Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - Dachronic

Pages: [1] 2 3
1
Tech Clinic / System struggling while running flash
« on: January 03, 2016, 06:25:15 PM »

I got that pc apart right now, after cleaning heatsink for cpu that was dust clogged temps were fine until I tried to game, gfx card jumped up to 70c in like 5 mins. Opened it up and found this https://www.flickr.com/photos/137813587@N02/shares/u7855b\'>https://www.flickr.com/photos/137813587@N02/shares/u7855b soon as I get everything cleaned I\'ll turn it on and post logs. The flash thing was still happening with flash games slowing down, still can\'t figure that out. after taking apart gpu and cleaning it I was getting idle temps of 25c as oppesed to 37c before and when running black ops 3 it was around 45c - 50cmax. In process of taking everything out and cleaning and maybe reapplying thermal paste to cpu/heatsink. Will post logs afterwards, again thanks for all your help and what you do for the forum/community


2
Tech Clinic / System struggling while running flash
« on: January 01, 2016, 09:44:06 PM »

after I did that today ( been out of town for work and didnt take pc , sorry for late response ), was using the pc today ran fine for a couple hours then all a sudden it died and rebooted. turned on about 10 mins same thing. opened it up super super dusty, mainly the heat sink for proc unit was clogged up with dust. got some canned air to clean it, pc been on for about 10-15 mins this time.



3
Tech Clinic / System struggling while running flash
« on: December 12, 2015, 09:18:31 AM »

Yes it happens across all browsers ,and happens with any flash related browser game I try. They will work fine for a few minutes then it starts to decline to the point it\'s unplayable and I have to go to task manager and end process on flash and refresh the game page.


 


Happened a couple/few months ago after the last flash update.



4
Tech Clinic / System struggling while running flash
« on: December 11, 2015, 09:37:53 PM »

Finally got it had to do in safe mode for some reason.


 


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-12-2015

Ran by TRON (administrator) on TRON-PC (11-12-2015 21:35:52)

Running from C:\\Users\\TRON\\Desktop\\New folder

Loaded Profiles: TRON (Available Profiles: TRON)

Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)

Internet Explorer Version 11 (Default browser: FF)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/\'>http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/


==================== Processes (Whitelisted) =================


(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)


(NVIDIA Corporation) C:\\Windows\\System32\\nvvsvc.exe

(NVIDIA Corporation) C:\\Program Files (x86)\\NVIDIA Corporation\\3D Vision\\nvSCPAPISvr.exe

(Microsoft Corporation) C:\\Program Files\\Microsoft Security Client\\MsMpEng.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\Display\\NvXDSync.exe

(NVIDIA Corporation) C:\\Windows\\System32\\nvvsvc.exe

(Apple Inc.) C:\\Program Files\\Bonjour\\mDNSResponder.exe

(Microsoft Corporation) C:\\Windows\\Microsoft.NET\\Framework64\\v3.0\\WPF\\PresentationFontCache.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\GeForce Experience Service\\GfExperienceService.exe

(NVIDIA Corporation) C:\\Program Files (x86)\\NVIDIA Corporation\\NetService\\NvNetworkService.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

() C:\\Windows\\SysWOW64\\PnkBstrA.exe

(Microsoft Corporation) C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLIDSVC.EXE

(Microsoft Corporation) C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLIDSVCM.EXE

(Microsoft Corporation) C:\\Windows\\System32\\rundll32.exe

(Logitech Inc.) C:\\Program Files\\Logitech\\Gaming Software\\LWEMon.exe

(Microsoft Corporation) C:\\Program Files\\Microsoft Security Client\\msseces.exe

(Microsoft Corporation) C:\\Program Files\\Microsoft Xbox 360 Accessories\\XBoxStat.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\Display\\nvtray.exe

(NVIDIA Corporation) C:\\Program Files (x86)\\NVIDIA Corporation\\Update Core\\NvBackend.exe

(FNet Co., Ltd.) C:\\Program Files (x86)\\XFastUsb\\XFastUsb.exe

(NETGEAR) C:\\Program Files (x86)\\NETGEAR\\WNDA3100v3\\WNDA3100v3.EXE

(Microsoft Corporation.) C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\SeaPort.EXE

(Microsoft Corporation) C:\\Windows\\System32\\taskmgr.exe

(Logitech Inc.) C:\\Program Files\\Logitech Gaming Software\\LCore.exe

(VideoLAN) C:\\Program Files (x86)\\VideoLAN\\VLC\\vlc.exe

(mIRC Co. Ltd.) C:\\acidmax\\mirc.exe

(Mozilla Corporation) C:\\Program Files (x86)\\Mozilla Firefox\\firefox.exe

(PeerBlock, LLC) C:\\Program Files\\PeerBlock\\peerblock.exe

() C:\\Program Files (x86)\\qBittorrent\\qbittorrent.exe

(Microsoft Corporation) C:\\Windows\\System32\\msiexec.exe

(Microsoft Corporation) C:\\Windows\\System32\\dllhost.exe

(Microsoft Corporation) C:\\Windows\\System32\\dllhost.exe



==================== Registry (Whitelisted) ===========================


(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)


HKLM\\...\\Run: [Start WingMan Profiler] => C:\\Program Files\\Logitech\\Gaming Software\\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)

HKLM\\...\\Run: [MSC] => C:\\Program Files\\Microsoft Security Client\\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)

HKLM\\...\\Run: [Launch LCore] => C:\\Program Files\\Logitech Gaming Software\\LCore.exe [12697368 2014-10-14] (Logitech Inc.)

HKLM\\...\\Run: [XboxStat] => C:\\Program Files\\Microsoft Xbox 360 Accessories\\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)

HKLM-x32\\...\\Run: [XFastUsb] => C:\\Program Files (x86)\\XFastUsb\\XFastUsb.exe [4942336 2011-09-20] (FNet Co., Ltd.)

HKLM-x32\\...\\Run: [WNDA3100v3] => C:\\Program Files (x86)\\NETGEAR\\WNDA3100v3\\WNDA3100v3.EXE [6243040 2014-10-13] (NETGEAR)

HKLM-x32\\...\\Run: [SunJavaUpdateSched] => C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe [596528 2015-11-09] (Oracle Corporation)

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: F - F:\\Setup.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: J - J:\\Setup.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: K - K:\\CD_Start.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: {5516bf87-ea47-11df-8d35-806e6f6e6963} - E:\\RunGame.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: {a0be8b0e-eb5d-11df-beae-001bb9537594} - K:\\LaunchU3.exe -a

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: {d5090535-008f-11e0-9c17-001bb9537594} - K:\\LaunchU3.exe -a

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...A8F59079A8D5}\\localserver32:  <==== ATTENTION

AppInit_DLLs: prio.dll => C:\\Program Files\\Prio\\prio.dll [17264 2012-11-08] (O&K Software)

AppInit_DLLs-x32: prio32.dll => C:\\Program Files\\Prio\\prio32.dll [15216 2012-11-08] (O&K Software)

ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} =>  No File

CHR HKLM\\SOFTWARE\\Policies\\Google: Restriction <======= ATTENTION


==================== Internet (Whitelisted) ====================


(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)


ProxyServer: [S-1-5-21-2601419243-2007584176-3567953189-1001] => 203.232.208.116:8080

Tcpip\\Parameters: [DhcpNameServer] 10.168.8.1

Tcpip\\..\\Interfaces\\{1B22B1B3-92F9-44DA-8BEF-CF582404D978}: [DhcpNameServer] 10.168.8.1

Tcpip\\..\\Interfaces\\{5318A75E-9303-43C5-8DEF-912DE617EF72}: [DhcpNameServer] 75.75.75.75 75.75.76.76

Tcpip\\..\\Interfaces\\{69215A00-FABD-4345-BA37-C0E2803AF427}: [DhcpNameServer] 75.75.75.75 75.75.76.76

Tcpip\\..\\Interfaces\\{B8C6BD13-2DE8-486E-806B-F3FC12223C0C}: [DhcpNameServer] 10.168.8.1

Tcpip\\..\\Interfaces\\{BBBE4295-7F11-4FE0-A833-A61F174ECBBA}: [DhcpNameServer] 68.87.68.166 68.87.74.166 192.168.1.1

Tcpip\\..\\Interfaces\\{C1917B49-A9FF-4517-A65E-4087AF42D063}: [DhcpNameServer] 75.75.75.75 75.75.76.76


Internet Explorer:

==================



BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)

BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)

BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\\Program Files (x86)\\Java\\jre1.8.0_66\\bin\\ssv.dll [2015-12-05] (Oracle Corporation)

BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)

BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\BingExt.dll [2012-02-13] (Microsoft Corporation.)

BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\\Program Files (x86)\\Java\\jre1.8.0_66\\bin\\jp2ssv.dll [2015-12-05] (Oracle Corporation)

Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\BingExt.dll [2012-02-13] (Microsoft Corporation.)



Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\Program Files (x86)\\Common Files\\Skype\\Skype4COM.dll [2013-02-26] (Skype Technologies)


FireFox:

========

FF ProfilePath: C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default

FF DefaultSearchEngine: Google

FF DefaultSearchEngine.US: Google

FF SelectedSearchEngine: XFINITY





FF Plugin: @adobe.com/FlashPlayer -> C:\\Windows\\system32\\Macromed\\Flash\\NPSWF64_20_0_0_235.dll [2015-12-09] ()

FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.6.2\\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)

FF Plugin: @microsoft.com/GENUINE -> disabled [No File]

FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\\Program Files\\Microsoft Silverlight\\5.1.30514.0\\npctrl.dll [2014-05-13] ( Microsoft Corporation)

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\\Windows\\SysWOW64\\Macromed\\Flash\\NPSWF32_20_0_0_235.dll [2015-12-09] ()

FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\\Windows\\SysWOW64\\Adobe\\Director\\np32dsw.dll [2010-05-05] (Adobe Systems, Inc.)

FF Plugin-x32: @esn.me/esnsonar,version=0.70.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\Sonar\\0.70.0\\npesnsonar.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.104.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.104.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.116.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.116.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.122.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.122.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.138.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.138.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.96.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.96.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=2.1.4 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.1.4\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.3.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.6.2\\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)

FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\\Program Files (x86)\\Java\\jre1.8.0_66\\bin\\dtplugin\\npDeployJava1.dll [2015-12-05] (Oracle Corporation)

FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\\Program Files (x86)\\Java\\jre1.8.0_66\\bin\\plugin2\\npjp2.dll [2015-12-05] (Oracle Corporation)

FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]

FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\\Program Files (x86)\\Microsoft Silverlight\\5.1.30514.0\\npctrl.dll [2014-05-13] ( Microsoft Corporation)

FF Plugin-x32: @nvidia.com/3DVision -> C:\\Program Files (x86)\\NVIDIA Corporation\\3D Vision\\npnv3dv.dll [2015-11-02] (NVIDIA Corporation)

FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\\Program Files (x86)\\NVIDIA Corporation\\3D Vision\\npnv3dvstreaming.dll [2015-11-02] (NVIDIA Corporation)

FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\\Program Files (x86)\\Pando Networks\\Media Booster\\npPandoWebPlugin.dll [No File]

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\\Program Files (x86)\\Google\\Update\\1.3.29.1\\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\\Program Files (x86)\\Google\\Update\\1.3.29.1\\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)

FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll [2014-07-22] (VideoLAN)

FF Plugin-x32: Adobe Reader -> C:\\Program Files (x86)\\Adobe\\Acrobat Reader DC\\Reader\\AIR\\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin2.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin3.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin4.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin5.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin6.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin7.dll [2010-11-07] (Apple Inc.)

FF Extension: FireFTP - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\extensions\\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2015-11-28]

FF Extension: NoScript - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-11-23]

FF Extension: GameZooks - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{8693cb76-1caf-4115-9bd7-6bab02330326}.xpi [2015-09-18]

FF Extension: Adblock Plus - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-25]

FF Extension: No Name - C:\\Program Files (x86)\\Mozilla Firefox\\extensions\\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2015-11-04] [not signed]


Chrome:

=======

CHR Profile: C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1

CHR Extension: (Google Slides) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-01]

CHR Extension: (Google Docs) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\aohghmighlieiainnegkcijnfilokake [2015-03-01]

CHR Extension: (Google Drive) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\apdfllckaahabafndbhieahigkjlhalf [2015-03-01]

CHR Extension: (YouTube) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-01]

CHR Extension: (Google Search) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-08]

CHR Extension: (Google Sheets) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\felcaaldnbdncclmgdcncolpebgiejap [2015-03-01]

CHR Extension: (Google Play Music) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\icppfcnhkcmnfdhfhphakoifcfokfdhg [2015-03-01]

CHR Extension: (Chrome Hotword Shared Module) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\lccekmodgklaepjeofjdjpbminllajkg [2015-05-08]

CHR Extension: (Google Wallet) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-08]

CHR Extension: (Gmail) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-08]


==================== Services (Whitelisted) ========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


S4 BEService; C:\\Program Files (x86)\\Common Files\\BattlEye\\BEService.exe [49152 2013-05-26] () [File not signed]

R2 GfExperienceService; C:\\Program Files\\NVIDIA Corporation\\GeForce Experience Service\\GfExperienceService.exe [1148744 2015-01-16] (NVIDIA Corporation)

S4 MBAMScheduler; C:\\Program Files (x86)\\Malwarebytes Anti-Malware\\mbamscheduler.exe [1871160 2015-06-17] (Malwarebytes Corporation)

S2 MBAMService; C:\\Program Files (x86)\\Malwarebytes Anti-Malware\\mbamservice.exe [1133880 2015-06-17] (Malwarebytes Corporation)

R2 MsMpSvc; C:\\Program Files\\Microsoft Security Client\\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)

S3 NisSrv; C:\\Program Files\\Microsoft Security Client\\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)

R2 NvNetworkService; C:\\Program Files (x86)\\NVIDIA Corporation\\NetService\\NvNetworkService.exe [1706312 2015-01-16] (NVIDIA Corporation)

R2 NvStreamSvc; C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe [21833544 2015-01-16] (NVIDIA Corporation)

S3 Origin Client Service; C:\\Program Files (x86)\\Origin\\OriginClientService.exe [2078216 2015-10-08] (Electronic Arts)

R2 PnkBstrA; C:\\Windows\\SysWOW64\\PnkBstrA.exe [76152 2015-02-04] ()

S4 prio_svc; C:\\Program Files\\Prio\\prio_svc.exe [12656 2012-11-08] ()

S4 rpcapd; C:\\Program Files (x86)\\WinPcap\\rpcapd.exe [117264 2009-10-20] (CACE Technologies, Inc.)

S4 RunSwUSB; C:\\Windows\\runSW.exe [44104 2013-05-23] ()

S3 WinDefend; C:\\Program Files\\Windows Defender\\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

S4 WSAC950; C:\\Program Files (x86)\\Belkin\\F9L1109\\v1\\WifiSvc.exe [299008 2013-07-09] () [File not signed]


===================== Drivers (Whitelisted) ==========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


S3 dmodusb; C:\\Windows\\System32\\DRIVERS\\dmodusb.sys [32768 2008-12-16] (Windows (R) Codename Longhorn DDK provider)

S3 ebdrv; C:\\Windows\\system32\\DRIVERS\\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)

S3 FNETTBOH_305; C:\\Windows\\System32\\drivers\\FNETTBOH_305.SYS [31808 2011-10-07] (FNet Co., Ltd.)

R1 FNETURPX; C:\\Windows\\System32\\drivers\\FNETURPX.SYS [15936 2011-09-20] (FNet Co., Ltd.)

R3 LGSHidFilt; C:\\Windows\\System32\\DRIVERS\\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.)

R3 MBAMProtector; C:\\Windows\\system32\\drivers\\mbam.sys [25816 2015-06-17] (Malwarebytes Corporation)

S3 MBAMWebAccessControl; C:\\Windows\\system32\\drivers\\mwac.sys [63704 2015-06-17] (Malwarebytes Corporation)

R0 MpFilter; C:\\Windows\\System32\\DRIVERS\\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)

S3 NisDrv; C:\\Windows\\System32\\DRIVERS\\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)

R2 NPF; C:\\Windows\\System32\\drivers\\npf.sys [47632 2009-10-20] (CACE Technologies, Inc.)

R3 NvStreamKms; C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\NvStreamKms.sys [19784 2015-01-16] (NVIDIA Corporation)

R3 nvvad_WaveExtensible; C:\\Windows\\System32\\drivers\\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)

R3 pbfilter; C:\\Program Files\\PeerBlock\\pbfilter.sys [19544 2009-09-28] ()

S3 PlantronicsGC; C:\\Windows\\System32\\drivers\\PLTGC.sys [1327104 2011-11-04] (C-Media Electronics Inc)

S3 RivaTuner64; C:\\Program Files (x86)\\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\\RivaTuner64.sys [12288 2009-08-22] () [File not signed]

R3 RtlWlanu; C:\\Windows\\System32\\DRIVERS\\rtwlanu.sys [2355400 2013-07-09] (Realtek Semiconductor Corporation                           )

S3 tapoas; C:\\Windows\\System32\\DRIVERS\\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)

R3 tapSF0901; C:\\Windows\\System32\\DRIVERS\\tapSF0901.sys [39104 2015-01-23] (Spotflux, Inc.)

S3 USBAAPL64; C:\\Windows\\System32\\Drivers\\usbaapl64.sys [53760 2012-09-28] (Apple, Inc.) [File not signed]

S3 USBTINSP; C:\\Windows\\System32\\DRIVERS\\tinspusb.sys [142848 2010-03-29] (Texas Instruments)

S3 VST64HWBS2; C:\\Windows\\System32\\DRIVERS\\VSTBS26.SYS [411136 2009-06-10] (Conexant Systems, Inc.)

S3 VST64_DPV; C:\\Windows\\System32\\DRIVERS\\VSTDPV6.SYS [1485312 2009-06-10] (Conexant Systems, Inc.)

R3 WinDriver6; C:\\Windows\\System32\\drivers\\windrvr6.sys [254976 2011-06-21] (Jungo)

S3 WNDA3100v3; C:\\Windows\\System32\\DRIVERS\\WNDA3100v3.sys [2222224 2014-10-08] (MediaTek Inc.)

R2 XilinxPC4Driver; C:\\Windows\\System32\\drivers\\xpc4drvr.sys [27384 2011-06-21] (Xilinx, Inc.)

S3 cpuz135; \\??\\C:\\Windows\\TEMP\\cpuz135\\cpuz135_x64.sys [X]

S3 IntcAzAudAddService; system32\\drivers\\RTKVHD64.sys [X]

S3 Synth3dVsc; System32\\drivers\\synth3dvsc.sys [X]

S3 tsusbhub; system32\\drivers\\tsusbhub.sys [X]

S3 VGPU; System32\\drivers\\rdvgkmd.sys [X]

S3 xhunter1; \\??\\C:\\Windows\\xhunter1.sys [X]


==================== NetSvcs (Whitelisted) ===================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)



==================== One Month Created files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-12-11 21:34 - 2015-12-11 21:34 - 00003886 _____ C:\\Windows\\System32\\Tasks\\Adobe Acrobat Update Task

2015-12-11 21:33 - 2015-12-11 21:33 - 00002441 _____ C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Acrobat Reader DC.lnk

2015-12-11 21:33 - 2015-12-11 21:33 - 00002047 _____ C:\\Users\\Public\\Desktop\\Acrobat Reader DC.lnk

2015-12-05 18:31 - 2015-12-05 18:31 - 00000000 ____D C:\\Users\\TRON\\AppData\\Roaming\\Sun

2015-12-05 18:31 - 2015-12-05 18:31 - 00000000 ____D C:\\Users\\TRON\\.oracle_jre_usage

2015-12-05 18:30 - 2015-12-05 18:30 - 00097888 _____ (Oracle Corporation) C:\\Windows\\SysWOW64\\WindowsAccessBridge-32.dll

2015-12-05 18:30 - 2015-12-05 18:30 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Java

2015-12-05 18:14 - 2015-12-05 18:14 - 00584288 _____ (Oracle Corporation) C:\\Users\\TRON\\Downloads\\jxpiinstall.exe

2015-12-03 22:58 - 2015-12-03 22:58 - 00852720 _____ C:\\Users\\TRON\\Desktop\\SecurityCheck.exe

2015-12-03 22:56 - 2015-12-03 22:56 - 00009116 _____ C:\\Users\\TRON\\Desktop\\JRT.txt

2015-12-03 22:53 - 2015-12-03 23:04 - 00000000 ____D C:\\AdwCleaner

2015-12-03 22:52 - 2015-12-03 22:52 - 01736704 _____ C:\\Users\\TRON\\Desktop\\adwcleaner_5.023.exe

2015-12-03 22:51 - 2015-12-03 22:51 - 01599336 _____ (Malwarebytes) C:\\Users\\TRON\\Desktop\\JRT.exe

2015-11-29 21:26 - 2015-12-11 21:35 - 00000000 ____D C:\\Users\\TRON\\Desktop\\New folder

2015-11-29 21:26 - 2015-12-11 21:35 - 00000000 ____D C:\\FRST

2015-11-29 21:25 - 2015-11-29 21:25 - 02350080 _____ (Farbar) C:\\Users\\TRON\\Downloads\\FRST64.exe

2015-11-25 21:09 - 2015-11-25 21:09 - 00388608 _____ (Trend Micro Inc.) C:\\Users\\TRON\\Downloads\\HijackThis.exe

2015-11-22 13:00 - 2015-11-20 07:26 - 01595392 _____ (3DMGAME) C:\\Users\\TRON\\Desktop\\Assassins Creed Syndicate v1.12-Update 1 Plus 19 Trainer.exe

2015-11-22 11:13 - 2015-11-22 11:52 - 00000000 ____D C:\\Users\\TRON\\Documents\\Assassin\'s Creed Syndicate

2015-11-22 11:13 - 2015-11-22 11:13 - 00000000 ____D C:\\Users\\TRON\\AppData\\Roaming\\uplay

2015-11-22 11:03 - 2015-11-22 11:03 - 00000696 _____ C:\\Users\\TRON\\Desktop\\Assassin s Creed Syndicate.lnk

2015-11-22 11:03 - 2015-11-17 18:00 - 00000019 _____ C:\\Users\\TRON\\Desktop\\localization.lang

2015-11-22 11:00 - 2015-11-17 14:06 - 442475541 _____ C:\\Users\\TRON\\Desktop\\sounds_rus.pck

2015-11-22 10:59 - 2015-11-17 18:02 - 07132965 _____ C:\\Users\\TRON\\Desktop\\sounds_rus_install_3.pck

2015-11-22 10:59 - 2015-11-17 14:04 - 41910038 _____ C:\\Users\\TRON\\Desktop\\sounds_rus_install_2.pck

2015-11-22 10:59 - 2015-11-17 14:01 - 07911611 _____ C:\\Users\\TRON\\Desktop\\sounds_rus_install_1.pck

2015-11-14 19:03 - 2015-11-14 19:03 - 03048051 _____ (Pentair) C:\\Users\\TRON\\Downloads\\screenlogicconnect.exe

2015-11-14 19:03 - 2015-11-14 19:03 - 00002089 _____ C:\\Users\\Public\\Desktop\\ScreenLogic Connect.lnk

2015-11-14 19:03 - 2015-11-14 19:03 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Pentair

2015-11-14 19:03 - 2015-11-14 19:03 - 00000000 ____D C:\\Program Files (x86)\\Pentair

2015-11-13 20:37 - 2015-11-13 14:34 - 01291776 _____ (3DMGAME) C:\\Users\\TRON\\Desktop\\Fallout 4 v1.0-v1.1.30 Plus 20 Trainer.exe

2015-11-13 07:07 - 2015-11-13 07:07 - 00000000 ____D C:\\Users\\TRON\\AppData\\Local\\Fallout4

2015-11-13 07:04 - 2015-11-13 07:04 - 00000782 _____ C:\\Users\\TRON\\Desktop\\Play Fallout 4.lnk

2015-11-13 07:04 - 2015-11-13 07:04 - 00000743 _____ C:\\Users\\TRON\\Desktop\\visit www.nosteam.ro.lnk


==================== One Month Modified files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-12-11 21:36 - 2010-11-07 12:02 - 00000000 ____D C:\\Program Files\\PeerBlock

2015-12-11 21:33 - 2010-11-08 11:36 - 00000000 ____D C:\\ProgramData\\Adobe

2015-12-11 21:33 - 2010-11-08 11:36 - 00000000 ____D C:\\Program Files (x86)\\Adobe

2015-12-11 21:32 - 2010-11-08 11:30 - 00000000 ____D C:\\Users\\TRON\\AppData\\Local\\Adobe

2015-12-11 21:24 - 2015-08-18 17:52 - 00000830 _____ C:\\Windows\\Tasks\\Adobe Flash Player Updater.job

2015-12-11 20:59 - 2015-01-10 20:59 - 00000000 ____D C:\\acidmax

2015-12-11 20:55 - 2013-02-11 16:08 - 00000898 _____ C:\\Windows\\Tasks\\GoogleUpdateTaskMachineUA.job

