FRST.txt:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:07-09-2015
Ran by [removed] (administrator) on VIJAY-PC (08-09-2015 11:01:08)
Running from C:\Users\[removed]\Downloads
[removed]
Platform: Microsoft Windows 7 Home Basic Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\stacsv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\AEstSrv.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Symantec Corporation) C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\ccSvcHst.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\Endpoint Connect\TracSrvWrapper.exe
(Symantec Corporation) C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\ccSvcHst.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(CyberLink Corp.) C:\Program Files\Hp\QuickPlay\QPService.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
(Vodafone) C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe
(Hewlett-Packard) C:\Program Files\Hp\HP Software Update\hpwuschd2.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\Endpoint Connect\TrGUI.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Q4SearchInstall\bin\Q4Search.exe
(Vodafone) C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Q4SearchInstall\bin\Q4Search.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
() C:\Q4SearchInstall\bin\Q4Search.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
() C:\Q4SearchInstall\bin\Q4Search.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Google) C:\Users\VIJAY\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
(Tweaking.com) C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\…\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [282624 2009-05-15] (Alps Electric Co., Ltd.)
HKLM\…\Run: [QPService] => C:\Program Files\HP\QuickPlay\QPService.exe [468264 2009-06-24] (CyberLink Corp.)
HKLM\…\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [218408 2009-02-18] (CyberLink Corp.)
HKLM\…\Run: [QlbCtrl.exe] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [320056 2009-06-25] ( Hewlett-Packard Development Company, L.P.)
HKLM\…\Run: [UpdatePRCShortCut] => C:\Program Files\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM\…\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [54576 2008-12-09] (Hewlett-Packard)
HKLM\…\Run: [WirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM\…\Run: [Check Point Endpoint Security] => C:\Program Files\CheckPoint\Endpoint Connect\TrGUI.exe [801968 2011-09-14] (Check Point Software Technologies)
HKLM\…\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [495708 2010-03-23] (IDT, Inc.)
HKLM\…\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\…\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\…\Run: [Q4Search Assistance Client] => C:\Q4SearchInstall\bin\Q4Search.exe [5425584 2015-08-22] ()
HKLM\…\Run: [MobileBroadband] => C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [279552 2011-06-28] (Vodafone)
HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\…\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-06-18] (Hewlett-Packard Company)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2014-06-15]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{7BC8DB8F-0CA2-487E-A6E1-4F1276404589}: [DhcpNameServer] 172.27.0.84 172.27.0.81
Tcpip\..\Interfaces\{C61D707E-03BC-4C2E-A551-4A964084E974}: [DhcpNameServer] 192.168.43.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar;=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar;=msnhome
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/enterprise/security_response/index.jsp
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/enterprise/security_response/index.jsp
HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar;=iesearch
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000 -> DefaultScope {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://in.search.yahoo.com/search?fr=vmn&type;=vmn__webcompa__1_0__ya__ch_WCYID10099_swoc_campaign_150421__yaie&p;={searchTerms}
SearchScopes: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://in.search.yahoo.com/search?fr=vmn&type;=vmn__webcompa__1_0__ya__ch_WCYID10099_swoc_campaign_150421__yaie&p;={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation)
BHO: Symantec Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\bin\IPS\IPSBHO.DLL [2014-09-13] (Symantec Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-04-18] (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-18] (Oracle Corporation)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_65-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0065-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_65-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_65-windows-i586.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default
FF NewTab: about:blank
FF DefaultSearchEngine: Google Default
FF SelectedSearchEngine: Yahoo
FF Homepage: about:blank
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-13] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [2009-03-20] (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-18] (Oracle Corporation)
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~4\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1443430433-3504582150-3450442512-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\VIJAY\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
FF Plugin HKU\S-1-5-21-1443430433-3504582150-3450442512-1000: @talk.google.com/O1DPlugin -> C:\Users\VIJAY\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-04-17] (Google)
FF Plugin HKU\S-1-5-21-1443430433-3504582150-3450442512-1000: @tools.google.com/Google Update;version=3 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-27] (Google Inc.)
FF Plugin HKU\S-1-5-21-1443430433-3504582150-3450442512-1000: @tools.google.com/Google Update;version=9 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-27] (Google Inc.)
FF Plugin HKU\S-1-5-21-1443430433-3504582150-3450442512-1000: SkypePlugin -> C:\Users\VIJAY\AppData\Local\SkypePlugin\7.5.0.123\npGatewayNpapi.dll [2015-07-17] (Skype Technologies S.A.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll [2014-12-03] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpplugin.dll [2014-12-03] (RealPlayer Cloud)
FF Plugin ProgramFiles/Appdata: C:\Users\VIJAY\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\VIJAY\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-04-17] (Google)
FF SearchPlugin: C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\searchplugins\google-default-1.xml [2015-04-23]
FF SearchPlugin: C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\searchplugins\google-default.xml [2015-04-23]
FF Extension: Flash and Video Download - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2015-03-28]
FF Extension: Selenium IDE: C# Formatters - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\[removed] [2014-06-28]
FF Extension: Firebug - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\[removed] [2014-06-25]
FF Extension: FirePath - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\[removed] [2014-06-25]
FF Extension: Selenium IDE: Java Formatters - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\[removed] [2014-06-28]
FF Extension: Compare Hatke - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\[removed] [2014-10-17]
FF Extension: Selenium IDE: Python Formatters - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\[removed] [2014-06-28]
FF Extension: Selenium IDE: Ruby Formatters - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\[removed] [2014-06-28]
FF Extension: CouponsHelper - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\{239cc760-75a9-4276-b1fc-c0ceb963f373}.xpi [2014-09-03]
FF Extension: Selenium IDE - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\{a6fd85ed-e919-4a43-a5af-8da18bda539f}.xpi [2014-06-28]
FF Extension: Video DownloadHelper - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-28]
FF Extension: Adblock Plus - C:\Users\VIJAY\AppData\Roaming\Mozilla\Firefox\Profiles\agyg75sl.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-14]
Chrome:
=======
CHR DefaultSearchKeyword: Default -> buyhatke
CHR Profile: C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-10]
CHR Extension: (Google Docs) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-10]
CHR Extension: (Google Drive) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-10]
CHR Extension: (Skype Calling) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2015-08-08]
CHR Extension: (YouTube) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-10]
CHR Extension: (Google Cast) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2015-03-21]
CHR Extension: (Adblock Plus) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-04-11]
CHR Extension: (Google Search) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-10]
CHR Extension: (Google Sheets) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-10]
CHR Extension: (Google Docs Offline) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-04]
CHR Extension: (BuyHatke) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\jaehkpjddfdgiiefcnhahapilbejohhj [2015-04-05]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-04]
CHR Extension: (Chrome Web Store Payments) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-10]
CHR Extension: (Gmail) - C:\Users\VIJAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-10]
StartMenuInternet: Google Chrome.LTFHGJMHPKIPF3AG4PHGMTA7DI - C:\Users\VIJAY\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 GameConsoleService; C:\Program Files\HP Games\HP Game Console\GameConsoleService.exe [250616 2009-05-22] (WildTangent, Inc.)
R2 HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [124928 2009-07-10] (Hewlett-Packard) [File not signed]
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-18] (Hewlett-Packard Company) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [17536800 2014-07-25] (NVIDIA Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-01-22] ()
R2 SepMasterService; C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\ccSvcHst.exe [144496 2014-09-13] (Symantec Corporation)
S3 SNAC; C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\snac.exe [337248 2014-09-13] (Symantec Corporation)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\STacSV.exe [229458 2010-03-23] (IDT, Inc.)
