# AdwCleaner v3.016 - Report created 03/01/2014 at 15:59:16
# Updated 23/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Wesley - VERONICA
# Running from : C:\Users\Wesley\Desktop\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : BCUService
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\clsoft ltd
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\ProgramData\Premium
Folder Deleted : C:\ProgramData\MAegniPic
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Finder
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAegniPic
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\DeviceVM
Folder Deleted : C:\Program Files (x86)\Industriya
Folder Deleted : C:\Program Files (x86)\MagniPic
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\NCH Software
Folder Deleted : C:\Program Files (x86)\optimizer pro
Folder Deleted : C:\Program Files (x86)\Common Files\Software Update Utility
Folder Deleted : C:\Users\Wesley\AppData\Local\Babylon
Folder Deleted : C:\Users\Wesley\AppData\Local\Conduit
Folder Deleted : C:\Users\Wesley\AppData\Local\Ilivid Player
Folder Deleted : C:\Users\Wesley\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Wesley\AppData\Local\visi_coupon
Folder Deleted : C:\Users\Wesley\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Wesley\AppData\LocalLow\Industriya
Folder Deleted : C:\Users\Wesley\AppData\Roaming\Industriya
Folder Deleted : C:\Users\Wesley\AppData\Roaming\Media Finder
Folder Deleted : C:\Users\Wesley\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\gencrawler@some.com
Folder Deleted : C:\Users\Wesley\AppData\Roaming\NCH Software
Folder Deleted : C:\Users\Wesley\AppData\Roaming\strongvault
Folder Deleted : C:\Users\Wesley\Desktop\Tutorials
Folder Deleted : C:\Users\Wesley\Documents\Mobogenie
Folder Deleted : C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\Extensions\gagd2ahqc@aeayrtlv.co.uk
Folder Deleted : C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\Extensions\hcaviui4igd@iqzhydu.edu
Folder Deleted : C:\Users\Wesley\AppData\Local\Google\Chrome\User Data\Default\Extensions\ieffnjekemefjhjdaialbngjcpmgopna
File Deleted : C:\END
File Deleted : C:\Users\Wesley\AppData\Local\Temp\Searchqu.ini
File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.xpt
File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.xpt
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\Babylon.xml
File Deleted : C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\searchplugins\Conduit.xml
File Deleted : C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\searchplugins\Search_Results.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\Search_Results.xml
File Deleted : C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\user.js
File Deleted : C:\Windows\System32\Tasks\NCH Software
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Download with &Media Finder
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Key Deleted : HKLM\SOFTWARE\Classes\AddressBarSearch.SearchHook
Key Deleted : HKLM\SOFTWARE\Classes\AddressBarSearch.SearchHook.1
Key Deleted : HKLM\SOFTWARE\Classes\AlxSSB.AlxTBSSB
Key Deleted : HKLM\SOFTWARE\Classes\AlxSSB.AlxTBSSB.1
Key Deleted : HKLM\SOFTWARE\Classes\AlxTB2.ToolBarProxy
Key Deleted : HKLM\SOFTWARE\Classes\AlxTB2.ToolBarProxy.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\dnu.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Toolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdate
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser.1
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController
Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController.1
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Deleted : HKLM\SOFTWARE\Classes\MF
Key Deleted : HKLM\SOFTWARE\Classes\privitize.privitizeHlpr
Key Deleted : HKLM\SOFTWARE\Classes\privitize.privitizeHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1(1)_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1(1)_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_1_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_1_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [BCU]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1F02FB61-2BE5-4C16-8199-AEAA16EB0342}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6C259840-5BA8-46E6-8ED1-EF3BA47D8BA1}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7E8A36EA-2501-4ED3-A3C8-CFA9143FB169}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1ACB5ABE-4890-4747-952C-F13BDB93FB75}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B25AEDC4-8086-41E3-8349-328223FA9FCB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E15A9BFD-D16D-496D-8222-44CADF316E70}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1A1BBE49-C6F1-40EA-9D2F-262F0AF6DDE3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2022154E-7E3E-4809-871E-1B45A6FC7058}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{292ECB89-350E-45D2-816F-52C15305B144}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{36CC2180-B6BF-4951-9578-6B0C40044AAA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44A36944-22C6-4A08-BC7C-161F3E540DBF}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{51F04BD6-3888-4849-864C-617FAE709CE0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6247DD2C-8CF9-4041-A235-93691D71B8B4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{835BED79-DF7E-4096-B355-ED43FA2EA87B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8C953EC4-8CFA-44FB-B32E-1249E5505091}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8E863BD6-50DE-47D0-A6F1-3C1F6DB72451}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9DD36F1E-5111-41C5-ADED-A2A11A2FF3E4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A2FB8217-E320-434E-BA79-513E357AD54F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A9CEBBF4-9129-479A-9231-E833ED3D3A8F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AFD4D1F9-167C-4884-95AE-B5A9797B0D16}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C47788B1-9604-4D7A-A684-F4D450F2D7D2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA3B41D0-D4C1-4808-B248-75DA27238828}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D4A2FF6C-087F-4D40-8DFE-92AAD484BFB8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D88B9D5C-A9CF-4C69-906D-1CCA5D85A2EF}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E4E394E0-D331-431F-B76D-E3A19193D5F6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F83AF01C-AA2F-469F-8BE7-D178FB15FD07}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6857AC4A-95B4-4E2C-B2D2-8A235FCCEF4A}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{77AA6435-2488-4A94-9FE5-49519DD2ED9B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{92380354-381A-471F-BE2E-DD9ACD9777EA}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1ACB5ABE-4890-4747-952C-F13BDB93FB75}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1ACB5ABE-4890-4747-952C-F13BDB93FB75}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E57091A7-B5F0-4C42-9329-72ED3E59ED31}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\Alexa Internet
Key Deleted : HKCU\Software\Ask&Record
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DeviceVM
Key Deleted : HKCU\Software\distromatic
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\MediaFinder
Key Deleted : HKCU\Software\NCH Software
Key Deleted : HKCU\Software\PrivitizeVPNInstallDates
Key Deleted : HKCU\Software\StartSearch
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\DeviceVM
Key Deleted : HKLM\Software\NCH Software
Key Deleted : HKLM\Software\SP Global
Key Deleted : HKLM\Software\SProtector
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdUtility
Key Deleted : [x64] HKLM\SOFTWARE\Amazon Browser Bar
Key Deleted : [x64] HKLM\SOFTWARE\DataMngr
Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16421
-\\ Mozilla Firefox v26.0 (en-US)
[ File : C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\prefs.js ]
Line Deleted : user_pref("CT3295465.FF19Solved", "true");
Line Deleted : user_pref("CT3295465.UserID", "UN42594005009011554");
Line Deleted : user_pref("CT3295465.addressUrlXPETakeover", "true");
Line Deleted : user_pref("CT3295465.autoDisableScopes", -1);
Line Deleted : user_pref("CT3295465.browser.search.defaultthis.engineName", "true");
Line Deleted : user_pref("CT3295465.defaultSearchXPETakeover", "true");
Line Deleted : user_pref("CT3295465.installDate", "20/4/2013 11:47:17");
Line Deleted : user_pref("CT3295465.installSessionId", "{EEFC926F-7F3C-484E-A50E-70680719E365}");
Line Deleted : user_pref("CT3295465.installSp", "TRUE");
Line Deleted : user_pref("CT3295465.installerVersion", "1.4.1.3");
Line Deleted : user_pref("CT3295465.keyword", "true");
Line Deleted : user_pref("CT3295465.searchRevert", "false");
Line Deleted : user_pref("CT3295465.searchUserMode", "2");
Line Deleted : user_pref("CT3295465.smartbar.homepage", "true");
Line Deleted : user_pref("CT3295465.startPageXPETakeover", "true");
Line Deleted : user_pref("CT3295465.versionFromInstaller", "10.15.2.23");
Line Deleted : user_pref("F97EE4FB-7FA2-4F3D-898E-023BE2EC3F83.license", "o04Nk0Ddd8Gbi8eaarYxwsAe9uwIq6jFsXLm%2BD4IFypX%2FSdECWvFl53TkmFIpO9dWDHKxI5zJ3cEmHp8TqipEsLh93Nhs%2Fq2niP24T2pMfunUIAXGBXyepstIFlI8%2FJb%2Bmn[...]
Line Deleted : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3295465&octid=CT3295465&SearchSource=61&CUI=UN42594005009011554&UM=2&UP=SPCF479D00-EA80-4484-83CD-BFF597753B96");
Line Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://searchou.com/?q={searchTerms}&id=98edcf170000000000000050b60df2d6");
Line Deleted : user_pref("aol_toolbar.default.homepage.check", false);
Line Deleted : user_pref("aol_toolbar.default.search.check", false);
Line Deleted : user_pref("browser.search.defaultthis.engineName", "BrowserPlus1 Customized Web Search");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3295465&CUI=UN42594005009011554&UM=2&SearchSource=3&q={searchTerms}");
Line Deleted : user_pref("browser.search.order.1", "Search The Web (privitize)");
Line Deleted : user_pref("extensions.BabylonToolbar.admin", false);
Line Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Line Deleted : user_pref("extensions.BabylonToolbar.babExt", "");
Line Deleted : user_pref("extensions.BabylonToolbar.babTrack", "affID=101067");
Line Deleted : user_pref("extensions.BabylonToolbar.bbDpng", 11);
Line Deleted : user_pref("extensions.BabylonToolbar.dfltSrch", false);
Line Deleted : user_pref("extensions.BabylonToolbar.hmpg", false);
Line Deleted : user_pref("extensions.BabylonToolbar.id", "98edcf1700000000000074ea3aaa5ed7");
Line Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15318");
Line Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Line Deleted : user_pref("extensions.BabylonToolbar.lastDP", 11);
Line Deleted : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.1711:24:02");
Line Deleted : user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "8.0");
Line Deleted : user_pref("extensions.BabylonToolbar.newTab", true);
Line Deleted : user_pref("extensions.BabylonToolbar.newTabUrl", "hxxp://search.babylon.com/?babsrc=NT_bb");
Line Deleted : user_pref("extensions.BabylonToolbar.noFFXTlbr", false);
Line Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Line Deleted : user_pref("extensions.BabylonToolbar.propectorlck", 62168803);
Line Deleted : user_pref("extensions.BabylonToolbar.prtkDS", 0);
Line Deleted : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
Line Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Line Deleted : user_pref("extensions.BabylonToolbar.ptch_0717", true);
Line Deleted : user_pref("extensions.BabylonToolbar.smplGrp", "none");
Line Deleted : user_pref("extensions.BabylonToolbar.srcExt", "ss");
Line Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "base");
Line Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17");
Line Deleted : user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.1711:24:02");
Line Deleted : user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17");
Line Deleted : user_pref("extensions.gencrawler@some.com.install-event-fired", true);
Line Deleted : user_pref("extensions.jCIi_.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};var _wlst={lsKey:\"ssjsmn2ja8ddw2a\",get:function(b,a){if(3<b)return a(!1);var d=t[...]
Line Deleted : user_pref("extensions.lUT.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};var _wlst={lsKey:\"ssjsmn2ja8ddw2a\",get:function(b,a){if(3<b)return a(!1);var d=thi[...]
Line Deleted : user_pref("extensions.privitize.srchPrvdr", "Search The Web (privitize)");
Line Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3295465&CUI=UN42594005009011554&UM=2&SearchSource=13,hxxp://search.conduit.com/?ctid=CT3295465&octid=CT3295465&SearchSource[...]
Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3295465&SearchSource=2&CUI=UN42594005009011554&UM=2&q=");
Line Deleted : user_pref("smartbar.originalHomepage", "hxxp://www.zassyen.net/");
Line Deleted : user_pref("smartbar.originalSearchAddressUrl", "hxxp://searchou.com/?q={searchTerms}&id=98edcf170000000000000050b60df2d6");
Line Deleted : user_pref("smartbar.originalSearchEngine", "Yahoo");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
Line Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Line Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
Line Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
Line Deleted : user_pref("sweetim.toolbar.searchguard.enable", "");
-\\ Google Chrome v
[ File : C:\Users\Wesley\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [24463 octets] - [03/01/2014 15:50:10]
AdwCleaner[S0].txt - [23946 octets] - [03/01/2014 15:59:16]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [24007 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.9 (01.01.2014:1)
OS: Windows 7 Home Premium x64
Ran by Wesley on Fri 01/03/2014 at 16:07:27.37
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
Successfully stopped: [Service] update jump flip
Successfully deleted: [Service] update jump flip
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\yt.ytnavassistplugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\yt.ytnavassistplugin.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mconduitinstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mconduitinstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealcabby-20120921_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealcabby-20120921_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealcabby_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealcabby_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dropdowndeals_132013-17B4_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dropdowndeals_132013-17B4_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mconduitinstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mconduitinstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealcabby-20120921_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealcabby-20120921_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealcabby_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealcabby_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dropdowndeals_132013-17B4_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dropdowndeals_132013-17B4_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{27BF7A62-CF9F-4A1A-9BB5-61A8DABE910E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{63140ECF-C629-BE59-8F0E-90B4FF340C03}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{AC533334-23E6-4E5F-B1DA-9240ED676A3E}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Wesley\AppData\Roaming\getrighttogo"
Successfully deleted: [Folder] "C:\Users\Wesley\appdata\local\dealcabby"
Successfully deleted: [Folder] "C:\ai_recyclebin"
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{05C16CC4-AFAB-4847-BBBF-C4DA1B40900D}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{21CBF92E-4287-48EB-9B36-290CF9F9A277}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{23CE5200-C1A9-48CB-A543-91E428506870}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{2ACB9458-1CFA-436A-8C10-7B2631D00562}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{3B85A670-5B17-405F-A588-F866E1F47C66}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{4AB6C148-0929-4797-84DB-1423F4398616}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{5288F121-67C7-4D9E-95D5-BFFAC99EF213}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{5B59AC67-B862-4648-BD37-0378607C3AFA}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{66F1DA9F-9468-4194-9AEB-79E802DF5EF0}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{6B409C12-2790-476C-A4AA-BDE70BA93FD3}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{6CAC53A6-5063-4526-815D-11F8AC2E48A6}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{72EC7571-B47B-448A-BDCE-747508B225E2}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{79D6423F-2459-4AB2-B3D9-141BF55C49F2}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{7E7130CF-AD82-4666-90C9-EB472D0153E4}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{8C09987A-047A-44E6-92FD-9450BF44A98F}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{947851B8-DAE2-4600-8BC5-C10E03B98063}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{9C953580-B8C4-44C2-A2EB-9D2E656BE5C3}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{B7869181-8243-437F-AE2F-67CA5DEDC437}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{BB837E4B-9D1B-4DEE-AAC8-7278777C5604}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{C0664E3E-3BDF-4606-A9C9-145614432CA4}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{C7F28E15-F7E1-4E31-8D2F-564EB9C9CA9D}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{CE054628-B08D-4DDE-8DC4-B1C99678D2E4}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{D545371D-9A9F-4E17-88CD-CC968FFBDA58}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{D56743DB-C171-4A89-BE0F-32727560E9F5}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{D988442A-6D8B-413A-B389-8C66380A9E22}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{EE024842-D860-4A5A-832D-DDF4A301BBA0}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{EFD3475D-2F39-4C1A-BF32-94AE36767624}
Successfully deleted: [Empty Folder] C:\Users\Wesley\appdata\local\{F4CFC7DF-B026-4984-9D1E-802044B3888E}
~~~ FireFox
Successfully deleted: [File] C:\user.js
Failed to delete: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml.old"
Successfully deleted: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml.old"
Successfully deleted: [File] C:\Users\Wesley\AppData\Roaming\mozilla\firefox\profiles\09qn4qhk.default\searchplugins\privitize.xml
Successfully deleted the following from C:\Users\Wesley\AppData\Roaming\mozilla\firefox\profiles\09qn4qhk.default\prefs.js
user_pref("extensions.privitize.admin", false);
user_pref("extensions.privitize.aflt", "orgnl");
user_pref("extensions.privitize.appId", "{301966DF-A84B-4255-AAB9-574B5CE237E4}");
user_pref("extensions.privitize.autoRvrt", "false");
user_pref("extensions.privitize.dfltLng", "");
user_pref("extensions.privitize.dfltSrch", true);
user_pref("extensions.privitize.dnsErr", true);
user_pref("extensions.privitize.excTlbr", true);
user_pref("extensions.privitize.ffxUnstlRst", false);
user_pref("extensions.privitize.hmpg", true);
user_pref("extensions.privitize.hmpgUrl", "hxxp://searchou.com/?id=98edcf170000000000000050b60df2d6");
user_pref("extensions.privitize.hpOld0", "hxxp://www.zassyen.net/");
user_pref("extensions.privitize.id", "98edcf170000000000000050b60df2d6");
user_pref("extensions.privitize.instlDay", "15798");
user_pref("extensions.privitize.instlRef", "");
user_pref("extensions.privitize.kw_url", "hxxp://searchou.com/?q={searchTerms}&id=98edcf170000000000000050b60df2d6");
user_pref("extensions.privitize.newTab", true);
user_pref("extensions.privitize.newTabUrl", "hxxp://searchou.com/?id=98edcf170000000000000050b60df2d6");
user_pref("extensions.privitize.prdct", "privitize");
user_pref("extensions.privitize.prtnrId", "privitize");
user_pref("extensions.privitize.rvrt", "false");
user_pref("extensions.privitize.smplGrp", "none");
user_pref("extensions.privitize.tlbrId", "base");
user_pref("extensions.privitize.tlbrSrchUrl", "hxxp://searchou.com/?id=98edcf170000000000000050b60df2d6&q=");
user_pref("extensions.privitize.vrsn", "1.8.16.22");
user_pref("extensions.privitize.vrsnTs", "1.8.16.229:03:03");
user_pref("extensions.privitize.vrsni", "1.8.16.22");
Emptied folder: C:\Users\Wesley\AppData\Roaming\mozilla\firefox\profiles\09qn4qhk.default\minidumps [403 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 01/03/2014 at 16:14:50.60
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
OTL logfile created on: 1/3/2014 4:18:20 PM - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Wesley\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.98 Gb Total Physical Memory | 2.63 Gb Available Physical Memory | 66.03% Memory free
7.96 Gb Paging File | 6.45 Gb Available in Paging File | 80.98% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 240.35 Gb Free Space | 25.80% Space Free | Partition Type: NTFS
Drive D: | 6.85 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive H: | 1863.01 Gb Total Space | 21.24 Gb Free Space | 1.14% Space Free | Partition Type: NTFS
Drive M: | 1863.01 Gb Total Space | 29.76 Gb Free Space | 1.60% Space Free | Partition Type: NTFS
Computer Name: VERONICA | User Name: Wesley | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Wesley\Desktop\OTL(1).exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe (NCSOFT Corporation)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
PRC - C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.)
PRC - C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.)
PRC - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe (VMware, Inc.)
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
PRC - C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe ()
PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\Gigabyte\EasySaver\essvr.exe ()
========== Modules (No Company Name) ==========
MOD - c:\ProgramData\WebPlat\WebPlat.dll ()
MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll ()
========== Services (SafeList) ==========
SRV:64bit: - (FLEXnet Licensing Service 64) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe (Flexera Software, Inc.)
SRV:64bit: - (mi-raysat_3dsmax2012_64) -- C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe ()
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (976137e5) -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
SRV:64bit: - (msvsmon90) -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe (Microsoft Corporation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (DAUpdaterSvc) -- C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe (BioWare)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (ArcService) -- C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe (Perfect World Entertainment Inc)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (npggsvc) -- C:\Windows\SysWOW64\GameMon.des (INCA Internet Co., Ltd.)
SRV - (VMnetDHCP) -- C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.)
SRV - (VMware NAT Service) -- C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.)
SRV - (VMAuthdService) -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe (VMware, Inc.)
SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
SRV - (VMUSBArbService) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (VMware, Inc.)
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (ES lite Service) -- C:\Program Files (x86)\Gigabyte\EasySaver\essvr.exe ()
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (YahooAUService) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
========== Driver Services (SafeList) ==========
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (VBoxNetAdp) -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys (Oracle Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (vmx86) -- C:\Windows\SysNative\drivers\vmx86.sys (VMware, Inc.)
DRV:64bit: - (VMparport) -- C:\Windows\SysNative\drivers\VMparport.sys (VMware, Inc.)
DRV:64bit: - (vmkbd) -- C:\Windows\SysNative\drivers\VMkbd.sys (VMware, Inc.)
DRV:64bit: - (VMnetuserif) -- C:\Windows\SysNative\drivers\vmnetuserif.sys (VMware, Inc.)
DRV:64bit: - (VMnetBridge) -- C:\Windows\SysNative\drivers\vmnetbridge.sys (VMware, Inc.)
DRV:64bit: - (VMnetAdapter) -- C:\Windows\SysNative\drivers\vmnetadapter.sys (VMware, Inc.)
DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation)
DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation)
DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation)
DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation)
DRV:64bit: - (hcmon) -- C:\Windows\SysNative\drivers\hcmon.sys (VMware, Inc.)
DRV:64bit: - (vmci) -- C:\Windows\SysNative\drivers\vmci.sys (VMware, Inc.)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (npf) -- C:\Windows\SysNative\drivers\npf.sys (CACE Technologies, Inc.)
DRV:64bit: - (RTHDMIAzAudService) -- C:\Windows\SysNative\drivers\RtHDMIVX.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys (NEC Electronics Corporation)
DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\drivers\nusb3hub.sys (NEC Electronics Corporation)
DRV:64bit: - (xusb21) -- C:\Windows\SysNative\drivers\xusb21.sys (Microsoft Corporation)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (RTL8023x64) -- C:\Windows\SysNative\drivers\Rtnic64.sys (Realtek Semiconductor Corporation )
DRV:64bit: - (NVENETFD) -- C:\Windows\SysNative\drivers\nvm62x64.sys (NVIDIA Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (AX88772) -- C:\Windows\SysNative\drivers\ax88772.sys (ASIX Electronics Corp.)