2015-12-11 13:05 - 2013-10-12 11:00 - 00000544 _____ C:\\Windows\\Tasks\\MATLAB R2013b Startup Accelerator.job

2015-12-11 03:55 - 2013-02-11 16:08 - 00000894 _____ C:\\Windows\\Tasks\\GoogleUpdateTaskMachineCore.job

2015-12-10 19:01 - 2009-07-13 22:20 - 00000000 ____D C:\\Windows\\system32\\NDF

2015-12-10 18:49 - 2014-11-16 23:10 - 00000000 ____D C:\\Users\\TRON\\AppData\\Roaming\\vlc

2015-12-09 07:24 - 2015-08-18 17:52 - 00796864 _____ (Adobe Systems Incorporated) C:\\Windows\\SysWOW64\\FlashPlayerApp.exe

2015-12-09 07:24 - 2015-08-18 17:52 - 00142528 _____ (Adobe Systems Incorporated) C:\\Windows\\SysWOW64\\FlashPlayerCPLApp.cpl

2015-12-09 07:24 - 2015-08-18 17:52 - 00003768 _____ C:\\Windows\\System32\\Tasks\\Adobe Flash Player Updater

2015-12-08 23:22 - 2009-07-13 23:45 - 00020704 ____H C:\\Windows\\system32\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2015-12-08 23:22 - 2009-07-13 23:45 - 00020704 ____H C:\\Windows\\system32\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2015-12-08 22:39 - 2010-11-07 09:57 - 00301728 ____N (Microsoft Corporation) C:\\Windows\\system32\\MpSigStub.exe

2015-12-06 14:36 - 2010-11-07 12:13 - 00000000 ____D C:\\Program Files (x86)\\Steam

2015-12-05 18:44 - 2014-01-24 16:42 - 00000000 ____D C:\\ProgramData\\Oracle

2015-12-05 18:31 - 2010-11-07 09:56 - 00000000 ____D C:\\Users\\TRON

2015-12-05 18:30 - 2010-11-07 09:44 - 00000000 ____D C:\\Program Files (x86)\\Java

2015-12-03 23:07 - 2011-05-07 19:57 - 00000000 ____D C:\\ProgramData\\NVIDIA

2015-12-03 23:07 - 2009-07-14 00:08 - 00000006 ____H C:\\Windows\\Tasks\\SA.DAT

2015-12-02 03:50 - 2013-02-11 16:08 - 00003894 _____ C:\\Windows\\System32\\Tasks\\GoogleUpdateTaskMachineUA

2015-12-02 03:50 - 2013-02-11 16:08 - 00003642 _____ C:\\Windows\\System32\\Tasks\\GoogleUpdateTaskMachineCore

2015-11-29 21:29 - 2009-07-13 22:20 - 00000000 ____D C:\\Windows

2015-11-22 13:04 - 2015-11-06 19:31 - 00000840 _____ C:\\Users\\Public\\Desktop\\Speccy.lnk

2015-11-22 13:04 - 2015-10-10 18:16 - 00000949 _____ C:\\Users\\TRON\\Desktop\\Logitech Gaming Software 8.57.lnk

2015-11-22 13:00 - 2014-11-18 19:49 - 00000000 ____D C:\\Users\\TRON\\Documents\\FLiNGTrainer

2015-11-22 11:03 - 2014-11-17 17:29 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\by.xatab

2015-11-20 20:38 - 2011-09-23 15:46 - 00000000 ____D C:\\Users\\TRON\\AppData\\Local\\CrashDumps

2015-11-13 07:07 - 2010-11-08 14:09 - 00000000 ____D C:\\Users\\TRON\\Documents\\My Games

2015-11-11 17:56 - 2009-07-14 00:13 - 00782470 _____ C:\\Windows\\system32\\PerfStringBackup.INI

2015-11-11 17:56 - 2009-07-13 22:20 - 00000000 ____D C:\\Windows\\inf


==================== Files in the root of some directories =======


2013-11-19 16:28 - 2013-11-20 20:04 - 0000249 _____ () C:\\Users\\TRON\\AppData\\Roaming\\BreakingPoint_Login.ini

2014-02-17 16:48 - 2014-11-15 15:51 - 0003943 _____ () C:\\Users\\TRON\\AppData\\Roaming\\LTspiceIV.ini

2013-10-04 08:30 - 2013-10-04 19:30 - 0000026 _____ () C:\\Users\\TRON\\AppData\\Roaming\\prio.ini

2014-12-22 21:47 - 2014-12-22 21:47 - 0000000 ___SH () C:\\Users\\TRON\\AppData\\Local\\LumaEmu

2011-11-15 15:42 - 2011-11-15 16:16 - 0002189 _____ () C:\\Users\\TRON\\AppData\\Local\\TempfixPerms.vbs

2010-11-07 11:39 - 2010-11-07 11:39 - 0000056 ____H () C:\\ProgramData\\ezsidmv.dat


Some files in TEMP:

====================

C:\\Users\\TRON\\AppData\\Local\\Temp\\02e5b391de59434f4b9c98b716a91237.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\4e6cf5d72520e51ea54dbf30164d13e3.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\Bass.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\Bass.Net.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\BingBarSetup-Partner.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpub6zc5.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\jre-7u51-windows-i586-iftw.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\jre-7u65-windows-i586-iftw.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\jre-8u40-windows-au.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\Lng.Dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\mirc738.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvSCPAPI.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvSCPAPI64.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvSCPAPISvr.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvStInst.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\SkypeSetup.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\sqlite3.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\SRLDetectionLibrary8121594306983000867.dll



==================== Bamital & volsnap =================


(There is no automatic fix for files that do not pass verification.)


C:\\Windows\\system32\\winlogon.exe => File is digitally signed

C:\\Windows\\system32\\wininit.exe => File is digitally signed

C:\\Windows\\SysWOW64\\wininit.exe => File is digitally signed

C:\\Windows\\explorer.exe => File is digitally signed

C:\\Windows\\SysWOW64\\explorer.exe => File is digitally signed

C:\\Windows\\system32\\svchost.exe => File is digitally signed

C:\\Windows\\SysWOW64\\svchost.exe => File is digitally signed

C:\\Windows\\system32\\services.exe => File is digitally signed

C:\\Windows\\system32\\User32.dll => File is digitally signed

C:\\Windows\\SysWOW64\\User32.dll => File is digitally signed

C:\\Windows\\system32\\userinit.exe => File is digitally signed

C:\\Windows\\SysWOW64\\userinit.exe => File is digitally signed

C:\\Windows\\system32\\rpcss.dll => File is digitally signed

C:\\Windows\\system32\\dnsapi.dll => File is digitally signed

C:\\Windows\\SysWOW64\\dnsapi.dll => File is digitally signed

C:\\Windows\\system32\\Drivers\\volsnap.sys => File is digitally signed



LastRegBack: 2015-11-30 00:30


==================== End of FRST.txt ============================



5
Tech Clinic / System struggling while running flash
« on: December 10, 2015, 07:49:20 PM »

Updated Java, adobe reader keeps saying its updated then still shows outdated version. and still having same initial problem with flash. Going to try to boot in safe mode and install adobe reader and will post logs then, sorry for late reply busy season at work 14 hours days.



6
Tech Clinic / System struggling while running flash
« on: December 03, 2015, 11:10:25 PM »

log from restarting after running AdWcleaner


 


# AdwCleaner v5.023 - Logfile created 03/12/2015 at 23:04:24

# Updated 30/11/2015 by Xplode

# Database : 2015-12-03.1 [Server]

# Operating system : Windows 7 Ultimate Service Pack 1 (x64)

# Username : TRON - TRON-PC

# Running from : C:\\Users\\TRON\\Desktop\\adwcleaner_5.023.exe

# Option : Cleaning

# Support : http://toolslib.net/forum\'>http://toolslib.net/forum


***** [ Services ] *****



***** [ Folders ] *****


[-] Folder Deleted : C:\\Program Files (x86)\\AVG\\AVG10\\Toolbar

[-] Folder Deleted : C:\\ProgramData\\DeviceVM

[-] Folder Deleted : C:\\Users\\TRON\\AppData\\Roaming\\DeviceVM

[-] Folder Deleted : C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\xfin_portal

[-] Folder Deleted : C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{4B9BCCE8-A70B-402A-A7E1-DB96831EE26F}


***** [ Files ] *****



***** [ DLLs ] *****



***** [ Shortcuts ] *****



***** [ Scheduled tasks ] *****



***** [ Registry ] *****


[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\AppID\\{49BC4DD1-0E69-4611-9164-0009538C5E46}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\CLSID\\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\CLSID\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\Interface\\{0214A12B-C5A3-437F-A6F3-068ABCD8C85E}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\Interface\\{03E2A1F3-4402-4121-8B35-733216D61217}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\Interface\\{3AE26843-9171-4F23-A8E5-5421701276A4}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\Interface\\{96DD9437-5D20-4EFB-BF52-A4A605A4E0AA}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\Interface\\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\TypeLib\\{13ABD093-D46F-40DF-A608-47E162EC799D}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\TypeLib\\{4A11A6BD-7880-49BD-92D4-6F09D0BD3250}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\TypeLib\\{68DE31F7-43FF-4EE2-B88B-10665016970D}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\TypeLib\\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\TypeLib\\{B00FE392-639D-4688-976E-A1BFF368CB96}

[-] Key Deleted : HKLM\\SOFTWARE\\Classes\\TypeLib\\{F5A29F21-B121-48A0-A317-737AF8BB106A}

[-] Key Deleted : HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Ext\\Stats\\{3706EE7C-3CAD-445D-8A43-03EBC3B75908}

[-] Key Deleted : HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Ext\\Stats\\{F25AF245-4A81-40DC-92F9-E9021F207706}

[-] Key Deleted : HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Low Rights\\ElevationPolicy\\{1791C1B5-FFD0-4D4B-ABCD-7A7DF6EAA89C}

[-] Key Deleted : HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Low Rights\\ElevationPolicy\\{49BC4DD1-0E69-4611-9164-0009538C5E46}

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{0214A12B-C5A3-437F-A6F3-068ABCD8C85E}

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{03E2A1F3-4402-4121-8B35-733216D61217}

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{3AE26843-9171-4F23-A8E5-5421701276A4}

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{96DD9437-5D20-4EFB-BF52-A4A605A4E0AA}

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3706EE7C-3CAD-445D-8A43-03EBC3B75908}

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Low Rights\\ElevationPolicy\\{49BC4DD1-0E69-4611-9164-0009538C5E46}

[-] Key Deleted : HKCU\\Software\\Conduit

[-] Key Deleted : HKCU\\Software\\YahooPartnerToolbar

[-] Key Deleted : HKCU\\Software\\AppDataLow\\Software\\xfin_portal

[-] Key Deleted : HKLM\\SOFTWARE\\Conduit

[-] Key Deleted : [x64] HKLM\\SOFTWARE\\DivX\\Install\\Setup\\WizardLayout\\ConduitToolbar

[-] Key Deleted : HKU\\.DEFAULT\\Software\\AVG Secure Search

[-] Key Deleted : HKU\\.DEFAULT\\Software\\AppDataLow\\Software\\AVG Security Toolbar


***** [ Web browsers ] *****



*************************


:: \"Tracing\" keys removed

:: Winsock settings cleared


########## EOF - C:\\AdwCleaner\\AdwCleaner[C1].txt - [3964 bytes] ##########

 



7
Tech Clinic / System struggling while running flash
« on: December 03, 2015, 11:01:59 PM »

Results of screen317\'s Security Check version 1.009  

 Windows 7 Service Pack 1 x64 (UAC is enabled)  

 Internet Explorer 11  

``````````````Antivirus/Firewall Check:``````````````[/u]

 Windows Firewall Enabled!  

Microsoft Security Essentials   

  (On Access scanning disabled!)

 Error obtaining update status for antivirus!  

`````````Anti-malware/Other Utilities Check:`````````[/u]

 \"Call of Duty - Ghosts\"

 JavaFX 2.1.1    

 Java 7 Update 51  

 Java 8 Update 25  

 Java version 32-bit out of Date!

 Adobe Flash Player 19.0.0.245  

 Adobe Reader 10.1.11 Adobe Reader out of Date!  

 Mozilla Firefox (42.0)

 Google Chrome (46.0.2490.86)

 Google Chrome (47.0.2526.73)

````````Process Check: objlist.exe by Laurent````````[/u]  

 Microsoft Security Essentials MSMpEng.exe

 Microsoft Security Essentials msseces.exe

`````````````````System Health check`````````````````[/u]

 Total Fragmentation on Drive C: 0%

````````````````````End of Log``````````````````````[/u]

 



8
Tech Clinic / System struggling while running flash
« on: December 03, 2015, 10:59:49 PM »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Junkware Removal Tool (JRT) by Malwarebytes

Version: 8.0.1 (11.24.2015)

Operating System: Windows 7 Ultimate x64

Ran by TRON (Administrator) on Thu 12/03/2015 at 22:55:04.50

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~





File System: 19


Successfully deleted: C:\\ProgramData\\apn (Folder)

Successfully deleted: C:\\ProgramData\\ask (Folder)

Successfully deleted: C:\\ProgramData\\blekko toolbars (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Local\\{c06cbc77-4cba-e67b-f0ab-9c488764be6d} (Empty Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Local\\28050 (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Local\\28070 (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Local\\crashrpt (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Local\\esupport.com (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Local\\packageaware (Folder)

Successfully deleted: C:\\Users\\TRON\\Appdata\\LocalLow\\avg security toolbar (Folder)

Successfully deleted: C:\\Users\\TRON\\Appdata\\LocalLow\\comcasttb (Folder)

Successfully deleted: C:\\Users\\TRON\\Appdata\\LocalLow\\conduit (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Roaming\\download manager (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Roaming\\dsite (Folder)

Successfully deleted: C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\extensions\\{4b9bcce8-a70b-402a-a7e1-db96831ee26f}\\chrome\\data\\search\\engines_mystart.xml (File)

Successfully deleted: C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\searchplugins\\avg-secure-search.xml (File)

Successfully deleted: C:\\Program Files (x86)\\comcasttb (Folder)

Successfully deleted: C:\\Program Files (x86)\\oapps (Folder)

Successfully deleted: C:\\Program Files\\privacysafeguard (Folder)


Deleted the following from C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js


user_pref(CT2786678.CTID, CT2786678);

user_pref(CT2786678.CurrentServerDate, 8-11-2010);

user_pref(CT2786678.DialogsAlignMode, LTR);

user_pref(CT2786678.DownloadReferralCookieData, );

user_pref(CT2786678.EMailNotifierPollDate, Mon Nov 08 2010 13:04:44 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedLastCount5690698542593514850, 393);

user_pref(CT2786678.FeedPollDate129301619375443753, Mon Nov 08 2010 12:25:20 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375443759, Mon Nov 08 2010 12:25:20 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444699, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444705, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444711, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444717, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444723, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444729, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444735, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444741, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedPollDate129301619375444747, Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.FeedTTL129301619375444699, 10);

user_pref(CT2786678.FeedTTL129301619375444723, 15);

user_pref(CT2786678.FeedTTL129301619375444735, 5);

user_pref(CT2786678.FeedTTL129301619375444747, 5);

user_pref(CT2786678.FirstServerDate, 7-11-2010);

user_pref(CT2786678.FirstTime, true);

user_pref(CT2786678.FirstTimeFF3, true);

user_pref(CT2786678.FirstTimeSettingsDone, true);

user_pref(CT2786678.FixPageNotFoundErrors, false);

user_pref(CT2786678.GroupingServerCheckInterval, 1440);


user_pref(CT2786678.Initialize, true);

user_pref(CT2786678.InitializeCommonPrefs, true);

user_pref(CT2786678.InstallationAndCookieDataSentCount, 3);

user_pref(CT2786678.InstallationType, UnknownIntegration);

user_pref(CT2786678.InstalledDate, Sun Nov 07 2010 11:02:06 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.IsGrouping, false);

user_pref(CT2786678.IsMulticommunity, false);

user_pref(CT2786678.IsOpenThankYouPage, false);

user_pref(CT2786678.IsOpenUninstallPage, false);

user_pref(CT2786678.LanguagePackLastCheckTime, Mon Nov 08 2010 11:16:27 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.LanguagePackReloadIntervalMM, 1440);


user_pref(CT2786678.LastLogin_2.7.2.0, Mon Nov 08 2010 13:04:49 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.LatestVersion, 2.7.2.0);

user_pref(CT2786678.Locale, en);

user_pref(CT2786678.LoginCache, 4);

user_pref(CT2786678.MCDetectTooltipHeight, 83);


user_pref(CT2786678.MCDetectTooltipWidth, 295);


user_pref(CT2786678.SearchFromAddressBarIsInit, true);

user_pref(CT2786678.SearchInNewTabEnabled, true);

user_pref(CT2786678.SearchInNewTabIntervalMM, 1440);

user_pref(CT2786678.SearchInNewTabLastCheckTime, Mon Nov 08 2010 11:16:07 GMT-0500 (Eastern Standard Time));



user_pref(CT2786678.SettingsCheckIntervalMin, 120);

user_pref(CT2786678.SettingsLastCheckTime, Mon Nov 08 2010 11:16:07 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.SettingsLastUpdate, 1288989406);

user_pref(CT2786678.ThirdPartyComponentsInterval, 504);

user_pref(CT2786678.ThirdPartyComponentsLastCheck, Sun Nov 07 2010 11:02:05 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.ThirdPartyComponentsLastUpdate, 1246790578);


user_pref(CT2786678.UserID, UN06953024906295391);

user_pref(CT2786678.WeatherNetwork, );

user_pref(CT2786678.WeatherPollDate, Mon Nov 08 2010 13:04:45 GMT-0500 (Eastern Standard Time));

user_pref(CT2786678.WeatherUnit, F);

user_pref(CT2786678.alertChannelId, 1178763);

user_pref(CT2786678.clientLogIsEnabled, true);


user_pref(CT2786678.myStuffEnabled, true);

user_pref(CT2786678.myStuffPublihserMinWidth, 400);


user_pref(CT2786678.myStuffServiceIntervalMM, 1440);




user_pref(CommunityToolbar.ToolbarsList, CT2786678);

user_pref(CommunityToolbar.ToolbarsList2, CT2786678);

user_pref(CommunityToolbar.facebook.settingsLastCheckTime, Mon Nov 08 2010 11:16:07 GMT-0500 (Eastern Standard Time));

user_pref(browser.search.defaultengine, Ask.com);

user_pref(browser.search.order.1, Ask.com);





Registry: 5


Successfully deleted: HKLM\\SYSTEM\\CurrentControlSet\\services\\AntiSpywareService (Registry Key)

Successfully deleted: HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar\\WebBrowser\\\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} (Registry Value)

Successfully deleted: HKCU\\Software\\Microsoft\\Internet Explorer\\SearchScopes\\{180780f0-b348-4b44-8210-94a8f3ee15b2} (Registry Key)

Successfully deleted: HKCU\\Software\\Microsoft\\Internet Explorer\\SearchScopes\\{95B7759C-8C7F-4BF1-B163-73684A933233} (Registry Key)

Successfully deleted: HKCU\\Software\\Microsoft\\Internet Explorer\\SearchScopes\\{CDF97FAE-8E02-4FEC-8D26-3CF452C736FC} (Registry Key)





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Scan was completed on Thu 12/03/2015 at 22:56:50.56

End of JRT log

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 



9
Tech Clinic / System struggling while running flash
« on: December 03, 2015, 10:57:44 PM »

Sorry been super busy with work.


 


adwcleaner log


 


# AdwCleaner v5.023 - Logfile created 03/12/2015 at 22:53:09

# Updated 30/11/2015 by Xplode

# Database : 2015-12-03.1 [Server]

# Operating system : Windows 7 Ultimate Service Pack 1 (x64)

# Username : TRON - TRON-PC

# Running from : C:\\Users\\TRON\\Desktop\\adwcleaner_5.023.exe

# Option : Scan

# Support : http://toolslib.net/forum\'>http://toolslib.net/forum


***** [ Services ] *****



***** [ Folders ] *****


Folder Found : C:\\Program Files (x86)\\comcasttb

Folder Found : C:\\Program Files (x86)\\OApps

Folder Found : C:\\Program Files (x86)\\AVG\\AVG10\\Toolbar

Folder Found : C:\\ProgramData\\apn

Folder Found : C:\\ProgramData\\Ask

Folder Found : C:\\ProgramData\\blekko toolbars

Folder Found : C:\\ProgramData\\DeviceVM

Folder Found : C:\\Users\\TRON\\AppData\\Local\\eSupport.com

Folder Found : C:\\Users\\TRON\\AppData\\Local\\PackageAware

Folder Found : C:\\Users\\TRON\\AppData\\Local\\28050

Folder Found : C:\\Users\\TRON\\AppData\\Local\\28070

Folder Found : C:\\Users\\TRON\\AppData\\LocalLow\\AVG Security Toolbar

Folder Found : C:\\Users\\TRON\\AppData\\LocalLow\\comcasttb

Folder Found : C:\\Users\\TRON\\AppData\\LocalLow\\Conduit

Folder Found : C:\\Users\\TRON\\AppData\\Roaming\\DeviceVM

Folder Found : C:\\Users\\TRON\\AppData\\Roaming\\DSite

Folder Found : C:\\Users\\TRON\\AppData\\Roaming\\download Manager

Folder Found : C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\xfin_portal

Folder Found : C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{4B9BCCE8-A70B-402A-A7E1-DB96831EE26F}


***** [ Files ] *****


File Found : C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\searchplugins\\avg-secure-search.xml


***** [ DLL ] *****



***** [ Shortcuts ] *****



***** [ Scheduled tasks ] *****



***** [ Registry ] *****


Key Found : HKLM\\SOFTWARE\\Classes\\AppID\\{49BC4DD1-0E69-4611-9164-0009538C5E46}

Key Found : HKLM\\SOFTWARE\\Classes\\CLSID\\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}

Key Found : HKLM\\SOFTWARE\\Classes\\CLSID\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}

Key Found : HKLM\\SOFTWARE\\Classes\\Interface\\{0214A12B-C5A3-437F-A6F3-068ABCD8C85E}

Key Found : HKLM\\SOFTWARE\\Classes\\Interface\\{03E2A1F3-4402-4121-8B35-733216D61217}

Key Found : HKLM\\SOFTWARE\\Classes\\Interface\\{3AE26843-9171-4F23-A8E5-5421701276A4}

Key Found : HKLM\\SOFTWARE\\Classes\\Interface\\{96DD9437-5D20-4EFB-BF52-A4A605A4E0AA}

Key Found : HKLM\\SOFTWARE\\Classes\\Interface\\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

Key Found : HKLM\\SOFTWARE\\Classes\\TypeLib\\{13ABD093-D46F-40DF-A608-47E162EC799D}

Key Found : HKLM\\SOFTWARE\\Classes\\TypeLib\\{4A11A6BD-7880-49BD-92D4-6F09D0BD3250}

Key Found : HKLM\\SOFTWARE\\Classes\\TypeLib\\{68DE31F7-43FF-4EE2-B88B-10665016970D}

Key Found : HKLM\\SOFTWARE\\Classes\\TypeLib\\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}

Key Found : HKLM\\SOFTWARE\\Classes\\TypeLib\\{B00FE392-639D-4688-976E-A1BFF368CB96}

Key Found : HKLM\\SOFTWARE\\Classes\\TypeLib\\{F5A29F21-B121-48A0-A317-737AF8BB106A}

Key Found : HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Ext\\Stats\\{3706EE7C-3CAD-445D-8A43-03EBC3B75908}

Key Found : HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Ext\\Stats\\{F25AF245-4A81-40DC-92F9-E9021F207706}

Key Found : HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Low Rights\\ElevationPolicy\\{1791C1B5-FFD0-4D4B-ABCD-7A7DF6EAA89C}

Key Found : HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Low Rights\\ElevationPolicy\\{49BC4DD1-0E69-4611-9164-0009538C5E46}

Value Found : HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar\\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]

Key Found : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{0214A12B-C5A3-437F-A6F3-068ABCD8C85E}

Key Found : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{03E2A1F3-4402-4121-8B35-733216D61217}

Key Found : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{3AE26843-9171-4F23-A8E5-5421701276A4}

Key Found : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{96DD9437-5D20-4EFB-BF52-A4A605A4E0AA}

Key Found : [x64] HKLM\\SOFTWARE\\Classes\\Interface\\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

Key Found : [x64] HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3706EE7C-3CAD-445D-8A43-03EBC3B75908}

Key Found : [x64] HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Low Rights\\ElevationPolicy\\{49BC4DD1-0E69-4611-9164-0009538C5E46}

Key Found : HKCU\\Software\\Conduit

Key Found : HKCU\\Software\\YahooPartnerToolbar

Key Found : HKCU\\Software\\AppDataLow\\Software\\xfin_portal

Key Found : HKLM\\SOFTWARE\\Conduit

Key Found : [x64] HKLM\\SOFTWARE\\DivX\\Install\\Setup\\WizardLayout\\ConduitToolbar

Key Found : HKU\\.DEFAULT\\Software\\AVG Secure Search

Key Found : HKU\\.DEFAULT\\Software\\AppDataLow\\Software\\AVG Security Toolbar

Key Found : HKCU\\Software\\Microsoft\\Internet Explorer\\SearchScopes\\{95B7759C-8C7F-4BF1-B163-73684A933233}

Key Found : HKCU\\Software\\Microsoft\\Internet Explorer\\SearchScopes\\{CDF97FAE-8E02-4FEC-8D26-3CF452C736FC}


***** [ Web browsers ] *****



[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.CTID\", \"CT2786678\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.CurrentServerDate\", \"8-11-2010\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.DialogsAlignMode\", \"LTR\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.DownloadReferralCookieData\", \"\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.EMailNotifierPollDate\", \"Mon Nov 08 2010 13:04:44 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedLastCount5690698542593514850\", 393);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375443753\", \"Mon Nov 08 2010 12:25:20 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375443759\", \"Mon Nov 08 2010 12:25:20 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444699\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444705\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444711\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444717\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444723\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444729\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444735\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444741\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedPollDate129301619375444747\", \"Mon Nov 08 2010 12:25:19 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedTTL129301619375444699\", 10);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedTTL129301619375444723\", 15);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedTTL129301619375444735\", 5);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FeedTTL129301619375444747\", 5);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FirstServerDate\", \"7-11-2010\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FirstTime\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FirstTimeFF3\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FirstTimeSettingsDone\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.FixPageNotFoundErrors\", false);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.GroupingServerCheckInterval\", 1440);


[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.Initialize\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.InitializeCommonPrefs\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.InstallationAndCookieDataSentCount\", 3);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.InstallationType\", \"UnknownIntegration\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.InstalledDate\", \"Sun Nov 07 2010 11:02:06 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.IsGrouping\", false);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.IsMulticommunity\", false);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.IsOpenThankYouPage\", false);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.IsOpenUninstallPage\", false);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.LanguagePackLastCheckTime\", \"Mon Nov 08 2010 11:16:27 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.LanguagePackReloadIntervalMM\", 1440);


[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.LastLogin_2.7.2.0\", \"Mon Nov 08 2010 13:04:49 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.LatestVersion\", \"2.7.2.0\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.Locale\", \"en\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.LoginCache\", 4);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.MCDetectTooltipHeight\", \"83\");


[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.MCDetectTooltipWidth\", \"295\");


[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.SearchFromAddressBarIsInit\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.SearchInNewTabEnabled\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.SearchInNewTabIntervalMM\", 1440);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.SearchInNewTabLastCheckTime\", \"Mon Nov 08 2010 11:16:07 GMT-0500 (Eastern Standard Time)\");



[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.SettingsCheckIntervalMin\", 120);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.SettingsLastCheckTime\", \"Mon Nov 08 2010 11:16:07 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.SettingsLastUpdate\", \"1288989406\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.ThirdPartyComponentsInterval\", 504);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.ThirdPartyComponentsLastCheck\", \"Sun Nov 07 2010 11:02:05 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.ThirdPartyComponentsLastUpdate\", \"1246790578\");


[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.UserID\", \"UN06953024906295391\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.WeatherNetwork\", \"\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.WeatherPollDate\", \"Mon Nov 08 2010 13:04:45 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.WeatherUnit\", \"F\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.alertChannelId\", \"1178763\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.clientLogIsEnabled\", true);


[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.myStuffEnabled\", true);

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.myStuffPublihserMinWidth\", 400);


[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CT2786678.myStuffServiceIntervalMM\", 1440);




[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CommunityToolbar.ToolbarsList\", \"CT2786678\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CommunityToolbar.ToolbarsList2\", \"CT2786678\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"CommunityToolbar.facebook.settingsLastCheckTime\", \"Mon Nov 08 2010 11:16:07 GMT-0500 (Eastern Standard Time)\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"browser.search.defaultengine\", \"Ask.com\");

[C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\prefs.js] [Preference] Found : user_pref(\"browser.search.order.1\", \"Ask.com\");



########## EOF - C:\\AdwCleaner\\AdwCleaner[S1].txt - [19904 bytes] ##########

 



10
Tech Clinic / System struggling while running flash
« on: November 29, 2015, 09:33:44 PM »

addition


 


Additional scan result of Farbar Recovery Scan Tool (x64) Version:29-11-2015

Ran by TRON (2015-11-29 21:28:50)

Running from C:\\Users\\TRON\\Desktop\\New folder

Windows 7 Ultimate Service Pack 1 (X64) (2010-11-07 14:56:15)

Boot Mode: Normal

==========================================================



==================== Accounts: =============================


Administrator (S-1-5-21-2601419243-2007584176-3567953189-500 - Administrator - Disabled)

Guest (S-1-5-21-2601419243-2007584176-3567953189-501 - Limited - Disabled)

TRON (S-1-5-21-2601419243-2007584176-3567953189-1001 - Administrator - Enabled) => C:\\Users\\TRON


==================== Security Center ========================


(If an entry is included in the fixlist, it will be removed.)


AV: Microsoft Security Essentials (Disabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}

AS: Microsoft Security Essentials (Disabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}


==================== Installed Programs ======================


(Only the adware programs with \"Hidden\" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)


\"Call of Duty - Ghosts\" (HKLM-x32\\...\\{CE9AC577-B7E6-4909-B476-2E42F3714C00}_is1) (Version: 1.0.0.657763 (Update 5) - )

«Borderlands The Pre-Sequel» 1.0.7.0 (HKLM-x32\\...\\«Borderlands The Pre-Sequel»_is1) (Version: 1.0.7.0 - Take-Two Interactive Software, Inc)

µTorrent (HKLM-x32\\...\\uTorrent) (Version: 2.2.1 - )

AC Wi-Fi Dual-Band USB Adapter (HKLM-x32\\...\\{D4169298-7E3E-4C4C-8720-2C5B0457B9D2}) (Version: 1.0.0.15 - Belkin)

Adobe AIR (HKLM-x32\\...\\Adobe AIR) (Version: 2.5.0.16600 - Adobe Systems Inc.)

Adobe Flash Player 19 NPAPI (HKLM-x32\\...\\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)

Adobe Reader X (10.1.11) (HKLM-x32\\...\\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.11 - Adobe Systems Incorporated)

Adobe Shockwave Player 11.5 (HKLM-x32\\...\\{9ECF7817-DB11-4FBA-9DF1-296A578D513A}) (Version: 11.5.7.609 - Adobe Systems, Inc)

ASRock App Charger v1.0.4 (HKLM\\...\\ASRock App Charger_is1) (Version:  - ASRock Inc.)

ASRock eXtreme Tuner v0.1.54 (HKLM-x32\\...\\ASRock eXtreme Tuner_is1) (Version:  - )

ASRock InstantBoot v1.26 (HKLM-x32\\...\\ASRock InstantBoot_is1) (Version:  - )

Assassin s Creed Syndicate v.1.12 (HKLM-x32\\...\\Assassin s Creed Syndicate_is1) (Version:  - )

Assassins Creed IV Black Flag v.1.07 (HKLM-x32\\...\\Assassins Creed IV Black Flag_is1) (Version:  - )

Batman Arkham Origins (HKLM-x32\\...\\{F9F98926-BC5F-41C3-A05A-2EB60300332E}) (Version: 6.0 - Black Box)

Battlefield Hardline version 1.0.0.0 (HKLM-x32\\...\\Battlefield Hardline_is1) (Version: 1.0.0.0 - )

Battlelog Web Plugins (HKLM-x32\\...\\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB)

BattlEye for OA Uninstall (HKLM-x32\\...\\BattlEye for OA) (Version:  - )

Bing Bar (HKLM-x32\\...\\{16793295-2366-40F7-A045-A3E42A81365E}) (Version: 7.1.362.0 - Microsoft Corporation)

Bonjour (HKLM\\...\\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)

Call of Duty Modern Warfare 3 version 1.0 (HKLM-x32\\...\\{4B7IL77L-LKS1-75B1-CODMW3-18CD6E6334R1}_is1) (Version: 1.0 - Activision)

Call of Duty: Advanced Warfare - Multiplayer (HKLM-x32\\...\\Steam App 209660) (Version:  - Sledgehammer Games)

Call of Duty: Black Ops III (HKLM-x32\\...\\Steam App 311210) (Version:  - Treyarch)

Call of Duty: Black Ops III Beta (HKLM-x32\\...\\Steam App 388520) (Version:  - Treyarch)

CCleaner (HKLM\\...\\CCleaner) (Version: 4.00 - Piriform)

Change MAC Address version 2.7.0.83 (HKLM-x32\\...\\Change MAC Address_is1) (Version: 2.7.0.83 - LizardSystems)

Counter-Strike: Global Offensive (HKLM-x32\\...\\Steam App 730) (Version:  - Valve)

Crysis 3 (HKLM-x32\\...\\Crysis 3_is1) (Version:  - )

Dark Souls II Scholar of the First Sin v.1.0.1 (HKLM-x32\\...\\Dark Souls II Scholar of the First Sin_is1) (Version:  - )

DayZ Commander (HKLM-x32\\...\\{0170930E-68D6-4E85-88B2-82761CDE1F94}) (Version: 0.92.69 - Dotjosh Studios)

DEAD OR ALIVE 5 Last Round (HKLM-x32\\...\\REVBRE9SQUxJVkU1TGFzdFJvdW5k_is1) (Version: 1 - )

Dead Space 3 (HKLM-x32\\...\\Dead Space 3_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)

DFO (HKLM-x32\\...\\{C1E5C0FB-527E-42C6-BCA0-0A37A6124AE4}) (Version: 1.01.0000 - Neople)

Dishonored - Game of the Year Edition (HKLM-x32\\...\\Dishonored - Game of the Year Edition_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, Panky)

DivX Setup (HKLM-x32\\...\\DivX Setup) (Version: 2.6.1.8 - DivX, LLC)

Dragonball Xenoverse (HKLM-x32\\...\\Dragonball Xenoverse_is1) (Version:  - )

Dying Light Be The Zombie DLC (HKLM-x32\\...\\RHlpbmdMaWdodA==_is1) (Version: 1 - )

erLT (x32 Version: 1.20.0137 - Logitech, Inc.) Hidden

Etron USB3.0 Host Controller (HKLM-x32\\...\\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology)

Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology) Hidden

Fallout New Vegas - Ultimate Edition (HKLM-x32\\...\\Fallout New Vegas - Ultimate Edition_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, Panky)

Far Cry 4 (HKLM-x32\\...\\Far Cry 4_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)

Gameforge Live 2.0.8 (HKLM-x32\\...\\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.8 - Gameforge)

Google Chrome (HKLM-x32\\...\\Google Chrome) (Version: 46.0.2490.86 - Google Inc.)

Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden

Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden

Grand Theft Auto V (HKLM-x32\\...\\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: \"1.00.0000\" - Rockstar Games)

HEX (HKLM-x32\\...\\{6EDED3CB-CAC5-4200-A534-CCA1732EAF23}_is1) (Version:  - Gameforge)

HEX (HKLM-x32\\...\\{E31B651A-B48C-423C-8D0D-855756C8B7E8}_is1) (Version:  - HEX Entertainment)

Intel(R) Management Engine Components (HKLM-x32\\...\\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)

ircN (remove only) (HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\ircN) (Version:  - )

Java 7 Update 51 (HKLM-x32\\...\\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle)

Java 8 Update 25 (HKLM-x32\\...\\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)

JavaFX 2.1.1 (HKLM-x32\\...\\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)

Just Cause 2  Incl. All DLCs MULTI-5 1.0.0.2 (HKLM-x32\\...\\Just Cause 2  Incl. All DLCs MULTI-5 1.0.0.2) (Version:  - )

Logitech Gaming Software 5.10 (HKLM\\...\\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)

Logitech Gaming Software 8.57 (HKLM\\...\\Logitech Gaming Software) (Version: 8.57.145 - Logitech Inc.)

Logitech SetPoint 5.20 (HKLM\\...\\{D3120436-1358-4253-9EB2-257FFE8CE1D9}) (Version: 5.20 - Logitech)

Lords of the Fallen v.версия 1.6 (HKLM-x32\\...\\Lords of the Fallen_is1) (Version:  - )

LTspice IV (HKLM-x32\\...\\LTspice IV) (Version:  - )

Mad Max, âåðñèÿ 1.0.0.0 (HKLM-x32\\...\\Mad Max_is1) (Version: 1.0.0.0 - RePack by SEYTER)

Magic ISO Maker v5.5 (build 0281) (HKLM-x32\\...\\Magic ISO Maker v5.5 (build 0281)) (Version:  - )

Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\\...\\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)

marvell 91xx driver (HKLM-x32\\...\\MagniDriver) (Version: 1.0.0.1047 - Marvell)

Mass Effect 3 (HKLM-x32\\...\\Mass Effect 3_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)

MATLAB R2013b (HKLM\\...\\Matlab R2013b) (Version: 8.2 - The MathWorks, Inc.)

MegaTrainer eXperience V1.2.1.6 (HKLM-x32\\...\\MegaTrainer eXperience_is1) (Version:  - )

Metal Gear Solid Ground Zeroes ver. 1.0.0.1 (HKLM-x32\\...\\{55114499-28DF-19GH-37Y0-46KL5M686AC}_is1) (Version: 1.0.0.1 - Konami Digital Entertainment)

METAL GEAR SOLID V: THE PHANTOM PAIN (HKLM-x32\\...\\Steam App 287700) (Version:  - Konami Digital Entertainment)

Metro: Last Light Redux (HKLM-x32\\...\\Metro: Last Light Redux_is1) (Version:  - Deep Silver)

Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\\...\\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)

Microsoft .NET Framework 4.5.1 (HKLM\\...\\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)

Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\\...\\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)

Microsoft Games for Windows Marketplace (HKLM-x32\\...\\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)

Microsoft Help Viewer 1.0 (HKLM\\...\\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)

Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\\...\\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)

Microsoft Office Enterprise 2007 (HKLM-x32\\...\\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)

Microsoft Office File Validation Add-In (HKLM-x32\\...\\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)

Microsoft Security Essentials (HKLM\\...\\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)

Microsoft Silverlight (HKLM\\...\\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)

Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\\...\\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)

Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\\...\\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)

Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\\...\\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\\...\\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\\...\\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\\...\\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\\...\\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\\...\\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\\...\\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\\...\\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\\...\\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\\...\\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\\...\\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\\...\\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\\...\\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\\...\\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2010 Express - ENU (HKLM-x32\\...\\Microsoft Visual C++ 2010 Express - ENU) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\\...\\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\\...\\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\\...\\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\\...\\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\\...\\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\\...\\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU (HKLM\\...\\{BCA26999-EC22-3007-BB79-638913079C9A}) (Version: 10.0.30319 - Microsoft Corporation)

Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\\...\\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Xbox 360 Accessories 1.2 (HKLM\\...\\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)

Middle-earth™ Shadow of Mordor (HKLM-x32\\...\\Middle-earth™ Shadow of Mordor) (Version: 1.0.1808.19 - WB Games)

mIRC (HKLM-x32\\...\\mIRC) (Version: 7.38 - mIRC Co. Ltd.)

Mortal Kombat X version Mortal Kombat X (HKLM-x32\\...\\Mortal Kombat X_is1) (Version: Mortal Kombat X - )

Mozilla Firefox 42.0 (x86 en-US) (HKLM-x32\\...\\Mozilla Firefox 42.0 (x86 en-US)) (Version: 42.0 - Mozilla)

Mozilla Maintenance Service (HKLM-x32\\...\\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla)

MPC-HC 1.7.8 (64-bit) (HKLM\\...\\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team)

Mumble 1.2.3 (HKLM-x32\\...\\{B4E343DD-BAAB-4D59-AD9C-DEA0AFE09DF1}) (Version: 1.2.3 - Thorvald Natvig)

NETGEAR WNDA3100v3 (x32 Version: 1.0.0.8 - NETGEAR) Hidden

NETGEAR WNDA3100v3 Genie (HKLM-x32\\...\\InstallShield_{3DAC7DF2-7E2B-41EF-8E47-96DC70E1925C}) (Version: 1.0.0.8 - NETGEAR)

NVIDIA 3D Vision Driver 358.87 (HKLM\\...\\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 358.87 - NVIDIA Corporation)

NVIDIA GeForce Experience 2.2.2 (HKLM\\...\\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)

NVIDIA Graphics Driver 358.87 (HKLM\\...\\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 358.87 - NVIDIA Corporation)

NVIDIA PhysX System Software 9.15.0428 (HKLM\\...\\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)

One Piece Pirate Warriors 3: GOLD Edition (HKLM-x32\\...\\One Piece Pirate Warriors 3: GOLD Edition_is1) (Version:  - )

OpenSource Flash Video Splitter 1.0.0.5 (HKLM-x32\\...\\OpenSource Flash Video Splitter) (Version: 1.0.0.5 - )

Origin (HKLM-x32\\...\\Origin) (Version: 8.5.0.4550 - Electronic Arts, Inc.)

Paint.NET v3.5.8 (HKLM\\...\\{9CF4A37B-A8C4-44D7-8C53-13B9D9594BB3}) (Version: 3.58.0 - dotPDN LLC)

PeerBlock 1.0.0 (r181) (HKLM\\...\\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.0.0.181 - PeerBlock, LLC)

Pentair ScreenLogic (HKLM-x32\\...\\{D10B9BEF-B4DF-4719-8617-E23B1994A9D7}) (Version: 5.2.580.0 - Pentair)

PlanetSide 2 Beta (HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\SOE-PlanetSide 2 Beta) (Version:  - Sony Online Entertainment)

Plantronics® GameCom 780 Software for Dolby® Headphone (HKLM-x32\\...\\{EB3C9064-9140-4279-9E51-965119402151}) (Version: 1.00.0001 - Plantronics)

Play withSIX (HKLM-x32\\...\\{D7F3EEAD-183C-47DE-BDC5-593539573F97}) (Version: 1.30.0476 - SIX Networks)

PowerISO (HKLM-x32\\...\\PowerISO) (Version: 4.7 - PowerISO Computing, Inc.)

Prio (HKLM\\...\\Prio) (Version: 2.0.0.2960 - )

PunkBuster Services (HKLM-x32\\...\\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.)

PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden

qBittorrent 3.1.12 (HKLM-x32\\...\\qBittorrent) (Version: 3.1.12 - The qBittorrent project)

QuickTime (HKLM-x32\\...\\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}) (Version: 7.73.80.64 - Apple Inc.)

Rage (HKLM-x32\\...\\Rage_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)

ReaJPEG Pro 4.0 (HKLM-x32\\...\\ReaJPEG Pro_is1) (Version:  - )

Realm Of The Titans (HKLM-x32\\...\\Realm Of The Titans) (Version:  - )

Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\\...\\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek)

Resident Evil 6 version 1 (HKLM-x32\\...\\UmVzaWRlbnQgRXZpbCA2_is1) (Version: 1 - )

RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition (HKLM-x32\\...\\RivaTuner) (Version: v2.24 MSI Master Overclocking Arena 2009 edition - Alexey Nicolaychuk)

Rockstar Games Social Club (HKLM-x32\\...\\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)

SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden

SHIELD Wireless Controller Driver (Version: 2.4.1.21 - NVIDIA Corporation) Hidden

Skype™ 6.11 (HKLM-x32\\...\\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)

Sleeping Dogs - Definitive Edition (HKLM-x32\\...\\Sleeping Dogs - Definitive Edition_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)

Spec Ops The Line (HKLM-x32\\...\\Spec Ops The Line_is1) (Version:  - )

Speccy (HKLM\\...\\Speccy) (Version: 1.28 - Piriform)

SpeedFan (remove only) (HKLM-x32\\...\\SpeedFan) (Version:  - )

STAR WARS™ Battlefront™ Beta (HKLM-x32\\...\\{8A863B64-C9BE-4203-9ED7-92981CF690D3}) (Version: 1.0.3.51560 - Electronic Arts)

Steam (HKLM-x32\\...\\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)

Switch Sound File Converter (HKLM-x32\\...\\Switch) (Version: 4.52 - NCH Software)

System Requirements Lab (HKLM-x32\\...\\{A92D0DBB-834A-4CAD-A434-F2232C692516}) (Version: 6.1.4.0 - Husdawg, LLC)

System Requirements Lab Detection (HKLM-x32\\...\\{F698FE7D-B274-40E8-BB96-51EBE0B8C24C}) (Version: 2.2.3.0 - Husdawg, LLC)

TeamSpeak 3 Client (HKLM\\...\\TeamSpeak 3 Client) (Version: 3.0.11.1 - TeamSpeak Systems GmbH)

The Elder Scrolls V Skyrim - Legendary Edition (HKLM-x32\\...\\{EAABE756-8A47-440F-AAC7-2F6BFF589169}) (Version: 6.0 - Black Box)

The Evil Within (HKLM-x32\\...\\The Evil Within_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)

The Witcher 3 Wild Hunt v.1.0.2 (HKLM-x32\\...\\The Witcher 3 Wild Hunt_is1) (Version:  - )

THX TruStudio Pro (HKLM-x32\\...\\{12FAF8C2-0061-429D-B7B4-FF1C9C58A99C}) (Version: 1.0 - Creative Technology Limited)

TI-Nspire(TM) CAS Student Software (HKLM-x32\\...\\{E8CC9064-8382-4D5C-9E55-F88D9541FFC0}) (Version: 3.2.0.1219 - Texas Instruments Inc.)

Tomb Raider version 5.1 (HKLM-x32\\...\\{B810D8-DFD6-TmbRaid-89A5-CC4D47756DAF}_is1) (Version: 5.1 - Black_Box)

TOUKIDEN Kiwami (HKLM-x32\\...\\{XXXXXXXX-XXXX-XXXX-XXXX-BLACKBOX0052}) (Version: 6.0 - Black Box)

Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\\...\\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)

Uplay (HKLM-x32\\...\\Uplay) (Version: 4.9 - Ubisoft)

VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden

Ventrilo Client for Windows x64 (HKLM\\...\\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)

Visual Studio 2008 x64 Redistributables (HKLM-x32\\...\\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)

VLC media player (HKLM-x32\\...\\VLC media player) (Version: 2.1.5 - VideoLAN)

Warframe (HKLM-x32\\...\\{42401058-F9E0-4170-99E9-47A643E67FC6}) (Version: 1.0.0 - Digital Extremes)

WavePad Sound Editor (HKLM-x32\\...\\WavePad) (Version: 5.55 - NCH Software)

Windows Live ID Sign-in Assistant (HKLM\\...\\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)

WinPcap 4.1.1 (HKLM-x32\\...\\WinPcapInst) (Version: 4.1.0.1753 - CACE Technologies)

WinRAR 4.11 (64-bit) (HKLM\\...\\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)

WinZip 15.0 (HKLM-x32\\...\\{CD95F661-A5C4-44F5-A6AA-ECDD91C240BE}) (Version: 15.0.9302 - WinZip Computing, S.L. )

XFastUsb (HKLM-x32\\...\\XFastUsb) (Version:  - )

Zombi (HKLM-x32\\...\\Zombi_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)


==================== Custom CLSID (Whitelisted): ==========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


CustomCLSID: HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001_Classes\\CLSID\\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\\localserver32 -> C:\\Users\\TRON\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe /autoplay => No File


==================== Restore Points =========================


13-11-2015 18:13:23 Windows Update

14-11-2015 19:03:20 Installed Pentair ScreenLogic

17-11-2015 17:51:56 Windows Update

21-11-2015 17:53:06 Windows Update

25-11-2015 17:51:51 Windows Update

29-11-2015 17:52:11 Windows Update


==================== Hosts content: ===============================


(If needed Hosts: directive could be included in the fixlist to reset Hosts.)


2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\\Windows\\system32\\Drivers\\etc\\hosts



==================== Scheduled Tasks (Whitelisted) =============


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


Task: {196F94D3-B0A2-475D-A52A-BD9B03542604} - System32\\Tasks\\{348CA24B-264A-405E-8118-38C185AF8437} => pcalua.exe -a C:\\Users\\TRON\\Desktop\\ARMA2_OA_Build_93586.exe -d C:\\Users\\TRON\\Desktop

Task: {1E90A4F7-86D2-4BA1-B74B-66454FB7ED5D} - System32\\Tasks\\{11739F7A-A7AA-4B9A-9D0F-B20CBB9E2E32} => pcalua.exe -a \"C:\\Program Files (x86)\\Steam\\SteamApps\\common\\arma 2\\BEsetup\\setup_BattlEyeARMA2.exe\" -d \"C:\\Program Files (x86)\\Steam\\SteamApps\\common\\arma 2\\BEsetup\"

Task: {239694A5-E3D9-45EB-9532-15BD9826FA4F} - System32\\Tasks\\{196253D2-B4B7-481A-9B4A-2E946D25ABB9} => pcalua.exe -a \"C:\\Users\\TRON\\Downloads\\Games\\WH40K2 (Retribution) Extract\\Redist\\aux_installer.exe\" -d \"C:\\Users\\TRON\\Downloads\\Games\\WH40K2 (Retribution) Extract\\Redist\"

Task: {279CB54F-23D7-438E-A597-71603B7877BF} - System32\\Tasks\\{E210310C-BE48-4F19-92DA-D2C9446DCA0E} => pcalua.exe -a E:\\Drivers\\Audio\\REALTEK\\Win7-64_Win7_Vista64_Vista_XP64_XP(R251)\\Setup.exe -d E:\\Drivers\\Audio\\REALTEK\\Win7-64_Win7_Vista64_Vista_XP64_XP(R251)\\ -c /s /f2C:\\Users\\TRON\\AppData\\Local\\Temp\\HDA.log /z[-rpC:\\Users\\TRON\\AppData\\Local\\Temp\\HDASetup.log]

Task: {2EB8D673-8634-492A-B347-6BD3AB30FCF8} - System32\\Tasks\\CCleanerSkipUAC => C:\\Program Files\\CCleaner\\CCleaner.exe [2013-03-25] (Piriform Ltd)

Task: {312FBFFB-A2B2-4AF4-A3A7-5D8C5805C71B} - System32\\Tasks\\GoogleUpdateTaskMachineUA => C:\\Program Files (x86)\\Google\\Update\\GoogleUpdate.exe [2015-08-28] (Google Inc.)


Task: {3978CF28-E070-46C1-A473-7B23FD9FBECE} - System32\\Tasks\\{06EE6569-9EB5-4A95-B9DF-60A1DB6FBFFF} => pcalua.exe -a H:\\Setups\\ME(7.0.4.1197)\\setup.exe -d H:\\Setups\\ME(7.0.4.1197)

Task: {39DB97C6-33F9-44B9-9A24-32859F3FA5CA} - System32\\Tasks\\{85A1638E-D38A-4F96-8F4C-6E5B2DCF9724} => C:\\Riot Games\\League of Legends\\lol.launcher.exe

Task: {4C833122-D5B6-4D00-9A64-BDBD238C1E99} - System32\\Tasks\\MATLAB R2013b Startup Accelerator => C:\\Program Files\\MATLAB\\R2013b\\bin\\win64\\MATLABStartupAccelerator.exe [2013-08-05] ()

Task: {4D356BF4-C0B4-4378-A3C4-EC7CA6B34516} - System32\\Tasks\\{ECB47500-1E1D-4426-8B83-2A79B62BA441} => pcalua.exe -a \"C:\\Users\\TRON\\Desktop\\Games\\Hero\\Hero Editor.exe\" -d C:\\Users\\TRON\\Desktop\\Games\\Hero

Task: {4D72BF9A-AB6D-44CB-BDDA-9D348CB003E1} - System32\\Tasks\\{D6DD6344-50FE-490B-869A-CFC53E37737C} => pcalua.exe -a C:\\Users\\TRON\\Downloads\\Diablo-III-8370-enUS-Installer-downloader.exe -d C:\\Users\\TRON\\Downloads

Task: {4EB3C89E-7A1E-472E-8050-0B7F6D110692} - System32\\Tasks\\GoogleUpdateTaskMachineCore => C:\\Program Files (x86)\\Google\\Update\\GoogleUpdate.exe [2015-08-28] (Google Inc.)

Task: {5EF5A75E-9317-4B59-AF4A-B977EC58AAB7} - System32\\Tasks\\{90574B83-E7F3-4C2D-B1CC-FDEFD9EFE59B} => pcalua.exe -a \"C:\\Program Files (x86)\\ComcastUI\\Desktop Software\\bin\\kui.exe\" -d \"C:\\Program Files (x86)\\ComcastUI\\Desktop Software\\bin\\\"

Task: {754CC17E-3ED2-4C5D-9455-32B63016D428} - System32\\Tasks\\{08B63ADB-DA7B-4E7C-8364-DFE0EBB73870} => C:\\Program Files (x86)\\Skype\\\\Phone\\Skype.exe [2013-11-14] (Skype Technologies S.A.)

Task: {7FA05C8C-CE1E-47DC-A8C0-05699F68F700} - System32\\Tasks\\{903612BA-1B90-4255-8D78-9AFD2B859897} => C:\\Program Files (x86)\\AVG\\AVG10\\avgui.exe

Task: {832C6478-5979-4681-B048-85B43483A89A} - System32\\Tasks\\{4DE6723E-79EC-4B70-932B-DB5C44A7DD57} => pcalua.exe -a \"C:\\Program Files (x86)\\AVG\\AVG10\\avgmfapx.exe\" -c /AppMode=SETUP /Uninstall


Task: {8D6EFBFC-8149-45DD-A679-353739C63042} - System32\\Tasks\\{4F96D9F2-3400-4ECC-9583-32956F0F49A9} => pcalua.exe -a \"C:\\Users\\TRON\\Downloads\\dotnetfx3setup (1).exe\" -d C:\\Users\\TRON\\Downloads

Task: {9A80504F-97B6-4AAA-B498-B07765FD80F2} - System32\\Tasks\\{CE5469D9-CE84-4EC9-B63D-8C8514DF2929} => pcalua.exe -a \"C:\\Program Files (x86)\\Origin\\EAProxyInstaller.exe\" -d C:\\PROGRA~3\\Origin\\DOWNLO~1\\{CP_GU~1 -c /proxyFullPath=C:\\PROGRA~3\\Origin\\DOWNLO~1\\{CP_GU~1\\ORIGIN~1.EXE /proxyCmdLineArgs= /proxyCurrentDir=C:\\PROGRA~3\\Origin\\DOWNLO~1\\{CP_GU~1 /proxyShowUI=1 /proxyRegPath=C:\\ProgramData\\Origin\\DownloadCache\\staging.reg /proxyWait=1

Task: {A1965552-3CB4-4137-879C-B11F8B394C86} - System32\\Tasks\\{9281ED4C-9C9E-4099-992C-05894D884D9D} => C:\\Program Files (x86)\\Steam\\SteamApps\\common\\the walking dead\\WalkingDead101.exe

Task: {A5F0CAB7-907A-4361-BCF8-14FAAE37F88A} - System32\\Tasks\\MSIAfterburner => C:\\Program Files (x86)\\MSI Afterburner\\MSIAfterburner.exe

Task: {C5250554-2A64-4CFB-9052-1AD3BD15AA83} - System32\\Tasks\\{47D8E142-9F9D-40CA-8491-DADB3C0EA819} => pcalua.exe -a \"C:\\Users\\TRON\\Downloads\\Diablo 2 LOD\\SETUP.EXE\" -d \"C:\\Users\\TRON\\Downloads\\Diablo 2 LOD\"

Task: {D499294A-5A88-470B-BF8F-C0B3100F2B15} - System32\\Tasks\\{F1570431-D70E-4585-8C05-367345A8E444} => pcalua.exe -a \"C:\\Program Files\\TeamSpeak 3 Client\\plugins\\ts3overlay\\InstallHook.exe\" -d \"C:\\Program Files\\TeamSpeak 3 Client\\plugins\\ts3overlay\\\" -c 10000


Task: {D79B680A-EF01-4969-87A6-FC7B1CC9265B} - System32\\Tasks\\{AC6D4DC2-F79E-4F57-9BEC-0CD3E96BF3F3} => pcalua.exe -a C:\\Users\\TRON\\Desktop\\pbsetup.exe -d C:\\Users\\TRON\\Desktop

Task: {D8588ABF-14A2-4A01-B542-A501CB45551D} - System32\\Tasks\\avast! Emergency Update => C:\\Program Files\\AVAST Software\\Avast\\AvastEmUpdate.exe

Task: {DD8492A6-92DA-44FC-A500-2B96700216BD} - System32\\Tasks\\{D704E069-F705-4EE7-BBC9-A0B6B9B3F532} => pcalua.exe -a C:\\Users\\TRON\\Downloads\\doom31.3.1.exe -d \"C:\\Program Files (x86)\\Mozilla Firefox\"

Task: {E76B217E-8242-4E85-9E0E-F7D971923E49} - System32\\Tasks\\XboxStatTask => C:\\Program Files\\Microsoft Xbox 360 Accessories\\XBoxStat.exe [2009-09-30] (Microsoft Corporation)

Task: {E9A54746-613B-4238-8CBF-ADA8A126AAE9} - System32\\Tasks\\{8C8E840D-C860-4E4E-9D33-D13BAB04A771} => C:\\Program Files (x86)\\TI Education\\TI-Nspire CAS Student Software\\TI-Nspire CAS Student Software.exe [2012-06-11] (Texas Instruments Incorporated)

Task: {EC84382F-E2F0-45C3-AC89-2ED722E581CE} - System32\\Tasks\\Adobe Flash Player Updater => C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerUpdateService.exe [2015-11-11] (Adobe Systems Incorporated)

Task: {FD050026-958D-4A83-938B-856A1772DD8C} - System32\\Tasks\\{4EE77AA4-F19C-47A4-887C-0BB6D4A0CDAF} => pcalua.exe -a \"C:\\Users\\TRON\\Downloads\\Games\\Oblivion Extract\\Shivering Isles\\Setup\\setup.exe\" -d \"C:\\Users\\TRON\\Downloads\\Games\\Oblivion Extract\\Shivering Isles\\Setup\"


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


Task: C:\\Windows\\Tasks\\Adobe Flash Player Updater.job => C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerUpdateService.exe

Task: C:\\Windows\\Tasks\\GoogleUpdateTaskMachineCore.job => C:\\Program Files (x86)\\Google\\Update\\GoogleUpdate.exe

Task: C:\\Windows\\Tasks\\GoogleUpdateTaskMachineUA.job => C:\\Program Files (x86)\\Google\\Update\\GoogleUpdate.exe

Task: C:\\Windows\\Tasks\\MATLAB R2013b Startup Accelerator.job => C:\\Program Files\\MATLAB\\R2013b\\bin\\win64\\MATLABStartupAccelerator.exe


==================== Shortcuts =============================


(The entries could be listed to be restored or removed.)


Shortcut: C:\\Users\\TRON\\Desktop\\games\\game - DOA5 Shortcut.lnk -> H:\\DEAD OR ALIVE 5 Last Round\\game.bat (No File) <==== ATTENTION


==================== Loaded Modules (Whitelisted) ==============


2011-09-26 22:08 - 2015-11-02 08:22 - 00116528 _____ () C:\\Program Files\\NVIDIA Corporation\\Display\\NvSmartMax64.dll

2012-03-15 11:48 - 2012-02-17 19:55 - 00193536 _____ () C:\\Program Files\\WinRAR\\rarext.dll

2012-12-14 08:18 - 2015-02-04 21:20 - 00076152 _____ () C:\\Windows\\SysWOW64\\PnkBstrA.exe

2014-09-18 02:23 - 2014-09-18 02:23 - 00866584 _____ () C:\\Program Files\\Logitech Gaming Software\\libGLESv2.dll

2014-10-14 13:51 - 2014-10-14 13:51 - 01050904 _____ () C:\\Program Files\\Logitech Gaming Software\\platforms\\qwindows.dll

2014-09-18 02:23 - 2014-09-18 02:23 - 00059160 _____ () C:\\Program Files\\Logitech Gaming Software\\libEGL.dll

2014-10-14 13:51 - 2014-10-14 13:51 - 00242456 _____ () C:\\Program Files\\Logitech Gaming Software\\imageformats\\qjpeg.dll

2014-10-09 13:14 - 2014-10-09 13:14 - 00122880 _____ () C:\\Program Files (x86)\\NETGEAR\\WNDA3100v3\\Ralink.dll

2015-01-10 20:59 - 2004-03-04 19:02 - 00843776 _____ () C:\\acidmax\\libeay32.dll

2015-01-10 20:59 - 2004-03-04 18:59 - 00159744 _____ () C:\\acidmax\\ssleay32.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00113171 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\libvlc.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 02396691 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\libvlccore.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00268307 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\libdshow_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00027667 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_output\\libdirectsound_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00031251 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_output\\libwaveout_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00066579 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_output\\libdirectdraw_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 02043411 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\liblibbluray_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00100371 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\libaccess_bd_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00244243 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\libdvdnav_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00076307 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\libaccess_vdr_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00045587 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\libfilesystem_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00060947 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\stream_filter\\libsmooth_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00531475 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\stream_filter\\libhttplive_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00708627 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\stream_filter\\libdash_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00114195 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\libzip_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00040467 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\access\\libstream_filter_rar_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00014867 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\stream_filter\\librecord_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00133139 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libplaylist_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 01512467 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\meta_engine\\libtaglib_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00296979 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\lua\\liblua_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 01248787 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\misc\\libxml_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00054291 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\control\\libhotkeys_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00038419 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\control\\libglobalhotkeys_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 11148307 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\gui\\libqt4_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00383507 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\services_discovery\\libupnp_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00118803 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\services_discovery\\libsap_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00021011 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\services_discovery\\libpodcast_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00017427 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\services_discovery\\libmediadirs_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00014867 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\services_discovery\\libwindrive_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00189971 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libmp4_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00091667 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libavi_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00067603 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libasf_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00077331 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libflacsys_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00025619 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libes_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00074259 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libmpc_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00016403 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libtta_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00023059 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libnuv_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00021523 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libwav_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00929299 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libsid_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 01194003 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libmkv_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00144403 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\demux\\libogg_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00292371 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libpng_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00017939 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libcdg_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 01280019 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libschroedinger_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00018451 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libdts_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00336403 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libtheora_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00344595 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libfaad_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00198675 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libflac_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00027155 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libg711_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00015891 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libaes3_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 01393171 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\liblibass_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00146451 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libspeex_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00022035 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\liblpcm_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00733203 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libvorbis_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00018963 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libmpeg_audio_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00026131 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libaraw_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00171027 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libopus_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00019475 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\liba52_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00019987 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libspudec_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 10447379 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\codec\\libavcodec_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00746515 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\text_renderer\\libfreetype_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00026643 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\sse2\\libi420_yuy2_sse2_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00019987 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\mmx\\libi420_yuy2_mmx_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00587283 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_filter\\libswscale_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00113683 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\sse2\\libi420_rgb_sse2_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00027667 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\sse2\\libi422_yuy2_sse2_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00019987 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\mmx\\libi422_yuy2_mmx_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00053779 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\mmx\\libi420_rgb_mmx_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00016915 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_chroma\\libyuy2_i422_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00015379 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_chroma\\libgrey_yuv_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00032275 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_chroma\\libi420_rgb_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00018963 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_chroma\\libi420_yuy2_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00020499 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_chroma\\libyuy2_i420_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00017427 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_chroma\\libi422_yuy2_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00015379 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_chroma\\libi422_i420_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00015379 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_filter\\libscale_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00013843 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_filter\\libyuvp_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00068115 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\video_output\\libdirect3d_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00013843 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_mixer\\libfloat_mixer_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00018963 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libscaletempo_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 01496083 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libsamplerate_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00130579 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libmpgatofixed32_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00168979 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libdtstofloat32_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00058899 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\liba52tofloat32_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00019475 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libsimple_channel_mixer_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00013331 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\liba52tospdif_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00014355 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libdtstospdif_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00014867 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libdolby_surround_decoder_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00014355 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libugly_resampler_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00015379 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libtrivial_channel_mixer_plugin.dll

2014-07-22 18:29 - 2014-07-22 18:29 - 00025619 _____ () C:\\Program Files (x86)\\VideoLAN\\VLC\\plugins\\audio_filter\\libaudio_format_plugin.dll

2015-11-11 03:24 - 2015-11-11 03:24 - 17604296 _____ () C:\\Windows\\SysWOW64\\Macromed\\Flash\\NPSWF32_19_0_0_245.dll


==================== Alternate Data Streams (Whitelisted) =========


(If an entry is included in the fixlist, only the ADS will be removed.)


AlternateDataStreams: C:\\ProgramData\\TEMP:0B4227B4


==================== Safe Mode (Whitelisted) ===================


(If an entry is included in the fixlist, it will be removed from the registry. The \"AlternateShell\" will be restored.)



==================== EXE Association (Whitelisted) ===============


(If an entry is included in the fixlist, the registry item will be restored to default or removed.)



==================== Internet Explorer trusted/restricted ===============


(If an entry is included in the fixlist, it will be removed from the registry.)


IE trusted site: HKU\\.DEFAULT\\...\\clonewarsadventures.com -> clonewarsadventures.com

IE trusted site: HKU\\.DEFAULT\\...\\freerealms.com -> freerealms.com

IE trusted site: HKU\\.DEFAULT\\...\\soe.com -> soe.com

IE trusted site: HKU\\.DEFAULT\\...\\sony.com -> sony.com

IE trusted site: HKU\\S-1-5-19\\...\\clonewarsadventures.com -> clonewarsadventures.com

IE trusted site: HKU\\S-1-5-19\\...\\freerealms.com -> freerealms.com

IE trusted site: HKU\\S-1-5-19\\...\\soe.com -> soe.com

IE trusted site: HKU\\S-1-5-19\\...\\sony.com -> sony.com

IE trusted site: HKU\\S-1-5-20\\...\\clonewarsadventures.com -> clonewarsadventures.com

IE trusted site: HKU\\S-1-5-20\\...\\freerealms.com -> freerealms.com

IE trusted site: HKU\\S-1-5-20\\...\\soe.com -> soe.com

IE trusted site: HKU\\S-1-5-20\\...\\sony.com -> sony.com

IE trusted site: HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\clonewarsadventures.com -> clonewarsadventures.com

IE trusted site: HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\freerealms.com -> freerealms.com

IE trusted site: HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\soe.com -> soe.com

IE trusted site: HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\sony.com -> sony.com


==================== Other Areas ============================


(Currently there is no automatic fix for this section.)


HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\Control Panel\\Desktop\\\\Wallpaper -> C:\\Users\\TRON\\AppData\\Roaming\\Microsoft\\Windows\\Themes\\TranscodedWallpaper.jpg

DNS Servers: 10.168.8.1

HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Policies\\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)

Windows Firewall is enabled.


==================== MSCONFIG/TASK MANAGER disabled items ==


(Currently there is no automatic fix for this section.)


MSCONFIG\\Services: AntiSpywareService => 2

MSCONFIG\\Services: BEService => 3

MSCONFIG\\Services: prio_svc => 2

MSCONFIG\\Services: rpcapd => 3

MSCONFIG\\Services: RunSwUSB => 2

MSCONFIG\\Services: SkypeUpdate => 2

MSCONFIG\\Services: UmRdpService => 3

MSCONFIG\\Services: WSAC950 => 2

MSCONFIG\\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AC950.lnk => C:\\Windows\\pss\\AC950.lnk.CommonStartup

MSCONFIG\\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SetPointII.lnk => C:\\Windows\\pss\\SetPointII.lnk.CommonStartup

MSCONFIG\\startupfolder: C:^Users^TRON^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Screen Clipper and Launcher.lnk => C:\\Windows\\pss\\OneNote 2007 Screen Clipper and Launcher.lnk.Startup

MSCONFIG\\startupreg: Adobe ARM => \"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"

MSCONFIG\\startupreg: ComcastAntispyClient => \"C:\\Program Files (x86)\\comcasttb\\ComcastSpywareScan\\ComcastAntispy.exe\" /hide

MSCONFIG\\startupreg: EADM => \"C:\\Program Files (x86)\\Origin\\Origin.exe\" -AutoStart

MSCONFIG\\startupreg: GamecomSound => C:\\Program Files\\Plantronics\\GameCom780\\GameCom780.exe

MSCONFIG\\startupreg: GrooveMonitor => \"C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveMonitor.exe\"

MSCONFIG\\startupreg: iTunesHelper => \"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\"

MSCONFIG\\startupreg: Kernel and Hardware Abstraction Layer => KHALMNPR.EXE

MSCONFIG\\startupreg: NvBackend => \"C:\\Program Files (x86)\\NVIDIA Corporation\\Update Core\\NvBackend.exe\"

MSCONFIG\\startupreg: Nvtmru => \"C:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Update Core\\nvtmru.exe\"

MSCONFIG\\startupreg: PeerBlock => C:\\Program Files\\PeerBlock\\peerblock.exe

MSCONFIG\\startupreg: PWRISOVM.EXE => C:\\Program Files (x86)\\PowerISO\\PWRISOVM.EXE

MSCONFIG\\startupreg: QuickTime Task => \"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime

MSCONFIG\\startupreg: RivaTunerStartupDaemon => \"C:\\Program Files (x86)\\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\\RivaTunerWrapper.exe\" /S

MSCONFIG\\startupreg: ShadowPlay => C:\\Windows\\system32\\rundll32.exe C:\\Windows\\system32\\nvspcap64.dll,ShadowPlayOnSystemStart

MSCONFIG\\startupreg: Skype => \"C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe\" /minimized /regrun

MSCONFIG\\startupreg: Steam => \"C:\\Program Files (x86)\\Steam\\steam.exe\" -silent

MSCONFIG\\startupreg: SunJavaUpdateSched => \"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"

MSCONFIG\\startupreg: THX Audio Control Panel => \"C:\\Program Files (x86)\\Creative\\THX TruStudio Pro\\THXAudioCP\\THXAudio.exe\" /r

MSCONFIG\\startupreg: THXCfg64 => C:\\Windows\\system32\\RunDLL32.exe C:\\Windows\\system32\\THXCfg64.dll,RunDLLEntry THXCfg64

MSCONFIG\\startupreg: UpdReg => C:\\Windows\\UpdReg.EXE

MSCONFIG\\startupreg: {c06cbc77-4cba-e67b-f0ab-9c488764be6d} => \"C:\\Users\\TRON\\AppData\\Local\\{c06cbc77-4cba-e67b-f0ab-9c488764be6d}\\{c06cbc77-4cba-e67b-f0ab-9c488764be6d}.exe\"


==================== FirewallRules (Whitelisted) ===============


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


FirewallRules: [{B58E0559-7438-4209-877B-B62D49E96390}] => (Allow) C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe

FirewallRules: [{A38792FA-5BF3-49C7-828E-36A417CE74AA}] => (Allow) C:\\Program Files (x86)\\Steam\\Steam.exe

FirewallRules: [{2953974C-DD12-4956-A4A8-C40E75527180}] => (Allow) C:\\Program Files (x86)\\Steam\\Steam.exe

FirewallRules: [{538C98B6-E4AF-4D68-8F46-E5B6D9819755}] => (Allow) C:\\Program Files (x86)\\StarCraft II\\StarCraft II.exe

FirewallRules: [{5019B3C7-11FF-42B3-825F-F4D3498DBB4B}] => (Allow) C:\\Program Files (x86)\\StarCraft II\\StarCraft II.exe

FirewallRules: [{7C542D5D-C650-4365-A891-487D6B1174C7}] => (Allow) C:\\Program Files\\Ventrilo\\Ventrilo.exe

FirewallRules: [{3E2971CE-ECC6-4B43-9514-F3B963D6AD90}] => (Allow) C:\\Program Files\\Ventrilo\\Ventrilo.exe

FirewallRules: [TCP Query User{C3A48F0B-FAB9-4770-A264-90FB958A74F5}C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe] => (Allow) C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe

FirewallRules: [UDP Query User{0E465E6B-2A2D-4EC1-90F1-7D1314209BE5}C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe] => (Allow) C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe

FirewallRules: [{57C98C64-2652-47F8-A9F0-BA947F4BD543}] => (Allow) C:\\Program Files (x86)\\Origin Games\\Battlefield 3\\bf3.exe

FirewallRules: [{33E96392-FCD7-4182-81B3-384F4AEF13BB}] => (Allow) C:\\Program Files (x86)\\Origin Games\\Battlefield 3\\bf3.exe

FirewallRules: [TCP Query User{B9E47B9A-02C4-4664-93FF-8DC199424045}C:\\program files (x86)\\starcraft ii\\starcraft ii.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\starcraft ii.exe

FirewallRules: [UDP Query User{8B4C8E89-EB71-4F47-911D-DA239D96FBB0}C:\\program files (x86)\\starcraft ii\\starcraft ii.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\starcraft ii.exe

FirewallRules: [TCP Query User{7E673B0C-824A-4989-B85F-B3FCEE7A3D3F}C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe

FirewallRules: [UDP Query User{F2C3A2E1-239A-4D38-B0C6-1CC299BAEA93}C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe

FirewallRules: [{EECD007C-A1C9-4B90-9B76-E1A72E258372}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\Counter-Strike Global Offensive\\csgo.exe

FirewallRules: [{EF078345-35D9-4F9C-95B4-CFAF04584B9D}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\Counter-Strike Global Offensive\\csgo.exe

FirewallRules: [TCP Query User{C17D70F8-E884-4435-9C17-2530669A12B0}C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe] => (Allow) C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe

FirewallRules: [UDP Query User{1C42D9CD-60C9-4812-86E5-F5FE1449C1F4}C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe] => (Allow) C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe

FirewallRules: [TCP Query User{785BA47C-567D-45FC-8340-5C56288403BB}C:\\program files (x86)\\java\\jre7\\bin\\java.exe] => (Allow) C:\\program files (x86)\\java\\jre7\\bin\\java.exe

FirewallRules: [UDP Query User{7932B033-4A74-4139-8F8D-71B1239F1307}C:\\program files (x86)\\java\\jre7\\bin\\java.exe] => (Allow) C:\\program files (x86)\\java\\jre7\\bin\\java.exe

FirewallRules: [{663B940A-8898-4866-A766-01F16D2E116B}] => (Allow) C:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe

FirewallRules: [{9E8CEEB4-BEAC-47F8-A581-988D636E9EAB}] => (Allow) C:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe

FirewallRules: [TCP Query User{F08187E2-9914-4CA8-BA42-CDA8D3A8F2D0}C:\\program files\\comicrack\\comicrack.exe] => (Allow) C:\\program files\\comicrack\\comicrack.exe

FirewallRules: [UDP Query User{34AE8667-A259-42D1-B63E-2ADFA99590C9}C:\\program files\\comicrack\\comicrack.exe] => (Allow) C:\\program files\\comicrack\\comicrack.exe

FirewallRules: [TCP Query User{3887919B-885E-4D59-A331-BBED294837FF}C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe

FirewallRules: [UDP Query User{DF83785A-E196-47BE-AACE-4469F77DEB30}C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base21029\\sc2.exe

FirewallRules: [{8CBD60E3-DB80-4BA5-BA54-57649A5AD2B6}] => (Allow) C:\\Program Files (x86)\\StarCraft II\\StarCraft II Public Test.exe

FirewallRules: [{23E5D65A-995D-4A23-8DB4-B508864AACE1}] => (Allow) C:\\Program Files (x86)\\StarCraft II\\StarCraft II Public Test.exe

FirewallRules: [TCP Query User{277B8644-0EBF-4DA6-982E-24ACD1457A7E}C:\\program files (x86)\\starcraft ii\\versions\\base22612\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base22612\\sc2.exe

FirewallRules: [UDP Query User{90461E3A-A41F-4CBF-B3B5-89183AEBAA37}C:\\program files (x86)\\starcraft ii\\versions\\base22612\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base22612\\sc2.exe

FirewallRules: [TCP Query User{A1A01ADF-1B5A-4188-953B-863BFC87BDF3}C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe] => (Allow) C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe

FirewallRules: [UDP Query User{99A6E819-D7A6-45F9-9E4B-5D0C302D9A16}C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe] => (Allow) C:\\users\\public\\sony online entertainment\\installed games\\planetside 2 beta\\planetside2.exe

FirewallRules: [TCP Query User{2AB7B035-26CE-4B2F-B6A4-62D518E5BD57}C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe] => (Allow) C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe

FirewallRules: [UDP Query User{842F30AD-E57B-40FD-B0C2-FC50A54D6BD7}C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe] => (Allow) C:\\program files (x86)\\ti education\\ti-nspire cas student software\\ti-nspire cas student software.exe

FirewallRules: [TCP Query User{628FC9B3-3BBD-4450-8C66-6D52DE34A3C4}C:\\program files (x86)\\common files\\ti shared\\jre\\3.2.0\\bin\\java.exe] => (Allow) C:\\program files (x86)\\common files\\ti shared\\jre\\3.2.0\\bin\\java.exe

FirewallRules: [UDP Query User{97E9BE64-6E64-4A58-B352-A448D377D40A}C:\\program files (x86)\\common files\\ti shared\\jre\\3.2.0\\bin\\java.exe] => (Allow) C:\\program files (x86)\\common files\\ti shared\\jre\\3.2.0\\bin\\java.exe

FirewallRules: [{F0EF58BB-6DFB-4488-9190-A8B32C89E727}] => (Allow) C:\\ProgramData\\Battle.net\\Agent\\Agent.1267\\Agent.exe

FirewallRules: [{BFBB70AC-ABDE-492B-B80A-9B239D0C0044}] => (Allow) C:\\ProgramData\\Battle.net\\Agent\\Agent.1267\\Agent.exe

FirewallRules: [{155E2C33-3831-43A4-8948-32FE64F23193}] => (Allow) C:\\Program Files (x86)\\Origin Games\\Battlefield 3\\bf3.exe

FirewallRules: [{590C8E64-1CA4-4228-BECF-5C9EDF32BF56}] => (Allow) C:\\Program Files (x86)\\Origin Games\\Battlefield 3\\bf3.exe

FirewallRules: [TCP Query User{C54B3CF4-A3C9-4F6F-B716-12B3335BFFF1}C:\\program files (x86)\\baldur\'s gate enhanced edition\\bgee.exe] => (Allow) C:\\program files (x86)\\baldur\'s gate enhanced edition\\bgee.exe

FirewallRules: [UDP Query User{EB816CF9-2F9F-4D03-A5AB-4DD8FE960985}C:\\program files (x86)\\baldur\'s gate enhanced edition\\bgee.exe] => (Allow) C:\\program files (x86)\\baldur\'s gate enhanced edition\\bgee.exe

FirewallRules: [{9B0CED53-10D6-4CC9-AC5C-1FC2F3C510A3}] => (Allow) C:\\Program Files (x86)\\Dotjosh Studios\\DayZ Commander\\Current\\DayZCommander.exe

FirewallRules: [{C5CD0140-2DB0-49A7-BB9F-EF3ACFDB7DD6}] => (Allow) C:\\Program Files (x86)\\Dotjosh Studios\\DayZ Commander\\Current\\DayZCommander.exe

FirewallRules: [{61C811D8-5D95-45F9-8902-2587F0FAB058}] => (Allow) C:\\Program Files (x86)\\Dotjosh Studios\\DayZ Commander\\Current\\DayZCommander.exe

FirewallRules: [{827F2481-34D3-45CB-88E2-038B9F08D47A}] => (Allow) C:\\Program Files (x86)\\Dotjosh Studios\\DayZ Commander\\Current\\DayZCommander.exe

FirewallRules: [{6EA69B3E-FA2B-425F-B626-899F5BF52FCA}] => (Allow) C:\\ProgramData\\Battle.net\\Agent\\Agent.1675\\Agent.exe

FirewallRules: [{EFC15BDD-4474-48DB-823F-F3F6FFE5FA04}] => (Allow) C:\\ProgramData\\Battle.net\\Agent\\Agent.1675\\Agent.exe

FirewallRules: [TCP Query User{A63947E4-F2D0-4F54-A95E-5774DB37AF2C}C:\\program files (x86)\\starcraft ii\\versions\\base24944\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base24944\\sc2.exe

FirewallRules: [UDP Query User{A112E3A9-6609-44A1-A8E1-8BC610B8CE8D}C:\\program files (x86)\\starcraft ii\\versions\\base24944\\sc2.exe] => (Allow) C:\\program files (x86)\\starcraft ii\\versions\\base24944\\sc2.exe

FirewallRules: [TCP Query User{8ADF85B4-EA85-415B-A46B-0D6C5E100787}C:\\program files (x86)\\java\\jre7\\bin\\java.exe] => (Allow) C:\\program files (x86)\\java\\jre7\\bin\\java.exe

FirewallRules: [UDP Query User{E1B19CCC-553B-48B9-8B70-D0C2D733784B}C:\\program files (x86)\\java\\jre7\\bin\\java.exe] => (Allow) C:\\program files (x86)\\java\\jre7\\bin\\java.exe

FirewallRules: [{B46A57E5-7139-4F97-9CD5-289E34F4D2A9}] => (Allow) LPort=2313

FirewallRules: [{263135D9-5E43-4EF1-A9D2-7F3B000387F7}] => (Allow) C:\\Windows\\SysWOW64\\PnkBstrA.exe

FirewallRules: [{B94C6BEC-E1AF-49D5-9D88-061187C7B7DF}] => (Allow) C:\\Windows\\SysWOW64\\PnkBstrA.exe

FirewallRules: [{CD70F87B-0FF4-4874-9693-F34116447445}] => (Allow) C:\\Windows\\SysWOW64\\PnkBstrB.exe

FirewallRules: [{9B72453D-2ECE-4714-A7BE-B211CAA8A657}] => (Allow) C:\\Windows\\SysWOW64\\PnkBstrB.exe

FirewallRules: [{A5C31A79-FB13-4EB8-9D89-83130A42439C}] => (Allow) C:\\Program Files (x86)\\Battlelog Web Plugins\\Sonar\\0.70.4\\SonarHost.exe

FirewallRules: [{866F3188-2EED-41F8-B0BF-925146CE6611}] => (Allow) C:\\Program Files (x86)\\Battlelog Web Plugins\\Sonar\\0.70.4\\SonarHost.exe

FirewallRules: [{86565D1B-ECF2-45D0-B73C-52D50FBD7F45}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

FirewallRules: [{56844915-BC15-42F2-8A38-533FD8EDEA76}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

FirewallRules: [{6B6AA444-B7D6-4289-B655-8F2FFBDF33AE}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamer.exe

FirewallRules: [{72AF2073-A813-4FA5-9889-095D0D075A8E}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamer.exe

FirewallRules: [{F83A3D88-783D-4802-9FF0-483D04793A69}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

FirewallRules: [{3940CFCC-FC9C-4A3C-A219-201BFF9443BF}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

FirewallRules: [{6B8DAEE7-6F05-4808-820B-D84D0B3C94FA}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamer.exe

FirewallRules: [{9CEF0249-D02D-47F5-86F0-923E9CC5A035}] => (Allow) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamer.exe

FirewallRules: [TCP Query User{04500A0C-901C-478B-BFCB-83E2DAFF2064}C:\\breaking point\\breakingpoint.exe] => (Allow) C:\\breaking point\\breakingpoint.exe

FirewallRules: [UDP Query User{358EE52E-0AA9-4CDC-99C6-B96F437262F2}C:\\breaking point\\breakingpoint.exe] => (Allow) C:\\breaking point\\breakingpoint.exe

FirewallRules: [TCP Query User{017BB030-5BBD-411D-BB1A-539B21034036}C:\\users\\tron\\appdata\\roaming\\dropbox\\bin\\dropbox.exe] => (Allow) C:\\users\\tron\\appdata\\roaming\\dropbox\\bin\\dropbox.exe

FirewallRules: [UDP Query User{E9F24B4E-9238-4CBE-BEA7-E6DC3DD55A58}C:\\users\\tron\\appdata\\roaming\\dropbox\\bin\\dropbox.exe] => (Allow) C:\\users\\tron\\appdata\\roaming\\dropbox\\bin\\dropbox.exe

FirewallRules: [{94885656-0FB1-4CCF-9B63-86BC72CF9EE0}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\BioShockInfinite.exe

FirewallRules: [{25FD0F5A-02C0-4F41-9168-BF51E32819A4}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\BioShockInfinite.exe

FirewallRules: [{3D2BEF1E-D986-47C4-AC8E-FA05E9F93B43}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\Benchmark.bat

FirewallRules: [{8B9EE4E0-E5A5-4358-9FBD-27100726210A}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\Benchmark.bat

FirewallRules: [{1823FE87-45F8-4355-8CBE-3AF090A6B926}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\BioShockInfinite.exe

FirewallRules: [{F17D35B9-3BF1-416A-89BA-0BCBE1BAA60A}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\BioShockInfinite.exe

FirewallRules: [{0BC72CED-5258-4504-89F1-23E2019F405A}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\Benchmark.bat

FirewallRules: [{8CED4F87-CE13-47CC-9F37-E7B8E4FC3BED}] => (Allow) C:\\Program Files (x86)\\Steam\\SteamApps\\common\\BioShock Infinite\\Binaries\\Win32\\Benchmark.bat

FirewallRules: [{435D45BC-00A8-4352-B539-EE5C52BE7D18}] => (Allow) %SystemDrive%\\Riot Games\\League of Legends\\lol.launcher.exe

FirewallRules: [{EA25EDB2


11
Tech Clinic / System struggling while running flash
« on: November 29, 2015, 09:31:52 PM »

FRST log


 


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:29-11-2015

Ran by TRON (administrator) on TRON-PC (29-11-2015 21:27:15)

Running from C:\\Users\\TRON\\Desktop\\New folder

Loaded Profiles: TRON (Available Profiles: TRON)

Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)

Internet Explorer Version 11 (Default browser: FF)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/\'>http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/


==================== Processes (Whitelisted) =================


(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)


(NVIDIA Corporation) C:\\Windows\\System32\\nvvsvc.exe

(NVIDIA Corporation) C:\\Program Files (x86)\\NVIDIA Corporation\\3D Vision\\nvSCPAPISvr.exe

(Microsoft Corporation) C:\\Program Files\\Microsoft Security Client\\MsMpEng.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\Display\\NvXDSync.exe

(NVIDIA Corporation) C:\\Windows\\System32\\nvvsvc.exe

(Apple Inc.) C:\\Program Files\\Bonjour\\mDNSResponder.exe

(Microsoft Corporation) C:\\Windows\\Microsoft.NET\\Framework64\\v3.0\\WPF\\PresentationFontCache.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\GeForce Experience Service\\GfExperienceService.exe

(NVIDIA Corporation) C:\\Program Files (x86)\\NVIDIA Corporation\\NetService\\NvNetworkService.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

() C:\\Windows\\SysWOW64\\PnkBstrA.exe

(Microsoft Corporation) C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLIDSVC.EXE

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

(Microsoft Corporation) C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLIDSVCM.EXE

(Microsoft Corporation) C:\\Windows\\System32\\rundll32.exe

(Logitech Inc.) C:\\Program Files\\Logitech\\Gaming Software\\LWEMon.exe

(Microsoft Corporation) C:\\Program Files\\Microsoft Security Client\\msseces.exe

(NVIDIA Corporation) C:\\Program Files\\NVIDIA Corporation\\Display\\nvtray.exe

(Microsoft Corporation) C:\\Program Files\\Microsoft Xbox 360 Accessories\\XBoxStat.exe

(NVIDIA Corporation) C:\\Program Files (x86)\\NVIDIA Corporation\\Update Core\\NvBackend.exe

(FNet Co., Ltd.) C:\\Program Files (x86)\\XFastUsb\\XFastUsb.exe

(NETGEAR) C:\\Program Files (x86)\\NETGEAR\\WNDA3100v3\\WNDA3100v3.EXE

(Microsoft Corporation.) C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\SeaPort.EXE

(mIRC Co. Ltd.) C:\\acidmax\\mirc.exe

(Microsoft Corporation) C:\\Windows\\System32\\taskmgr.exe

(Logitech, Inc.) C:\\Program Files\\Common Files\\Logishrd\\KHAL2\\KHALMNPR.exe

(Logitech Inc.) C:\\Program Files\\Logitech\\SetPoint II\\SetPointII.exe

(Logitech Inc.) C:\\Program Files\\Logitech Gaming Software\\LCore.exe

(PeerBlock, LLC) C:\\Program Files\\PeerBlock\\peerblock.exe

(VideoLAN) C:\\Program Files (x86)\\VideoLAN\\VLC\\vlc.exe

(Microsoft Corporation) C:\\Windows\\SysWOW64\\dllhost.exe

(VideoLAN) C:\\Program Files (x86)\\VideoLAN\\VLC\\vlc.exe

(Mozilla Corporation) C:\\Program Files (x86)\\Mozilla Firefox\\firefox.exe

(Adobe Systems, Inc.) C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerPlugin_19_0_0_245.exe

(Adobe Systems, Inc.) C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerPlugin_19_0_0_245.exe



==================== Registry (Whitelisted) ===========================


(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)


HKLM\\...\\Run: [Start WingMan Profiler] => C:\\Program Files\\Logitech\\Gaming Software\\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)

HKLM\\...\\Run: [MSC] => C:\\Program Files\\Microsoft Security Client\\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)

HKLM\\...\\Run: [Launch LCore] => C:\\Program Files\\Logitech Gaming Software\\LCore.exe [12697368 2014-10-14] (Logitech Inc.)

HKLM\\...\\Run: [XboxStat] => C:\\Program Files\\Microsoft Xbox 360 Accessories\\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)

HKLM-x32\\...\\Run: [XFastUsb] => C:\\Program Files (x86)\\XFastUsb\\XFastUsb.exe [4942336 2011-09-20] (FNet Co., Ltd.)

HKLM-x32\\...\\Run: [WNDA3100v3] => C:\\Program Files (x86)\\NETGEAR\\WNDA3100v3\\WNDA3100v3.EXE [6243040 2014-10-13] (NETGEAR)

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: F - F:\\Setup.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: J - J:\\Setup.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: K - K:\\CD_Start.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: {5516bf87-ea47-11df-8d35-806e6f6e6963} - E:\\RunGame.exe

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: {a0be8b0e-eb5d-11df-beae-001bb9537594} - K:\\LaunchU3.exe -a

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...\\MountPoints2: {d5090535-008f-11e0-9c17-001bb9537594} - K:\\LaunchU3.exe -a

HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001\\...A8F59079A8D5}\\localserver32:  <==== ATTENTION

AppInit_DLLs: prio.dll => C:\\Program Files\\Prio\\prio.dll [17264 2012-11-08] (O&K Software)

AppInit_DLLs-x32: prio32.dll => C:\\Program Files\\Prio\\prio32.dll [15216 2012-11-08] (O&K Software)

ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} =>  No File

CHR HKLM\\SOFTWARE\\Policies\\Google: Restriction <======= ATTENTION


==================== Internet (Whitelisted) ====================


(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)


ProxyServer: [S-1-5-21-2601419243-2007584176-3567953189-1001] => 203.232.208.116:8080

Tcpip\\Parameters: [DhcpNameServer] 10.168.8.1

Tcpip\\..\\Interfaces\\{1B22B1B3-92F9-44DA-8BEF-CF582404D978}: [DhcpNameServer] 10.168.8.1

Tcpip\\..\\Interfaces\\{5318A75E-9303-43C5-8DEF-912DE617EF72}: [DhcpNameServer] 75.75.75.75 75.75.76.76

Tcpip\\..\\Interfaces\\{69215A00-FABD-4345-BA37-C0E2803AF427}: [DhcpNameServer] 75.75.75.75 75.75.76.76

Tcpip\\..\\Interfaces\\{B8C6BD13-2DE8-486E-806B-F3FC12223C0C}: [DhcpNameServer] 10.168.8.1

Tcpip\\..\\Interfaces\\{BBBE4295-7F11-4FE0-A833-A61F174ECBBA}: [DhcpNameServer] 68.87.68.166 68.87.74.166 192.168.1.1

Tcpip\\..\\Interfaces\\{C1917B49-A9FF-4517-A65E-4087AF42D063}: [DhcpNameServer] 75.75.75.75 75.75.76.76


Internet Explorer:

==================






BHO: No Name -> {3706EE7C-3CAD-445D-8A43-03EBC3B75908} -> No File

BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)

BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)

BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\\Program Files (x86)\\Java\\jre1.8.0_25\\bin\\ssv.dll [2014-11-27] (Oracle Corporation)

BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)

BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\BingExt.dll [2012-02-13] (Microsoft Corporation.)

BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\\Program Files (x86)\\Java\\jre1.8.0_25\\bin\\jp2ssv.dll [2014-11-27] (Oracle Corporation)

Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\BingExt.dll [2012-02-13] (Microsoft Corporation.)

Toolbar: HKU\\S-1-5-21-2601419243-2007584176-3567953189-1001 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} -  No File



Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\Program Files (x86)\\Common Files\\Skype\\Skype4COM.dll [2013-02-26] (Skype Technologies)


FireFox:

========

FF ProfilePath: C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default

FF DefaultSearchEngine: Google

FF DefaultSearchEngine.US: Google

FF SearchEngineOrder.1: Ask.com

FF SelectedSearchEngine: XFINITY





FF Plugin: @adobe.com/FlashPlayer -> C:\\Windows\\system32\\Macromed\\Flash\\NPSWF64_19_0_0_245.dll [2015-11-11] ()

FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.6.2\\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)

FF Plugin: @microsoft.com/GENUINE -> disabled [No File]

FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\\Program Files\\Microsoft Silverlight\\5.1.30514.0\\npctrl.dll [2014-05-13] ( Microsoft Corporation)

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\\Windows\\SysWOW64\\Macromed\\Flash\\NPSWF32_19_0_0_245.dll [2015-11-11] ()

FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\\Windows\\SysWOW64\\Adobe\\Director\\np32dsw.dll [2010-05-05] (Adobe Systems, Inc.)

FF Plugin-x32: @esn.me/esnsonar,version=0.70.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\Sonar\\0.70.0\\npesnsonar.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.104.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.104.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.116.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.116.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.122.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.122.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.138.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.138.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=1.96.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\1.96.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=2.1.4 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.1.4\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.3.0\\npesnlaunch.dll [No File]

FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\\Program Files (x86)\\Battlelog Web Plugins\\2.6.2\\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)

FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\\Program Files (x86)\\Java\\jre1.8.0_25\\bin\\dtplugin\\npDeployJava1.dll [2014-11-27] (Oracle Corporation)

FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\\Program Files (x86)\\Java\\jre1.8.0_25\\bin\\plugin2\\npjp2.dll [2014-11-27] (Oracle Corporation)

FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]

FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\\Program Files (x86)\\Microsoft Silverlight\\5.1.30514.0\\npctrl.dll [2014-05-13] ( Microsoft Corporation)

FF Plugin-x32: @nvidia.com/3DVision -> C:\\Program Files (x86)\\NVIDIA Corporation\\3D Vision\\npnv3dv.dll [2015-11-02] (NVIDIA Corporation)

FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\\Program Files (x86)\\NVIDIA Corporation\\3D Vision\\npnv3dvstreaming.dll [2015-11-02] (NVIDIA Corporation)

FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\\Program Files (x86)\\Pando Networks\\Media Booster\\npPandoWebPlugin.dll [No File]

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\\Program Files (x86)\\Google\\Update\\1.3.28.15\\npGoogleUpdate3.dll [2015-09-14] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\\Program Files (x86)\\Google\\Update\\1.3.28.15\\npGoogleUpdate3.dll [2015-09-14] (Google Inc.)

FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll [2014-07-22] (VideoLAN)

FF Plugin-x32: Adobe Reader -> C:\\Program Files (x86)\\Adobe\\Reader 10.0\\Reader\\AIR\\nppdf32.dll [2014-08-03] (Adobe Systems Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npdeployJava1.dll [2011-05-04] (Sun Microsystems, Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin2.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin3.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin4.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin5.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin6.dll [2010-11-07] (Apple Inc.)

FF Plugin ProgramFiles/Appdata: C:\\Program Files (x86)\\mozilla firefox\\plugins\\npqtplugin7.dll [2010-11-07] (Apple Inc.)

FF SearchPlugin: C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\searchplugins\\avg-secure-search.xml [2011-09-24]

FF Extension: FireFTP - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\extensions\\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2015-11-28]

FF Extension: XFINITY Toolbar - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{4b9bcce8-a70b-402a-a7e1-db96831ee26f} [2011-08-17] [not signed]

FF Extension: NoScript - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-11-23]

FF Extension: GameZooks - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{8693cb76-1caf-4115-9bd7-6bab02330326}.xpi [2015-09-18]

FF Extension: Adblock Plus - C:\\Users\\TRON\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\paggcq8k.default\\Extensions\\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-25]

FF Extension: No Name - C:\\Program Files (x86)\\Mozilla Firefox\\extensions\\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2015-11-04] [not signed]


Chrome:

=======

CHR Profile: C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1

CHR Extension: (Google Slides) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-01]

CHR Extension: (Google Docs) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\aohghmighlieiainnegkcijnfilokake [2015-03-01]

CHR Extension: (Google Drive) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\apdfllckaahabafndbhieahigkjlhalf [2015-03-01]

CHR Extension: (YouTube) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-01]

CHR Extension: (Google Search) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-08]

CHR Extension: (Google Sheets) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\felcaaldnbdncclmgdcncolpebgiejap [2015-03-01]

CHR Extension: (Google Play Music) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\icppfcnhkcmnfdhfhphakoifcfokfdhg [2015-03-01]

CHR Extension: (Chrome Hotword Shared Module) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\lccekmodgklaepjeofjdjpbminllajkg [2015-05-08]

CHR Extension: (Google Wallet) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-08]

CHR Extension: (Gmail) - C:\\Users\\TRON\\AppData\\Local\\Google\\Chrome\\User Data\\Profile 1\\Extensions\\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-08]


==================== Services (Whitelisted) ========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


S4 AntiSpywareService; C:\\Program Files (x86)\\comcasttb\\ComcastSpywareScan\\ComcastAntiSpyService.exe [616408 2009-06-17] ()

S4 BEService; C:\\Program Files (x86)\\Common Files\\BattlEye\\BEService.exe [49152 2013-05-26] () [File not signed]

R2 GfExperienceService; C:\\Program Files\\NVIDIA Corporation\\GeForce Experience Service\\GfExperienceService.exe [1148744 2015-01-16] (NVIDIA Corporation)

S4 MBAMScheduler; C:\\Program Files (x86)\\Malwarebytes Anti-Malware\\mbamscheduler.exe [1871160 2015-06-17] (Malwarebytes Corporation)

S2 MBAMService; C:\\Program Files (x86)\\Malwarebytes Anti-Malware\\mbamservice.exe [1133880 2015-06-17] (Malwarebytes Corporation)

R2 MsMpSvc; C:\\Program Files\\Microsoft Security Client\\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)

S3 NisSrv; C:\\Program Files\\Microsoft Security Client\\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)

R2 NvNetworkService; C:\\Program Files (x86)\\NVIDIA Corporation\\NetService\\NvNetworkService.exe [1706312 2015-01-16] (NVIDIA Corporation)

R2 NvStreamSvc; C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe [21833544 2015-01-16] (NVIDIA Corporation)

S3 Origin Client Service; C:\\Program Files (x86)\\Origin\\OriginClientService.exe [2078216 2015-10-08] (Electronic Arts)

R2 PnkBstrA; C:\\Windows\\SysWOW64\\PnkBstrA.exe [76152 2015-02-04] ()

S4 prio_svc; C:\\Program Files\\Prio\\prio_svc.exe [12656 2012-11-08] ()

S4 rpcapd; C:\\Program Files (x86)\\WinPcap\\rpcapd.exe [117264 2009-10-20] (CACE Technologies, Inc.)

S4 RunSwUSB; C:\\Windows\\runSW.exe [44104 2013-05-23] ()

S3 WinDefend; C:\\Program Files\\Windows Defender\\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

S4 WSAC950; C:\\Program Files (x86)\\Belkin\\F9L1109\\v1\\WifiSvc.exe [299008 2013-07-09] () [File not signed]


===================== Drivers (Whitelisted) ==========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


S3 dmodusb; C:\\Windows\\System32\\DRIVERS\\dmodusb.sys [32768 2008-12-16] (Windows (R) Codename Longhorn DDK provider)

S3 ebdrv; C:\\Windows\\system32\\DRIVERS\\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)

S3 FNETTBOH_305; C:\\Windows\\System32\\drivers\\FNETTBOH_305.SYS [31808 2011-10-07] (FNet Co., Ltd.)

R1 FNETURPX; C:\\Windows\\System32\\drivers\\FNETURPX.SYS [15936 2011-09-20] (FNet Co., Ltd.)

R3 LGSHidFilt; C:\\Windows\\System32\\DRIVERS\\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.)

R3 MBAMProtector; C:\\Windows\\system32\\drivers\\mbam.sys [25816 2015-06-17] (Malwarebytes Corporation)

S3 MBAMWebAccessControl; C:\\Windows\\system32\\drivers\\mwac.sys [63704 2015-06-17] (Malwarebytes Corporation)

R0 MpFilter; C:\\Windows\\System32\\DRIVERS\\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)

S3 NisDrv; C:\\Windows\\System32\\DRIVERS\\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)

R2 NPF; C:\\Windows\\System32\\drivers\\npf.sys [47632 2009-10-20] (CACE Technologies, Inc.)

R3 NvStreamKms; C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\NvStreamKms.sys [19784 2015-01-16] (NVIDIA Corporation)

R3 nvvad_WaveExtensible; C:\\Windows\\System32\\drivers\\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)

R3 pbfilter; C:\\Program Files\\PeerBlock\\pbfilter.sys [19544 2009-09-28] ()

S3 PlantronicsGC; C:\\Windows\\System32\\drivers\\PLTGC.sys [1327104 2011-11-04] (C-Media Electronics Inc)

S3 RivaTuner64; C:\\Program Files (x86)\\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\\RivaTuner64.sys [12288 2009-08-22] () [File not signed]

R3 RtlWlanu; C:\\Windows\\System32\\DRIVERS\\rtwlanu.sys [2355400 2013-07-09] (Realtek Semiconductor Corporation                           )

S3 tapoas; C:\\Windows\\System32\\DRIVERS\\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)

R3 tapSF0901; C:\\Windows\\System32\\DRIVERS\\tapSF0901.sys [39104 2015-01-23] (Spotflux, Inc.)

S3 USBAAPL64; C:\\Windows\\System32\\Drivers\\usbaapl64.sys [53760 2012-09-28] (Apple, Inc.) [File not signed]

S3 USBTINSP; C:\\Windows\\System32\\DRIVERS\\tinspusb.sys [142848 2010-03-29] (Texas Instruments)

S3 VST64HWBS2; C:\\Windows\\System32\\DRIVERS\\VSTBS26.SYS [411136 2009-06-10] (Conexant Systems, Inc.)

S3 VST64_DPV; C:\\Windows\\System32\\DRIVERS\\VSTDPV6.SYS [1485312 2009-06-10] (Conexant Systems, Inc.)

R3 WinDriver6; C:\\Windows\\System32\\drivers\\windrvr6.sys [254976 2011-06-21] (Jungo)

S3 WNDA3100v3; C:\\Windows\\System32\\DRIVERS\\WNDA3100v3.sys [2222224 2014-10-08] (MediaTek Inc.)

R2 XilinxPC4Driver; C:\\Windows\\System32\\drivers\\xpc4drvr.sys [27384 2011-06-21] (Xilinx, Inc.)

S3 cpuz135; \\??\\C:\\Windows\\TEMP\\cpuz135\\cpuz135_x64.sys [X]

S3 IntcAzAudAddService; system32\\drivers\\RTKVHD64.sys [X]

S3 Synth3dVsc; System32\\drivers\\synth3dvsc.sys [X]

S3 tsusbhub; system32\\drivers\\tsusbhub.sys [X]

S3 VGPU; System32\\drivers\\rdvgkmd.sys [X]

S3 xhunter1; \\??\\C:\\Windows\\xhunter1.sys [X]


==================== NetSvcs (Whitelisted) ===================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)



==================== One Month Created files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-11-29 21:26 - 2015-11-29 21:27 - 00000000 ____D C:\\Users\\TRON\\Desktop\\New folder

2015-11-29 21:26 - 2015-11-29 21:27 - 00000000 ____D C:\\FRST

2015-11-29 21:25 - 2015-11-29 21:25 - 02350080 _____ (Farbar) C:\\Users\\TRON\\Downloads\\FRST64.exe

2015-11-25 21:09 - 2015-11-25 21:09 - 00388608 _____ (Trend Micro Inc.) C:\\Users\\TRON\\Downloads\\HijackThis.exe

2015-11-22 13:00 - 2015-11-20 07:26 - 01595392 _____ (3DMGAME) C:\\Users\\TRON\\Desktop\\Assassins Creed Syndicate v1.12-Update 1 Plus 19 Trainer.exe

2015-11-22 11:13 - 2015-11-22 11:52 - 00000000 ____D C:\\Users\\TRON\\Documents\\Assassin\'s Creed Syndicate

2015-11-22 11:13 - 2015-11-22 11:13 - 00000000 ____D C:\\Users\\TRON\\AppData\\Roaming\\uplay

2015-11-22 11:03 - 2015-11-22 11:03 - 00000696 _____ C:\\Users\\TRON\\Desktop\\Assassin s Creed Syndicate.lnk

2015-11-22 11:03 - 2015-11-17 18:00 - 00000019 _____ C:\\Users\\TRON\\Desktop\\localization.lang

2015-11-22 11:00 - 2015-11-17 14:06 - 442475541 _____ C:\\Users\\TRON\\Desktop\\sounds_rus.pck

2015-11-22 10:59 - 2015-11-17 18:02 - 07132965 _____ C:\\Users\\TRON\\Desktop\\sounds_rus_install_3.pck

2015-11-22 10:59 - 2015-11-17 14:04 - 41910038 _____ C:\\Users\\TRON\\Desktop\\sounds_rus_install_2.pck

2015-11-22 10:59 - 2015-11-17 14:01 - 07911611 _____ C:\\Users\\TRON\\Desktop\\sounds_rus_install_1.pck

2015-11-14 19:03 - 2015-11-14 19:03 - 03048051 _____ (Pentair) C:\\Users\\TRON\\Downloads\\screenlogicconnect.exe

2015-11-14 19:03 - 2015-11-14 19:03 - 00002089 _____ C:\\Users\\Public\\Desktop\\ScreenLogic Connect.lnk

2015-11-14 19:03 - 2015-11-14 19:03 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Pentair

2015-11-14 19:03 - 2015-11-14 19:03 - 00000000 ____D C:\\Program Files (x86)\\Pentair

2015-11-13 20:37 - 2015-11-13 14:34 - 01291776 _____ (3DMGAME) C:\\Users\\TRON\\Desktop\\Fallout 4 v1.0-v1.1.30 Plus 20 Trainer.exe

2015-11-13 07:07 - 2015-11-13 07:07 - 00000000 ____D C:\\Users\\TRON\\AppData\\Local\\Fallout4

2015-11-13 07:04 - 2015-11-13 07:04 - 00000782 _____ C:\\Users\\TRON\\Desktop\\Play Fallout 4.lnk

2015-11-13 07:04 - 2015-11-13 07:04 - 00000743 _____ C:\\Users\\TRON\\Desktop\\visit www.nosteam.ro.lnk

2015-11-09 11:04 - 2015-11-02 08:16 - 00102704 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvStreaming.exe

2015-11-09 10:56 - 2015-11-02 12:10 - 11130672 _____ (NVIDIA Corporation) C:\\Windows\\system32\\Drivers\\nvlddmkm.sys

2015-11-09 10:56 - 2015-11-02 12:10 - 01905456 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvdispco6435887.dll

2015-11-09 10:56 - 2015-11-02 12:10 - 01564976 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvdispgenco6435887.dll

2015-11-09 10:56 - 2015-11-02 12:10 - 00388024 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvumdshim.dll

2015-11-09 10:56 - 2015-11-02 12:10 - 00033607 _____ C:\\Windows\\system32\\nvinfo.pb

2015-11-09 10:55 - 2015-11-02 12:10 - 42913912 _____ C:\\Windows\\system32\\nvcompiler.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 37882160 _____ C:\\Windows\\SysWOW64\\nvcompiler.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 22308472 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvoglv64.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 18361976 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvoglv32.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 16553376 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvopencl.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 15717672 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvd3dumx.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 14836064 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvcuda.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 13527248 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvopencl.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 12034440 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvcuda.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 03158736 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvapi.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 02869880 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvcuvid.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 02490672 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvcuvid.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00877176 _____ (NVIDIA Corporation) C:\\Windows\\system32\\NvFBC64.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00862000 _____ (NVIDIA Corporation) C:\\Windows\\system32\\NvIFR64.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00689272 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\NvFBC.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00673912 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\NvIFR.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00500872 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvEncodeAPI64.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00422240 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvEncodeAPI.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00413816 _____ (NVIDIA Corporation) C:\\Windows\\system32\\NvIFROpenGL.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00369456 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\NvIFROpenGL.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00177416 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvinitx.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00155792 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvinit.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00151184 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvoglshim64.dll

2015-11-09 10:55 - 2015-11-02 12:10 - 00128696 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvoglshim32.dll

2015-11-09 10:52 - 2015-11-09 10:55 - 300325552 _____ (NVIDIA Corporation) C:\\Users\\TRON\\Downloads\\358.87-desktop-win8-win7-winvista-64bit-international-whql.exe

2015-11-07 17:39 - 2015-11-07 17:39 - 00000222 _____ C:\\Users\\TRON\\Desktop\\Call of Duty Black Ops III.url

2015-11-07 17:02 - 2015-11-07 17:02 - 00000535 _____ C:\\Users\\TRON\\Desktop\\New Text Document (3).txt

2015-11-06 19:31 - 2015-11-22 13:04 - 00000840 _____ C:\\Users\\Public\\Desktop\\Speccy.lnk

2015-11-06 19:31 - 2015-11-06 19:31 - 05127432 _____ (Piriform Ltd) C:\\Users\\TRON\\Downloads\\spsetup128.exe

2015-11-06 19:31 - 2015-11-06 19:31 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Speccy

2015-11-06 19:31 - 2015-11-06 19:31 - 00000000 ____D C:\\Program Files\\Speccy

2015-11-04 06:59 - 2015-11-04 20:40 - 00000000 ____D C:\\Program Files (x86)\\Mozilla Firefox

2015-11-03 21:02 - 2015-01-08 09:12 - 04486144 _____ C:\\Users\\TRON\\Desktop\\BorderLands The Pre-Sequel V1.00 Trainer +19 MrAntiFun.EXE

2015-11-03 21:00 - 2014-12-27 03:03 - 00000000 ____D C:\\Users\\TRON\\Desktop\\Borderlands_The_Pre-Sequel+28Tr-LNG_v1.0.3

2015-11-03 19:41 - 2015-11-03 20:58 - 00000000 ____D C:\\Users\\TRON\\Desktop\\Borderlands The Pre-Sequel v 1.0.6

2015-11-03 19:29 - 2015-11-03 19:29 - 00001116 _____ C:\\Users\\TRON\\Desktop\\Borderlands The Pre-Sequel.lnk

2015-11-03 19:29 - 2015-11-03 19:29 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\R.G. Catalyst


==================== One Month Modified files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-11-29 21:28 - 2010-11-07 12:02 - 00000000 ____D C:\\Program Files\\PeerBlock

2015-11-29 21:26 - 2009-07-13 22:20 - 00000000 ____D C:\\Windows

2015-11-29 21:25 - 2015-01-10 20:59 - 00000000 ____D C:\\acidmax

2015-11-29 21:24 - 2015-08-18 17:52 - 00000830 _____ C:\\Windows\\Tasks\\Adobe Flash Player Updater.job

2015-11-29 20:49 - 2013-02-11 16:08 - 00000898 _____ C:\\Windows\\Tasks\\GoogleUpdateTaskMachineUA.job

2015-11-29 14:49 - 2013-02-11 16:08 - 00000894 _____ C:\\Windows\\Tasks\\GoogleUpdateTaskMachineCore.job

2015-11-29 13:05 - 2013-10-12 11:00 - 00000544 _____ C:\\Windows\\Tasks\\MATLAB R2013b Startup Accelerator.job

2015-11-27 22:46 - 2014-11-16 23:10 - 00000000 ____D C:\\Users\\TRON\\AppData\\Roaming\\vlc

2015-11-27 19:12 - 2010-11-07 12:13 - 00000000 ____D C:\\Program Files (x86)\\Steam

2015-11-22 13:04 - 2015-10-10 18:16 - 00000949 _____ C:\\Users\\TRON\\Desktop\\Logitech Gaming Software 8.57.lnk

2015-11-22 13:00 - 2014-11-18 19:49 - 00000000 ____D C:\\Users\\TRON\\Documents\\FLiNGTrainer

2015-11-22 11:03 - 2014-11-17 17:29 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\by.xatab

2015-11-20 20:38 - 2011-09-23 15:46 - 00000000 ____D C:\\Users\\TRON\\AppData\\Local\\CrashDumps

2015-11-14 20:24 - 2009-07-13 23:45 - 00020704 ____H C:\\Windows\\system32\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2015-11-14 20:24 - 2009-07-13 23:45 - 00020704 ____H C:\\Windows\\system32\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2015-11-14 17:25 - 2011-05-07 19:57 - 00000000 ____D C:\\ProgramData\\NVIDIA

2015-11-14 17:25 - 2009-07-14 00:08 - 00000006 ____H C:\\Windows\\Tasks\\SA.DAT

2015-11-13 07:07 - 2010-11-08 14:09 - 00000000 ____D C:\\Users\\TRON\\Documents\\My Games

2015-11-11 17:56 - 2009-07-14 00:13 - 00782470 _____ C:\\Windows\\system32\\PerfStringBackup.INI

2015-11-11 17:56 - 2009-07-13 22:20 - 00000000 ____D C:\\Windows\\inf

2015-11-11 03:24 - 2015-08-18 17:52 - 00780488 _____ (Adobe Systems Incorporated) C:\\Windows\\SysWOW64\\FlashPlayerApp.exe

2015-11-11 03:24 - 2015-08-18 17:52 - 00142536 _____ (Adobe Systems Incorporated) C:\\Windows\\SysWOW64\\FlashPlayerCPLApp.cpl

2015-11-11 03:24 - 2015-08-18 17:52 - 00003768 _____ C:\\Windows\\System32\\Tasks\\Adobe Flash Player Updater

2015-11-09 11:04 - 2013-10-01 19:49 - 00000000 ____D C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\NVIDIA Corporation

2015-11-09 11:04 - 2012-09-10 15:58 - 00000000 ____D C:\\TEMP

2015-11-09 11:04 - 2011-05-07 19:49 - 00000000 ____D C:\\ProgramData\\NVIDIA Corporation

2015-11-07 17:26 - 2011-09-21 04:14 - 00000000 ____D C:\\Program Files (x86)\\Origin Games

2015-11-07 13:32 - 2009-07-13 22:20 - 00000000 ____D C:\\Windows\\system32\\NDF

2015-11-04 22:51 - 2015-01-19 20:10 - 00000000 ____D C:\\Program Files (x86)\\Mozilla Maintenance Service

2015-11-02 12:10 - 2015-10-08 20:34 - 17515016 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvwgf2umx.dll

2015-11-02 12:10 - 2015-10-08 20:34 - 15120736 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvwgf2um.dll

2015-11-02 12:10 - 2015-10-08 20:34 - 12770752 _____ (NVIDIA Corporation) C:\\Windows\\SysWOW64\\nvd3dum.dll

2015-11-02 12:10 - 2015-10-08 20:34 - 03579000 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvapi64.dll

2015-11-02 12:10 - 2015-10-08 20:34 - 00468096 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvumdshimx.dll

2015-11-02 08:22 - 2011-01-07 19:50 - 06358648 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvcpl.dll

2015-11-02 08:22 - 2011-01-07 19:49 - 02983216 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvsvc64.dll

2015-11-02 08:22 - 2011-01-07 19:49 - 02554672 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvsvcr.dll

2015-11-02 08:22 - 2011-01-07 19:49 - 00938616 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvvsvc.exe

2015-11-02 08:22 - 2011-01-07 19:49 - 00385144 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvmctray.dll

2015-11-02 08:22 - 2010-07-09 15:27 - 00062584 _____ (NVIDIA Corporation) C:\\Windows\\system32\\nvshext.dll


==================== Files in the root of some directories =======


2013-11-19 16:28 - 2013-11-20 20:04 - 0000249 _____ () C:\\Users\\TRON\\AppData\\Roaming\\BreakingPoint_Login.ini

2014-02-17 16:48 - 2014-11-15 15:51 - 0003943 _____ () C:\\Users\\TRON\\AppData\\Roaming\\LTspiceIV.ini

2013-10-04 08:30 - 2013-10-04 19:30 - 0000026 _____ () C:\\Users\\TRON\\AppData\\Roaming\\prio.ini

2014-12-22 21:47 - 2014-12-22 21:47 - 0000000 ___SH () C:\\Users\\TRON\\AppData\\Local\\LumaEmu

2011-11-15 15:42 - 2011-11-15 16:16 - 0002189 _____ () C:\\Users\\TRON\\AppData\\Local\\TempfixPerms.vbs

2010-11-07 11:39 - 2010-11-07 11:39 - 0000056 ____H () C:\\ProgramData\\ezsidmv.dat


Some files in TEMP:

====================

C:\\Users\\TRON\\AppData\\Local\\Temp\\02e5b391de59434f4b9c98b716a91237.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\4e6cf5d72520e51ea54dbf30164d13e3.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\Bass.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\Bass.Net.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\BingBarSetup-Partner.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpub6zc5.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\jre-7u51-windows-i586-iftw.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\jre-7u65-windows-i586-iftw.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\jre-8u40-windows-au.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\Lng.Dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\mirc738.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvSCPAPI.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvSCPAPI64.dll

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvSCPAPISvr.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\nvStInst.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\SkypeSetup.exe

C:\\Users\\TRON\\AppData\\Local\\Temp\\SRLDetectionLibrary8121594306983000867.dll



==================== Bamital & volsnap =================


(There is no automatic fix for files that do not pass verification.)


C:\\Windows\\system32\\winlogon.exe => File is digitally signed

C:\\Windows\\system32\\wininit.exe => File is digitally signed

C:\\Windows\\SysWOW64\\wininit.exe => File is digitally signed

C:\\Windows\\explorer.exe => File is digitally signed

C:\\Windows\\SysWOW64\\explorer.exe => File is digitally signed

C:\\Windows\\system32\\svchost.exe => File is digitally signed

C:\\Windows\\SysWOW64\\svchost.exe => File is digitally signed

C:\\Windows\\system32\\services.exe => File is digitally signed

C:\\Windows\\system32\\User32.dll => File is digitally signed

C:\\Windows\\SysWOW64\\User32.dll => File is digitally signed

C:\\Windows\\system32\\userinit.exe => File is digitally signed

C:\\Windows\\SysWOW64\\userinit.exe => File is digitally signed

C:\\Windows\\system32\\rpcss.dll => File is digitally signed

C:\\Windows\\system32\\dnsapi.dll => File is digitally signed

C:\\Windows\\SysWOW64\\dnsapi.dll => File is digitally signed

C:\\Windows\\system32\\Drivers\\volsnap.sys => File is digitally signed



LastRegBack: 2015-11-20 00:41


==================== End of FRST.txt ============================



12
Tech Clinic / System struggling while running flash
« on: November 25, 2015, 09:22:14 PM »

First off - Thank you guys for taking the time to help everyone out with their problems , it is much appreciated.


 


 


I have a halfway decent gaming build that has been having problems with flash lately ever since the last update. It\'s most noteable playing flash ( browser ) games, used to I never had a problem. Now I will load a game and it will work fine for a few minutes then increasingly starts to clog up ( lower frame rates [ about 1/3 of what it should be ] and the over all ability to do nothing). I never had this problem in the past and I doubt it\'s a lack of hardware requirements or memory. I really need to give these games up but can\'t do it, but that\'s another story.


 


System specs: Win 7 64bit , intel i5-2500k @ 3.3ghz , 16gb ddr3 1600mhz ram , nvidia geforce GTX 670 ( 2gb GDDR5 dedicated ) , and about 1.5tb overall disk space


 


hijackthis log:


 


Scan saved at 9:10:19 PM, on 11/25/2015

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v11.0 (11.00.9600.17280)


FIREFOX: 42.0 (x86 en-US)

Boot mode: Normal


Running processes:

C:\\Program Files (x86)\\NVIDIA Corporation\\Update Core\\NvBackend.exe

C:\\Program Files (x86)\\XFastUsb\\XFastUsb.exe

C:\\Program Files (x86)\\NETGEAR\\WNDA3100v3\\WNDA3100v3.EXE

C:\\acidmax\\mirc.exe

C:\\Program Files (x86)\\Mozilla Firefox\\firefox.exe

C:\\Program Files (x86)\\Mozilla Firefox\\plugin-container.exe

C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerPlugin_19_0_0_245.exe

C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerPlugin_19_0_0_245.exe

C:\\Users\\TRON\\Downloads\\HijackThis.exe


R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896\'>http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://xfinity.comcast.net/?cid=insDate03312013\'>http://xfinity.comcast.net/?cid=insDate03312013

R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141\'>http://go.microsoft.com/fwlink/p/?LinkId=255141

R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896\'>http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896\'>http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141\'>http://go.microsoft.com/fwlink/p/?LinkId=255141

R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,SearchAssistant =

R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,CustomizeSearch =

R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Local Page = C:\\Windows\\SysWOW64\\blank.htm

R1 - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings,ProxyServer = 203.232.208.116:8080

R1 - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings,ProxyOverride = *.local

R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName =

F2 - REG:system.ini: UserInit=userinit.exe,

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveShellExtensions.dll

O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\\Program Files (x86)\\Java\\jre1.8.0_25\\bin\\ssv.dll

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll

O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\BingExt.dll

O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\\Program Files (x86)\\Java\\jre1.8.0_25\\bin\\jp2ssv.dll

O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - \"C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.362.0\\BingExt.dll\" (file missing)

O4 - HKLM\\..\\Run: [XFastUsb] C:\\Program Files (x86)\\XFastUsb\\XFastUsb.exe

O4 - HKLM\\..\\Run: [WNDA3100v3] C:\\Program Files (x86)\\NETGEAR\\WNDA3100v3\\WNDA3100v3.EXE


O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\\PROGRA~2\\MICROS~1\\Office12\\ONBttnIE.dll

O9 - Extra \'Tools\' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\\PROGRA~2\\MICROS~1\\Office12\\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~2\\MICROS~1\\Office12\\REFIEBAR.DLL

O10 - Unknown file in Winsock LSP: c:\\program files (x86)\\common files\\microsoft shared\\windows live\\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\\program files (x86)\\common files\\microsoft shared\\windows live\\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O15 - Trusted Zone: *.clonewarsadventures.com

O15 - Trusted Zone: *.freerealms.com

O15 - Trusted Zone: *.soe.com

O15 - Trusted Zone: *.sony.com

O16 - DPF: {BAD4FE2C-503B-45CC-88CD-4B0574057D11} - http://clients.futuremark.com/calico/systeminfodeploy/FMSI_v420.cab\'>http://clients.futuremark.com/calico/systeminfodeploy/FMSI_v420.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab\'>http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveSystemServices.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\PROGRA~2\\COMMON~1\\Skype\\SKYPE4~1.DLL

O20 - AppInit_DLLs: prio32.dll

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerUpdateService.exe

O23 - Service: @%SystemRoot%\\system32\\Alg.exe,-112 (ALG) - Unknown owner - C:\\Windows\\System32\\alg.exe (file missing)

O23 - Service: Bonjour Service - Apple Inc. - C:\\Program Files\\Bonjour\\mDNSResponder.exe

O23 - Service: @%SystemRoot%\\system32\\efssvc.dll,-100 (EFS) - Unknown owner - C:\\Windows\\System32\\lsass.exe (file missing)

O23 - Service: @%systemroot%\\system32\\fxsresm.dll,-118 (Fax) - Unknown owner - C:\\Windows\\system32\\fxssvc.exe (file missing)

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\\Program Files (x86)\\Common Files\\Macrovision Shared\\FLEXnet Publisher\\FNPLicensingService.exe

O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\\Program Files\\NVIDIA Corporation\\GeForce Experience Service\\GfExperienceService.exe

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\\Program Files (x86)\\Google\\Update\\GoogleUpdate.exe

O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\\Program Files (x86)\\Google\\Update\\GoogleUpdate.exe

O23 - Service: @%SystemRoot%\\system32\\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\\Windows\\system32\\IEEtwCollector.exe (file missing)

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)

O23 - Service: MBAMService - Malwarebytes Corporation - C:\\Program Files (x86)\\Malwarebytes Anti-Malware\\mbamservice.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\\Program Files (x86)\\Mozilla Maintenance Service\\maintenanceservice.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\\Windows\\System32\\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\\System32\\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)

O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\\Program Files (x86)\\NVIDIA Corporation\\NetService\\NvNetworkService.exe

O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\\Windows\\system32\\nvvsvc.exe (file missing)

O23 - Service: Origin Client Service - Electronic Arts - C:\\Program Files (x86)\\Origin\\OriginClientService.exe

O23 - Service: PnkBstrA - Unknown owner - C:\\Windows\\system32\\PnkBstrA.exe

O23 - Service: @%systemroot%\\system32\\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)

O23 - Service: @%systemroot%\\system32\\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\\Windows\\system32\\locator.exe (file missing)

O23 - Service: @%SystemRoot%\\system32\\samsrv.dll,-1 (SamSs) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\\system32\\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\\Windows\\System32\\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\\system32\\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\\Windows\\System32\\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\\system32\\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\\Windows\\system32\\sppsvc.exe (file missing)

O23 - Service: Steam Client Service - Valve Corporation - C:\\Program Files (x86)\\Common Files\\Steam\\SteamService.exe

O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\\Program Files (x86)\\NVIDIA Corporation\\3D Vision\\nvSCPAPISvr.exe

O23 - Service: @%SystemRoot%\\system32\\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\\Windows\\system32\\UI0Detect.exe (file missing)

O23 - Service: @%SystemRoot%\\system32\\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\\system32\\vds.exe,-100 (vds) - Unknown owner - C:\\Windows\\System32\\vds.exe (file missing)

O23 - Service: @%systemroot%\\system32\\vssvc.exe,-102 (VSS) - Unknown owner - C:\\Windows\\system32\\vssvc.exe (file missing)

O23 - Service: @%SystemRoot%\\system32\\Wat\\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\\Windows\\system32\\Wat\\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\\system32\\wbengine.exe,-104 (wbengine) - Unknown owner - C:\\Windows\\system32\\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\\system32\\wbem\\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\\Windows\\system32\\wbem\\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\\Windows Media Player\\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\\Program Files (x86)\\Windows Media Player\\wmpnetwk.exe (file missing)


--

End of file - 9462 bytes

 



13
I have an old Dell Dimension 3100 I'm trying to fix for a family member, recently the sound just quit working and its saying that now there is no sound card installed ( although all it has was an integrated card but still a sound card none the less. ) Downloading the drivers is of no use because it says there is no card to apply them to. I've tried going into the add hardware wizard and manually adding the sound card and then installing the drivers but still no luck ( not sure if I picked the correct thing to install just followed instructions on a forum where someone had the same problem and was able to fix it this way ), under control panel > sounds there just isn't a device to pick to set as default. I've ran out of ideas and this forum and it's users have been very helpful in the past so I thought I would give it a go and see what you can come up with. Thanks in advance for any help given and if you need any more info from me just ask and I will post it asap.


Dell Dimension 3100 with XP professional

14
Tech Clinic / Sound quit working on old desktop pc
« on: July 09, 2010, 08:46:24 PM »
I have an old Dell Dimension 3100 I'm trying to fix for a family member, recently the sound just quit working and its saying that now there is no sound card installed ( although all it has was an integrated card but still a sound card none the less. ) Downloading the drivers is of no use because it says there is no card to apply them to. I've tried going into the add hardware wizard and manually adding the sound card and then installing the drivers but still no luck ( not sure if I picked the correct thing to install just followed instructions on a forum where someone had the same problem and was able to fix it this way ), under control panel > sounds there just isn't a device to pick to set as default. I've ran out of ideas and this forum and it's users have been very helpful in the past so I thought I would give it a go and see what you can come up with. Thanks in advance for any help given and if you need any more info from me just ask and I will post it asap.


Dell Dimension 3100 with XP professional


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:36:08 PM, on 7/9/2010
Platform: Windows XP  (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\igfxpers.exe
C:\Program Files\Creative\Mixer\CTSVolFE.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\AIM\aim.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Documents and Settings\Linda\Desktop\HijackThis.exe

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\System32\igfxpers.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [CTSVolFE] "C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: NETGEAR WG111v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll

--
End of file - 2022 bytes

15
Tech Clinic / A quick checkup
« on: May 21, 2007, 07:13:29 PM »
I have been detecting a lot of spyware lately and every daily scan finds the same ones over and over. I'm about to install some new hardware in a few days and I just want to make sure my system is clean before doing so. If you could give this log a quick look over I would appreciate it greatly. Also included is an uninstall list just incase you would like to view it as well. Thanks again.

Logfile of HijackThis v1.99.1
Scan saved at 8:09:11 PM, on 5/21/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\system32\bgsvcgen.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\IntelDH\Intel® Quick Resume Technology\ELService.exe
C:\WINDOWS\system32\dllhost.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\ctfmon.exe
C:\acidmax2\mirc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\ehome\EHTray.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\HP_Administrator\Desktop\My Content\Apps and Installers\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {598F4775-6FB6-477B-9842-E0426824E077} - C:\DOCUME~1\HP_ADM~1\LOCALS~1\Temp\~DP5E.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1165288895218
O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo...GPlugin9USA.cab
O20 - Winlogon Notify: WBSrv - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - B.H.A Corporation - C:\WINDOWS\system32\bgsvcgen.exe
O23 - Service: Intel® Quick Resume Technology Drivers (ELService) - Intel Corporation - C:\Program Files\Intel\IntelDH\Intel® Quick Resume Technology\ELService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

µTorrent
4U MP4 Video Converter (version 2.1.2)
Adobe Reader 8
Adobe Shockwave Player
Adobe SVG Viewer 3.0
Age of Empires III
AIM 6.0
AVG 7.5
CloneDVD 4.1.0.2
Combined Community Codec Pack 2007-02-22
Creative WebCam Center
Creative WebCam Instant Driver (1.01.02.0729)
Creative WebCam Instant User's Guide (English)
Data Fax SoftModem with SmartCP
DFX 8 for Winamp
DISCover
DivX Codec
DivX Content Uploader
DivX Converter
DivX Player
DivX Web Player
Entriq MediaSphere 3.4.0.16
Fun Morph 3.0
Get Yahoo! Messenger
High Definition Audio Driver Package - KB888111
HijackThis 1.99.1
Hotfix for Windows Media Player 10 (KB910393)
Hotfix for Windows XP (KB893357)
Hotfix for Windows XP (KB906569)
Hotfix for Windows XP (KB914440)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
Hotfix for Windows XP (KB935448)
HP Boot Optimizer
HP Deskjet Printer Preload
HP DigitalMedia Archive
HP Document Viewer 5.3
HP Imaging Device Functions 6.0
HP Multimedia Keyboard Software
HP Photosmart 330,380,420,470,7800,8000,8200 Series
HP Photosmart Cameras 5.0
HP Photosmart for Media Center PC
HP Photosmart Premier Software 6.0
HP PSC & OfficeJet 5.3.A
HP PSC & OfficeJet 5.3.B
HP Software Update
HP Solution Center & Imaging Support Tools 5.3
HP Web Helper
ijji
ImgBurn (Remove Only)
Intel Matrix Storage Manager
Intel® PRO Network Connections Drivers
Intel® Quick Resume Technology Drivers
Intel® Quick Resume Technology Drivers
Intel® Viiv™ Software
J2SE Runtime Environment 5.0 Update 11
Logitech Gaming Software
Microsoft .NET Framework 1.0 Hotfix (KB887998)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft .NET Framework 2.0
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Money 2006
Microsoft National Language Support Downlevel APIs
Microsoft Office 2003 Edition 60 Days Trial Welcome Tour
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Works
mIRC
Mozilla Firefox (2.0.0.3)
MSXML 4.0 SP2 (KB927978)
muvee autoProducer 4.5
muvee autoProducer unPlugged 1.2
MySpaceIM
Need for Speedâ„¢ Carbon
Nero 7
neroxml
Netscape Browser (remove only)
NVIDIA Drivers
NVIDIA Media Center Extensions
NVIDIA PureVideo Decoder
Oblivion
Oblivion - Horse Armor Pack
Oblivion - Knights of the Nine
Oblivion - Mehrunes Razor
Oblivion - Orrery
Oblivion - Spell Tomes
Oblivion - Thieves Den
Oblivion - Vile Lair
Oblivion - Wizard's Tower
oggcodecs 0.71.0946
Oldblivion
Otto
PC-Doctor 5 for Windows
PokerStars
PowerDVD
PS2
PSP ISO Compressor
Python 2.2 pywin32 extensions (build 203)
Python 2.2.3
Quicken 2006
QuickTime
RealPlayer
Realtek High Definition Audio Driver
Remove IntelliMover Demo
Security Update for Microsoft .NET Framework 2.0 (KB917283)
Security Update for Microsoft .NET Framework 2.0 (KB922770)
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB905915)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922760)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923694)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB924667)
Security Update for Windows XP (KB925454)
Security Update for Windows XP (KB925486)
Security Update for Windows XP (KB925902)
Security Update for Windows XP (KB926255)
Security Update for Windows XP (KB926436)
Security Update for Windows XP (KB927779)
Security Update for Windows XP (KB927802)
Security Update for Windows XP (KB928255)
Security Update for Windows XP (KB928843)
Security Update for Windows XP (KB930178)
Security Update for Windows XP (KB931261)
Security Update for Windows XP (KB931784)
Security Update for Windows XP (KB932168)
SmartFTP Client
SoftSkies
Sonic Express Labeler
Sonic MyDVD Plus
Sonic RecordNow Audio
Sonic RecordNow Copy
Sonic RecordNow Data
Sonic Update Manager
Steam
System Requirements Lab
Theme Manager
TMPGEnc 4.0 XPress
TMPGEnc DVD Author 3 with DivX Authoring
Update for Windows Media Player 10 (KB913800)
Update for Windows Media Player 10 (KB926251)
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB904942)
Update for Windows XP (KB908531)
Update for Windows XP (KB910437)
Update for Windows XP (KB911280)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Update for Windows XP (KB929338)
Update for Windows XP (KB930916)
Update for Windows XP (KB931836)
Ventrilo Client
VideoLAN VLC media player 0.8.6
Viewpoint Media Player
webcamXP (remove only)
Winamp (remove only)
WindowBlinds
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB883667
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB892050
Windows XP Hotfix - KB893066
Windows XP Media Center Edition 2005 KB925766
WinRAR archiver
Xfire (remove only)
Yahoo! Messenger
Yugioh Virtual Desktop
ZoneAlarm Pro

16
Tech Clinic / Problem with pc
« on: February 20, 2007, 02:12:23 AM »
Zone alarm has been acting up lately, the truevector zone protector (vsmon.exe) will encounter errors and have to shut down at random times.
I'm not sure why Norton is still showing up, it was on the pc when I bought it and the subscription ran out so I uninstalled and switched to avg. I can't remember the excact version that was on here, is there anyway to check ? I'll look in add/remove programs and see if any remnants of Norton are still there. Sorry it took so long to reply, thanks again.

17
Tech Clinic / Problem with pc
« on: February 19, 2007, 12:22:15 PM »
I was also wondering if you had any clue as to what this is O11 - Options group: [INTERNATIONAL] International*
also I removed these with hijackthis since 3 of them were missing files and I keep seeing that url with spyware that I've removed. Again Thanks for all your help

 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
 O2 - BHO: (no name) - {598F4775-6FB6-477B-9842-E0426824E077} - C:\DOCUME~1\HP_ADM~1\LOCALS~1\Temp\~DP18.dll (file missing)
 O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
 O15 - Trusted Zone: http://*.trymedia.com (HKLM)

18
Tech Clinic / Problem with pc
« on: February 18, 2007, 11:21:18 PM »
ComboScan v20070212.14 run by HP_Administrator on 2007-02-18 at 23:17:32
Computer is in Normal Mode.
--------------------------------------------------------------------------------

Successfully created restore point.
Performed disk cleanup.


-- HijackThis log (run as HP_Administrator.com) ---------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 11:17:55 PM, on 2/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\IntelDH\Intel® Quick Resume Technology\ELService.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Sonic\DigitalMedia Plus\DigitalMedia Archive\DMAScheduler.exe
C:\Program Files\DISC\DISCover.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\Program Files\DISC\DiscUpdateMgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\DISC\DiscGui.exe
C:\Program Files\Steam\steam.exe
C:\Documents and Settings\HP_Administrator\Desktop\comboscan.exe
C:\DOCUME~1\HP_ADM~1\LOCALS~1\Temp\~jjboyxm.tmp\HP_Administrator.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [DMAScheduler] c:\Program Files\Sonic\DigitalMedia Plus\DigitalMedia Archive\DMAScheduler.exe
O4 - HKLM\..\Run: [DISCover] C:\Program Files\DISC\DISCover.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [DiscUpdateManager] C:\Program Files\DISC\DiscUpdateMgr.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Updates From HP.lnk = C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra \'Tools\' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra \'Tools\' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra \'Tools\' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1165288895218
O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo...GPlugin9USA.cab
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Intel® Quick Resume Technology Drivers (ELService) - Intel Corporation - C:\Program Files\Intel\IntelDH\Intel® Quick Resume Technology\ELService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe


-- HijackThis Fixed Entries (C:\Documents and Settings\HP_Administrator\Desktop\My Content\Apps and Installers\backups\) --------------------------------------------------------------------------------

backup-20070218-210851-327 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
backup-20070218-210851-410 O2 - BHO: (no name) - {598F4775-6FB6-477B-9842-E0426824E077} - C:\DOCUME~1\HP_ADM~1\LOCALS~1\Temp\~DP18.dll (file missing)
backup-20070218-210852-801 O9 - Extra \'Tools\' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
backup-20070218-210852-819 O15 - Trusted Zone: http://*.trymedia.com (HKLM)


-- File Associations ------------------------------------------------------------

.bat - batfile - "%1" %*
.chm - chm.file - "C:\WINDOWS\hh.exe" %1
.com - comfile - "%1" %*
.exe - exefile - "%1" %*
.hlp - hlpfile - %SystemRoot%\System32\winhlp32.exe %1
.inf - inffile - %SystemRoot%\System32\NOTEPAD.EXE %1
.ini - inifile - %SystemRoot%\System32\NOTEPAD.EXE %1
.js - JSFile - %SystemRoot%\System32\WScript.exe "%1" %*
.lnk - lnkfile - {00021401-0000-0000-C000-000000000046}
.pif - piffile - "%1" %*
.reg - regfile - regedit.exe "%1"
.scr - scrfile - "%1" /S
.txt - txtfile - %SystemRoot%\system32\NOTEPAD.EXE %1
.vbs - VBSFile - %SystemRoot%\System32\WScript.exe "%1" %*


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ----------------------

3 Arp1394 (1394 ARP Client Protocol) - system32\DRIVERS\arp1394.sys
1 Avg7Core (AVG7 Kernel) - \SystemRoot\System32\Drivers\avg7core.sys
1 Avg7RsW (AVG7 Wrap Driver) - \SystemRoot\System32\Drivers\avg7rsw.sys
1 Avg7RsXP (AVG7 Resident Driver XP) - \SystemRoot\System32\Drivers\avg7rsxp.sys
1 AvgClean (AVG7 Clean Driver) - \SystemRoot\System32\Drivers\avgclean.sys
2 AvgTdi (AVG Network Redirector) - \SystemRoot\System32\Drivers\avgtdi.sys
0 bb-run (Promise driver accelerator) - system32\DRIVERS\bb-run.sys
3 CCDECODE (Closed Caption Decoder) - system32\DRIVERS\CCDECODE.sys
3 E100B (Intel® PRO Network Connection Driver) - system32\DRIVERS\e100b325.sys
3 ELacpi - system32\DRIVERS\ELacpi.sys
1 ELhid - System32\DRIVERS\ELhid.sys
1 ELkbd - System32\DRIVERS\ELkbd.sys
1 ELmon - System32\DRIVERS\ELmon.sys
1 ELmou - System32\DRIVERS\ELmou.sys
0 ftsata2 - system32\DRIVERS\ftsata2.sys
3 hcwPP2 (Hauppauge WinTV PVR PCI II ([23|25|26]xxx)) - system32\DRIVERS\hcwPP2.sys
3 HDAudBus (Microsoft UAA Bus Driver for High Definition Audio) - system32\DRIVERS\HDAudBus.sys
3 HidIr (Microsoft Infrared HID Driver) - system32\DRIVERS\hidir.sys
3 HidUsb (Microsoft HID Class Driver) - system32\DRIVERS\hidusb.sys
3 HSXHWBS2 - system32\DRIVERS\HSXHWBS2.sys
3 HSX_DP - system32\DRIVERS\HSX_DP.sys
0 iaStor (Intel RAID Controller) - system32\DRIVERS\iaStor.sys
3 IntcAzAudAddService (Service for Realtek HD Audio (WDM)) - system32\drivers\RtkHDAud.sys
1 intelppm (Intel Processor Driver) - system32\DRIVERS\intelppm.sys
3 IrBus (Infrared bus filter driver for eHome remote controls) - system32\DRIVERS\IrBus.sys
1 kbdhid (Keyboard HID Driver) - system32\DRIVERS\kbdhid.sys
2 mdmxsdk - system32\DRIVERS\mdmxsdk.sys
3 MHNDRV (MHN driver) - system32\DRIVERS\mhndrv.sys
3 mouhid (Mouse HID Driver) - system32\DRIVERS\mouhid.sys
3 MSTEE (Microsoft Streaming Tee/Sink-to-Sink Converter) - system32\drivers\MSTEE.sys
3 NABTSFEC (NABTS/FEC VBI Codec) - system32\DRIVERS\NABTSFEC.sys
3 NdisIP (Microsoft TV/Video Connection) - system32\DRIVERS\NdisIP.sys
3 NIC1394 (1394 Net Driver) - system32\DRIVERS\nic1394.sys
3 nv - system32\DRIVERS\nv4_mini.sys
1 nvport (NVIDIA PORT IO Control Driver) - \??\C:\WINDOWS\system32\Drivers\nvport.sys
0 ohci1394 (VIA OHCI Compliant IEEE 1394 Host Controller) - system32\DRIVERS\ohci1394.sys
0 PCIIde - system32\DRIVERS\pciide.sys
3 PD0620VID (Creative WebCam Instant) - system32\DRIVERS\P0620Vid.sys
3 pfc (Padus ASPI Shell) - system32\drivers\pfc.sys
3 Ps2 - system32\DRIVERS\PS2.sys
0 PxHelp20 - System32\Drivers\PxHelp20.sys
3 rtl8139 (Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver) - system32\DRIVERS\RTL8139.SYS
3 SLIP (BDA Slip De-Framer) - system32\DRIVERS\SLIP.sys
0 sptd - System32\Drivers\sptd.sys
0 srescan - system32\ZoneLabs\srescan.sys
3 streamip (BDA IPSink) - system32\DRIVERS\StreamIP.sys
3 usbccgp (Microsoft USB Generic Parent Driver) - system32\DRIVERS\usbccgp.sys
3 usbehci (Microsoft USB 2.0 Enhanced Host Controller Miniport Driver) - system32\DRIVERS\usbehci.sys
3 usbstor (USB Mass Storage Driver) - system32\DRIVERS\USBSTOR.SYS
0 ViaIde - system32\DRIVERS\viaide.sys
1 vsdatant - System32\vsdatant.sys
3 winachsx - system32\DRIVERS\HSX_CNXT.sys
3 WmBEnum (Logitech Virtual Bus Enumerator Driver) - system32\drivers\WmBEnum.sys
3 WmFilter (Logitech Gaming HID Filter Driver) - system32\drivers\WmFilter.sys
3 WmVirHid (Logitech Virtual Hid Device Driver) - system32\drivers\WmVirHid.sys
3 WmXlCore (Logitech WingMan Translation Layer Driver) - system32\drivers\WmXlCore.sys
3 WN5301 (LIteon Wireless PCI Network Adapter Service) - system32\DRIVERS\wn5301.sys
3 WSTCODEC (World Standard Teletext Codec) - system32\DRIVERS\WSTCODEC.SYS
3 WudfPf (Windows Driver Foundation - User-mode Driver Framework Platform Driver) - system32\DRIVERS\WudfPf.sys
3 WudfRd (Windows Driver Foundation - User-mode Driver Framework Reflector) - system32\DRIVERS\wudfrd.sys
3 XTrapD12 - \??\C:\WINDOWS\system32\XTrapD12.sys


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

3 aspnet_state (ASP.NET State Service) - %SystemRoot%\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
2 Avg7Alrt (AVG7 Alert Manager Server) - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
2 Avg7UpdSvc (AVG7 Update Service) - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
2 AVGEMS (AVG E-mail Scanner) - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
2 ehRecvr (Media Center Receiver Service) - C:\WINDOWS\eHome\ehRecvr.exe
2 ehSched (Media Center Scheduler Service) - C:\WINDOWS\eHome\ehSched.exe
2 ELService (Intel® Quick Resume Technology Drivers) - "C:\Program Files\Intel\IntelDH\Intel® Quick Resume Technology\ELService.exe"
3 Fax - %systemroot%\system32\fxssvc.exe
2 IAANTMon (Intel® Matrix Storage Event Monitor) - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
3 IDriverT (InstallDriver Table Manager) - "C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe"
2 LightScribeService (LightScribeService Direct Disc Labeling Service) - "C:\Program Files\Common Files\LightScribe\LSSrvc.exe"
2 McrdSvc (Media Center Extender Service) - C:\WINDOWS\ehome\mcrdsvc.exe
2 MDM (Machine Debug Manager) - "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
3 MHN - %SystemRoot%\System32\svchost.exe -k netsvcs
2 NVSvc (NVIDIA Display Driver Service) - %SystemRoot%\system32\nvsvc32.exe
3 ose (Office Source Engine) - "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
4 Pml Driver HPZ12 - \SystemRoot\C:\WINDOWS\system32\HPZipm12.exe
2 UMWdf (Windows User Mode Driver Framework) - C:\WINDOWS\system32\wdfmgr.exe
3 usprserv (User Privilege Service) - %SystemRoot%\System32\svchost.exe -k netsvcs
2 vsmon (TrueVector Internet Monitor) - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -service
3 WudfSvc (Windows Driver Foundation - User-mode Driver Framework) - %SystemRoot%\system32\svchost.exe -k WudfServiceGroup


-- Files created between 2007-01-18 and 2007-02-18 ------------------------------

2007-02-17 03:01:14         0 d-------- C:\WINDOWS\ie7updates<IE7UPD~1>
2007-02-15 18:15:42         0 d-------- C:\Documents and Settings\All Users\Application Data\CyberLink<CYBERL~1>
2007-02-15 18:14:27         0 d-------- C:\Program Files\CyberLink<CYBERL~1>
2007-02-12 15:19:53         0 d-------- C:\WINDOWS\pss
2007-02-10 15:34:26         0 d-------- C:\Documents and Settings\All Users\Application Data\Yahoo!
2007-02-10 15:33:15         0 d-------- C:\Program Files\Yahoo!
2007-02-04 16:38:56         0 d-------- C:\Program Files\CAPCOM
2007-02-03 15:58:14         0 d-------- C:\Program Files\Zeallsoft<ZEALLS~1>
2007-01-27 15:12:06         0 d-------- C:\Program Files\WarRock
2007-01-25 11:12:48         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\HP
2007-01-24 15:19:32         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\fltk.org
2007-01-21 01:12:35         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\Apple Computer<APPLEC~1>
2007-01-21 01:05:06         0 d-------- C:\Program Files\QuickTime<QUICKT~1>
2007-01-21 01:04:47         0 d-------- C:\Documents and Settings\All Users\Application Data\Apple Computer<APPLEC~1>
2007-01-20 14:34:27         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\Creative


-- Find3M Report ----------------------------------------------------------------

2007-02-18 23:17:14         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\Xfire
2007-02-18 22:55:21         0 d-------- C:\Program Files\Mozilla Firefox<MOZILL~1>
2007-02-18 22:41:24         0 d-------- C:\Program Files\Steam
2007-02-18 21:12:21         0 d---s---- C:\Program Files\Xfire
2007-02-18 20:50:03         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\uTorrent
2007-02-18 13:24:43         0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1>
2007-02-18 13:00:45      4212 ---h----- C:\WINDOWS\system32\zllictbl.dat
2007-02-18 08:00:03         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\AVG7
2007-02-10 13:21:54         0 d---s---- C:\Documents and Settings\HP_Administrator\Application Data\Microsoft<MICROS~1>
2007-01-27 20:54:46         0 d-------- C:\Program Files\PokerStars<POKERS~1>
2007-01-24 20:41:10      1988 --a------ C:\WINDOWS\mozver.dat
2007-01-21 21:04:15         0 d-------- C:\Program Files\YVD
2007-01-21 16:41:02     18432 --a------ C:\WINDOWS\system32\drivers\avgmfx86.sys<Unsigned: GRISOFT, s.r.o.>
2007-01-21 16:41:02     27776 --a------ C:\WINDOWS\system32\drivers\avg7rsxp.sys<Unsigned: GRISOFT, s.r.o.>
2007-01-21 16:41:02    839936 --a------ C:\WINDOWS\system32\drivers\avg7core.sys<Unsigned: GRISOFT, s.r.o.>
2007-01-18 21:49:47       196 --a------ C:\Documents and Settings\HP_Administrator\Application Data\G-Force Prefs (WindowsMediaPlayer).txt<G-FORC~1.TXT>
2007-01-16 18:40:31         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\dvdcss
2007-01-16 12:50:34         0 d-------- C:\Program Files\Common Files\Adobe
2007-01-16 01:41:26         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\Macromedia<MACROM~1>
2007-01-15 18:24:06         0 d-------- C:\Program Files\Entriq
2007-01-15 15:31:20         0 d-------- C:\Program Files\EA SPORTS<EASPOR~1>
2007-01-14 14:38:49         0 d-------- C:\Program Files\Common Files\Logitech
2007-01-14 14:38:39         0 d-------- C:\Program Files\Logitech
2007-01-13 14:33:48         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\AdobeUM
2007-01-12 15:44:43         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\SoundSpectrum<SOUNDS~1>
2007-01-12 15:43:47         0 d-------- C:\Program Files\SoundSpectrum<SOUNDS~1>
2007-01-12 14:38:18         0 d-------- C:\Program Files\NVIDIA Corporation<NVIDIA~1>
2007-01-10 18:00:29         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\InstallShield<INSTAL~1>
2007-01-08 17:27:27         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\Azureus
2007-01-01 13:00:46         0 d-------- C:\Program Files\psx emulation cheater<PSXEMU~1>
2006-12-28 20:34:12         0 d-------- C:\Program Files\Delta
2006-12-28 14:23:20         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\ImgBurn
2006-12-28 14:18:09         0 d-------- C:\Program Files\ImgBurn
2006-12-27 14:48:47         0 d-------- C:\Program Files\Winamp
2006-12-24 21:50:14         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\Propellerhead Software<PROPEL~1>
2006-12-24 21:45:34    233472 --a------ C:\WINDOWS\system32\REX Shared Library.dll<REXSHA~1.DLL><Unsigned: Propellerhead Software AB>
2006-12-24 21:45:34    225280 --a------ C:\WINDOWS\system32\ReWire.dll<Unsigned: Propellerhead Software AB>
2006-12-24 21:44:55         0 d-------- C:\Program Files\Propellerhead<PROPEL~1>
2006-12-24 13:45:57         0 d-------- C:\Program Files\RESIDENT EVIL<RESIDE~1>
2006-12-22 16:17:11         0 d-------- C:\Program Files\webcamXP
2006-12-22 15:16:47         0 d-------- C:\Program Files\Creative
2006-12-22 12:50:33         0 d-------- C:\Documents and Settings\HP_Administrator\Application Data\Adobe
2006-12-22 12:49:20         0 d-------- C:\Program Files\JoWooD
2006-12-22 12:42:27         0 d-------- C:\Program Files\SpellForce<SPELLF~1>
2006-12-21 01:24:02         0 d-------- C:\Program Files\LimeWire
2006-12-18 13:46:41         0 d-------- C:\Program Files\id Software<IDSOFT~1>
2006-12-06 14:26:49  12244687 -----n--- C:\AVG7QT.DAT
2006-12-04 19:31:03       335 --a------ C:\WINDOWS\nsreg.dat
2006-12-04 16:46:13       664 --a------ C:\WINDOWS\system32\d3d9caps.dat


-- Registry Dump ----------------------------------------------------------------


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"Steam"=""
"Aim6"=""
"Yahoo! Pager"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Zone Labs Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\""
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_10\\bin\\jusched.exe"
"RTHDCPL"="RTHDCPL.EXE"
"Recguard"="C:\\WINDOWS\\SMINST\\RECGUARD.EXE"
"PCDrProfiler"=""
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"IAAnotif"="C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\iaanotif.exe"
"ehTray"="C:\\WINDOWS\\ehome\\ehtray.exe"
"DMAScheduler"="c:\\Program Files\\Sonic\\DigitalMedia Plus\\DigitalMedia Archive\\DMAScheduler.exe"
"DISCover"="C:\\Program Files\\DISC\\DISCover.exe"
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgcc.exe /STARTUP"
"Reminder"="\"C:\\Windows\\Creator\\Remind_XP.exe\""
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"HPHUPD08"="c:\\Program Files\\HP\\Digital Imaging\\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\\hphupd08.exe"
"HPBootOp"="\"C:\\Program Files\\Hewlett-Packard\\HP Boot Optimizer\\HPBootOp.exe\" /run"
"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPwuSchd2.exe"
"DiscUpdateManager"="C:\\Program Files\\DISC\\DiscUpdateMgr.exe"
"DAEMON Tools"="\"C:\\Program Files\\DAEMON Tools\\daemon.exe\" -lang 1033"
"RemoteControl"="\"C:\\Program Files\\CyberLink\\PowerDVD\\PDVDServ.exe\""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKLM"
"command"=""
"inimapping"="0"
   

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgw.exe /RUNONCE"

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgw.exe /RUNONCE"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"InstallVisualStyle"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,\
  63,65,73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,5c,52,6f,79,61,6c,65,2e,\
  6d,73,73,74,79,6c,65,73,00
"InstallTheme"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,63,65,\
  73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,2e,74,68,65,6d,65,00

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoCDBurning"=dword:00000000

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter   REG_MULTI_SZ      HTTPFilter
LocalService   REG_MULTI_SZ      AlerterWebClientLmHostsRemoteRegistryupnphostSSDPSRV
NetworkService   REG_MULTI_SZ      DnsCache
DcomLaunch   REG_MULTI_SZ      DcomLaunchTermService
rpcss   REG_MULTI_SZ      RpcSs
imgsvc   REG_MULTI_SZ      StiSvc
termsvcs   REG_MULTI_SZ      TermService
WudfServiceGroup   REG_MULTI_SZ      WUDFSvc


[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9b389a7d-83c8-11db-8078-806d6172696f}]
Shell\AutoRun\command   C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480


-- End of ComboScan: finished at 2007-02-18 at 23:18:43 -------------------------



ComboScan v20070212.14 run by HP_Administrator on 2007-02-18 at 23:17:32
Supplementary logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information -----------------------------------------------------------

Microsoft Windows XP Professional (build 2600) SP 2.0
Architecture: X86; Language: English

CPU 0: Intel® Pentium® D CPU 3.00GHz
CPU 1: Intel® Pentium® D CPU 3.00GHz
Percentage of Memory in Use: 38%
Physical Memory (total/avail): 2046.39 MiB / 1252.45 MiB
Pagefile Memory (total/avail): 3937.68 MiB / 3454.61 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1992.15 MiB

C: is Fixed (NTFS) - 289.52 GiB total, 39.21 GiB free.
D: is Fixed (FAT32) - 8.55 GiB total, 0.4 GiB free.
E: is CDROM (No Media)
F: is CDROM (No Media)
G: is Removable (FAT)
H: is Removable (No Media)
I: is Removable (No Media)
J: is Removable (No Media)
K: is CDROM (CDFS)


-- Security Center --------------------------------------------------------------

AUOptions is scheduled to auto-install.
Windows Internal Firewall is disabled.

FirstRunDisabled is set.
AntiVirusDisableNotify is set.
FirewallDisableNotify is set.

FW: Norton Internet Worm Protection v2006 (Symantec) [color=\"RED\"]Disabled[/color]
FW: ZoneAlarm Pro Firewall v6.5.737.000 (Zone Labs, Inc.) [color=\"RED\"]Disabled[/color]
AV: AVG 7.5.441 v7.5.441 (GRISOFT)


-- Environment Variables --------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\HP_Administrator\Application Data
CLASSPATH=.;C:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=YOUR-4DACD0EA75
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\HP_Administrator
LOGONSERVER=\\YOUR-4DACD0EA75
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;c:\Python22;C:\Program Files\QuickTime\QTSystem\;;C:\PROGRA~1\COMMON~1\MUVEET~130625;C:\PROGRA~1\COMMON~1\MUVEET~130625
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 6 Stepping 2, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0602
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip
SESSIONNAME=Console
SonicCentral=c:\Program Files\Common Files\Sonic Shared\Sonic Central\
sourcesdk=c:\program files\steam\steamapps\dachronic\sourcesdk
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\HP_ADM~1\LOCALS~1\Temp
TMP=C:\DOCUME~1\HP_ADM~1\LOCALS~1\Temp
tvdumpflags=8
USERDOMAIN=YOUR-4DACD0EA75
USERNAME=HP_Administrator
USERPROFILE=C:\Documents and Settings\HP_Administrator
VProject=C:\Program Files\Steam\steamapps\dachronic\counter-strike source
windir=C:\WINDOWS


-- User Profiles ----------------------------------------------------------------

HP_Administrator (admin)
Administrator (admin)


-- Add/Remove Programs ----------------------------------------------------------

 --> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
 --> C:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
 --> C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu
 --> c:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205}
 --> c:\WINDOWS\system32\\MSIEXEC.EXE /x {AB708C9B-97C8-4AC9-899B-DBF226AC9382}
 --> c:\WINDOWS\system32\\MSIEXEC.EXE /x {B12665F4-4E93-4AB4-B7FC-37053B524629}
 --> c:\WINDOWS\system32\\MSIEXEC.EXE /x {F80239D8-7811-4D5E-B033-0D0BBFE32920}
 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{363435F2-7426-11D8-9966-00A0C9663221}\setup.exe" -l0x9
 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5CDDF96A-BC34-4D72-9ABA-E1FFF0C39977}\setup.exe" -l0x9
 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC067AB0-2594-4A7E-A1DE-ADEB7D15EB4B}\setup.exe" -l0x9
 --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
µTorrent --> "C:\Program Files\uTorrent\uninstall.exe"
Adobe Reader 8 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A80000000002}
Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
Adobe SVG Viewer 3.0 --> C:\Program Files\Common Files\Adobe\SVG Viewer 3.0\Uninstall\Winstall.exe -u -fC:\Program Files\Common Files\Adobe\SVG Viewer 3.0\Uninstall\Install.log
Age of Empires III --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}
AIM 6.0 --> C:\Program Files\AIM6\uninst.exe
AVG 7.5 --> C:\Program Files\Grisoft\AVG7\setup.exe /UNINSTALL
Azureus --> C:\Program Files\Azureus\Uninstall.exe
biohazard 4 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\110\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DFFCDB41-C2DA-47D6-96FF-03C05C0BEA22}\install.exe" -l0x9  -removeonly
Creative WebCam Center --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{363435F2-7426-11D8-9966-00A0C9663221}\setup.exe" -l0x9  /remove
Creative WebCam Instant Driver (1.01.02.0729) --> C:\WINDOWS\CtDrvIns.exe -uninstall -script PD0620.uns -unsext NT -plugin P0620Pin.dll -pluginres P0620Pin.crl
Creative WebCam Instant User\'s Guide (English) --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Creative\Creative WebCam Instant\Creative WebCam Instant User\'s Guide\English\CTManual.isu"
Data Fax SoftModem with SmartCP --> C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200C14F1\HXFSETUP.EXE -U -ITrx200Ck.inf
DISCover --> "C:\Program Files\DISC\uninstall.exe"
DivX Codec --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Content Uploader --> C:\Program Files\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
DivX Converter --> C:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player --> C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Entriq MediaSphere 3.4.0.16 --> "C:\Program Files\Entriq\MediaSphere\unins000.exe"
Fun Morph 3.0 --> "C:\Program Files\Zeallsoft\Fun Morph\unins000.exe"
Get Yahoo! Messenger --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC067AB0-2594-4A7E-A1DE-ADEB7D15EB4B}\setup.exe" -l0x9  /remove
High Definition Audio Driver Package - KB888111 --> "C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
HijackThis 1.99.1 --> C:\Documents and Settings\HP_Administrator\Desktop\HijackThis.exe /uninstall
HP Boot Optimizer --> C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe /uninstall
HP Deskjet Printer Preload --> MsiExec.exe /I{2C5D07FB-31A2-4F2D-9FDA-0B24ACD42BD0}
HP DigitalMedia Archive --> MsiExec.exe /X{F80239D8-7811-4D5E-B033-0D0BBFE32920}
HP Document Viewer 5.3 --> C:\Program Files\HP\Digital Imaging\DocumentViewer\hpzscr01.exe -datfile hpqbud04.dat
HP Imaging Device Functions 6.0 --> C:\Program Files\HP\Digital Imaging\DigitalImagingMonitor\hpzscr01.exe -datfile hpqbud01.dat
HP Multimedia Keyboard Software --> C:\HP\KBD\Install.exe /remove
HP Photosmart 330,380,420,470,7800,8000,8200 Series --> C:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\setup\hpzscr01.exe -d MsiRollbackUninstaller -datfile hphscr08.dat
HP Photosmart Cameras 5.0 --> C:\Program Files\HP\Digital Imaging\{C83A12B9-B31B-461A-BBD4-CE9B988094F1}\setup\hpzscr01.exe -datfile hpiscr01.dat
HP Photosmart for Media Center PC --> c:\Program Files\HP\Digital Imaging\bin\mcpc\setupmcl.exe /u
HP Photosmart Premier Software 6.0 --> C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP PSC & OfficeJet 5.3.A --> "C:\Program Files\HP\Digital Imaging\{3E386744-10FA-44b2-98C9-DF7A270DECB3}\setup\hpzscr01.exe" -datfile hposcr06.dat
HP PSC & OfficeJet 5.3.B --> "C:\Program Files\HP\Digital Imaging\{5B79CFD1-6845-4158-9D7D-6BE89DF2C135}\setup\hpzscr01.exe" -datfile hposcr07.dat
HP Software Update --> MsiExec.exe /X{ECFDD6BD-E0C0-41CC-A171-E6D6AF4C0E93}
HP Solution Center & Imaging Support Tools 5.3 --> C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Web Helper --> regsvr32 /u /s "C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll"
ijji --> C:\ijji\ENGLISH\ijjiUninstall.exe
ijji - Gunz --> C:\ijji\ENGLISH\Gunz\Uninstall.exe
ImgBurn (Remove Only) --> "C:\Program Files\ImgBurn\uninstall.exe"
Intel Matrix Storage Manager --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}\Setup.exe"   -l0409 -INTELUNINST
Intel® PRO Network Connections Drivers --> Prounstl.exe
Intel® Quick Resume Technology Drivers --> MsiExec.exe /I{8C22F265-DE76-44D1-8A79-A71D819137DA}
Intel® Quick Resume Technology Drivers --> MsiExec.exe /X{8C22F265-DE76-44D1-8A79-A71D819137DA} /qb!
Intel® Viiv™ Software --> MsiExec.exe /X{27E395E5-EB04-4BFD-96C3-C9A102E97E1B}
J2SE Runtime Environment 5.0 Update 10 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100}
LimeWire 4.12.6 --> "C:\Program Files\LimeWire\uninstall.exe"
Logitech Gaming Software --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5C1DA723-24FC-48AD-93BA-925695C3EF26}\setup.exe" -l0x9  -removeonly
Madden NFL 07 --> C:\Program Files\EA SPORTS\Madden NFL 07\EAUninstall.exe
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Money 2006 --> "C:\Program Files\Microsoft Money 2006\MNYCoreFiles\Setup\uninst.exe" /s:120
Microsoft Office 2003 Edition 60 Days Trial Welcome Tour --> MsiExec.exe /I{A01FC76F-CC09-4658-9E37-5C2F635EE708}
Microsoft Office Standard Edition 2003 --> MsiExec.exe /I{91120409-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Works --> MsiExec.exe /I{416D80BA-6F6D-4672-B7CF-F54DA2F80B44}
mIRC --> "C:\acidmax2\mirc.exe" -uninstall
Mozilla Firefox (2.0.0.1) --> C:\PROGRA~1\MOZILL~1\uninstall\uninst.exe
muvee autoProducer 4.5 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E073D315-3C54-44BF-A1B2-B5583AEA618C}\setup.exe" -l0x9
muvee autoProducer unPlugged 1.2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{35DD9A1D-B340-4F41-A8B0-6EEBFB119280}\setup.exe" -l0x9
Netscape Browser (remove only) --> "C:\Program Files\Netscape\Netscape Browser\NSUninst.exe"
NVIDIA Drivers --> C:\WINDOWS\system32\nvudisp.exe UninstallGUI
NVIDIA Media Center Extensions --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime91\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4BE15737-07C5-4705-9DFC-D9D533939942}\setup.exe" -l0x9  -uninstall
NVIDIA PureVideo Decoder --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime91\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055FEF8E-4B86-400F-A5C6-8FAC0042DCD9}\setup.exe" -l0x9  -uninstall
oggcodecs 0.71.0946 --> C:\Program Files\illiminable\oggcodecs\uninst.exe
Otto --> "C:\Program Files\EnglishOtto\uninstallotto.exe"
PC-Doctor 5 for Windows --> C:\Program Files\PC-Doctor 5 for Windows\uninst.exe
PokerStars --> C:\Program Files\PokerStars\Uninstall.EXE /u:"PokerStars"
PowerDVD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe"  -uninstall
PS2 --> C:\WINDOWS\system32\ps2.exe uninstall
Python 2.2 pywin32 extensions (build 203) --> "C:\Python22\Removepywin32.exe" -u "C:\Python22\pywin32-wininst.log"
Python 2.2.3 --> C:\Python22\UNWISE.EXE C:\Python22\INSTALL.LOG
Quake 4(tm) --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{152B782A-05F3-48EC-9AAC-4D3EB68D9E20} /l1033
Quicken 2006 --> MsiExec.exe /X{2818095F-FB6C-42C8-827E-0A406CC9AFF5}
QuickTime --> MsiExec.exe /I{F07B861C-72B9-40A4-8B1A-AAED4C06A7E8}
RealPlayer --> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek High Definition Audio Driver --> RtlUpd.exe -r -m
Reason 3.0 --> "C:\Program Files\Propellerhead\Reason\Uninstall Reason\unins000.exe"
Remove IntelliMover Demo --> c:\hp\bin\cloaker.exe c:\hp\bin\commands.exe /c "C:\Program Files\IntelliMoverDemo\clean.bat"
RESIDENT EVIL --> C:\Program Files\RESIDENT EVIL\Uninstall.exe
Security Update for Step By Step Interactive Training (KB898458) --> "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
Security Update for Step By Step Interactive Training (KB923723) --> "C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
SoftSkies --> C:\Program Files\SoundSpectrum\SoftSkies\Uninstall.exe
Soldier Front --> C:\Program Files\InstallShield Installation Information\{8ADE24B2-DCA4-4A1E-8B52-A5B435522D9E}\setup.exe -runfromtemp -l0x0009 -removeonly
Sonic Express Labeler --> MsiExec.exe /X{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Sonic MyDVD Plus --> MsiExec.exe /X{21657574-BD54-48A2-9450-EB03B2C7FC29}
Sonic RecordNow Audio --> MsiExec.exe /X{AB708C9B-97C8-4AC9-899B-DBF226AC9382}
Sonic RecordNow Copy --> MsiExec.exe /X{B12665F4-4E93-4AB4-B7FC-37053B524629}
Sonic RecordNow Data --> MsiExec.exe /X{075473F5-846A-448B-BCB3-104AA1760205}
Sonic Update Manager --> MsiExec.exe /X{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
SpellForce 2 - Shadow Wars --> MsiExec.exe /I{1A4E47DC-6701-4A85-AA16-C1F99A44598C}
SpellForce 2 Update v1.02 --> C:\PROGRA~1\SPELLF~1\SPELLF~1\\UNWISE.EXE C:\PROGRA~1\SPELLF~1\SPELLF~1\\INSTALL.LOG
Star Wars Jedi Knight Jedi Academy --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EECBA68-8BE4-4076-94DF-E9ED206B1D21}\Setup.exe" -l0x9
Steam --> C:\PROGRA~1\Steam\UNWISE.EXE C:\PROGRA~1\Steam\INSTALL.LOG
Uninstall U_KwonHoOnline --> "C:\ijji\ENGLISH\U_KwonHoOnline\uninstall.exe"
Update Rollup 2 for Windows XP Media Center Edition 2005 -->
Updates from HP (remove only) --> C:\WINDOWS\HPCPCUninstall-9972322\HPBWSetup.exe -appid 9972322 -uninstall
VideoLAN VLC media player 0.8.6 --> C:\Program Files\VideoLAN\VLC\uninstall.exe
Viewpoint Media Player --> C:\Program Files\Viewpoint\Viewpoint Media Player\mtsAxInstaller.exe /u
webcamXP (remove only) --> "C:\Program Files\webcamXP\wxp-uninst.exe"
Winamp (remove only) --> "C:\Program Files\Winamp\UninstWA.exe"
Windows XP Media Center Edition 2005 KB925766 --> "C:\WINDOWS\$NtUninstallKB925766$\spuninst\spuninst.exe"
WinRAR archiver --> C:\Program Files\WinRAR\uninstall.exe
Xfire (remove only) --> "C:\Program Files\Xfire\uninst.exe"
Xvid 1.1.2 final uninstall --> "C:\Program Files\Xvid\unins000.exe"
Yahoo! Messenger --> C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
Yugioh Virtual Desktop --> C:\WINDOWS\unvise32.exe C:\Program Files\YVD\uninstal.log
ZoneAlarm Pro --> C:\Program Files\Zone Labs\ZoneAlarm\zauninst.exe


-- End of ComboScan: finished at 2007-02-18 at 23:18:43 -------------------------

Thanks for all your help again

19
Tech Clinic / Problem with pc
« on: February 18, 2007, 09:30:52 PM »
My bandwidth is disappearing somewhere and I can't figure it out. Playing games my ping has went from 20-30 to about 120 and my max upload and download speeds have been cut in half. I've closed down everything possible and it's still occuring, heres a hijackthis log. Thanks for any help.

Logfile of HijackThis v1.99.1
Scan saved at 9:29:13 PM, on 2/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\IntelDH\Intel® Quick Resume Technology\ELService.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Sonic\DigitalMedia Plus\DigitalMedia Archive\DMAScheduler.exe
C:\Program Files\DISC\DISCover.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\Program Files\DISC\DiscUpdateMgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\DISC\DiscGui.exe
C:\Program Files\Xfire\xfire.exe
C:\Program Files\Steam\steam.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Documents and Settings\HP_Administrator\Desktop\My Content\Apps and Installers\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [DMAScheduler] c:\Program Files\Sonic\DigitalMedia Plus\DigitalMedia Archive\DMAScheduler.exe
O4 - HKLM\..\Run: [DISCover] C:\Program Files\DISC\DISCover.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [DiscUpdateManager] C:\Program Files\DISC\DiscUpdateMgr.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Updates From HP.lnk = C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1165288895218
O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo...GPlugin9USA.cab
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Intel® Quick Resume Technology Drivers (ELService) - Intel Corporation - C:\Program Files\Intel\IntelDH\Intel® Quick Resume Technology\ELService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

20
Tech Clinic / Needing some help with an old pc
« on: December 06, 2006, 12:27:06 PM »
I just did a fresh install but the error was that some .DLL file was missing, I can't remember the exact name. Thanks for all your help.

Pages: [1] 2 3