OTL logfile created on: 7/5/2014 4:47:45 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\\Users\\Evan Kopilow\\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17126)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
15.92 Gb Total Physical Memory | 13.05 Gb Available Physical Memory | 81.98% Memory free
31.84 Gb Paging File | 28.66 Gb Available in Paging File | 90.01% Paging File free
Paging file location(s): c:\\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\\Windows | %ProgramFiles% = C:\\Program Files (x86)
Drive C: | 232.78 Gb Total Space | 146.13 Gb Free Space | 62.77% Space Free | Partition Type: NTFS
Drive D: | 931.51 Gb Total Space | 622.20 Gb Free Space | 66.80% Space Free | Partition Type: NTFS
Drive E: | 931.51 Gb Total Space | 865.01 Gb Free Space | 92.86% Space Free | Partition Type: NTFS
Drive F: | 111.79 Gb Total Space | 71.39 Gb Free Space | 63.86% Space Free | Partition Type: NTFS
Drive G: | 702.83 Mb Total Space | 479.74 Mb Free Space | 68.26% Space Free | Partition Type: UDF
Drive H: | 55.90 Gb Total Space | 45.11 Gb Free Space | 80.70% Space Free | Partition Type: NTFS
Computer Name: LJSMONSTER | User Name: Evan Kopilow | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/07/02 00:39:57 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\\Users\\Evan Kopilow\\Desktop\\OTL.exe
PRC - [2014/06/30 17:46:52 | 000,542,400 | ---- | M] (Valve Corporation) -- C:\\Program Files (x86)\\Common Files\\Steam\\SteamService.exe
PRC - [2014/06/30 17:46:50 | 001,753,280 | ---- | M] (Valve Corporation) -- D:\\Program Files (x86)\\Steam\\Steam.exe
PRC - [2014/06/18 02:23:31 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\\Program Files (x86)\\Mozilla Firefox\\firefox.exe
PRC - [2014/06/10 16:25:03 | 001,176,632 | ---- | M] (Spotify Ltd) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe
PRC - [2014/05/31 16:26:48 | 000,585,048 | ---- | M] (Razer Inc.) -- C:\\Program Files (x86)\\Razer\\Synapse\\RzSynapse.exe
PRC - [2014/05/21 09:32:02 | 001,721,416 | ---- | M] (Verizon) -- C:\\Program Files (x86)\\Verizon\\IHA_MessageCenter\\Bin\\VzDetectAgent.exe
PRC - [2014/05/19 20:45:22 | 033,322,312 | ---- | M] (Dropbox, Inc.) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe
PRC - [2014/05/19 20:34:36 | 004,737,440 | ---- | M] (Samsung Electronics.) -- C:\\Program Files (x86)\\Samsung Magician\\Samsung Magician.exe
PRC - [2013/12/21 02:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\armsvc.exe
PRC - [2013/10/15 19:06:12 | 001,016,712 | ---- | M] (Flux Software LLC) -- C:\\Users\\Evan Kopilow\\AppData\\Local\\FluxSoftware\\Flux\\flux.exe
PRC - [2013/03/15 15:28:12 | 004,683,768 | ---- | M] (Almico Software (www.almico.com)) -- D:\\Program Files (x86)\\SpeedFan\\speedfan.exe
PRC - [2011/08/08 17:39:32 | 002,656,536 | ---- | M] (Intel Corporation) -- C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\UNS\\UNS.exe
PRC - [2011/08/08 17:39:26 | 000,325,912 | ---- | M] (Intel Corporation) -- C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\LMS\\LMS.exe
PRC - [2010/04/22 15:05:26 | 001,011,712 | ---- | M] (Gigabyte Technology CO., LTD.) -- C:\\Program Files (x86)\\GIGABYTE\\smart6\\timelock\\AlarmClock.exe
PRC - [2009/10/13 16:39:46 | 000,114,688 | ---- | M] (Gigabyte Technology CO., LTD.) -- C:\\Program Files (x86)\\GIGABYTE\\smart6\\timelock\\TimeMgmtDaemon.exe
========== Modules (No Company Name) ==========
MOD - [2014/07/05 15:15:02 | 000,192,512 | ---- | M] () -- C:\\Users\\Evan Kopilow\\AppData\\Local\\Temp\\sfamcc00001.dll
MOD - [2014/07/05 15:15:02 | 000,158,720 | ---- | M] () -- C:\\Users\\Evan Kopilow\\AppData\\Local\\Temp\\sfareca00001.dll
MOD - [2014/07/05 15:14:33 | 000,043,008 | ---- | M] () -- c:\\Users\\Evan Kopilow\\AppData\\Local\\Temp\\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmp_v8c.dll
MOD - [2014/06/30 17:47:12 | 002,139,328 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\video.dll
MOD - [2014/06/30 17:46:52 | 001,116,864 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\bin\\chromehtml.dll
MOD - [2014/06/26 18:40:28 | 000,764,416 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\SDL2.dll
MOD - [2014/06/18 02:23:19 | 003,852,912 | ---- | M] () -- C:\\Program Files (x86)\\Mozilla Firefox\\mozjs.dll
MOD - [2014/05/30 21:27:20 | 001,116,672 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\libavcodec-55.dll
MOD - [2014/05/30 21:27:20 | 000,438,784 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\libavutil-53.dll
MOD - [2014/05/30 21:27:20 | 000,399,360 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\libavformat-55.dll
MOD - [2014/05/30 21:27:20 | 000,331,264 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\libavresample-1.dll
MOD - [2014/05/19 20:20:50 | 000,103,424 | ---- | M] () -- C:\\Program Files (x86)\\Samsung Magician\\PAL.dll
MOD - [2014/05/19 20:20:10 | 000,039,424 | ---- | M] () -- C:\\Program Files (x86)\\Samsung Magician\\SATA.dll
MOD - [2014/05/19 20:20:10 | 000,031,232 | ---- | M] () -- C:\\Program Files (x86)\\Samsung Magician\\SMINI.dll
MOD - [2014/05/19 20:19:48 | 000,029,696 | ---- | M] () -- C:\\Program Files (x86)\\Samsung Magician\\SAS.dll
MOD - [2014/05/19 20:19:46 | 000,038,400 | ---- | M] () -- C:\\Program Files (x86)\\Samsung Magician\\SAT.dll
MOD - [2014/05/06 11:24:38 | 000,013,824 | ---- | M] () -- C:\\Program Files (x86)\\Samsung Magician\\SAMSUNG_SSD.dll