DRV - (gdrv) -- C:\Windows\gdrv.sys (Windows ® Server 2003 DDK provider)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
DRV - (NPPTNT2) -- C:\Windows\SysWOW64\npptNT2.sys (INCA Internet Co., Ltd.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
IE:64bit: - HKLM\..\SearchScopes\{050F6D2A-CD2C-4CCF-A95E-9A59CEE646C0}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{52A54A6E-3E27-4A22-A928-6755ADA9CFFC}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{16C1B23E-3CE1-4f7f-A708-A8F88D636FD7}: "URL" = http://search.yahoo....cevm&type=STDVM
IE - HKCU\..\SearchScopes\{182BD4F4-21ED-4e6c-B65D-F3B9DB6B36AE}: "URL" = http://www.google.co...2788:4067623346
IE - HKCU\..\SearchScopes\{39567D58-C4D9-4285-9C5C-208E15077106}: "URL" = http://www.bing.com/...=SPLBR2&pc=SPLH
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.defaultenginename,S: S", ""
FF - prefs.js..browser.search.order.1,S: S", ""
FF - prefs.js..browser.search.param.yahoo-fr: "moz2-ytff-sunm"
FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "moz2-ytff-sunm"
FF - prefs.js..browser.search.selectedEngine,S: S", ""
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..extensions.enabledAddons: %7B73a6fe31-595d-460b-a920-fcc0f8843232%7D:2.6.8.10
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:2.1.0.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.6.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.6.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@perfectworld.com/npArcPlayNowPlugin: C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\npArcPluginFF.dll (Perfect World Entertainment Inc)
FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
FF - HKLM\Software\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0: C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\vitzo.com/VDownloader: C:\Program Files\VDownloader\Addons\npVDownloader.dll (Vitzo)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\support@vdownloader.com: C:\Program Files\VDownloader\Addons\FireFox [2012/11/07 10:42:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/12/11 08:19:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/01/03 15:59:20 | 000,000,000 | ---D | M]
[2012/10/12 01:09:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wesley\AppData\Roaming\Mozilla\Extensions
[2014/01/03 15:59:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\extensions
[2014/01/02 08:59:38 | 000,535,529 | ---- | M] () (No name found) -- C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
[2014/01/02 08:55:53 | 000,915,554 | ---- | M] () (No name found) -- C:\Users\Wesley\AppData\Roaming\Mozilla\Firefox\Profiles\09qn4qhk.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013/12/11 08:19:51 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/12/11 08:19:51 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}
[2013/12/11 08:19:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/12/11 08:19:54 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
========== Chrome ==========
CHR - homepage:
CHR - default_search_provider: Search The Web (privitize) ()
CHR - default_search_provider: search_url = http://searchou.com/...0000050b60df2d6
CHR - default_search_provider: suggest_url =
CHR - homepage: http://searchou.com/...0000050b60df2d6
CHR - plugin: Silverlight 3 (Enabled) = default_plugin
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\Wesley\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoccbpoodnckjdnackiffhjfkogfhnhh\3.2.800\
CHR - Extension: FuanDEals = C:\Users\Wesley\AppData\Local\Google\Chrome\User Data\Default\Extensions\pmjghjlpeglhomoeofllnjbmkfojelei\2.2\
O1 HOSTS File: ([2012/05/13 14:52:47 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (DeAlEoxipRRESs) - {782901CE-CEDE-22C8-3EDF-BB5F7E77E683} - C:\ProgramData\DeAlEoxipRRESs\l7m.x64.dll ()
O2:64bit: - BHO: (FuanDEals) - {F2C4E697-A038-3939-62E6-60ABEF8A5266} - C:\ProgramData\FuanDEals\U.x64.dll ()
O2 - BHO: (DeAlEoxipRRESs) - {782901CE-CEDE-22C8-3EDF-BB5F7E77E683} - C:\ProgramData\DeAlEoxipRRESs\l7m.dll ()
O2 - BHO: (FuanDEals) - {F2C4E697-A038-3939-62E6-60ABEF8A5266} - C:\ProgramData\FuanDEals\U.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [NCUpdateHelper] C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe (NCSOFT Corporation)
O4 - HKCU..\Run: [PlayNC Launcher] File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000011 - C:\Windows\SysNative\vsocklib.dll (VMware, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000012 - C:\Windows\SysNative\vsocklib.dll (VMware, Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\SysWOW64\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\SysWOW64\vsocklib.dll (VMware, Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.6.2)
O16 - DPF: {CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_34)
O16 - DPF: {CAFEEFAC-0017-0000-0006-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_06)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_06)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 75.75.75.75 75.75.76.76
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{13CBDABD-BDF8-4E2E-8B88-A4D9F83A7A58}: DhcpNameServer = 192.168.252.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3CA9C62F-961E-44AC-995E-48E28CAF140A}: DhcpNameServer = 75.75.75.75 75.75.76.76
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BB27403B-FA1B-4168-9C7B-4D4092729072}: DhcpNameServer = 68.87.68.166 68.87.74.166
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EAEDBEA4-03ED-4E5F-BF50-FFDB1C264342}: DhcpNameServer = 75.75.75.75 75.75.76.76
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~3\WebPlat\WEBPLA~1.DLL) - C:\ProgramData\WebPlat\WebPlat_x64.dll ()
O20 - AppInit_DLLs: (c:\progra~3\webplat\webplat.dll) - c:\ProgramData\WebPlat\WebPlat.dll ()
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/05/05 09:36:45 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014/01/03 16:07:24 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2014/01/03 16:06:23 | 001,036,305 | ---- | C] (Thisisu) -- C:\Users\Wesley\Desktop\JRT.exe
[2014/01/03 15:50:07 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/01/03 15:24:05 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2014/01/03 15:23:40 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2014/01/03 15:20:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2014/01/03 14:57:54 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2014/01/03 14:57:54 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2014/01/03 14:57:54 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2014/01/03 14:57:17 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2014/01/03 14:57:17 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2014/01/03 14:57:17 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2014/01/03 14:56:39 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2014/01/03 14:56:39 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2014/01/03 07:49:25 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Wesley\Desktop\OTL(1).exe
[2014/01/02 23:21:38 | 004,745,728 | ---- | C] (AVAST Software) -- C:\Users\Wesley\Desktop\aswMBR.exe
[2014/01/02 07:58:28 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\Wesley\Desktop\HiJackThis(1).exe
[2013/12/31 23:48:39 | 000,000,000 | ---D | C] -- C:\ProgramData\DeAlEoxipRRESs
[2013/12/31 23:48:37 | 000,000,000 | ---D | C] -- C:\ProgramData\pfkajdnmeplnnlemjfagojglpeelceaj
[2013/12/31 23:48:34 | 000,000,000 | ---D | C] -- C:\Users\Wesley\AppData\Local\Packages
[2013/12/31 23:48:34 | 000,000,000 | ---D | C] -- C:\ProgramData\3bbeb3a6f04741f7
[2013/12/31 23:48:33 | 000,000,000 | ---D | C] -- C:\ProgramData\FuanDEals
[2013/12/29 13:43:57 | 000,000,000 | ---D | C] -- C:\Users\Wesley\.android
[2013/12/29 13:43:55 | 000,000,000 | ---D | C] -- C:\Users\Wesley\AppData\Roaming\newnext.me
[2013/12/29 13:43:55 | 000,000,000 | ---D | C] -- C:\Users\Wesley\AppData\Local\cache
[2013/12/29 13:43:53 | 000,000,000 | ---D | C] -- C:\Users\Wesley\AppData\Local\genienext
[2013/12/28 08:37:50 | 000,000,000 | ---D | C] -- C:\ProgramData\WebPlat
[2013/12/27 11:21:56 | 000,000,000 | ---D | C] -- C:\Users\Wesley\AppData\Local\TGitCache
[2013/12/27 11:20:16 | 000,000,000 | ---D | C] -- C:\Users\Wesley\Documents\src
[2013/12/27 11:20:16 | 000,000,000 | ---D | C] -- C:\Users\Wesley\Documents\bin
[2013/12/27 11:13:12 | 000,000,000 | ---D | C] -- C:\Users\Wesley\AppData\Local\FlashDevelop
[2013/12/27 11:11:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
[2013/12/27 11:10:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Git
[2013/12/27 11:08:22 | 000,000,000 | ---D | C] -- C:\Users\Wesley\Desktop\SkyUI_stuff
[2013/12/27 11:05:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseGit
[2013/12/27 11:05:21 | 000,000,000 | ---D | C] -- C:\Program Files\TortoiseGit
[2013/12/27 11:01:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlashDevelop
[2013/12/27 11:00:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FlashDevelop
[2013/12/12 12:04:39 | 000,000,000 | ---D | C] -- C:\ProgramData\BioWare
[2013/12/12 12:00:12 | 000,000,000 | ---D | C] -- C:\Users\Wesley\Documents\BioWare
[2013/12/11 08:19:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/12/09 15:39:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NCSOFT
[2013/12/09 15:38:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest
[2013/12/09 15:38:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NCWest
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2014/01/03 16:17:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/01/03 16:11:03 | 000,026,512 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/01/03 16:11:03 | 000,026,512 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/01/03 16:06:51 | 000,877,058 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/01/03 16:06:51 | 000,729,420 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/01/03 16:06:51 | 000,147,176 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/01/03 16:06:27 | 001,036,305 | ---- | M] (Thisisu) -- C:\Users\Wesley\Desktop\JRT.exe
[2014/01/03 16:01:16 | 000,025,640 | ---- | M] (Windows ® Server 2003 DDK provider) -- C:\Windows\gdrv.sys
[2014/01/03 16:01:08 | 000,000,376 | -H-- | M] () -- C:\Windows\tasks\MagniPicUpdaterTask{1808030E-38EA-43D5-A427-B34BA55CD23C}.job
[2014/01/03 16:00:59 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/01/03 16:00:48 | 3206,471,680 | -HS- | M] () -- C:\hiberfil.sys
[2014/01/03 15:49:26 | 001,233,962 | ---- | M] () -- C:\Users\Wesley\Desktop\AdwCleaner.exe
[2014/01/03 15:40:42 | 002,219,728 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/01/03 15:30:50 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2014/01/03 15:30:50 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2014/01/03 07:49:28 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Wesley\Desktop\OTL(1).exe
[2014/01/03 07:47:22 | 000,000,559 | ---- | M] () -- C:\Users\Wesley\Desktop\MBR.zip
[2014/01/03 07:45:59 | 000,000,512 | ---- | M] () -- C:\Users\Wesley\Desktop\MBR.dat
[2014/01/02 23:21:44 | 004,745,728 | ---- | M] (AVAST Software) -- C:\Users\Wesley\Desktop\aswMBR.exe
[2014/01/02 23:08:40 | 000,987,410 | ---- | M] () -- C:\Users\Wesley\Desktop\SecurityCheck.exe
[2014/01/02 13:07:15 | 000,020,749 | ---- | M] () -- C:\Users\Wesley\Documents\Public_Executions_Tutorial.odt
[2014/01/02 07:58:31 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\Wesley\Desktop\HiJackThis(1).exe
[2013/12/27 11:50:54 | 000,000,090 | ---- | M] () -- C:\Users\Wesley\mm.cfg
[2013/12/27 11:42:57 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/12/27 11:42:57 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/12/27 11:22:21 | 000,002,010 | ---- | M] () -- C:\Users\Wesley\Documents\SelectedItemMonitor.as2proj
[2013/12/27 06:34:31 | 000,005,756 | ---- | M] () -- C:\Users\Wesley\Documents\Database.kdb
[2013/12/26 08:48:29 | 000,294,402 | ---- | M] () -- C:\Users\Wesley\Desktop\ScreenShot472.jpg
[2013/12/26 08:48:19 | 000,285,855 | ---- | M] () -- C:\Users\Wesley\Desktop\ScreenShot471.jpg
[2013/12/25 11:09:45 | 000,014,582 | ---- | M] () -- C:\Users\Wesley\Desktop\animationtest.nif
[2013/12/25 11:09:45 | 000,000,118 | ---- | M] () -- C:\Users\Wesley\Desktop\animationtest.kf
