
. I tried deleting any programs that I thought might of caused this
. I recently found this site which trying to google my issue. Please help.
Here's my OTL log:
Here's my EXTRAS log:
Here's my OTL log:
OTL logfile created on: 4/22/2011 12:24:29 AM - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\home\Downloads 64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 44.00% Memory free 3.00 Gb Paging File | 2.00 Gb Available in Paging File | 62.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 136.95 Gb Total Space | 58.35 Gb Free Space | 42.61% Space Free | Partition Type: NTFS Computer Name: HOME-PC | User Name: home | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\home\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\datamngrUI.exe (Discordia, LTD) PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe () PRC - C:\Users\home\AppData\Local\Google\Update\1.2.183.39\GoogleCrashHandler.exe (Google Inc.) PRC - C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.) PRC - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\LVPrS64H.exe (Logitech Inc.) PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) PRC - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\OFFICEVIRT.EXE () PRC - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe (Acer Incorporated) PRC - C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Acer) PRC - C:\Program Files (x86)\Winamp Remote\bin\OrbTray.exe (Orb Networks) PRC - C:\Program Files (x86)\Winamp Remote\bin\Orb.exe (Orb Networks, Inc.) PRC - C:\Program Files (x86)\TouchFreeze\TouchFreeze.exe () ========== Modules (SafeList) ========== MOD - C:\Users\home\Downloads\OTL.exe (OldTimer Tools) MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation) ========== Win32 Services (SafeList) ========== SRV:64bit: - (wlcrasvc) – C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation) SRV:64bit: - (LVPrcS64) – C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.) SRV:64bit: - (ePowerSvc) – C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) SRV:64bit: - (AMD External Events Utility) – C:\Windows\SysNative\atiesrxx.exe (AMD) SRV:64bit: - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV:64bit: - (Updater Service) – C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Acer) SRV - (Akamai) – C:/Program Files (x86)/Common Files/Akamai/netsession_win_aeec0f0.dll () SRV - (npggsvc) – C:\Windows\SysWow64\GameMon.des (INCA Internet Co., Ltd.) SRV - (MotoConnect Service) – C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnectService.exe () SRV - (sftvsa) – C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) SRV - (sftlist) – C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) SRV - (clr_optimization_v4.0.30319_32) – C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (MWLService) – C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe () SRV - (Greg_Service) – C:\Program Files (x86)\Acer\Registration\GregHSRW.exe (Acer Incorporated) SRV - (clr_optimization_v2.0.50727_32) – C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV:64bit: - (easytether) – C:\Windows\SysNative\drivers\easytthr.sys (Mobile Stream) DRV:64bit: - (LVUVC64) Logitech HD Webcam C510(UVC) – C:\Windows\SysNative\drivers\lvuvc64.sys (Logitech Inc.) DRV:64bit: - (LVRS64) – C:\Windows\SysNative\drivers\lvrs64.sys (Logitech Inc.) DRV:64bit: - (CompFilter64) – C:\Windows\SysNative\drivers\lvbflt64.sys (Logitech Inc.) DRV:64bit: - (SRS_HDAL_Service) – C:\Windows\SysNative\drivers\SRS_HDAL_amd64.sys () DRV:64bit: - (LVPr2Mon) – C:\Windows\SysNative\drivers\LVPr2M64.sys () DRV:64bit: - (LVPr2M64) – C:\Windows\SysNative\drivers\LVPr2M64.sys () DRV:64bit: - (Sftvol) – C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation) DRV:64bit: - (Sftplay) – C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation) DRV:64bit: - (Sftredir) – C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation) DRV:64bit: - (Sftfs) – C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation) DRV:64bit: - (rtl8192se) – C:\Windows\SysNative\drivers\rtl8192se.sys (Realtek Semiconductor Corporation ) DRV:64bit: - (BCM43XX) – C:\Windows\SysNative\drivers\BCMWL664.SYS (Broadcom Corporation) DRV:64bit: - (RSUSBSTOR) – C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.) DRV:64bit: - (atikmdag) – C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.) DRV:64bit: - (L1C) NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20) – C:\Windows\SysNative\drivers\L1C62x64.sys (Atheros Communications, Inc.) DRV:64bit: - (amdsata) – C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) – C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (amdsbs) – C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) – C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (HpSAMD) – C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (stexstor) – C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:64bit: - (ROOTMODEM) – C:\Windows\SysNative\drivers\rootmdm.sys (Microsoft Corporation) DRV:64bit: - (usb_rndisx) – C:\Windows\SysNative\drivers\usb8023x.sys (Microsoft Corporation) DRV:64bit: - (androidusb) – C:\Windows\SysNative\drivers\motoandroid.sys (Motorola) DRV:64bit: - (ApfiltrService) – C:\Windows\SysNative\drivers\Apfiltr.sys (Alps Electric Co., Ltd.) DRV:64bit: - (Ntfs) – C:\Windows\SysNative\wbem\ntfs.mof () DRV:64bit: - (ebdrv) – C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (b06bdrv) – C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) – C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) – C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV:64bit: - (mwlPSDVDisk) – C:\Windows\SysNative\drivers\mwlPSDVDisk.sys (Egis Technology Inc.) DRV:64bit: - (mwlPSDFilter) – C:\Windows\SysNative\drivers\mwlPSDFilter.sys (Egis Technology Inc.) DRV:64bit: - (mwlPSDNServ) – C:\Windows\SysNative\drivers\mwlPSDNserv.sys (Egis Technology Inc.) DRV:64bit: - (MotDev) – C:\Windows\SysNative\drivers\motodrv.sys (Motorola Inc) DRV:64bit: - (NTIDrvr) – C:\Windows\SysNative\drivers\NTIDrvr.sys (NewTech Infosystems, Inc.) DRV:64bit: - (UBHelper) – C:\Windows\SysNative\drivers\UBHelper.sys (NewTech Infosystems Corporation) DRV:64bit: - (AtiPcie) AMD PCI Express (3GIO) – C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.) DRV:64bit: - (usbfilter) – C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices) DRV:64bit: - (hamachi) – C:\Windows\SysNative\drivers\hamachi.sys (LogMeIn, Inc.) DRV:64bit: - (pnetmdm) – C:\Windows\SysNative\drivers\pnetmdm64.sys (June Fabrics Technology) DRV - (DKbFltr) Dritek Keyboard Filter Driver (64-bit) – C:\Windows\SysWOW64\Drivers\DKbFltr.sys (Dritek System Inc.) DRV - (NPPTNT2) – C:\Windows\SysWOW64\npptNT2.sys (INCA Internet Co., Ltd.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l;=0409&m;=aspire_5517&r;=273603107545l03d4z115t4942y432 IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l;=0409&m;=aspire_5517&r;=273603107545l03d4z115t4942y432 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l;=0409&m;=aspire_5517&r;=273603107545l03d4z115t4942y432 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l;=0409&m;=aspire_5517&r;=273603107545l03d4z115t4942y432 IE - HKLM\..\URLSearchHook: {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files (x86)\PageRage\prxtbPage.dll (Conduit Ltd.) IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l;=0409&m;=aspire_5517&r;=273603107545l03d4z115t4942y432 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.searchqu.com/406 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://homepage.acer.com/rdr.aspx?b=ACAW&l;=0409&m;=aspire_5517&r;=273603107545l03d4z115t4942y432 IE - HKCU\..\URLSearchHook: {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files (x86)\PageRage\prxtbPage.dll (Conduit Ltd.) IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.startup.homepage: "http://www.searchqu.com/406" FF - HKLM\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/04/18 14:02:25 | 000,000,000 | —D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010/10/09 03:30:07 | 000,000,000 | —D | M] (No name found) – C:\Users\home\AppData\Roaming\mozilla\Extensions [2010/10/09 03:30:07 | 000,000,000 | —D | M] (No name found) – C:\Users\home\AppData\Roaming\mozilla\Extensions\[removed] [2010/10/07 00:38:16 | 000,000,000 | —D | M] (No name found) – C:\Users\home\AppData\Roaming\mozilla\Extensions\[removed] [2011/04/21 23:58:12 | 000,000,000 | —D | M] (No name found) – C:\Users\home\AppData\Roaming\mozilla\Firefox\Profiles\5i8smcx3.default\extensions [2011/04/21 23:58:12 | 000,000,000 | —D | M] (No name found) – C:\Users\home\AppData\Roaming\mozilla\Firefox\Profiles\5i8smcx3.default\extensions\staged [2011/04/18 14:02:25 | 000,000,000 | —D | M] (No name found) – C:\Program Files (x86)\Mozilla Firefox\extensions File not found (No name found) – [2011/03/18 13:53:24 | 000,142,296 | —- | M] (Mozilla Foundation) – C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll [2010/01/01 04:00:00 | 000,002,252 | —- | M] () – C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml O1 HOSTS File: ([2009/06/10 17:00:26 | 000,000,824 | —- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (UrlHelper Class) - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\x64\IEBHO.dll (Discordia, LTD) O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg64.dll (Google Inc.) O2 - BHO: (ZoneAlarm Toolbar Registrar) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - File not found O2 - BHO: (PageRage Toolbar) - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files (x86)\PageRage\prxtbPage.dll (Conduit Ltd.) O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files (x86)\Windows ilivid Toolbar\ToolBar\searchqudtx.dll () O2 - BHO: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - No CLSID value found. O2 - BHO: (UrlHelper Class) - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\IEBHO.dll (Discordia, LTD) O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.) O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo Layers Client\YontooIEClient.dll (Yontoo Technology, Inc.) O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (PageRage Toolbar) - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files (x86)\PageRage\prxtbPage.