This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Infected Computer, non-browser programs not connecting to internet

11 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

It all started when I used Avira Antivir to scan for the first time in a long while, I let the scan run overnight, only to find that my computer crashed sometime during the scan. I tried it again with the same results, so I downloaded malwarebytes and AVG and used them. My computer still crashed but AVG did take out a Trojan, one more scan and it went through without crashing. But the next time my computer started up it did a system restore. Confused I tried running Avira again, it didn't crash, but the program somehow aborted the scan on it's own. The next time my computer started up. All of my non-browser programs were unable to connect to the internet, this includes AVG. I was not able to even install Avast for aswMBR even with admin rights, aswMBR had "AVAST engine download error: 0" when it tried. And when I tried to Install Avast after downloading it, it had this error in the logs:

GetFileWithRetry: An error 41222 (0x0000A106) [Host unreachable] has occured when downloading a file from 'http://m3679631.iavs9x.u.avast.com/iavs9x/servers.def.vpx'Next try: 1

 

And so, here are my logs.

 

aswMBR version 1.0.1.2252 Copyright© 2014 AVAST Software
Run date: 2015-11-06 11:29:46
—————————–
11:29:46.085    OS Version: Windows x64 6.1.7601 Service Pack 1
11:29:46.085    Number of processors: 8 586 0x2A07
11:29:46.086    ComputerName: TROY-HP  UserName: Troy
11:29:47.794    Initialize success
11:29:47.796    VM: initialized successfully
11:29:47.797    VM: Intel CPU BiosDisabled
11:29:49.215    AVAST engine download error: 0
11:29:57.939    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
11:29:57.940    Disk 0 Vendor: WDC_WD15 51.0 Size: 1430799MB BusType: 3
11:29:57.941    Disk 1  \Device\Harddisk1\DR1 -> \Device\Ide\IAAStorageDevice-2
11:29:57.943    Disk 1 Vendor: WDC_WD25 02.0 Size: 239372MB BusType: 3
11:29:58.092    Disk 0 MBR read successfully
11:29:58.094    Disk 0 MBR scan
11:29:58.095    Disk 0 unknown MBR code
11:29:58.101    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
11:29:58.104    Disk 0 default boot code
11:29:58.107    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS      1417098 MB offset 206848
11:29:58.148    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS        13599 MB offset 2902423552
11:29:58.156    Disk 0 scanning C:\Windows\system32\drivers
11:30:04.831    Service scanning
11:30:32.760    Modules scanning
11:30:32.763    Disk 0 trace - called modules:
11:30:32.794    ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
11:30:32.797    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80096e4060]
11:30:32.799    3 CLASSPNP.SYS[fffff8800120143f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8008405050]
11:30:32.802    Disk 0 statistics 96075/0/0 @ 6.98 MB/s
11:30:32.804    Scan finished successfully
11:53:28.636    Disk 0 MBR has been saved successfully to "C:\Users\Troy\Desktop\MBR.dat"
11:53:28.836    The log file has been saved successfully to "C:\Users\Troy\Desktop\aswMBR.txt"

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-10-2015
Ran by [removed] (administrator) on TROY-HP (06-11-2015 11:55:44)
Running from C:\Users\[removed]\Desktop
[removed] Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Users\Troy\AppData\Local\Temp\RarSFX0\AutoInstallEJCDSvc.exe
(Hewlett-Packard ) C:\Program Files\IDT\WDM\beats64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
() C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgfws.exe
() C:\Users\Troy\AppData\Local\Temp\RarSFX0\AutoEJCD.exe
(Hewlett-Packard Company) C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
() C:\Program Files (x86)\Qwest 11n Wireless WPS Tool\WpsCenterV.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Roxio) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe
(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_226.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_226.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\…\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [37888 2010-08-14] (Hewlett-Packard )
HKLM\…\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\…\Run: [SmartMenu] => C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [611896 2010-09-15] ()
HKLM\…\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [489472 2010-09-27] (IDT, Inc.)
HKLM-x32\…\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [664600 2010-09-28] (PDF Complete Inc)
HKLM-x32\…\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation)
HKLM-x32\…\Run: [Qwest 11n Wireless WPS Tool] => C:\Program Files (x86)\Qwest 11n Wireless WPS Tool\WpsCenterV.exe [1191936 2010-04-23] ()
HKLM-x32\…\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\…\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [3825176 2012-11-13] (Safer-Networking Ltd.)
HKLM-x32\…\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [488328 2014-06-20] (Autodesk Inc.)
HKLM-x32\…\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
HKLM-x32\…\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-10-01] (Raptr, Inc)
HKLM-x32\…\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1130408 2015-10-16] (AVG Technologies CZ, s.r.o.)
HKLM-x32\…\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3826600 2015-10-23] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-05] (Valve Corporation)
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\Run: [Spybot-S&D; Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3713032 2012-11-13] (Safer-Networking Ltd.)
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\Run: [GalaxyClient] => C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [7744568 2015-10-14] (GOG.com)
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\MountPoints2: K - K:\Setup.exe
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\MountPoints2: {89c73f17-d322-11e0-b39d-e069954cb337} - K:\Setup.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Snapfish PictureMover.lnk [2010-12-14]
ShortcutTarget: Snapfish PictureMover.lnk -> C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe (Hewlett-Packard Company)
Startup: C:\Users\Troy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2011-08-25] ()
BootExecute: autocheck autochk * sdnclean64.exe
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 [removed]
Tcpip\..\Interfaces\{0CA7FAF4-0925-4C8D-A5AF-9C80A8DDBD5F}: [DhcpNameServer] 192.168.0.1 [removed]

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q;=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q;=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q;=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q;=
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securityresponse.symantec.com/avcenter/fix_homepage
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar;=iesearch
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securityresponse.symantec.com/avcenter/fix_homepage
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar;=iesearch
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=art&q;=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=art&q;=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q;=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Start Page Before = hxxp://search.b1.org/?bsrc=4hixr&chid;=c162341
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Search Page Before = hxxp://search.b1.org/?bsrc=4hixr&chid;=c162341
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q;=
SearchScopes: HKLM -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&form;=HPDTDF&pc;=HPDTDF&src;=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l;=dis&o;=HPDTDF
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei;={inputEncoding}&fr;=chr-hp-psg&type;=HPDTDF
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe;=Desktops
SearchScopes: HKLM -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&form;=HPDTDF&pc;=HPDTDF&src;=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {29BFF285-E0A0-42B8-95A7-CB49B9B74E53} URL = hxxp://www.bing.com/search?q={searchTerms}&form;=HPDTDF&pc;=HPDTDF&src;=IE-SearchBox
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l;=dis&o;=HPDTDF
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei;={inputEncoding}&fr;=chr-hp-psg&type;=HPDTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe;=Desktops
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> DefaultScope {B0F4899E-8BDD-467F-BFF7-45F784DB5C1A} URL =
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {29BFF285-E0A0-42B8-95A7-CB49B9B74E53} URL = hxxp://www.bing.com/search?q={searchTerms}&form;=HPDTDF&pc;=HPDTDF&src;=IE-SearchBox
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l;=dis&o;=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei;={inputEncoding}&fr;=chr-hp-psg&type;=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe;=Desktops
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://search.privitize.com/?aff=7&q;={searchTerms}
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_65\bin\ssv.dll [2015-10-21] (Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-21] (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll [2015-10-21] (Oracle Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-21] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
Toolbar: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

FireFox:
========
FF ProfilePath: C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299
FF DefaultSearchEngine: Google
FF DefaultSearchUrl:
FF SelectedSearchEngine: Google
FF Homepage: hxxps://www.google.com/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-10-19] ()
FF Plugin: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-21] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-10-19] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-21] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll [2010-04-01] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [2013-03-19] (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin HKU\S-1-5-21-1117344718-3105732553-3752503743-1001: @hulu.com/Hulu Desktop -> C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.13.1\npHDPlg.dll [2010-04-09] (Hulu LLC)
FF Plugin HKU\S-1-5-21-1117344718-3105732553-3752503743-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Troy\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-01-22] (Unity Technologies ApS)
FF user.js: detected! => C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js [2015-10-31]
FF Extension: Avira Browser Safety - C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\Extensions\[removed] [2015-10-23]
FF Extension: MEGA - C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\Extensions\[removed] [2014-01-25]
FF Extension: NoScript - C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-12-30]
FF Extension: Adblock Plus - C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-30]

Chrome:
=======
CHR Profile: C:\Users\Troy\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM-x32\…\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [hahpjplbmicfkmoccokbjejahjjpnena] - C:\Users\Troy\AppData\Local\B1E\B1Tool.crx [2013-01-03]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [596360 2014-06-20] (Autodesk Inc.)
R2 AutoInstallEJCD; C:\Users\Troy\AppData\Local\Temp\RarSFX0\AutoInstallEJCDSVC.exe [16384 2010-04-23] () [File not signed]
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [595376 2015-10-23] (AVG Technologies CZ, s.r.o.)
R2 avgfws; C:\Program Files (x86)\AVG\Av\avgfws.exe [1569416 2015-10-23] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3815648 2015-10-23] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-10-16] (AVG Technologies CZ, s.r.o.)
S2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-10-23] (AVG Technologies CZ, s.r.o.)
S2 CLKMSVC10_C6F09094; C:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe [245232 2010-09-21] (CyberLink)
S3 DAUpdaterSvc; C:\Program Files (x86)\Origin Games\Dragon Age\\bin_ship\DAUpdaterSvc.Service.exe [25832 2011-02-24] (BioWare)
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [1616440 2015-10-14] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6952504 2015-10-14] (GOG.com)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-02-28] (Hi-Rez Studios) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
R2 LightScribeService; c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2010-05-19] (Hewlett-Packard Company) [File not signed]
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1119768 2010-09-28] (PDF Complete Inc)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1103392 2012-11-13] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1369624 2012-11-13] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [168384 2012-11-13] (Safer-Networking Ltd.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [4368808 2015-10-14] (AVG Technologies CZ, s.r.o.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [197040 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [97208 2015-08-29] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-10-19] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.)
S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255408 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [302000 2015-10-08] (AVG Technologies CZ, s.r.o.)
S3 CpqDfw; C:\Windows\System32\drivers\CpqDfw.sys [27456 2012-05-29] (Windows (R) Codename Longhorn DDK provider)
S3 cqcpu; C:\Windows\System32\drivers\cqcpu.sys [24376 2010-03-01] ()
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
S3 QW720S64; C:\Windows\System32\DRIVERS\WLANUHN.sys [752640 2010-04-23] (Atheros Communications, Inc.)
S3 SIVDRIVER; C:\Windows\system32\Drivers\SIVX64.sys [57312 2008-06-14] (Ray Hinchliffe)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-10-14] (TuneUp Software)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) [File not signed]
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
S3 ZDCNDIS6a64; C:\Windows\system32\ZDCNDIS6a64.sys [45624 2011-08-30] (Printing Communications Assoc., Inc. (PCAUSA))
S3 ZDCNDIS6a64; C:\Windows\SysWOW64\ZDCNDIS6a64.sys [45624 2011-08-30] (Printing Communications Assoc., Inc. (PCAUSA))
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
U3 aswMBR; \??\C:\Users\Troy\AppData\Local\Temp\aswMBR.sys [X]
U3 aswVmm; \??\C:\Users\Troy\AppData\Local\Temp\aswVmm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-06 11:55 - 2015-11-06 11:56 - 00023840 _____ C:\Users\Troy\Desktop\FRST.txt
2015-11-06 11:53 - 2015-11-06 11:53 - 00001973 _____ C:\Users\Troy\Desktop\aswMBR.txt
2015-11-06 11:53 - 2015-11-06 11:53 - 00000512 _____ C:\Users\Troy\Desktop\MBR.dat
2015-11-06 10:14 - 2015-11-06 10:14 - 05471168 _____ (Avast Software s.r.o.) C:\Users\Troy\Downloads\avast_premier_antivirus_setup_online.exe
2015-11-06 10:14 - 2015-11-06 10:14 - 00000000 ____D C:\ProgramData\AVAST Software
2015-11-06 09:51 - 2015-11-06 09:51 - 05198336 _____ (AVAST Software) C:\Users\Troy\Desktop\aswMBR.exe
2015-11-05 12:06 - 2015-11-05 12:06 - 00000000 ____D C:\Users\Troy\AppData\Local\THQ
2015-11-05 12:04 - 2015-11-05 12:06 - 00017475 _____ C:\Windows\DirectX.log
2015-11-05 09:56 - 2015-11-05 12:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2015-11-05 09:56 - 2015-11-05 09:59 - 00000000 ____D C:\Program Files (x86)\GalaxyClient
2015-11-05 09:56 - 2015-11-05 09:56 - 00000000 ____D C:\ProgramData\GOG.com
2015-11-03 09:22 - 2015-11-03 09:22 - 00000000 __SHD C:\found.002
2015-11-02 09:28 - 2015-11-02 09:28 - 00000861 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog
2015-11-01 10:09 - 2015-11-01 10:17 - 00000000 ____D C:\Windows\system32\MRT
2015-11-01 09:54 - 2015-07-30 05:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-01 09:54 - 2015-07-30 05:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-01 09:53 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2015-11-01 09:49 - 2015-11-01 09:49 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-11-01 09:49 - 2015-11-01 09:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-01 09:49 - 2015-11-01 09:49 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-01 09:49 - 2015-11-01 09:49 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-11-01 09:49 - 2015-11-01 09:49 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-11-01 09:49 - 2015-11-01 09:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-11-01 09:49 - 2015-11-01 09:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-01 09:49 - 2015-11-01 09:49 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-11-01 09:49 - 2015-11-01 09:49 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-11-01 09:49 - 2015-11-01 09:49 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-11-01 09:49 - 2015-11-01 09:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-11-01 09:49 - 2015-11-01 09:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-11-01 09:49 - 2015-11-01 09:49 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-11-01 09:47 - 2015-11-01 09:47 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-11-01 09:47 - 2015-11-01 09:47 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-11-01 09:47 - 2015-11-01 09:47 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-11-01 09:47 - 2015-11-01 09:47 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-11-01 09:46 - 2015-11-01 09:46 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-11-01 09:46 - 2015-11-01 09:46 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-11-01 09:42 - 2015-11-01 09:42 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-11-01 09:40 - 2015-11-01 09:40 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-11-01 09:40 - 2015-11-01 09:40 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-11-01 09:38 - 2015-11-01 09:54 - 00012858 _____ C:\Windows\IE11_main.log
2015-11-01 08:29 - 2014-06-30 14:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-11-01 08:29 - 2014-06-30 14:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2015-11-01 08:29 - 2014-03-09 13:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-11-01 08:29 - 2014-03-09 13:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-11-01 08:29 - 2014-03-09 13:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2015-11-01 08:29 - 2014-03-09 13:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2015-11-01 08:28 - 2014-06-05 22:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-11-01 08:28 - 2014-06-05 22:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-11-01 08:26 - 2014-12-11 09:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-11-01 08:25 - 2015-09-28 19:16 - 05569472 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-01 08:25 - 2015-09-28 19:13 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-11-01 08:25 - 2015-09-28 19:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-11-01 08:25 - 2015-09-28 19:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-01 08:25 - 2015-09-28 19:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-01 08:25 - 2015-09-28 19:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-11-01 08:25 - 2015-09-28 19:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-11-01 08:25 - 2015-09-28 19:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-01 08:25 - 2015-09-28 19:05 - 03990976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-11-01 08:25 - 2015-09-28 19:05 - 03936192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-11-01 08:25 - 2015-09-28 19:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-01 08:25 - 2015-09-28 19:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-01 08:25 - 2015-09-28 19:02 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 19:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:59 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-11-01 08:25 - 2015-09-28 18:59 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-11-01 08:25 - 2015-09-28 18:59 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-11-01 08:25 - 2015-09-28 18:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-11-01 08:25 - 2015-09-28 18:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-11-01 08:25 - 2015-09-28 18:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-11-01 08:25 - 2015-09-28 18:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-11-01 08:25 - 2015-09-28 18:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-11-01 08:25 - 2015-09-28 18:58 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-11-01 08:25 - 2015-09-28 18:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-11-01 08:25 - 2015-09-28 18:57 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-11-01 08:25 - 2015-09-28 18:57 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-11-01 08:25 - 2015-09-28 18:57 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-11-01 08:25 - 2015-09-28 18:57 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-11-01 08:25 - 2015-09-28 18:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-11-01 08:25 - 2015-09-28 18:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 18:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 17:50 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-01 08:25 - 2015-09-28 17:49 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-01 08:25 - 2015-09-28 17:49 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-01 08:25 - 2015-09-28 17:43 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-11-01 08:25 - 2015-09-28 17:43 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-11-01 08:25 - 2015-09-28 17:40 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 17:40 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 17:40 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-11-01 08:25 - 2015-09-28 17:40 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-11-01 08:25 - 2015-09-15 10:17 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-01 08:25 - 2015-09-15 10:17 - 00097112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-01 08:25 - 2015-09-15 10:11 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-01 08:25 - 2015-09-15 10:11 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-01 08:25 - 2015-09-15 10:11 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-01 08:25 - 2015-09-15 10:11 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-01 08:25 - 2015-09-15 10:11 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-01 08:25 - 2015-09-15 10:11 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-01 08:25 - 2015-09-15 10:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-01 08:25 - 2015-09-15 09:36 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-11-01 08:25 - 2015-09-15 09:36 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-11-01 08:25 - 2015-09-15 09:36 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-11-01 08:25 - 2015-09-15 09:35 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-11-01 08:25 - 2015-06-03 12:17 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-11-01 08:25 - 2015-02-02 19:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-11-01 08:25 - 2015-02-02 19:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-11-01 08:25 - 2015-02-02 19:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-11-01 08:25 - 2015-02-02 19:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-11-01 08:25 - 2015-02-02 19:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-11-01 08:25 - 2015-02-02 19:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-11-01 08:25 - 2015-02-02 19:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-11-01 08:25 - 2015-02-02 19:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-11-01 08:25 - 2015-02-02 19:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-11-01 08:25 - 2015-02-02 19:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-11-01 08:25 - 2015-02-02 19:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-11-01 08:25 - 2015-02-02 19:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-11-01 08:25 - 2015-02-02 19:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-11-01 08:25 - 2015-02-02 19:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-11-01 08:25 - 2015-02-02 19:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-11-01 08:24 - 2015-07-15 10:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-11-01 08:24 - 2015-07-15 10:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-11-01 08:24 - 2015-07-15 10:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-11-01 08:24 - 2015-07-14 19:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-11-01 08:23 - 2015-10-01 10:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-11-01 08:23 - 2015-10-01 10:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-11-01 08:23 - 2015-10-01 10:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-11-01 08:23 - 2015-10-01 10:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-11-01 08:23 - 2015-10-01 10:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-11-01 08:23 - 2015-10-01 10:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-11-01 08:23 - 2015-10-01 10:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-11-01 08:23 - 2015-10-01 09:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-11-01 08:23 - 2015-10-01 09:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-11-01 08:23 - 2015-09-01 19:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-11-01 08:23 - 2015-09-01 19:04 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-11-01 08:23 - 2015-09-01 19:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-11-01 08:23 - 2015-09-01 19:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-11-01 08:23 - 2015-09-01 18:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-11-01 08:23 - 2015-09-01 18:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-11-01 08:23 - 2015-09-01 18:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-11-01 08:23 - 2015-09-01 18:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-11-01 08:23 - 2015-09-01 17:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-11-01 08:23 - 2015-09-01 17:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-11-01 08:23 - 2015-09-01 17:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-11-01 08:23 - 2015-06-03 12:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-11-01 08:23 - 2015-06-03 12:16 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-11-01 08:23 - 2015-06-03 12:16 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-11-01 08:23 - 2014-03-04 01:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-11-01 08:23 - 2014-03-04 01:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-11-01 08:23 - 2014-03-04 01:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-11-01 08:23 - 2014-03-04 01:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-11-01 08:23 - 2014-03-04 01:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-11-01 08:23 - 2014-03-04 01:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-11-01 08:23 - 2014-03-04 01:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-11-01 08:23 - 2014-03-04 01:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-11-01 08:23 - 2014-03-04 01:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-11-01 08:23 - 2014-03-04 01:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-11-01 08:23 - 2014-03-04 01:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-11-01 08:23 - 2014-03-04 01:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-11-01 08:23 - 2014-03-04 01:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-11-01 08:23 - 2014-03-04 01:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-11-01 08:22 - 2014-07-16 18:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-11-01 08:22 - 2014-07-16 18:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-11-01 08:22 - 2014-07-16 18:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-11-01 08:22 - 2014-07-16 18:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-11-01 08:22 - 2014-07-16 17:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-11-01 08:22 - 2014-07-16 17:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-11-01 08:22 - 2014-07-16 17:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-11-01 08:22 - 2014-07-16 17:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-11-01 08:22 - 2012-04-25 21:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-11-01 08:22 - 2012-04-25 21:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2015-11-01 08:21 - 2015-09-25 10:07 - 03168768 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-11-01 08:21 - 2015-09-25 10:07 - 02607104 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-11-01 08:21 - 2015-09-25 10:07 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-11-01 08:21 - 2015-09-25 10:07 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-11-01 08:21 - 2015-09-25 10:07 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-11-01 08:21 - 2015-09-25 10:07 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-11-01 08:21 - 2015-09-25 10:07 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-11-01 08:21 - 2015-09-25 10:06 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-11-01 08:21 - 2015-09-25 10:06 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-11-01 08:21 - 2015-09-25 10:06 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-11-01 08:21 - 2015-09-25 10:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-11-01 08:21 - 2015-09-25 09:59 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-11-01 08:21 - 2015-09-25 09:59 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-11-01 08:21 - 2015-09-25 09:59 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-11-01 08:21 - 2015-09-25 09:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-11-01 08:21 - 2015-09-25 09:58 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-11-01 08:19 - 2014-10-13 18:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-11-01 08:18 - 2015-06-17 09:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-11-01 08:18 - 2015-06-17 09:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-11-01 08:18 - 2015-06-15 13:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-11-01 08:18 - 2015-06-15 13:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-11-01 08:18 - 2015-06-15 13:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-11-01 08:18 - 2015-06-15 13:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-11-01 08:18 - 2015-06-15 13:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-11-01 08:18 - 2015-06-15 13:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-11-01 08:18 - 2015-06-15 13:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-11-01 08:18 - 2015-06-15 13:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-11-01 08:18 - 2015-06-15 13:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-11-01 08:18 - 2015-06-15 13:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-11-01 08:18 - 2015-06-15 13:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-11-01 08:18 - 2015-06-15 13:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2015-11-01 08:18 - 2015-02-24 19:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-11-01 08:17 - 2015-08-05 09:56 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-11-01 08:17 - 2015-08-05 09:56 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-11-01 08:17 - 2015-08-05 09:40 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2015-11-01 08:17 - 2015-04-17 19:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-11-01 08:17 - 2015-04-17 18:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-11-01 08:17 - 2015-02-17 23:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-11-01 08:17 - 2015-02-17 23:04 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-11-01 08:17 - 2013-06-25 14:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-11-01 08:17 - 2012-11-28 14:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-11-01 08:17 - 2012-11-28 14:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-11-01 08:17 - 2012-11-28 14:56 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-11-01 08:16 - 2014-11-10 19:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-11-01 08:16 - 2014-11-10 18:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-11-01 08:15 - 2015-08-06 10:04 - 14176768 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-11-01 08:15 - 2015-08-06 10:03 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-11-01 08:15 - 2015-08-06 09:44 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-11-01 08:15 - 2015-08-06 09:44 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-11-01 08:15 - 2015-08-05 09:56 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-11-01 08:15 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-11-01 08:15 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-11-01 08:15 - 2015-07-09 09:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-11-01 08:15 - 2015-01-16 18:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-11-01 08:15 - 2015-01-16 18:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-11-01 08:15 - 2014-01-28 18:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-11-01 08:15 - 2014-01-28 18:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-11-01 08:15 - 2013-05-12 21:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-11-01 08:15 - 2013-05-12 19:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-11-01 08:15 - 2013-05-12 19:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2015-11-01 08:15 - 2013-05-12 19:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2015-11-01 08:14 - 2015-02-02 19:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-11-01 08:14 - 2015-02-02 19:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-11-01 08:14 - 2014-12-05 20:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-11-01 08:14 - 2014-12-05 19:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-11-01 08:14 - 2014-12-05 19:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-11-01 08:14 - 2014-06-18 14:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-11-01 08:14 - 2014-06-18 14:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-11-01 08:14 - 2014-06-18 14:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2015-11-01 08:14 - 2014-06-18 14:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-11-01 08:14 - 2014-06-18 14:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2015-11-01 08:14 - 2014-06-18 14:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-11-01 08:14 - 2014-04-04 18:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-11-01 08:14 - 2014-04-04 18:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-11-01 08:14 - 2013-11-26 03:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-11-01 08:14 - 2013-10-11 18:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-11-01 08:14 - 2013-10-11 18:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-11-01 08:14 - 2013-10-11 18:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2015-11-01 08:14 - 2013-10-11 18:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-11-01 08:14 - 2013-10-11 17:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-11-01 08:14 - 2013-10-11 17:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-11-01 08:14 - 2013-10-11 17:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2015-11-01 08:14 - 2013-10-11 17:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2015-11-01 08:14 - 2013-07-25 18:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-11-01 08:14 - 2013-07-25 17:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2015-11-01 08:14 - 2013-07-25 01:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-11-01 08:14 - 2013-07-25 00:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-11-01 08:14 - 2013-07-12 02:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-11-01 08:14 - 2013-04-12 06:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-11-01 08:14 - 2013-02-11 20:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-11-01 08:14 - 2012-10-03 09:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-11-01 08:14 - 2012-10-03 09:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-11-01 08:13 - 2015-07-14 19:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-11-01 08:13 - 2015-07-14 19:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-11-01 08:13 - 2015-07-14 19:17 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-11-01 08:13 - 2015-07-14 19:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-11-01 08:13 - 2015-07-14 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-11-01 08:13 - 2015-07-14 18:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-11-01 08:13 - 2015-07-14 18:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-11-01 08:13 - 2015-07-14 18:54 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-11-01 08:13 - 2015-07-14 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-11-01 08:13 - 2015-07-14 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-11-01 08:13 - 2015-07-04 10:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-11-01 08:13 - 2015-07-04 09:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-11-01 08:13 - 2015-04-29 10:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-11-01 08:13 - 2015-04-29 10:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-11-01 08:13 - 2015-04-29 10:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-11-01 08:13 - 2015-04-29 10:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-11-01 08:13 - 2015-04-29 10:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-11-01 08:13 - 2015-04-29 10:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-11-01 08:13 - 2015-04-29 10:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-11-01 08:13 - 2015-04-29 10:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-11-01 08:13 - 2015-04-29 10:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-11-01 08:13 - 2015-04-29 10:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-11-01 08:13 - 2014-12-18 17:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-11-01 08:13 - 2014-12-07 19:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-11-01 08:13 - 2014-12-07 18:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-11-01 08:13 - 2014-06-17 18:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-11-01 08:13 - 2014-06-17 17:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-11-01 08:13 - 2014-06-15 18:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-11-01 08:13 - 2013-10-18 18:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-11-01 08:13 - 2013-10-18 17:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-11-01 08:13 - 2013-07-02 20:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-11-01 08:13 - 2013-07-02 20:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-11-01 08:13 - 2013-04-09 22:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-11-01 08:13 - 2011-02-03 03:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-11-01 08:12 - 2015-07-10 09:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-11-01 08:12 - 2015-07-10 09:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-11-01 08:12 - 2015-07-10 09:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-11-01 08:12 - 2015-07-10 09:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-11-01 08:12 - 2015-07-10 09:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-11-01 08:12 - 2015-07-10 09:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-11-01 08:12 - 2015-07-01 12:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-11-01 08:12 - 2015-07-01 12:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-11-01 08:12 - 2015-07-01 12:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-11-01 08:12 - 2015-07-01 12:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-11-01 08:12 - 2015-06-01 16:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-11-01 08:12 - 2015-06-01 15:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-11-01 08:12 - 2015-04-24 10:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-11-01 08:12 - 2015-04-24 09:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-11-01 08:12 - 2015-04-12 19:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-11-01 08:12 - 2014-12-18 19:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-11-01 08:12 - 2014-10-17 18:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-11-01 08:12 - 2014-10-17 17:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-11-01 08:12 - 2014-09-03 21:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-11-01 08:12 - 2014-09-03 21:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-11-01 08:12 - 2014-08-11 18:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-11-01 08:12 - 2014-08-11 17:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2015-11-01 08:12 - 2014-06-06 02:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-11-01 08:12 - 2014-06-06 01:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-11-01 08:12 - 2014-05-29 22:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-11-01 08:12 - 2014-04-24 18:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-11-01 08:12 - 2014-04-24 18:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-11-01 08:12 - 2013-11-26 17:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-11-01 08:12 - 2013-11-26 17:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-11-01 08:12 - 2013-11-26 17:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-11-01 08:12 - 2013-11-26 17:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-11-01 08:12 - 2013-11-26 17:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-11-01 08:12 - 2013-11-26 17:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-11-01 08:12 - 2013-11-26 17:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-11-01 08:12 - 2013-10-03 18:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-11-01 08:12 - 2013-10-03 17:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-11-01 08:12 - 2012-11-22 19:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-11-01 08:12 - 2012-11-01 21:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-11-01 08:12 - 2012-11-01 21:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2015-11-01 08:12 - 2012-09-25 14:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2015-11-01 08:12 - 2012-09-25 14:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-11-01 08:12 - 2012-07-04 14:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-11-01 08:12 - 2012-07-04 14:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-11-01 08:12 - 2012-07-04 14:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-11-01 08:12 - 2012-07-04 13:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2015-11-01 08:12 - 2012-07-04 13:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2015-11-01 08:12 - 2012-05-13 21:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-11-01 08:11 - 2015-03-03 20:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-11-01 08:11 - 2015-03-03 20:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-11-01 08:11 - 2015-03-03 20:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-11-01 08:11 - 2014-10-24 17:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-11-01 08:11 - 2014-10-24 17:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-11-01 08:11 - 2013-04-25 21:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-11-01 08:11 - 2013-04-25 20:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2015-11-01 08:11 - 2012-06-05 22:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-11-01 08:11 - 2012-06-05 21:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2015-11-01 08:01 - 2013-10-11 18:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-11-01 08:01 - 2013-10-11 18:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-11-01 08:01 - 2013-10-11 18:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-11-01 08:01 - 2013-10-11 18:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-11-01 08:01 - 2013-10-11 18:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-11-01 00:35 - 2015-11-01 00:35 - 00002762 _____ C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2015-10-31 10:14 - 2015-10-31 10:14 - 02001540 _____ C:\Users\Troy\Downloads\pc-decrapifier-3.0.0.exe
2015-10-31 09:17 - 2015-10-31 09:17 - 00003704 _____ C:\Windows\System32\Tasks\Java Platform SE Auto Updater
2015-10-31 08:31 - 2015-10-31 08:31 - 00002226 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp.lnk
2015-10-31 08:31 - 2015-10-31 08:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp
2015-10-31 08:31 - 2015-10-14 10:05 - 00045992 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\TURegOpt.exe
2015-10-31 08:31 - 2015-10-14 09:59 - 00037288 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\authuitu.dll
2015-10-31 08:31 - 2015-10-14 09:59 - 00032680 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\authuitu.dll
2015-10-31 08:22 - 2015-10-31 08:31 - 00000000 ____D C:\Users\Troy\AppData\Roaming\AVG
2015-10-31 08:21 - 2015-10-31 08:21 - 00000000 ____D C:\Users\Troy\AppData\Roaming\TuneUp Software
2015-10-31 08:21 - 2015-10-31 08:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-10-31 08:21 - 2015-10-31 08:21 - 00000000 ____D C:\Program Files\Common Files\AV
2015-10-31 08:16 - 2015-10-31 08:16 - 00000000 ___HD C:\$AVG
2015-10-31 08:13 - 2015-11-06 08:44 - 00000896 _____ C:\Users\Public\Desktop\AVG.lnk
2015-10-31 08:13 - 2015-11-06 08:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2015-10-31 08:13 - 2015-11-06 08:40 - 00000000 ____D C:\ProgramData\MFAData
2015-10-31 08:13 - 2015-10-31 08:13 - 00000000 ____D C:\Users\Troy\AppData\Local\MFAData
2015-10-31 08:11 - 2015-10-31 08:33 - 00000000 ____D C:\ProgramData\Avg
2015-10-31 08:11 - 2015-10-31 08:30 - 00000000 ____D C:\Program Files (x86)\AVG
2015-10-31 08:10 - 2015-10-31 08:31 - 00000000 ____D C:\Users\Troy\AppData\Local\Avg
2015-10-31 08:10 - 2015-10-31 08:30 - 00000000 ____D C:\Users\Troy\AppData\Local\AvgSetupLog
2015-10-31 08:10 - 2015-10-31 08:10 - 02924672 _____ (AVG Technologies) C:\Users\Troy\Downloads\AVG_Protection_Free_698(1).exe
2015-10-31 08:09 - 2015-10-31 08:09 - 02924672 _____ (AVG Technologies) C:\Users\Troy\Downloads\AVG_Protection_Free_698.exe
2015-10-31 07:09 - 2015-10-31 07:09 - 00000036 ____H C:\Users\Troy\Desktop\.curseclient
2015-10-29 13:20 - 2015-10-29 22:59 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-29 13:19 - 2015-10-29 13:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-10-29 13:19 - 2015-10-29 13:19 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-10-29 13:19 - 2015-10-29 13:19 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-10-29 13:19 - 2015-10-05 08:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-10-29 13:19 - 2015-10-05 08:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-10-29 13:19 - 2015-10-05 08:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-10-29 13:17 - 2015-10-29 13:18 - 22908888 _____ (Malwarebytes ) C:\Users\Troy\Downloads\mbam-setup-2.2.0.1024.exe
2015-10-27 21:34 - 2015-10-27 23:18 - 317436266 _____ C:\Users\Troy\Desktop\Saskia_nn55.mp4
2015-10-22 23:31 - 2015-10-22 23:31 - 00000000 ____D C:\Users\Troy\AppData\Roaming\library_dir
2015-10-22 23:31 - 2015-10-22 23:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-10-22 23:31 - 2015-10-22 23:31 - 00000000 ____D C:\ProgramData\ATI
2015-10-22 23:30 - 2015-11-06 10:53 - 00000000 ____D C:\Users\Troy\AppData\Roaming\Raptr
2015-10-22 23:30 - 2015-10-22 23:31 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-10-22 23:30 - 2015-10-22 23:30 - 00053615 _____ C:\Windows\SysWOW64\CCCInstall_201510230030337421.log
2015-10-22 23:30 - 2015-10-22 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-10-22 23:20 - 2015-10-22 23:21 - 00000000 ____D C:\Program Files\AMD
2015-10-22 23:15 - 2015-10-22 23:19 - 300806184 _____ (AMD Inc.) C:\Users\Troy\Downloads\amd-catalyst-15.7.1-with-dotnet45-win7-64bit.exe
2015-10-22 19:12 - 2015-10-22 19:16 - 370744632 _____ (AMD Inc.) C:\Users\Troy\Downloads\14.502.1045-whql-firepro-retail.exe
2015-10-21 16:16 - 2015-10-21 16:16 - 00284080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys
2015-10-21 16:15 - 2015-10-21 16:15 - 00255408 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
2015-10-19 08:03 - 2015-10-19 08:03 - 00313776 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2015-10-15 23:41 - 2015-10-17 08:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-10-14 15:09 - 2015-10-14 15:09 - 00143029 _____ C:\Users\Troy\Downloads\Addition.txt
2015-10-14 15:07 - 2015-10-14 15:09 - 00035538 _____ C:\Users\Troy\Downloads\FRST.txt
2015-10-14 15:06 - 2015-11-06 11:55 - 00000000 ____D C:\FRST
2015-10-14 15:06 - 2015-10-14 15:06 - 02196480 _____ (Farbar) C:\Users\Troy\Desktop\FRST64.exe
2015-10-08 07:46 - 2015-10-08 07:46 - 00302000 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-06 11:53 - 2010-12-14 21:59 - 01239895 _____ C:\Windows\WindowsUpdate.log
2015-11-06 11:48 - 2014-03-17 22:40 - 00000000 ____D C:\ProgramData\Package Cache
2015-11-06 11:48 - 2013-03-22 15:43 - 00000000 ____D C:\ProgramData\Avira
2015-11-06 11:08 - 2009-07-13 20:45 - 00015792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-06 11:08 - 2009-07-13 20:45 - 00015792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-06 10:59 - 2011-08-24 15:49 - 00000000 ____D C:\Program Files (x86)\Steam
2015-11-06 10:56 - 2011-08-25 13:27 - 00000000 ____D C:\Users\Troy\AppData\Local\Deployment
2015-11-06 10:51 - 2015-08-15 07:42 - 00005078 _____ C:\Windows\setupact.log
2015-11-06 10:51 - 2010-12-15 01:03 - 01372420 _____ C:\Windows\PFRO.log
2015-11-06 10:51 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-06 10:34 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\system32\NDF
2015-11-06 08:42 - 2011-08-24 15:39 - 00063936 _____ C:\Users\Troy\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-06 08:37 - 2015-08-13 18:20 - 00000328 _____ C:\Windows\Tasks\HPCeeScheduleForTroy.job
2015-11-06 08:36 - 2009-07-13 20:45 - 00280264 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-06 07:59 - 2010-12-14 22:09 - 00000000 ____D C:\ProgramData\PDFC
2015-11-05 23:58 - 2013-08-31 17:09 - 00000000 ____D C:\Users\Troy\AppData\Roaming\Mumble
2015-11-05 19:35 - 2015-08-13 18:20 - 00003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForTroy
2015-11-05 19:35 - 2011-08-25 12:10 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2015-11-05 19:18 - 2014-03-21 16:02 - 01405400 _____ (NCSOFT) C:\Users\Troy\Desktop\Wildstar.exe
2015-11-05 12:06 - 2009-07-13 21:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-11-04 11:35 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2015-11-01 11:17 - 2011-08-24 15:40 - 00001419 _____ C:\Users\Troy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-11-01 11:16 - 2009-07-13 21:13 - 00796934 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-01 11:02 - 2009-07-13 23:45 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-01 11:01 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK
2015-11-01 11:01 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR
2015-11-01 11:01 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\system32\zh-HK
2015-11-01 11:01 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\system32\tr-TR
2015-11-01 11:01 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-11-01 11:00 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files\Windows Defender
2015-11-01 11:00 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-11-01 11:00 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-11-01 11:00 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\system32\Dism
2015-11-01 09:12 - 2011-08-25 10:39 - 00780800 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-11-01 06:54 - 2011-08-25 11:24 - 00000000 ____D C:\Windows\Minidump
2015-11-01 06:53 - 2010-12-15 01:03 - 00289407 ____N C:\Windows\Minidump\110115-48017-01.dmp
2015-11-01 02:34 - 2013-03-22 13:56 - 00000000 ____D C:\ProgramData\Bruowse2saavee
2015-10-31 10:33 - 2010-12-14 22:15 - 00000000 ____D C:\Program Files (x86)\Windows Live
2015-10-31 09:21 - 2012-06-08 09:19 - 00003158 _____ C:\Windows\System32\Tasks\Game_Booster_AutoUpdate
2015-10-31 09:12 - 2013-03-22 13:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bruowse2saavee
2015-10-31 09:12 - 2013-03-12 12:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II
2015-10-31 09:12 - 2012-10-01 15:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
2015-10-31 09:12 - 2011-09-17 15:12 - 00000000 ____D C:\Users\Troy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StarCraft II
2015-10-31 07:04 - 2010-12-15 01:03 - 00289407 ____N C:\Windows\Minidump\103115-22354-01.dmp
2015-10-31 07:04 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\Branding
2015-10-31 06:58 - 2014-07-11 22:57 - 00000000 ____D C:\Users\Troy\AppData\Local\Battle.net
2015-10-30 17:28 - 2014-07-11 22:57 - 00000000 ____D C:\Program Files (x86)\Battle.net
2015-10-30 07:58 - 2013-11-15 08:34 - 00000000 ____D C:\ProgramData\APN
2015-10-30 07:58 - 2013-04-06 18:42 - 00000000 ____D C:\Program Files (x86)\Conduit
2015-10-24 09:40 - 2011-08-27 00:55 - 00000000 ____D C:\Users\Troy\AppData\Local\CrashDumps
2015-10-22 23:30 - 2012-12-23 10:33 - 00000000 ____D C:\Program Files (x86)\AMD
2015-10-22 23:29 - 2011-08-30 13:01 - 00000000 ____D C:\Program Files\ATI Technologies
2015-10-22 23:19 - 2012-02-02 09:03 - 00000000 ____D C:\AMD
2015-10-21 07:43 - 2015-04-27 22:24 - 00000000 ____D C:\ProgramData\Oracle
2015-10-21 07:27 - 2015-04-27 22:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-10-21 07:26 - 2015-08-31 07:55 - 00000000 ____D C:\Users\Troy\.oracle_jre_usage
2015-10-21 07:26 - 2013-02-05 12:28 - 00110176 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2015-10-21 07:25 - 2015-07-20 00:37 - 00000000 ____D C:\Program Files (x86)\Java
2015-10-21 07:25 - 2013-02-05 12:28 - 00000000 ____D C:\Program Files\Java
2015-10-19 08:05 - 2012-04-02 08:12 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-10-19 08:05 - 2011-08-26 12:28 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-10-17 08:01 - 2012-04-24 20:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-10-11 07:58 - 2014-01-30 16:55 - 00000000 ____D C:\ProgramData\cicmglnjbanlkdagkpofcgajomagflkp
2015-10-11 07:56 - 2013-01-03 18:53 - 00000000 ____D C:\Users\Troy\AppData\Roaming\B1Toolbar
2015-10-10 08:50 - 2011-08-24 16:40 - 00000000 ____D C:\Users\Troy\Desktop\New
2015-10-10 07:45 - 2010-12-15 01:03 - 00289407 ____N C:\Windows\Minidump\101015-26301-01.dmp
2015-10-09 14:14 - 2015-10-04 10:32 - 00000000 _____ C:\Users\Troy\Desktop\Saturday Cactpot.txt