[2013/12/25 08:14:22 | 000,008,878 | ---- | M] () -- C:\Users\Wesley\Desktop\watertestorb.nif
[2013/12/25 08:11:59 | 000,006,192 | ---- | M] () -- C:\Users\Wesley\AppData\Local\recently-used.xbel
[2013/12/17 18:42:54 | 000,007,624 | ---- | M] () -- C:\Users\Wesley\AppData\Local\Resmon.ResmonCfg
[2013/12/15 09:48:05 | 000,000,890 | ---- | M] () -- C:\Users\Public\Desktop\Nexus Mod Manager.lnk
[2013/12/13 12:49:17 | 000,000,023 | ---- | M] () -- C:\Windows\BlendSettings.ini
[2013/12/13 09:27:20 | 000,000,221 | ---- | M] () -- C:\Users\Wesley\Desktop\The Elder Scrolls IV Oblivion.url
[2013/12/12 17:34:53 | 000,000,641 | ---- | M] () -- C:\Users\Wesley\Documents\HT_todoList.rtf
[2013/12/12 10:51:15 | 000,000,221 | ---- | M] () -- C:\Users\Wesley\Desktop\Dragon Age Origins - Ultimate Edition.url
[2013/12/12 09:43:58 | 000,002,655 | ---- | M] () -- C:\Users\Wesley\Documents\Allowed_List.rtf
[2013/12/11 11:52:10 | 000,002,048 | ---- | M] () -- C:\Users\Wesley\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2013/12/09 15:39:05 | 000,002,248 | ---- | M] () -- C:\Users\Public\Desktop\Lineage II.lnk
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
========== Files Created - No Company Name ==========
[2014/01/03 15:49:21 | 001,233,962 | ---- | C] () -- C:\Users\Wesley\Desktop\AdwCleaner.exe
[2014/01/03 07:47:22 | 000,000,559 | ---- | C] () -- C:\Users\Wesley\Desktop\MBR.zip
[2014/01/03 07:45:59 | 000,000,512 | ---- | C] () -- C:\Users\Wesley\Desktop\MBR.dat
[2014/01/02 23:08:36 | 000,987,410 | ---- | C] () -- C:\Users\Wesley\Desktop\SecurityCheck.exe
[2014/01/02 13:07:13 | 000,020,749 | ---- | C] () -- C:\Users\Wesley\Documents\Public_Executions_Tutorial.odt
[2013/12/27 11:20:16 | 000,002,010 | ---- | C] () -- C:\Users\Wesley\Documents\SelectedItemMonitor.as2proj
[2013/12/27 11:13:14 | 000,000,090 | ---- | C] () -- C:\Users\Wesley\mm.cfg
[2013/12/26 08:48:29 | 000,294,402 | ---- | C] () -- C:\Users\Wesley\Desktop\ScreenShot472.jpg
[2013/12/26 08:48:19 | 000,285,855 | ---- | C] () -- C:\Users\Wesley\Desktop\ScreenShot471.jpg
[2013/12/25 11:09:45 | 000,000,118 | ---- | C] () -- C:\Users\Wesley\Desktop\animationtest.kf
[2013/12/25 08:14:22 | 000,008,878 | ---- | C] () -- C:\Users\Wesley\Desktop\watertestorb.nif
[2013/12/25 08:11:59 | 000,006,192 | ---- | C] () -- C:\Users\Wesley\AppData\Local\recently-used.xbel
[2013/12/25 06:19:47 | 000,014,582 | ---- | C] () -- C:\Users\Wesley\Desktop\animationtest.nif
[2013/12/13 09:27:20 | 000,000,221 | ---- | C] () -- C:\Users\Wesley\Desktop\The Elder Scrolls IV Oblivion.url
[2013/12/12 10:51:15 | 000,000,221 | ---- | C] () -- C:\Users\Wesley\Desktop\Dragon Age Origins - Ultimate Edition.url
[2013/12/11 13:35:46 | 000,000,641 | ---- | C] () -- C:\Users\Wesley\Documents\HT_todoList.rtf
[2013/12/11 13:27:41 | 000,002,655 | ---- | C] () -- C:\Users\Wesley\Documents\Allowed_List.rtf
[2013/12/09 15:39:05 | 000,002,248 | ---- | C] () -- C:\Users\Public\Desktop\Lineage II.lnk
[2013/08/09 12:11:40 | 000,000,089 | ---- | C] () -- C:\Users\Wesley\.gtk-bookmarks
[2013/03/08 08:41:00 | 000,000,600 | ---- | C] () -- C:\Users\Wesley\AppData\Local\PUTTY.RND
[2012/11/07 10:42:16 | 000,444,283 | ---- | C] () -- C:\Program Files\Common Files\WinPcapNmap.exe
[2012/03/31 01:16:37 | 000,000,600 | ---- | C] () -- C:\Users\Wesley\AppData\Roaming\winscp.rnd
[2012/01/13 11:50:02 | 000,151,552 | ---- | C] () -- C:\Windows\SysWow64\nvRegDev.dll
[2011/10/29 09:30:13 | 000,030,720 | ---- | C] () -- C:\Users\Wesley\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/08 06:43:10 | 000,009,707 | ---- | C] () -- C:\Users\Wesley\AppData\Roaming\C186.2A3
[2011/01/01 04:02:54 | 000,007,624 | ---- | C] () -- C:\Users\Wesley\AppData\Local\Resmon.ResmonCfg
========== ZeroAccess Check ==========
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2010/11/20 08:27:25 | 014,174,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010/11/20 07:21:19 | 012,872,192 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== Files - Unicode (All) ==========
[2011/11/21 07:48:07 | 000,000,650 | ---- | M] ()(C:\Users\Wesley\AppData\Local\PMB Fik?s) -- C:\Users\Wesley\AppData\Local\PMB Fik聥s
[2011/11/21 07:48:07 | 000,000,650 | ---- | C] ()(C:\Users\Wesley\AppData\Local\PMB Fik?s) -- C:\Users\Wesley\AppData\Local\PMB Fik聥s
< End of report >
OTL Extras logfile created on: 1/3/2014 4:18:20 PM - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Wesley\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.98 Gb Total Physical Memory | 2.63 Gb Available Physical Memory | 66.03% Memory free
7.96 Gb Paging File | 6.45 Gb Available in Paging File | 80.98% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 240.35 Gb Free Space | 25.80% Space Free | Partition Type: NTFS
Drive D: | 6.85 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive H: | 1863.01 Gb Total Space | 21.24 Gb Free Space | 1.14% Space Free | Partition Type: NTFS
Drive M: | 1863.01 Gb Total Space | 29.76 Gb Free Space | 1.60% Space Free | Partition Type: NTFS
Computer Name: VERONICA | User Name: Wesley | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl[@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html[@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
https [open] -- "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{039BCB32-39CB-433A-9CD0-0DFB609D6ED6}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{1A4687F1-53C4-4E34-B6C1-90ABF109A2C8}" = lport=138 | protocol=17 | dir=in | app=system |
"{1C07F9B2-EE44-4FB4-8C61-91A31E419B85}" = lport=137 | protocol=17 | dir=in | app=system |
"{26C4556C-BD6E-4055-B857-05B5E8F17A49}" = rport=80 | protocol=6 | dir=in | app=c:\program files (x86)\vmware\vmware player\vmware-authd.exe |
"{283B3C46-8F73-4F5C-96A1-8EE59418985D}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{28794443-1330-4748-B080-9F934F4BDAD9}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{29C74A3C-EEDE-478D-BD15-D0788F70024E}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{2BEBBBBA-0D4E-41B1-8D18-2FD65B6AB809}" = rport=138 | protocol=17 | dir=out | app=system |
"{35B64B2F-E85C-424F-94EF-676F20BBFA9C}" = rport=10243 | protocol=6 | dir=out | app=system |
"{4226AAA6-5F6A-4A61-A05B-5CAA689F8A84}" = lport=445 | protocol=6 | dir=in | app=system |
"{52746449-3440-4CB6-B2F0-77A909D82673}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{52FC10D0-E592-49AD-9481-CF200CC76159}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{548B6479-700E-4602-B033-F69583AC43B9}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{6BA39642-E446-45A9-8F8D-CB32C74C1C13}" = rport=139 | protocol=6 | dir=out | app=system |
"{7BFABC5E-E83A-4F78-89F1-678963B6CB25}" = lport=10243 | protocol=6 | dir=in | app=system |
"{85352694-3D40-4EC4-93CE-C35099A30474}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{9CAEB3E8-35B2-469B-9117-A1AC4483E040}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A0247EFB-E19D-4560-A192-F0DDD1F8A9EC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{AD040466-9221-4EAD-9275-B527D1DC2405}" = rport=445 | protocol=6 | dir=out | app=system |
"{B1A9E528-BD37-426C-B9B9-CC782760F4D5}" = lport=3306 | protocol=6 | dir=in | name=mysql server |
"{CCF33AFD-03C8-4B4A-A1CE-9C2303FD80EF}" = lport=2869 | protocol=6 | dir=in | app=system |
"{D4EA3601-618D-4CB5-A271-5BDD157C00B1}" = lport=2869 | protocol=6 | dir=in | app=system |
"{D968CEF9-A1AD-4A10-A2F2-085C3BDCD37E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E5E4CF31-8556-40A3-8481-9B71C05BDCF7}" = rport=137 | protocol=17 | dir=out | app=system |
"{EBD2A4DC-34A3-4615-B941-3D869148C68D}" = rport=80 | protocol=6 | dir=in | app=c:\program files (x86)\vmware\vmware player\vmware-authd.exe |
"{F4E89886-314F-4281-A9E0-520039F9BAE0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F6F586EA-B11B-43E9-ACD3-9DBFD7D890B1}" = lport=139 | protocol=6 | dir=in | app=system |
"{FF04292F-7CE2-463E-B4D5-C99A36E91AA7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{001F8847-CF5B-4EFE-B943-76E6FD6621A8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{011D3EEE-0DAC-4AD5-B947-369180F3C7FC}" = protocol=6 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\patch_server.exe |
"{0217A820-4F8D-4990-8FE1-181F12FA7941}" = protocol=17 | dir=in | app=c:\program files (x86)\premiumsoft\navicat lite\navicat.exe |
"{037FD231-A5AE-4933-B75A-50BFDC2EEB1E}" = protocol=17 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivlauncher.exe |
"{0469FCB8-22B2-4D03-9D8E-6F300CDBBBEE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{058C155F-B565-4144-AD6B-CB87395D5D59}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{05EA8067-2C26-4102-A082-0BDA12F9B9E8}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{07390F66-C36E-43F8-B107-491C8F8B9B9E}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{086087D5-6817-4A13-9182-21424F842D56}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{08887312-47D0-4E4A-BE32-0228C8120AA7}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{08BB7268-61C7-4621-8710-3866D2DC461F}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{08C9CE60-C856-4855-B9E1-B8DDD81E9299}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{08E33CBA-E185-44ED-987B-6F63A7918E86}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{0963736A-E070-45A7-9D35-622799C3DFE5}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{0C94AF81-A8A9-4E25-A4EB-CCC5DA313C2F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe |
"{0E410A23-0DB9-495B-8BA1-8A40A46D9086}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{0EC9F9BF-09E3-483C-B51A-CE8F8E6908FB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{0F655195-69F6-44B1-A8F0-8DBD239D66F3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{10824EFF-4D78-494E-B95C-629CF0F2DE4D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\skyrimlauncher.exe |
"{10A40D1A-996A-4C3B-A7CF-FEC0486EA04B}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{11058164-764D-4592-93A0-BFA09C4A20EF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{117AED4A-EF32-4AC0-B682-5BDF6968C79E}" = protocol=6 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"{11B61834-E8FE-4B8B-9B29-04DFCA626B0A}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{11CFE7B5-F412-4453-97F7-48DA75DDE9BF}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{1448FCD7-A6B3-4BBD-8E09-51B2AEB6B09A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe |
"{14A7D041-8A5C-4C48-A105-C49EE329599A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{152AB14E-9D4B-46DA-A8FA-CC0C1288A089}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{16D7FF09-685E-4B30-AE8F-438E81103936}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{17A6827E-DE61-45CA-9581-2C6DBDAF8E17}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{17F93C0A-BDD1-4B0A-9CAB-C99E2621C879}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{1A79B073-C4F0-46AC-92DE-54E9630B16A2}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{1B6D72B7-9AD6-4B64-BC6F-CB2C3430FE4D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{1BB73985-7642-4358-844C-A7B48072662E}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{1C291BD7-BEDE-4776-B39E-654E46D625FD}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{1CBF9CA8-3F9C-4703-AEE7-0903526C1EAF}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{1CE8749D-B8A8-43BD-8B41-826C2B1EF98A}" = protocol=6 | dir=in | app=c:\program files (x86)\premiumsoft\navicat lite\navicat.exe |
"{1D022049-0A2A-4168-AEF1-23B64A21C884}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe |
"{1D407E64-06AF-4950-A275-8C67A43F74B0}" = protocol=17 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{1DC2D09E-D623-470D-A3FC-A2F38B869DDF}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{1DECC675-23D3-497A-B6B8-0711F72B6CE1}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{1F06F43F-A71A-419C-AA09-6E49EAA52043}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv inauguration station\saintsrowiv_inaugurationstation.exe |
"{1FA7BCCE-5FC9-4986-800A-0121E85183CD}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{1FBBF826-C9E9-4D7E-AAB7-56F72DC74783}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{20291405-DFDE-4C54-826F-594853E69515}" = protocol=6 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\login_server.exe |