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files (x86)\Windows ilivid Toolbar\ToolBar\searchqudtx.dll () O3 - HKLM\..\Toolbar: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - No CLSID value found. O3 - HKLM\..\Toolbar: (ZoneAlarm Toolbar) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - File not found O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (PageRage Toolbar) - {9565115D-C7D6-46D3-BD63-B67B481A4368} - C:\Program Files (x86)\PageRage\prxtbPage.dll (Conduit Ltd.) O3:64bit: - HKCU\..\Toolbar\WebBrowser: (ZoneAlarm Toolbar) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - File not found O3 - HKCU\..\Toolbar\WebBrowser: (ZoneAlarm Toolbar) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - File not found O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4 - HKLM..\Run: [DATAMNGR] C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\datamngrUI.exe (Discordia, LTD) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.) O4 - HKCU..\Run: [DW6] File not found O4 - HKCU..\Run: [TouchFreeze] C:\Program Files (x86)\TouchFreeze\TouchFreeze.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1 O9 - Extra Button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files (x86)\Paltalk Messenger\paltalk.exe (AVM Software Inc.) O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites) O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites) O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites) O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites) O16 - DPF: {483EB14D-AF1C-4951-81B0-4E2B41829FF6} https://www.select2perform.com/cabs/QOLCheck.ocx (QOLCheck Control) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx (WRC Class) O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.1.1 O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WIC55D~1\Datamngr\x64\datamngr.dll) - C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\x64\datamngr.dll (Discordia, LTD) O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WIC55D~1\Datamngr\x64\IEBHO.dll) - C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\x64\IEBHO.dll (Discordia, LTD) O20 - AppInit_DLLs: (C:\PROGRA~2\WIC55D~1\Datamngr\datamngr.dll) - C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\datamngr.dll (Discordia, LTD) O20 - AppInit_DLLs: (C:\PROGRA~2\WIC55D~1\Datamngr\IEBHO.dll) - C:\Program Files (x86)\Windows ilivid Toolbar\Datamngr\IEBHO.dll (Discordia, LTD) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:64bit: - HKLM\..comfile [open] – "%1" %* O35:64bit: - HKLM\..exefile [open] – "%1" %* O35 - HKLM\..comfile [open] – "%1" %* O35 - HKLM\..exefile [open] – "%1" %* O37:64bit: - HKLM\…com [@ = comfile] – "%1" %* O37:64bit: - HKLM\…exe [@ = exefile] – "%1" %* O37 - HKLM\…com [@ = comfile] – "%1" %* O37 - HKLM\…exe [@ = exefile] – "%1" %* Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32:64bit: vidc.i420 - lvcod64.dll (Logitech Inc.) Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32: vidc.444p - C:\Program Files (x86)\t@b\0.958\686\tabdec.dll File not found Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.) Drivers32: vidc.ffds - C:\Program Files (x86)\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll () Drivers32: vidc.i420 - C:\Windows\SysWow64\lvcodec2.dll (Logitech Inc.) Drivers32: vidc.iyuv - C:\Program Files (x86)\t@b\0.958\686\tabdec.dll File not found Drivers32: vidc.mpng - C:\Program Files (x86)\t@b\0.958\686\tabdec.dll File not found Drivers32: vidc.mvjp - C:\Program Files (x86)\t@b\0.958\686\tabdec.dll File not found Drivers32: vidc.yv12 - C:\Program Files (x86)\t@b\0.958\686\tabdec.dll File not found Drivers32: vidc.yvu9 - C:\Program Files (x86)\t@b\0.958\686\tabdec.dll File not found CREATERESTOREPOINT Restore point Set: OTL Restore Point ========== Files/Folders - Created Within 30 Days ========== [2011/04/21 23:26:49 | 1638,848,120 | —- | C] (Acresso Software Inc.) – C:\Users\home\Desktop\Fiesta-10.0.0356.exe.downloading [2011/04/18 14:02:36 | 000,000,000 | —D | C] – C:\Users\home\AppData\Local\Mozilla [2011/04/18 14:02:24 | 000,000,000 | —D | C] – C:\Program Files (x86)\Mozilla Firefox [2011/04/18 10:47:28 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\file2 [2011/04/17 17:08:40 | 000,000,000 | —D | C] – C:\Program Files (x86)\Roblox [2011/04/13 16:41:01 | 000,476,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\XpsGdiConverter.dll [2011/04/13 16:41:01 | 000,288,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\XpsGdiConverter.dll [2011/04/13 16:40:58 | 000,852,480 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\jscript.dll [2011/04/13 16:40:57 | 000,716,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\jscript.dll [2011/04/13 16:40:57 | 000,612,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vbscript.dll [2011/04/13 16:40:51 | 001,395,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfc42.dll [2011/04/13 16:40:51 | 001,359,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfc42u.dll [2011/04/13 16:40:51 | 001,137,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc42.dll [2011/04/13 16:40:50 | 001,164,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc42u.dll [2011/04/13 16:40:45 | 000,367,104 | —- | C] (Adobe Systems Incorporated) – C:\Windows\SysNative\atmfd.dll [2011/04/13 16:40:45 | 000,294,912 | —- | C] (Adobe Systems Incorporated) – C:\Windows\SysWow64\atmfd.dll [2011/04/13 16:40:45 | 000,046,080 | —- | C] (Adobe Systems) – C:\Windows\SysNative\atmlib.dll [2011/04/13 16:40:45 | 000,034,304 | —- | C] (Adobe Systems) – C:\Windows\SysWow64\atmlib.dll [2011/04/13 16:40:26 | 000,703,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msfeeds.dll [2011/04/13 16:40:26 | 000,599,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msfeeds.dll [2011/04/13 16:40:25 | 000,256,000 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iepeers.dll [2011/04/13 16:40:25 | 000,247,808 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieui.dll [2011/04/13 16:40:25 | 000,185,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iepeers.dll [2011/04/13 16:40:25 | 000,176,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieui.dll [2011/04/13 16:40:25 | 000,097,280 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mshtmled.dll [2011/04/13 16:40:25 | 000,067,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mshtmled.dll [2011/04/13 16:40:25 | 000,057,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\licmgr10.dll [2011/04/13 16:40:24 | 000,482,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\html.iec [2011/04/13 16:40:24 | 000,386,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\html.iec [2011/04/13 16:40:24 | 000,044,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\licmgr10.dll [2011/04/13 16:40:24 | 000,012,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msfeedssync.exe [2011/04/13 16:40:24 | 000,012,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msfeedssync.exe [2011/04/13 16:39:37 | 000,356,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dnsapi.dll [2011/04/13 16:39:37 | 000,030,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dnscacheugc.exe [2011/04/13 16:39:37 | 000,028,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dnscacheugc.exe [2011/04/13 16:39:36 | 000,267,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\FXSCOVER.exe [2011/04/13 16:39:33 | 000,640,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winload.efi [2011/04/13 16:39:33 | 000,603,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winload.exe [2011/04/13 16:39:33 | 000,556,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winresume.efi [2011/04/13 16:39:33 | 000,518,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winresume.exe [2011/04/13 16:39:33 | 000,020,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kdusb.dll [2011/04/13 16:39:33 | 000,019,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kd1394.dll [2011/04/13 16:39:33 | 000,017,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kdcom.dll [2011/04/12 23:15:47 | 000,000,000 | —D | C] – C:\Users\home\AppData\Roaming\Tific [2011/04/12 23:15:47 | 000,000,000 | —D | C] – C:\Users\home\AppData\Local\Tific [2011/04/12 23:15:21 | 000,000,000 | —D | C] – C:\Program Files (x86)\NortonInstaller [2011/04/12 16:56:31 | 000,000,000 | —D | C] – C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Paltalk Messenger [2011/04/12 16:56:26 | 000,000,000 | —D | C] – C:\Users\home\AppData\Roaming\Paltalk [2011/04/12 16:56:20 | 000,000,000 | —D | C] – C:\Windows\Paltalk Messenger [2011/04/12 16:56:19 | 000,000,000 | —D | C] – C:\Program Files (x86)\Paltalk Messenger [2011/04/10 16:00:56 | 000,000,000 | —D | C] – C:\Users\home\AppData\Roaming\skypePM [2011/04/10 16:00:51 | 000,000,000 | —D | C] – C:\ProgramData\Skype Extras [2011/04/10 15:59:58 | 000,000,000 | —D | C] – C:\Users\home\AppData\Roaming\Skype [2011/04/10 15:59:17 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2011/04/10 15:59:16 | 000,000,000 | —D | C] – C:\Program Files (x86)\Common Files\Skype [2011/04/10 15:59:15 | 000,000,000 | R–D | C] – C:\Program Files (x86)\Skype [2011/04/10 15:59:08 | 000,000,000 | —D | C] – C:\ProgramData\Skype [2011/04/02 10:28:52 | 000,000,000 | —D | C] – C:\Users\home\AppData\Local\Ilivid Player [2011/04/02 10:23:23 | 000,000,000 | —D | C] – C:\Program Files (x86)\Windows ilivid Toolbar [2011/04/02 10:23:17 | 000,000,000 | —D | C] – C:\Users\home\AppData\Local\PackageAware [2011/03/23 23:09:13 | 000,000,000 | —D | C] – C:\Users\home\Desktop\inspiration [1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2011/04/22 00:26:04 | 000,000,898 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011/04/22 00:22:50 | 1638,848,120 | —- | M] (Acresso Software Inc.) – C:\Users\home\Desktop\Fiesta-10.0.0356.exe.downloading [2011/04/22 00:21:48 | 000,000,434 | —- | M] () – C:\Users\home\Desktop\Resume Download of Fiesta Online.url [2011/04/21 23:29:05 | 000,000,904 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3054859662-2190202454-560103333-1001UA.job [2011/04/21 22:29:00 | 000,000,852 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3054859662-2190202454-560103333-1001Core.job [2011/04/21 17:27:31 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat [2011/04/21 13:00:23 | 000,727,246 | —- | M] () – C:\Windows\SysNative\PerfStringBackup.INI [2011/04/21 13:00:23 | 000,624,622 | —- | M] () – C:\Windows\SysNative\perfh009.dat [2011/04/21 13:00:23 | 000,106,708 | —- | M] () – C:\Windows\SysNative\perfc009.dat [2011/04/21 12:03:25 | 000,000,894 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011/04/19 18:17:02 | 000,009,920 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011/04/19 18:17:02 | 000,009,920 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011/04/19 18:09:35 | 000,262,144 | —- | M] () – C:\Windows\SysNative\Ikeext.etl [2011/04/19 18:09:22 | 1406,177,280 | -HS- | M] () – C:\hiberfil.sys [2011/04/18 14:02:29 | 000,001,098 | —- | M] () – C:\Users\Public\Desktop\Mozilla Firefox.lnk [2011/04/17 17:08:04 | 000,002,421 | —- | M] () – C:\Users\home\Desktop\Microsoft PowerPoint 2010.lnk [2011/04/17 15:22:32 | 000,000,129 | —- | M] () – C:\Users\home\jagex_runescape_preferences2.dat [2011/04/17 15:22:31 | 000,000,034 | —- | M] () – C:\Users\home\jagex_runescape_preferences.dat [2011/04/17 09:12:09 | 000,000,000 | -H– | M] () – C:\Windows\SysNative\drivers\Msft_Kernel_motoandroid_01007.Wdf [2011/04/15 11:26:13 | 000,002,395 | —- | M] () – C:\Users\home\Desktop\Google Chrome.lnk [2011/04/15 03:43:55 | 000,341,192 | —- | M] () – C:\Windows\SysNative\FNTCACHE.DAT [2011/04/12 16:56:35 | 000,001,120 | —- | M] () – C:\Users\home\Desktop\Upgrade to Paltalk Extreme.lnk [2011/04/12 16:56:33 | 000,001,921 | —- | M] () – C:\Users\home\Desktop\Paltalk Messenger.lnk [2011/04/12 01:50:40 | 003,584,317 | —- | M] () – C:\Users\home\Desktop\imager.php [2011/04/11 21:25:01 | 000,291,946 | —- | M] () – C:\Users\home\Desktop\Daft_Punk_Wallpaper__Pink__by_Dr_Garushi.png [2011/04/10 16:01:08 | 000,000,056 | -H– | M] () – C:\Windows\SysWow64\ezsidmv.dat [2011/04/10 15:59:17 | 000,002,515 | —- | M] () – C:\Users\Public\Desktop\Skype.lnk [2011/04/08 20:29:17 | 000,005,632 | —- | M] () – C:\Users\home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011/04/02 11:55:21 | 000,025,878 | —- | M] () – C:\Users\home\Documents\BannedStory_image.png.pngmage [2011/03/27 22:31:54 | 000,001,977 | —- | M] () – C:\Users\Public\Desktop\IncrediMail.lnk [2011/03/27 22:31:54 | 000,001,969 | —- | M] () – C:\Users\home\Application Data\Microsoft\Internet Explorer\Quick Launch\IncrediMail 2.0.lnk [1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ] ========== Files Created - No Company Name ========== [2011/04/22 00:21:48 | 000,000,434 | —- | C] () – C:\Users\home\Desktop\Resume Download of Fiesta Online.url [2011/04/18 14:02:29 | 000,001,110 | —- | C] () – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2011/04/18 14:02:29 | 000,001,098 | —- | C] () – C:\Users\Public\Desktop\Mozilla Firefox.lnk [2011/04/17 17:08:04 | 000,002,421 | —- | C] () – C:\Users\home\Desktop\Microsoft PowerPoint 2010.lnk [2011/04/17 09:12:09 | 000,000,000 | -H– | C] () – C:\Windows\SysNative\drivers\Msft_Kernel_motoandroid_01007.Wdf [2011/04/15 12:35:49 | 000,000,094 | —- | C] () – C:\Windows\awshkwv.ini [2011/04/12 16:56:35 | 000,001,120 | —- | C] () – C:\Users\home\Desktop\Upgrade to Paltalk Extreme.lnk [2011/04/12 16:56:33 | 000,001,921 | —- | C] () – C:\Users\home\Desktop\Paltalk Messenger.lnk [2011/04/12 01:43:03 | 003,584,317 | —- | C] () – C:\Users\home\Desktop\imager.php [2011/04/11 21:24:58 | 000,291,946 | —- | C] () – C:\Users\home\Desktop\Daft_Punk_Wallpaper__Pink__by_Dr_Garushi.png [2011/04/10 16:01:08 | 000,000,056 | -H– | C] () – C:\Windows\SysWow64\ezsidmv.dat [2011/04/10 15:59:17 | 000,002,515 | —- | C] () – C:\Users\Public\Desktop\Skype.lnk [2011/04/01 20:55:05 | 000,025,878 | —- | C] () – C:\Users\home\Documents\BannedStory_image.png.pngmage [2011/02/24 14:40:44 | 000,743,534 | —- | C] () – C:\Windows\SysWow64\PerfStringBackup.INI [2010/11/21 01:03:37 | 000,005,632 | —- | C] () – C:\Users\home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/11/15 14:52:45 | 000,000,144 | —- | C] () – C:\Windows\SysWow64\lkfl.dat [2010/11/10 00:39:05 | 000,000,112 | —- | C] () – C:\Windows\wininit.ini [2010/11/07 21:07:56 | 000,000,008 | RHS- | C] () – C:\ProgramData\60C8439F8C.sys [2010/11/07 21:07:55 | 000,002,516 | -HS- | C] () – C:\ProgramData\KGyGaAvL.sys [2010/07/27 08:03:20 | 010,829,656 | —- | C] () – C:\Windows\SysWow64\LogiDPP.dll [2010/07/27 08:03:20 | 000,102,744 | —- | C] () – C:\Windows\SysWow64\LogiDPPApp.exe [2010/07/27 08:03:18 | 000,290,648 | —- | C] () – C:\Windows\SysWow64\DevManagerCore.dll [2010/07/07 13:05:27 | 000,000,000 | —- | C] () – C:\Windows\nsreg.dat [2010/03/27 09:11:21 | 000,004,204 | —- | C] () – C:\Users\home\AppData\Roaming\wklnhst.dat [2009/12/19 09:41:48 | 000,626,688 | —- | C] () – C:\Windows\Image.dll [2009/12/19 09:41:48 | 000,200,704 | —- | C] () – C:\Windows\PLFSetI.exe [2009/12/19 09:41:48 | 000,020,480 | —- | C] () – C:\Windows\USB_VIDEO_REG.exe [2009/12/19 09:41:48 | 000,000,036 | —- | C] () – C:\Windows\PidList.ini [2009/11/06 02:44:46 | 000,000,000 | —- | C] () – C:\Windows\ativpsrm.bin [2009/07/14 01:38:36 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat [2009/07/13 22:35:51 | 000,000,741 | —- | C] () – C:\Windows\SysWow64\NOISE.DAT [2009/07/13 22:34:42 | 000,215,943 | —- | C] () – C:\Windows\SysWow64\dssec.dat [2009/07/13 20:10:29 | 000,043,131 | —- | C] () – C:\Windows\mib.bin [2009/07/13 19:42:10 | 000,064,000 | —- | C] () – C:\Windows\SysWow64\BWContextHandler.dll [2009/07/13 17:03:59 | 000,364,544 | —- | C] () – C:\Windows\SysWow64\msjetoledb40.dll [2009/06/10 17:26:10 | 000,673,088 | —- | C] () – C:\Windows\SysWow64\mlang.dat ========== LOP Check ========== [2010/07/23 04:51:21 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\acccore [2010/03/22 00:34:55 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\Acer [2010/09/21 02:26:23 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\calibre [2010/11/15 16:30:29 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\CheckPoint [2010/10/19 04:46:57 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\DVDVideoSoftIEHelpers [2011/02/08 20:08:22 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\FotkiDesktop [2011/03/20 21:10:12 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\FrostWire [2010/03/22 00:34:53 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\Leadertech [2010/12/26 15:58:36 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\Local [2011/04/18 21:14:05 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\Paltalk [2010/07/07 13:05:23 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\Radical Software Ltd [2010/07/02 00:17:44 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\SecondLife [2011/04/15 03:41:06 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\SoftGrid Client [2010/03/27 09:11:24 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\Template [2011/04/12 23:15:47 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\Tific [2011/02/24 14:44:19 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\TP [2010/06/25 03:25:05 | 000,000,000 | —D | M] – C:\Users\home\AppData\Roaming\ViiKiiDesktopPlugin.5E22EA0FF243470AB5EDDF282C0A5B52E9909C36.1 [2010/12/21 04:02:51 | 000,032,656 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT ========== Purity Check ========== ========== Custom Scans ========== < > < %SYSTEMDRIVE%\*.* > [2009/11/06 02:42:08 | 000,008,192 | RHS- | M] () – C:\BOOTSECT.BAK [2010/08/06 15:53:07 | 000,016,131 | —- | M] () – C:\caisslog.txt [2011/04/19 18:09:22 | 1406,177,280 | -HS- | M] () – C:\hiberfil.sys [2010/07/23 04:50:42 | 000,000,350 | -H– | M] () – C:\IPH.PH [2011/04/19 18:09:23 | 1874,907,136 | -HS- | M] () – C:\pagefile.sys [2009/11/06 02:53:52 | 000,002,051 | —- | M] () – C:\RHDSetup.log < %systemroot%\Fonts\*.com > [2009/07/14 01:32:31 | 000,026,040 | —- | M] () – C:\Windows\Fonts\GlobalMonospace.CompositeFont [2009/07/14 01:32:31 | 000,026,489 | —- | M] () – C:\Windows\Fonts\GlobalSansSerif.CompositeFont [2009/07/14 01:32:31 | 000,029,779 | —- | M] () – C:\Windows\Fonts\GlobalSerif.CompositeFont [2009/07/14 01:32:31 | 000,043,318 | —- | M] () – C:\Windows\Fonts\GlobalUserInterface.CompositeFont < %systemroot%\Fonts\*.dll > < %systemroot%\Fonts\*.ini > [2009/06/10 16:49:50 | 000,000,065 | —- | M] () – C:\Windows\Fonts\desktop.ini < %systemroot%\Fonts\*.ini2 > < %systemroot%\Fonts\*.exe > < %systemroot%\system32\spool\prtprocs\w32x86\*.* > < %systemroot%\REPAIR\*.bak1 > < %systemroot%\REPAIR\*.ini > < %systemroot%\system32\*.jpg > < %systemroot%\*.jpg > < %systemroot%\*.png > < %systemroot%\*.scr > [2010/11/10 03:28:46 | 000,301,936 | —- | M] (Microsoft Corporation) – C:\Windows\WLXPGSS.SCR < %systemroot%\*._sy > < %APPDATA%\Adobe\Update\*.* > < %ALLUSERSPROFILE%\Favorites\*.* > < %APPDATA%\Microsoft\*.* > < %PROGRAMFILES%\*.* > [2009/07/14 00:54:24 | 000,000,174 | -HS- | M] () – C:\Program Files (x86)\desktop.ini < %APPDATA%\Update\*.* > < %systemroot%\*. /mp /s > < %systemroot%\System32\config\*.sav > < %PROGRAMFILES%\bak. /s > < %systemroot%\system32\bak. /s > < %ALLUSERSPROFILE%\Start Menu\*.lnk /x > < %systemroot%\system32\config\systemprofile\*.dat /x > < %systemroot%\*.config > < %systemroot%\system32\*.db > < %PROGRAMFILES%\Internet Explorer\*.dat > < %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x > [2010/03/22 02:53:37 | 000,000,221 | -HS- | M] () – C:\Users\home\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini < %USERPROFILE%\Desktop\*.exe > < %PROGRAMFILES%\Common Files\*.* > < %systemroot%\*.src > < %systemroot%\install\*.* > < %systemroot%\system32\DLL\*.* > < %systemroot%\system32\HelpFiles\*.* > < %systemroot%\system32\rundll\*.* > < %systemroot%\winn32\*.* > < %systemroot%\Java\*.* > < %systemroot%\system32\test\*.* > < %systemroot%\system32\Rundll32\*.* > < %systemroot%\AppPatch\Custom\*.* > < HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU > < HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs > < End of report >
