Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL Extras logfile created on: 7/6/2013 12:42:11 PM - Run 1
- OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Tessa\Downloads
- 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
- Internet Explorer (Version = 9.10.9200.16599)
- Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
- 3.58 Gb Total Physical Memory | 1.75 Gb Available Physical Memory | 48.76% Memory free
- 5.61 Gb Paging File | 3.05 Gb Available in Paging File | 54.33% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 909.87 Gb Total Space | 827.78 Gb Free Space | 90.98% Space Free | Partition Type: NTFS
- Drive D: | 20.17 Gb Total Space | 2.50 Gb Free Space | 12.39% Space Free | Partition Type: NTFS
- Drive E: | 558.79 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
- Computer Name: GEDDICORN | User Name: Tessa | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 90 Days
- [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
- [color=#E56717]========== File Associations ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
- .url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- .cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
- .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
- [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
- .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
- [color=#E56717]========== Shell Spawning ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- exefile [open] -- "%1" %*
- helpfile [open] -- Reg Error: Key error.
- htmlfile [edit] -- Reg Error: Key error.
- htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
- http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
- InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
- InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Key error.
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Key error.
- Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
- Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [explore] -- Reg Error: Value error.
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
- exefile [open] -- "%1" %*
- helpfile [open] -- Reg Error: Key error.
- htmlfile [edit] -- Reg Error: Key error.
- htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
- http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Key error.
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Key error.
- Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
- Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [explore] -- Reg Error: Value error.
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
- [color=#E56717]========== Security Center Settings ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- "cval" = 1
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
- "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data]
- "AntiVirusOverride" = 0
- "AntiSpywareOverride" = 0
- "FirewallOverride" = 0
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
- [color=#E56717]========== Firewall Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
- "EnableFirewall" = 1
- "DisableNotifications" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
- "EnableFirewall" = 1
- "DisableNotifications" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
- "EnableFirewall" = 1
- "DisableNotifications" = 0
- [color=#E56717]========== Authorized Applications List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
- [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
- "{09427341-E813-42E1-9176-F8819C88FBBC}" = lport=2869 | protocol=6 | dir=in | app=system |
- "{0D3BE2E3-B7F3-4CAC-A383-FD3312F35A53}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{16076690-4109-4E6C-80B4-E2AF9575209B}" = rport=137 | protocol=17 | dir=out | app=system |
- "{22F47827-B7CB-4854-B51D-1BF5CE71B00D}" = rport=138 | protocol=17 | dir=out | app=system |
- "{247AE9B5-1F05-4EEF-8DCA-3D0F3E477244}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{311A8FB7-CEF8-4DC8-B35B-EC8BE57B8F20}" = lport=137 | protocol=17 | dir=in | app=system |
- "{3DB3E659-775E-4D18-90D3-B2BAB6EF9C97}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
- "{60A8D77F-349B-4A65-AB83-ADABDBFB0966}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
- "{62B4E80E-822E-493D-A883-2EEB21104BD8}" = lport=52000 | protocol=6 | dir=in | name=hpconnectedremoteuser.exe |
- "{6BE2D807-228C-48B5-BB03-9703AC61BDB1}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
- "{80ACD07C-5F6D-462E-8DBD-B909A8CA2F37}" = rport=10243 | protocol=6 | dir=out | app=system |
- "{819FAC14-D752-428A-97C8-06F08F92E078}" = rport=139 | protocol=6 | dir=out | app=system |
- "{8C6F913F-6528-4B70-B418-0491CD571F52}" = lport=445 | protocol=6 | dir=in | app=system |
- "{920C6346-235F-4C8E-B8DC-2AE587C035AB}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{A75142E7-49E7-492B-B998-B9D0AC34E628}" = lport=53000 | protocol=6 | dir=in | name=hpconnectedremoteservice.exe |
- "{A82F8898-FDF2-41A5-831A-13C731D379F2}" = rport=445 | protocol=6 | dir=out | app=system |
- "{AA1A7EC7-4BC1-40C9-B21B-4BBDDED7BBF4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{AFA3DC50-852A-4062-AF82-569B25AC4E38}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
- "{B4E595F4-1006-455A-89A2-29BE08B41592}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
- "{C1EADC09-C503-4E03-A5C0-6A574982239E}" = lport=10243 | protocol=6 | dir=in | app=system |
- "{D30AF41A-DBD9-4AE7-9ED8-440260E64E56}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{D55BC13F-DFA6-4D6A-B4A7-CA94962983C6}" = lport=138 | protocol=17 | dir=in | app=system |
- "{DF0D5F52-DF53-40E4-B9E1-2ABCEC105ECF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
- "{E2C2BFCA-A963-4129-8538-070F7F54808D}" = lport=139 | protocol=6 | dir=in | app=system |
- "{ED73CEC5-FD90-415C-9D44-4DAFA99602B0}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
- [color=#E56717]========== Vista Active Application Exception List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
- "{01C8A169-93F2-40C6-8CD8-046E80585732}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
- "{0732455E-73D3-4FBE-BB28-D5D9FFB7B6B1}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{08C8D75E-CA86-45A9-97AE-B53D8886DB10}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{098643B8-0F4A-427D-908D-606A7F793066}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{17FD496D-A60F-42E0-8D21-B428B467E238}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{183C3D61-58A4-4A7F-B6A4-5F6AE7AB3DB7}" = dir=out | name=hp+ |
- "{1AFE75DE-B48B-47A7-829F-E775ADB1288E}" = dir=in | name=ebay |
- "{20F42422-E751-4F73-B421-89DE2938B701}" = dir=out | name=netflix |
- "{2218306C-C6D5-46E7-BC17-0A4AA950572A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{224FCCB3-9865-4740-A327-47B4173B37FC}" = dir=out | name=skype |
- "{23FEFBFB-4540-4B4A-B31B-D583FC85A24D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
- "{299E7CE1-2FE2-4116-9872-3D6687020867}" = dir=out | name=microsoft solitaire collection |
- "{2BEB510C-163A-4332-9A79-0A59B2E6BCAB}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
- "{369613BB-F69C-49A6-8509-2C3677E0746E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
- "{36E1E272-5ED4-43AA-81B4-719FD567D2D8}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
- "{3925DB25-863F-49C3-8FD0-A82F67EFD109}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
- "{39373447-E7E5-40ED-8BE7-38439FD1DC27}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
- "{3EED6A68-3F99-40FA-849A-4BC6BB62A019}" = dir=out | name=iheartradio |
- "{411BF83B-B4AA-4733-A7FD-FF4B973A8C1D}" = dir=out | name=getting started with windows 8 |
- "{416541A0-09E9-478A-9169-2054BE405A88}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
- "{45A2EBAC-569C-416E-85F8-8993A9D62405}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
- "{45FB608C-127C-48DF-A991-977BE16DB3DD}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
- "{4B3E913E-FF6E-4E6A-B1EB-849A6B3427D4}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
- "{4EF4E727-CD0E-4FAD-9BD6-262769BDE74B}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
- "{50B75295-5D90-4E18-B196-B2B88AE7F991}" = dir=in | app=c:\users\administrator\appdata\local\microsoft\skydrive\skydrive.exe |
- "{578AB510-187B-45EC-A74E-D9DCBA63BAE5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
- "{5AB563B6-A8F7-41D4-AA6B-893428D19211}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{5E71392E-D943-43B5-A60D-190C211E5D79}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{6B1D06B5-1D7E-49DC-B640-A00F4DED49ED}" = dir=out | name=hp connected photo powered by snapfish |
- "{6B60B5EA-EF68-4F09-9140-67C293532200}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} |
- "{6FED0C2D-A616-4952-9936-022DFC295B10}" = dir=out | name=hp registration |
- "{70BB9239-F5D2-4BD9-839C-82462499BDD4}" = dir=in | name=skype |
- "{7213DE7C-D475-4FE8-AB28-70F226D651F4}" = dir=in | name=kindle |
- "{72B77F8D-4EEC-4BF7-8249-CF65C07E2ECA}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\zoo tycoon 2\zt.exe |
- "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
- "{8482AF8A-6E44-4C0B-A699-D4CAD8AA0E7F}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} |
- "{85464CDA-C959-4664-B04D-63BF8FA252BD}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
- "{8E582B91-BDEF-4704-8476-E0E41DB64F2F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
- "{90B38B88-F26F-4B3B-BEDD-4364FAB5F2B8}" = dir=out | name=kindle |
- "{96872E27-09CF-4BB7-97BD-6811D599D95D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\zoo tycoon 2\zt.exe |
- "{9724095E-0943-42A4-A42D-4ACF2089B600}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
- "{98BD462E-5827-4B30-9624-2AF1DD4EB7E5}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector10\pdr10.exe |
- "{99F78DC6-75AD-4B25-99BE-0346D25A8910}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
- "{9AC9DC11-1968-4EA5-92BD-5EAB096F8E21}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
- "{A22841AB-D55D-4B7B-925D-AA9B98B82D96}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
- "{A7831447-A0D8-401D-B75D-4CE9D2B5F0AA}" = protocol=17 | dir=in | name=hpconnectedremoteservice.exe |
- "{A8F4EDAC-6B11-4AF6-9F4A-26C4BC72BF14}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
- "{AA76D83B-1E14-415B-8F6F-F9C1A07566BB}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
- "{B05F3804-98F1-4867-81D3-3D20074B1646}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
- "{B1E0E402-CB93-4C3F-B48D-EBBE9E61D8AB}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
- "{BBFB908F-7EC7-4610-BD02-6416FCC6EBA5}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
- "{BE4AF996-AC40-4E4D-BBC5-7DCE09D5FF9E}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
- "{CC286C82-0A94-43FE-B574-9631E6D41874}" = dir=out | name=ebay |
- "{D1F2A3B1-D617-4204-9EE0-A589E57EBB6C}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
- "{DB3910F3-95B1-4E19-A3E3-E86F750A4E01}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
- "{DC1AC5A9-61D2-4800-941A-2D6B79B2DBF7}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd10.exe |
- "{DF18E79D-24F3-440E-86E3-8F108853FC0A}" = dir=out | name=microsoft mahjong |
- "{DF26851C-C369-4B3C-8067-4619F0D89239}" = dir=out | name=norton studio |
- "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
- "{E9983D48-7C62-49E7-A2A6-A9FC33468082}" = protocol=6 | dir=out | app=system |
- "{EA494F3C-A9F7-4F0B-A023-C060F80218B2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{ED9D14FC-DEEB-4735-874C-BC820A615BD8}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
- "{EDC510FB-0CC6-405E-ACC6-8E76DC99C44F}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
- "{F28C19BC-B6F6-4A9A-B18B-F9FFEABA7578}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{F68D59D1-45CF-4969-A613-635579F0E558}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{F84F2485-20E5-48DA-8677-777DAD98DE4F}" = dir=out | name=windows_ie_ac_001 |
- "{FE714A11-3BF5-4681-B942-A3547B299A92}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
- "{FFDC671C-9606-48BA-9F81-FB36537883F1}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
- 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{069BB058-4ED8-D4FC-CA8D-9B44344E8338}" = AMD Catalyst Install Manager
- "{0FA995CC-C849-4755-B14B-5404CC75DC24}" = Energy Star
- "{157737CB-2EA1-280E-94B8-89F58C4617DF}" = ccc-utility64
- "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
- "{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support
- "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
- "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
- "{6E14E6D6-3175-4E1A-B934-CAB5A86367CD}" = HP Postscript Converter
- "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
- "{76FF0F03-B707-4332-B5D1-A56C8303514E}" = iTunes
- "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
- "{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}" = HP Registration Service
- "{F842F8B0-6942-4930-821F-543E976B2C66}" = MSVCRT110_amd64
- "WinRAR archiver" = WinRAR 5.00 beta 6 (64-bit)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
- "{06B00D20-08D0-A544-DFD8-09C651A5F4A2}" = CCC Help Italian
- "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
- "{1057511B-F8FE-4230-9ED3-AB949A57EE4A}" = Windows Live PIMT Platform
- "{15292416-A464-4FBA-BB96-7298EAACFC07}" = Zoo Tycoon 2 - Extinct Animals
- "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
- "{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10
- "{21290172-C335-62CA-3B79-52B2E1B54754}" = Catalyst Control Center Localization All
- "{29315CEC-E6CE-4394-84DC-6F862E8D9A52}" = Windows Live UX Platform
- "{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8
- "{2D416A80-0BB1-4D8B-B770-7BE8F53D5937}" = Windows Live UX Platform Language Pack
- "{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
- "{39A62445-EC6B-9917-2F31-6BECF1862BB9}" = Catalyst Control Center InstallProxy
- "{3BBFD444-5FAB-49F6-98B1-A1954E831399}" = The Sims™ 3 Showtime
- "{3DE92282-CB49-434F-81BF-94E5B380E889}" = The Sims™ 3 Seasons
- "{3F79BF03-68B2-B473-8DF7-0FF9AAB5722D}" = CCC Help French
- "{40F55150-F43D-4C9F-9A00-1A0A6F1EB7F0}" = Movie Maker
- "{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
- "{45057FCE-5784-48BE-8176-D9D00AF56C3C}" = The Sims™ 3 Late Night
- "{46316411-80D8-4F68-8118-696E05FCE199}" = Windows Live Essentials
- "{4862344A-A39C-4897-ACD4-A1BED5163C5A}" = CyberLink PhotoDirector
- "{4F9A382F-4478-4036-905C-F77DF2EA0370}" = Windows Live SOXE
- "{4FA8F084-C42F-45E1-B7E5-E0C8A1083DC5}" = Windows Live SOXE Definitions
- "{5CC4C963-F772-4766-BFF2-DE551E205EE9}" = Photo Common
- "{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
- "{60A1253C-2D51-4166-95C2-52E9CF4F8D64}" = Photo Gallery
- "{64DF7404-9D46-44AF-AFA1-A2F8D5648C2D}" = Windows Live Photo Common
- "{6D14BD15-EC91-E18D-F077-E4288EEBDF3D}" = CCC Help English
- "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.0.0
- "{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App
- "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
- "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
- "{7474548C-E456-4818-8ED0-4A1F00EF77A1}" = Catalyst Control Center - Branding
- "{76EE8FE7-1957-4C51-9074-4930A8CFB1AF}" = Windows Live Installer
- "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
- "{7BABFDF8-8514-B594-D25E-3EAF4A7A4061}" = CCC Help Japanese
- "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
- "{8991CF8F-32B7-9249-DB13-0C7B02356573}" = CCC Help Spanish
- "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
- "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
- "{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}" = Ralink RT5390R 802.11bgn Wi-Fi Adapter
- "{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = The Sims™ 3 Ambitions
- "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office
- "{95594A54-DE53-3DB1-A81D-870F6EB30F43}" = CCC Help German
- "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
- "{9B2E55F8-5BA8-4A45-9682-ACB6F2CC0DA5}" = Photo Gallery
- "{9C35EDE5-4B0F-45E7-A438-314BA889948E}" = HP MyRoom
- "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
- "{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}" = CyberLink PowerDirector 10
- "{B2B7B1C8-7C8B-476C-BE2C-049731C55992}" = HP Support Information
- "{B34C9F49-9477-DE82-267E-FA8514BC67CF}" = CCC Help Chinese Standard
- "{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}" = The Sims™ 3 Supernatural
- "{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy
- "{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = The Sims™ 3 World Adventures
- "{BA73469B-D8C7-4FE3-B33C-1340D09F0709}" = Windows Live Communications Platform
- "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
- "{C12631C6-804D-4B32-B0DD-8A496462F106}" = The Sims™ 3 Pets
- "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
- "{C53B1BF2-2F3E-72A0-8B3D-6820E67876F8}" = Catalyst Control Center Graphics Previews Common
- "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
- "{D71BC54E-A4E6-4E06-866C-FD6EE16EA187}" = Movie Maker
- "{D8A0063B-B28E-257B-71EE-5A42E252BDA2}" = AMD VISION Engine Control Center
- "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD
- "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
- "{E1868CAE-E3B9-4099-8C18-AA8944D336FD}" = The Sims™ 3 70s, 80s, & 90s Stuff
- "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
- "{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}" = The Sims™ 3 Generations
- "{EB39F5D0-C53F-1AC2-EEC1-F1A75BA3B1C7}" = CCC Help Portuguese
- "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
- "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
- "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
- "{F243A34B-AB7F-4065-B770-B85B767C247C}" = HP Connected Remote
- "{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}" = The Sims™ 3 University Life
- "{FF27F674-821E-4BA2-985B-DDF539C2CD03}" = HP Support Assistant
- "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
- "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
- "InstallShield_{15292416-A464-4FBA-BB96-7298EAACFC07}" = Zoo Tycoon 2 - Extinct Animals
- "InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10
- "InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8
- "InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}" = CyberLink PhotoDirector
- "InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}" = CyberLink PowerDirector 10
- "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
- "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD
- "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
- "Mozilla Firefox 22.0 (x86 en-US)" = Mozilla Firefox 22.0 (x86 en-US)
- "MozillaMaintenanceService" = Mozilla Maintenance Service
- "NIS" = Norton Internet Security
- "Origin" = Origin
- "StartHPConnectedMusic" = HP Connected Music (Meridian - installer)
- "The Weather Channel App" = The Weather Channel App
- "WildTangent hp Master Uninstall" = HP Games
- "WildTangent wildgames Master Uninstall" = WildTangent Games
- "WinLiveSuite" = Windows Live Essentials
- "WTA-07aa40eb-2513-4455-b78d-0894271b5d8a" = John Deere Drive Green
- "WTA-12cd3959-ff00-4306-aba6-4e7ff4bbcb09" = Mahjongg Dimensions Deluxe: Tiles in Time
- "WTA-1fec8502-e7ec-4580-94b9-4a09b2914efe" = Luxor Evolved
- "WTA-209c0a8e-8bd2-427f-8d13-94b2c6c5b87a" = Build-a-lot 4 - Power Source
- "WTA-219a2d03-efa7-4d5e-bb1b-1c603eaac804" = Jewel Match 3
- "WTA-301857a6-819a-4ed3-a478-e06b375cf70b" = Governor of Poker 2 Premium Edition
- "WTA-386fe9ad-6e79-473a-979d-4f126e71d8ad" = Tales of Lagoona
- "WTA-3a928bea-212d-47df-9090-d85046897929" = Polar Golfer
- "WTA-3dd489b2-0191-4e2b-a7b1-57b1cd6ed509" = Vacation Quest™ - Australia
- "WTA-4b5bdeab-a2d2-4c86-9818-bb5f14df5910" = 4 Elements II
- "WTA-52de2bce-f177-4949-aa82-da9c77b84b85" = Chuzzle Deluxe
- "WTA-53ff0d7d-cb83-4646-9ecc-cb13795f403a" = Hoyle Card Games
- "WTA-5438d2c6-9618-441a-95e5-613c911dcfc3" = Bejeweled 3
- "WTA-5b3bf64e-29af-468d-9f3b-a410c9f5623d" = FlatOut 2
- "WTA-6cef4024-081f-4a13-a87f-8ef1296a18a3" = Farm Frenzy
- "WTA-766cbf81-38e9-4ea4-92dd-d5b3c7dadfee" = Mystery P.I. - Curious Case of Counterfeit Cove
- "WTA-8c0dbb5f-8f51-4e59-8bbe-ee1bbce0b85b" = Peggle Nights
- "WTA-9089b4d3-957b-4190-b252-fc906377ce69" = Cradle Of Egypt Collector's Edition
- "WTA-a9a61505-b5eb-4f53-a3cd-482a11975303" = Roads of Rome 3
- "WTA-af38b792-26be-4e27-872c-d0a0b53e1ba5" = Mortimer Beckett and the Crimson Thief Premium Edition
- "WTA-bbb3b83d-98d9-4f2f-9dc1-d7a6387d449b" = Final Drive Fury
- "WTA-be2450c9-5c8c-40d5-9763-0e3cb76954eb" = Zuma's Revenge
- "WTA-cad2de42-34b3-4cd0-b687-ba3324f1efe7" = Polar Bowler
- "WTA-d3c91b1c-f80e-4e50-a55f-40a6d4aae29f" = Cradle of Rome 2
- "WTA-e49e82fa-3b27-430c-b2ab-ad54dcac56df" = FATE: The Cursed King
- "WTA-f86dd02c-3194-49f1-bacf-832f4365568a" = Penguins!
- [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "UnityWebPlayer" = Unity Web Player
- [color=#E56717]========== Last 20 Event Log Errors ==========[/color]
- [ Application Events ]
- Error - 7/1/2013 9:31:52 PM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledSPRetry 2028
- Error - 7/1/2013 9:31:54 PM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: Continuously busy for more than a second
- Error - 7/1/2013 9:31:54 PM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledEvent 3557
- Error - 7/1/2013 9:31:54 PM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledSPRetry 3557
- Error - 7/2/2013 5:08:43 AM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: Continuously busy for more than a second
- Error - 7/2/2013 5:08:43 AM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledEvent 1592
- Error - 7/2/2013 5:08:43 AM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledSPRetry 1592
- Error - 7/2/2013 5:08:45 AM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: Continuously busy for more than a second
- Error - 7/2/2013 5:08:45 AM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledEvent 3666
- Error - 7/2/2013 5:08:45 AM | Computer Name = Geddicorn | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledSPRetry 3666
- [ System Events ]
- Error - 6/11/2013 9:06:06 PM | Computer Name = Geddicorn | Source = Schannel | ID = 36870
- Description = A fatal error occurred when attempting to access the SSL server credential
- private key. The error code returned from the cryptographic module is 0x8009030d.
- The internal error state is 10001.
- Error - 6/15/2013 4:36:52 PM | Computer Name = Geddicorn | Source = Schannel | ID = 36870
- Description = A fatal error occurred when attempting to access the SSL server credential
- private key. The error code returned from the cryptographic module is 0x8009030d.
- The internal error state is 10001.
- Error - 6/15/2013 4:54:01 PM | Computer Name = Geddicorn | Source = Service Control Manager | ID = 7009
- Description = A timeout was reached (30000 milliseconds) while waiting for the HP
- Registration Service service to connect.
- Error - 6/15/2013 4:54:01 PM | Computer Name = Geddicorn | Source = Service Control Manager | ID = 7000
- Description = The HP Registration Service service failed to start due to the following
- error: %%1053
- Error - 6/15/2013 4:56:11 PM | Computer Name = Geddicorn | Source = Schannel | ID = 36870
- Description = A fatal error occurred when attempting to access the SSL server credential
- private key. The error code returned from the cryptographic module is 0x8009030d.
- The internal error state is 10001.
- Error - 6/15/2013 4:56:20 PM | Computer Name = Geddicorn | Source = Schannel | ID = 36870
- Description = A fatal error occurred when attempting to access the SSL server credential
- private key. The error code returned from the cryptographic module is 0x8009030d.
- The internal error state is 10001.
- Error - 6/23/2013 6:49:57 PM | Computer Name = Geddicorn | Source = EventLog | ID = 6008
- Description = The previous system shutdown at 5:33:59 PM on ?6/?23/?2013 was unexpected.
- Error - 6/23/2013 6:49:59 PM | Computer Name = Geddicorn | Source = Service Control Manager | ID = 7009
- Description = A timeout was reached (30000 milliseconds) while waiting for the HP
- Registration Service service to connect.
- Error - 6/23/2013 6:49:59 PM | Computer Name = Geddicorn | Source = Service Control Manager | ID = 7000
- Description = The HP Registration Service service failed to start due to the following
- error: %%1053
- Error - 6/23/2013 6:52:15 PM | Computer Name = Geddicorn | Source = Schannel | ID = 36870
- Description = A fatal error occurred when attempting to access the SSL server credential
- private key. The error code returned from the cryptographic module is 0x8009030d.
- The internal error state is 10001.
Add Comment
Please, Sign In to add comment