"{208C9565-8E8B-49E9-957F-48E5B50BCA42}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2195FE5B-DE5C-4384-8DEA-8ECF84B07384}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{22A1D8BB-6D24-4BE1-8401-53EF3BF8E59C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{22E70E39-F896-47FE-A07D-E6F2C14D4387}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{2304A6A9-29AA-40D5-A80F-84F29F1DE26F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2342A450-6EC8-4759-B9B6-D8EDC2BBC98D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{238BB2C8-7000-4F1A-8ABD-87193CE9AA98}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{23BE32CD-0785-4045-A046-AFB6602015DC}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{24FC6023-6955-45B2-8D0B-2856F31D1DCB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{255CDFB0-D358-464D-A445-5A32D4A408C5}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{2670975D-C858-4E5F-A54A-D69E98FA90CD}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{27167C7E-EB0A-4962-AEB2-02589F04CA26}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{271DD108-8A27-404C-8D54-8D1CADD61D78}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\oblivion\oblivionlauncher.exe |
"{273B5D00-D4B8-4912-9444-AE7C334DA200}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{28482C2B-6F10-4252-96D6-468C78C5A3C6}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{28714C02-A039-4C92-A549-05473131B5A6}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{2AAE5743-136B-49E5-ADFB-C0EDD95EE928}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2ABF6693-E26C-423E-B532-823BC100D9E2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{2B68A169-5429-4FF5-B8F3-36AF01F0651D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2E0338AD-AB4A-4558-8F63-399877A6316B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2E479586-C304-4E62-88AF-941683AF82D8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{2ED2E180-02ED-4865-9AD9-B83B0C1AEE99}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{32D574BA-124B-470E-AC3A-D909B1C7FE7C}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{34257C36-B7EA-4649-A09E-703199D53F77}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{34DC8AEE-9144-4623-9CBB-9D116D391445}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{35A1830D-5634-4BAD-AE85-5CE3D294EF22}" = protocol=6 | dir=in | app=e:\program files\utorrent\utorrent.exe |
"{36037343-8A2F-4271-A150-4C718D8C9339}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{3673AE70-A569-4366-A0FC-A7F68A48E328}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{3715E1C8-91A8-4C2D-A3BD-EF89C123EF67}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{3737464B-2509-486D-85EA-C8BF76D6C914}" = protocol=17 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivboot.exe |
"{37D19E95-AF60-4502-9987-F2BD597192DB}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{383F6D61-9594-4CF6-B36B-E07B0FB55620}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{38FAF647-DA6F-47E5-B768-99996DA5D08D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{3A7F2EF6-DBBE-4935-BC45-6A41A125A7A2}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{3BCA5503-92C2-488A-A7F0-9025DBF31219}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{3C4D7854-5EE7-42C6-9057-D39BAD359345}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{3C83FD23-82B6-44B2-8DCA-23147CF02E6F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{3CE7DE8D-621F-42B3-944C-22C9EE4E7320}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{3D7BDECD-DEC5-4423-9C4A-8E8A44367875}" = protocol=17 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv\ffxivboot.exe |
"{3DEA47B7-04A3-484E-8A32-98C7085F14BF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daupdatersvc.service.exe |
"{40C4C479-C54A-49B1-991D-6517241BC07E}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{40CB1944-D578-41B1-AF17-1CA5A0B241CB}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2012\3dsmax.exe |
"{423C6806-1F76-488F-918C-F967BBEE2733}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{43BC2FF4-BE11-4922-90E0-91DE0535F1B6}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe |
"{442B014E-5CEB-4B73-9954-2DED9F573015}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{44FDF048-6BD8-4C26-A92B-97C407041FAB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{45137FB3-AFF6-49F8-8830-9E9227C235AC}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{45DF360D-AF9B-4714-A9C5-2C4A472B55BE}" = protocol=17 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\patch_server.exe |
"{46C9410D-A455-4F34-A8F1-D9447A3BA1BE}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{477EBAEC-4379-4F05-A03F-3D064923AD97}" = protocol=17 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\login_server.exe |
"{489E9420-5E45-4491-BB41-17E85D3189E3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{4900F3A1-4E34-4130-8C04-92CE6BA640B8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{4902E522-6184-4194-88F1-D052FD22E459}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2012\3dsmax.exe |
"{497036C1-CA32-4565-8D4D-1E9A3E152B29}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv inauguration station\saintsrowiv_inaugurationstation.exe |
"{4B3FA4DD-00A5-4AC9-8AD0-B9536D797755}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{4D09A62B-19B7-47DF-971D-89A00F7C2EB1}" = protocol=17 | dir=in | app=e:\program files\utorrent\utorrent.exe |
"{4D0B55C7-E82B-4351-B5E7-F85ACC448389}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{4D1E0F01-7D57-45D9-8012-0909AD3ED0E8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{4DF738FD-461D-48DD-BB0D-87DC232BC6D0}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{4EE5EC34-E407-44D8-9E84-DE39D8562D77}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{5049EF67-05F7-485D-8DB7-24A2DFA90034}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{50A14B5D-8900-4F0D-A513-7F4F5FF220AD}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{51D47280-F010-4E7D-803C-002984487447}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{520021C9-BA0C-47B6-BD29-440A07D112C0}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5218A350-45A4-44E1-8C38-631B3DA29F5D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{5252598C-29C5-4A7C-99B2-400342D6CDD6}" = protocol=6 | dir=in | app=e:\program files\utorrent\utorrent.exe |
"{53774FED-59FD-43CA-B70D-7CEE240A714D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{53850452-F70F-4FF8-8BCB-D57A0D3AF8DC}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{57DA09F8-5B21-4243-8A0E-D7C9140A07B6}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{583CA67E-5EDF-4B62-B3DA-7E266122070B}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{58E94A64-B27D-4A98-B234-604991367DA7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{59157E39-74BF-4943-8536-9D84B473FC66}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5925AEB0-52F2-4391-B742-756C19E5894C}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{59C2DE65-E0E3-4462-B775-DB67E52177DC}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5B0F6A4A-4DA1-4169-89DA-71AF644A58D9}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{5BFDBC72-3D4B-4816-B792-3FDB1BCEFB2F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5D13D12C-1587-49F2-913F-5A6E819640E1}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5DD8A0F2-9D53-420C-91F9-CF2875B925CF}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\manager.exe |
"{5E222CBD-3138-4BD9-BE66-5DC1A7043BA9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{60427F79-EA05-411D-BD7E-663E8377D791}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe |
"{64026244-91A6-45D7-AF73-DFB73368CD9F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{64BD0EBF-5DFF-407A-8C52-D41F95A6E5DD}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe |
"{64DD9C12-6CDD-4330-961F-605DC9945F3C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\morrowind\morrowind launcher.exe |
"{65F59484-B821-442F-B3E7-035C9DFFF980}" = protocol=6 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivlauncher.exe |
"{685A1F70-4E48-4214-9436-E64301CDF485}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{6990D3A9-82F4-4A36-9609-BB52967D2ABE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{6A390D46-308F-4CE8-87C1-2454B6FADDE1}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{6AE7523F-5866-4835-A18D-4F09A7E2F10D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{6AFF00F3-4163-4203-AE83-CE0580A4F14F}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{6BF3E474-2159-44A0-A508-84C64CF84309}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{6D0065DD-BE82-41C2-8441-F0EC62FA1E44}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{6D96B861-DD13-4FEF-9324-0B68A77500D0}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{6F0F638E-EEA6-4B38-8CBB-71115CF08ED6}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{6F27C037-6D2F-416A-8F8A-7F227C6A98B2}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{6FAE5C7F-82A0-4EB0-ABEE-F6F93C3FE39F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{70E3B8A3-3150-4BDE-9B99-80C5CB2E7FB4}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{719A2B3B-5215-4071-B383-469DE03A802B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daupdatersvc.service.exe |
"{735F854E-7778-486F-B68C-0682675D42EE}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{73EA02B3-F07B-44D0-BB8C-19D1F25C3301}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{74A9C2F1-C739-44A3-98E6-9B9207DC31E4}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{750CD231-15DE-41B0-B29C-8E20E8F09135}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7648AC62-29AC-40C6-963B-EB1407C1D786}" = protocol=17 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{7655C723-F3CD-429A-BE9F-2E871C845886}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{770C3BB4-C608-475D-B5AA-F94D3CBAB4ED}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{78BD6241-685E-48CA-A9B5-64B5CBE94F2C}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{794B8D68-DAFE-4C18-8BC1-F2EBEC9B252C}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{79C460C9-0D6C-46B7-ADEA-4F0384DA47D8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7A4DE317-6804-4A30-8FFF-7EB91063DCDA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7B957A14-98A7-42F7-898B-57E6DCFB38FB}" = protocol=6 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivboot.exe |
"{7BBF3330-9732-4FE2-A129-4B1E1100A138}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{7BD9FD5F-80C3-465A-B16F-F9F9F5F488F0}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{7C0CE0C4-8112-4FC1-8E12-3D839F63612D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{7CE9CA3F-B9C6-43DD-B03A-0DBF44BEEDB5}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7EAB3745-ACCE-4530-BB22-73951EFA58D3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7EBEDC25-267D-450E-A18A-735FE28256FE}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{7EC6C912-CD91-41A9-BE7C-41BBA1ADA78D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{7F265411-609D-42D4-B8D0-B4F189546C52}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{7F6205F8-ABF3-4539-80B3-227608E033F8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7FCC1CEA-A31E-4938-B883-5DE3C68E0D3E}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{80A01642-0650-4EAE-8653-407E8DF0C513}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv\saintsrowiv.exe |
"{81874B4B-21D6-437C-9A62-673B812014BA}" = protocol=6 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv\ffxivboot.exe |
"{819BBB93-A63E-433A-8055-5016E914BB89}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{82F3501D-CFA4-4972-ABF6-A8B55F7B4EFD}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{83630659-9D52-4D96-85E5-E9ACAA0010C3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{84AAB010-8F47-443C-8FE6-770D5487BB96}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{86585AC3-A4DB-48A4-B639-75210D39D262}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\monitor.exe |