==================== Files in the root of some directories =======

2014-06-19 08:32 - 2014-06-19 08:32 - 0000024 _____ () C:\Users\Troy\AppData\Roaming\temp.ini
2014-02-22 14:26 - 2014-02-22 14:26 - 0000044 _____ () C:\Users\Troy\AppData\Roaming\WB.CFG
2011-10-01 09:40 - 2011-10-01 09:40 - 0003584 _____ () C:\Users\Troy\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-02-13 20:32 - 2013-02-13 20:32 - 0000092 _____ () C:\Users\Troy\AppData\Local\fusioncache.dat
2013-03-30 18:09 - 2013-04-06 18:32 - 0007602 _____ () C:\Users\Troy\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
C:\Users\Troy\AppData\Local\Temp\avgnt.exe
C:\Users\Troy\AppData\Local\Temp\jre-8u65-windows-au.exe
C:\Users\Troy\AppData\Local\Temp\msvcp120.dll
C:\Users\Troy\AppData\Local\Temp\msvcr120.dll
C:\Users\Troy\AppData\Local\Temp\pc-decrapifier.exe
C:\Users\Troy\AppData\Local\Temp\raptrpatch.exe
C:\Users\Troy\AppData\Local\Temp\raptr_stub.exe
C:\Users\Troy\AppData\Local\Temp\Sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-10-31 07:46

==================== End of FRST.txt ============================

 