R2 TracSrvWrapper; C:\Program Files\CheckPoint\Endpoint Connect\TracSrvWrapper.exe [4512952 2011-09-14] (Check Point Software Technologies)
R2 VmbService; C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe [9216 2011-06-28] (Vodafone) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 BHDrvx86; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Data\Definitions\BASHDefs\20150821.011\BHDrvx86.sys [1181936 2015-08-06] (Symantec Corporation)
S3 bthav; C:\Windows\System32\drivers\bthav.sys [34816 2008-07-10] (CSR, plc)
R1 ccSettings_{7EC551EC-6FEE-44A6-BD12-987F87D7C525}; C:\Windows\System32\Drivers\SEP\0C0114D9\1388.105\x86\ccSetx86.sys [127064 2014-09-13] (Symantec Corporation)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [389456 2015-07-29] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [122192 2015-07-29] (Symantec Corporation)
R1 IDSVix86; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Data\Definitions\IPSDefs\20150906.011\IDSvix86.sys [505048 2015-07-24] (Symantec Corporation)
R3 NAVENG; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Data\Definitions\VirusDefs\20150907.005\NAVENG.SYS [104440 2015-07-27] (Symantec Corporation)
R3 NAVEX15; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Data\Definitions\VirusDefs\20150907.005\NAVEX15.SYS [1645432 2015-07-27] (Symantec Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19232 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2014-03-31] (NVIDIA Corporation)
R1 SRTSP; C:\Windows\System32\Drivers\SEP\0C0114D9\1388.105\x86\SRTSP.SYS [668888 2014-09-13] (Symantec Corporation)
R1 SRTSPX; C:\Windows\System32\Drivers\SEP\0C0114D9\1388.105\x86\SRTSPX.SYS [32984 2014-09-13] (Symantec Corporation)
S3 SyDvCtrl; C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\SyDvCtrl32.sys [30736 2014-09-13] (Symantec Corporation)
R0 SymEFASI; C:\Windows\System32\drivers\symefasi\0500010.01F\symefasi.sys [1278680 2015-02-18] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT.SYS [142936 2015-02-18] (Symantec Corporation)
R1 SymIRON; C:\Windows\System32\Drivers\SEP\0C0114D9\1388.105\x86\Ironx86.SYS [209624 2014-09-13] (Symantec Corporation)
R1 SYMNETS; C:\Windows\System32\Drivers\SEP\0C0114D9\1388.105\x86\SYMNETS.SYS [447704 2014-09-13] (Symantec Corporation)
R1 SysPlant; C:\Windows\System32\Drivers\SysPlant.sys [131176 2015-02-18] (Symantec Corporation)
R3 vna_ap; C:\Windows\System32\DRIVERS\vnaap.sys [129304 2011-09-14] (Check Point Software Technologies)
R3 vodafone_K3805-z_dc_enum; C:\Windows\System32\DRIVERS\vodafone_K3805-z_dc_enum.sys [61952 2010-09-01] (Vodafone)
S3 vodafone_zte_cdc_acm; C:\Windows\System32\DRIVERS\vodafone_zte_cdc_acm.sys [67968 2011-05-20] (Vodafone)
S3 vodafone_zte_cdc_ecm; C:\Windows\System32\DRIVERS\vodafone_zte_cdc_ecm.sys [52224 2011-05-20] (Vodafone)
S3 vodafone_zte_cpo; C:\Windows\System32\DRIVERS\vodafone_zte_cpo.sys [9984 2011-05-20] (Vodafone)
S3 vodafone_zte_ecm_enum; C:\Windows\System32\DRIVERS\vodafone_zte_ecm_enum.sys [47488 2011-05-20] (Vodafone)
S3 vodafone_zte_ecm_enum_filter; C:\Windows\System32\DRIVERS\vodafone_zte_ecm_enum_filter.sys [47488 2011-05-20] (Vodafone)
R1 vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [455336 2011-09-12] (Check Point Software Technologies Ltd.)
S3 wirelessusbser; C:\Windows\System32\DRIVERS\3GDatausbser.sys [102656 2009-04-07] (QUALCOMM Incorporated)
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\Users\VIJAY\AppData\Local\Temp\catchme.sys [X]
S3 massfilter; system32\DRIVERS\massfilter.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-08 11:01 - 2015-09-08 11:02 - 00024952 _____ C:\Users\VIJAY\Downloads\FRST.txt
2015-09-08 11:00 - 2015-09-08 11:01 - 00000000 ____D C:\FRST
2015-09-08 10:58 - 2015-09-08 10:58 - 01692160 _____ (Farbar) C:\Users\VIJAY\Downloads\frst.exe
2015-09-07 00:06 - 2015-09-07 00:06 - 00022752 _____ C:\ComboFix.txt
2015-09-06 23:44 - 2011-06-26 12:15 - 00256000 _____ C:\Windows\PEV.exe
2015-09-06 23:44 - 2010-11-07 22:50 - 00208896 _____ C:\Windows\MBR.exe
2015-09-06 23:44 - 2009-04-20 10:26 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-09-06 23:44 - 2000-08-31 05:30 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-09-06 23:44 - 2000-08-31 05:30 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-09-06 23:44 - 2000-08-31 05:30 - 00098816 _____ C:\Windows\sed.exe
2015-09-06 23:44 - 2000-08-31 05:30 - 00080412 _____ C:\Windows\grep.exe
2015-09-06 23:44 - 2000-08-31 05:30 - 00068096 _____ C:\Windows\zip.exe
2015-09-06 23:43 - 2015-09-07 00:06 - 00000000 ____D C:\Qoobox
2015-09-06 23:43 - 2015-09-07 00:04 - 00000000 ____D C:\Windows\erdnt
2015-09-06 23:35 - 2015-09-06 23:42 - 05635231 ____R (Swearware) C:\Users\VIJAY\Desktop\ComboFix.exe
2015-09-05 15:30 - 2015-09-05 15:30 - 00000000 ____D C:\ProgramData\Mobile Partner
2015-09-05 15:29 - 2015-09-05 15:29 - 00001133 _____ C:\Users\Public\Desktop\Huawei Connection Manager.lnk
2015-09-05 15:29 - 2015-09-05 15:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Huawei Connection Manager
2015-09-05 15:29 - 2011-09-09 09:20 - 00186880 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys
2015-09-05 15:29 - 2011-09-09 09:20 - 00089856 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys
2015-09-05 15:29 - 2011-09-09 09:20 - 00073984 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2015-09-05 15:29 - 2011-09-09 09:20 - 00066688 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys
2015-09-05 15:29 - 2011-09-09 09:20 - 00026624 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys
2015-09-05 15:29 - 2011-08-18 16:30 - 00350720 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys
2015-09-05 15:29 - 2011-08-16 14:47 - 00195200 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2015-09-05 15:29 - 2010-10-08 14:25 - 00025856 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys
2015-09-05 15:29 - 2010-09-26 15:39 - 00019200 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys
2015-09-05 15:29 - 2010-08-06 05:12 - 00861696 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys
2015-09-05 15:29 - 2010-07-27 07:22 - 00102784 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2015-09-05 15:29 - 2010-03-20 09:36 - 00011136 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys
2015-09-05 15:27 - 2015-09-05 15:30 - 00000000 ____D C:\Program Files\Huawei Connection Manager
2015-09-02 02:33 - 2015-09-02 02:33 - 00002629 _____ C:\Users\VIJAY\Desktop\aswMBR.txt
2015-09-02 02:33 - 2015-09-02 02:33 - 00000512 _____ C:\Users\VIJAY\Desktop\MBR.dat
2015-09-02 02:00 - 2015-09-02 02:00 - 00159928 _____ C:\Windows\Minidump\090215-80324-01.dmp
2015-09-02 01:59 - 2015-09-02 01:59 - 460078409 _____ C:\Windows\MEMORY.DMP
2015-09-02 01:46 - 2015-09-02 01:47 - 05198336 _____ (AVAST Software) C:\Users\VIJAY\Downloads\aswMBR.exe