"{88BF652F-9A79-47FE-A7F1-BF7F9E5797D0}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{8A974DD1-B9AA-4149-B85C-0C773E925B8D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{8C0F635C-9878-4ED3-AE0A-3438976A2800}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{8DB9C33A-38C4-4982-B6BD-4B643744D8E7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{90039948-1127-4D38-90D9-E572E36F751B}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{90940A93-28CA-45A5-BAD8-261931DA3572}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{90F58764-3263-473E-82BD-ACA3110F3905}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{91FC3A16-6B7C-45AB-86BA-1ED6242FCD05}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\skyrimlauncher.exe |
"{9588CE61-A72B-4690-B1EC-0984811C0D08}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{9642512C-51EE-425A-9D55-A93288460068}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{9697A4A6-4BC2-4332-99C2-A3E524849635}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{96B9FC3C-A52A-45F6-BDF5-C0C06019A916}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{96D15695-66BF-4FD9-B695-67ACFB822522}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{96F0D307-958A-413D-9B1D-B9AA344A3AE9}" = protocol=6 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivlauncher.exe |
"{985B5324-C5B7-49DE-BE37-B9E20311C6D9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{9986E7AD-9361-42A7-9DDF-4FC5DDD7AC07}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{9B646E7F-CF83-4AB1-9AB8-51135142CE3C}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{9CCEC0FF-BE79-4D02-80ED-60FA1A547E35}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv inauguration station\saintsrowiv_inaugurationstation.exe |
"{9D9B0F91-CC9E-4032-8076-838795234228}" = protocol=6 | dir=in | app=c:\program files (x86)\autodesk\backburner\server.exe |
"{9DBA8D75-CEE2-4356-9876-25DB60EEECC7}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{9E92007F-C6D4-4DA1-9455-5D7911516F76}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{9F30F29B-EA93-4809-8394-8C478E50AA1D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe |
"{A01509C7-E086-4E42-9DD8-A816E3CCC628}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{A0612447-36AF-4B44-BD9E-250E68F7831A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A0614DF1-871E-4357-B06E-7EAE5EC1BE72}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A0DD0808-3655-4A80-BCD2-7C56D1042A0F}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{A15F08AD-743D-42E5-A2B3-A575EDFA5B10}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A37DF329-C799-488E-8559-5CA5EBA6527B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A500288A-7D7F-4969-BA6C-0706E0D840AA}" = protocol=17 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"{A51EBC6E-BF5E-4EFD-8040-1C639D68269F}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{A591A8EF-92EF-4B2A-8071-4A5212C45A37}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A5C7EEA5-B08F-428C-AE6F-A86B0D6DD0F9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A627AC1A-B80C-468D-A7B2-988220DC928D}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{A7910DD1-303C-4366-B23A-16DA06D81C7C}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{A7F1CF2C-7F8C-4748-89AC-93B6EF65663D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A85CD012-BF34-4C4F-A8D6-4E8C3A8D9313}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv\saintsrowiv.exe |
"{A93F4AF3-F5B4-4F5D-ACCE-1FFF2C86600B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A96A4EF9-2B4F-490B-A8BD-7B67568F9DED}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{AA36443A-4711-43AD-BA2B-DAB70D87D108}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{AB1DAD20-1E4C-4098-A026-89E064BC2953}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{ABAD1C70-90DF-4C00-A7B2-2DB6139D8ED7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{ACF9B674-C870-4AF0-B31A-B18ADB0606B4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{AF202505-EC71-4D41-96F4-DE0C3F748201}" = protocol=17 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivlauncher.exe |
"{AF4CE17B-4B67-4E66-99E8-D6F07C6530F1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe |
"{AF7580DB-2862-48C9-9F6E-AF7C34F25C0E}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{B0790E30-7887-42B5-BF96-DB87891D90D4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv inauguration station\saintsrowiv_inaugurationstation.exe |
"{B1298EB6-AD64-408E-A5E7-C9FB2024EBF8}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{B1312CA7-A74C-4AAB-95DD-ECE392D038A2}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B19133CF-15E0-480B-896C-D78963EE2862}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{B2679D5B-6C21-4364-8674-1AD7279280DD}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{B51A16C4-0914-4E4D-B032-836EC57D9FA3}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{B5EB99CB-597D-4CB0-9574-6B5766AC0C22}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{B5FBBAA4-B744-4B8F-9188-276FFE6ADF48}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B690B1BE-F100-4F66-998E-3CB18CCAA30F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{B7ED08ED-E6A7-47E9-B13E-086747DBC4D3}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{B9396907-18C2-4C6A-85D5-FBF85AA1C9EC}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{B9D41B8B-C869-4DD9-B41B-539F6D6D97AD}" = protocol=6 | dir=out | app=system |
"{BAA2CD70-97AA-45F3-8451-9364CBD7253C}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{BAB9665F-1F8C-418D-9E59-AF1A2CDBC6B4}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{BB3C02B5-B130-4116-BEDE-F932842C7BD6}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{BB5B7404-0413-4ED4-9530-DBA16AB3A27F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{BCDB636B-5E88-4926-A9D3-AB6261673797}" = protocol=6 | dir=in | app=c:\users\wesley\desktop\oblivion mods\xampp-win32-1.8.1-vc9\xampp\apache\bin\httpd.exe |
"{BDC18702-14FC-46CE-9B96-503F0962E88D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C192D407-DBE3-4B59-9AC2-656370A1B416}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C2036907-F1DA-472F-89BE-2CB4801E4465}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{C30C7F4B-98CF-46B4-859F-DCD965BC0B79}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C3120368-ECE7-4E2E-9CA5-FE6378CB055E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\oblivion\oblivionlauncher.exe |
"{C61A03A1-E892-4615-8469-E8CD107CBF3E}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{C6421A46-170E-42F6-B4F2-5AB876F50C82}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C6B39009-22B7-4CF2-AF3A-7DF57DBC4472}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{C6D79631-8430-4A7F-878F-52E42294E3C4}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{C853E1AB-F6C9-4C44-9DB0-4348A4F42E66}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{C8ACCFFF-06E6-4910-B6C1-9A2FCD4DA125}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C98A7926-6063-4D15-AEE5-44E442689919}" = protocol=58 | dir=in | app=system |
"{CAECCFC6-1934-454C-A12D-AF835243817B}" = protocol=17 | dir=in | app=c:\users\wesley\desktop\oblivion mods\xampp-win32-1.8.1-vc9\xampp\apache\bin\httpd.exe |
"{CBCAD372-4282-4778-9143-7A57461DE133}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{CCDDE627-1138-4844-AA4E-1A7E3FD91610}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CF3D0366-C834-4ED9-9F54-ABF590F539C6}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{D004833B-1B0F-497D-96F4-2A533E2FC23A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D073BC81-4403-468D-B3D1-523413A75B72}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D1D254ED-C05D-4421-A25F-C90C390983B4}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{D20E6CAF-EAAC-4F04-9899-26E8160F3EE9}" = protocol=6 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\ship_server.exe |
"{D2C1A244-90BA-42FF-8151-B9B0A89EBC31}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D2E9C6B3-A57C-47F7-AD23-251361BEB7BC}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D32CA9A2-EAB4-4C52-B9BA-A7D56D0E6C6B}" = protocol=6 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{D47F269B-CB56-4746-AC4D-184C615D09F6}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D75FF529-8621-4163-9B05-7B038E1DB5FA}" = protocol=6 | dir=in | app=c:\users\wesley\desktop\oblivion mods\nifutils\nifconvert.exe |
"{D78A4F3F-517A-43E7-B845-DDF24C1A5CBD}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{D7F79391-B43C-47A8-AC4B-F80968937D24}" = protocol=17 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\ship_server.exe |
"{D881DE45-FF9F-4F93-B7EC-5C3B8F18923F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D8C30233-0510-4D35-87A4-158E2E8C96F7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe |
"{D8E6380C-E75C-4FCE-AF6C-BC9397F928B8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D95C395E-B85F-4D7E-94BE-3CE6B3DED9AB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{DA2D896F-29EC-4460-BDA4-CAC17A2AD5E5}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{DA4687A9-FAAB-4C87-BA78-C55AEA2FA755}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{DB4D0CF7-7BC7-4EC0-8D53-8C026F772700}" = protocol=17 | dir=in | app=c:\users\wesley\desktop\oblivion mods\nifutils\nifconvert.exe |
"{DB6DF807-F98D-4812-B9FB-8BE523637AF5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{DBA767C1-EB91-4F18-8DD0-69B1536A1059}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{DBD58B6D-BB6B-4ECC-BCBF-A39B16FDDEC4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{DCFCC08A-F710-4D63-9B4D-ACFD69350DCE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{DEB0A52F-CE49-4D02-8ED1-B143A6183FAB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\skyrimlauncher.exe |
"{DFD34E23-C287-481F-9120-33DDFA4CBF06}" = protocol=17 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivboot.exe |
"{E0099885-4AF2-4D0A-B7AD-7C48243E6B94}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E098272F-7627-4D8B-8A76-C827B901DB94}" = protocol=6 | dir=in | app=c:\program files (x86)\squareenix\final fantasy xiv - a realm reborn\boot\ffxivboot.exe |
"{E09B28F8-9B17-4CF7-87ED-770DD1E54A09}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E12A9745-886D-4983-B78E-50D1E1919156}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E153E9FD-586E-49CA-B9E2-C5EC0345FEB3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E2F4A157-9FCA-4255-A571-B4CDBCFAAD69}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv\saintsrowiv.exe |
"{E2F88B1C-0FD2-4AC8-8F88-A86FEFA54BD5}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{E3608668-3887-4F0C-A8DF-9866831EED1B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E37053FC-80DF-41FF-A98F-7403FF314E17}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{E50929A9-897C-4530-AD52-8E2B37000A33}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row iv\saintsrowiv.exe |
"{E542EEBD-4A55-4942-85A7-E124AE61DC23}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{E5BF5C7D-BBE3-4FF9-A738-02222F70F1F5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\daoriginslauncher.exe |
"{E619CCAD-92E6-4378-9008-3FD51DC782AA}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{E6EB9DE0-0A4F-413A-991D-2125C23202ED}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E7099B03-FD89-47FE-9B8D-E323ED8163F2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\daoriginslauncher.exe |
"{E949FDE5-E659-445A-ABCA-D7450463E334}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{EA27675A-16C1-4FCE-AD3B-131447D21D13}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{EB979A15-0380-457D-9008-8FBD95391D39}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\skyrimlauncher.exe |
"{EC1B1977-898D-473B-A5A3-234AB0495EA3}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{EC4B5D19-4CED-43BB-91FE-FB4B9BDB4C91}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{ED119F16-0C84-43EE-843D-5C9F230216D6}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{ED59495F-9107-4093-816F-C82C0AAA0754}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{EEFF52B3-A1E9-4B09-9F75-2BCFC7D490CD}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{EF27E121-BB82-4B0B-B969-3D66B852C92D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{EF3A5F6A-CAA7-4960-A2A7-8D0AC98F13D7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{F2F53F56-6165-4ED8-962E-402745654F9A}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{F44B0383-25C8-406E-BFB1-71A718AF4EE3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{F5CE0D43-F3B9-42C2-A2FD-36D9B6FAC144}" = protocol=17 | dir=in | app=e:\program files\utorrent\utorrent.exe |