Here's my EXTRAS log:
OTL Extras logfile created on: 4/22/2011 12:24:29 AM - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\home\Downloads 64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 44.00% Memory free 3.00 Gb Paging File | 2.00 Gb Available in Paging File | 62.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 136.95 Gb Total Space | 58.35 Gb Free Space | 42.61% Space Free | Partition Type: NTFS Computer Name: HOME-PC | User Name: home | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] – C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] – C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] – C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] – "%1" %* File not found cmdfile [open] – "%1" %* File not found comfile [open] – "%1" %* File not found exefile [open] – "%1" %* File not found helpfile [open] – Reg Error: Key error. htmlfile [edit] – Reg Error: Key error. htmlfile [print] – rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" File not found inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] – "%1" %* File not found regfile [merge] – Reg Error: Key error. scrfile [config] – "%1" File not found scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l File not found scrfile [open] – "%1" /S File not found txtfile [edit] – Reg Error: Key error. Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] – "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] – "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] – "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] – %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] – Reg Error: Value error. Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] – "%1" %* cmdfile [open] – "%1" %* comfile [open] – "%1" %* cplfile [cplopen] – %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] – "%1" %* helpfile [open] – Reg Error: Key error. htmlfile [edit] – Reg Error: Key error. htmlfile [print] – rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] – "%1" %* regfile [merge] – Reg Error: Key error. scrfile [config] – "%1" scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] – "%1" /S txtfile [edit] – Reg Error: Key error. Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] – "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] – "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] – "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] – %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] – Reg Error: Value error. Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects "{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant "{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources "{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources "{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo Layers 1.10.01 "{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver "{ACCA82EB-7088-919E-5E1C-100A24F11CCF}" = ATI Catalyst Install Manager "{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector "{D2DEDB95-B070-4180-97F3-2A75E8FB03CC}" = Motorola Driver Installation 4.6.5 "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{E2FCA441-6D7B-CD78-3ADF-42EA9FA06065}" = ccc-utility64 "{E95C1190-3C4A-45B7-B2ED-B49BD1972BB4}" = EasyTether "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "WinRAR archiver" = WinRAR archiver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0CA72D12-F6C6-4D43-A2A0-41F5AA17E2B6}" = Netflix in Windows Media Center "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard "{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi "{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main "{183F0908-AD5E-8B3B-5F06-28B1A8C65C62}" = CCC Help Japanese "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{18DB3375-0649-4EA3-959A-44F1ACD278BA}" = IncrediMail "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YouTube Downloader 2.6.5 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{23E9588B-05ED-BC2F-EB69-101A96511EF1}" = ccc-core-static "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "{2484D1EA-CBA4-60BB-82B9-F8477D25C47A}" = CCC Help Dutch "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20 "{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime "{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections "{29802D65-9514-DB20-36CD-E47A94C8AEB9}" = Catalyst Control Center Graphics Full Existing "{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8 "{2F61E9D7-CD05-643E-A04E-CC1A8B6610BA}" = CCC Help Finnish "{2FA3CDD8-1436-497D-6339-789936561E99}" = CCC Help German "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{34123E80-BE96-6282-1167-6696730AF6D2}" = CCC Help Korean "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery "{3D20EF26-2E9A-D388-851D-E7675BBACFF5}" = Catalyst Control Center Core Implementation "{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT "{3F470FED-77A1-4545-BF6E-AF687FF0B42D}" = RSDLite "{4024F49B-65D4-D6B2-2A1D-6DBF6F09F181}" = CCC Help Greek "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{49A63237-FD38-AE77-6DF6-FFB41499A4E6}" = CCC Help Hungarian "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4F0FC827-B693-F166-612E-EA89D798540C}" = CCC Help Chinese Traditional "{52FBF90E-D2EF-A2A3-1CCA-6984596B1B02}" = CCC Help English "{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3 "{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack "{60C1AF18-EA45-7488-5C95-4EC64F93B727}" = ViiKii Desktop Plug-in "{628CBFE4-3823-67FB-26D2-566899C3BB5C}" = CCC Help Italian "{63F26DAE-CB0D-98B6-3019-D4FC3D0DD203}" = Catalyst Control Center InstallProxy "{652EB559-6865-DEF4-2409-D506963C15FD}" = CCC Help Polish "{67E03279-F703-408F-B4BF-46B5FC8D70CD}" = Microsoft Works "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{68301905-2DEA-41CE-A4D4-E8B443B099BA}" = MyWinLocker "{68987945-A387-4C25-0C59-21F2AF657E65}" = CCC Help Thai "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6B45E33B-6BB4-234B-2F5F-65B1A103801D}" = CCC Help Russian "{6B99737C-9FDC-50F9-C9A4-AB7DA5C9A336}" = Catalyst Control Center Graphics Full New "{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery "{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7BE74C0E-F300-D0A6-780B-C93BB78DE58C}" = CCC Help Norwegian "{7E75ACC5-B0EC-7006-183A-374974019911}" = Catalyst Control Center Graphics Light "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management "{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger "{82809116-D1EE-443C-AE31-F19E709DDF7A}" = AMD USB Filter Driver "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher "{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90140011-0062-0409-0000-0000000FF1CE}" = Microsoft Office Home and Business 2010 - English "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English) "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{97124B44-C17B-C352-44B1-403D0D706173}" = CCC Help Czech "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9ACA8261-11D1-F8A1-C154-7F8B23515C79}" = CCC Help Swedish "{9D318C86-AF4C-409F-A6AC-7183FF4CF424}" = Internet TV for Windows Media Center "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin "{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh "{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175 "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}" = Acer Crystal Eye Webcam "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9574A7E-C024-EED1-7A81-CC4786A1915A}" = CCC Help Portuguese "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AA32D2A6-1299-0F05-BF8D-04075A9F69EB}" = CCC Help Turkish "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer "{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.4.1 MUI "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars "{BCC05B1F-7397-799A-9EDB-AC10123BB17A}" = CCC Help Chinese Standard "{BEF4FD8A-29FF-C250-468A-5FC55F0E3451}" = Catalyst Control Center Localization All "{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{CF7A62B6-F712-412E-9914-D80033A7F8B8}" = Catalyst Control Center - Branding "{D031E017-2434-40A7-A352-4DDD0199170D}" = TouchFreeze "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software "{D41301F8-90FD-9CE8-CD2C-ED2B9D5F07E3}" = CCC Help Spanish "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common "{D43AD08C-BE76-8C5B-FD90-4B665EF60E2E}" = CCC Help Danish "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{DA4CA661-5ABF-9218-6E42-84BF89F43655}" = CCC Help French "{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger "{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater "{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F98788EB-6883-4CF9-B07F-15257169FAB1}" = calibre "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook "Acer Assist" = Acer Assist "Acer Registration" = Acer Registration "Acer Welcome Center" = Welcome Center "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Alarm Clock_is1" = Alarm Clock v1.0 "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2009-09-09 "Fotki Desktop_is1" = Fotki Desktop "FrostWire" = FrostWire 4.21.3 "GridVista" = Acer GridVista "Identity Card" = Identity Card "IncrediMail" = IncrediMail 2.0 "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5 "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8 "LManager" = Launch Manager "Logitech Vid" = Logitech Vid HD "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Mozilla Firefox 4.0 (x86 en-US)" = Mozilla Firefox 4.0 (x86 en-US) "Office14.Click2Run" = Microsoft Office Click-to-Run 2010 "Orb" = Winamp Remote "PageRage Toolbar" = PageRage Toolbar "PalTalk8.2" = Paltalk Messenger "PdaNet_is1" = PdaNet for Android 2.45 "Searchqu 406 MediaBar" = Windows ilivid Toolbar "Veoh Web Player Beta" = Veoh Web Player "ViiKiiDesktopPlugin.5E22EA0FF243470AB5EDDF282C0A5B52E9909C36.1" = ViiKii Desktop Plug-in "Winamp" = Winamp "WinLiveSuite" = Windows Live Essentials "Wyzo" = Wyzo ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome "Winamp Detect" = Winamp Detector Plug-in ========== Last 10 Event Log Errors ========== Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt! < End of report >