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG Internet Security (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: AVG Internet Security (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
FW: AVG Internet Security (Disabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (HKLM-x32\…\7-Zip) (Version:  - )
Adobe AIR (HKLM-x32\…\Adobe AIR) (Version: 3.5.0.880 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX 64-bit (HKLM\…\Adobe Flash Player ActiveX) (Version: 11.0.1.152 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\…\Adobe Flash Player NPAPI) (Version: 19.0.0.226 - Adobe Systems Incorporated)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden
Aliens versus Predator 2: Primal Hunt (HKLM-x32\…\{103B6835-DCA0-413F-A99E-ECAD6622726E}) (Version:  - )
Aliens vs. Predator 2 (HKLM-x32\…\{3EF79591-BF16-4CF8-8FF0-D8AD968228B1}) (Version:  - )
AMD Catalyst Install Manager (HKLM\…\{7E5DC2C5-115A-322B-976C-219237FAED66}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Antichamber (HKLM-x32\…\Steam App 219890) (Version:  - Alexander Bruce)
Apple Application Support (HKLM-x32\…\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\…\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\…\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aquaria (HKLM-x32\…\Steam App 24420) (Version:  - Bit Blot)
Autodesk Application Manager (HKLM-x32\…\Autodesk Application Manager) (Version: 3.0.155.0 - Autodesk)
Autodesk DirectConnect 2015 64-bit (HKLM\…\Autodesk DirectConnect 2015 64-bit) (Version: 9.0.56.4 - Autodesk)
Autodesk DirectConnect 2015 64-bit (Version: 9.0.56.4 - Autodesk) Hidden
Autodesk Maya 2015 (HKLM\…\Autodesk Maya 2015) (Version: 15.0.1335.0 - Autodesk)
Autodesk Maya 2015 (Version: 15.0.1335.0 - Autodesk) Hidden
AVG (HKLM\…\AvgZen) (Version: 1.21.1.34102 - AVG Technologies)
AVG (Version: 16.7.7226 - AVG Technologies) Hidden
AVG 2016 (Version: 16.0.4457 - AVG Technologies) Hidden
AVG PC TuneUp (HKLM-x32\…\AVG PC TuneUp) (Version: 16.3.1.24857 - AVG Technologies)
AVG PC TuneUp (x32 Version: 16.3.3 - AVG Technologies) Hidden
AVG Protection (HKLM\…\AVG) (Version: 2016.7.7226 - AVG Technologies)
AVG Zen (Version: 1.21.6 - AVG Technologies) Hidden
Awesomenauts (HKLM-x32\…\Steam App 204300) (Version:  - Ronimo Games)
Baldur's Gate II: Enhanced Edition (HKLM-x32\…\Steam App 257350) (Version:  - Beamdog)
Baldur's Gate: Enhanced Edition (HKLM-x32\…\Steam App 228280) (Version:  - Overhaul Games)
Bandisoft MPEG-1 Decoder (HKLM-x32\…\BandiMPEG1) (Version:  - )
Bastion (HKLM-x32\…\Steam App 107100) (Version:  - Supergiant Games)
Batman: Arkham Asylum GOTY Edition (HKLM-x32\…\Steam App 35140) (Version:  - Rocksteady Studios)
Batman: Arkham City GOTY (HKLM-x32\…\Steam App 200260) (Version:  - )
Battle.net (HKLM-x32\…\Battle.net) (Version:  - Blizzard Entertainment)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Beyond Divinity (HKLM-x32\…\Steam App 219760) (Version:  - Larian Studios)
BioShock Infinite (HKLM-x32\…\Steam App 8870) (Version:  - Irrational Games)
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blio (HKLM-x32\…\{504CC891-B140-4E1B-860B-5E4C1DFBA9E3}) (Version: 2.0.5350 - K-NFB Reading Technology, Inc.)
Blood Omen 2: Legacy of Kain (HKLM-x32\…\Steam App 242960) (Version:  - )
Blood: One Unit Whole Blood (HKLM-x32\…\Steam App 299030) (Version:  - Monolith Productions)
Bonjour (HKLM\…\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Borderlands 2 (HKLM-x32\…\Steam App 49520) (Version:  - Gearbox Software)
BOSS (HKLM-x32\…\BOSS) (Version: 2.1.1 - BOSS Development Team)
Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden
Breath of Death VII  (HKLM-x32\…\Steam App 107300) (Version:  - Zeboyd Games)
Brütal Legend (HKLM-x32\…\Steam App 225260) (Version:  - Double Fine Productions)
Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden
Castlevania: Lords of Shadow - Ultimate Edition (HKLM-x32\…\Steam App 234080) (Version:  - MercurySteam - Climax Studios)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Course Vector .minerva (HKLM-x32\…\com.coursevector.minerva) (Version: 3.5.0 - UNKNOWN)
Course Vector .minerva (x32 Version: 3.5.0 - UNKNOWN) Hidden
Creation Kit (HKLM-x32\…\Steam App 202480) (Version:  - )
Cthulhu Saves the World  (HKLM-x32\…\Steam App 107310) (Version:  - Zeboyd Games)
Curse Client (HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
CyberLink DVD Suite Deluxe (HKLM-x32\…\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.3210 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Darkout (HKLM-x32\…\Steam App 257050) (Version:  - Allgraf)
Darksiders (HKLM-x32\…\Steam App 50620) (Version:  - Vigil Games)
Darksiders II (HKLM-x32\…\Steam App 50650) (Version:  - Vigil Games)
DarksidersInstaller (HKLM-x32\…\{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}) (Version: 1.00.1000 - THQ)
DC Universe Online (HKLM-x32\…\Steam App 24200) (Version:  - Sony Online Entertainment)
Dead Island (HKLM-x32\…\Steam App 91310) (Version:  - Techland)
Deus Ex: Human Revolution - The Missing Link (HKLM-x32\…\Steam App 201280) (Version:  - Eidos Montreal)
Deus Ex: Human Revolution (HKLM-x32\…\Steam App 28050) (Version:  - Eidos Montreal)
Diablo III (HKLM-x32\…\Diablo III) (Version:  - Blizzard Entertainment)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
Disciples 3: Reincarnation (HKLM-x32\…\Steam App 10270) (Version:  - Akella)
Disciples II: Gallean's Return (HKLM-x32\…\Steam App 1640) (Version:  - Strategy First)
Disciples II: Rise of the Elves (HKLM-x32\…\Steam App 1630) (Version:  - Strategy First)
Dishonored (HKLM-x32\…\Steam App 205100) (Version: 1.0 - Bethesda Softworks)
Divine Divinity (HKLM-x32\…\Steam App 214170) (Version:  - Larian Studios)
Divinity II: Developer's Cut (HKLM-x32\…\Steam App 219780) (Version:  - Larian Studios)
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dragon Age: Origins - Ultimate Edition (HKLM-x32\…\Steam App 47810) (Version:  - BioWare)
Dragon Age: Origins (HKLM-x32\…\{AEC81925-9C76-4707-84A9-40696C613ED3}) (Version: 1.04 - Electronic Arts, Inc.)
DRAGON BALL XENOVERSE (HKLM-x32\…\Steam App 323470) (Version:  - DIMPS)
Dual-Core Optimizer (HKLM-x32\…\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
Duke Nukem 3D: Megaton Edition (HKLM-x32\…\Steam App 225140) (Version:  - 3D Realms)
Dungeon Siege (HKLM-x32\…\Steam App 39190) (Version:  - Gas Powered Games)
Dungeon Siege 2 (HKLM-x32\…\Steam App 39200) (Version:  - Gas Powered Games)
Dungeon Siege III (HKLM-x32\…\Steam App 39160) (Version:  - Obsidian Entertainment)
Dust: An Elysian Tail (HKLM-x32\…\Steam App 236090) (Version:  - Humble Hearts LLC)
DVD Menu Pack for HP MediaSmart Video (HKLM-x32\…\InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 4.2.4412 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden
E.Y.E: Divine Cybermancy (HKLM-x32\…\Steam App 91700) (Version:  - )
EA Shared Game Component: Activation (HKLM-x32\…\com.ea.Activation.919CACB699904AC5D41B606703500DD39747C02D.1) (Version: 2.2.0.62 - Electronic Arts)
EA Shared Game Component: Activation (x32 Version: 2.2.0 - Electronic Arts) Hidden
Eador. Masters of the Broken World (HKLM-x32\…\Steam App 232050) (Version:  - )
Enclave (HKLM-x32\…\Steam App 253980) (Version:  - Topware)
Endless Space (HKLM-x32\…\Steam App 208140) (Version:  - Amplitude Studios)
Eryi's Action (HKLM-x32\…\Steam App 261700) (Version:  - Xtal Sword)
Escape Rosecliff Island (x32 Version: 2.2.0.95 - WildTangent) Hidden
EvilQuest (HKLM-x32\…\Steam App 263820) (Version:  - Chaosoft Games)
Faery - Legends of Avalon (HKLM-x32\…\Steam App 303790) (Version:  - Spiders Studio)
Fallen Enchantress: Legendary Heroes (HKLM-x32\…\Steam App 228260) (Version:  - Stardock Entertainment)
Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden
FastStone Image Viewer 4.6 (HKLM-x32\…\FastStone Image Viewer) (Version: 4.6 - FastStone Soft)
FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden
ffdshow [rev 3154] [2009-12-09] (HKLM-x32\…\ffdshow_is1) (Version: 1.0 - )
Final Drive Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden
FINAL FANTASY XIV: A Realm Reborn (HKLM-x32\…\Steam App 39210) (Version:  - SQUARE ENIX)
FMW 1 (Version: 1.22.2 - AVG Technologies) Hidden
Fraps (HKLM-x32\…\Fraps) (Version:  - )
Game Booster 3 (HKLM-x32\…\Game Booster_is1) (Version: 3.5 - IObit)
GameSalad Creator (HKLM-x32\…\{42C1A82C-0F7D-4B3E-AEA5-2BD75A5DF390}) (Version: 0.10.4.1 - GameSalad)
Geneforge 1 (HKLM-x32\…\Steam App 200960) (Version:  - Spiderweb Software)
Geneforge 2 (HKLM-x32\…\Steam App 200980) (Version:  - Spiderweb Software)
Geneforge 3 (HKLM-x32\…\Steam App 200990) (Version:  - Spiderweb Software)
Geneforge 4 (HKLM-x32\…\Steam App 201000) (Version:  - Spiderweb Software)
Geneforge 5 (HKLM-x32\…\Steam App 201010) (Version:  - Spiderweb Software)
Ghost Master (HKLM-x32\…\Steam App 6200) (Version:  - Sick Puppies)
GOG Galaxy (HKLM-x32\…\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version:  - GOG.com)
Gothic (HKLM-x32\…\Steam App 65540) (Version:  - Piranha – Bytes )
Gothic 3 (HKLM-x32\…\Steam App 39500) (Version:  - Piranha – Bytes )
Gothic II: Gold Edition (HKLM-x32\…\Steam App 39510) (Version:  - Piranha – Bytes)
Grim Dawn (HKLM-x32\…\Steam App 219990) (Version:  - Crate Entertainment)
Guild Wars 2 (HKLM-x32\…\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
Gunpoint (HKLM-x32\…\Steam App 206190) (Version:  - Suspicious Developments)
Guns of Icarus Online (HKLM-x32\…\Steam App 209080) (Version:  - Muse Games)
Haali Media Splitter (HKLM-x32\…\HaaliMkx) (Version:  - )
Half-Life 2 (HKLM-x32\…\Steam App 220) (Version:  - Valve)
Half-Life 2: Episode One (HKLM-x32\…\Steam App 380) (Version:  - Valve)
Half-Life 2: Episode Two (HKLM-x32\…\Steam App 420) (Version:  - Valve)
Half-Life 2: Lost Coast (HKLM-x32\…\Steam App 340) (Version:  - Valve)
Heretic: Shadow of the Serpent Riders (HKLM-x32\…\Steam App 2390) (Version:  - Raven Software)
Heroes of Hellas 2 - Olympia (x32 Version: 2.2.0.95 - WildTangent) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HeXen II (HKLM-x32\…\Steam App 9060) (Version:  - Raven Software)
HeXen: Beyond Heretic (HKLM-x32\…\Steam App 2360) (Version:  - Raven Software)
HeXen: Deathkings of the Dark Citadel (HKLM-x32\…\Steam App 2370) (Version:  - Raven Software)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\…\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Hitman 2: Silent Assassin (HKLM-x32\…\Steam App 6850) (Version:  - IO Interactive)
Hitman: Absolution (HKLM-x32\…\Steam App 203140) (Version:  - IO Interactive)
Hitman: Blood Money (HKLM-x32\…\Steam App 6860) (Version:  - IO Interactive)
Hitman: Contracts (HKLM-x32\…\Steam App 247430) (Version:  - )
Hitman: Sniper Challenge (HKLM-x32\…\Steam App 205930) (Version:  - IO Interactive)
HP Games (HKLM-x32\…\WildTangent hp Master Uninstall) (Version: 1.0.1.5 - WildTangent)
HP MediaSmart DVD (HKLM-x32\…\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 4.2.4521 - Hewlett-Packard)
HP MediaSmart Music (HKLM-x32\…\InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}) (Version: 4.2.4517 - Hewlett-Packard)
HP MediaSmart Photo (HKLM-x32\…\InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}) (Version: 4.2.4513 - Hewlett-Packard)
HP MediaSmart SmartMenu (HKLM\…\{A40F60B1-F1E1-452E-96A5-FF97F9A2D102}) (Version: 3.1.2.4 - Hewlett-Packard)
HP MediaSmart Video (HKLM-x32\…\InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}) (Version: 4.2.4522 - Hewlett-Packard)
HP MediaSmart/TouchSmart Netflix (HKLM-x32\…\{2EA3D6B2-157E-4112-A3AB-BF17E16661C3}) (Version: 1.0.4.0 - Hewlett-Packard)
HP MovieStore (HKLM-x32\…\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.0.2 - Hewlett-Packard)
HP Odometer (HKLM-x32\…\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Setup (HKLM-x32\…\{53469506-A37E-4314-A9D9-38724EC23A75}) (Version: 8.4.4400.3525 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\…\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.0.12844.3519 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\…\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\…\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Update (HKLM-x32\…\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\…\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.1.6.0 - Hewlett-Packard)
Hulu Desktop (HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\HuluDesktop) (Version: 0.9.13 - Hulu LLC)
IDT Audio (HKLM-x32\…\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6302.0 - IDT)
ImageShack Uploader 2.2.0 (HKLM-x32\…\{8BCD7AE7-F713-4D50-BAB9-7839B9386870}) (Version: 2.2.0 - ImageShack Corp.)
Intel(R) Management Engine Components (HKLM-x32\…\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\…\IrfanView) (Version: 4.30 - Irfan Skiljan)
iTunes (HKLM\…\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
Jade Empire: Special Edition (HKLM-x32\…\Steam App 7110) (Version:  - BioWare)
Java 8 Update 65 (64-bit) (HKLM\…\{26A24AE4-039D-4CA4-87B4-2F86418065F0}) (Version: 8.0.650.17 - Oracle Corporation)
Java 8 Update 65 (HKLM-x32\…\{26A24AE4-039D-4CA4-87B4-2F83218065F0}) (Version: 8.0.650.17 - Oracle Corporation)
Jewel Quest Solitaire 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kingdoms of Amalur: Reckoning (HKLM-x32\…\{6A9D1594-7791-48f5-9CAA-DE9BCB968320}) (Version: 1.0.0.0 - Electronic Arts)
King's Bounty: Armored Princess (HKLM-x32\…\Steam App 3170) (Version:  - Katauri Interactive)
King's Bounty: Crossworlds (HKLM-x32\…\Steam App 63910) (Version:  - Katauri Interactive)
King's Bounty: The Legend (HKLM-x32\…\Steam App 25900) (Version:  - 1C Company)
Kobo (HKLM-x32\…\Kobo) (Version: 1.6 - Kobo Inc.)
LabelPrint (HKLM-x32\…\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3130 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.3130 - CyberLink Corp.) Hidden
Legacy of Kain: Soul Reaver (HKLM-x32\…\Steam App 224920) (Version:  - Crystal Dynamics)
Legacy of Kain: Soul Reaver 2 (HKLM-x32\…\Steam App 224940) (Version:  - Crystal Dynamics)
Legend of Grimrock (HKLM-x32\…\Steam App 207170) (Version:  - Almost Human Games)
LightScribe System Software (HKLM-x32\…\{46BA053F-57B3-4153-BDB6-D37EEC8B12D7}) (Version: 1.18.15.1 - LightScribe)
LOOT (HKLM-x32\…\LOOT) (Version: 0.7.0 - LOOT Development Team)
Magicka (HKLM-x32\…\Steam App 42910) (Version:  - Arrowhead Game Studios AB)
Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\…\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Mark of the Ninja (HKLM-x32\…\Steam App 214560) (Version:  - Klei Entertainment)
Mass Effect 2 (HKLM-x32\…\Steam App 24980) (Version:  - BioWare)
MeCab 0.98 (HKLM-x32\…\MeCab_is1) (Version: 0.98 - Taku Kudo)
mental ray renderer for Autodesk Maya 2015 (HKLM\…\{BDF821F0-D64C-421D-0052-A9B995B20873}) (Version: 15.0.1335.0 - mental ray)
Microsoft .NET Framework 1.1 (HKLM-x32\…\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 4.5.2 (HKLM\…\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\…\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\…\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\…\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\…\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\…\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\…\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\…\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\…\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\…\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\…\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\…\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\…\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\…\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\…\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\…\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\…\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\…\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\…\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\…\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\…\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\…\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\…\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\…\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\…\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mirror's Edge (HKLM-x32\…\Steam App 17410) (Version:  - DICE)
Movie Theme Pack for HP MediaSmart Video (HKLM-x32\…\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 4.2.4412 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden
Mozilla Firefox 41.0.2 (x86 en-US) (HKLM-x32\…\Mozilla Firefox 41.0.2 (x86 en-US)) (Version: 41.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\…\MozillaMaintenanceService) (Version: 41.0.2.5765 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\…\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\…\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mumble 1.2.4 (HKLM-x32\…\{E0955568-4353-4C85-8988-285A8C0F5E87}) (Version: 1.2.4 - Thorvald Natvig)
My Game Long Name (HKLM\…\UDK-8a3d9af9-dc6f-4d79-a3ff-317bd21d1714) (Version:  - Epic Games, Inc.)
Mystery P.I. - The London Caper (x32 Version: 2.2.0.95 - WildTangent) Hidden
NCsoft Launcher (HKLM-x32\…\{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}) (Version: 1.5.19002 - NCsoft)
Nexon Game Manager (HKLM-x32\…\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version:  - )
Norton Online Backup (HKLM-x32\…\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
NVIDIA PhysX (HKLM-x32\…\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
Oblivion - Construction Set (HKLM-x32\…\{23D683DD-93C6-48E6-B84E-78B57778F126}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion (HKLM-x32\…\{35CB6715-41F8-4F99-8881-6FC75BF054B0}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion mod manager 1.1.12 (HKLM-x32\…\Oblivion mod manager_is1) (Version:  - Timeslip)
OpenAL (HKLM-x32\…\OpenAL) (Version:  - )
Orcs Must Die! 2 (HKLM-x32\…\Steam App 201790) (Version:  - Robot Entertainment)
Origin (HKLM-x32\…\Origin) (Version: 8.5.2.23 - Electronic Arts, Inc.)
Paper Sorcerer (HKLM-x32\…\Steam App 263560) (Version:  - Jesse Gallagher)
Path of Exile (HKLM-x32\…\{90A4562F-D4A1-4B65-906D-41F236CF6902}) (Version: 0.11.6.27932 - Grinding Gear Games)
Path of Exile (HKLM-x32\…\Steam App 238960) (Version:  - Grinding Gear Games)
PDF Complete Special Edition (HKLM-x32\…\PDF Complete) (Version: 4.0.9 - PDF Complete, Inc)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
Penny Arcade's On the Rain-Slick Precipice of Darkness 3 (HKLM-x32\…\Steam App 213030) (Version:  - Zeboyd Games)
Penny Arcade's On the Rain-Slick Precipice of Darkness 4 (HKLM-x32\…\Steam App 237570) (Version:  - Zeboyd Games)
PhotoNow! (HKLM-x32\…\InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.7717 - CyberLink Corp.)
PhotoNow! (x32 Version: 1.1.7717 - CyberLink Corp.) Hidden
PictureMover (HKLM-x32\…\{264FE20A-757B-492a-B0C3-4009E2997D8A}) (Version: 3.5.0.33 - Hewlett-Packard Company)
Pixel Piracy (HKLM-x32\…\Steam App 264140) (Version:  - Vitali Kirpu)
Planet Explorers (HKLM-x32\…\Steam App 237870) (Version:  - Pathea Games)
PlanetSide 2 (HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\SOE-PlanetSide 2) (Version:  - Sony Online Entertainment)
Plants vs. Zombies (x32 Version: 2.2.0.95 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\…\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\…\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Portal (HKLM-x32\…\Steam App 400) (Version:  - Valve)
Portal 2 (HKLM-x32\…\Steam App 620) (Version:  - Valve)
Portal 2 Publishing Tool (HKLM-x32\…\Steam App 644) (Version:  - )
Power2Go (HKLM-x32\…\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4329 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.4329 - CyberLink Corp.) Hidden
PowerDirector (HKLM-x32\…\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3129 - CyberLink Corp.)
PowerDirector (x32 Version: 8.0.3129 - CyberLink Corp.) Hidden
PressReader (HKLM-x32\…\{912CED74-88D3-4C5B-ACB0-13231864975E}) (Version: 5.10.1102.0 -  NewspaperDirect Inc.)
Psychonauts (HKLM-x32\…\Steam App 3830) (Version:  - Double Fine Productions)
QuickTime 7 (HKLM-x32\…\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Raptr (HKLM-x32\…\Raptr) (Version:  - )
Recovery Manager (x32 Version: 5.5.3219 - CyberLink Corp.) Hidden
RGSS-RTP Standard (HKLM-x32\…\RGSS-RTP Standard_is1) (Version: 1.03 - Enterbrain)
Rogue Legacy (HKLM-x32\…\Steam App 241600) (Version:  - Cellar Door Games)
RoxioNow Player (HKLM-x32\…\{0EDEB615-1A60-425E-8306-0E10519C7B55}) (Version: 1.9.5.101 - RoxioNow)
RPG Maker VX Ace (HKLM-x32\…\Steam App 220700) (Version:  - Enterbrain)
RPG MAKER VX Ace RTP (HKLM-x32\…\RPGVXAce_RTP_is1) (Version: 1.00 - Enterbrain)
RPGツクール2000 ランタイムパッケージ (HKLM-x32\…\{33F7A957-A66D-45A1-BADF-6576083B14E2}) (Version:  - )
RPGツクール2003 ランタイムパッケージ (HKLM-x32\…\{0044AEC7-8924-4FB1-B4F7-FD14A5FEA9E4}) (Version:  - )
RPGツクールVX RTP (HKLM-x32\…\RPGツクールVX RTP_is1) (Version: 1.02 - Enterbrain)
Rune Classic (HKLM-x32\…\Steam App 210950) (Version:  - Human Head Studios)
Sacred 2 Gold (HKLM-x32\…\Steam App 225640) (Version:  - Ascaron)
Sacred Gold (HKLM-x32\…\Steam App 12320) (Version:  - Ascaron Entertainment ltd.)
Sacrifice (HKLM-x32\…\Steam App 38440) (Version:  - Shiny Entertainment)
Saints Row 2 (HKLM-x32\…\1430740458_is1) (Version: 2.1.0.5 - GOG.com)
Saints Row IV (HKLM-x32\…\Steam App 206420) (Version:  - Deep Silver Volition)
Sanctum 2 (HKLM-x32\…\Steam App 210770) (Version:  - Coffee Stain Studios)
Septerra Core (HKLM-x32\…\Steam App 253940) (Version:  - )
Serious Sam 3: BFE (HKLM-x32\…\Steam App 41070) (Version:  - Croteam)
Shadow Man (HKLM-x32\…\Steam App 251770) (Version:  - Acclaim Studios Teeside)
Shadow Warrior (HKLM-x32\…\Steam App 233130) (Version:  - Flying Wild Hog)
Shadow Warrior Classic Redux (HKLM-x32\…\Steam App 225160) (Version:  - 3D Realms)
Shadowrun Returns (HKLM-x32\…\Steam App 234650) (Version:  - Harebrained Schemes)
Shantae: Risky's Revenge - Director's Cut (HKLM-x32\…\Steam App 277890) (Version:  - WayForward)
Sins of a Solar Empire: Rebellion (HKLM-x32\…\Steam App 204880) (Version:  - Ironclad Games)
Skullgirls (HKLM-x32\…\Steam App 245170) (Version:  - Lab Zero Games)
Skullgirls ∞Endless Beta∞ (HKLM-x32\…\Steam App 208610) (Version:  - )
Smite (HKLM-x32\…\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 1.0.2151.5 - Hi-Rez Studios)
Speccy (HKLM\…\Speccy) (Version: 1.28 - Piriform)
SPORE(TM) (HKLM-x32\…\{9DF0196F-B6B8-4C3A-8790-DE42AA530101}) (Version: 1.05.0001 - Electronic Arts)
SPORE™ Creepy & Cute Parts Pack (HKLM-x32\…\{C07F8D75-7A8D-400E-A8F9-A3F396B49BB1}) (Version: 1.00.0000 - Electronic Arts)
SPORE™ Galactic Adventures (HKLM-x32\…\{63CEA2E4-4FE7-4F2C-B388-C1313D24157C}) (Version: 1.01.0001 - Electronic Arts)
Spybot - Search & Destroy (HKLM-x32\…\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.0.12 - Safer-Networking Ltd.)
Star Wars - Jedi Knight II: Jedi Outcast (HKLM-x32\…\Steam App 6030) (Version:  - LucasArts)
Star Wars Jedi Knight: Jedi Academy (HKLM-x32\…\Steam App 6020) (Version:  - LucasArts)
Starbound (HKLM-x32\…\Steam App 211820) (Version:  - )
Steam (HKLM-x32\…\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Summoner (HKLM-x32\…\Steam App 275570) (Version:  - Volition)
System Shock 2 (HKLM-x32\…\Steam App 238210) (Version:  - )
Team Fortress 2 Beta (HKLM-x32\…\Steam App 520) (Version:  - Valve)
TeamSpeak 3 Client (HKLM\…\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)
TEdit 3 (HKLM-x32\…\{56642CE5-5D04-4A3D-B774-754499672E39}) (Version: 3.5.14228.27 - BinaryConstruct)
Terrafirma (HKLM-x32\…\{9EA1E037-86B8-496B-9C8C-31B3E3017C53}) (Version: 2.2.2.0 - Sean Kasun)
Terraria (HKLM-x32\…\Steam App 105600) (Version:  - )
The Book of Legends (HKLM-x32\…\Steam App 277470) (Version:  - Aldorlea Games)
The Elder Scrolls V: Skyrim (HKLM-x32\…\Steam App 72850) (Version:  - Bethesda Game Studios)
The Secret World (HKLM-x32\…\Steam App 215280) (Version:  - Funcom)
The Secret World (HKLM-x32\…\The Secret World_is1) (Version: 1.0.0 - Funcom)
The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\…\Steam App 20920) (Version:  - CD Projekt RED)
The Witcher: Enhanced Edition (HKLM-x32\…\Steam App 20900) (Version:  - CD Projekt RED)
Thief (HKLM-x32\…\Steam App 239160) (Version:  - Eidos-Montréal)
Thief 2 (HKLM-x32\…\Steam App 211740) (Version:  - Looking Glass Studios)
Thief Gold (HKLM-x32\…\Steam App 211600) (Version:  - Looking Glass Studios)
Thief: Deadly Shadows (HKLM-x32\…\Steam App 6980) (Version:  - Eidos)
Titan Quest (HKLM-x32\…\Steam App 4540) (Version:  - Iron Lore Entertainment)
Titan Quest: Immortal Throne (HKLM-x32\…\Steam App 4550) (Version:  - Iron Lore Entertainment)
Torchlight II (HKLM-x32\…\Steam App 200710) (Version:  - )
Total War: SHOGUN 2 (HKLM-x32\…\Steam App 34330) (Version:  - The Creative Assembly)
Transistor (HKLM-x32\…\Steam App 237930) (Version:  - Supergiant Games)
Trine (HKLM-x32\…\Steam App 35700) (Version:  - Frozenbyte)
Trine 2 (HKLM-x32\…\Steam App 35720) (Version:  - Frozenbyte)
Unholy Heights (HKLM-x32\…\Steam App 249330) (Version:  - )
Unity (HKLM-x32\…\Unity) (Version:  - Unity Technologies ApS)
Unity Web Player (HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Unofficial Oblivion Patch v3.2.0 (HKLM-x32\…\Unofficial Oblivion Patch_is1) (Version: 3.2.0 - Quarn and Kivan)
Unofficial Shivering Isles Patch v1.4.0 (HKLM-x32\…\Unofficial Shivering Isles Patch_is1) (Version: 1.4.0 - Quarn and Kivan)
Vampire: The Masquerade - Bloodlines (HKLM-x32\…\Steam App 2600) (Version:  - Activision)
Ventrilo Client (HKLM-x32\…\{789289CA-F73A-4A16-A331-54D498CE069F}) (Version: 3.0.8 - Flagship Industries, Inc.)
Virtual Families (x32 Version: 2.2.0.95 - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden
Visual Studio 2012 x64 Redistributables (HKLM\…\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\…\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
War for the Overworld Bedrock Beta (HKLM-x32\…\Steam App 230190) (Version:  - Subterranean Games)
Warhammer® 40,000™: Dawn of War® II - Chaos Rising™ (HKLM-x32\…\Steam App 20570) (Version:  - Relic Entertainment)
Warhammer® 40,000™: Dawn of War® II – Retribution™ (HKLM-x32\…\Steam App 56400) (Version:  - Relic Entertainment)
Warhammer® 40,000™: Dawn of War® II (HKLM-x32\…\Steam App 15620) (Version:  - Relic Entertainment)
Warlock - Master of the Arcane (HKLM-x32\…\Steam App 203630) (Version:  - Ino-Co Plus)
Wheel of Fortune 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
WildStar (HKLM-x32\…\WildStar) (Version:  - NCSOFT)
Windows Live Essentials (HKLM-x32\…\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Worms Revolution (HKLM-x32\…\Steam App 200170) (Version:  - Team17 Digital Ltd.)
Wrye Bash (HKLM-x32\…\Wrye Bash) (Version: 0.3.0.5 - Wrye & Wrye Bash Development Team)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\…\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
Zinio Reader 4 (HKLM-x32\…\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1) (Version: 4.0.3184 - Zinio LLC)
Zinio Reader 4 (x32 Version: 4.0.3184 - Zinio LLC) Hidden
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

01-11-2015 07:05:49 Windows Update
01-11-2015 08:27:28 Windows Update
05-11-2015 09:56:24 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
05-11-2015 12:01:57 Installed DirectX

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 18:34 - 2009-06-10 13:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {011ED683-BB50-423F-9BF2-29EB0C2E9A84} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {0FD1EA11-743B-47C1-AA8D-E39EF54B8AC4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-10-20] (Hewlett-Packard)
Task: {1ECE2582-2BCC-4566-B022-B9C6676839F3} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-10-06] (Oracle Corporation)
Task: {5D953089-FF8A-4450-9AB0-D03F3BBDD808} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-08-23] ()
Task: {921C01B7-A6D2-491D-A236-24D5373E45BA} - System32\Tasks\HPCeeScheduleForTroy => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {9C454984-C044-49BC-8493-451B01CEE7EA} - System32\Tasks\{96C362FD-FE05-4EE8-A0A4-246AEAD294CE} => pcalua.exe -a "C:\Program Files (x86)\Steam\bin\SteamService.exe" -d "C:\Program Files (x86)\Steam" -c /installscript "c:\program files (x86)\steam\steamapps\common\terraria\runasadmin.vdf" 105600
Task: {B3EDAC83-3D9B-4F54-879A-9F0E5E1A8365} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe [2015-10-14] (AVG Technologies CZ, s.r.o.)
Task: {D076CC1A-0BBD-4079-9777-690515141D5F} - System32\Tasks\Symantec\Norton Error Processor 18.7.2.3 => C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\SymErr.exe
Task: {D3DC04EB-DD89-4A9F-AB3A-7F7C4B29BA0B} - \SaveSense -> No File <==== ATTENTION
Task: {D3E6F86B-405A-4657-95EF-E64FFDA59975} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {D86B5248-BF19-4610-B9A5-0926D3F729AA} - System32\Tasks\Symantec\Norton Error Analyzer 18.7.2.3 => C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\SymErr.exe
Task: {DB967A3B-7555-4AA7-9A20-B7F527B2120E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {E0A85302-353F-43AF-9C6B-0649CD58CEB7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-10-20] (Hewlett-Packard)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForTroy.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe

==================== Loaded Modules (Whitelisted) ==============

2011-08-30 11:59 - 2010-04-23 09:34 - 00016384 _____ () C:\Users\Troy\AppData\Local\Temp\RarSFX0\AutoInstallEJCDSVC.exe
2010-09-15 10:31 - 2010-09-15 10:31 - 00611896 _____ () C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
2011-08-30 11:59 - 2010-04-23 09:34 - 00040960 _____ () C:\Users\Troy\AppData\Local\Temp\RarSFX0\AutoEJCD.exe
2011-08-30 11:59 - 2010-04-23 09:34 - 01191936 _____ () C:\Program Files (x86)\Qwest 11n Wireless WPS Tool\WpsCenterV.exe
2014-05-01 17:01 - 2014-06-20 22:19 - 00047496 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\QtSolutions_Service-head.dll
2014-05-01 17:01 - 2014-06-20 22:19 - 00104328 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\qjson0.dll
2014-02-12 19:58 - 2014-02-12 19:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-10-11 13:05 - 2014-10-11 13:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2011-08-24 15:41 - 2010-09-28 11:59 - 12286008 _____ () C:\Users\Troy\AppData\Roaming\PictureMover\Bin\Core.dll
2009-07-13 13:03 - 2009-07-13 17:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll
2011-08-24 15:41 - 2010-09-28 12:10 - 01699384 _____ () C:\Users\Troy\AppData\Roaming\PictureMover\EN-US\Presentation.dll
2011-08-30 11:59 - 2010-04-23 09:34 - 00425984 _____ () C:\Program Files (x86)\Qwest 11n Wireless WPS Tool\NICDLLV.dll
2013-03-30 18:13 - 2012-11-13 13:06 - 00528288 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\JSDialogPack150.bpl
2013-03-30 18:13 - 2012-11-13 13:06 - 00108960 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2013-03-30 18:13 - 2012-11-13 13:06 - 00416160 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2013-03-30 18:13 - 2012-11-13 13:06 - 00158624 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2013-03-30 18:13 - 2012-11-13 13:06 - 00554400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\VirtualTreesDXE150.bpl
2015-10-31 08:11 - 2015-10-31 08:10 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll
2013-03-30 18:13 - 2012-08-23 08:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 45069312 _____ () C:\Program Files (x86)\GalaxyClient\libcef.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00566272 _____ () C:\Program Files (x86)\GalaxyClient\PocoUtil.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00515072 _____ () C:\Program Files (x86)\GalaxyClient\PocoXML.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00139776 _____ () C:\Program Files (x86)\GalaxyClient\expat.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 01785344 _____ () C:\Program Files (x86)\GalaxyClient\PocoFoundation.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00412672 _____ () C:\Program Files (x86)\GalaxyClient\pcre.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00094208 _____ () C:\Program Files (x86)\GalaxyClient\zlib.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00414208 _____ () C:\Program Files (x86)\GalaxyClient\PocoJSON.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 01202176 _____ () C:\Program Files (x86)\GalaxyClient\PocoNet.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 02579456 _____ () C:\Program Files (x86)\GalaxyClient\PocoData.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00476672 _____ () C:\Program Files (x86)\GalaxyClient\PocoDataSQLite.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00666624 _____ () C:\Program Files (x86)\GalaxyClient\sqlite.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00340480 _____ () C:\Program Files (x86)\GalaxyClient\PocoZip.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00332288 _____ () C:\Program Files (x86)\GalaxyClient\PocoNetSSL.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00172032 _____ () C:\Program Files (x86)\GalaxyClient\PocoCrypto.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00107520 _____ () C:\Program Files (x86)\GalaxyClient\ZLIB1.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 01643008 _____ () C:\Program Files (x86)\GalaxyClient\libglesv2.dll
2015-11-05 09:56 - 2015-10-14 13:27 - 00074752 _____ () C:\Program Files (x86)\GalaxyClient\libegl.dll
2015-10-19 08:05 - 2015-10-19 08:05 - 17599688 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\…\sony.com -> sony.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Troy\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1 - [removed]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: eventlog => 2