"{F6BD022F-0AE6-46FB-B773-CAC3E0558C0F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F6E4F728-3C82-42F4-94CB-C9F2B9E4C001}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{F9B0262F-55A2-4E26-BEB9-928F2925DA39}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe |
"{F9DBA14D-2DA8-4E7E-9A8C-0277152918C5}" = dir=in | app=c:\program files (x86)\safari\plugin manager\skypepm.exe |
"{F9FE0BF5-50D7-4496-A6CE-A77F0D1C61E6}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FAC865D3-D972-45C7-85F2-9B31CEB6D54A}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{FB7B3969-4547-4511-B2BD-225EE42A9D60}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{FD18E25D-8F40-40F0-85B8-7A1206042820}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FD29F3B5-A307-4D1F-BF6E-8C72156A6330}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{FD607A63-B6E8-47AF-9955-A40D4490BB28}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FD883362-B83A-4D97-B208-BD3AEC8B389E}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FE47B6D8-06B5-470B-8852-5CB88B238E77}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FE8CCAC8-797D-428A-80DC-B6504AD9A610}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FED82D3B-0974-41E6-8D9E-D99DE754F98A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FF9AA80D-D146-4388-83C1-C71352EED439}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\morrowind\morrowind launcher.exe |
"{FFA6C9FB-0DD1-4535-8E1B-2139CA43C334}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{FFD36C67-D17F-4E83-BED0-775612C78ED4}" = dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"{FFF368D2-6FEE-4A6D-895C-B88A9861D41E}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{13C66E39-D3C4-429C-9D37-849C4C053254}C:\users\wesley\desktop\oblivion mods\xampp-win32-1.8.1-vc9\xampp\apache\bin\httpd.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\oblivion mods\xampp-win32-1.8.1-vc9\xampp\apache\bin\httpd.exe |
"TCP Query User{13F9CE02-1A53-47DA-9779-5FE8776FA8E8}M:\clutter\new folder\ship_server.exe" = protocol=6 | dir=in | app=m:\clutter\new folder\ship_server.exe |
"TCP Query User{17092826-3DB0-450A-8AC5-8D90BAC05292}C:\program files (x86)\safari\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
"TCP Query User{2D288655-3E83-49E0-8462-38A4762DD6B3}C:\users\wesley\desktop\oblivion mods\nifutils\nifconvert.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\oblivion mods\nifutils\nifconvert.exe |
"TCP Query User{306DCBE9-6695-42B7-B0C1-5F7D9AF775A3}C:\program files (x86)\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"TCP Query User{308D7542-9AAE-4B61-BC51-E51F33BA53F3}C:\users\wesley\desktop\psoserver\psologin_ship_server\patch_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\patch_server.exe |
"TCP Query User{334DC83F-D47E-4A16-9755-0A40671DFC70}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe |
"TCP Query User{3364F5FA-2ED5-4304-8EAA-98503CB95711}C:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe |
"TCP Query User{3578851B-6E17-40FE-9647-94F00F5E3897}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe |
"TCP Query User{460638D8-FBF8-4A70-B37C-B36383E86CC9}C:\users\wesley\desktop\new folder\patch_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\new folder\patch_server.exe |
"TCP Query User{4755E2BC-C4C7-44D8-AFB6-79996AD2A4CB}C:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe |
"TCP Query User{47BD5148-F634-4002-834D-3F8EF0036507}F:\program files\skype\phone\skype.exe" = protocol=6 | dir=in | app=f:\program files\skype\phone\skype.exe |
"TCP Query User{51B58441-8B37-4897-B59E-33C8614E4862}C:\program files (x86)\aim\aim.exe" = protocol=6 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"TCP Query User{55621B04-FDD9-4D26-BC9E-3900C851A3E3}C:\users\wesley\desktop\clutter\new folder\patch_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\patch_server.exe |
"TCP Query User{729BF536-9CDF-4BA7-87BC-C6FA4D8CEDA9}C:\users\wesley\desktop\clutter\new folder\ship_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\ship_server.exe |
"TCP Query User{762096A2-F7A2-47A5-92D5-82B5E22EABE2}C:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\login_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\login_server.exe |
"TCP Query User{856D6A38-F052-400B-8220-0B17353DDFCD}C:\program files (x86)\premiumsoft\navicat lite\navicat.exe" = protocol=6 | dir=in | app=c:\program files (x86)\premiumsoft\navicat lite\navicat.exe |
"TCP Query User{99AA7556-2E49-4AE0-BBBB-CB6B02FE29E6}C:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\patch_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\patch_server.exe |
"TCP Query User{9DDB64B4-7122-4257-A438-EA1391D5B343}C:\users\wesley\desktop\psoserver\psologin_ship_server\login_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\login_server.exe |
"TCP Query User{D6DFCD4E-4070-4C85-9EA3-CD099CF26262}C:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe |
"TCP Query User{DBEFBC4A-B3B2-4CBC-9785-FF39734F57EA}C:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe |
"TCP Query User{DEB5DEC7-C0ED-441B-983A-9DD6DB0AA531}C:\users\wesley\desktop\new folder\ship_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\new folder\ship_server.exe |
"TCP Query User{DFADDD3A-7880-4635-AFFD-E508118ED3EC}C:\program files (x86)\playonline\squareenix\playonlineviewer\pol.exe" = protocol=6 | dir=in | app=c:\program files (x86)\playonline\squareenix\playonlineviewer\pol.exe |
"TCP Query User{E2D3E226-DB5A-475F-8FB6-D3B7B8E9866B}C:\users\public\games\cryptic studios\star trek online\live\gameclient.exe" = protocol=6 | dir=in | app=c:\users\public\games\cryptic studios\star trek online\live\gameclient.exe |
"TCP Query User{E4F8B129-18B8-48DD-A051-CCE1926D25D3}C:\users\wesley\desktop\new folder\login_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\new folder\login_server.exe |
"TCP Query User{F8243979-DD38-483A-91E3-0DA6819A836C}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe |
"TCP Query User{FEF20764-3E87-488C-94BD-472AC229CC13}C:\users\wesley\desktop\clutter\new folder\login_server.exe" = protocol=6 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\login_server.exe |
"UDP Query User{14C1F6F1-35F4-4680-97EB-8FD02B4F86C5}C:\program files (x86)\playonline\squareenix\playonlineviewer\pol.exe" = protocol=17 | dir=in | app=c:\program files (x86)\playonline\squareenix\playonlineviewer\pol.exe |
"UDP Query User{14F7414E-DC56-44A5-9C18-5E55583E390E}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe |
"UDP Query User{2EA79B0F-AE15-4590-8B05-B01CCCABFB9F}F:\program files\skype\phone\skype.exe" = protocol=17 | dir=in | app=f:\program files\skype\phone\skype.exe |
"UDP Query User{43F0F576-4BDD-402C-B3B5-8429724DA743}C:\users\wesley\desktop\oblivion mods\xampp-win32-1.8.1-vc9\xampp\apache\bin\httpd.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\oblivion mods\xampp-win32-1.8.1-vc9\xampp\apache\bin\httpd.exe |
"UDP Query User{4B9457A6-224C-488A-8F90-A1ADFCC21F41}C:\users\wesley\desktop\oblivion mods\nifutils\nifconvert.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\oblivion mods\nifutils\nifconvert.exe |
"UDP Query User{4D0BAEA2-CF46-4EFF-9FDA-60B0A40D0975}C:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe |
"UDP Query User{4D5A2807-3160-4EB0-8B78-352D645E8BEA}C:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\ship_server.exe |
"UDP Query User{507D4333-D376-47FA-9AEC-CE44143F73C2}C:\users\wesley\desktop\psoserver\psologin_ship_server\login_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\login_server.exe |
"UDP Query User{51629825-35B9-4CC8-8454-250EBF3B1E8D}M:\clutter\new folder\ship_server.exe" = protocol=17 | dir=in | app=m:\clutter\new folder\ship_server.exe |
"UDP Query User{51C49959-21C5-4D37-9E16-9900F7A45906}C:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\patch_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\patch_server.exe |
"UDP Query User{5526B29D-7331-433F-A37B-85DE89CB3307}C:\users\wesley\desktop\clutter\new folder\ship_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\ship_server.exe |
"UDP Query User{599B9E6E-6E39-46E1-9C90-E23AB2698A95}C:\program files (x86)\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"UDP Query User{6667C1CE-08D6-4E2D-84F7-6A3C78FD77FE}C:\users\public\games\cryptic studios\star trek online\live\gameclient.exe" = protocol=17 | dir=in | app=c:\users\public\games\cryptic studios\star trek online\live\gameclient.exe |
"UDP Query User{6B0CB342-C1C7-4DA2-A48E-5762D772A846}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe |
"UDP Query User{6CD51022-9AA6-4843-8B6D-2026349CADB4}C:\users\wesley\desktop\clutter\new folder\patch_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\patch_server.exe |
"UDP Query User{6CFA2A4B-5553-4DE6-90A2-A49F23079B4B}C:\users\wesley\desktop\psoserver\psologin_ship_server\patch_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\psoserver\psologin_ship_server\patch_server.exe |
"UDP Query User{B5B82CB3-5B5C-43F8-8E98-12A92A31B1D1}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe |
"UDP Query User{BE607925-3EBA-4E94-AD67-3A19221D9E70}C:\users\wesley\desktop\clutter\new folder\login_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\clutter\new folder\login_server.exe |
"UDP Query User{BFF7D5D3-4871-4ED9-91A8-423B5566FAC9}C:\users\wesley\desktop\new folder\patch_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\new folder\patch_server.exe |
"UDP Query User{C73F262E-F4CF-4089-A4D6-215DFA7ABCA3}C:\program files (x86)\premiumsoft\navicat lite\navicat.exe" = protocol=17 | dir=in | app=c:\program files (x86)\premiumsoft\navicat lite\navicat.exe |
"UDP Query User{C77B42BD-A303-46EC-B15D-BEF116307CD3}C:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe |
"UDP Query User{D2C64A5C-E6FE-4C1F-A72E-E9FD435CF421}C:\program files (x86)\aim\aim.exe" = protocol=17 | dir=in | app=c:\program files (x86)\aim\aim.exe |
"UDP Query User{DCFA11DC-9892-4FEB-B76B-0FC88DFDB566}C:\users\wesley\desktop\new folder\ship_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\new folder\ship_server.exe |
"UDP Query User{DD17F066-AFFB-4B06-8AF0-B28AD22AED45}C:\users\wesley\desktop\new folder\login_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\new folder\login_server.exe |
"UDP Query User{F6BDF47E-F81B-467C-8710-FC6A32239A25}C:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\login_server.exe" = protocol=17 | dir=in | app=c:\users\wesley\desktop\new folder\spsos_login_v.048_nosql\login_server.exe |
"UDP Query User{F85281CB-1CDD-427A-BA5D-30E1B6B277A2}C:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\creationkit.exe |
"UDP Query User{F96690B8-9E71-4085-ADD7-FDD2D05E9075}C:\program files (x86)\safari\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\safari\phone\skype.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{0826F9E4-787E-481D-83E0-BC6A57B056D5}" = Microsoft SQL Server VSS Writer
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}" = Apple Mobile Device Support
"{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}" = Sql Server Customer Experience Improvement Program
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{3C5E60F1-0821-4B07-97EA-84EB5A927CF6}" = MobileMe Control Panel
"{3DDACE1F-3B1E-D6AB-CD3D-B6E987511945}" = ATI Catalyst Install Manager
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503640E5-B2ED-3173-D109-D4D03153471A}" = AMD Drag and Drop Transcoding
"{5340A3B5-3853-4745-BED2-DD9FF5371331}" = Microsoft SQL Server 2008 Common Files
"{579584AA-7CBA-46DF-A434-34988C76A65C}" = MagniPic
"{5CA882E6-4BF0-4E55-B290-6C4EAD6E586E}" = MySQL Server 5.5
"{5DE154DF-A55E-4FA5-BE59-32E78FCACF3E}" = Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{71EFF430-1A34-423E-8EAF-A80173960A8E}" = TortoiseSVN 1.7.10.23359 (64 bit)
"{723C8298-C7B0-0409-A1B6-C3BA6F3FFAB1}" = Autodesk 3ds Max 2012 64-bit - English
"{7ABFE47E-004E-49A2-AB49-486CA15CC688}" =
"{7ACE202B-1B01-4B43-B6AE-03D66D621CDE}" = Microsoft SQL Server 2008 RsFx Driver