MOD - [2014/05/01 19:35:22 | 020,628,160 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\bin\\libcef.dll
MOD - [2014/04/28 20:37:22 | 000,519,168 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\libswscale-2.dll
MOD - [2014/02/12 13:56:33 | 000,399,872 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Xml.Linq\\b6c7a1ca929c1b10f36b683c9f1a0517\\System.Xml.Linq.ni.dll
MOD - [2014/02/12 13:56:15 | 000,190,976 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\UIAutomationTypes\\75b6a68103e1b76063d9f69b8275ae61\\UIAutomationTypes.ni.dll
MOD - [2014/02/12 13:56:14 | 000,018,944 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\Presentatio49d6fefe#\\47e7fc401facd4a5d3f2237f16948f36\\PresentationFramework-SystemXml.ni.dll
MOD - [2014/02/12 13:56:14 | 000,014,336 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\Presentatio4b37ff64#\\0d3cb1df8b6af32cebdc6e2cc4948c69\\PresentationFramework-SystemXmlLinq.ni.dll
MOD - [2014/02/12 00:24:08 | 018,813,440 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\Presentatio5ae0f00f#\\a4b45c44490c75bc2fb22780e7ef087d\\PresentationFramework.ni.dll
MOD - [2014/02/12 00:24:01 | 001,889,792 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Xaml\\3fe705796c6a41d4889d9001d1c56af8\\System.Xaml.ni.dll
MOD - [2014/02/12 00:23:59 | 012,894,208 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Windows.Forms\\f4f6ee0df2aa4189bf36e6335cb92761\\System.Windows.Forms.ni.dll
MOD - [2014/02/12 00:23:59 | 001,180,672 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Management\\0893e0e7137e3b2da905da6216b75344\\System.Management.ni.dll
MOD - [2014/02/12 00:23:55 | 011,025,920 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\PresentationCore\\a74542efbeb46445949a39026c501132\\PresentationCore.ni.dll
MOD - [2014/02/12 00:23:50 | 006,990,336 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Core\\dce99d8de14d8a015313db98c72552ee\\System.Core.ni.dll
MOD - [2014/02/12 00:23:50 | 001,644,544 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Drawing\\5cd2aee5e7c07227c694d89219688ab3\\System.Drawing.ni.dll
MOD - [2014/02/12 00:23:49 | 007,662,080 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Xml\\bada32953bb6b16a53d653eae23d78dc\\System.Xml.ni.dll
MOD - [2014/02/12 00:23:49 | 000,806,400 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Servd1dec626#\\34b53ecafa1d7ccc7ca961d722b5d983\\System.ServiceModel.Internals.ni.dll
MOD - [2014/02/12 00:23:49 | 000,122,880 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\SMDiagnostics\\78652b7fa68ee058bff6a118c657f565\\SMDiagnostics.ni.dll
MOD - [2014/02/12 00:23:48 | 002,825,216 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Runteb92aa12#\\f6d7bb59f318c130d68816a89335d05e\\System.Runtime.Serialization.ni.dll
MOD - [2014/02/12 00:23:47 | 003,950,080 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\WindowsBase\\acf97bfe2a931d4a47253b26b7218991\\WindowsBase.ni.dll
MOD - [2014/02/12 00:23:45 | 000,470,528 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\Presentatio1c9175f8#\\75f8bc4cf08030c4a53b6d5e0ae20046\\PresentationFramework.Aero.ni.dll
MOD - [2014/02/12 00:23:44 | 010,060,800 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System\\ff26cc03e6d57d8abd13b990332e67c6\\System.ni.dll
MOD - [2014/02/12 00:23:44 | 000,976,384 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\System.Configuration\\bbc48ec4245e502ae19b0601d3799c9e\\System.Configuration.ni.dll
MOD - [2014/02/12 00:23:39 | 016,953,856 | ---- | M] () -- C:\\Windows\\assembly\\NativeImages_v4.0.30319_32\\mscorlib\\ce5f61c5754789df97be8dc991c47d07\\mscorlib.ni.dll
MOD - [2014/01/20 14:17:04 | 000,073,544 | ---- | M] () -- C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\zlib1.dll
MOD - [2014/01/20 14:16:38 | 001,044,808 | ---- | M] () -- C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\libxml2.dll
MOD - [2014/01/02 21:09:26 | 003,610,624 | ---- | M] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Dropbox\\bin\\wxmsw28uh_vc.dll
MOD - [2013/08/23 15:01:44 | 025,100,288 | ---- | M] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Dropbox\\bin\\libcef.dll
MOD - [2013/06/14 19:49:12 | 001,100,800 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\bin\\avcodec-53.dll
MOD - [2013/06/14 19:49:12 | 000,192,000 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\bin\\avformat-53.dll
MOD - [2013/06/14 19:49:12 | 000,124,416 | ---- | M] () -- D:\\Program Files (x86)\\Steam\\bin\\avutil-51.dll
========== Services (SafeList) ==========
SRV:64bit: - [2014/05/30 05:21:05 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Windows\\SysNative\\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/03/11 12:34:10 | 000,347,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\\Program Files\\Microsoft Security Client\\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2014/03/11 12:34:10 | 000,023,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\\Program Files\\Microsoft Security Client\\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2013/12/06 16:52:10 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\\Windows\\SysNative\\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2013/05/27 01:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Program Files\\Windows Defender\\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013/04/21 14:23:50 | 000,182,848 | ---- | M] (Soluto) [Auto | Running] -- C:\\Program Files\\Soluto\\SolutoLauncherService.exe -- (SolutoLauncherService)
SRV:64bit: - [2013/04/21 14:23:48 | 000,721,472 | ---- | M] (Soluto) [Auto | Running] -- C:\\Program Files\\Soluto\\SolutoService.exe -- (SolutoService)
SRV:64bit: - [2013/04/21 14:16:00 | 001,245,248 | ---- | M] (Soluto) [On_Demand | Stopped] -- C:\\Program Files\\Soluto\\SolutoRemoteService.exe -- (SolutoRemoteService)
SRV:64bit: - [2010/04/06 16:30:38 | 000,031,272 | ---- | M] () [On_Demand | Stopped] -- C:\\Windows\\SysNative\\AppleChargerSrv.exe -- (AppleChargerSrv)
SRV - [2014/06/30 17:46:52 | 000,542,400 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\\Program Files (x86)\\Common Files\\Steam\\SteamService.exe -- (Steam Client Service)
SRV - [2014/06/18 02:23:30 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Mozilla Maintenance Service\\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/06/11 10:48:44 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/05/21 09:32:04 | 000,358,984 | ---- | M] (Verizon) [Auto | Running] -- C:\\Program Files (x86)\\Verizon\\IHA_MessageCenter\\Bin\\Verizon_IHAMessageCenter.exe -- (IHA_MessageCenter)
SRV - [2013/12/21 02:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\armsvc.exe -- (AdobeARMservice)
SRV - [2013/11/07 02:52:56 | 000,279,000 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\\Windows\\SysWOW64\\IntelCpHeciSvc.exe -- (cphs)
SRV - [2013/10/23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Skype\\Updater\\Updater.exe -- (SkypeUpdate)
SRV - [2013/09/11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\\Windows\\Microsoft.NET\\Framework\\v4.0.30319\\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013/08/14 16:46:02 | 000,101,888 | ---- | M] (Freemake) [On_Demand | Stopped] -- C:\\ProgramData\\Freemake\\FreemakeUtilsService\\FreemakeUtilsService.exe -- (Freemake Improver)
SRV - [2013/05/23 16:12:02 | 000,143,120 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- D:\\Program Files\\SUPERAntiSpyware\\SASCore64.exe -- (!SASCORE)
SRV - [2011/12/09 14:39:52 | 000,135,584 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Futuremark\\Futuremark SystemInfo\\FMSISvc.exe -- (Futuremark SystemInfo Service)
SRV - [2011/08/08 17:39:32 | 002,656,536 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\UNS\\UNS.exe -- (UNS)
SRV - [2011/08/08 17:39:26 | 000,325,912 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\LMS\\LMS.exe -- (LMS)
SRV - [2009/10/13 16:39:46 | 000,114,688 | ---- | M] (Gigabyte Technology CO., LTD.) [Auto | Running] -- C:\\Program Files (x86)\\GIGABYTE\\smart6\\timelock\\TimeMgmtDaemon.exe -- (Smart TimeLock)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\\Windows\\Microsoft.NET\\Framework\\v2.0.50727\\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2007/01/15 17:14:38 | 000,774,144 | ---- | M] (Nero AG) [On_Demand | Stopped] -- D:\\Program Files (x86)\\Nero 7\\Nero BackItUp\\NBService.exe -- (NBService)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2014/05/19 02:47:28 | 000,155,816 | ---- | M] (Razer Inc) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\rzudd.sys -- (rzudd)
DRV:64bit: - [2014/03/11 09:52:30 | 000,133,928 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\\Windows\\SysNative\\drivers\\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2014/01/22 09:52:10 | 000,206,080 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2014/01/22 09:52:10 | 000,108,800 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2013/12/06 17:52:14 | 013,207,552 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2013/12/06 16:21:44 | 000,626,176 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2013/11/07 02:52:44 | 005,363,200 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\igdkmd64.sys -- (igfx)
DRV:64bit: - [2013/10/01 22:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013/09/24 10:53:50 | 000,094,208 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2013/09/20 11:52:42 | 000,016,152 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\SWDUMon.sys -- (SWDUMon)
DRV:64bit: - [2013/04/21 14:15:34 | 000,054,728 | ---- | M] (Soluto LTD.) [File_System | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\Soluto.sys -- (Soluto)
DRV:64bit: - [2012/12/13 14:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/11/02 16:38:36 | 000,050,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\point64.sys -- (Point64)
DRV:64bit: - [2012/11/01 22:52:50 | 000,075,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\dc3d.sys -- (dc3d)
DRV:64bit: - [2012/08/23 10:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 10:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/05/06 12:56:42 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\pcouffin.sys -- (pcouffin)
DRV:64bit: - [2012/03/01 02:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\\Windows\\SysNative\\drivers\\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/09/21 10:25:54 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\\Windows\\SysNative\\drivers\\cpuz135_x64.sys -- (cpuz135)
DRV:64bit: - [2011/05/16 10:55:28 | 000,533,096 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/03/11 02:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 02:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/01/10 18:16:08 | 000,021,104 | ---- | M] () [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\AppleCharger.sys -- (AppleCharger)
DRV:64bit: - [2010/11/20 23:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/10/19 23:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2009/08/21 02:52:10 | 000,079,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\xusb21.sys -- (xusb21)
DRV:64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [1999/12/31 20:00:00 | 000,331,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [1999/12/31 20:00:00 | 000,088,832 | ---- | M] (Etron Technology Inc) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\EtronXHCI.sys -- (EtronXHCI)
DRV:64bit: - [1999/12/31 20:00:00 | 000,065,152 | ---- | M] (Etron Technology Inc) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\EtronHub3.sys -- (EtronHub3)
DRV - [2014/07/05 15:14:15 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\\Windows\\gdrv.sys -- (gdrv)
DRV - [2013/01/03 15:07:47 | 000,030,528 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\\Windows\\GVTDrv64.sys -- (GVTDrv64)
DRV - [2012/08/23 17:02:26 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\\Windows\\etdrv.sys -- (etdrv)
DRV - [2011/07/22 12:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- D:\\Program Files\\SUPERAntiSpyware\\sasdifsv64.sys -- (SASDIFSV)
DRV - [2011/07/12 17:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- D:\\Program Files\\SUPERAntiSpyware\\saskutil64.sys -- (SASKUTIL)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\\Windows\\SysWOW64\\drivers\\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\\..\\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\\..\\SearchScopes\\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: \"URL\" = http://www.bing.com/search?q=\'>http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Local Page = C:\\Windows\\SysWOW64\\blank.htm
IE - HKLM\\..\\SearchScopes,DefaultScope =
IE - HKLM\\..\\SearchScopes\\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: \"URL\" = http://www.bing.com/search?q=\'>http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Secondary Start Pages = [binary data]
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Start Page = http://www22.verizon.com/Foryourhome/MyAccount/Unprotected/UserManagement/Login/Login.aspx\'>http://www22.verizon.com/Foryourhome/MyAccount/Unprotected/UserManagement/Login/Login.aspx
IE - HKCU\\..\\SearchScopes,DefaultScope =
IE - HKCU\\..\\SearchScopes\\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: \"URL\" = http://www.bing.com/search?q=\'>http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyOverride\" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.selectedEngine: \"Google\"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: \"http://www.google.com/\'>http://www.google.com/\"
FF - prefs.js..extensions.enabledAddons: TFToolbarX%40torrent-finder:1.3.1
FF - prefs.js..extensions.enabledAddons: ex1%40icrewmax.com:3.6
FF - prefs.js..extensions.enabledAddons: artur.dubovoy%40gmail.com:5.9.1
FF - prefs.js..extensions.enabledAddons: %7B37fa1426-b82d-11db-8314-0800200c9a66%7D:3.4.2
FF - prefs.js..extensions.enabledAddons: %7B73a6fe31-595d-460b-a920-fcc0f8843232%7D:2.6.8.31
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:30.0
FF - user.js - File not found
FF:64bit: - HKLM\\Software\\MozillaPlugins\\@adobe.com/FlashPlayer: C:\\Windows\\system32\\Macromed\\Flash\\NPSWF64_14_0_0_125.dll File not found
FF:64bit: - HKLM\\Software\\MozillaPlugins\\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\\Software\\MozillaPlugins\\@Microsoft.com/NpCtrl,version=1.0: C:\\Program Files\\Microsoft Silverlight\\5.1.30214.0\\npctrl.dll ( Microsoft Corporation)
FF - HKLM\\Software\\MozillaPlugins\\@adobe.com/FlashPlayer: C:\\Windows\\SysWOW64\\Macromed\\Flash\\NPSWF32_14_0_0_125.dll ()
FF - HKLM\\Software\\MozillaPlugins\\@Apple.com/iTunes,version=: File not found
FF - HKLM\\Software\\MozillaPlugins\\@Apple.com/iTunes,version=1.0: D:\\iTunes\\Mozilla Plugins\\npitunes.dll ()
FF - HKLM\\Software\\MozillaPlugins\\@java.com/DTPlugin,version=10.55.2: C:\\Program Files (x86)\\Java\\jre7\\bin\\dtplugin\\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\\Software\\MozillaPlugins\\@java.com/JavaPlugin,version=10.55.2: C:\\Program Files (x86)\\Java\\jre7\\bin\\plugin2\\npjp2.dll (Oracle Corporation)
FF - HKLM\\Software\\MozillaPlugins\\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\\Software\\MozillaPlugins\\@Microsoft.com/NpCtrl,version=1.0: C:\\Program Files (x86)\\Microsoft Silverlight\\5.1.30214.0\\npctrl.dll ( Microsoft Corporation)
FF - HKLM\\Software\\MozillaPlugins\\@pandonetworks.com/PandoWebPlugin: C:\\Program Files (x86)\\Pando Networks\\Media Booster\\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\\Software\\MozillaPlugins\\@raidcall.en/RCplugin: C:\\Users\\Evan Kopilow\\AppData\\Roaming\\raidcall\\plugins\\nprcplugin.dll (Raidcall)
FF - HKLM\\Software\\MozillaPlugins\\@videolan.org/vlc,version=2.0.8: D:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll (VideoLAN)
FF - HKLM\\Software\\MozillaPlugins\\@videolan.org/vlc,version=2.1.0: C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll (VideoLAN)
FF - HKLM\\Software\\MozillaPlugins\\@videolan.org/vlc,version=2.1.1: C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll (VideoLAN)
FF - HKLM\\Software\\MozillaPlugins\\@videolan.org/vlc,version=2.1.2: C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll (VideoLAN)
FF - HKLM\\Software\\MozillaPlugins\\@videolan.org/vlc,version=2.1.3: C:\\Program Files (x86)\\VideoLAN\\VLC\\npvlc.dll (VideoLAN)
FF - HKLM\\Software\\MozillaPlugins\\Adobe Reader: C:\\Program Files (x86)\\Adobe\\Reader 11.0\\Reader\\AIR\\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\\Software\\MozillaPlugins\\pandonetworks.com/PandoWebPlugin: C:\\Program Files (x86)\\Pando Networks\\Media Booster\\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\\software\\mozilla\\Mozilla Firefox 30.0\\extensions\\\\Components: C:\\Program Files (x86)\\Mozilla Firefox\\components [2014/06/18 02:23:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\\software\\mozilla\\Mozilla Firefox 30.0\\extensions\\\\Plugins: C:\\Program Files (x86)\\Mozilla Firefox\\plugins [2014/07/03 11:12:31 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\\software\\mozilla\\Mozilla Firefox 30.0\\extensions\\\\Components: C:\\Program Files (x86)\\Mozilla Firefox\\components [2014/06/18 02:23:15 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\\software\\mozilla\\Mozilla Firefox 30.0\\extensions\\\\Plugins: C:\\Program Files (x86)\\Mozilla Firefox\\plugins [2014/07/03 11:12:31 | 000,000,000 | ---D | M]
[2012/04/10 10:50:54 | 000,000,000 | ---D | M] (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Extensions
[2014/07/03 11:12:30 | 000,000,000 | ---D | M] (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions
[2014/05/14 17:37:37 | 000,000,000 | ---D | M] (\"Flash Video Downloader - Full HD Download\") -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\[email protected]
[2014/04/24 15:50:52 | 000,057,781 | ---- | M] () (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\[email protected]
[2014/04/08 03:16:26 | 000,625,308 | ---- | M] () (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\[email protected]
[2013/01/30 10:35:10 | 000,119,925 | ---- | M] () (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\[email protected]
[2014/06/20 21:41:17 | 000,009,259 | ---- | M] () (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\[email protected]
[2014/06/27 19:29:50 | 000,220,046 | ---- | M] () (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\{37fa1426-b82d-11db-8314-0800200c9a66}.xpi
[2014/07/02 01:32:28 | 000,538,404 | ---- | M] () (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
[2014/06/10 17:17:35 | 000,967,387 | ---- | M] () (No name found) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpz899co.default\\extensions\\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2014/06/18 02:23:15 | 000,000,000 | ---D | M] (No name found) -- C:\\Program Files (x86)\\Mozilla Firefox\\extensions
[2014/06/18 02:23:15 | 000,000,000 | ---D | M] (Java Console) -- C:\\Program Files (x86)\\Mozilla Firefox\\extensions\\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2014/06/18 02:23:15 | 000,000,000 | ---D | M] (Java Console) -- C:\\Program Files (x86)\\Mozilla Firefox\\extensions\\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2014/06/18 02:23:15 | 000,000,000 | ---D | M] (No name found) -- C:\\Program Files (x86)\\Mozilla Firefox\\browser\\extensions
[2014/06/18 02:23:31 | 000,000,000 | ---D | M] (Default) -- C:\\Program Files (x86)\\Mozilla Firefox\\browser\\extensions\\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\\PROGRAMDATA\\AVG SECURE SEARCH\\FIREFOXEXT\\17.2.0.38
[2011/12/09 13:23:32 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\\Program Files (x86)\\mozilla firefox\\plugins\\npwachk.dll
O1 HOSTS File: ([2009/06/10 17:00:26 | 000,000,824 | ---- | M]) - C:\\Windows\\SysNative\\drivers\\etc\\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\\Program Files (x86)\\Java\\jre7\\bin\\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\\Program Files (x86)\\Java\\jre7\\bin\\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\\Run: [HotKeysCmds] C:\\Windows\\SysNative\\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\\Run: [IgfxTray] C:\\Windows\\SysNative\\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\\Run: [IntelliPoint] C:\\Program Files\\Microsoft Mouse and Keyboard Center\\ipoint.exe (Microsoft Corporation)
O4:64bit: - HKLM..\\Run: [IntelliType Pro] C:\\Program Files\\Microsoft Mouse and Keyboard Center\\itype.exe (Microsoft Corporation)
O4:64bit: - HKLM..\\Run: [MSC] C:\\Program Files\\Microsoft Security Client\\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\\Run: [Persistence] C:\\Windows\\SysNative\\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\\Run: [RtHDVCpl] C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\\Run: [] File not found
O4 - HKLM..\\Run: [APSDaemon] C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\\Run: [Razer Synapse] C:\\Program Files (x86)\\Razer\\Synapse\\RzSynapse.exe (Razer Inc.)
O4 - HKLM..\\Run: [StartCCC] C:\\Program Files (x86)\\ATI Technologies\\ATI.ACE\\Core-Static\\amd64\\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\\Run: [f.lux] C:\\Users\\Evan Kopilow\\AppData\\Local\\FluxSoftware\\Flux\\flux.exe (Flux Software LLC)
O4:64bit: - HKLM..\\RunOnce: [RPMKickstart] C:\\Program Files\\GIGABYTE\\SMART6\\Recovery\\RPMKickstart.exe (Gigabyte Technology CO., LTD.)
O4 - Startup: C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Samsung Magician.lnk = C:\\Windows\\SysWOW64\\schtasks.exe (Microsoft Corporation)
O4 - Startup: C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\SpeedFan.lnk = File not found
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoActiveDesktop = 1
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: PromptOnSecureDesktop = 0
O10:64bit: - NameSpace_Catalog5\\Catalog_Entries64\\000000000007 [] - C:\\Program Files\\Bonjour\\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\\Catalog_Entries\\000000000007 [] - C:\\Program Files (x86)\\Bonjour\\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\\..Trusted Domains: verizon.net ([activate] https in Trusted sites)
O15 - HKCU\\..Trusted Domains: verizon.net ([activatemydsl] https in Trusted sites)
O15 - HKCU\\..Trusted Domains: verizon.net ([activatemyfios] https in Trusted sites)
O15 - HKCU\\..Trusted Domains: verizon.net ([activatemyhsi] https in Trusted sites)
O15 - HKCU\\..Trusted Domains: verizon.net ([activatemywifi] https in Trusted sites)
O15 - HKCU\\..Trusted Domains: verizon.net ([wbadownload] https in Trusted sites)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab\'>http://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab (Java Plug-in 10.55.2)
O16 - DPF: {CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab\'>http://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab (Java Plug-in 1.7.0_51)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab\'>http://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab (Java Plug-in 10.55.2)
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\Parameters\\Interfaces\\{0D22C8E2-A8B1-4FA7-8886-7DFC39D6AA92}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\\Handler\\skype4com - No CLSID value found
O18 - Protocol\\Handler\\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\Program Files (x86)\\Common Files\\Skype\\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\\Windows\\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (c:\\windows\\system32\\userinit.exe) - C:\\Windows\\SysNative\\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (c:\\program files\\soluto\\soluto.exe /userinit) - c:\\program files\\soluto\\soluto.exe (Soluto)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\\Windows\\SysWow64\\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\\Windows\\SysWow64\\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\\Notify\\igfxcui: DllName - (igfxdev.dll) - C:\\Windows\\SysNative\\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\\{5625bff4-8119-11e2-a428-50e549e97722}\\Shell - \"\" = AutoRun
O33 - MountPoints2\\{5625bff4-8119-11e2-a428-50e549e97722}\\Shell\\AutoRun\\command - \"\" = H:\\ToolLauncher-Bootstrap.exe
O33 - MountPoints2\\{8fec731b-8330-11e1-982c-806e6f6e6963}\\Shell - \"\" = AutoRun
O33 - MountPoints2\\{8fec731b-8330-11e1-982c-806e6f6e6963}\\Shell\\AutoRun\\command - \"\" = D:\\Run.exe
O33 - MountPoints2\\{a0a3cf5c-c480-11e2-b96d-50e549e97722}\\Shell - \"\" = AutoRun
O33 - MountPoints2\\{a0a3cf5c-c480-11e2-b96d-50e549e97722}\\Shell\\AutoRun\\command - \"\" = J:\\VZW_Software_upgrade_assistant.exe
O33 - MountPoints2\\J\\Shell - \"\" = AutoRun
O33 - MountPoints2\\J\\Shell\\AutoRun\\command - \"\" = J:\\VZW_Software_upgrade_assistant.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\\..comfile [open] -- \"%1\" %*
O35:64bit: - HKLM\\..exefile [open] -- \"%1\" %*
O35 - HKLM\\..comfile [open] -- \"%1\" %*
O35 - HKLM\\..exefile [open] -- \"%1\" %*
O37:64bit: - HKLM\\...com [@ = comfile] -- \"%1\" %*
O37:64bit: - HKLM\\...exe [@ = exefile] -- \"%1\" %*
O37 - HKLM\\...com [@ = comfile] -- \"%1\" %*
O37 - HKLM\\...exe [@ = exefile] -- \"%1\" %*
O38 - SubSystems\\\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014/07/03 11:19:26 | 000,000,000 | ---D | C] -- C:\\Windows\\ERUNT
[2014/07/03 11:11:54 | 000,000,000 | ---D | C] -- C:\\AdwCleaner
[2014/07/03 11:10:07 | 001,016,261 | ---- | C] (Thisisu) -- C:\\Users\\Evan Kopilow\\Desktop\\JRT.exe
[2014/07/02 20:07:24 | 000,000,000 | -HSD | C] -- C:\\Users\\Evan Kopilow\\AppData\\Local\\EmieUserList
[2014/07/02 20:07:24 | 000,000,000 | -HSD | C] -- C:\\Users\\Evan Kopilow\\AppData\\Local\\EmieSiteList
[2014/07/02 00:39:55 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\\Users\\Evan Kopilow\\Desktop\\OTL.exe
[2014/07/02 00:35:13 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Samsung Magician
[2014/06/29 19:18:35 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Trend Micro
[2014/06/29 19:18:35 | 000,000,000 | ---D | C] -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\HiJackThis
[2014/06/24 13:19:18 | 000,000,000 | ---D | C] -- C:\\Users\\Evan Kopilow\\Desktop\\Phone pictures
[2014/06/18 02:23:15 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Mozilla Firefox
[2014/06/14 18:36:14 | 000,000,000 | ---D | C] -- C:\\Users\\Evan Kopilow\\AppData\\Local\\Adobe
[2014/06/10 16:26:01 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Skype
[2014/06/10 16:05:12 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\jscript9diag.dll
[2014/06/10 16:05:12 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\mshtmled.dll
[2014/06/10 16:05:12 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\ieetwproxystub.dll
[2014/06/10 16:05:12 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\ieetwproxystub.dll
[2014/06/10 16:05:12 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\JavaScriptCollectionAgent.dll
[2014/06/10 16:05:11 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\iesetup.dll
[2014/06/10 16:05:11 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\JavaScriptCollectionAgent.dll
[2014/06/10 16:05:10 | 001,964,544 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\inetcpl.cpl
[2014/06/10 16:05:10 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\msfeeds.dll
[2014/06/10 16:05:10 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\dxtmsft.dll
[2014/06/10 16:05:10 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\ieui.dll
[2014/06/10 16:05:10 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\ieetwcollector.exe
[2014/06/10 16:05:10 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\iernonce.dll
[2014/06/10 16:05:10 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\ieetwcollectorres.dll
[2014/06/10 16:05:09 | 002,040,832 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\inetcpl.cpl
[2014/06/10 16:05:09 | 000,608,768 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\ie4uinit.exe
[2014/06/10 16:05:09 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\iesetup.dll
[2014/06/10 16:05:08 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\mshtmlmedia.dll
[2014/06/10 16:05:08 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\ieapfltr.dll
[2014/06/10 16:05:08 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\ieUnatt.exe
[2014/06/10 16:05:08 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\iernonce.dll
[2014/06/10 16:05:07 | 000,574,976 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\ieui.dll
[2014/06/10 16:05:07 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\dxtrans.dll
[2014/06/10 16:05:07 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\msrating.dll
[2014/06/10 16:05:06 | 005,782,528 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\jscript9.dll
[2014/06/10 16:05:06 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\mshtmlmedia.dll
[2014/06/10 16:05:06 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\jscript9diag.dll
[2014/06/10 16:05:06 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\vbscript.dll
[2014/06/10 16:05:06 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\ieUnatt.exe
[2014/06/10 16:05:06 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\mshtmled.dll
[2014/06/10 16:05:05 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\MsSpellCheckingFacility.exe
[2014/06/10 16:05:05 | 000,846,336 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\ieapfltr.dll
[2014/06/10 16:05:05 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\msrating.dll
[2014/06/10 16:04:58 | 003,178,496 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\rdpcorets.dll
[2014/06/10 16:04:58 | 000,288,192 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\drivers\\FWPKCLNT.SYS
[2014/06/10 16:04:58 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\RdpGroupPolicyExtension.dll
[2014/06/10 16:04:57 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\usp10.dll
[2014/06/10 16:04:57 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\msxml6r.dll
[2014/06/10 16:04:57 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\msxml6r.dll
[2014/06/10 16:04:57 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\msxml3r.dll
[2014/06/10 16:04:57 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\msxml3r.dll
[2014/06/10 16:04:56 | 000,506,368 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\aepdu.dll
[2014/06/10 16:04:55 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\aeinv.dll
[2012/05/06 12:56:42 | 000,082,816 | ---- | C] (VSO Software) -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\pcouffin.sys
========== Files - Modified Within 30 Days ==========
[2014/07/05 16:06:00 | 000,000,830 | ---- | M] () -- C:\\Windows\\tasks\\Adobe Flash Player Updater.job
[2014/07/05 15:21:40 | 000,022,064 | -H-- | M] () -- C:\\Windows\\SysNative\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/07/05 15:21:40 | 000,022,064 | -H-- | M] () -- C:\\Windows\\SysNative\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/07/05 15:19:18 | 000,782,510 | ---- | M] () -- C:\\Windows\\SysNative\\PerfStringBackup.INI
[2014/07/05 15:19:18 | 000,662,400 | ---- | M] () -- C:\\Windows\\SysNative\\perfh009.dat
[2014/07/05 15:19:18 | 000,122,268 | ---- | M] () -- C:\\Windows\\SysNative\\perfc009.dat
[2014/07/05 15:14:15 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\\Windows\\gdrv.sys
[2014/07/05 15:14:13 | 000,000,350 | ---- | M] () -- C:\\Windows\\tasks\\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
[2014/07/05 15:14:13 | 000,000,350 | ---- | M] () -- C:\\Windows\\tasks\\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job
[2014/07/05 15:13:16 | 000,067,584 | --S- | M] () -- C:\\Windows\\bootstat.dat
[2014/07/05 15:13:10 | 4229,779,454 | -HS- | M] () -- C:\\hiberfil.sys
[2014/07/03 11:10:56 | 001,346,519 | ---- | M] () -- C:\\Users\\Evan Kopilow\\Desktop\\AdwCleaner.exe
[2014/07/03 11:10:11 | 001,016,261 | ---- | M] (Thisisu) -- C:\\Users\\Evan Kopilow\\Desktop\\JRT.exe
[2014/07/02 00:39:57 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\\Users\\Evan Kopilow\\Desktop\\OTL.exe
[2014/07/02 00:35:13 | 000,001,744 | ---- | M] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Samsung Magician.lnk
[2014/06/29 19:23:04 | 000,016,037 | ---- | M] () -- C:\\Users\\Evan Kopilow\\Desktop\\99 load.gif
[2014/06/29 19:18:35 | 000,003,007 | ---- | M] () -- C:\\Users\\Evan Kopilow\\Desktop\\HiJackThis.lnk
[2014/06/29 19:17:30 | 001,402,880 | ---- | M] () -- C:\\Users\\Evan Kopilow\\Desktop\\HiJackThis.msi
[2014/06/28 06:46:28 | 580,129,489 | ---- | M] () -- C:\\Windows\\MEMORY.DMP
[2014/06/25 13:30:44 | 000,001,117 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Vz In-Home Agent.lnk
[2014/06/18 11:46:14 | 000,002,044 | ---- | M] () -- C:\\Users\\Evan Kopilow\\Application Data\\Microsoft\\Internet Explorer\\Quick Launch\\Mozilla Firefox.lnk
[2014/06/11 10:48:44 | 000,699,056 | ---- | M] (Adobe Systems Incorporated) -- C:\\Windows\\SysWow64\\FlashPlayerApp.exe
[2014/06/11 10:48:44 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\\Windows\\SysWow64\\FlashPlayerCPLApp.cpl
[2014/06/08 05:13:05 | 000,506,368 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysNative\\aepdu.dll
[2014/06/08 05:08:04 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysNative\\aeinv.dll
========== Files Created - No Company Name ==========
[2014/07/03 11:10:51 | 001,346,519 | ---- | C] () -- C:\\Users\\Evan Kopilow\\Desktop\\AdwCleaner.exe
[2014/07/02 00:35:13 | 000,001,744 | ---- | C] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Samsung Magician.lnk
[2014/06/29 19:23:04 | 000,016,037 | ---- | C] () -- C:\\Users\\Evan Kopilow\\Desktop\\99 load.gif
[2014/06/29 19:18:35 | 000,003,007 | ---- | C] () -- C:\\Users\\Evan Kopilow\\Desktop\\HiJackThis.lnk
[2014/06/29 19:17:29 | 001,402,880 | ---- | C] () -- C:\\Users\\Evan Kopilow\\Desktop\\HiJackThis.msi
[2014/06/25 13:30:44 | 000,001,117 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Vz In-Home Agent.lnk
[2014/02/12 12:05:09 | 000,000,114 | ---- | C] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\Dogecoin.conf
[2013/12/06 17:44:26 | 000,038,912 | ---- | C] () -- C:\\Windows\\SysWow64\\kdbsdk32.dll
[2013/11/07 02:52:42 | 000,077,312 | ---- | C] () -- C:\\Windows\\SysWow64\\igdde32.dll
[2013/03/28 22:13:14 | 000,798,734 | ---- | C] () -- C:\\Windows\\SysWow64\\amdocl_ld32.exe
[2013/03/28 22:13:12 | 000,995,342 | ---- | C] () -- C:\\Windows\\SysWow64\\amdocl_as32.exe
[2012/12/10 21:45:50 | 000,002,048 | ---- | C] () -- C:\\Users\\Evan Kopilow\\comdrv8z.bin
[2012/11/20 00:17:57 | 000,000,193 | ---- | C] () -- C:\\ProgramData\\Microsoft.SqlServer.Compact.351.64.bc
[2012/10/10 03:22:28 | 000,272,928 | ---- | C] () -- C:\\Windows\\SysWow64\\igvpkrng600.bin
[2012/10/10 03:22:20 | 000,963,452 | ---- | C] () -- C:\\Windows\\SysWow64\\igcodeckrng600.bin
[2012/05/06 12:57:06 | 000,001,057 | ---- | C] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\vso_ts_preview.xml
[2012/05/06 12:56:42 | 000,099,384 | ---- | C] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\inst.exe
[2012/05/06 12:56:42 | 000,007,859 | ---- | C] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\pcouffin.cat
[2012/05/06 12:56:42 | 000,001,167 | ---- | C] () -- C:\\Users\\Evan Kopilow\\AppData\\Roaming\\pcouffin.inf
[2012/04/13 10:54:19 | 000,007,601 | ---- | C] () -- C:\\Users\\Evan Kopilow\\AppData\\Local\\Resmon.ResmonCfg
========== ZeroAccess Check ==========
[2009/07/14 00:55:00 | 000,000,227 | RHS- | M] () -- C:\\Windows\\assembly\\Desktop.ini
[HKEY_CURRENT_USER\\Software\\Classes\\clsid\\{42aedc87-2188-41fd-b9a3-0c966feabec1}\\InProcServer32] /64
[HKEY_CURRENT_USER\\Software\\Classes\\Wow6432node\\clsid\\{42aedc87-2188-41fd-b9a3-0c966feabec1}\\InProcServer32]
[HKEY_CURRENT_USER\\Software\\Classes\\clsid\\{fbeb8a05-beee-4442-804e-409d6c4515e9}\\InProcServer32] /64
[HKEY_CURRENT_USER\\Software\\Classes\\Wow6432node\\clsid\\{fbeb8a05-beee-4442-804e-409d6c4515e9}\\InProcServer32]
[HKEY_LOCAL_MACHINE\\Software\\Classes\\clsid\\{42aedc87-2188-41fd-b9a3-0c966feabec1}\\InProcServer32] /64
\"\" = C:\\Windows\\SysNative\\shell32.dll -- [2014/03/24 22:43:12 | 014,175,744 | ---- | M] (Microsoft Corporation)
\"ThreadingModel\" = Apartment
[HKEY_LOCAL_MACHINE\\Software\\Wow6432Node\\Classes\\clsid\\{42aedc87-2188-41fd-b9a3-0c966feabec1}\\InProcServer32]
\"\" = %SystemRoot%\\system32\\shell32.dll -- [2014/03/24 22:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation)
\"ThreadingModel\" = Apartment
[HKEY_LOCAL_MACHINE\\Software\\Classes\\clsid\\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\\InProcServer32] /64
\"\" = C:\\Windows\\SysNative\\wbem\\fastprox.dll -- [2009/07/13 21:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
\"ThreadingModel\" = Free
[HKEY_LOCAL_MACHINE\\Software\\Wow6432Node\\Classes\\clsid\\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\\InProcServer32]
\"\" = %systemroot%\\system32\\wbem\\fastprox.dll -- [2010/11/20 23:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
\"ThreadingModel\" = Free
[HKEY_LOCAL_MACHINE\\Software\\Classes\\clsid\\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\\InProcServer32] /64
\"\" = C:\\Windows\\SysNative\\wbem\\wbemess.dll -- [2009/07/13 21:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
\"ThreadingModel\" = Both
[HKEY_LOCAL_MACHINE\\Software\\Wow6432Node\\Classes\\clsid\\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\\InProcServer32]
< End of report >
Sorry about that