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E065BBC7-5581-4033-B4EA-AACAA4936FD4}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDirector\PDR8.EXE
FirewallRules: [{D553572E-9659-4F40-A7FB-0512C0E9C97D}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe
FirewallRules: [{0E5E6135-DB8B-43C7-93E5-1A986D6BE71C}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\MediaSmart\Photo\HPMediaSmartPhoto.exe
FirewallRules: [{9415250B-B9A0-4D03-B5BE-8BA54E5136A7}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\MediaSmart\Video\HPMediaSmartVideo.exe
FirewallRules: [{FE0C8055-1FC3-4E79-A3E0-D964A780B25F}] => (Allow) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowShell.exe
FirewallRules: [{00E04253-959B-4781-AB48-14C54ED80AC8}] => (Allow) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowShell.exe
FirewallRules: [{F8D5D64F-E1D5-4493-BB94-491A8DB08A10}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\MediaSmart\RoxioNow\RNow.exe
FirewallRules: [{F87ED3A5-3435-4121-9F71-97DAA22E2596}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\MediaSmart\RoxioNow\RNow.exe
FirewallRules: [{15B3580E-FF65-4683-AB37-DBEC953CED8F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{B1F7AE00-CF42-4858-8500-9A5325937004}] => (Allow) LPort=2869
FirewallRules: [{5DC71AD5-867C-4F35-907A-746C08A26E9A}] => (Allow) LPort=1900
FirewallRules: [{E3EBB216-344A-4D43-ABF7-7D71AF1BD57A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5673E619-0BED-4348-94D1-9E0C331EF7A2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{B1AEF2AE-3FC0-46AE-ACE1-A5EAC4405845}] => (Allow) C:\Program Files (x86)\World of Warcraft\Launcher.exe
FirewallRules: [{039FA837-4AFC-4044-A593-34968D21C114}] => (Allow) C:\Program Files (x86)\World of Warcraft\Launcher.exe
FirewallRules: [{D613DEB7-795B-45C6-8FCF-CB7AE7CB937C}] => (Allow) C:\Program Files (x86)\Ventrilo\Ventrilo.exe
FirewallRules: [{45275313-6DD3-4D79-BC7C-A51B2C3BEBA3}] => (Allow) C:\Program Files (x86)\Ventrilo\Ventrilo.exe
FirewallRules: [{663F83EA-0200-4A7B-8343-D97E5847DCFD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\thief deadly shadows\System\runme.exe
FirewallRules: [{C2D72B0E-BDFD-4D4C-A851-BAC04F1574DC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\thief deadly shadows\System\runme.exe
FirewallRules: [TCP Query User{ED0D8E10-4A31-4E02-A663-6EBEF9C2EDFD}C:\program files (x86)\starcraft ii\versions\base19132\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base19132\sc2.exe
FirewallRules: [UDP Query User{1A4B867C-FAB2-4B26-AC89-5F382391AEAE}C:\program files (x86)\starcraft ii\versions\base19132\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base19132\sc2.exe
FirewallRules: [{6993A492-B717-4A13-BFC0-FA587E4D369B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi outcast\GameData\jk2sp.exe
FirewallRules: [{67134F54-6FD6-4C5F-9540-698D8D41AE76}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi outcast\GameData\jk2sp.exe
FirewallRules: [{32E94135-7914-4E4C-93BB-8E0DC8D4E94A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi outcast\GameData\jk2mp.exe
FirewallRules: [{903CD669-5AFF-4372-87A8-CEDBB407ABCF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi outcast\GameData\jk2mp.exe
FirewallRules: [{0B989505-CA68-4D55-9170-5315A46C4F1E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi academy\GameData\jasp.exe
FirewallRules: [{8A020166-F136-4B6E-9DC0-8D91B8643E6E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi academy\GameData\jasp.exe
FirewallRules: [{25FB9BCC-9D91-41C1-BFB6-285AE0DD9595}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi academy\GameData\jamp.exe
FirewallRules: [{B0B4F192-E476-4895-9671-F164AA670D8F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\jedi academy\GameData\jamp.exe
FirewallRules: [{962E2EC8-246B-4815-9260-7C03E4413072}] => (Allow) C:\Program Files (x86)\Origin\Origin.exe
FirewallRules: [{C58D9B04-ECC1-46F1-A54C-4E98CFDC0B19}] => (Allow) C:\Program Files (x86)\Origin\Origin.exe
FirewallRules: [{4A701F62-371A-4485-91AD-9702F349759F}] => (Allow) C:\Program Files (x86)\Origin\Origin.exe
FirewallRules: [{2A3527BE-304B-4AB4-BDF6-39F290B4A668}] => (Allow) C:\Program Files (x86)\Origin\Origin.exe
FirewallRules: [{59AE974A-F4A4-46C5-9410-61C1494156A0}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{8745A885-A7AF-4817-A9CE-C451092C0A1C}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{4D58399B-7AF0-46DB-9EA8-0E7F792FC49D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\deus ex - human revolution\dxhr.exe
FirewallRules: [{B5E93702-4BAD-4611-8679-BD4B044B2AF9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\deus ex - human revolution\dxhr.exe
FirewallRules: [{C56D0A69-7167-44A8-99F8-0776C23FD9C9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Vampire The Masquerade - Bloodlines\vampire.exe
FirewallRules: [{FD3937D8-DD42-416E-86A8-4FBBAB6F2E6C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Vampire The Masquerade - Bloodlines\vampire.exe
FirewallRules: [{8492D381-B435-4C47-A1D0-21B3C98CAE5A}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daorigins.exe
FirewallRules: [{4D8A3302-199F-47D0-A22E-887B3CCDAE6A}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daorigins.exe
FirewallRules: [{BB28CFA4-682A-4FEE-981F-2DE46E4F8B2B}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\DAOriginsLauncher.exe
FirewallRules: [{F0EF2D12-5AA6-4E39-A55D-D36DA50458E7}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\DAOriginsLauncher.exe
FirewallRules: [{56E30550-9B87-434F-8F90-BD985EFF754D}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daupdatersvc.service.exe
FirewallRules: [{68112A58-9A05-4D37-82D5-0A3D6431E2B2}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daupdatersvc.service.exe
FirewallRules: [{B072E354-1530-4C4F-A27B-ADD6A4D9A11B}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daupdatersvc.service.exe
FirewallRules: [{381944F0-419D-4000-AE25-8A6B8A8C2A6F}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daupdatersvc.service.exe
FirewallRules: [{2BED3A71-3C83-4805-B40B-07454F1FCC6A}] => (Allow) C:\Program Files (x86)\Funcom\The Secret World\ClientPatcher.exe
FirewallRules: [{C0357FBA-5195-4A61-8B35-69194981E9F1}] => (Allow) C:\Program Files (x86)\Funcom\The Secret World\ClientPatcher.exe
FirewallRules: [{FFFC65F2-A26C-4A27-B097-E94650A87BE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jade Empire\JadeEmpireLauncher.exe
FirewallRules: [{581E191D-002D-4522-BB6F-11971657715A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jade Empire\JadeEmpireLauncher.exe
FirewallRules: [{E426EF55-380D-4E05-B361-991BDD81D5E6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jade Empire\JadeEmpireConfig.exe
FirewallRules: [{72A224F9-50F2-4D40-9CB9-30AF94EB7A07}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jade Empire\JadeEmpireConfig.exe
FirewallRules: [{63D580E0-135E-42B6-9320-6EB4E69F15E0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DC Universe Online\LaunchPad.exe
FirewallRules: [{6AA625CD-BE6F-4F26-A66E-A96229353AE0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DC Universe Online\LaunchPad.exe
FirewallRules: [TCP Query User{8C8D0D4E-3149-41B2-B1B5-348AAF8AF956}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe
FirewallRules: [UDP Query User{81FE10CD-6AC9-4042-9621-10B8035686CE}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe
FirewallRules: [TCP Query User{ADC6ECAE-B8FE-447E-862F-FA4BD05130D8}C:\users\troy\appdata\local\temp\gw2.exe] => (Allow) C:\users\troy\appdata\local\temp\gw2.exe
FirewallRules: [UDP Query User{D88ACF23-FDFD-45E0-9563-D569CB8C17E1}C:\users\troy\appdata\local\temp\gw2.exe] => (Allow) C:\users\troy\appdata\local\temp\gw2.exe
FirewallRules: [{077DAE94-ABB4-4466-9073-4A989EC1D070}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dxhrml\dxhrml.exe
FirewallRules: [{B3E2D10E-6AAD-43B9-A7F2-97E5935C7B5D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dxhrml\dxhrml.exe
FirewallRules: [{5C1ADFB4-3583-451A-9071-35CC00517FC6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dead island\DeadIslandGame.exe
FirewallRules: [{C914780A-410E-4076-880B-35661FD74741}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dead island\DeadIslandGame.exe
FirewallRules: [{BA413915-3581-4564-B723-3676D93F81F9}] => (Allow) C:\Program Files (x86)\Origin Games\Kingdoms of Amalur Reckoning\Reckoning.exe
FirewallRules: [{7BB924B5-42F0-4915-9D9D-D53BCCCD52C4}] => (Allow) C:\Program Files (x86)\Origin Games\Kingdoms of Amalur Reckoning\Reckoning.exe
FirewallRules: [TCP Query User{FE8D9062-EC61-46E6-9EA5-6CE87A59BFFA}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe
FirewallRules: [UDP Query User{1049CC1C-0699-415D-8494-9EE9CA18F3D8}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe
FirewallRules: [{BFE9D9AB-5AB1-4AF5-B56F-B169F6B37610}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{DE20FA58-CBE4-49C4-AECD-E74B84693D87}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0DB49B42-5E54-4835-8E57-A01B3893B2EC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0AB47E3B-4A2B-4736-9FAA-A648D477FEA2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{ED6CF789-804E-49B3-987B-1AB7D44EB649}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeons and Dragons Online\dndclient.exe
FirewallRules: [{B8D484DA-5A5C-441F-B5FF-D548D52C7784}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeons and Dragons Online\dndclient.exe
FirewallRules: [{222974B0-7F25-4DEC-BE3D-5820595B70EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeons and Dragons Online\TurbineLauncher.exe
FirewallRules: [{686F2359-2AFF-42BB-A1A6-BF4D51A65177}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeons and Dragons Online\TurbineLauncher.exe
FirewallRules: [{D697BC14-0E6B-485C-A66A-6B19BED05A50}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeons and Dragons Online\dndlauncher.exe
FirewallRules: [{C7F45345-9C2E-4C04-86A2-8403C10FCAB2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeons and Dragons Online\dndlauncher.exe
FirewallRules: [{0AFDB92B-8E91-4188-AED9-D89DA09A1165}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aquaria\Aquaria.exe
FirewallRules: [{83FACA9E-7F2A-4EF5-B0E4-265BD975A2D2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aquaria\Aquaria.exe
FirewallRules: [{7F72122C-8F49-40BB-971F-107261803310}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{716C9294-DABA-4F37-B533-95A1BC760875}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{05C77006-C9E5-4FDC-B54C-B2CE2B65F11E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bastion\Bastion.exe
FirewallRules: [{A17A2A47-2979-4EF3-B9C2-CEAABFC36363}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bastion\Bastion.exe
FirewallRules: [{4DEC0F7D-11BB-4D87-9F79-93DCC4C12274}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hexen 2\glh2.exe
FirewallRules: [{06D62A92-52BF-4B33-9A9D-7475F1908DA4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hexen 2\glh2.exe
FirewallRules: [{25A3A2C6-9991-4BB1-B372-6251656F83B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heretic Shadow of the Serpent Riders\base\dosbox.exe
FirewallRules: [{BB9AAAB1-9A8E-4B61-9B6F-A39A12F7BB3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heretic Shadow of the Serpent Riders\base\dosbox.exe
FirewallRules: [{B7AB5743-D875-4253-BB1F-09E28A564D49}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hexen Deathkings of the Dark Citadel\base\dosbox.exe
FirewallRules: [{AF90D5E3-DAC8-44FF-8380-2D72B41213BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hexen Deathkings of the Dark Citadel\base\dosbox.exe
FirewallRules: [{8E065ED2-07B7-4B75-A86C-69F7B3A567E6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hexen\base\dosbox.exe
FirewallRules: [{C2BFA651-59E1-4759-AEE6-E38F66AC7BA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hexen\base\dosbox.exe
FirewallRules: [{A96FAC08-264E-4B2D-BD0E-D756A7260436}] => (Allow) C:\ProgramData\NexonUS\NGM\NGM.exe
FirewallRules: [{F4B30058-629F-4BB5-B986-2D4B90BA466E}] => (Allow) C:\ProgramData\NexonUS\NGM\NGM.exe
FirewallRules: [{882D870F-1A3E-497D-9FAD-6C15716DF063}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{5D4E1443-19F7-4E0B-A20F-8BB3596B7F7E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{3A210F58-099E-45F4-AA68-88ABE05F1D4E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{DD531F95-CAFE-4DC9-8876-92F56D340C8D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{65D6A05F-22F0-47CB-8923-BCD27A7C318D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2 Beta\hl2.exe
FirewallRules: [{7506D911-D5EA-4058-BE87-AE92DDBF89CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2 Beta\hl2.exe
FirewallRules: [{6CC37A88-3573-46FF-AA53-7AD6D07733C7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{2C117D13-4CFD-474E-9314-8064BB0BC15E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{10FF0426-3D71-439D-A4DC-D3E7669184B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{53AB969A-1659-41F3-B7DB-5B5935866B99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{BE1FCE96-A878-4AB2-97E4-7B6BBA7767A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe
FirewallRules: [{54AE77CC-C27C-41CE-8D0A-7EADA4BC51D0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe
FirewallRules: [{71C929C6-4C59-468D-96EE-2699B56F0A4E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gunpoint\Gunpoint.exe
FirewallRules: [{EF83EE1E-EEB3-4CCB-A3AF-5E788E13FFDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gunpoint\Gunpoint.exe
FirewallRules: [{88A142E8-37EA-4B66-9684-58951FA4D292}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal\hl2.exe
FirewallRules: [{E7D9A79C-33C0-4E0D-9FAA-5F4786A81411}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal\hl2.exe
FirewallRules: [{B82A1A6F-BBFA-4BF8-819B-C67EE61E3EE5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{9DAB8846-47E6-4B2B-B3D9-5926C1143502}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{3183B16B-60A7-4E36-A8B0-AB3FB2CED3F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{A2BF832B-8CD4-436F-886B-524A9F814A08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{D0D9827B-2D14-41A5-A195-E36ECE708C44}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{6606FFF4-736F-4E32-B7A6-65D6D06C442A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{A1BF7C85-3725-4927-AC60-6B097E5AFC7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legend of Grimrock\grimrock.exe
FirewallRules: [{0EDFAB94-04E5-4269-8A3B-DAD35ACA8A80}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legend of Grimrock\grimrock.exe
FirewallRules: [{E356523A-4741-42DD-9844-07BE341BDC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Darksiders 2\Darksiders2.exe
FirewallRules: [{F9D7912A-8CDF-4BA7-BC29-010BF2960E0E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Darksiders 2\Darksiders2.exe
FirewallRules: [{410AA7DF-FE83-4A2E-875C-774D6630A663}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Darksiders\DarksidersPC.exe
FirewallRules: [{21C4DFD3-A26A-4835-A570-2B597787B9C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Darksiders\DarksidersPC.exe
FirewallRules: [{BF0B7822-F9CE-474D-8B04-08CDDAB150CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe
FirewallRules: [{8E81C1BA-6C53-45BE-AB4A-62DB235B8207}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe
FirewallRules: [{9634BC57-7981-4AB1-AC22-0DD9D62B8BCB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Sniper Challenge\HMSC.exe
FirewallRules: [{FBD221C3-207C-47D4-BFD3-CA4517FF3F92}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Sniper Challenge\HMSC.exe
FirewallRules: [{E93AF24C-C9F8-4034-AF45-0698CE4CBDCE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Absolution\HMA.exe
FirewallRules: [{167CF7C2-F9C3-4BB3-BD98-B6D7E596FCDB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Absolution\HMA.exe
FirewallRules: [{83C6DE70-F27C-4BF8-9757-C577FB9F33D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\Shogun2.exe
FirewallRules: [{F0E756EB-8235-4119-9278-6C73F08E0B19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\Shogun2.exe
FirewallRules: [{62E3718A-AEFF-4F82-9991-AD6DFCD3CE09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\data\encyclopedia\how_to_play.html
FirewallRules: [{945A7FF8-D65F-4438-A852-37E8E47915EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\data\encyclopedia\how_to_play.html
FirewallRules: [{38DD4104-A3F1-4331-87AE-CE402CEF7FF6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\benchmarks\benchmark_current_settings.bat
FirewallRules: [{BF066A9A-4EF7-4D81-A7DD-F527919B2CE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\benchmarks\benchmark_current_settings.bat
FirewallRules: [{4E59C755-D92F-4F46-8247-D683A5B7FEA3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\benchmarks\benchmark_specify_properties.bat
FirewallRules: [{BD7B5B15-25E1-468C-B005-6A231D7FE5F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\benchmarks\benchmark_specify_properties.bat
FirewallRules: [{4B2C3D97-DDF7-4B89-BD3C-287C278136A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mass Effect 2\Binaries\MassEffect2.exe
FirewallRules: [{A6E27DF2-575A-4006-86A7-B919B0E96FB8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mass Effect 2\Binaries\MassEffect2.exe
FirewallRules: [{E18FD478-B39E-4316-BD8E-2E0CAA75661A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mass Effect 2\MassEffect2Launcher.exe
FirewallRules: [{1B3187AD-66FB-4C88-9823-6AC62BB36783}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mass Effect 2\MassEffect2Launcher.exe
FirewallRules: [{7272E733-F421-4170-9074-687C242EC6F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trine\trine_launcher.exe
FirewallRules: [{D6DDB03A-B32A-49D0-A784-BCD6845A36D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trine\trine_launcher.exe
FirewallRules: [{841A9298-E0F2-477C-A3C9-108E9244875A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\thief_2\thief2.exe
FirewallRules: [{C6448395-4168-484C-AC24-3DE211E53229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\thief_2\thief2.exe
FirewallRules: [{BE17033D-DDAA-4153-8B62-38DBB6ACC07D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\thief_gold\THIEF.EXE
FirewallRules: [{E70B984A-A1F0-47CD-AFDE-307A0C64DD0B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\thief_gold\THIEF.EXE
FirewallRules: [{BA1EE131-C02A-45B7-94C0-2F3056338139}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{94216B88-9DC0-45E0-920A-9C7FD2F12B29}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{BD3CCD0D-5467-43A5-B402-1D94EBF1A03F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\eye\EYE.exe
FirewallRules: [{6E812BBA-9152-4CF3-8B45-2D6A9345FFBD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\eye\EYE.exe
FirewallRules: [{B77EE0DF-5827-43D3-B07C-351DED579B12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{0609F7BB-8FD3-4DD6-B8D7-7737EE7629DA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{2BCBD8F7-0D42-4ACF-9A10-249AC1DD6613}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacrifice\Sacrifice.exe
FirewallRules: [{66540A18-6FAE-4CFD-8EEE-358374B3F876}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacrifice\Sacrifice.exe
FirewallRules: [{A4D14FA1-454D-4536-9FC1-636A71FF5265}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{26E433BC-3A5D-45C4-9DEB-053661C88E0E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{FFC38C2C-D2DE-4596-AE60-68354F2AF9B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Immortal Throne\Tqit.exe
FirewallRules: [{25D704E2-A149-4F92-9CC5-6A18F7438EF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Immortal Throne\Tqit.exe
FirewallRules: [{FACF5453-A4EF-42E4-B569-D1DAEB34D312}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest\Titan Quest.exe
FirewallRules: [{FDE8B485-6241-4A5B-94F4-2A0D8DFC1DAB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest\Titan Quest.exe
FirewallRules: [{7238F4CB-29A1-4C98-9A8A-A3F6ABF060B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ghost Master\ghost.exe
FirewallRules: [{B7E1E6AE-D657-4EA3-AE91-6DAAEDC544ED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ghost Master\ghost.exe
FirewallRules: [{7E3C9494-A3C1-43F8-BEC6-F4494BD559FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BrutalLegend\BrutalLegend.exe
FirewallRules: [{10521F78-3400-44A5-B11A-F3C7195F3CAE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BrutalLegend\BrutalLegend.exe
FirewallRules: [{A4F7AA67-A46F-4AB8-8961-49B57695D802}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Siege 2\DungeonSiege2.exe
FirewallRules: [{46D56600-47B9-4024-B44B-665741940FB5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Siege 2\DungeonSiege2.exe
FirewallRules: [{3AA7CBE2-DD19-46A7-B6C3-8A580653A21F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Siege 1\DungeonSiege.exe
FirewallRules: [{97CC0A94-FA50-416D-B027-701E20DD11E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Siege 1\DungeonSiege.exe
FirewallRules: [{519691E4-45A1-48BB-A00F-0BF1E6CCA104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Siege III\Dungeon Siege III.exe
FirewallRules: [{80F613F0-6C71-4048-9378-6D01DC21B8B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Siege III\Dungeon Siege III.exe
FirewallRules: [{BD2164C6-2008-4E0F-915C-FAC4BB8CB92C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Rise of the Elves\Discipl2.exe
FirewallRules: [{29EEF66F-B6C2-4B22-8A76-DFEB78A9DA9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Rise of the Elves\Discipl2.exe
FirewallRules: [{1D30077B-DF2B-40BC-9641-9ABB9E161730}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Rise of the Elves\ConfigEditor.exe
FirewallRules: [{6C0693A9-7D29-4061-9CA0-875D81932A6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Rise of the Elves\ConfigEditor.exe
FirewallRules: [{525540F4-3F16-4BFE-AE75-4376F0C1CCC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Galleans Return\Discipl2.exe
FirewallRules: [{359B15C9-F957-4B32-B731-B4DEE15FE67B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Galleans Return\Discipl2.exe
FirewallRules: [{B3D72CC4-27B4-40A6-92EA-F28F10C42BD6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Galleans Return\ConfigEditor.exe
FirewallRules: [{A71D9A6B-DD81-435C-900C-95E01D80C6F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples II Galleans Return\ConfigEditor.exe
FirewallRules: [{E3630BC7-F911-40D7-A30D-A10454655E6B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Psychonauts\Psychonauts.exe
FirewallRules: [{74836C1C-5CD2-4BDE-84EE-7617D2B7BE11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Psychonauts\Psychonauts.exe
FirewallRules: [{4A5856F1-2344-444F-8E8E-AD3674F26477}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blood Omen 2 Legacy of Kain\bo2.exe
FirewallRules: [{5C56FF98-C337-4D4B-8730-6966A5D48EAE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blood Omen 2 Legacy of Kain\bo2.exe
FirewallRules: [{DB12F470-1950-4EAA-881A-797FA27E58CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Septerra Core\septerra.exe
FirewallRules: [{48D44FB5-DB4C-40F4-9862-328ABD39374E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Septerra Core\septerra.exe
FirewallRules: [{F1FA314C-85AF-47F6-ADC7-506223542FDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Binaries\MirrorsEdge.exe
FirewallRules: [{BC084B81-B4AC-437F-A21C-5CC79885EB55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Binaries\MirrorsEdge.exe
FirewallRules: [{79C487DD-50D9-486C-A276-12F9A93D9F06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{563CCACA-60FB-493E-884E-EBB7937EAF18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{E0CB4198-82FB-4AB3-AD91-28721D7BCD37}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enclave\Enclave.exe
FirewallRules: [{B6FE0B31-1EAC-4D85-B050-9021A1EA0E4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enclave\Enclave.exe
FirewallRules: [{7BAC99A8-75A1-4395-92FD-A2CFB8CDAA8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SS2\Shock2.exe
FirewallRules: [{5A6EC013-4577-4843-A8C3-77CC766087DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SS2\Shock2.exe
FirewallRules: [{F4295654-6C1A-41DF-B7CA-C2E3DB744ECC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dust An Elysian Tail\DustAET.exe
FirewallRules: [{7D6F704D-8113-4376-96E8-C99E54D34C1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dust An Elysian Tail\DustAET.exe
FirewallRules: [{A78C37EC-AE9C-46AE-A21E-F7B5946343FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unholy Heights\UnholyHeights.exe
FirewallRules: [{72EE199D-57FA-440A-9C73-7750C473A381}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unholy Heights\UnholyHeights.exe
FirewallRules: [{B29A79C2-C080-47B5-B360-FE39E1FBA1D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eador. Masters of the Broken World\launcher.exe
FirewallRules: [{222E5375-9308-4256-80A1-03E27DEECF35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eador. Masters of the Broken World\launcher.exe
FirewallRules: [{7DB8F4C4-800E-4EFC-B151-E17B365A2C22}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham City GOTY\Binaries\Win32\BatmanAC.exe
FirewallRules: [{73329BEF-03EC-4AE5-81F9-3BE0C63FFE13}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham City GOTY\Binaries\Win32\BatmanAC.exe
FirewallRules: [{C2E9273F-4F7F-47C5-863F-0FAD00081078}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham City GOTY\RunLauncher.bat
FirewallRules: [{A5A3E047-8D14-4165-89C7-9762F929C720}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham City GOTY\RunLauncher.bat
FirewallRules: [{5C7ACE61-1375-4EA3-AD6A-068535B9837E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Asylum GOTY\Binaries\BmLauncher.exe
FirewallRules: [{3C866A06-31A6-426B-AB4C-B039646B7DCE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Asylum GOTY\Binaries\BmLauncher.exe
FirewallRules: [TCP Query User{652DE5AE-8FBC-49D5-990E-6D84465F3102}C:\program files (x86)\steam\steamapps\common\batman arkham asylum goty\binaries\shippingpc-bmgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\batman arkham asylum goty\binaries\shippingpc-bmgame.exe
FirewallRules: [UDP Query User{CF4F55F7-FEE0-439A-8473-9F3B2C860997}C:\program files (x86)\steam\steamapps\common\batman arkham asylum goty\binaries\shippingpc-bmgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\batman arkham asylum goty\binaries\shippingpc-bmgame.exe
FirewallRules: [{2BDB3BBE-0961-4512-B1D3-266CD3D72121}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{0E1F2736-8A6F-4DC2-A62B-C797A87B39C9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{AF2FF673-61EA-4773-AF81-BE4212F26BB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\magicka\Magicka.exe
FirewallRules: [{F1F68070-23CB-4C39-ACCE-CE1B9F32408B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\magicka\Magicka.exe
FirewallRules: [{D9779538-81D5-480C-948D-72B75B61847B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{40974490-7740-43A0-B73D-D2B4DC00680A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{1A248BAC-4ECE-4E15-97F3-01FFAFA2F728}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Baldur's Gate Enhanced Edition\BGEE.exe
FirewallRules: [{C7393AC2-A71F-445C-BB94-AF6975910F3D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Baldur's Gate Enhanced Edition\BGEE.exe
FirewallRules: [{71AED87D-A53E-401E-B607-BBC1E62716ED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sins of a Solar Empire Rebellion\Sins of a Solar Empire Rebellion.exe
FirewallRules: [{46434252-8DB5-49D0-A728-B2C45FE41D87}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sins of a Solar Empire Rebellion\Sins of a Solar Empire Rebellion.exe
FirewallRules: [{20B45D89-CEA3-4833-BAD7-B9BD51771BA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FE Legendary Heroes\LegendaryHeroes.exe
FirewallRules: [{087B9B3D-C18F-413F-853F-EDC92935F253}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FE Legendary Heroes\LegendaryHeroes.exe
FirewallRules: [{0EE4DF26-96EE-4CC5-B8F3-BBAF5A7BAFA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{E58B53ED-EF33-4F79-88EC-42839018E444}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{3208194A-FD15-4897-BDA3-D617B88E978C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nmrih\sdk\bin\Hammer.bat
FirewallRules: [{13C21C1F-31C7-47B6-AB9B-FFC615F2B091}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nmrih\sdk\bin\Hammer.bat
FirewallRules: [{4CD8F337-2025-4D5C-BC7E-B56C741F6D61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{258A9365-29A6-4BE6-8017-45CD287F59BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{DFAFE9F9-51D3-497F-B45C-E3A27D1973C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{2ACD4859-1D72-4D50-A926-A006BE51548E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{91AEC6EC-EBD2-4B59-9145-FAABD249ECF0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{4FD5D001-6550-49C6-A341-858F590871AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{6BF994FF-F302-471F-BE99-24A7A63BEB99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7C795CA1-E178-4307-B0F3-19F3EBBFEDD1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{2FB00B50-535D-4A25-9D81-C335CC086147}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{21315E69-4D40-4E5A-B08A-AC163AB65D4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{30A9CBE7-4C64-4C43-9EF8-738460F5A3F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{D5FACE29-D619-4F8B-A726-E554F8730B2E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{D43F7D6C-6EB0-4AC2-8AAB-E226FEFF6223}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{F4E6096C-7837-4991-AEBD-21229FDF097D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{F490E133-45B6-4033-B395-70F4E91269AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{A3A315AD-B286-468E-B494-1066A2F9E545}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{ABC3B8D4-09D6-42C6-B73C-9C8E3C37BBB7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{C5515DF6-A205-4BE1-B368-41E0CF70F893}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{A5876011-12BC-4B12-8DEF-2210A0404ED7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{A4C8B010-8267-49FD-A1F2-C7686753EE36}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{5DE40EFE-DFE9-4C82-9CCD-C244E2E64810}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{486F1F14-39A0-4081-916B-E49596A337B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{2468318B-C0AA-48D1-86D2-118AB0A58ACD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Endless Space\EndlessSpace.exe
FirewallRules: [{B6E30014-43D8-4C27-9F64-4BAAB6C46DF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Endless Space\EndlessSpace.exe
FirewallRules: [{DF5ED3CA-5D5D-46DD-B481-5A5D90CF02DC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{E860BCB4-C069-4E1D-A8B6-3163BFCD7FF6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{93618606-2D53-4085-BCF0-611AF5E94CE4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{34F08C98-B24A-485B-B842-48D6B03B8085}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{D2B73438-8B98-4D1A-A234-9A4DDB141DAA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{55BFA876-4268-4039-A3B2-9DD30C6AC00A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{2C0AC9B6-4AAF-4858-BA6E-081FEEDD6EC8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{46191DC1-9C5A-4D40-BC3B-30E81301C84B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{7286049B-57F4-4BE1-B488-9AE771D7C7C2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{FDACACD5-EC65-43D8-A03B-1E862C02A3B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{C2CF5C98-723F-4E30-B64E-6E9D657311CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{D4C17709-6F2D-4752-878B-4D4D379ECD9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{1373FA50-3EDE-4D4F-91FB-BCE4EC562C2E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{0C1ABAA6-D058-446C-94BF-285B036D2DE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{9B651667-AF8E-4A59-95A5-22486370C5E4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{3E2FDCE8-A28B-4921-97BC-A83E7F5F609A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{04DCC1AA-2442-4941-AA97-2DCF1DA3FB2F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{E8998113-5346-4D82-802A-6614AD8EBC26}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{CEF4F0A4-741F-4918-B7D9-06943DAE112C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{F1770123-56CC-4285-B8B4-7312E1A1011D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{44D76E06-7513-4F31-B8BC-586A60B10814}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{031B5BA0-6662-4CBA-AD83-84E9D28D152A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{1B2630A5-408B-4882-9490-D7CD241281D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{1E34422A-6C1F-4B24-B28D-86DBECB7C62B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{69A6052C-CAAB-4C43-8BA6-E7685530B77E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{868F9A98-21BE-4345-BC81-1319F644138B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{414F5817-7BFB-4037-979D-5614ED91991B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{0D4EDB2E-8432-413D-8AF2-B6DB45AA78CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{805BEAF7-7BB5-4B74-B64F-41A7CCF7A858}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{3DB6D451-7D27-48E2-877E-55288A333092}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{AA10FF08-F660-44D7-8BEF-898AE781DF2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\terraria\Terraria.exe
FirewallRules: [{91689CFA-170F-4C1C-889F-1622CCFD45A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\terraria\Terraria.exe
FirewallRules: [{4E02532A-B891-4894-B87B-4E05EB2F2B91}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{40A598FD-426B-4D11-ADF3-0F19AC6014DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{7A6696F0-241E-43B6-BF5C-5D41ACC2908E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{A82BF9BB-6530-401C-B157-47E404F1875E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe
FirewallRules: [{92995A7D-6D64-4235-AE6A-A34ACC90F941}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{9BAB72DE-9E93-4BC4-92F6-5870B85059FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{24F019A7-8960-4E1D-8844-01D358F9EA09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{54D1228B-6F59-43ED-B8C0-5446B67B2641}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Awesomenauts\AwesomenautsLauncher.exe
FirewallRules: [{E476BDAA-E2FD-4BCC-856B-8D12FB5F7320}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legacy of Kain Soul Reaver 2\sr2.exe
FirewallRules: [{2016C7CD-0070-47F8-8185-8D25C9AAA755}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legacy of Kain Soul Reaver 2\sr2.exe
FirewallRules: [{C5DE8467-D936-4E83-954C-8E05D2274AE2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legacy of Kain Soul Reaver\kain2.exe
FirewallRules: [{BCCB1DD1-D60A-4753-AAD7-BACA2E7D714C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legacy of Kain Soul Reaver\kain2.exe
FirewallRules: [{95FCC6D1-0EFE-487D-8F77-E668F16B6E3D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CastlevaniaLoS\bin\CastlevaniaLoSUE.exe
FirewallRules: [{504BA01B-D1A5-4279-AC33-6883BD7F2FEA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CastlevaniaLoS\bin\CastlevaniaLoSUE.exe
FirewallRules: [{8BBAC3FD-DB86-4C65-8734-34DEB3BD97FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\sw.exe
FirewallRules: [{3033A21A-BD5E-4F70-A9CA-49D1B4730FC5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\sw.exe
FirewallRules: [{DB8C4411-0804-4AFE-A0EC-8594B8F26DD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\sw.exe
FirewallRules: [{B0667129-0F63-411E-95BB-20A0FE75BAB2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\sw.exe
FirewallRules: [{0202C890-6F53-4657-A548-F2772D3EF2AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{63531FC4-5F7D-41B0-A8A7-4CEC29761F1F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{4A8910C2-B693-470F-9D85-CD7EA628804B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{0F7CE770-7BB6-4BA4-86F8-9A4F2A8D770E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{E28F617F-EAA3-45F4-AA6B-28D94BACDCFA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{5C18CA24-11AF-467C-8A79-A813484E2EB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{F85C61D9-7DAC-4CDF-A489-341BF2A07A86}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{68AF06F1-EED3-40D3-9C24-45DF1C7C2869}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{54846D80-2D71-48DB-9274-334C283218CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{FF512C93-7F8A-4DBC-8B7E-C7FBDC813025}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7A8F2CC5-F758-480A-9B51-10F55D7173FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{F896CF2C-8E85-4453-B934-00B032A79536}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{D60AA3EE-661B-4AFF-A99D-8AF4B8240674}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{C93F3595-7F1C-4B61-B9BD-DCF8D8024C8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{6FD57681-B93F-4ACA-8426-157545D17BB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{E9A839AB-567D-42B1-BD03-96E3F3D704EF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{F8185692-6DAD-42B1-9FE7-E8C18793AD31}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{3CE273F7-697E-433A-9683-09CB64976D59}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{4C43FD9A-0364-44C0-989C-2A24EF63AE09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{49ACB915-22CC-4CE7-9FB7-A2D5939060DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{662F6444-070A-49C2-8D7A-50047DE8D079}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{0C8988B8-8347-4638-B3DB-435E12201511}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{E6BCDDE7-5C82-488E-92F1-4853812B0EC0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{D0FF81AC-95C5-4083-BAE1-FC2C40B045BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{0D10050B-8070-44C9-8F30-A4C409956EEF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman 2 Silent Assassin\hitman2.exe
FirewallRules: [{8AFC2860-F2E8-4B84-AF2B-EC554647CCDB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman 2 Silent Assassin\hitman2.exe
FirewallRules: [{DA5A7A60-24B2-4AFD-8264-BDDCEA23847D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman 2 Silent Assassin\config.exe
FirewallRules: [{5B77A2D4-2385-4E7D-991F-C141C8DC9EC1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman 2 Silent Assassin\config.exe
FirewallRules: [{0410CAFE-12A3-4F55-88F6-0ACDABA70852}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Blood Money\HitmanBloodMoney.exe
FirewallRules: [{B8DC07E0-0344-44E9-90E7-819DEAA0D425}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Blood Money\HitmanBloodMoney.exe
FirewallRules: [{1C2A5519-2129-4246-9891-50A37F6A4AE4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Blood Money\configure.exe
FirewallRules: [{C9D892C1-A317-46D6-9697-F641B3189C18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Blood Money\configure.exe
FirewallRules: [{62DA0A5B-3A1B-4897-BB5C-F4A058F658E3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Contracts\HitmanContracts.exe
FirewallRules: [{1B223725-3FF7-4D53-8EE8-DD35AA0CEAAB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Contracts\HitmanContracts.exe
FirewallRules: [{74721056-7102-4310-8EB2-4D2B7EFC4C46}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cthulhu Saves the World\CSTW.exe
FirewallRules: [{5A1AFA96-BAD4-4F58-BFB8-FAE0EC38F6D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cthulhu Saves the World\CSTW.exe
FirewallRules: [{8835F2CA-76B5-4640-985F-FEDB482B501C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Breath of Death VII\BoDVIIPC.exe
FirewallRules: [{B34418BF-6467-470C-88E6-79FB748194B4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Breath of Death VII\BoDVIIPC.exe
FirewallRules: [{C935BE1A-3DD9-4377-83E1-AD01A6901181}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe
FirewallRules: [{974D934F-B16A-4088-84FE-8C9E957DE65F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe
FirewallRules: [TCP Query User{68B338AD-F153-49E1-A2DB-2D892C3E0BC0}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [UDP Query User{AB19FC22-F8F2-4B5D-BA4B-A4FC30EB05CE}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [{7188E191-A48D-4CC5-91E4-458AA34DE876}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War For The Overworld\WFTO.exe
FirewallRules: [{A056D14D-8124-4CB9-9D20-08519882BC6E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War For The Overworld\WFTO.exe
FirewallRules: [{71B9830E-1CBF-4A4D-9F94-52B93A3F0485}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warlock - Master of the Arcane\Game.exe
FirewallRules: [{B0E12A95-7D9F-4215-AE88-B7B98CC7F800}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warlock - Master of the Arcane\Game.exe
FirewallRules: [{957ECF06-5D45-49D0-AD81-2D3723DA84AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Summoner\Summoner.exe
FirewallRules: [{4F308DD2-9533-4101-A756-81B4651FC9C9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Summoner\Summoner.exe
FirewallRules: [{37254831-FEDC-4BDB-91D4-DEBE120DBAE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pixel Piracy\PixelPiracy.exe
FirewallRules: [{9CFB150B-9EF8-4500-9B29-0EA4DB99E97E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pixel Piracy\PixelPiracy.exe
FirewallRules: [{3110D183-61CA-4450-9034-C3D2883B1883}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eryi's Action\eryi.exe
FirewallRules: [{1686AB0B-CE70-42AD-8C25-0C064759247F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eryi's Action\eryi.exe
FirewallRules: [{FF038AA4-FDB3-481E-97A7-B7A7C5601EEE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 5\Geneforge 5.exe
FirewallRules: [{CF94F315-7A13-4365-805E-526AFDDEB1DF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 5\Geneforge 5.exe
FirewallRules: [{CB066E60-4C50-44A4-8B88-8DCA471837E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 4\Geneforge 4.exe
FirewallRules: [{6CDEC386-0C1F-4803-B521-5D3E923F9ADD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 4\Geneforge 4.exe
FirewallRules: [{0E8B5A19-DC9F-427A-8D8F-1754B690DAD1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 3\Geneforge 3.exe
FirewallRules: [{C220A39A-6226-4CA0-8062-AB8D26EB0366}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 3\Geneforge 3.exe
FirewallRules: [{DDDAF26E-94D9-4FC2-AD1B-5DF71747CF21}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 2\Geneforge 2.exe
FirewallRules: [{BBA40035-D50E-4F73-8AED-2675CC442824}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge 2\Geneforge 2.exe
FirewallRules: [{6FC1DB46-5218-48BF-8C09-E3A8F0BA592B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge\Geneforge.exe
FirewallRules: [{221A554C-D935-4F22-84C5-26A36DC6DC86}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geneforge\Geneforge.exe
FirewallRules: [{3A8911B1-6B70-4941-A996-CBA01240ED45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples III Rebirth\DisciplesIII.exe
FirewallRules: [{6667EA38-A8B2-4D7D-BCDA-561D2E95F8D6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Disciples III Rebirth\DisciplesIII.exe
FirewallRules: [{B983D217-F3DC-4628-9ADD-CE1DB92B3758}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ShadowMan\Shadowman.exe
FirewallRules: [{3D48BF5D-DC5C-4AC6-A49E-D71ED8B6894A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ShadowMan\Shadowman.exe
FirewallRules: [{7F96BB6A-40F3-48E0-924A-5CB3086E5148}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ShadowMan\D3DConfigUtility.exe
FirewallRules: [{F03FB2F5-F263-4058-9038-4B7AEB1C9786}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ShadowMan\D3DConfigUtility.exe
FirewallRules: [{C9DD1C0F-2E4F-4922-B113-06747EC13F62}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gothic\system\GOTHIC.EXE
FirewallRules: [{4C073760-860E-4441-A92F-72ABFC54EEAB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gothic\system\GOTHIC.EXE
FirewallRules: [{69BB78B1-F2A1-491B-9AEC-1E072E34DE6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gothic II\system\Gothic2.exe
FirewallRules: [{288BECD0-123A-4E3D-8BE5-6631E3A309AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gothic II\system\Gothic2.exe
FirewallRules: [{0639C76E-43BD-4D3B-A0CA-358C8212F359}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gothic 3\Gothic3.exe
FirewallRules: [{1D23704F-73CF-4F31-9635-29324AA45BA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gothic 3\Gothic3.exe
FirewallRules: [{A439DF1C-51EC-4E1C-9474-16347E8CAAC0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacred Gold\Sacred.exe
FirewallRules: [{5C321C9C-9DD2-49EB-A581-EAC331B68CA4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacred Gold\Sacred.exe
FirewallRules: [{1F2F23BE-008D-4263-BBED-B3C268E5E6AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{FBC19DB1-F667-44E2-9ED5-981B2717ED65}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{BCF6B589-E4E6-4A9B-AF09-B738F539EB8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skullgirls Beta\SkullGirls.exe
FirewallRules: [{F7E62970-A00B-4711-BF47-02041FE70E4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skullgirls Beta\SkullGirls.exe
FirewallRules: [TCP Query User{74E2D9D6-B770-459A-9A86-7AC75D5043CB}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{E41FFD16-170E-4554-A511-01C3B71EB57B}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [{7F869FF6-4E2D-412E-9644-89D232682304}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Soulstorm\Soulstorm.exe
FirewallRules: [{0C181387-4B8B-4079-9D6F-00F39AAB119A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Soulstorm\Soulstorm.exe
FirewallRules: [{32582B23-41A5-4CC5-B8A1-A63FA9094641}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Gold\W40kWA.exe
FirewallRules: [{109F1A02-F30B-4D75-BE6D-34FBC7A3B28D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Gold\W40kWA.exe
FirewallRules: [{FBC54149-4DF4-4DFF-BE90-944BE1D89318}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Dark Crusade\darkcrusade.exe
FirewallRules: [{50C04CBD-CBF1-45B8-852E-2FF4F70A7473}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Dark Crusade\darkcrusade.exe
FirewallRules: [{930EF4C6-1FEA-4913-B5E6-0A6F230DBD68}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Gold\W40k.exe
FirewallRules: [{E4F63D58-441E-48D2-8D97-EAB81B8497E3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War Gold\W40k.exe
FirewallRules: [{65093A19-0079-4D2E-9046-A18344181E9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War 2\DOW2.exe
FirewallRules: [{A34A4CF7-CBAC-4442-BB55-C9F48F803B90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War 2\DOW2.exe
FirewallRules: [{5CF5258A-2EAB-41AC-BA6D-8C9E7E7CDAEF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War II - Retribution\DOW2.exe
FirewallRules: [{71CCA1A5-CCC8-4B7F-89F2-5F6E2AC1E26F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dawn of War II - Retribution\DOW2.exe
FirewallRules: [{787CCC49-A20F-4FBE-8FE5-23F1730C8B81}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rune Classic\System\Rune.exe
FirewallRules: [{256EE529-A510-4FA4-9A92-7857F8D4CDB8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rune Classic\System\Rune.exe
FirewallRules: [{1CAD7F9B-CB09-42DC-AEA7-CF173BA9F500}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{0CFD988E-3BD8-45D6-BBED-2D58612A7738}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{0E8113DB-9D89-4BA8-9376-735016570D84}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [{7EFA534A-21B9-485E-8AFD-7F131E8C3D6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [{DA20E458-5F2C-4281-8092-8875EB91788E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Baldur's Gate II Enhanced Edition\Baldur.exe
FirewallRules: [{8EA62CD7-412F-4284-A825-11AD32AC9DA7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Baldur's Gate II Enhanced Edition\Baldur.exe
FirewallRules: [{1B618E6D-3784-481A-ACB8-57D8FB25C49C}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{5F27A6B7-A93E-410D-8CCA-25BA010F80C0}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [TCP Query User{E2C8C11D-B952-45E4-861A-75FF9A6CB7E4}C:\program files (x86)\steam\steamapps\common\sacred 2 gold\system\s2gs.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sacred 2 gold\system\s2gs.exe
FirewallRules: [UDP Query User{C1D15516-951E-4FB1-B45E-0A2C680860D6}C:\program files (x86)\steam\steamapps\common\sacred 2 gold\system\s2gs.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sacred 2 gold\system\s2gs.exe
FirewallRules: [{B7388E66-F835-42C2-BA57-56BD8D5A0DE5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacred 2 Gold\system\sacred2.exe
FirewallRules: [{C524A696-755A-4A96-9332-7A2CDC0E0712}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacred 2 Gold\system\sacred2.exe
FirewallRules: [{C9774292-BF9E-427C-AA8F-8597C6239DC1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{B696CCBB-159B-43F4-8E40-5CD2EF2E89C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{958D0A0B-F480-45E9-AAE5-740A203B79E4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{78AC43A6-7CA2-451B-B249-75F725BF4C5A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{D31F669E-9D84-405B-BF31-BD2D52A2CBBF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{26D8DFDA-5DC9-415E-95E0-A367864E76DF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{88086980-E54D-4EB5-8D9D-D33C16A38047}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{5CB80812-7CCB-4EB3-989B-AC43292E0CE5}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{A6FB8EB9-ADAF-488F-90EA-AEA4820FC11D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RiskysRevenge\executable\RiskysRevenge.exe
FirewallRules: [{62334C6B-7B01-4E45-9FD4-057CA0D8F278}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RiskysRevenge\executable\RiskysRevenge.exe
FirewallRules: [{EDB0410E-BFD7-4D21-B669-602B4C6123C7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\King's Bounty - The Legend\KB.exe
FirewallRules: [{5842439E-B3C0-47A1-9A5D-FF098B933A85}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\King's Bounty - The Legend\KB.exe
FirewallRules: [{1B786C7F-17DC-45DF-80D0-CE3085976EE2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\King's Bounty - The Legend\save_fixer.exe
FirewallRules: [{3737B768-50B7-4A5D-9131-07D4D4377095}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\King's Bounty - The Legend\save_fixer.exe
FirewallRules: [{239478D7-3B2E-4F97-8A29-733C422547F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kings Bounty Crossworlds\KB.exe
FirewallRules: [{F4BFF93B-8236-4506-ACF3-13A79D7F832E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kings Bounty Crossworlds\KB.exe
FirewallRules: [{EA070B81-7117-4059-B544-A88AE2F6EC81}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kings Bounty Armored Princess\kb.exe
FirewallRules: [{9C6DE51D-800D-4B41-B903-401C2B29606A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kings Bounty Armored Princess\kb.exe
FirewallRules: [{190B0436-1DBA-49DF-9B3D-1F079C1061DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Faery - Legends of Avalon\FaerySteam.exe
FirewallRules: [{171C0E8A-8D67-4DD6-8539-0154681CB3FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Faery - Legends of Avalon\FaerySteam.exe
FirewallRules: [{BAE496FF-212B-45F7-B413-91FA37370728}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divinity2_dev_cut\Autorun.exe
FirewallRules: [{8D0D5123-B71B-4498-97BB-5B5E6BE7BA68}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divinity2_dev_cut\Autorun.exe
FirewallRules: [{0092950C-25AD-409D-B452-E2B9121C5ABF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divine_divinity\div.exe
FirewallRules: [{B3357762-AB7C-4803-A365-B80A2C97B966}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divine_divinity\div.exe
FirewallRules: [{EDF4A579-EAA7-4BB6-AE67-11AF3D5B9297}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divine_divinity\configtool.exe
FirewallRules: [{336954C2-2AA8-4DB9-8687-9CCD641B68B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divine_divinity\configtool.exe
FirewallRules: [{487EA0F7-4A33-447E-9EDF-4BB926432725}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Explorers\PE_Launcher.exe
FirewallRules: [{A42F9CF0-2484-4F66-A7C5-A2B2CC067B53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Explorers\PE_Launcher.exe
FirewallRules: [TCP Query User{8C30B9CD-99A0-4F26-BCC7-0370725ED940}C:\program files (x86)\steam\steamapps\common\planet explorers\pe_client.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planet explorers\pe_client.exe
FirewallRules: [UDP Query User{A1B3FAE7-1827-4FC8-B7EC-E0A88383787C}C:\program files (x86)\steam\steamapps\common\planet explorers\pe_client.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planet explorers\pe_client.exe
FirewallRules: [TCP Query User{F18B29CE-8CF4-4808-A12D-3D2BB5AF4C76}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [UDP Query User{1A5E511F-7615-412A-B9A4-313856828DE8}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [{361E3924-34D4-44F6-A2CF-B68FA47CE557}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transistor\x64\Transistor.exe
FirewallRules: [{94976AB0-5B85-4394-9AE8-5AF46C4185BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transistor\x64\Transistor.exe
FirewallRules: [{0B664243-1728-44A2-84BD-B764A329DAF4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{9C1490B2-58FF-4019-B637-7EF6BE4F09B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{31AE2C99-3AE4-478D-A1C7-F77DB28D5C3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{BBA9F600-9FBA-4A04-8725-D6661050E585}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{E74EDC6F-BEE1-4181-BD77-A798775CFDA0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Secret World\ClientPatcher.exe
FirewallRules: [{4F1422CA-4EB5-4F7D-997F-695E96FEB14B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Secret World\ClientPatcher.exe
FirewallRules: [{E1C3C28E-9BB1-4E68-A012-85927F553130}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Penny Arcade's On the Rain-Slick Precipice of Darkness 4\Rainslick4.exe
FirewallRules: [{2A3F47F5-1CE4-43FD-AF78-33BE00516EDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Penny Arcade's On the Rain-Slick Precipice of Darkness 4\Rainslick4.exe
FirewallRules: [{2DAF3138-2AEC-4091-931D-DEBDE8DDFB96}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Precipice Of Darkness 3\Rainslick3.exe
FirewallRules: [{85372316-A05D-42C8-99BB-F1250B0B97E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Precipice Of Darkness 3\Rainslick3.exe
FirewallRules: [{948CCF8F-9A1B-480A-8147-BDE14CC0BCED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvilQuestInstall\EvilQuest.exe
FirewallRules: [{F2F7F41E-E2D5-4AE2-BA28-A5C7460F1C5D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvilQuestInstall\EvilQuest.exe
FirewallRules: [{D9D62CD9-4141-405E-916D-9E775AA0E945}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Book of Legends\TheBookOfLegends.exe
FirewallRules: [{3D3A7036-84A4-482C-B490-4E4EB8ACBFB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Book of Legends\TheBookOfLegends.exe
FirewallRules: [{44994247-8DE9-4CB5-AFB0-5FD4AADC3F55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\One Unit Whole Blood\dosbox.exe
FirewallRules: [{CF7C564F-E278-4CAC-B01A-B37650B6D536}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\One Unit Whole Blood\dosbox.exe
FirewallRules: [{1552504C-397D-4E2A-B0BB-B8C6A055A5E1}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [{75EDC511-DAFA-46BE-B5BA-6151E76FC1BB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\beyond_divinity\div.exe
FirewallRules: [{20A1C507-8159-4D56-B1B5-59FE070FC756}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\beyond_divinity\div.exe
FirewallRules: [{444C8CEA-FB10-46D1-9FC2-5208276F2F2B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\beyond_divinity\configtool.exe
FirewallRules: [{63F73D70-DEEB-4EB2-A4EE-8868302CA928}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\beyond_divinity\configtool.exe
FirewallRules: [{F099CEAC-60CA-46BC-BF10-249F3E594C98}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6E2B2211-C169-405C-B0B3-4A66F8A33136}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{587C265F-3F84-43F8-B694-15C93070DB50}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior Classic\bin\build.exe
FirewallRules: [{EDDE1A65-0B55-48A4-84F9-0821F98C109E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior Classic\bin\build.exe
FirewallRules: [{D3A8A5F5-86DB-4A3C-B414-E155F69239E3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grim Dawn\Grim Dawn.exe
FirewallRules: [{8FD19E01-177E-4159-8917-9E762B3AB250}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grim Dawn\Grim Dawn.exe
FirewallRules: [{528B0485-7361-43BB-A5C7-4EE7D4133AB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\dx11\launcher.exe
FirewallRules: [{B230B904-0C19-4392-B354-D51AB9F15E18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\dx11\launcher.exe
FirewallRules: [TCP Query User{CDC96C23-7ECB-4114-932B-483F94D1B97F}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{039275E4-8004-4CAC-9517-52349645B8C8}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{A9CCD824-27F5-4A5B-BE56-D7D9C3A0F2A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{69EA6DD7-436B-4922-9C8E-C92077FAA932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{DF35906C-ED9B-48A2-890E-0EA2B5C8D661}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{C1C7CACA-B4F9-4BB0-AAE2-7444A9E0B24F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{0756C75F-6F2B-412E-9B69-8442AA90996B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{44EDD788-E288-498C-B09D-11DB503FC1B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{BA44CB8E-74E9-4999-95D9-3D4CCDCE8B2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DB Xenoverse\DBXV.exe
FirewallRules: [{09016F00-5FAE-4400-9C79-A93B1E354873}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DB Xenoverse\DBXV.exe
FirewallRules: [TCP Query User{4A6A10BC-C1D3-4E07-9711-42509DDC1695}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [UDP Query User{622B6522-25AF-4175-A1A6-CC91F16E8E18}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [{D1BF780E-115E-4758-8B1F-EA9C10DE76C9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{C9B80104-507B-4F79-8FD6-A19D45577A75}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{11BF6553-0C42-48CA-85BA-DCE28EFDCB5C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{CFA294D1-4A99-46B1-A1BF-4D71B016614B}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{54615F57-C32D-4F57-ADBE-97EEDD215203}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{8D45FD82-9897-4485-B9FD-233EE0CFC976}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{2DD0C133-C55E-4C22-A7FE-44A4A4F9C123}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{D439B31B-CBCF-496E-A5E6-28DF0733ED35}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{4FA16D52-B3B5-4420-B7D3-D26296906EDE}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{E2F16359-7FFF-4382-960E-4C3951E660BE}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{AD528176-5A1A-421B-8AEF-5E22F69E908B}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{B08B28C0-323F-41AB-B3DC-6E1919D9C332}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{BB8179D8-C1BF-4834-BA33-A518FDDCA19C}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{A08E4E45-8C5E-48AD-92F8-449A70481CC1}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{10EDFDA7-CEFE-4FB8-9CC6-292DDBB15048}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
FirewallRules: [{57D9CA64-E8D7-4F7D-B1FA-FF6FD4EC087F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
FirewallRules: [{B4BEF717-3857-492B-BE26-BA674234CC94}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\workshop\Workshop.exe
FirewallRules: [{A4CB2AAC-4757-437D-95C4-35AF22602D8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guns of Icarus Online\workshop\Workshop.exe
FirewallRules: [{4E14665A-81B6-4371-9163-4CFA9F8DFCAD}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot-S&D; 2 Tray Icon
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D; 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D; 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D; 2 Background update service