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{893F27E6-D6BE-4B9F-80E6-0ADA694A31A8}" = Microsoft SQL Server 2008 Common Files
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DF73A13-F54C-4CB3-B4AD-4375A2E8F4F8}" = VmciSockets
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{90A80D89-A0E4-33C1-B13D-B93CB3496867}" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A7E19604-93AF-4611-8C9F-CE509C2B286E}_is1" = VDownloader 3.9.1326
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Driver 266.44
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Display Control Panel
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 266.44
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD Audio Driver 1.1.13.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{CC8BA866-16A7-4667-BA0C-C494A1E7B2BF}" = Microsoft SQL Server 2008 Database Engine Shared
"{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}" = iTunes
"{D9C50188-12D5-4D3E-8F00-682346C2AA5F}" = Microsoft Xbox 360 Accessories 1.2
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DE35700E-4D3C-41A5-8BF0-44A5FDE4A6C5}" = MySQL Server 5.1
"{DF167CE3-60E7-44EA-99EC-2507C51F37AE}" = Microsoft SQL Server 2008 Database Engine Shared
"{DFB3AD2B-4EE2-3077-BF1D-3CA164BC5336}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for .NET Framework - enu
"{EA234BC3-39FE-4734-B72F-076086889F6D}" = Composite 2012 64-bit
"{EAFB2AD8-D92B-464C-8D97-B9CB94703C4A}" = iCloud
"{EC93BB38-01C9-4D3B-9BA7-B26BDC03E6C1}" = TortoiseGit 1.8.6.0 (64 bit)
"{F5C819A5-E068-4f7d-B91A-1BD18702AFFB}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for Win32
"{FA7394B8-CE65-4F9E-AC99-F372AD365424}" = Microsoft SQL Server 2008 Database Engine Services
"{FAE188FD-A941-49E9-A5E9-F6D88517EC40}" = Smart Recovery B09.1002.1 (x64)
"{FBD367D1-642F-47CF-B79B-9BE48FB34007}" = Microsoft SQL Server 2008 Database Engine Services
"{FCADA26A-5672-31DD-BF0E-BA76ECF9B02D}" = Microsoft Help Viewer 1.0
"{FD53298A-4734-AFCB-B733-4C07776E589E}" = ccc-utility64
"6af12c54-643b-4752-87d0-8335503010de_is1" = Nexus Mod Manager
"Autodesk 3ds Max 2012 64-bit - English" = Autodesk 3ds Max 2012 64-bit - English
"Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit" = Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit
"CCleaner" = CCleaner
"GIMP-2_is1" = GIMP 2.8.4
"MagniPic" =
"Microsoft Help Viewer 1.0" = Microsoft Help Viewer 1.0
"Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU
"NIF Utilities for 3ds Max_is1" = NIF Utilities 3.7.3.265452180 for 3ds Max
"Sublime Text 2_is1" = Sublime Text 2.0.2
"Sublime Text 3_is1" = Sublime Text Build 3047
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{014A2868-BE56-4888-A16C-693989B8F153}" = SlimDX Runtime .NET 2.0 (January 2012)
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
"{07300F01-89CA-4CF8-92BD-2A605EB83C95}" = EasySaver B9.1214.1
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation®Store
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{1111706F-666A-4037-7777-210328764D10}" = JavaFX 2.1.0
"{167A1F6A-9BF2-4B24-83DB-C6D659F680EA}" = Media Go
"{179C91E9-D9ED-D5CC-F0D8-9579DBDED8D6}" = CCC Help English
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20B6BE33-525B-4EF9-9628-E1BA58093A4C}" = ZBrush 4R2
"{2205B8AE-490E-43F2-AB43-C13C2BEC86A7}" = DDS Thumbnail Viewer
"{23170F69-40C1-2701-0921-000001000000}" = 7-Zip 9.21
"{23664DA8-8872-4CF4-A2F2-327CC539823B}" = Lineage II
"{23D683DD-93C6-48E6-B84E-78B57778F126}" = Oblivion - Construction Set
"{23F79416-CAD1-41BF-99A3-040F6C814AAA}" = NVIDIA Photoshop Plug-ins
"{25F259ED-12F6-429F-5783-527C3E2F8586}" = DeAlEoxipRRESs
"{26A24AE4-039D-4CA4-87B4-2F83216034FF}" = Java 6 Update 34
"{26A24AE4-039D-4CA4-87B4-2F83217006FF}" = Java 7 Update 6
"{284CFEE9-720C-43C6-A276-1945CA4F6DDF}_is1" = Aion RainMeter version 1.51
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2B41E132-07DF-4925-A3D3-F2D1765CCDFE}" = FINAL FANTASY XIV - A Realm Reborn
"{32A3A4F4-B792-11D6-A78A-00B0D0160340}" = Java SE Development Kit 6 Update 34
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{342D4AD7-EC4C-4EC8-AEA6-E70F5905A490}" = SQL Server System CLR Types
"{34EF7358-ABC7-8469-5FB6-C5C0146F099E}" = Media Go Video Playback Engine 1.84.102.07010
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{35CB6715-41F8-4F99-8881-6FC75BF054B0}" = Oblivion
"{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Autodesk Backburner 2012.0.0
"{3D7E3EC9-46CF-4359-9289-39CE01DFB82F}" = Adobe Photoshop CS3
"{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Apple Application Support
"{46F8CF66-AB83-38A7-99B2-A5BE507EE472}" = Microsoft Visual C++ 2010 Express - ENU
"{4723F199-FA64-4233-8E6E-9FCCC95A18EE}" = Python 2.6.5
"{478472F9-9E09-492A-BDAB-42EE595EF1AD}" = FuanDEals
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4C646DF7-1E7F-44D0-ADF0-CCCE44C92CF4}" = MySQL Installer
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
"{51846830-E7B2-4218-8968-B77F0FF475B8}" = Adobe Color EU Extra Settings
"{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5A13987D-55F4-4271-A40E-76AC9B1B38FD}" = OpenOffice.org 3.2
"{5B363E1D-8C36-4458-BAE4-D5081999E094}" = Browser Configuration Utility
"{5F189DF5-2D05-472B-9091-84D9848AE48B}{976137e5}" = WebPlat
"{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}" = NCsoft Launcher
"{6151cf20-0bd8-4023-a4a0-6a86dcfe58e5}" = Python 2.6.6
"{65420DC9-306E-4371-905F-F4DC3B418E52}" = Autodesk Material Library Base Resolution Image Library 2012
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
"{6C8B53B9-41EE-AD83-007A-55EE64DE6932}" = Catalyst Control Center Graphics Previews Common
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{735619D4-B42A-437A-958C-199BFCAEDB38}" = Safari
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{84AEB93A-ECBB-4568-8F59-D4516EF59079}" = Skyrim Performance Monitor
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows Vista and Later
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
"{8EA79DBF-D637-448A-89D6-410A087A4493}" = Samsung_MonSetup
"{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}" = Autodesk Material Library 2012
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{95655ED4-7CA5-46DF-907F-7144877A32E5}" = Adobe Color NA Recommended Settings
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
"{A2D81E70-2A98-4A08-A628-94388B063C5E}" = Adobe Color - Photoshop Specific
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}" = PDF Settings
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4)
"{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}" = Adobe AIR
"{B10914FD-8812-47A4-85A1-50FCDE7F1F33}" = Windows Live Sync
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B5751715-EC10-43D9-8C95-62E1368433EF}" = Autodesk Material Library Medium Resolution Image Library 2012
"{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation®Network Downloader
"{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CAAF899F-D15F-480F-AF10-22B1431A5E9F}" = AX88772
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240C0}" = WinZip 15.0
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CED8E25B-122A-4E80-B612-7F99B93284B3}" = Arc
"{CF5DE1DD-F7E6-694D-1E82-84C7C9C9ABDB}" = Catalyst Control Center Graphics Previews Vista
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D102611A-6466-4101-A51D-51069303AC65}" = tools-linux
"{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
"{D2883AB6-09B4-4981-AAF8-E695411EEC9A}" = Sculptris Alpha 6
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver
"{D8087907-E255-3A41-A46D-D0F798709C71}" = Microsoft Visual C++ 2008 Express Edition with SP1 - ENU
"{D8A50F0B-791E-43E6-8F22-AEC2D3FBEB84}" = PingPlotter Standard 3.40.2s
"{D8D06241-617C-42AB-B9C7-D9BA5A377D10}" = NVIDIA Texture Tools 2
"{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
"{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}" = Adobe Color JA Extra Settings
"{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E452E727-86B8-4233-8CC3-41FD817AFAFF}" = VMware Player
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{EE6D92CD-F750-4BB3-B3EA-3B392748D19D}" = Aion
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2C4E6E0-EB78-4824-A212-6DF6AF0E8E82}" = FINAL FANTASY XIV
"{F5E87B12-3C27-452F-8E78-21D42164FD83}" = Microsoft SQL Server 2008 Management Objects
"{F71E7762-8A64-AECC-0917-DA51677041CF}" = Catalyst Control Center InstallProxy
"{F843C6A3-224D-4615-94F8-3C461BD9AEA0}" = Jasc Paint Shop Pro 9
"{F9D65BA1-84C5-B4CB-91FE-D68F07ECBA24}" = ccc-core-static
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF11004C-F42A-4A31-9BCF-7F5C8FDBE53C}" = Adobe Setup
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe_719d6f144d0c086a0dfa7ff76bb9ac1" = Adobe Photoshop CS3
"Avidemux 2.6" = Avidemux 2.6 (32-bit)
"Blender" = Blender (remove only)
"BlenderNIFScripts" = Blender NIF Scripts (remove only)
"BOSS" = BOSS
"Cheat Engine 6.2_is1" = Cheat Engine 6.2
"comtypes-py2.6" = Python 2.6 comtypes-0.6.2
"ControlMK" = ControlMK 0.232
"DealCabby" = DealCabby
"ESET Online Scanner" = ESET Online Scanner v3
"ExpressRip" = Express Rip
"FileZilla Client" = FileZilla Client 3.6.0.2
"FlashDevelop" = FlashDevelop 4.5.2
"Fraps" = Fraps (remove only)
"Frhed" = Frhed 1.7.1
"Generic Mod Manager_is1" = Fallout Mod Manager 0.13.21
"Git_is1" = Git version 1.8.4-preview20130916
"InstallShield_{20B6BE33-525B-4EF9-9628-E1BA58093A4C}" = ZBrush 4R2
"InstallShield_{D2883AB6-09B4-4981-AAF8-E695411EEC9A}" = Sculptris Alpha 6
"InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver
"InstallShield_{FAE188FD-A941-49E9-A5E9-F6D88517EC40}" = Smart Recovery B09.1002.1 (x64)
"KeePass Password Safe_is1" = KeePass Password Safe 1.25
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"Microsoft Visual C++ 2008 Express Edition with SP1 - ENU" = Microsoft Visual C++ 2008 Express Edition with SP1 - ENU
"Microsoft Visual C++ 2010 Express - ENU" = Microsoft Visual C++ 2010 Express - ENU
"mIRC" = mIRC
"Mozilla Firefox 26.0 (x86 en-US)" = Mozilla Firefox 26.0 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MSNINST" = MSN
"NCLauncher_NCWest" = NCSOFT Game Launcher
"NifSkope" = NifSkope (remove only)
"Notepad++" = Notepad++
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Oblivion mod manager_is1" = Oblivion mod manager 1.1.12
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"Ogg Converter" = Ogg Converter
"OpenAL" = OpenAL
"PHANTASY STAR UNIVERSE Ambition of the Illuminus_is1" = PHANTASY STAR UNIVERSE Ambition of the Illuminus
"PremiumSoft Navicat Lite_is1" = PremiumSoft Navicat Lite 10.0
"Prism" = Prism Video File Converter
"privitize" = toolbar on IE and Chrome
"PyFFI" = PyFFI 2.1.11
"PyFFI-py2.6" = Python 2.6 PyFFI-2.1.11
"pywin32-py2.6" = Python 2.6 pywin32-216
"Raptureres" = Rapture Resource Manager
"Shockwave" = Shockwave
"SpeedFan" = SpeedFan (remove only)
"Star Trek Online" = Star Trek Online
"Steam App 202480" = Creation Kit
"Steam App 206420" = Saints Row IV
"Steam App 22320" = The Elder Scrolls III: Morrowind
"Steam App 22330" = The Elder Scrolls IV: Oblivion
"Steam App 242590" = Saints Row IV Inauguration Station
"Steam App 39140" = FINAL FANTASY VII
"Steam App 47810" = Dragon Age: Origins - Ultimate Edition
"Steam App 72850" = The Elder Scrolls V: Skyrim
"TechPowerUp GPU-Z" = TechPowerUp GPU-Z
"uTorrent" = µTorrent
"VMware_Player" = VMware Player
"WavePad" = WavePad Sound Editor
"WinLiveSuite" = Windows Live Essentials
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = WinRAR archiver
"winscp3_is1" = WinSCP 5.1.4
"Wrye Bash" = Wrye Bash
"Wubi" = Ubuntu
"wxPython2.8-ansi-py26_is1" = wxPython 2.8.11.0 (ansi) for Python 2.6
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"NCsoft-AionEU" = Aion
"uTorrent" = µTorrent
"WinDirStat" = WinDirStat 1.1.2
< End of report >
Symptoms..
How to can I put this.
My system is "queing" if that makes any sense. FireFox is the first thing I want to load when I turn on my computer, but it'll set there at my desktop screen for 3-4minutes before loading fire fox. And when fire fox finally loads, it freezes a lot before 'normalizing'. Generally anything that requires loading up takes a long time. If I wanna view an image, there's lag with that too.