2015-09-02 01:24 - 2015-08-27 23:28 - 01391104 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-09-02 01:24 - 2015-08-27 23:28 - 01241088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-09-02 01:24 - 2015-08-27 23:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-09-02 01:24 - 2015-08-27 23:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-09-02 01:24 - 2015-07-22 23:27 - 03989952 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-09-02 01:24 - 2015-07-22 23:27 - 03934656 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-09-02 01:24 - 2015-07-22 23:27 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-09-02 01:24 - 2015-07-22 23:27 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-09-02 01:24 - 2015-07-22 23:24 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00937984 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-09-02 01:24 - 2015-07-22 23:23 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-09-02 01:24 - 2015-07-22 23:22 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-09-02 01:24 - 2015-07-22 23:22 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-09-02 01:24 - 2015-07-22 23:22 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-09-02 01:24 - 2015-07-22 23:22 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-09-02 01:24 - 2015-07-22 23:17 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-09-02 01:24 - 2015-07-22 23:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-09-02 01:24 - 2015-07-22 23:12 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-09-02 01:24 - 2015-07-22 23:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-09-02 01:24 - 2015-07-22 22:08 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-09-02 01:24 - 2015-07-22 22:04 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-09-02 01:24 - 2015-07-22 22:04 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-09-02 01:24 - 2015-07-22 22:03 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-09-02 01:24 - 2015-07-09 23:12 - 01372160 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-09-02 01:24 - 2015-07-09 23:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-09-02 01:22 - 2015-06-25 15:18 - 00105408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-09-02 01:22 - 2015-06-25 15:14 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-09-02 01:22 - 2015-06-25 15:14 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-09-02 01:21 - 2015-07-15 08:24 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-08-31 10:19 - 2015-09-06 23:56 - 00000000 _RSHD C:\Users\VIJAY\VIJAY1
2015-08-31 03:19 - 2014-05-09 13:24 - 00116736 _____ (XiaoMi Corporation) C:\Windows\system32\qcCoInstaller.dll
2015-08-30 22:34 - 2015-08-30 22:34 - 00000000 ____D C:\ProgramData\airtel
2015-08-30 21:11 - 2015-08-30 21:11 - 00000000 ____D C:\Users\VIJAY\AppData\Local\WinDroid_Studios
2015-08-30 20:44 - 2015-09-02 01:05 - 00000000 ____D C:\Users\VIJAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xiaomi
2015-08-30 20:26 - 2015-08-30 20:26 - 00000000 ____D C:\Program Files\DIFX
2015-08-30 20:26 - 2015-08-30 20:26 - 00000000 ____D C:\adb
2015-08-29 22:45 - 2015-09-08 10:17 - 00017564 _____ C:\Windows\setupact.log
2015-08-29 22:45 - 2015-08-29 22:45 - 00000000 _____ C:\Windows\setuperr.log
2015-08-29 19:38 - 2015-08-29 19:43 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-08-27 11:19 - 2015-08-27 11:19 - 00000000 ____D C:\Program Files\GUMAAA0.tmp
2015-08-27 11:12 - 2015-08-27 11:12 - 00000000 ____D C:\Users\VIJAY\AppData\Local\InstallService
2015-08-20 03:09 - 2015-08-20 03:09 - 00000000 ____D C:\Users\VIJAY\AppData\Roaming\com.tcs.efiling.itr.main.MainLoader
2015-08-19 13:19 - 2015-08-11 06:03 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-08-19 13:19 - 2015-08-11 05:50 - 19871232 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-19 03:23 - 2015-09-08 11:02 - 00000000 ____D C:\Users\VIJAY\AppData\Roaming\NetSpeedMonitor
2015-08-19 03:23 - 2015-08-19 03:23 - 00000000 ____D C:\Program Files\NetSpeedMonitor
2015-08-18 12:33 - 2015-08-18 12:33 - 00000027 _____ C:\Users\VIJAY\Desktop\mailid.txt
2015-08-18 02:30 - 2015-08-18 02:30 - 00000015 _____ C:\Users\VIJAY\AppData\Roaming\Network Meter_Usage.ini
2015-08-18 02:28 - 2015-08-18 02:28 - 00001105 _____ C:\Users\VIJAY\AppData\Roaming\Network Meter_Settings.ini
2015-08-18 02:26 - 2015-08-18 02:28 - 00000227 _____ C:\Users\VIJAY\IP_Log_Data.js
2015-08-12 13:16 - 2015-07-30 18:43 - 00103120 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 12:56 - 2015-07-29 01:34 - 00015808 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-12 12:56 - 2015-07-29 01:30 - 00952832 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-12 12:56 - 2015-07-29 01:30 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-12 12:56 - 2015-07-29 01:30 - 00598528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-12 12:56 - 2015-07-29 01:30 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-12 12:56 - 2015-07-29 01:30 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-08-12 12:56 - 2015-07-29 01:30 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-12 12:56 - 2015-07-29 01:24 - 00934400 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 02943488 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 02061312 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-12 12:56 - 2015-07-20 23:26 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-12 12:56 - 2015-07-20 23:26 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-08-12 12:56 - 2015-07-20 23:26 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-08-12 12:56 - 2015-07-15 23:29 - 00078784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-12 12:56 - 2015-07-15 23:25 - 01159168 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-08-12 12:56 - 2015-07-15 23:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-08-12 12:56 - 2015-07-09 23:12 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-08-12 12:56 - 2015-07-09 23:12 - 00179712 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-12 12:56 - 2015-07-02 02:00 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-12 12:56 - 2015-07-02 02:00 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-08-12 12:55 - 2015-07-30 23:27 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-08-12 12:55 - 2015-07-30 23:27 - 01251328 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-12 12:55 - 2015-07-30 23:27 - 00909824 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-12 12:55 - 2015-07-30 23:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-08-12 12:55 - 2015-07-30 23:27 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-08-12 12:55 - 2015-07-30 23:27 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-08-12 12:55 - 2015-07-30 23:27 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-08-12 12:55 - 2015-07-30 22:22 - 02384384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-08-12 12:55 - 2015-07-30 22:19 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-08-12 12:55 - 2015-07-21 05:42 - 00342736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-08-12 12:55 - 2015-07-17 01:36 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-08-12 12:55 - 2015-07-17 01:21 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-12 12:55 - 2015-07-17 01:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-08-12 12:55 - 2015-07-17 01:20 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-12 12:55 - 2015-07-17 01:20 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-08-12 12:55 - 2015-07-17 01:19 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-08-12 12:55 - 2015-07-17 01:13 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-12 12:55 - 2015-07-17 01:13 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-08-12 12:55 - 2015-07-17 01:11 - 00479232 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-12 12:55 - 2015-07-17 01:09 - 00664064 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-12 12:55 - 2015-07-17 01:09 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-12 12:55 - 2015-07-17 01:09 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-08-12 12:55 - 2015-07-17 01:08 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-08-12 12:55 - 2015-07-17 01:02 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-12 12:55 - 2015-07-17 00:59 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-12 12:55 - 2015-07-17 00:54 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-12 12:55 - 2015-07-17 00:50 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-08-12 12:55 - 2015-07-17 00:49 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-12 12:55 - 2015-07-17 00:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-12 12:55 - 2015-07-17 00:42 - 06131200 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-12 12:55 - 2015-07-17 00:42 - 00856064 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-08-12 12:55 - 2015-07-17 00:42 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-08-12 12:55 - 2015-07-17 00:40 - 12856832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-12 12:55 - 2015-07-17 00:36 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-12 12:55 - 2015-07-17 00:36 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-12 12:55 - 2015-07-17 00:36 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-08-12 12:55 - 2015-07-17 00:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-08-12 12:55 - 2015-07-17 00:12 - 01951232 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-12 12:55 - 2015-07-17 00:08 - 01310720 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-12 12:55 - 2015-07-17 00:07 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-08-12 12:55 - 2015-07-16 20:44 - 00355840 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2015-08-12 12:54 - 2015-07-17 01:15 - 02279424 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-12 12:54 - 2015-07-17 00:42 - 04520448 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-12 12:54 - 2015-07-15 08:25 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-12 12:54 - 2015-07-10 23:04 - 12875776 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-08-12 12:54 - 2015-05-09 23:39 - 00715200 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-08-09 00:31 - 2015-08-09 00:31 - 00000000 ____D C:\Users\VIJAY\Tracing
2015-08-09 00:30 - 2015-08-09 21:23 - 00000000 ____D C:\Users\VIJAY\AppData\Roaming\Skype
2015-08-09 00:30 - 2015-08-09 00:30 - 00002685 _____ C:\Users\Public\Desktop\Skype.lnk
2015-08-09 00:30 - 2015-08-09 00:30 - 00000000 ____D C:\Users\VIJAY\AppData\Local\Skype
2015-08-09 00:30 - 2015-08-09 00:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-08-09 00:30 - 2015-08-09 00:30 - 00000000 ____D C:\Program Files\Common Files\Skype
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-08 11:01 - 2014-06-19 00:20 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-09-08 11:00 - 2015-02-17 23:11 - 00000000 ____D C:\ProgramData\Symantec
2015-09-08 10:57 - 2014-06-15 17:21 - 00000000 ____D C:\Users\VIJAY\AppData\Roaming\vlc
2015-09-08 10:50 - 2014-06-15 12:39 - 00002328 ____H C:\Users\VIJAY\Documents\Default.rdp
2015-09-08 10:26 - 2014-06-15 12:35 - 00004284 _____ C:\Windows\system32\Drivers\DisconnectedPolicy.xml
2015-09-08 10:26 - 2009-07-14 10:04 - 00024192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-09-08 10:26 - 2009-07-14 10:04 - 00024192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-09-08 10:24 - 2014-08-09 19:40 - 00000908 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1443430433-3504582150-3450442512-1000UA.job
2015-09-08 10:17 - 2014-06-15 15:04 - 00001359 _____ C:\ProgramData\hpqp.ini
2015-09-08 10:17 - 2009-07-14 10:23 - 00032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-09-08 10:17 - 2009-07-14 10:23 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-08 10:17 - 2009-07-14 08:07 - 00000000 ____D C:\Windows\tracing
2015-09-07 00:12 - 2014-06-15 14:54 - 01967511 _____ C:\Windows\WindowsUpdate.log
2015-09-07 00:08 - 2015-04-01 21:41 - 81789089 _____ C:\Windows\system32\debug.log
2015-09-07 00:06 - 2009-07-14 08:07 - 00000000 __RHD C:\Users\Default
2015-09-07 00:06 - 2009-07-14 08:07 - 00000000 ___RD C:\Users\Public
2015-09-07 00:00 - 2009-07-14 07:34 - 00000215 _____ C:\Windows\system.ini
2015-09-06 23:58 - 2015-05-23 13:47 - 00004050 _____ C:\Windows\PFRO.log
2015-09-06 23:58 - 2009-07-14 07:33 - 56623104 _____ C:\Windows\system32\config\software.bak
2015-09-06 23:58 - 2009-07-14 07:33 - 25952256 _____ C:\Windows\system32\config\system.bak
2015-09-06 23:58 - 2009-07-14 07:33 - 00786432 _____ C:\Windows\system32\config\default.bak
2015-09-06 23:58 - 2009-07-14 07:33 - 00262144 _____ C:\Windows\system32\config\security.bak
2015-09-06 23:58 - 2009-07-14 07:33 - 00262144 _____ C:\Windows\system32\config\sam.bak
2015-09-06 19:26 - 2014-02-27 00:10 - 00010002 _____ C:\Users\VIJAY\Desktop\JavaScript.txt
2015-09-05 16:13 - 2009-07-24 21:41 - 00776356 _____ C:\Windows\system32\PerfStringBackup.INI
2015-09-05 16:05 - 2009-07-14 08:07 - 00000000 ____D C:\Windows\system32\NDF
2015-09-05 15:31 - 2015-02-08 20:31 - 00000000 ____D C:\ProgramData\DatacardService
2015-09-05 11:40 - 2014-06-28 09:15 - 00000052 _____ C:\Windows\system32\DOErrors.log
2015-09-05 11:37 - 2014-06-15 03:11 - 00000000 ____D C:\Users\VIJAY\AppData\Roaming\HpUpdate
2015-09-05 11:24 - 2014-08-09 19:40 - 00000856 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1443430433-3504582150-3450442512-1000Core.job
2015-09-03 12:07 - 2015-02-10 02:21 - 00002330 _____ C:\Users\VIJAY\Desktop\Google Chrome.lnk
2015-09-02 02:00 - 2014-07-06 20:32 - 00000000 ____D C:\Windows\Minidump
2015-08-31 10:19 - 2014-06-15 03:01 - 00000000 ____D C:\Users\VIJAY
2015-08-31 10:09 - 2015-04-03 00:14 - 00015070 _____ C:\Windows\DPINST.LOG
2015-08-29 19:46 - 2014-06-15 15:08 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2015-08-29 19:46 - 2009-08-25 04:49 - 00000000 ___RD C:\Program Files\Online Services
2015-08-27 11:12 - 2014-10-09 12:07 - 00000000 ____D C:\Q4SearchInstall
2015-08-24 10:55 - 2014-06-15 12:01 - 00000000 ____D C:\Users\VIJAY\Downloads\movies
2015-08-22 12:57 - 2009-07-24 22:30 - 00000000 ____D C:\Windows\Panther
2015-08-18 02:30 - 2009-07-14 10:22 - 00000000 ____D C:\Program Files\Windows Sidebar
2015-08-14 10:07 - 2015-07-11 10:37 - 00095975 _____ C:\Users\VIJAY\.JavaPowUpload.ser
2015-08-14 09:51 - 2015-07-11 02:55 - 00000269 _____ C:\Users\VIJAY\.JavaPowUpload.properties
2015-08-13 12:29 - 2009-07-14 08:07 - 00000000 ____D C:\Windows\rescache
2015-08-13 01:32 - 2014-06-16 09:17 - 00000000 ____D C:\Windows\system32\MRT
2015-08-13 01:25 - 2009-08-25 05:07 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-13 01:21 - 2009-07-14 08:07 - 00000000 ____D C:\Windows\Microsoft.NET
2015-08-13 01:15 - 2014-06-16 09:17 - 129304528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-08-13 00:40 - 2014-06-19 00:20 - 00778440 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-08-13 00:40 - 2014-06-19 00:20 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-08-13 00:35 - 2009-07-14 10:03 - 00450424 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-13 00:32 - 2014-12-12 10:00 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-13 00:32 - 2014-06-20 01:28 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-12 13:32 - 2014-10-12 02:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-08-12 13:31 - 2014-06-16 08:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-12 13:30 - 2009-08-25 04:14 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-09 01:11 - 2015-06-13 23:05 - 00000000 ____D C:\Users\VIJAY\Documents\Youcam
2015-08-09 00:30 - 2015-08-08 23:43 - 00000000 ___RD C:\Program Files\Skype
2015-08-09 00:30 - 2015-08-08 23:42 - 00000000 ____D C:\ProgramData\Skype
==================== Files in the root of some directories =======
2015-08-18 02:28 - 2015-08-18 02:28 - 0001105 _____ () C:\Users\VIJAY\AppData\Roaming\Network Meter_Settings.ini
2015-08-18 02:30 - 2015-08-18 02:30 - 0000015 _____ () C:\Users\VIJAY\AppData\Roaming\Network Meter_Usage.ini
2014-06-15 03:06 - 2014-06-15 03:06 - 0000000 _____ () C:\Users\VIJAY\AppData\Local\AtStart.txt
2015-04-01 20:47 - 2015-04-01 21:14 - 33201629 _____ () C:\Users\VIJAY\AppData\Local\Chrome.zip
2014-07-13 20:35 - 2015-08-01 17:12 - 0011776 _____ () C:\Users\VIJAY\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-06-15 03:06 - 2014-06-15 03:06 - 0000000 _____ () C:\Users\VIJAY\AppData\Local\DSwitch.txt
2014-06-15 03:06 - 2014-06-15 03:06 - 0000000 _____ () C:\Users\VIJAY\AppData\Local\QSwitch.txt
2011-06-27 19:26 - 2011-06-27 19:26 - 0232496 ____R () C:\ProgramData\DeviceManager.xml.rc4
2014-06-15 15:04 - 2015-09-08 10:17 - 0001359 _____ () C:\ProgramData\hpqp.ini
2014-06-15 03:06 - 2015-09-08 10:17 - 0000179 _____ () C:\ProgramData\HPWALog.txt
2014-06-15 15:05 - 2014-06-15 15:05 - 0000032 _____ () C:\ProgramData\{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log
2009-08-25 05:59 - 2009-08-25 06:00 - 0000109 _____ () C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log
2014-06-15 15:05 - 2014-06-15 15:05 - 0000032 _____ () C:\ProgramData\{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log
2009-08-25 05:54 - 2009-08-25 05:56 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2014-06-15 15:04 - 2014-06-15 15:04 - 0000032 _____ () C:\ProgramData\{4FC670EB-5F02-4B07-90DB-022B86BFEFD0}.log
2014-06-15 15:05 - 2014-06-15 15:05 - 0000032 _____ () C:\ProgramData\{9867824A-C86D-4A83-8F3C-E7A86BE0AFD3}.log
2009-08-25 05:54 - 2009-08-25 05:54 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
2009-08-25 05:56 - 2009-08-25 05:59 - 0000110 _____ () C:\ProgramData\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log
2014-06-15 15:05 - 2014-06-15 15:05 - 0000105 _____ () C:\ProgramData\{d36dd326-7280-11d8-97c8-000129760cbe}.log
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-06 19:22
==================== End of FRST.txt ============================
Addition.txt:
Additional scan result of Farbar Recovery Scan Tool (x86) Version:07-09-2015
Ran by [removed] (2015-09-08 11:02:37)
Running from C:\Users\[removed]\Downloads
Microsoft Windows 7 Home Basic Service Pack 1 (X86) (2014-06-14 21:31:20)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1443430433-3504582150-3450442512-500 - Administrator - Disabled)
Guest (S-1-5-21-1443430433-3504582150-3450442512-501 - Limited - Disabled)
VIJAY (S-1-5-21-1443430433-3504582150-3450442512-1000 - Administrator - Enabled) => C:\Users\VIJAY
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Symantec Endpoint Protection (Enabled - Up to date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Symantec Endpoint Protection (Enabled - Up to date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\…\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.)
ActiveCheck component for HP Active Support Library (Version: 3.0.0.2 - Hewlett-Packard) Hidden
Adobe AIR (HKLM\…\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
Adobe Flash Player 18 NPAPI (HKLM\…\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.12) (HKLM\…\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated)
Adobe Shockwave Player (HKLM\…\{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}) (Version: 11.0 - Adobe Systems, Inc.)
Alps Touch Pad Driver (HKLM\…\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: - ALPS ELECTRIC CO., LTD.)
Broadcom 802.11 Wireless LAN Adapter (HKLM\…\Broadcom 802.11 Wireless LAN Adapter) (Version: 5.30.21.0 - Broadcom Corporation)
CCleaner (HKLM\…\CCleaner) (Version: 3.20 - Piriform)
Check Point VPN (HKLM\…\{db6ec6e6-fe11-4edf-ab81-ef8b6917d628}) (Version: 75.20.0000 - CheckPoint)
CyberLink DVD Suite (HKLM\…\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.3101 - CyberLink Corp.)
CyberLink YouCam (HKLM\…\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3115 - CyberLink Corp.)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
EASEUS Data Recovery Wizard Professional 5.5.1 (HKLM\…\EASEUS Data Recovery Wizard Professional 5.5.1_is1) (Version: - EASEUS)
Google Chrome (HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\…\Google Chrome) (Version: 45.0.2454.85 - Google Inc.)
Google Talk Plugin (HKLM\…\{CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6}) (Version: 5.41.2.0 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
HP Advisor (HKLM\…\{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}) (Version: 3.2.8946.3086 - Hewlett-Packard)
HP Customer Experience Enhancements (HKLM\…\{5B295588-59C1-4386-9F85-BB4BEDCB0D22}) (Version: 5.7.0.3036 - Hewlett-Packard)
HP DVD Play 3.7 (HKLM\…\{45D707E9-F3C4-11D9-A373-0050BAE317E1}) (Version: 3.7.0.6623 - Hewlett-Packard)
HP Games (HKLM\…\WildTangent hp Master Uninstall) (Version: 1.0.0.71 - WildTangent)
HP Integrated Module with Bluetooth wireless technology (HKLM\…\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.0.9602 - Broadcom Corporation)
HP Quick Launch Buttons (HKLM\…\{34D2AB40-150D-475D-AE32-BD23FB5EE355}) (Version: 6.50.4.1 - Hewlett-Packard)
HP Setup (HKLM\…\{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}) (Version: 1.2.3220.3079 - Hewlett-Packard)
HP Support Assistant (HKLM\…\{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}) (Version: 4.1.11.3 - Hewlett-Packard)
HP Update (HKLM\…\{D46D081B-F60E-467E-A7C4-117B70D76731}) (Version: 5.001.000.014 - Hewlett-Packard)
HP User Guides 0146 (HKLM\…\{45E5D641-3C82-4F95-92FB-AE5459DF2988}) (Version: 1.02.0002 - Hewlett-Packard)
HP Wireless Assistant (HKLM\…\{54CC7901-804D-4155-B353-21F0CC9112AB}) (Version: 3.50.9.1 - Hewlett-Packard)
HPAsset component for HP Active Support Library (Version: 3.0.2.2 - Hewlett-Packard) Hidden
Huawei Connection Manager (HKLM\…\Huawei Connection Manager) (Version: 25.005.26.00.11 - Huawei Technologies Co.,Ltd)
IDT Audio (HKLM\…\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6225.0 - IDT)
Java 8 Update 45 (HKLM\…\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
join.me (HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\…\JoinMe) (Version: 1.18.0.189 - LogMeIn, Inc.)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kundli for Windows (Professional Edition) (HKLM\…\Kundli for Windows (Professional Edition)) (Version: - )
LabelPrint (HKLM\…\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1913 - CyberLink Corp.)
LabelPrint (Version: 2.5.1913 - CyberLink Corp.) Hidden
LightScribe System Software (HKLM\…\{82EF29B1-9B60-4142-A155-0599216DD053}) (Version: 1.18.6.1 - LightScribe)
Microsoft .NET Framework 4.5.2 (HKLM\…\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM\…\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\…\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\…\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\…\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\…\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\…\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Mozilla Firefox 41.0 (x86 en-US) (HKLM\…\Mozilla Firefox 41.0 (x86 en-US)) (Version: 41.0 - Mozilla)
Mozilla Maintenance Service (HKLM\…\MozillaMaintenanceService) (Version: 40.0.0.5689 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\…\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\…\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
muvee Reveal (HKLM\…\{293F900D-3743-A8CC-46AD-5AFBFF8E29CF}) (Version: 7.0.40.10061 - muvee Technologies Pte Ltd)
NetSpeedMonitor 2.5.4.0 x86 (HKLM\…\{86501894-E722-4385-A792-B7C2F28FAE7B}) (Version: 2.5.4.0 - Florian Gilles)
NVIDIA GeForce Experience 2.1.1 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Graphics Driver 341.44 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.44 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.30.1 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.13.1220 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Power2Go (HKLM\…\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3101 - CyberLink Corp.)
Power2Go (Version: 6.0.3101 - CyberLink Corp.) Hidden
PowerDirector (HKLM\…\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3101 - CyberLink Corp.)
PowerDirector (Version: 7.0.3101 - CyberLink Corp.) Hidden
PowerRecover (Version: 5.5.1923 - CyberLink Corp.) Hidden
Q4Search version 1.0.1.5 (HKLM\…\{CB92E070-D5D3-4E84-8597-28BBBD66240D}_is1) (Version: 1.0.1.5 - Q For Search LTD)
QLBCASL (Version: 6.40.17.2 - Hewlett-Packard) Hidden
Realtek 8136 8168 8169 Ethernet Driver (HKLM\…\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0005 - Realtek)
Recuva (HKLM\…\Recuva) (Version: 1.51 - Piriform)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM\…\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version: - Microsoft)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Silent Install Builder (HKLM\…\{2452C59D-05CC-4A9A-A97F-B925390619E1}) (Version: 4.0.1 - APREL Technologies LLC)
Skype Web Plugin (HKLM\…\{75BBD24C-C19A-4885-B8FD-EB15009277D3}) (Version: 7.5.0.123 - Skype Technologies S.A.)
Skype™ 7.7 (HKLM\…\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.)
SoftStylus (HKLM\…\{76D0B7D8-6683-4D54-A108-046A5E542F0B}) (Version: 2.2.103.0 - Motorola)
Sublime Text 2.0.2 (HKLM\…\Sublime Text 2_is1) (Version: - )
Symantec Endpoint Protection (HKLM\…\{0E251D4D-316C-4F8B-A4C5-2722000764BE}) (Version: 12.1.5337.5000 - Symantec Corporation)
Tata Photon+ (HKLM\…\Tata Photon+) (Version: 11.030.01.28.628 - Huawei Technologies Co.,Ltd)
Tweaking.com - Windows Repair (HKLM\…\Tweaking.com - Windows Repair) (Version: 3.1.1 - Tweaking.com)
Update for Skype for Business 2015 (KB2889853) 32-Bit Edition (HKLM\…\{90150000-012B-0409-0000-0000000FF1CE}_Office15.PROPLUS_{BF1B3F01-93F3-4B83-93DB-132EB1AED259}) (Version: - Microsoft)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM\…\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
VLC media player 2.1.3 (HKLM\…\VLC media player) (Version: 2.1.3 - VideoLAN)
Vodafone Mobile Broadband Lite (HKLM\…\{6C29152D-3FF9-43B2-84E4-9B35FC0BF5C2}) (Version: 10.2.301.32820 - Vodafone)
Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass (01/27/2014 9.0.0000.00000) (HKLM\…\9CA77E2A8332A0824C54DA611BBE4CA24AB1F750) (Version: 01/27/2014 9.0.0000.00000 - Google, Inc.)
Windows Live Essentials (HKLM\…\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Sync (HKLM\…\{A1BF9950-8CDB-468E-83FA-EACFB00EA7D5}) (Version: 14.0.8064.206 - Microsoft Corporation)
WinRAR 4.00 (32-bit) (HKLM\…\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\VIJAY\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.27.5\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{39125640-8D80-11DC-A2FE-C5C455D89593}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Google Talk Plugin\googletalkax.dll (Google)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{4F3C1CF7-37CF-4429-82C2-33641ADDBCC2}\localserver32 -> C:\Users\VIJAY\AppData\Local\SkypePlugin\7.5.0.123\PluginHost.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{59CA9673-A08B-489C-8932-1C3E0CF244D8}\localserver32 -> C:\Users\VIJAY\AppData\Local\SkypePlugin\7.5.0.123\GatewayVersion.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{5C65F4B0-3651-4514-B207-D10CB699B14B}\localserver32 -> C:\Users\VIJAY\AppData\Local\Google\Chrome\Application\45.0.2454.85\delegate_execute.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.1\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{7253b364-18c5-555a-4b07-26abb39c9f99}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\SkypePlugin\7.5.0.123\EdgeBrokerPS.dll (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\psuser.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{AB9F4455-E591-4132-A386-0B91EAEDB96C}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Google Talk Plugin\o1dax.dll (Google)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{B982932A-124D-489C-A7B3-8BCD1FDB8DD3}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\SkypePlugin\7.5.0.123\GatewayActiveX.dll (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.26.9\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{CBF9CD8C-2714-4F36-B76A-43E6C7547BC2}\localserver32 -> C:\Users\VIJAY\AppData\Local\SkypePlugin\7.5.0.123\EdgeCalling.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1443430433-3504582150-3450442512-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\VIJAY\AppData\Local\Google\Update\1.3.28.13\psuser.dll (Google Inc.)
==================== Restore Points =========================
02-09-2015 01:24:50 Windows Update
05-09-2015 11:32:29 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 07:34 - 2015-09-06 23:59 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0FF58718-C1DE-478C-8428-9C96772995DB} - System32\Tasks\{0F29B0FC-CAC2-48E4-B279-EE5D20C710BF} => pcalua.exe -a C:\Users\VIJAY\Downloads\BluetoothDriverInstaller.exe -d C:\Users\VIJAY\Downloads
Task: {14B76D68-AAA5-4BF0-8524-498D0421B0BC} - System32\Tasks\Registration => C:\Program Files\Hewlett-Packard\HP TCS\RemEngine.exe [2009-07-09] ()
Task: {1608F6F0-771B-40F6-BE4B-9991BCAC4EA5} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1443430433-3504582150-3450442512-1000 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe
Task: {2F951982-C7F0-4674-AE9E-007761776C27} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1443430433-3504582150-3450442512-1000 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe
Task: {34E5496E-B179-4A98-AF3D-F8A108FD99DD} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {4AD09E1F-1059-4953-8C98-0454D25E2732} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1443430433-3504582150-3450442512-1000UA => C:\Users\VIJAY\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {4C4090C3-B695-49BF-86C6-92BBBDF8F5A7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-06-23] (Piriform Ltd)
Task: {578E3CCE-5896-49D9-B06F-71F93B631EED} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1443430433-3504582150-3450442512-1000 => C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe
Task: {5A3B6744-DB49-43FA-8D0D-4388FD537950} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1443430433-3504582150-3450442512-1000Core => C:\Users\VIJAY\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {6AA05B1F-A0BD-4CD2-A3D2-1A9C373A5346} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1443430433-3504582150-3450442512-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
Task: {6B9310D7-1AE3-44A8-A432-9C067B03EA33} - System32\Tasks\{6144C679-CCF4-4AE5-9F85-5C8903B84ABA} => pcalua.exe -a C:\Users\VIJAY\Downloads\movies\Games\Cd\Setup.exe -d C:\Users\VIJAY\Downloads\movies\Games\Cd
Task: {7338104D-B1ED-4292-9809-C05E16176BA8} - System32\Tasks\alarm => C:\Program Files\VideoLAN\VLC\vlc.exe [2015-04-13] (VideoLAN)
Task: {7BD768F6-E7A3-43EF-8902-D867484ABA2A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2015-08-27] (Microsoft)
Task: {9485C386-9A32-4059-A42D-EFBF0AB544A1} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {A215442A-B77D-4925-8ED3-E1AFBC664F27} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {C34E466E-4E24-42E8-8AE3-280D14678C65} - System32\Tasks\RecoveryCDWin7 => C:\Program Files\Hewlett-Packard\HP TCS\RemEngine.exe [2009-07-09] ()
Task: {CA760F9B-DCB2-484F-BECE-CCF0E6451B10} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [2015-03-12] (Tweaking.com)
Task: {CBA2E891-8163-482B-BBAC-5AB9920233C4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Ghost Resign Task => c:\program files\hewlett-packard\hp health check\activecheck\product_line\HPResignFileLoader.exe [2015-08-27] (Microsoft)
Task: {CC81148E-06A6-47A5-8EA6-9A200CB64A4E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-13] (Adobe Systems Incorporated)
Task: {CF812C73-22FB-418C-8265-08EB0B4DF691} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Tuneup => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2009-07-10] (Hewlett-Packard)
Task: {F3E45D06-4FBE-44A2-9926-F349E13FB121} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1443430433-3504582150-3450442512-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
Task: {FBFBCEAD-E579-4878-9540-FAE1CA7BBA78} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Health Analysis => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2009-07-10] (Hewlett-Packard)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1443430433-3504582150-3450442512-1000Core.job => C:\Users\VIJAY\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1443430433-3504582150-3450442512-1000UA.job => C:\Users\VIJAY\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2014-06-19 01:12 - 2015-02-04 07:35 - 00106640 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2009-08-25 05:59 - 2009-01-22 00:17 - 00247152 _____ () C:\Program Files\CyberLink\Shared files\RichVideo.exe
2009-07-31 05:19 - 2009-07-31 05:19 - 00132384 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2011-09-14 23:11 - 2011-09-14 23:11 - 04993024 _____ () C:\Program Files\CheckPoint\Endpoint Connect\QtGui4.dll
2011-09-14 23:11 - 2011-09-14 23:11 - 01302528 _____ () C:\Program Files\CheckPoint\Endpoint Connect\QtCore4.dll
2011-09-14 23:11 - 2011-09-14 23:11 - 00028672 _____ () C:\Program Files\CheckPoint\Endpoint Connect\imageformats\qgif4.dll
2014-10-09 12:07 - 2015-08-22 15:15 - 05425584 _____ () C:\Q4SearchInstall\bin\Q4Search.exe
2015-04-01 20:47 - 2015-08-17 08:31 - 00339456 _____ () C:\Q4SearchInstall\bin\ChromiumWrapper.dll
2014-10-29 04:25 - 2014-10-29 04:25 - 40556544 _____ () C:\Q4SearchInstall\bin\libcef.dll
2011-06-28 20:12 - 2011-06-28 20:12 - 00381952 _____ () C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Taskbar.dll
2009-07-14 02:33 - 2009-07-14 06:45 - 00364544 _____ () C:\Windows\system32\msjetoledb40.dll
2009-06-18 00:10 - 2009-06-18 00:10 - 02121728 _____ () C:\Program Files\Common Files\LightScribe\QtCore4.dll
2009-06-18 00:10 - 2009-06-18 00:10 - 07745536 _____ () C:\Program Files\Common Files\LightScribe\QtGui4.dll
2009-06-18 00:10 - 2009-06-18 00:10 - 00135168 _____ () C:\Program Files\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2014-10-29 04:25 - 2014-10-29 04:25 - 01359872 _____ () C:\Q4SearchInstall\bin\libglesv2.dll
2014-10-29 04:25 - 2014-10-29 04:25 - 00212992 _____ () C:\Q4SearchInstall\bin\libegl.dll
2014-10-29 04:25 - 2014-10-29 04:25 - 09301504 _____ () C:\Q4SearchInstall\bin\pdf.dll
2014-10-29 04:25 - 2014-10-29 04:25 - 00985600 _____ () C:\Q4SearchInstall\bin\ffmpegsumo.dll
2009-07-01 15:44 - 2009-07-01 15:44 - 00632888 _____ () C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:DBC416F8
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ccSettings_{7EC551EC-6FEE-44A6-BD12-987F87D7C525}.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SepMasterService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SmcService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1443430433-3504582150-3450442512-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\VIJAY\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.43.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^Users^VIJAY^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^S5830i_Modem_Files.zip.lnk => C:\Windows\pss\S5830i_Modem_Files.zip.lnk.Startup
MSCONFIG\startupreg: MobileBroadband => C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe /silent
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{F0AD76DB-E889-4187-8FC4-9B234495ACB4}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{56F91292-A826-41CD-B419-6750A0B5B58F}] => (Allow) svchost.exe
FirewallRules: [{91FCD764-6B46-489A-A610-282F2EC6CE6C}] => (Allow) C:\Program Files\CyberLink\PowerDirector\PDR.EXE
FirewallRules: [{ADBCA764-E9CC-4492-9E1E-3C6D856E840F}] => (Allow) C:\Program Files\HP\QuickPlay\QP.exe
FirewallRules: [{868649B0-F8AF-4519-B6EF-E86D0D4E8085}] => (Allow) C:\Program Files\HP\QuickPlay\QPService.exe
FirewallRules: [{F2174E21-6E78-4A40-AEBD-E921E10B3207}] => (Allow) C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe
FirewallRules: [{EFF2AAE2-8AC9-455F-B431-65157BE7EDCA}] => (Allow) C:\Program Files\CheckPoint\Endpoint Connect\TracSrvWrapper.exe
FirewallRules: [{A42F3EEC-2CBB-4F9B-8E19-709A07B0CEE7}] => (Allow) C:\Program Files\CheckPoint\Endpoint Connect\TrGUI.exe
FirewallRules: [{643908EA-F590-45C0-8622-B448FDDC72DC}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{E44B7225-F1F0-4428-A613-A20814D8520E}] => (Allow) LPort=2869
FirewallRules: [{B7346FA4-A8D2-4DB0-A491-2ACF2C61B202}] => (Allow) LPort=1900
FirewallRules: [{EF24014F-2C73-4462-B3CD-AFF153FEA0BE}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{FCC8063F-05F3-4831-8136-5E7B63A6C2D3}] => (Allow) C:\Users\VIJAY\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{62280F8A-CB73-4A39-A105-BF991B798828}] => (Allow) C:\Users\VIJAY\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8EA4ABA3-6F16-4D88-AA32-923E6F6DA013}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{99D44331-A580-412B-BCF6-99610390FD9F}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{52AAC42E-4C26-411F-9934-4CCA41BA35B8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{C20F1169-95D0-4C0C-A855-BE68846F4C93}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{BCF7ED49-183B-4B25-8331-52EBA46AEAC6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{4E84BC74-326D-4BCA-B3EF-2C01C863C5A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{15CD0CF1-F1E5-45DA-B9E2-EA9F6594E88C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{ACD155E0-F555-42B3-814E-9AD85E02F633}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{8701D1D7-24EB-4B42-959C-E37B7184CD87}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{0804C510-0B5F-4C07-97A8-921A57FF35AE}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{2E76813E-DBB7-41E6-AA87-0A94A0C122CB}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{74682D76-D9CF-4311-B42B-1B7A17B1A8B6}] => (Allow) C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
FirewallRules: [{51F94C1F-C31B-4FCE-AE1F-5F281B07751E}] => (Allow) C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
FirewallRules: [{6DAD810C-AFC9-4668-A79E-7271A960B5ED}] => (Allow) C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\Smc.exe
FirewallRules: [{73CD4623-8DDB-49B7-A99A-A01E711682FA}] => (Allow) C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\Smc.exe
FirewallRules: [{6E92883F-B2FE-487F-9D10-59CD5DE20E4C}] => (Allow) C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\snac.exe
FirewallRules: [{5CE08293-9C51-4329-BC84-19908B10B148}] => (Allow) C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.5337.5000.105\Bin\snac.exe
FirewallRules: [{A0662F3F-7BF5-43EE-A694-F52F6DA93D4A}] => (Allow) C:\Program Files\mHotspot\mHotspot.exe
FirewallRules: [{42D334A2-DFFF-416B-815A-1F7934D1B179}] => (Allow) C:\Program Files\mHotspot\mHotspot.exe
FirewallRules: [{B3DE02EE-4B94-4514-AD35-7E2B6083DD2E}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{E33D6053-1D11-4B24-859E-451DB36ECDDA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{5BF19C47-0C8F-476D-81A4-BC1A8234E4E7}] => (Allow) C:\Users\VIJAY\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe
FirewallRules: [{37D3505D-884E-477F-9919-A254A71FB7F3}] => (Allow) C:\Users\VIJAY\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe
FirewallRules: [TCP Query User{01963C34-1547-47FE-80F5-DF9D0D07D45F}C:\users\vijay\appdata\local\skypeplugin\7.5.0.123\pluginhost.exe] => (Allow) C:\users\vijay\appdata\local\skypeplugin\7.5.0.123\pluginhost.exe
FirewallRules: [UDP Query User{60150F83-74D6-45C2-8D28-CCFE40019713}C:\users\vijay\appdata\local\skypeplugin\7.5.0.123\pluginhost.exe] => (Allow) C:\users\vijay\appdata\local\skypeplugin\7.5.0.123\pluginhost.exe
FirewallRules: [{8139635B-D270-4460-A6B4-8C7CFCAD99C0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{99531980-F62C-43BC-8A9E-21CA9608196C}C:\users\vijay\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe] => (Allow) C:\users\vijay\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe
FirewallRules: [UDP Query User{44AB0C5E-415A-407F-909D-A11916C0D24E}C:\users\vijay\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe] => (Allow) C:\users\vijay\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe
FirewallRules: [{666F54A2-8A45-4704-A23C-C696E6208269}] => (Allow) C:\Users\VIJAY\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (09/08/2015 10:58:33 AM) (Source: Symantec AntiVirus) (EventID: 51) (User: )
Description: Security Risk Found!WS.Reputation.1 in File: C:\Users\VIJAY\Downloads\FRST.exe by: Auto-Protect scan. Action: Quarantine succeeded : Access denied. Action Description: The file was quarantined successfully.
Error: (09/08/2015 10:17:38 AM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/06/2015 11:59:32 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/06/2015 11:31:38 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/06/2015 06:49:02 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/05/2015 06:57:26 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/05/2015 04:14:41 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoId={9EDF2604-CFBF-41E0-AF93-D013BDB44C42}: The user VIJAY-PC\VIJAY dialed a connection named New Profile1 which has failed. The error code returned on failure is 633.
Error: (09/05/2015 04:10:22 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoId={CEEF4F9E-5391-4C73-8F36-82ECC04727B6}: The user VIJAY-PC\VIJAY dialed a connection named New Profile1 which has failed. The error code returned on failure is 691.
Error: (09/05/2015 04:10:09 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoId={BE18DEB0-A6BA-4EB7-A891-63E8B579A7F2}: The user VIJAY-PC\VIJAY dialed a connection named New Profile1 which has failed. The error code returned on failure is 691.
Error: (09/05/2015 04:09:21 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
System errors:
=============
Error: (09/08/2015 10:17:30 AM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.
Error: (09/06/2015 11:59:32 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.
Error: (09/06/2015 11:59:01 PM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.
Error: (09/06/2015 11:58:51 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 23:57:10 on 06-09-2015 was unexpected.
Error: (09/06/2015 11:57:33 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
Error: (09/06/2015 11:57:12 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
Error: (09/06/2015 11:52:31 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
Error: (09/06/2015 11:46:23 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
Error: (09/06/2015 11:43:30 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The DCService.exe service terminated unexpectedly. It has done this 1 time(s).
Error: (09/06/2015 11:31:31 PM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.
Microsoft Office:
=========================
Error: (09/08/2015 10:58:33 AM) (Source: Symantec AntiVirus) (EventID: 51) (User: )
Description: Security Risk Found!WS.Reputation.1 in File: C:\Users\VIJAY\Downloads\FRST.exe by: Auto-Protect scan. Action: Quarantine succeeded : Access denied. Action Description: The file was quarantined successfully.
Error: (09/08/2015 10:17:38 AM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/06/2015 11:59:32 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/06/2015 11:31:38 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/06/2015 06:49:02 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/05/2015 06:57:26 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
Error: (09/05/2015 04:14:41 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: {9EDF2604-CFBF-41E0-AF93-D013BDB44C42}VIJAY-PC\VIJAYNew Profile1633
Error: (09/05/2015 04:10:22 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: {CEEF4F9E-5391-4C73-8F36-82ECC04727B6}VIJAY-PC\VIJAYNew Profile1691
Error: (09/05/2015 04:10:09 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: {BE18DEB0-A6BA-4EB7-A891-63E8B579A7F2}VIJAY-PC\VIJAYNew Profile1691
Error: (09/05/2015 04:09:21 PM) (Source: VmbService) (EventID: 0) (User: )
Description: conflictManagerTypeValue
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU T6600 @ 2.20GHz
Percentage of memory in use: 52%
Total physical RAM: 3038.96 MB
Available physical RAM: 1447.16 MB
Total Virtual: 6076.23 MB
Available Virtual: 3972.54 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:143.13 GB) (Free:6.61 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (New Volume) (Fixed) (Total:142.02 GB) (Free:10.55 GB) NTFS
Drive e: (RECOVERY) (Fixed) (Total:12.74 GB) (Free:2.07 GB) NTFS ==>[system with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 298.1 GB) (Disk ID: 2D20BDEB)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=143.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=142 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=12.7 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================