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/06/2015 09:45:17 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Steam.exe version 3.8.23.7 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 884

Start Time: 01d118b75418a3f9

Termination Time: 0

Application Path: C:\Program Files (x86)\Steam\Steam.exe

Report Id: 0e5a815b-84ae-11e5-8fae-e069954cb337

Error: (11/06/2015 08:41:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: avgmfapx.exe, version: 16.7.0.7227, time stamp: 0x56333160
Faulting module name: ntdll.dll, version: 6.1.7601.19018, time stamp: 0x5609fe30
Exception code: 0xc0000005
Fault offset: 0x0002dfd4
Faulting process id: 0x1168
Faulting application start time: 0xavgmfapx.exe0
Faulting application path: avgmfapx.exe1
Faulting module path: avgmfapx.exe2
Report Id: avgmfapx.exe3

Error: (11/05/2015 04:11:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 13525

Error: (11/05/2015 04:11:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 13525

Error: (11/05/2015 04:11:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/05/2015 03:45:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Steam.exe version 3.2.92.20 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 690

Start Time: 01d117da127971bb

Termination Time: 0

Application Path: C:\Program Files (x86)\Steam\Steam.exe

Report Id: 2a7f7ce0-8417-11e5-984f-e069954cb337

Error: (10/29/2015 11:08:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15601

Error: (10/29/2015 11:08:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15601

Error: (10/29/2015 11:08:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (10/24/2015 09:39:53 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: DBXV.exe, version: 1.0.1.29413, time stamp: 0x5568b562
Faulting module name: DBXV.exe, version: 1.0.1.29413, time stamp: 0x5568b562
Exception code: 0xc0000005
Fault offset: 0x0004a26d
Faulting process id: 0x2ec
Faulting application start time: 0xDBXV.exe0
Faulting application path: DBXV.exe1
Faulting module path: DBXV.exe2
Report Id: DBXV.exe3


System errors:
=============
Error: (11/06/2015 11:02:17 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Intel(R) Management and Security Application User Notification Service service hung on starting.

Error: (11/06/2015 11:00:11 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Windows Update service hung on starting.

Error: (11/06/2015 10:54:51 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
Avgldx64

Error: (11/06/2015 10:54:08 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The MBAMService service failed to start due to the following error:
%%1053

Error: (11/06/2015 10:54:08 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the MBAMService service to connect.

Error: (11/06/2015 10:52:46 AM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: The AVGIDSAgent service terminated with service-specific error %%-536753637.

Error: (11/06/2015 09:27:45 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Windows Update service hung on starting.

Error: (11/06/2015 09:22:05 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
Avgldx64

Error: (11/06/2015 09:21:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The MBAMService service failed to start due to the following error:
%%1053

Error: (11/06/2015 09:21:10 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the MBAMService service to connect.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz
Percentage of memory in use: 40%
Total physical RAM: 8174.53 MB
Available physical RAM: 4874.39 MB
Total Virtual: 16347.27 MB
Available Virtual: 12885.78 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:1383.88 GB) (Free:87.61 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:13.28 GB) (Free:1.63 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: () (Fixed) (Total:233.75 GB) (Free:7.91 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 1397.3 GB) (Disk ID: 1645DA78)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1383.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=13.3 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 233.8 GB) (Disk ID: 25662566)
Partition 1: (Active) - (Size=233.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Very important to have only 1 running and active antivirus on the computer.

Please open Notepad *Do Not Use Wordpad!* or use any other text editor than Notepad or the script will fail. (Start -> Run -> type notepad in the Open field -> OK) and copy and paste the text present inside the quote box below:
To do this highlight the contents of the box and right click on it and select copy.
Paste this into the open notepad. save it to the Desktop as fixlist.txt
NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.
It needs to be saved Next to the "Farbar Recovery Scan Tool" (If asked to overwrite existing one please allow)


[external image: FRSTfix.JPG]

 

start
CreateRestorePoint:
CloseProcesses:
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Start Page Before = hxxp://search.b1.org/?bsrc=4hixr&chid=c162341
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Search Page Before = hxxp://search.b1.org/?bsrc=4hixr&chid=c162341
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
SearchScopes: HKLM -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {29BFF285-E0A0-42B8-95A7-CB49B9B74E53} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> DefaultScope {B0F4899E-8BDD-467F-BFF7-45F784DB5C1A} URL =
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {29BFF285-E0A0-42B8-95A7-CB49B9B74E53} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://search.privitize.com/?aff=7&q={searchTerms}
Toolbar: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
2015-10-30 07:58 - 2013-04-06 18:42 - 00000000 ____D C:\Program Files (x86)\Conduit
C:\Users\Troy\AppData\Roaming\B1Toolbar
C:\Users\Troy\AppData\Local\Temp\avgnt.exe
C:\Users\Troy\AppData\Local\Temp\jre-8u65-windows-au.exe
C:\Users\Troy\AppData\Local\Temp\msvcp120.dll
C:\Users\Troy\AppData\Local\Temp\msvcr120.dll
C:\Users\Troy\AppData\Local\Temp\pc-decrapifier.exe
C:\Users\Troy\AppData\Local\Temp\raptrpatch.exe
C:\Users\Troy\AppData\Local\Temp\raptr_stub.exe
C:\Users\Troy\AppData\Local\Temp\Sqlite3.dll
Task: {D3DC04EB-DD89-4A9F-AB3A-7F7C4B29BA0B} - \SaveSense -> No File <==== ATTENTION
EmptyTemp:
Hosts:
End


Open FRST/FRST64 and press the > Fix < button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.

~~~~~~~~~~~~~~~`

[external image: BY4dvz9.png]AdwCleaner
  • Please download AdwCleaner and save the file to your Desktop.
  • Right-Click AdwCleaner.exe and select [external image: AVOiBNU.jpg] Run as administrator to run the programme.
  • Follow the prompts.
  • Click Scan.
  • Upon completion, click Report. A log (AdwCleaner[SX].txt) will open. Briefly check the log for anything you know to be legitimate.
  • Ensure anything you know to be legitimate does not have a checkmark, and click Clean.
  • Follow the prompts and allow your computer to reboot.
  • After rebooting, a log (AdwCleaner[SX].txt) will open. Copy the contents of the log and paste in your next reply.
– File and registry key backups are made for anything removed using this tool. Should a legitimate entry be removed (otherwise known as a 'false-positive'), simple steps can be taken to restore the entry. Please do not overly concern yourself with the contents of AdwCleaner[R0].txt.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


[external image: thisisujrt.gif]
Please download Junkware Removal Tool
or from here http://downloads.malwarebytes.org/file/jrt
to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
~~
please post
Fixlog.txt
AdwCleaner[CX].txt
JRT.txt

My browsers stopped working as well in spite of my working internet connection before you replied, I had to carry out your instructions via USB Storage Device.

 

 

 

Fix result of Farbar Recovery Scan Tool (x64) Version:14-10-2015
Ran by [removed] (2015-11-09 18:10:25) Run:1
Running from C:\Users\[removed]\Desktop
[removed] Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CreateRestorePoint:
CloseProcesses:
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Start Page Before = hxxp://search.b1.org/?bsrc=4hixr&chid=c162341
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Search Page Before = hxxp://search.b1.org/?bsrc=4hixr&chid=c162341
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
SearchScopes: HKLM -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {29BFF285-E0A0-42B8-95A7-CB49B9B74E53} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> DefaultScope {B0F4899E-8BDD-467F-BFF7-45F784DB5C1A} URL =
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {29BFF285-E0A0-42B8-95A7-CB49B9B74E53} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://search.privitize.com/?aff=7&q={searchTerms}
Toolbar: HKU\S-1-5-21-1117344718-3105732553-3752503743-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
2015-10-30 07:58 - 2013-04-06 18:42 - 00000000 ____D C:\Program Files (x86)\Conduit
C:\Users\Troy\AppData\Roaming\B1Toolbar
C:\Users\Troy\AppData\Local\Temp\avgnt.exe
C:\Users\Troy\AppData\Local\Temp\jre-8u65-windows-au.exe
C:\Users\Troy\AppData\Local\Temp\msvcp120.dll
C:\Users\Troy\AppData\Local\Temp\msvcr120.dll
C:\Users\Troy\AppData\Local\Temp\pc-decrapifier.exe
C:\Users\Troy\AppData\Local\Temp\raptrpatch.exe
C:\Users\Troy\AppData\Local\Temp\raptr_stub.exe
C:\Users\Troy\AppData\Local\Temp\Sqlite3.dll
Task: {D3DC04EB-DD89-4A9F-AB3A-7F7C4B29BA0B} - \SaveSense -> No File <==== ATTENTION
EmptyTemp:
Hosts:
End

*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main\\Start Page Before => value removed successfully
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main\\Search Page Before => value removed successfully
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => key removed successfully
HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => key removed successfully
HKCR\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}" => key removed successfully
HKCR\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{29BFF285-E0A0-42B8-95A7-CB49B9B74E53}" => key removed successfully
HKCR\Wow6432Node\CLSID\{29BFF285-E0A0-42B8-95A7-CB49B9B74E53} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => key removed successfully
HKCR\Wow6432Node\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => key removed successfully
HKCR\Wow6432Node\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => key not found.
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{29BFF285-E0A0-42B8-95A7-CB49B9B74E53}" => key removed successfully
HKCR\CLSID\{29BFF285-E0A0-42B8-95A7-CB49B9B74E53} => key not found.
"HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => key removed successfully
HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => key not found.
"HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => key removed successfully
HKCR\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => key not found.
"HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}" => key removed successfully
HKCR\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43} => key not found.
HKU\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value removed successfully
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => key not found.
C:\Program Files (x86)\Conduit => moved successfully
C:\Users\Troy\AppData\Roaming\B1Toolbar => moved successfully
C:\Users\Troy\AppData\Local\Temp\avgnt.exe => moved successfully
C:\Users\Troy\AppData\Local\Temp\jre-8u65-windows-au.exe => moved successfully
C:\Users\Troy\AppData\Local\Temp\msvcp120.dll => moved successfully
C:\Users\Troy\AppData\Local\Temp\msvcr120.dll => moved successfully
C:\Users\Troy\AppData\Local\Temp\pc-decrapifier.exe => moved successfully
C:\Users\Troy\AppData\Local\Temp\raptrpatch.exe => moved successfully
C:\Users\Troy\AppData\Local\Temp\raptr_stub.exe => moved successfully
C:\Users\Troy\AppData\Local\Temp\Sqlite3.dll => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D3DC04EB-DD89-4A9F-AB3A-7F7C4B29BA0B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D3DC04EB-DD89-4A9F-AB3A-7F7C4B29BA0B}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SaveSense => key not found.
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 6 GB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 18:22:24 ====

 

# AdwCleaner v5.019 - Logfile created 09/11/2015 at 19:09:39
# Updated 08/11/2015 by Xplode
# Database : 2015-11-08.2 [Local]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Troy - TROY-HP
# Running from : C:\Users\Troy\Desktop\AdwCleaner.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\SearchProtect
[-] Folder Deleted : C:\Program Files (x86)\EasyLife
[-] Folder Deleted : C:\Program Files (x86)\EnjoyoCouupOnn
[-] Folder Deleted : C:\Program Files (x86)\FuNDeals
[!] Folder Not Deleted : C:\Program Files (x86)\EnjoyoCouupOnn
[-] Folder Deleted : C:\ProgramData\apn
[-] Folder Deleted : C:\ProgramData\Premium
[-] Folder Deleted : C:\ProgramData\speedypc software
[-] Folder Deleted : C:\ProgramData\EnjoyoCouupOnn
[-] Folder Deleted : C:\ProgramData\Bruowse2saavee
[!] Folder Not Deleted : C:\ProgramData\EnjoyoCouupOnn
[-] Folder Deleted : C:\ProgramData\73e71419ecf71311
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bruowse2saavee
[-] Folder Deleted : C:\Users\Troy\AppData\Local\b1e
[-] Folder Deleted : C:\Users\Troy\AppData\Local\28050
[-] Folder Deleted : C:\Users\Troy\AppData\LocalLow\Bruowse2saavee
[-] Folder Deleted : C:\Users\Troy\AppData\Roaming\DriverCure
[-] Folder Deleted : C:\Users\Troy\AppData\Roaming\SendSpace
[-] Folder Deleted : C:\Users\Troy\AppData\Roaming\speedypc software
[-] Folder Deleted : C:\Users\Troy\AppData\Roaming\Strongvault
[-] Folder Deleted : C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[-] Folder Deleted : C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\Extensions\[removed]

***** [ Files ] *****

[-] File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
[-] File Deleted : C:\Users\Public\Desktop\eBay.lnk
[-] File Deleted : C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\searchplugins\EasyLife.xml
[-] File Deleted : C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js
[-] File Deleted : C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js
[-] File Deleted : C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js
[-] File Deleted : C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.ssliveupdate.oneclickctrl.9
[-] Key Deleted : HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.ssliveupdate.update3webcontrol.3
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\hahpjplbmicfkmoccokbjejahjjpnena
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44FC7A33-2E5C-48DC-B6F5-B81E8005D122}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F4B8D46C-4EEE-401B-8607-DC03025F34B1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99DCF141-03F9-4363-8D79-640FA646DEED}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AF4400F-CDC5-4F2D-B3F1-74348E5D5CCC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{422E1393-7A4C-44FF-A7E1-8B9D146E0666}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4807D6D8-ADC8-41AF-AB9D-AE1086D1E62F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6E1CD171-29C1-4D56-A223-E31C57A0A25A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{70E96298-17FC-4020-A7CF-6F81ED8CF3AB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{84A81B7E-B8CD-4891-BEA0-548D65E9610A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{867DF9A9-D013-4A1A-B685-DFF65D225ED4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{889074FC-1456-4CE8-88F7-154264DC275F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91F4CF02-F675-4E6A-B4E8-C13DF09B9B1B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A902A36E-0C79-4BD7-B561-9C058BD60210}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AB778974-218E-4734-90F0-731BE7E50E77}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ADE6A9C0-12B3-457D-9A86-548FA87E04DB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B7C67027-15EB-489F-A9EA-286076CF7540}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CDB98856-BEA3-4073-AF57-23A3583AE9E4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CDED8922-BB3D-4E3A-9C2C-89B1C927F48B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D79CBD8E-D857-4D05-B3AD-26F722CF5B6E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7EA7058-B19B-4A27-B50A-87A1B8FC5F30}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0EE6D408-6ED5-40C6-8C42-A041D5DE9AB0}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{13A42355-1F94-4459-B19E-F60B2C607C77}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{293DD661-C540-4AC4-9B4C-42E68369CE1B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2EC58BDB-0694-4D54-80DD-A8F2AA0427A1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{313B508D-596D-4BDF-B0B5-E41F224E184A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A18D16ED-27B2-4B83-B70C-15E73F099546}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27CE191D-733B-4450-AFCD-096D105288C3}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
[-] Key Deleted : HKCU\Software\PrivitizeVPNInstallDates
[-] Key Deleted : HKCU\Software\Softonic
[-] Key Deleted : HKCU\Software\speedypc software
[-] Key Deleted : HKCU\Software\StartSearch
[-] Key Deleted : HKCU\Software\usyndication.com
[-] Key Deleted : HKCU\Software\USyndication
[-] Key Deleted : HKCU\Software\Yahoo\Companion
[-] Key Deleted : HKLM\SOFTWARE\SP Global
[-] Key Deleted : HKLM\SOFTWARE\speedypc software
[-] Key Deleted : HKU\S-1-5-19\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
[-] Key Deleted : HKU\S-1-5-20\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8036C72171EF4ba46856BF57969F6A36
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89BB7852687BDC34B9A81E01C7FF9173
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CBC85D72B148084ABE8C2F072F781F4
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC5A38A64D6098468BC8395BA0EFF03
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DF9A1AC557F56c49B56F6B83E293C15
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A97C590397DCC454AA8923563BAB10E4
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6A54B56C58C82a4688AFB93F42EA17B
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CFA51B44D54927c4E9B7BC1D3FD1E49F
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D14A7F65792054F418578C78367D13F7
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFE9F0BD163D827438CB6AD6B100EC48
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F739A19A8327dc64C9A8B641A9E89646
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\158D6D9E3FE81fa428925F22ACB3A965
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15E6C514FEFC09f45BAFAAE1D7546ED4
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DB42320A8525634AA089F0BEC86473B
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22468B0D6050b2e46B9C4B67A8F59577
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2251BF05A2F606d43BB064BD63CBD87E
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3255D95681398614190EDF0A4F3F77DB
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CDF313E9B28c944FBC7579CF4949414
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71E54748EDD3dc1468548785DC856EDA
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\754590DD06DE8d249B526503432F99D4
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF

***** [ Web browsers ] *****

[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.FF19Solved", "true");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.UserID", "UN12352174311645011");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.addressUrlXPETakeover", "true");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.autoDisableScopes", -1);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.browser.search.defaultthis.engineName", "true");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.defaultSearchXPETakeover", "true");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.installDate", "6/4/2013 19:41:52");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.installerVersion", "1.3.7.3");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("CT3287823.keyword", "true");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3287823&octid=CT3287823&SearchSource=61&CUI=UN12352174311645011&UM=2&UP=SPD7EA63A3-84EB-4390-A383-3FC2159F415D");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://search.easylifeapp.com/?pid=388&src=ff2&r=2013/03/30&hid=2456478372&lg=EN&cc=US&l=1&q=");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("aol_toolbar.default.homepage.check", false);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("aol_toolbar.default.search.check", false);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("browser.search.defaultengine", "Ask.com");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("browser.search.defaultenginename", "Mysearchdial");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("browser.search.defaultthis.engineName", "MixiDJ V9 Customized Web Search");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("browser.search.order.1", "EasyLife");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("browser.search.order.1,S", "EasyLife");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("browser.search.selectedEngine", "Mysearchdial");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("browser.search.selectedEngine,S", "EasyLife");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("extensions.50c5399e77f82.scode", "(function(){try{if('aol.com,mail.google.com,premiumreports.info,search.babylon.com,search.gboxapp.com'.indexOf(window.self.location.hostname)>-1) return;}c[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("extensions.514cb808b231e.scode", "(function(){try{if('aol.com,mail.google.com,premiumreports.info,search.babylon.com,search.gboxapp.com'.indexOf(window.self.location.hostname)>-1) return;}c[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3287823&octid=CT3287823&SearchSource=61&CUI=UN12352174311645011&UM=2&UP=SPD7EA63A3-84EB-4390-A383-3FC2159F415D");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3287823&SearchSource=2&CUI=UN12352174311645011&UM=2&q=");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("smartbar.originalHomepage", "hxxps://www.google.com/");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("smartbar.originalSearchAddressUrl", "hxxp://search.easylifeapp.com/?pid=388&src=ff2&r=2013/03/30&hid=2456478372&lg=EN&cc=US&l=1&q=");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js] [Preference] Deleted : user_pref("smartbar.originalSearchEngine", "Google");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("aol_toolbar.default.homepage.check", false);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("aol_toolbar.default.search.check", false);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.AVIRA-V7.com.avira.dnt.rules", "\"{\\\"Version\\\":39,\\\"Companies\\\":[{\\\"company\\\":\\\"Google Inc\\\",\\\"rules\\\":[{\\\"name\\\":\\\"Google Analytics\\\",\\\"category\\\[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.AVIRA-V7.domain", "\"avira.search.ask.com\"");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.irmysearch.aflt", "wnzp0202ff");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1Qzu0EtDyCzyzyyDyE0C0BtAtAyByCtC0FtAtN0D0Tzu0SyBzzyEtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.irmysearch.cr", "1445374406");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.irmysearch.instlRef", "");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.aflt", "wnzp0202ff");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1Qzu0EtDyCzyzyyDyE0C0BtAtAyByCtC0FtAtN0D0Tzu0SyBzzyEtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.cr", "1445374406");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.dfltLng", "");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.dfltSrch", true);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.dnsErr", true);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.excTlbr", false);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.hmpg", true);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=wnzp0202ff&cd=2XzuyEtN2Y1L1Qzu0EtDyCzyzyyDyE0C0BtAtAyByCtC0FtAtN0D0Tzu0SyBzzyEtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1Czut[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.id", "E069954CB33761F3");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.instlDay", "16123");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.instlRef", "");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=wnzp0202ff&cd=2XzuyEtN2Y1L1Qzu0EtDyCzyzyyDyE0C0BtAtAyByCtC0FtAtN0D0Tzu0SyBzzyEtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1Cz[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.tlbrId", "base");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=wnzp0202ff&cd=2XzuyEtN2Y1L1Qzu0EtDyCzyzyyDyE0C0BtAtAyByCtC0FtAtN0D0Tzu0SyBzzyEtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial_i.hmpg", true);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial_i.newTab", false);
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial_i.smplGrp", "none");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.014:26:16");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.affiliate_id", "3553");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.firstrun", "false");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.log_send_info", "false");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.mappingListJsonString", "{\"version\":\"0.21086\",\"supported_sites\":{\"google\":{\"patterns\":[\"^hxxp\\\\:\\/\\/www\\\\.google\\\\..{2,3}(\\\\\\/ig\\\\\\/firefox)\",\"[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.no_trace", "false");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.server_current_mapping_version", "0.21086");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.supported_sites.encryptedgoogle.wajam_google_js", "try {window['APP_LABEL_NAME'] = 'wajam';window['APP_LABEL_NAME_FULL_UC'] = 'WAJAM';window['WAJAM_APP_LABEL_NAME_UC'] = 'W[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.trace_log", "1365775620047 - processDOMLoad - mappingListJsonString is null, request mapping\n1365775620049 - processDOMLoad - Checking: hxxp://lp.vertitechnologygroup.com/[…]
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.unique_id", "BF36FC702ABF76DAC321F74B07ED1F38");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.user_current_mapping_version", "0");
[-] [C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js] [Preference] Deleted : user_pref("extensions.wajam.version", "1.26");

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [24896 bytes] ##########

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.4 (09.28.2015:1)
OS: Windows 7 Home Premium x64
Ran by [removed] on 11/09/2015 Mon at 19:41:14.41
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks

Successfully deleted: [Task] C:\Windows\system32\tasks\TuneUpUtilities_Task_BkGndMaintenance2013



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211101158}



~~~ Files

Successfully deleted: [File] C:\Windows\SysWOW64\REN5F8D.tmp
Successfully deleted: [File] C:\Windows\SysWOW64\REN78AD.tmp
Successfully deleted: [File] C:\Windows\SysWOW64\RENA20E.tmp
Successfully deleted: [File] C:\Windows\SysWOW64\RENF03D.tmp



~~~ Folders

Successfully deleted: [Folder] C:\ai_recyclebin
Successfully deleted: [Folder] C:\Users\Troy\AppData\Roaming\iobit\driver booster
Successfully deleted: [Folder] C:\Users\Troy\Documents\add-in express
Successfully deleted: [Folder] C:\Windows\SysWOW64\ai_recyclebin
Successfully deleted: [Folder] C:\ProgramData\cicmglnjbanlkdagkpofcgajomagflkp



~~~ FireFox

Successfully deleted the following from C:\Users\Troy\AppData\Roaming\mozilla\firefox\profiles\bc48tzru.default-1365400078299\prefs.js

user_pref(extensions._zlvnYq.scode, (function(){try{var url=window.self.location.href;if(url.indexOf(\acebook\)>-1||url.indexOf(\txtlnkusaolp00000800\)>-1||url.indexOf(
user_pref(sweetim.toolbar.previous.browser.search.defaultenginename, );
user_pref(sweetim.toolbar.previous.browser.search.selectedEngine, );
user_pref(sweetim.toolbar.previous.browser.startup.homepage, );
user_pref(sweetim.toolbar.previous.keyword.URL, );
user_pref(sweetim.toolbar.scripts.1.domain-blacklist, );
user_pref(sweetim.toolbar.searchguard.UserRejectedGuard_DS, );
user_pref(sweetim.toolbar.searchguard.UserRejectedGuard_HP, );
user_pref(sweetim.toolbar.searchguard.enable, );
user_pref({C4CFC0DE-134F-4466-B2A2-FF7C59A8BFAD}.ScriptData_product_name, Updater By SweetPacks);
Emptied folder: C:\Users\Troy\AppData\Roaming\mozilla\firefox\profiles\bc48tzru.default-1365400078299\minidumps [491 files]



~~~ Chrome


[C:\Users\Troy\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Troy\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Troy\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Troy\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 11/09/2015 Mon at 19:51:19.55
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

Do you still have no working browsers?

Download Malwarebytes' Anti-Malware TO YOUR DESKTOP
  • Windows XP : Double click on the icon to run it.
  • Windows Vista, Windows 7 & 8 : Right click and select "Run as Administrator"




    [external image: 0841859c-1a35-4dbd-b41a-e720629e3e22_zps]


  • On the Dashboard click on Update Now
  • Go to the Setting Tab
  • Under Setting go to Detection and Protection
  • Under PUP and PUM make sure both are set to show Treat Detections as Malware
  • Go to Advanced setting and make sure Automatically Quarantine Detected Items is checked
  • Then on the Dashboard click on Scan
  • Make sure to select THREAT SCAN
  • Then click on Scan


    After the restart once you are back at your desktop, open MBAM once more.
    Click on the History tab > Application Logs.
    Double click on the scan log which shows the Date and time of the scan just performed.
    Click 'Copy to Clipboard'
    Paste the contents of the clipboard into your reply

The browsers started working again a restart after your previous instructions, but went down again after I booted up this morning. I could not update malwarebytes, though it's only a week old and I had used it several times over the past few days to clean out my computer. This latest scan showed up to be completely clean. Here's the logs for both the last scan and the scan which had detections.

 

Clean:

 

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 11/10/2015
Scan Time: 10:48 AM
Logfile: MBLog.txt
Administrator: Yes

Version: 2.2.0.1024
Malware Database: v2015.10.30.01
Rootkit Database: v2015.10.28.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Troy

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 399411
Time Elapsed: 11 min, 5 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

 

 

Detections:

 

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 11/8/2015
Scan Time: 9:40 AM
Logfile: MBLog.txt
Administrator: Yes

Version: 2.2.0.1024
Malware Database: v2015.10.30.01
Rootkit Database: v2015.10.28.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Troy

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 436157
Time Elapsed: 16 min, 26 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 77
PUP.Optional.Babylon, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\prefs.js, Good: (), Bad: (user_pref("extensions.BabylonToolbar.prtkHmpg", 0);), Replaced,[1ffa46171b704bebd6fe1a449e66b14f]
PUP.Optional.MySearch, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (user_pref("extensions.irmysearch.instlRef", "");), Replaced,[36e369f485064beb0e7db3acf70db34d]
PUP.Optional.MySearch, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ons.mymysearchdial.hmpgUrl", "http://start.mysearchd),Replaced,[0811c796a5e642f40d7e79e621e3a759]
PUP.Optional.MySearch, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (mymysearchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C0BtAtAyByCtC0FtAtN0D0AtDtC1N1R&cr=1445),Replaced,[80990a53eaa177bfb6d51946e81cc43c]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (user_pref("extensions.mysearchdial.dfltSrch", true);), Replaced,[0d0c4518f2993bfb7817c19ea0640df3]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (s.mymysearchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C0BtAtAyByCtC0FtAtN0D0AtDtC1N1R&cr=1445374406&ir=");
), Replaced,[a673d18c7615cb6b49467ce32fd52fd1]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (0BtAtAyByCtC0FtAtN0D0AtDtC1N1R&cr=1445374406&ir=");
user_pref("extensions.mysearchdial.dfltSrch", true);
user_pref("extensions.mysearchdial.srchPrvdr", 1L1Qzu0EtDyCzyzyyDyE0C0BtAtAyByCt), Replaced,[0316510c2269d462bcd3540b927248b8]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ensions.mysearchdial.dfltSrch", true);
user_pref("extension), Replaced,[bd5c1d409af1ff379bf4590691732dd3]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (archdial.hmpgUrl", "http://start.mysearchdial.com/zyzyy),Replaced,[839673ea315aea4cd4bb69f6cb391fe1]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ymysearchdial.hmpgUrl", "http://start.mysearchdial.com),Replaced,[b76235284d3e38fe94fb2936c53fd22e]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (mymysearchdial.hmpgUrl", "http://start.mysearchdial.com),Replaced,[71a8c9945d2ef93d8f0048176a9a847c]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ymysearchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C0),Replaced,[08110657e6a5c472bcd3f26da65e6997]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (al.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C0BtAtAy),Replaced,[b8612538d4b741f5e0afa6b9f60e2fd1]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (rchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C),Replaced,[9a7f421b93f84de9d7b8ff60976daa56]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (earchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyy),Replaced,[081187d6dead04320788da85e91b7888]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (mysearchdial.hmpgUrl", "http://start.mysearchdial.com/z),Replaced,[cd4c223bdcafe353eea1c09f5ca81ee2]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ymysearchdial.hmpgUrl", "http://start.mysearchdial.c),Replaced,[74a536278902bc7a444b71eec83cd12f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (s.mymysearchdial.hmpgUrl", "http://start.mysearchd),Replaced,[9f7a2439ef9c32047d128bd4758f23dd]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ons.mymysearchdial.hmpgUrl", "http://start.mysear),Replaced,[a7721f3e3f4cb680830c431c71936b95]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ions.mymysearchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C0BtAtAyByCtC0F),Replaced,[7d9c9dc0167590a6d9b6ed72c53fda26]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (//start.mysearchdial.com/zyzyyDyE0C0BtAtAyByCtC0FtAt), Replaced,[10091d40bbd03ff7e0af78e77b8955ab]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (ons.mymysearchdial.hmpgUrl", "http://start.mysearchdia),Replaced,[71a8411cbecd999d2867f8679c68d52b]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (mymysearchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C0BtAtAyByCtC0FtAtN0D0AtDtC1N1R&cr=144537),Replaced,[61b85805b1da42f4216e6cf3798b31cf]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (com/zyzyyDyE0C0BtAtAyByCtC0FtAtN0D0AtDtC1N1), Replaced,[47d2401d15766bcb454af36c2ed6748c]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (user_pref("extensions.mymysearchdial.hmpgUrl", "http://start.mysearchdial.com/zyzyyDyE0C0BtAtAyByCtC0FtAtN0D0AtDtC1N1R&cr=1445374406&ir=");),Replaced,[d94064f9bdce999d612fbea1778d25db]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\8kel9a74.default\user.js, Good: (), Bad: (, 1L1Qzu0EtDyCzyzyyDyE0C0BtAtAyByCtC0FtAtN0D0AtDtC1N1R&cr=1445374406&ir=");
user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=wnzp0202ff&cd=2XzuyEtN2),Replaced,[1405b2ab9bf0171f414f451ac0447e82]
PUP.Optional.Babylon, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (user_pref("extensions.BabylonToolbar.prtkDS", 0);), Replaced,[0514500d54373cfa0cc892cc22e28e72]
PUP.Optional.Babylon, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (Preferences

/* Do not edit this file.
 *
 * If), Replaced,[bf5a25386d1ead892da7124c897bd32d]
PUP.Optional.CrossRider, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (user_pref("extensions.crossrider.bic", "13dfe921c65eac4b6a5816a0a854589b");), Replaced,[c0596bf21972f343c348194671936b95]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.AL", 2);), Replaced,[8495d786f5963600e7a6055a31d32ed2]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ser Preferences

/* Do not edit this file.
 *
 * If ), Replaced,[f72262fb90fbbf775d30abb433d1c13f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (es

/* Do not edit this file.
 *
 * If you make changes to this file while the ap), Replaced,[df3a65f83655d75fdab3ea7520e4d729]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (e.
 *
 * If you make changes to this file while the application is running,
 * the changes will be overwritten when the application exits.
 *
 * To make ), Replaced,[20f95409c9c27cba45486bf4cc38c23e]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ing,
 * the changes will be overwritten when the appl), Replaced,[c0591b42bfcca78fa5e84b14e2221ce4]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (nces

/* Do not edit this file.
 *
 * If you ), Replaced,[d3467ce1a3e8e551ade0e37ce222d42c]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (eferences

/* Do not edit this file.
 *
 * If yo), Replaced,[819849143853e74f127bd08f37cd10f0]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (rences

/* Do not edit this file.
 *
 * If you), Replaced,[db3e3726c8c3a294c9c438277a8aed13]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ferences

/* Do not edit this file.
 *
 * If you), Replaced,[87924a1327648aac4944b4ab54b0916f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (rences

/* Do not edit this file.
 *
 * If y), Replaced,[c257e974dead80b6d4b90e517292837d]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (references

/* Do not edit this file.
 *
 * If you make changes to this file while the application is running,
 * the changes will be overwritten when the application exits.
 *
 * To make a manual change to preferences, you c), Replaced,[54c5104d8cff3bfbf8955e01c83c718f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: ( * To make a manual change to preferences, you can visit the), Replaced,[e039bca1018a5bdb3f4eeb7408fce917]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (
/* Do not edit this file.
 *
 * If you make changes), Replaced,[8a8f411cb3d857dfd0bd520dcf358080]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ces

/* Do not edit this file.
 *
 * If you ma), Replaced,[d148c49908836acc7815c09f5ba942be]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ferences

/* Do not edit this file.
 *
 * If you make changes to this file while the application is running,
 * the changes will be overwritten when the application exits.
 *
 * To make a manual change to preferences, you can v), Replaced,[0316c09d7d0e4aecfe8fb9a68e76a15f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: ( To make a manual change to preferences, you can visit the ), Replaced,[5cbd134a018ad75f9df039261ee6e11f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (

/* Do not edit this file.
 *
 * If you make changes to t), Replaced,[0a0f411c75163bfbef9e263907fd3fc1]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (
/* Do not edit this file.
 *
 * If you make changes to this ), Replaced,[67b23825f695f83eee9f154aa55f18e8]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (* Do not edit this file.
 *
 * If you make changes), Replaced,[2bee06579fecc670226badb264a0fc04]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (rences

/* Do not edit this file.
 *
 * If you make changes to this file while the application is running,
 * the changes will be overwritten when the application exits.
 *
 * To make a manual change to preferences, you can visit th), Replaced,[79a0213cd2b9d462ade0233c28dcba46]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ake a manual change to preferences, you can visit the ), Replaced,[5fbac19c02896dc90d804f1061a33bc5]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (nces

/* Do not edit this file.
 *
 * If you make c), Replaced,[ff1ab1ac64274cea6a231748768e3bc5]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ferences

/* Do not edit this file.
 *
 * If you ), Replaced,[59c00f4ec4c7f442474686d98b79c838]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ences

/* Do not edit this file.
 *
 * If you make ), Replaced,[5fba93caf09b989ea0edd887e51fae52]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\prefs.js, Good: (), Bad: (ces

/* Do not edit this file.
 *
 * If you make changes to th), Replaced,[bc5da2bbec9f3204ef9eb8a753b1b64a]
PUP.Optional.MySearch, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (user_pref("extensions.irmysearch.instlRef", "");), Replaced,[d7426df0ddaeb2842a6173ecce369967]
PUP.Optional.MySearch, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (.useraearchdial.hmpg", true);
user_pref("extensions), Replaced,[18010b524546fd392269481760a4916f]
PUP.Optional.MySearch, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (raearchdial.hmpg", true);
user_pref("extensions.mysearccom/?f=1&a=wnzp0202ff&cd=2XzuyEyBzzyEtN1L2XzutBt), Replaced,[cc4d5904e0ab2e08ee9db0af2adacb35]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (user_pref("extensions.mysearchdial.dfltSrch", true);), Replaced,[8b8e71ec6f1c67cfcac55906e321e21e]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (AtCtN1L1CzutBtAtDtC1N1R&cr=1445374406&ir=");
user_pref("extensions.mysearchdial.dfltSrch", true);
ysearchdial.com/?f=2&a=wnzp0202ff&cd=2XzuyEyBzzyEtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1Czu), Replaced,[d04985d8810a3600e7a8d8876a9a916f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (tAtDtC1N1R&cr=1445374406&ir=");
user_pref("extensions.mysea), Replaced,[24f5a5b84f3c54e290ff70efaa5a6c94]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (hdial.hmpg", true);
user_pref("extensions.mysearccom/?), Replaced,[1306d18c1f6ca690226de57aa55f45bb]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (aearchdial.hmpg", true);
user_pref("extensions.mysear), Replaced,[f12879e47b1096a077187be4947018e8]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (raearchdial.hmpg", true);
user_pref("extensions.mysear), Replaced,[aa6f7de097f4b581157aef7059ab718f]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (aearchdial.hmpg", true);
user_pref("extensions.mysearccom/?f=1&a=), Replaced,[ca4fdc8117748caa038c79e631d3f40c]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (hmpg", true);
user_pref("extensions.mysearccom/?f=1&a=wnzp02), Replaced,[76a3c19cd0bb072f09862837867ef50b]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (dial.hmpg", true);
user_pref("extensions.mysearccom/?f=1&a), Replaced,[ec2d6df0c4c70e284d42e27dc34111ef]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (chdial.hmpg", true);
user_pref("extensions.mysearccom/?), Replaced,[c356530a74177fb72b6487d8e420926e]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (earchdial.hmpg", true);
user_pref("extensions.mysearcc), Replaced,[41d8aab3d2b94ceafc93da8584807a86]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (aearchdial.hmpg", true);
user_pref("extensions.myse), Replaced,[1dfcf964f29960d67a156df22fd5b24e]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (seraearchdial.hmpg", true);
user_pref("extensions), Replaced,[b96097c66a21e55195fa9cc373917888]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (.useraearchdial.hmpg", true);
user_pref("extensi), Replaced,[4acf0756404b221497f8540b64a0669a]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (l.useraearchdial.hmpg", true);
user_pref("extensions.mysearccom/?f=1&a=wnzp0202ff&cd), Replaced,[3adf7edf5b3055e1ddb2b5aa2bd9ee12]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (_pref("extensions.mysearccom/?f=1&a=wnzp0202ff&cd=2X), Replaced,[c05983da810a77bf028dd28db05449b7]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (.useraearchdial.hmpg", true);
user_pref("extensions.m), Replaced,[75a471ec0487dc5a1778cb9440c4f50b]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (raearchdial.hmpg", true);
user_pref("extensions.mysearccom/?f=1&a=wnzp0202ff&cd=2XzuyEyBzzyEtN1L2XzutBtFt), Replaced,[4dcca6b743483105e1aec59ae91b14ec]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (earccom/?f=1&a=wnzp0202ff&cd=2XzuyEyBzzyEtN), Replaced,[928779e417748aac0986223dff058f71]
PUP.Optional.MySearchDial, C:\Users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\user.js, Good: (), Bad: (user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=wnzp0202ff&cd=2XzuyEyBzzyEtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=1445374406&ir=&q=");),Replaced,[44d5a6b7a4e741f5dab68ad5f80c54ac]

Physical Sectors: 0
(No malicious items detected)


(end)

Please print out or make a copy in notepad of any instructions given, as sometimes it is necessary to go offline and you will lose access to them.

How to use ComboFix

Download ComboFix from here:
Link 1
Link 2
Link 3

Place ComboFix.exe on your Desktop <–Important
  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with ComboFix.
    * Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix.



    You can get help on disabling your protection programs here
  • Double click on ComboFix.exe & follow the prompts.
  • You may be asked to install or update the Recovery Console (Win XP Only) if this happens please allow it to do so (you will need to be connected to the internet for this)
  • Your desktop may go blank. This is normal. It will return when ComboFix is done. Combofix may need to reboot your computer more than once to do its job this is normal.
  • When finished, it shall produce a log for you. Post that log in your next reply

    Note:
    Do not mouseclick combofix's window whilst it's running. That may cause it to stall.


    Note 2: If you receive an error "Illegal operation attempted on a registry key that has been marked for deletion." Please restart the computer

    ———————————————————————————————
  • Ensure your AntiVirus and AntiSpyware applications are re-enabled.

    Note: ComboFix may reset a number of Internet Explorer's settings, including making it the default browser.
    Note: Combofix prevents autorun of ALL CDs, floppies and USB devices to assist with malware removal & increase security.
    ———————————————————————————————
  • If there are Internet issues after running ComboFix:
    Internet Explorer:
    Tools Menu -> Internet Options -> Connections Tab ->Lan Settings > uncheck "use a proxy server" and check to "Automatically detect settings". Also clear any proxy address and port. ok, apply (only if applicable), ok.
    Firefox:
    Tools Menu -> Options… -> Advanced Tab -> Network Tab -> "Settings" under Connection. "No Proxy" should be selected, unless you have one set up yourself.
    Chrome:
    Select -> Tools menu -> then "Options", then go to "Change Proxy Settings", then "LAN Settings" , then take out the check mark for "Use a proxy server for your LAN" if set, unless you set this up yourself.
    Safari
    Launch Safari
    Go to general settings menu
    Then in Preferences/ Advanced
    Then on line click Proxies change settings …
    Click Internet Options, then click the Connections tab, click Network Settings.
    Disable option (uncheck) for the use of proxy server …

ComboFix 15-11-09.01 - Troy 0/2015 Tue  14:46:01.1.8 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.932.81.1033.18.8175.5902 [GMT -8:00]
Running from: c:\users\[removed]\Desktop\ComboFix.exe
AV: AVG Internet Security *Disabled/Updated* {4D41356F-32AD-7C42-C820-63775EE4F413}
FW: AVG Internet Security *Disabled* {757AB44A-78C2-7D1A-E37F-CA42A037B368}
SP: AVG Internet Security *Disabled/Updated* {F620D48B-1497-73CC-F290-58052563BEAE}
SP: Spybot - Search and Destroy *Disabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\users\Troy\AppData\Local\assembly\tmp
c:\windows\msdownld.tmp
E:\install.exe
.
.
(((((((((((((((((((((((((   Files Created from 2015-10-10 to 2015-11-10  )))))))))))))))))))))))))))))))
.
.
2015-11-10 22:09 . 2015-11-10 22:09    75888    —-a-w-    c:\programdata\Microsoft\Windows Defender\Definition Updates\{476DFDA9-4AC3-40CB-BB9E-B21A75CD9C7A}\offreg.2176.dll
2015-11-10 02:42 . 2015-11-10 03:09    ——–    d—–w-    C:\AdwCleaner
2015-11-07 17:54 . 2015-10-20 11:33    11140960    —-a-w-    c:\programdata\Microsoft\Windows Defender\Definition Updates\{476DFDA9-4AC3-40CB-BB9E-B21A75CD9C7A}\mpengine.dll
2015-11-06 18:14 . 2015-11-06 18:14    ——–    d—–w-    c:\programdata\AVAST Software
2015-11-05 20:06 . 2015-11-05 20:06    ——–    d—–w-    c:\users\Troy\AppData\Local\THQ
2015-11-05 17:56 . 2015-11-05 17:59    ——–    d—–w-    c:\program files (x86)\GalaxyClient
2015-11-05 17:56 . 2015-11-05 17:56    ——–    d—–w-    c:\programdata\GOG.com
2015-11-03 17:22 . 2015-11-03 17:22    ——–    d—–w-    C:\found.002
2015-11-01 18:09 . 2015-11-01 18:17    ——–    d—–w-    c:\windows\system32\MRT
2015-11-01 17:54 . 2015-07-30 13:13    124624    —-a-w-    c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-01 17:54 . 2015-07-30 13:13    103120    —-a-w-    c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2015-11-01 17:53 . 2013-10-15 02:00    28368    —-a-w-    c:\windows\system32\IEUDINIT.EXE
2015-11-01 17:47 . 2015-11-01 17:47    878080    —-a-w-    c:\windows\system32\advapi32.dll
2015-11-01 17:47 . 2015-11-01 17:47    859648    —-a-w-    c:\windows\system32\tdh.dll
2015-11-01 17:47 . 2015-11-01 17:47    640512    —-a-w-    c:\windows\SysWow64\advapi32.dll
2015-11-01 17:47 . 2015-11-01 17:47    619520    —-a-w-    c:\windows\SysWow64\tdh.dll
2015-11-01 17:46 . 2015-11-01 17:46    327168    —-a-w-    c:\windows\system32\mswsock.dll
2015-11-01 17:46 . 2015-11-01 17:46    231424    —-a-w-    c:\windows\SysWow64\mswsock.dll
2015-11-01 17:40 . 2015-11-01 17:40    1887232    —-a-w-    c:\windows\system32\d3d11.dll
2015-11-01 17:40 . 2015-11-01 17:40    1505280    —-a-w-    c:\windows\SysWow64\d3d11.dll
2015-11-01 16:29 . 2014-03-09 21:48    171160    —-a-w-    c:\windows\system32\infocardapi.dll
2015-11-01 16:29 . 2014-03-09 21:48    1389208    —-a-w-    c:\windows\system32\icardagt.exe
2015-11-01 16:29 . 2014-03-09 21:47    99480    —-a-w-    c:\windows\SysWow64\infocardapi.dll
2015-11-01 16:29 . 2014-03-09 21:47    619672    —-a-w-    c:\windows\SysWow64\icardagt.exe
2015-11-01 16:29 . 2014-06-30 22:24    8856    —-a-w-    c:\windows\system32\icardres.dll
2015-11-01 16:29 . 2014-06-30 22:14    8856    —-a-w-    c:\windows\SysWow64\icardres.dll
2015-11-01 16:28 . 2014-06-06 06:16    35480    —-a-w-    c:\windows\SysWow64\TsWpfWrp.exe
2015-11-01 16:28 . 2014-06-06 06:12    35480    —-a-w-    c:\windows\system32\TsWpfWrp.exe
2015-11-01 16:26 . 2014-12-11 17:47    52736    —-a-w-    c:\windows\system32\TSWbPrxy.exe
2015-11-01 16:24 . 2015-07-15 18:15    94656    —-a-w-    c:\windows\system32\drivers\mountmgr.sys
2015-11-01 16:24 . 2015-07-15 18:10    1743360    —-a-w-    c:\windows\system32\sysmain.dll
2015-11-01 16:24 . 2015-07-15 18:10    11264    —-a-w-    c:\windows\system32\msmmsp.dll
2015-11-01 16:24 . 2015-07-15 18:02    2560    —-a-w-    c:\windows\system32\drivers\en-US\mountmgr.sys.mui
2015-11-01 16:24 . 2015-07-15 03:19    52736    —-a-w-    c:\windows\system32\basesrv.dll
2015-11-01 16:22 . 2014-07-17 02:07    455168    —-a-w-    c:\windows\system32\winlogon.exe
2015-11-01 16:22 . 2014-07-17 02:07    1118720    —-a-w-    c:\windows\system32\mstsc.exe
2015-11-01 16:22 . 2014-07-17 02:07    235520    —-a-w-    c:\windows\system32\winsta.dll
2015-11-01 16:22 . 2014-07-17 01:39    1051136    —-a-w-    c:\windows\SysWow64\mstsc.exe
2015-11-01 16:22 . 2014-07-17 02:07    150528    —-a-w-    c:\windows\system32\rdpcorekmts.dll
2015-11-01 16:22 . 2014-07-17 01:40    157696    —-a-w-    c:\windows\SysWow64\winsta.dll
2015-11-01 16:22 . 2014-07-17 01:21    212480    —-a-w-    c:\windows\system32\drivers\rdpwd.sys
2015-11-01 16:22 . 2014-07-17 01:21    39936    —-a-w-    c:\windows\system32\drivers\tssecsrv.sys
2015-11-01 16:22 . 2012-04-26 05:41    77312    —-a-w-    c:\windows\system32\rdpwsx.dll
2015-11-01 16:22 . 2012-04-26 05:34    9216    —-a-w-    c:\windows\system32\rdrmemptylst.exe
2015-11-01 16:19 . 2014-10-14 02:13    683520    —-a-w-    c:\windows\system32\termsrv.dll
2015-11-01 16:17 . 2013-06-25 22:55    785624    —-a-w-    c:\windows\system32\drivers\Wdf01000.sys
2015-11-01 16:16 . 2014-11-11 03:08    241152    —-a-w-    c:\windows\system32\pku2u.dll
2015-11-01 16:16 . 2014-11-11 02:44    186880    —-a-w-    c:\windows\SysWow64\pku2u.dll
2015-11-01 16:14 . 2013-04-12 14:45    1656680    —-a-w-    c:\windows\system32\drivers\ntfs.sys
2015-11-01 16:13 . 2015-07-04 18:07    2087424    —-a-w-    c:\windows\system32\ole32.dll
2015-11-01 16:12 . 2015-04-24 18:17    633856    —-a-w-    c:\windows\system32\comctl32.dll
2015-11-01 16:11 . 2015-03-04 04:55    367552    —-a-w-    c:\windows\system32\clfs.sys
2015-11-01 16:01 . 2013-10-12 02:30    830464    —-a-w-    c:\windows\system32\nshwfp.dll
2015-11-01 16:01 . 2013-10-12 02:29    859648    —-a-w-    c:\windows\system32\IKEEXT.DLL
2015-11-01 16:01 . 2013-10-12 02:29    324096    —-a-w-    c:\windows\system32\FWPUCLNT.DLL
2015-11-01 16:01 . 2013-10-12 02:03    656896    —-a-w-    c:\windows\SysWow64\nshwfp.dll
2015-11-01 16:01 . 2013-10-12 02:01    216576    —-a-w-    c:\windows\SysWow64\FWPUCLNT.DLL
2015-10-29 21:20 . 2015-11-10 19:30    192216    —-a-w-    c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-10-29 21:19 . 2015-10-29 21:19    ——–    d—–w-    c:\program files (x86)\Malwarebytes Anti-Malware
2015-10-29 21:19 . 2015-10-29 21:19    ——–    d—–w-    c:\programdata\Malwarebytes
2015-10-29 21:19 . 2015-10-05 16:50    63704    —-a-w-    c:\windows\system32\drivers\mwac.sys
2015-10-29 21:19 . 2015-10-05 16:50    109272    —-a-w-    c:\windows\system32\drivers\mbamchameleon.sys
2015-10-29 21:19 . 2015-10-05 16:50    25816    —-a-w-    c:\windows\system32\drivers\mbam.sys
2015-10-23 07:31 . 2015-10-23 07:31    ——–    d—–w-    c:\programdata\ATI
2015-10-23 07:31 . 2015-10-23 07:31    ——–    d—–w-    c:\users\Troy\AppData\Roaming\library_dir
2015-10-23 07:30 . 2015-11-10 19:08    ——–    d—–w-    c:\users\Troy\AppData\Roaming\Raptr
2015-10-23 07:30 . 2015-10-23 07:31    ——–    d—–w-    c:\program files (x86)\Raptr
2015-10-23 07:20 . 2015-10-23 07:21    ——–    d—–w-    c:\program files\AMD
2015-10-22 00:16 . 2015-10-22 00:16    284080    —-a-w-    c:\windows\system32\drivers\avgldx64.sys
2015-10-22 00:15 . 2015-10-22 00:15    255408    —-a-w-    c:\windows\system32\drivers\avgmfx64.sys
2015-10-21 15:27 . 2015-10-21 15:27    ——–    d—–w-    c:\program files (x86)\Common Files\Java
2015-10-19 16:03 . 2015-10-19 16:03    313776    —-a-w-    c:\windows\system32\drivers\avgidsdrivera.sys
2015-10-14 23:06 . 2015-11-10 02:36    ——–    d—–w-    C:\FRST
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-10-21 15:26 . 2013-02-05 20:28    110176    —-a-w-    c:\windows\system32\WindowsAccessBridge-64.dll
2015-10-19 16:05 . 2012-04-02 16:12    780488    —-a-w-    c:\windows\SysWow64\FlashPlayerApp.exe
2015-10-19 16:05 . 2011-08-26 20:28    142536    —-a-w-    c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-10-08 15:46 . 2015-10-08 15:46    302000    —-a-w-    c:\windows\system32\drivers\avgtdia.sys
2015-10-02 20:09 . 2011-08-27 21:19    143481208    —-a-w-    c:\windows\system32\MRT.exe
2015-09-29 02:58 . 2015-11-01 16:25    44032    —-a-w-    c:\windows\apppatch\acwow64.dll
2015-08-29 22:31 . 2015-08-29 22:31    97208    —-a-w-    c:\windows\system32\drivers\avgfwd6a.sys
2015-08-20 20:58 . 2015-08-20 20:58    298416    —-a-w-    c:\windows\system32\drivers\avgidsha.sys
2015-08-14 21:24 . 2015-08-14 21:24    398256    —-a-w-    c:\windows\system32\drivers\avgloga.sys
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files (x86)\Steam\steam.exe" [2015-11-05 3011152]
"Spybot-S&D Cleaning"="c:\program files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe" [2012-11-13 3713032]
"GalaxyClient"="c:\program files (x86)\GalaxyClient\GalaxyClient.exe" [2015-10-14 7744568]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"="c:\program files (x86)\PDF Complete\pdfsty.exe" [2010-09-28 664600]
"Norton Online Backup"="c:\program files (x86)\Symantec\Norton Online Backup\NOBuClient.exe" [2010-06-01 1155928]
"Qwest 11n Wireless WPS Tool"="c:\program files (x86)\Qwest 11n Wireless WPS Tool\WpsCenterV.exe" [2010-04-23 1191936]
"amd_dc_opt"="c:\program files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2012-11-13 3825176]
"ADSKAppManager"="c:\program files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" [2014-06-21 488328]
"StartCCC"="c:\program files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2015-08-04 767176]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2015-10-01 56080]
"AvgUi"="c:\program files (x86)\AVG\Framework\Common\avguix.exe" [2015-10-16 1130408]
"AVG_UI"="c:\program files (x86)\AVG\Av\avgui.exe" [2015-10-24 3826600]
.
c:\users\Troy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
CurseClientStartup.ccip [2011-8-25 0]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Snapfish PictureMover.lnk - c:\program files (x86)\PictureMover\Bin\PictureMover.exe -det [2010-9-28 1040952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute    REG_MULTI_SZ       autocheck autochk *\0\0sdnclean64.exe
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"HP Software Update"=c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe"
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"AutoEJCD_0ACE20FF"=c:\program files (x86)\AutoInstall\AR9170_Auto_Install_CD_Only_Gen_0ACE20FF\AutoEJCD.EXE /VID=0ACE /PID=20FF
.
R1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x]
R2 AutoInstallEJCD;Auto Install Eject CD Service;c:\users\Troy\AppData\Local\Temp\RarSFX0\AutoInstallEJCDSVC.exe;c:\users\Troy\AppData\Local\Temp\RarSFX0\AutoInstallEJCDSVC.exe [x]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\Av\avgidsagent.exe;c:\program files (x86)\AVG\Av\avgidsagent.exe [x]
R2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\Av\avgwdsvcx.exe;c:\program files (x86)\AVG\Av\avgwdsvcx.exe [x]
R2 CLKMSVC10_C6F09094;CyberLink Product - 2010/12/14 22:06;c:\program files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe;c:\program files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [x]
R3 AvgAMPS;AvgAMPS;c:\program files (x86)\AVG\Av\avgamps.exe;c:\program files (x86)\AVG\Av\avgamps.exe [x]
R3 DAUpdaterSvc;Dragon Age: Origins - Content Updater;c:\program files (x86)\Origin Games\Dragon Age\\bin_ship\DAUpdaterSvc.Service.exe;c:\program files (x86)\Origin Games\Dragon Age\\bin_ship\DAUpdaterSvc.Service.exe [x]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x]
R3 FlexNet Licensing Service 64;FlexNet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe;c:\program files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [x]
R3 GalaxyClientService;GalaxyClientService;c:\program files (x86)\GalaxyClient\GalaxyClientService.exe;c:\program files (x86)\GalaxyClient\GalaxyClientService.exe [x]
R3 GalaxyCommunication;GalaxyCommunication;c:\programdata\GOG.com\Galaxy\redists\GalaxyCommunication.exe;c:\programdata\GOG.com\Galaxy\redists\GalaxyCommunication.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 QW720S64;Qwest 802.11n XN720 Driver(win7);c:\windows\system32\DRIVERS\WLANUHN.sys;c:\windows\SYSNATIVE\DRIVERS\WLANUHN.sys [x]
R3 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x]
R3 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x]
R3 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x]
R3 SIVDRIVER;SIV Kernel Driver;c:\windows\system32\Drivers\SIVX64.sys;c:\windows\SYSNATIVE\Drivers\SIVX64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [x]
R3 ZDCNDIS6a64;ZDCNDIS Protocol Driver;c:\windows\system32\ZDCNDIS6a64.sys;c:\windows\SYSNATIVE\ZDCNDIS6a64.sys [x]
S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x]
S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x]
S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x]
S1 Avgdiska;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiska.sys;c:\windows\SYSNATIVE\DRIVERS\avgdiska.sys [x]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys;c:\windows\SYSNATIVE\DRIVERS\avgfwd6a.sys [x]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys;c:\windows\SYSNATIVE\DRIVERS\avgtdia.sys [x]
S2 AdAppMgrSvc;Autodesk Application Manager Service;c:\program files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe ;c:\program files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe  [x]
S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\Av\avgfws.exe;c:\program files (x86)\AVG\Av\avgfws.exe [x]
S2 avgsvc;AVG Service;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe [x]
S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [x]
S2 HPClientSvc;HP Client Services;c:\program files\Hewlett-Packard\HP Client Services\HPClientServices.exe;c:\program files\Hewlett-Packard\HP Client Services\HPClientServices.exe [x]
S2 NOBU;Norton Online Backup;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE [x]
S2 pdfcDispatcher;PDF Document Manager;c:\program files (x86)\PDF Complete\pdfsvc.exe;c:\program files (x86)\PDF Complete\pdfsvc.exe [x]
S2 RoxioNow Service;RoxioNow Service;c:\program files (x86)\Roxio\RoxioNow Player\RNowSvc.exe;c:\program files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
— Other Services/Drivers In Memory —
.
*Deregistered* - CLKMDRV10_C6F09094
.
Contents of the 'Scheduled Tasks' folder
.
2013-03-31 c:\windows\Tasks\Check for updates (Spybot - Search & Destroy).job
- c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2013-03-31 21:08]
.
2015-11-06 c:\windows\Tasks\HPCeeScheduleForTroy.job
- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15 12:43]
.
2013-03-31 c:\windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job
- c:\program files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2013-03-31 21:07]
.
2013-03-31 c:\windows\Tasks\Scan the system (Spybot - Search & Destroy).job
- c:\program files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2013-03-31 21:07]
.
.
——— X64 Entries ———–
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BeatsOSDApp"="c:\program files\IDT\WDM\beats64.exe" [2010-08-15 37888]
"hpsysdrv"="c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe" [2008-11-20 62768]
"SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2010-09-15 611896]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-09-27 489472]
.
——- Supplementary Scan ——-
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 192.168.0.1 [removed]
FF - ProfilePath - c:\users\Troy\AppData\Roaming\Mozilla\Firefox\Profiles\bc48tzru.default-1365400078299\
.
- - - - ORPHANS REMOVED - - - -
.
Notify-SDWinLogon - SDWinLogon.dll
AddRemove-{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE} - c:\program files (x86)\InstallShield Installation Information\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}\setup.exe
AddRemove-SOE-PlanetSide 2 - c:\program files (x86)\Steam\steamapps\common\PlanetSide 2\Uninstaller.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\pdfcDispatcher]
"ImagePath"="c:\program files (x86)\PDF Complete\pdfsvc.exe /startedbyscm:66B66708-40E2BE4D-pdfcService"
.
——————— LOCKED REGISTRY KEYS ———————
.
[HKEY_USERS\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
.
[HKEY_USERS\S-1-5-21-1117344718-3105732553-3752503743-1001\Software\SecuROM\License information*]
"datasecu"=hex:9d,f9,c9,c7,a3,bc,11,00,9e,d1,c4,2a,f4,dd,bf,09,8d,e6,d9,2c,36,
   15,35,8f,d6,0a,b0,b3,4b,eb,80,9b,6e,34,dd,ed,b6,86,84,be,66,88,8e,07,26,7c,\
"rkeysecu"=hex:64,b6,bd,e1,3e,80,9e,c4,40,b4,90,83,87,8e,33,49
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11c_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11c_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2015-11-10  14:56:27
ComboFix-quarantined-files.txt  2015-11-10 22:56
.
Pre-Run: 96,281,358,336 bytes free
Post-Run: 96,143,081,472 bytes free
.
- - End Of File - - A0B4E7AB59040C0197C469C882EACA4E
 

Please open Notepad *Do Not Use Wordpad!* or use any other text editor than Notepad or the script will fail. (Start -> Run -> type notepad in the Open field -> OK) and copy and paste the text present inside the quote box below:
To do this highlight the contents of the box and right click on it and select copy.
Paste this into the open notepad. save it to the Desktop as fixlist.txt
NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.
It needs to be saved Next to the "Farbar Recovery Scan Tool" (If asked to overwrite existing one please allow)
 

start
CreateRestorePoint:
CloseProcesses:
CMD: ipconfig /flushdns
CMD: netsh winsock reset all
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
CMD: bitsadmin /reset /allusers
End


Open FRST/FRST64 and press the > Fix < button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.

~~~~~~~~~~~~~~~~~~~~~~~~~~`


Any improvements with the browsers?


***
What we can do now is run an online scan with Eset, for the time being it is our most trusted scanner.
Most reliable and thorough.
The settings I suggest will show us items located in quarantine folders so don't be alarmed with this, also, in case of a false positive I ask that you not allow it to delete what it does find.
This scanner can take quite a bit of time to run, depending of course how full your computer is.



Note: This scan may take a long time to complete. Please do not browse the Internet whilst your Anti-Virus is disabled.

[external image: GzlsbnV.png]ESET Online Scan
Note: This scan may take a long time to complete. Please do not browse the Internet whilst your Anti-Virus is disabled.
  • Please download ESET Online Scan and save the file to your Desktop.
  • Temporarily disable your anti-virus software. For instructions, please refer to the following link.
  • Double-click esetsmartinstaller_enu.exe to run the programme.
  • Agree to the EULA by placing a checkmark next to Yes, I accept the Terms of Use. Then click Start.
  • Agree to the Terms of Use once more and click Start. Allow components to download.
  • Place a checkmark next to Enable detection of potentially unwanted applications.
  • Click Advanced settings. Place a checkmark next to:
    • Scan archives
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • Ensure Remove found threats is unchecked.
  • Click Start.
  • Wait for the scan to finish. Please be patient as this can take some time.
  • Upon completion, click [external image: esetListThreats.png]. If no threats were found, skip the next two bullet points.
  • Click [external image: esetExport.png] and save the file to your Desktop, naming it something such as "MyEsetScan".
  • Push the Back button.
  • Place a checkmark next to [external image: xKN1w2nv.png.pagespeed.ic.JWqIaEgZi7.png] and click [external image: SzOC1p0.png.pagespeed.ce.OWDP45O6oG.png].
  • Re-enable your anti-virus software.
  • Copy the contents of the log and paste in your next reply.

Browsers are still not working. I've only been able to do your instructions by using USB Storage to pass programs around from another computer. But I couldn't do it with ESET Online Scanner since it needed a connection. All I have here is the FRST log file.

 

 

Fix result of Farbar Recovery Scan Tool (x64) Version:14-10-2015
Ran by [removed] (2015-11-10 16:38:00) Run:2
Running from C:\Users\[removed]\Desktop
[removed] Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CreateRestorePoint:
CloseProcesses:
CMD: ipconfig /flushdns
CMD: netsh winsock reset all
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
CMD: bitsadmin /reset /allusers
End
*****************

Restore point was successfully created.
Processes closed successfully.

=========  ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========


=========  netsh winsock reset all =========


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.


========= End of CMD: =========


=========  netsh int ipv4 reset =========

Reseting Global, OK!
Reseting Interface, OK!
Restart the computer to complete this action.


========= End of CMD: =========


=========  netsh int ipv6 reset =========

Reseting Interface, OK!
Restart the computer to complete this action.


========= End of CMD: =========


=========  bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

0 out of 0 jobs canceled.

========= End of CMD: =========



The system needed a reboot.

==== End of Fixlog 16:38:44 ====

After running the last FRST script and rebooting the machine, still no browsers?


Let's check your system settings.

Internet Explorer:
Tools Menu -> Internet Options -> Connections Tab ->Lan Settings > uncheck "use a proxy server" and check to "Automatically detect settings". Also clear any proxy address and port. ok, apply (only if applicable), ok.
Firefox:
Tools Menu -> Options… -> Advanced Tab -> Network Tab -> "Settings" under Connection. "No Proxy" should be selected, unless you have one set up yourself.
Chrome:
Select -> Tools menu -> then "Options", then go to "Change Proxy Settings", then "LAN Settings" , then take out the check mark for "Use a proxy server for your LAN" if set, unless you set this up yourself.

**
Try powering off your router, unplug from the electrical source and restarting it a 5 minutes later?

~~~~~~~~~~~~~~~~~~~~~~~~~~``

Let's do an experiment.

Let's temporarily disable your antivirus (If more then one is installed, please remove one) and see if thats causing the no browsers working.
Just long enough to see if you can connect with it disabled.
You can get help on disabling your protection programs here

~~~~~~~~~~~~~~~~~~~~~~~~~~`
Also please download Windows Repair (all in one) from here

[external image: step-4-tab.jpg]
Install the program then go to step 4 and create a new system restore point and new registry backup.

Go to Step 2 and allow it to run CheckDisk by clicking on Do It button:
[external image: p22001645.gif]



NEXT
On the the Start Repairs tab => Click the Start
[external image: start-repairs-tab.jpg]


Please ensure that ONLY items seen in the image below are ticked as indicated (they're all checked by default):
[external image: p22001647.gif]

Click on box next to the Restart System when Finished. Then click on Start.

Nothing, I even disabled windows defender… which I completely forgot I had until now. The network claims that my wireless connection is 'excellent' but fails to allow me to use my browsers or any program that connects to the internet. I had my connection back when I used FRST, AdwCleaner, and Junkware Removal Tool, but the problem came back the day after.

make sure you haven't switched off the wireless button.

Below are some troubleshooting tips I researched.

Can you try safe mode with networking and see if you have internet access that way?
~~~~~~~~~~~~~~~

We can do another winsock reset

Start Search text box type Cmd

Type netsh winsock reset then hit> ENTER:
The following message should be seen: "Successfully reset the Winsock Catalog. You must restart the computer in order to complete the reset."
Restart computer.

~~~

First make sure that your wireless connection is not disabled.

Click on Start –> In search box, OR click on windows key + R key, type ncpa.cpl and press Enter

"Network Connections" window will be opened. If you find your wireless

connection icon in grey color then right-click on it and select "Enable".

~~~

Try connecting the laptop to the router directly with Ethernet cable, If you get Internet access, then remove the cable & restart the laptop to see now if wifi connection giving you internet access.
 
~~~~~~~~~~~~~~~

unplug your router completely. DISABLE the wifi on the laptop.
Plug the router in again and enable the wifi. this can take a couple of minutes, let's see if the laptop find the new signal from the router on it's own.

Safemode DOES make it work and lets me browse and use my programs. Using ncpa.cpl only showed one wireless connection, which was enabled, but not connected. I don't think that's the connection I was looking for though, it was just labeled as wireless connection while the one connected is labeled wireless connection 2, and that was not shown in ncpa.cpl. (also, my computer is not a laptop, it's a desktop with built-in wireless)

We're getting out of my area here of knowledge but, don't give up.
We have tech help in other sub forums here who deal with issues like these often.

What I'd like for you to do is go to the below link
http://forums.whatthetech.com/index.php?showforum=119
create a new topic, supply a link from this one where they can see what we've already attempted to do.

I think your probably malware free at this point I just can't restore your wireless internet.

I did start a new thread in the link you suggested, however, I did run Eset Smart Scanner in safe mode overnight, and it crashed somewhere along the way just like my previous antivirus scans. I can't seem to find anything in Eset that would yield a report file though, I'm running it again…

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI