dslreports logo
 
    All Forums Hot Topics Gallery
spc
Search similar:


uniqs
2111
PinkyThePig
Premium Member
join:2011-05-02
Tempe, AZ

PinkyThePig

Premium Member

[Virus] firefox issues

So I'll list out symptoms first then all of the logs.

Basically all of this started 3 days ago with firefox opening up a new window with ~6-8 tabs and then about 30 seconds later it would crash. Tried everything I could think of including disabling everything in firefox and starting the browser in safe mode. If you want a list of the sites opened in 2 instances of this crash they can be found at http://www.dslreports.com/forum/r26658554-FireFox-Bizarre-firefox-crashes as well as the crash log for firefox. Leaving them out of this thread in the interests of keeping it more to the point. These weird issues happen in internet explorer as well but it is not fatal to the browser and strangely enough the issues don't transfer over to chrome (Which is what I am currently using to type this).

Firefox addons installed (If it matters at all):
Adblock
Noscript
Quickdial
Greasemonkey w/ reddit enhancement suite

Additional info relevant to the FAQ:
When I tried to disable windows defender as instructed in the FAQ it would do a VERY quick (probably 1-2 frame) popup that as much as I can tell says it is disabled. Additionally when doing the online virus scan it was saying that windows defender was enabled and could interfere but I wasn't sure if there was anything else I could try for disabling it.

The logs requested in the FAQ are as follows:
Extras file would not fit and it is attached.
=====================================

Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Database version: 8367

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19154

12/14/2011 7:03:07 AM
mbam-log-2011-12-14 (07-03-07).txt

Scan type: Full scan (C:\|D:\|E:\|F:\|H:\|)
Objects scanned: 609684
Time elapsed: 3 hour(s), 16 minute(s), 23 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\a7ksbol43g (Malware.Trace) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

=================

Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Database version: 8367

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19154

12/14/2011 7:03:07 AM
mbam-log-2011-12-14 (07-03-07).txt

Scan type: Full scan (C:\|D:\|E:\|F:\|H:\|)
Objects scanned: 609684
Time elapsed: 3 hour(s), 16 minute(s), 23 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\a7ksbol43g (Malware.Trace) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

=================

OTL logfile created on: 12/14/2011 9:32:52 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Blake2\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19170)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 1.66 Gb Available Physical Memory | 55.33% Memory free
6.19 Gb Paging File | 4.65 Gb Available in Paging File | 75.05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111.69 Gb Total Space | 38.11 Gb Free Space | 34.12% Space Free | Partition Type: NTFS
Drive D: | 108.19 Gb Total Space | 8.59 Gb Free Space | 7.94% Space Free | Partition Type: NTFS
Drive H: | 1397.26 Gb Total Space | 906.68 Gb Free Space | 64.89% Space Free | Partition Type: NTFS

Computer Name: BLAKE-PC | User Name: Blake2 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2011/12/14 21:32:21 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Blake2\Downloads\OTL.exe
PRC - [2011/11/14 22:39:56 | 001,036,344 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2011/08/21 12:50:13 | 001,242,448 | ---- | M] (Valve Corporation) -- D:\Steam\Steam.exe
PRC - [2011/08/03 04:50:00 | 002,255,464 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011/08/03 04:50:00 | 000,812,648 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
PRC - [2011/08/03 04:50:00 | 000,373,864 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
PRC - [2011/07/22 14:35:01 | 000,208,896 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Users\Blake2\AppData\Local\Temp\RtkBtMnt.exe
PRC - [2011/03/22 14:32:05 | 000,273,544 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\real\realplayer\Update\realsched.exe
PRC - [2011/02/25 10:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE
PRC - [2011/01/12 07:35:52 | 000,069,864 | ---- | M] (SANDBOXIE L.T.D) -- H:\Program Files\Sandboxie\SbieSvc.exe
PRC - [2009/04/10 23:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/09/10 13:01:28 | 000,611,664 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
PRC - [2007/12/14 01:56:00 | 004,702,208 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2007/12/14 01:55:00 | 000,102,400 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPStart.exe
PRC - [2007/10/30 19:45:48 | 000,167,936 | ---- | M] (acer) -- C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
PRC - [2007/09/28 20:18:24 | 000,233,472 | ---- | M] (Acer Inc.) -- C:\Program Files\Acer\Acer VCM\RS_Service.exe
PRC - [2006/11/24 13:57:54 | 000,107,008 | ---- | M] () -- C:\Acer\Mobility Center\MobilityService.exe

[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2011/12/08 21:01:51 | 014,410,024 | ---- | M] () -- D:\Steam\bin\libcef.dll
MOD - [2011/12/08 21:01:44 | 000,194,344 | ---- | M] () -- D:\Steam\bin\chromehtml.dll
MOD - [2011/12/08 21:01:42 | 000,091,432 | ---- | M] () -- D:\Steam\bin\avutil-50.dll
MOD - [2011/12/08 21:01:40 | 000,155,432 | ---- | M] () -- D:\Steam\bin\avformat-52.dll
MOD - [2011/12/08 21:01:38 | 000,914,216 | ---- | M] () -- D:\Steam\bin\avcodec-52.dll
MOD - [2011/11/14 22:39:54 | 000,420,920 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\15.0.874.121\ppgooglenaclpluginchrome.dll
MOD - [2011/11/14 22:39:53 | 003,702,840 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\15.0.874.121\pdf.dll
MOD - [2011/11/14 22:38:16 | 000,122,952 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\15.0.874.121\avutil-51.dll
MOD - [2011/11/14 22:38:15 | 000,222,280 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\15.0.874.121\avformat-53.dll
MOD - [2011/11/14 22:38:14 | 001,746,504 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\15.0.874.121\avcodec-53.dll
MOD - [2011/05/06 20:27:42 | 006,076,416 | ---- | M] () -- C:\Program Files\SplitMediaLabs\XSplit\avcodec-52.dll
MOD - [2011/05/06 20:27:42 | 000,869,376 | ---- | M] () -- C:\Program Files\SplitMediaLabs\XSplit\avformat-52.dll
MOD - [2011/05/06 20:27:42 | 000,231,936 | ---- | M] () -- C:\Program Files\SplitMediaLabs\XSplit\swscale-0.dll
MOD - [2011/05/06 20:27:42 | 000,114,688 | ---- | M] () -- C:\Program Files\SplitMediaLabs\XSplit\avutil-50.dll
MOD - [2011/05/06 20:27:42 | 000,050,688 | ---- | M] () -- C:\Program Files\SplitMediaLabs\XSplit\avcore-0.dll

[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2011/08/03 04:50:00 | 002,255,464 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2011/06/03 22:53:24 | 000,403,240 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011/02/28 18:44:14 | 000,183,560 | ---- | M] (Microsoft Corporation.) [Disabled | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011/02/25 10:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011/01/12 07:35:52 | 000,069,864 | ---- | M] (SANDBOXIE L.T.D) [Disabled | Running] -- H:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV - [2010/01/19 12:59:00 | 003,595,660 | ---- | M] (INCA Internet Co., Ltd.) [Disabled | Stopped] -- C:\Windows\System32\GameMon.des -- (npggsvc)
SRV - [2009/12/25 12:47:10 | 000,079,360 | ---- | M] (Creative Labs) [Disabled | Stopped] -- C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe -- (Creative ALchemy AL6 Licensing Service)
SRV - [2009/12/25 12:46:38 | 000,079,360 | ---- | M] (Creative Labs) [Disabled | Stopped] -- C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
SRV - [2009/07/20 12:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2008/09/10 13:01:28 | 000,611,664 | ---- | M] (Lavasoft) [Disabled | Running] -- C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe -- (aawservice)
SRV - [2008/04/30 10:35:20 | 000,425,984 | ---- | M] (Creative Technology Ltd) [Disabled | Stopped] -- C:\Program Files\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService)
SRV - [2007/12/10 11:23:02 | 000,024,576 | ---- | M] () [Disabled | Stopped] -- C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe -- (eSettingsService)
SRV - [2007/10/30 19:45:48 | 000,167,936 | ---- | M] (acer) [Auto | Running] -- C:\Acer\Empowering Technology\ePower\ePowerSvc.exe -- (WMIService)
SRV - [2007/10/01 17:42:36 | 000,024,576 | ---- | M] (Acer Inc.) [Disabled | Stopped] -- C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe -- (eLockService)
SRV - [2007/09/28 20:18:24 | 000,233,472 | ---- | M] (Acer Inc.) [Auto | Running] -- C:\Program Files\Acer\Acer VCM\RS_Service.exe -- (RS_Service)
SRV - [2007/09/10 16:28:18 | 000,057,344 | ---- | M] (Acer Inc.) [Disabled | Stopped] -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -- (eRecoveryService)
SRV - [2007/08/28 15:21:10 | 000,131,072 | ---- | M] (Acer Inc.) [Disabled | Stopped] -- C:\Acer\Empowering Technology\eNet\eNet Service.exe -- (eNet Service)
SRV - [2007/04/25 17:34:30 | 000,457,512 | ---- | M] (HiTRSUT) [Disabled | Stopped] -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -- (eDataSecurity Service)
SRV - [2007/01/26 15:24:42 | 000,050,688 | ---- | M] () [Disabled | Stopped] -- C:\Acer\ALaunch\ALaunchSvc.exe -- (ALaunchService)
SRV - [2006/11/24 13:57:54 | 000,107,008 | ---- | M] () [Auto | Running] -- C:\Acer\Mobility Center\MobilityService.exe -- (MobilityService)
SRV - [2006/11/20 21:45:00 | 002,541,248 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_2.EXE -- (LiveUpdate)
SRV - [2006/11/20 21:45:00 | 000,194,240 | ---- | M] (Symantec Corporation) [Disabled | Stopped] -- C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -- (Automatic LiveUpdate Scheduler)
SRV - [2005/08/02 14:18:49 | 000,086,016 | ---- | M] (CACE Technologies) [Disabled | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)

[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2011/08/03 04:50:00 | 010,304,104 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2011/01/12 07:35:48 | 000,125,672 | ---- | M] (SANDBOXIE L.T.D) [Kernel | On_Demand | Running] -- H:\Program Files\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV - [2009/06/17 09:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2009/06/17 09:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2008/12/01 18:29:04 | 000,802,176 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ksaud.sys -- (ksaud)
DRV - [2008/11/11 13:42:00 | 000,024,832 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbmodem.sys -- (USBModem)
DRV - [2008/11/11 13:41:00 | 000,019,968 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbdiag.sys -- (UsbDiag)
DRV - [2008/11/11 13:41:00 | 000,013,056 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbbus.sys -- (usbbus)
DRV - [2008/10/20 20:58:38 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2007/12/14 01:56:00 | 000,043,008 | ---- | M] (Winbond Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\winbondcir.sys -- (winbondcir)
DRV - [2007/12/14 01:56:00 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2007/12/14 01:53:20 | 002,226,688 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw4v32.sys -- (NETw4v32) Intel(R)
DRV - [2007/12/05 11:48:56 | 000,041,456 | ---- | M] (Cyberlink Corp.) [Kernel | Auto | Running] -- C:\Program Files\Acer Arcade Deluxe\Play Movie\000.fcl -- ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796})
DRV - [2007/08/08 21:42:08 | 000,045,568 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007/07/30 12:54:02 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007/07/30 11:42:58 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2007/07/09 19:16:00 | 000,042,240 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVerA310Cap.sys -- (BDASwCap)
DRV - [2007/07/09 19:16:00 | 000,026,368 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVerA310USB.sys -- (A310)
DRV - [2007/07/03 11:05:20 | 000,015,392 | ---- | M] (Acer, Inc.) [Kernel | Auto | Running] -- C:\Acer\Empowering Technology\eRecovery\int15.sys -- (int15)
DRV - [2007/06/12 11:38:26 | 001,729,152 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC)
DRV - [2006/11/20 21:42:22 | 000,202,872 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\20061025.029\IDSvix86.sys -- (IDSvix86)
DRV - [2006/11/02 00:30:54 | 001,781,760 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32) Intel(R)
DRV - [2005/08/02 14:10:13 | 000,032,512 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\npf.sys -- (NPF)
DRV - [2005/04/12 19:21:32 | 000,022,240 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WmFilter.sys -- (WmFilter)
DRV - [2005/04/12 19:21:28 | 000,010,144 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\WmBEnum.sys -- (WmBEnum)
DRV - [2005/04/12 19:21:28 | 000,005,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WmVirHid.sys -- (WmVirHid)
DRV - [2005/04/12 19:21:26 | 000,045,504 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\WmXlCore.sys -- (WmXlCore)
DRV - [1996/04/03 12:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\system32\giveio.sys -- (giveio)

[color=#E56717]========== Standard Registry (SafeList) ==========[/color]

[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://global.acer.com [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {EB132DB0-A4CA-11DF-9732-0E29E0D72085}:1.3
FF - prefs.js..extensions.enabledItems: {e641e573-5f45-49f4-a2b6-986c6a89d4ad}:1.05
FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:2.1.2.6
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.9
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.8
FF - prefs.js..network.proxy.type: 0

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@bittorrent.com/BitTorrentDNA: C:\Program Files\DNA\plugins\npbtdna.dll (BitTorrent, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll (DivX, Inc)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.633: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.633: c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.633: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.633: c:\program files\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{CAA5402D-F249-4BA8-8513-4BEE8FE32E04}: C:\Users\Blake\AppData\Local\{CAA5402D-F249-4BA8-8513-4BEE8FE32E04}\
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/12/14 18:37:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/12/14 18:30:34 | 000,000,000 | ---D | M]

[2011/07/24 05:38:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Blake2\AppData\Roaming\Mozilla\Extensions
[2011/12/11 08:27:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Blake2\AppData\Roaming\Mozilla\Firefox\Profiles\w6yr0b62.default\extensions
[2011/11/25 22:08:01 | 000,000,000 | ---D | M] (Speed Dial) -- C:\Users\Blake2\AppData\Roaming\Mozilla\Firefox\Profiles\w6yr0b62.default\extensions\{64161300-e22b-11db-8314-0800200c9a66}
[2011/11/25 22:08:01 | 000,000,000 | ---D | M] (gTranslate) -- C:\Users\Blake2\AppData\Roaming\Mozilla\Firefox\Profiles\w6yr0b62.default\extensions\{aff87fa2-a58e-4edd-b852-0a20203c1e17}
[2011/11/25 22:08:01 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Blake2\AppData\Roaming\Mozilla\Firefox\Profiles\w6yr0b62.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2011/11/14 21:01:11 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\Blake2\AppData\Roaming\Mozilla\Firefox\Profiles\w6yr0b62.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011/12/14 18:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
() (No name found) -- C:\USERS\BLAKE2\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\W6YR0B62.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI
[2011/11/20 21:04:51 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/02/02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2009/07/03 00:34:44 | 000,083,376 | ---- | M] (NHN USA Inc.) -- C:\Program Files\mozilla firefox\plugins\npijjiautoinstallpluginff.dll
[2008/12/10 18:21:54 | 000,132,528 | ---- | M] (NHN USA Inc.) -- C:\Program Files\mozilla firefox\plugins\npijjiCHPlugin.dll
[2008/09/10 00:39:42 | 000,075,184 | ---- | M] (NHN USA Inc. ) -- C:\Program Files\mozilla firefox\plugins\npijjiFFPlugin1.dll
[2008/10/11 08:14:13 | 000,221,184 | ---- | M] (CNN) -- C:\Program Files\mozilla firefox\plugins\NPTURNMED.dll
[2011/11/20 18:04:05 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/11/20 18:04:05 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml

[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\15.0.874.121\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files\DivX\DivX Web Player\npdivx32.dll
CHR - plugin: RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = c:\program files\real\realplayer\Netscape6\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = c:\program files\real\realplayer\Netscape6\nprpjplug.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\15.0.874.121\pdf.dll
CHR - plugin: Skype Toolbars (Enabled) = C:\Users\Blake2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\npSkypeChromePlugin.dll
CHR - plugin: DNA Plug-in (Enabled) = C:\Program Files\DNA\plugins\npbtdna.dll
CHR - plugin: DivX Player Netscape Plugin (Enabled) = C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = c:\program files\real\realplayer\Netscape6\nprjplug.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Skype Click to Call = C:\Users\Blake2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\

Hosts file not found
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (ShowBarObj Class) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\System32\ActiveToolBand.dll (HiTRUST)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\System32\eDStoolbar.dll (HiTRUST)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Windows\System32\eDStoolbar.dll (HiTRUST)
O4 - HKLM..\Run: [eRecoveryService] File not found
O4 - HKLM..\Run: [PLFSet] C:\Windows\PLFSet.dll ( )
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideSCAHealth = 1
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.12 68.105.29.12 68.105.28.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3324F670-27F2-4B85-B26A-EFBD57AF581D}: DhcpNameServer = 68.105.28.12 68.105.29.12 68.105.28.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3324F670-27F2-4B85-B26A-EFBD57AF581D}: NameServer = 8.8.4.4,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B09B9B29-F60C-4763-A121-2603D7066166}: DhcpNameServer = 68.105.28.12 68.105.29.12 68.105.28.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B09B9B29-F60C-4763-A121-2603D7066166}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Blake2\AppData\Roaming\Mozilla\Firefox\Desktop Background.bmp
O24 - Desktop BackupWallPaper: C:\Users\Blake2\AppData\Roaming\Mozilla\Firefox\Desktop Background.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 14:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2011/06/26 19:46:33 | 000,620,972 | ---- | M] () - C:\Autoruns.zip -- [ NTFS ]
O32 - AutoRun File - [2010/03/15 02:29:58 | 000,000,000 | RH-D | M] - H:\autorun -- [ NTFS ]
O32 - AutoRun File - [2002/10/16 05:56:50 | 000,000,036 | RH-- | M] () - H:\autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKCU\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2011/12/14 17:10:48 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Local\ElevatedDiagnostics
[2011/12/14 08:03:59 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll
[2011/12/14 08:03:47 | 002,043,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2011/12/14 08:03:37 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll
[2011/12/14 08:03:35 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2011/12/14 08:03:32 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2011/12/14 08:03:31 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2011/12/14 08:03:30 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2011/12/14 08:03:30 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2011/12/14 08:03:30 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2011/12/14 08:03:30 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2011/12/14 08:03:30 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2011/12/14 08:03:30 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2011/12/14 08:03:30 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2011/12/14 08:03:29 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2011/12/14 08:03:29 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2011/12/14 08:03:29 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2011/12/14 08:03:29 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2011/12/14 08:03:29 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2011/12/14 08:03:29 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2011/12/14 08:03:29 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2011/12/14 08:03:29 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2011/12/14 08:03:29 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2011/12/11 08:29:15 | 000,000,000 | ---D | C] -- C:\Users\Blake2\Desktop\terraria 1-1
[2011/11/30 21:26:27 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Roaming\vlc
[2011/11/27 21:05:52 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SABnzbd
[2011/11/25 21:59:47 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Roaming\Jasper's Journeys
[2011/11/23 23:17:28 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Roaming\Zen Puzzle Garden
[2011/11/23 23:09:37 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Roaming\Voxatron
[2011/11/18 18:21:04 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Local\MPlayer
[2011/11/18 18:19:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS3 Media Server
[2011/11/18 18:19:28 | 000,000,000 | ---D | C] -- C:\ProgramData\PMS
[2011/11/18 18:19:16 | 000,000,000 | ---D | C] -- C:\Program Files\PS3 Media Server
[2011/11/17 21:58:45 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Local\Apple Computer
[2011/11/17 21:58:44 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Roaming\Apple Computer
[2011/11/17 21:58:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011/11/17 21:58:11 | 000,107,368 | ---- | C] (GEAR Software Inc.) -- C:\Windows\System32\GEARAspi.dll
[2011/11/17 21:57:34 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/11/17 21:57:32 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/11/17 21:57:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2011/11/17 21:57:32 | 000,000,000 | ---D | C] -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/11/17 21:57:18 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Local\Apple
[2011/11/17 21:57:16 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2011/11/17 21:56:42 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2011/11/17 21:56:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2011/11/17 21:56:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2011/11/16 22:19:54 | 000,000,000 | ---D | C] -- C:\Users\Blake2\AppData\Roaming\Chocolate Castle
[2009/11/10 19:57:44 | 000,315,392 | ---- | C] ( ) -- C:\Windows\System32\sbcrreag.dll
[2008/02/29 20:35:01 | 000,016,384 | ---- | C] ( ) -- C:\Windows\System32\ClearEvent.exe
[2008/02/29 20:32:13 | 000,172,032 | ---- | C] ( ) -- C:\Windows\System32\rsnp2uvc.dll
[2008/02/29 20:32:13 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll
[2008/02/29 20:32:13 | 000,045,056 | ---- | C] ( ) -- C:\Windows\PLFSet.dll
[2007/12/18 01:59:44 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\Interop.Shell32.dll
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2011/12/14 21:13:00 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/12/14 21:08:59 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2098938759-154422126-1027485773-1000UA.job
[2011/12/14 21:07:58 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/12/14 21:07:58 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/12/14 18:37:00 | 000,000,874 | ---- | M] () -- C:\Users\Blake2\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/12/14 17:15:59 | 000,712,000 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/12/14 17:15:59 | 000,147,542 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/12/14 17:09:07 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/12/14 17:08:08 | 000,000,302 | -HS- | M] () -- C:\Windows\tasks\DPLT.job
[2011/12/14 17:07:50 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/12/14 17:07:48 | 000,323,544 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/12/14 10:08:59 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2098938759-154422126-1027485773-1000Core.job
[2011/12/04 21:59:49 | 000,040,448 | ---- | M] () -- C:\Users\Blake2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/30 21:23:24 | 000,253,628 | ---- | M] () -- C:\Users\Blake2\Documents\cc_20111130_212144.reg
[2011/11/27 21:05:52 | 000,000,626 | ---- | M] () -- C:\Users\Blake2\Desktop\SABnzbd.lnk
[2011/11/23 06:37:27 | 002,043,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2011/11/18 10:13:59 | 000,001,975 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011/12/14 18:37:00 | 000,000,874 | ---- | C] () -- C:\Users\Blake2\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/11/30 21:21:49 | 000,253,628 | ---- | C] () -- C:\Users\Blake2\Documents\cc_20111130_212144.reg
[2011/11/27 21:05:52 | 000,000,626 | ---- | C] () -- C:\Users\Blake2\Desktop\SABnzbd.lnk
[2011/11/17 21:57:16 | 000,001,830 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2011/10/27 18:08:50 | 000,138,864 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2011/09/10 09:06:53 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2011/09/10 09:06:14 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2011/09/01 09:14:39 | 000,000,680 | ---- | C] () -- C:\Users\Blake2\AppData\Local\d3d9caps.dat
[2011/08/03 13:47:30 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2011/07/24 20:08:21 | 000,040,448 | ---- | C] () -- C:\Users\Blake2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/24 05:27:28 | 000,013,100 | -HS- | C] () -- C:\Users\Blake2\AppData\Local\4275p655013i
[2011/07/24 05:27:28 | 000,013,100 | -HS- | C] () -- C:\ProgramData\4275p655013i
[2011/07/24 05:27:28 | 000,000,000 | ---- | C] () -- C:\ProgramData\oijg.exe
[2011/07/24 05:27:28 | 000,000,000 | ---- | C] () -- C:\ProgramData\lxol.exe
[2011/07/24 05:27:28 | 000,000,000 | ---- | C] () -- C:\Users\Blake2\AppData\Local\jydv.exe
[2011/07/24 05:27:28 | 000,000,000 | ---- | C] () -- C:\Users\Blake2\AppData\Local\jxvw.exe
[2011/07/24 05:27:28 | 000,000,000 | ---- | C] () -- C:\ProgramData\biqd.exe
[2011/07/22 14:02:11 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2011/07/09 18:59:27 | 000,000,032 | R--- | C] () -- C:\ProgramData\hash.dat
[2011/06/27 07:36:18 | 000,000,127 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2011/06/26 12:17:19 | 000,009,354 | -HS- | C] () -- C:\Users\Blake2\AppData\Local\2luqvn7dq5p27ancfum712a0t5e6f65b71t1v
[2011/06/26 12:17:19 | 000,004,614 | -HS- | C] () -- C:\ProgramData\1024537334
[2011/06/26 12:16:13 | 000,011,614 | -HS- | C] () -- C:\ProgramData\2luqvn7dq5p27ancfum712a0t5e6f65b71t1v
[2011/06/26 09:00:18 | 000,000,120 | ---- | C] () -- C:\Users\Blake2\AppData\Local\Xraxec.dat
[2011/06/26 09:00:18 | 000,000,000 | ---- | C] () -- C:\Users\Blake2\AppData\Local\Iwules.bin
[2011/06/26 08:59:32 | 000,000,058 | -HS- | C] () -- C:\Windows\System32\User.ini
[2011/06/26 08:58:52 | 000,106,496 | RHS- | C] () -- C:\Windows\System32\rasautoj.dll
[2011/06/25 16:56:18 | 000,069,632 | ---- | C] () -- C:\Windows\RAUNINST.EXE
[2011/04/09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2011/03/22 14:34:36 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2011/03/20 11:54:30 | 000,001,778 | ---- | C] () -- C:\Windows\Sandboxie.ini
[2010/11/23 21:56:24 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2010/10/08 04:02:05 | 000,004,786 | ---- | C] () -- C:\Windows\System32\wbers.dat
[2010/03/13 09:31:11 | 000,004,906 | ---- | C] () -- C:\Windows\System32\FilterData.dat
[2009/12/25 12:47:50 | 000,033,126 | ---- | C] () -- C:\Windows\System32\kschimp.ini
[2009/12/25 12:47:17 | 000,001,346 | ---- | C] () -- C:\ProgramData\CfgPeli.ini
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/05/06 16:59:42 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2009/01/27 13:20:34 | 000,000,031 | ---- | C] () -- C:\Windows\GunzLauncher.INI
[2008/12/28 12:08:42 | 000,007,392 | ---- | C] () -- C:\ProgramData\LUUnInstall.LiveUpdate
[2008/12/22 06:34:57 | 000,000,262 | ---- | C] () -- C:\Windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
[2008/11/29 00:12:18 | 000,230,752 | ---- | C] () -- C:\Windows\patchw32.dll
[2008/11/29 00:12:18 | 000,118,176 | ---- | C] () -- C:\Windows\patchw.dll
[2008/10/06 17:26:44 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008/02/29 20:35:01 | 000,016,384 | ---- | C] () -- C:\Windows\System32\LauncheRyAgentUser.exe
[2008/02/29 20:32:13 | 001,729,152 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
[2008/02/29 20:18:34 | 000,001,132 | ---- | C] () -- C:\Windows\RtDefLvl.ini
[2008/02/29 20:18:34 | 000,000,008 | ---- | C] () -- C:\Windows\System32\drivers\RtkHDAud.dat
[2008/02/29 20:13:48 | 000,086,016 | ---- | C] () -- C:\Windows\Hide.exe
[2008/02/29 20:13:41 | 000,000,030 | ---- | C] () -- C:\Windows\SetPanel.ini
[2008/02/29 20:13:27 | 000,000,092 | ---- | C] () -- C:\Windows\CLEANUP.INI
[2007/12/18 02:28:41 | 000,001,024 | RH-- | C] () -- C:\Windows\System32\NTIBUN4.dll
[2007/12/18 02:07:12 | 000,015,656 | ---- | C] () -- C:\Windows\System32\drivers\int15_64.sys
[2007/12/18 02:06:31 | 000,065,536 | ---- | C] () -- C:\Windows\System32\NATTraversal.dll
[2007/12/18 01:59:39 | 000,331,776 | ---- | C] () -- C:\Windows\System32\ScrollBarLib.dll
[2007/12/17 23:08:02 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2007/08/22 10:16:00 | 000,046,456 | R--- | C] () -- C:\Windows\System32\exitwx.exe
[2007/04/25 17:33:22 | 000,266,240 | ---- | C] () -- C:\Windows\System32\NotesExtmngr.dll
[2007/04/25 17:32:50 | 000,204,800 | ---- | C] () -- C:\Windows\System32\NotesActnMenu.dll
[2007/04/25 17:32:46 | 000,086,016 | ---- | C] () -- C:\Windows\System32\MSNSpook.dll
[2007/04/25 17:31:00 | 000,028,672 | ---- | C] () -- C:\Windows\System32\BatchCrypto.dll
[2007/04/25 17:30:52 | 000,073,728 | ---- | C] () -- C:\Windows\System32\APISlice.dll
[2007/04/25 17:30:44 | 000,063,488 | ---- | C] () -- C:\Windows\System32\ShowErrMsg.dll
[2006/12/25 16:44:48 | 000,022,016 | ---- | C] () -- C:\Windows\System32\MailFormat_U.dll
[2006/11/13 06:50:06 | 000,071,680 | ---- | C] () -- C:\Windows\System32\HTCA_SelfExtract.bin
[2006/11/02 05:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 05:47:37 | 000,323,544 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 05:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 03:33:01 | 000,712,000 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 03:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 03:33:01 | 000,147,542 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 03:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 03:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 01:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 01:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 00:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 00:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2005/10/14 02:56:50 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2005/10/14 02:56:50 | 000,921,600 | ---- | C] () -- C:\Windows\System32\VorbisEnc.dll
[2005/10/14 02:56:50 | 000,815,104 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2005/10/14 02:56:50 | 000,344,064 | ---- | C] () -- C:\Windows\System32\xvid.dll
[2005/10/14 02:56:50 | 000,237,568 | ---- | C] () -- C:\Windows\System32\OggDS.dll
[2005/10/14 02:56:50 | 000,188,416 | ---- | C] () -- C:\Windows\System32\vorbis.dll
[2005/10/14 02:56:50 | 000,155,136 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2005/10/14 02:56:50 | 000,045,056 | ---- | C] () -- C:\Windows\System32\ogg.dll
[2005/10/14 02:56:48 | 000,077,824 | ---- | C] () -- C:\Windows\System32\MMSwitch.dll
[2005/10/14 02:56:48 | 000,040,960 | ---- | C] () -- C:\Windows\System32\MMAVILNG.exe
[2005/08/02 14:24:01 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll
[2001/12/26 17:12:30 | 000,065,536 | ---- | C] () -- C:\Windows\System32\multiplex_vcd.dll
[2001/09/04 00:46:38 | 000,110,592 | ---- | C] () -- C:\Windows\System32\Hmpg12.dll
[2001/07/30 17:33:56 | 000,118,784 | ---- | C] () -- C:\Windows\System32\HMPV2_ENC.dll
[2001/07/23 23:04:36 | 000,118,784 | ---- | C] () -- C:\Windows\System32\HMPV2_ENC_MMX.dll
[1996/04/03 12:33:26 | 000,005,248 | ---- | C] () -- C:\Windows\System32\giveio.sys

[color=#E56717]========== LOP Check ==========[/color]

[2011/08/05 18:37:32 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\AtomZombieData
[2011/11/30 21:16:26 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Azureus
[2011/08/15 04:41:05 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Braid
[2011/08/03 13:47:32 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Broken Rules
[2011/11/16 22:19:54 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Chocolate Castle
[2011/08/04 17:29:06 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Crayon Physics Deluxe
[2011/09/11 11:31:52 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\DAEMON Tools
[2011/11/25 21:59:47 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Jasper's Journeys
[2011/08/04 17:30:40 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Lazy 8 Studios
[2011/07/23 00:53:44 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\LolClient
[2011/10/27 17:22:00 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\MinMaxGames
[2011/08/13 17:56:48 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\MoreTerra
[2011/08/24 22:52:00 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Mumble
[2011/08/19 10:39:00 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\OpenOffice.org
[2011/11/23 23:09:37 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Voxatron
[2011/11/23 23:17:28 | 000,000,000 | ---D | M] -- C:\Users\Blake2\AppData\Roaming\Zen Puzzle Garden
[2011/12/14 17:08:08 | 000,000,302 | -HS- | M] () -- C:\Windows\Tasks\DPLT.job
[2011/12/14 17:04:32 | 000,032,634 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:05EE1EEF
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:D06A4C76

====================

Got a connection reset error before I deleted Extras log from this post

======================

Results of screen317's Security Check version 0.99.28
Windows Vista Service Pack 2 x86 [color=red](UAC is disabled!)[/color]
Internet Explorer 8 [color=red]Out of date![/color]
``````````````````````````````
[u]Antivirus/Firewall Check:[/u]

[color=red]Windows Security Center service is not running! This report may not be accurate![/color]
Windows Firewall Enabled!
King's Bounty: Armored Princess
[size=1]WMI entry may not exist for antivirus; attempting automatic update.[/size]
```````````````````````````````
[u]Anti-malware/Other Utilities Check:[/u]

Ad-Aware
Malwarebytes' Anti-Malware
CCleaner
Java(TM) 6 Update 26
Java(TM) 6 Update 22
[color=red]Java version out of date![/color]
Adobe Flash Player 11.0.1.152
Adobe Reader 8 [color=red]Adobe Reader out of date![/color]
Mozilla Firefox (8.0.1)
````````````````````````````````
Process Check:
[u]objlist.exe by Laurent[/u]

Ad-Aware AAWService.exe
[color=red]Ad-Aware AAWTray.exe is disabled![/color]
``````````End of Log````````````

===========================

ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=7
# iexplore.exe=8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=c8cce93389ee5e48974f7d8dc8366003
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2011-12-16 03:33:10
# local_time=2011-12-15 08:33:10 (-0700, US Mountain Standard Time)
# country="United States"
# lang=1033
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=512 16777215 100 0 0 0 0 0
# compatibility_mode=5892 16776574 100 100 7401946 160603348 0 0
# compatibility_mode=8192 67108863 100 0 0 0 0 0
# scanned=413021
# found=0
# cleaned=0
# scan_time=10569

lilhurricane
Crunchin' For Cures
Numquam oblita
join:2003-01-11
Purple Zone

lilhurricane

Numquam oblita

Opening Extras log file.

(Good job, Pinky)

OTL Extras logfile created on: 12/14/2011 9:32:52 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Blake2\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19170)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 1.66 Gb Available Physical Memory | 55.33% Memory free
6.19 Gb Paging File | 4.65 Gb Available in Paging File | 75.05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111.69 Gb Total Space | 38.11 Gb Free Space | 34.12% Space Free | Partition Type: NTFS
Drive D: | 108.19 Gb Total Space | 8.59 Gb Free Space | 7.94% Space Free | Partition Type: NTFS
Drive H: | 1397.26 Gb Total Space | 906.68 Gb Free Space | 64.89% Space Free | Partition Type: NTFS

Computer Name: BLAKE-PC | User Name: Blake2 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]

[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "H:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Browse with &IrfanView] -- "C:\Program Files\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "H:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0
"UacDisableNotify" = 0
"InternetSettingsDisableNotify" = 0
"AutoUpdateDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\xchat\xchat.exe" = C:\Program Files\xchat\xchat.exe:*:Enabled:XChat IRC Client -- ()
"C:\Users\Blake\AppData\Roaming\6ufv.exe" = C:\Users\Blake\AppData\Roaming\6ufv.exe:*:Enabled:6ufv.exe
"C:\Users\Blake\AppData\Roaming\lssas.exe" = C:\Users\Blake\AppData\Roaming\lssas.exe:*:Enabled:lssas.exe
"C:\Users\Blake\AppData\Roaming\manager.exe" = C:\Users\Blake\AppData\Roaming\manager.exe:*:Enabled:manager.exe
"C:\Users\Blake\AppData\Roaming\conima.exe" = C:\Users\Blake\AppData\Roaming\conima.exe:*:Enabled:conima.exe

[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00ABFC2F-FC6D-40C3-A22F-B7C3A97BF5AA}" = lport=8393 | protocol=6 | dir=in | name=league of legends lobby |
"{036A2487-A462-4791-9EEC-D641C5E1D1B0}" = lport=8371 | protocol=17 | dir=in | name=league of legends launcher |
"{040C7F2B-73CA-42EE-8458-5927BC006DEE}" = lport=8376 | protocol=6 | dir=in | name=league of legends launcher |
"{0490D98F-DA21-48E2-A946-C9DD683C105C}" = rport=445 | protocol=6 | dir=out | app=system |
"{0567A2BF-0839-41D3-A798-2BAB51598551}" = lport=1900 | protocol=17 | dir=in | name=udp 1900 |
"{05C94564-FAE1-4279-9EC6-11393057DE79}" = lport=2869 | protocol=6 | dir=in | name=tcp 2869 |
"{06430F30-546E-4079-82DC-1F4A78938AF3}" = lport=8374 | protocol=6 | dir=in | name=league of legends launcher |
"{0B550EB8-562B-46F8-AF7E-FF17F10E0F4C}" = lport=6962 | protocol=6 | dir=in | name=league of legends launcher |
"{0BE181DB-CBB9-491C-B5ED-2478B47EDD78}" = lport=8382 | protocol=6 | dir=in | name=league of legends launcher |
"{0C5E9C48-E091-477E-B2FF-6CFC6C38E042}" = lport=8372 | protocol=6 | dir=in | name=league of legends launcher |
"{0CA43681-6342-4930-B631-409D799A858A}" = lport=8376 | protocol=17 | dir=in | name=league of legends launcher |
"{0EE8D700-313F-4715-A3B8-BF0D39B774DC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0F8CE771-98D1-46F2-A0EF-065ED1457EF4}" = lport=8390 | protocol=17 | dir=in | name=league of legends game client |
"{10A93DDF-A8A4-49DC-95B7-046720597F4E}" = lport=137 | protocol=17 | dir=in | app=system |
"{1215B5F1-FC26-47AD-9F1C-4D93E9622E5A}" = lport=8394 | protocol=6 | dir=in | name=league of legends launcher |
"{130FD11E-D0AA-457C-964A-11B89CEC68DF}" = lport=8373 | protocol=6 | dir=in | name=league of legends launcher |
"{194532C1-58AF-46CC-A7DB-482F4EFCD218}" = lport=8382 | protocol=17 | dir=in | name=league of legends launcher |
"{1B054233-83D0-40A7-A465-38A68BCAA15B}" = lport=8375 | protocol=17 | dir=in | name=league of legends launcher |
"{1B163259-346C-4704-A052-011208CAF4E9}" = lport=2869 | protocol=6 | dir=in | app=system |
"{1EAC35BA-589C-444F-9C03-019BD483767B}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{2096C0DA-2FBD-453B-BDCD-5EB15A42127E}" = lport=8375 | protocol=17 | dir=in | name=league of legends launcher |
"{21D9AD7A-F3D2-4E38-BDE0-818036B9CAE5}" = lport=8378 | protocol=17 | dir=in | name=league of legends launcher |
"{222B369E-C0EF-4ACF-85AF-0CEB79A04F2F}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{22720DBC-C4B2-490E-B9A4-73DAE03DE3F3}" = lport=8373 | protocol=17 | dir=in | name=league of legends launcher |
"{22808238-27D9-46B1-BC07-0098A1A2D6B2}" = lport=8379 | protocol=6 | dir=in | name=league of legends launcher |
"{2CB9C0C2-3042-454F-A877-F98EDE4C1378}" = lport=6960 | protocol=6 | dir=in | name=league of legends launcher |
"{2EC4C6FF-342F-4764-A448-CC5F907B04FA}" = lport=6886 | protocol=6 | dir=in | name=league of legends launcher |
"{31A514F6-7F7E-4F9E-9D25-28B46830EF4A}" = lport=138 | protocol=17 | dir=in | app=system |
"{32FCEB7D-F44E-43B5-BD62-B4173DC10729}" = lport=6982 | protocol=6 | dir=in | name=league of legends launcher |
"{330C9A28-F4A9-4856-823D-131F4E710410}" = lport=8381 | protocol=17 | dir=in | name=league of legends launcher |
"{360C3C85-7228-4FB2-A150-EEBFC851CBFC}" = lport=8374 | protocol=17 | dir=in | name=league of legends launcher |
"{3D018C88-7613-40C1-AD4E-5475697F0828}" = lport=3724 | protocol=6 | dir=in | name=blizzard downloader: 3724 |
"{3D4B62C4-8325-4CC0-9A94-9A235605D944}" = rport=138 | protocol=17 | dir=out | app=system |
"{3DA46F76-82F4-4E5C-B4FE-B453C5CD4F08}" = lport=6927 | protocol=6 | dir=in | name=league of legends launcher |
"{48A1FD50-53F7-4574-BFE5-8AAD4F95D911}" = lport=6982 | protocol=17 | dir=in | name=league of legends launcher |
"{48EEF5DF-BDFD-47B0-B5E1-4A2DC1E56CF2}" = lport=6936 | protocol=17 | dir=in | name=league of legends launcher |
"{4AFDB621-FF1B-452A-837A-076F3CCA306E}" = lport=8376 | protocol=17 | dir=in | name=league of legends launcher |
"{4B326073-4DBF-4276-9488-DD333AD49F2C}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{4B748362-D9B5-4E3B-A593-1988E5719C0C}" = lport=6967 | protocol=6 | dir=in | name=league of legends launcher |
"{4B759D4F-2061-441F-A521-54AADB81B793}" = lport=8383 | protocol=17 | dir=in | name=league of legends launcher |
"{4CD0B9CF-A84A-491E-8DA2-B0D80AA084AB}" = lport=8370 | protocol=17 | dir=in | name=league of legends launcher |
"{50A4B949-7369-42FF-ADF8-26D4FBCFA209}" = lport=6927 | protocol=17 | dir=in | name=league of legends launcher |
"{574A97DC-3070-42C9-AECE-DB1247B197B9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{578972C2-7BE6-4C36-B562-7DD07A1A757D}" = lport=8375 | protocol=6 | dir=in | name=league of legends launcher |
"{5C45EE73-C5CB-485F-8397-8A3D1754FEF5}" = lport=8372 | protocol=17 | dir=in | name=league of legends launcher |
"{5CD0BD76-C0D7-4417-80BA-72EA8EECC799}" = lport=6884 | protocol=6 | dir=in | name=league of legends launcher |
"{5DEE91B7-3E11-4DEB-B11A-7EC620541660}" = lport=8370 | protocol=6 | dir=in | name=league of legends launcher |
"{5E397766-99EC-4C27-95CD-D5DAC752EE6A}" = lport=8381 | protocol=6 | dir=in | name=league of legends launcher |
"{60ABE308-9A3B-4FB9-BE21-9103130123D0}" = lport=6958 | protocol=17 | dir=in | name=league of legends launcher |
"{61F2B2F1-BB6E-4EBD-BA4F-365AAADAD4FD}" = lport=8374 | protocol=17 | dir=in | name=league of legends launcher |
"{63ED4B40-F3F4-42C4-8A4B-0A171912B2A2}" = lport=6958 | protocol=6 | dir=in | name=league of legends launcher |
"{644344B1-59EE-4F5B-AA0D-7FA346D94EF7}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{64C5855D-14A4-43E8-AD0E-F155F6CF57A3}" = lport=8378 | protocol=6 | dir=in | name=league of legends launcher |
"{67AC8A9E-6156-4B56-905A-BB6D942CBBA8}" = lport=8377 | protocol=17 | dir=in | name=league of legends launcher |
"{6A1D4D8B-08F6-4BF7-805A-6161A4C1CAF0}" = lport=8373 | protocol=6 | dir=in | name=league of legends launcher |
"{7380EAF1-F12C-427C-9E28-EB421614F437}" = lport=8379 | protocol=6 | dir=in | name=league of legends launcher |
"{74D5EAAD-6F5E-41A8-857B-F342E37C65C3}" = lport=8376 | protocol=6 | dir=in | name=league of legends launcher |
"{763FEDAC-7789-441E-819A-1DC96C77C456}" = rport=139 | protocol=6 | dir=out | app=system |
"{7F73F093-9538-42B6-BFEC-8047B663D549}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{82741347-3E91-4CAF-83EE-01464405444E}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe |
"{8564D165-2F8B-45AD-A626-E2A2BA3B81AA}" = lport=6893 | protocol=17 | dir=in | name=league of legends launcher |
"{8CCDB5F7-14BA-4353-8811-E48B8FA8FD80}" = lport=8377 | protocol=17 | dir=in | name=league of legends launcher |
"{93C7B8EB-8894-429A-965A-2F8F0E64F190}" = lport=6950 | protocol=6 | dir=in | name=league of legends launcher |
"{974DDB40-AFA7-4393-B0CA-90B90527C7DB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{A1EB47A2-08DD-48BD-BA75-09DD819D865A}" = lport=8394 | protocol=17 | dir=in | name=league of legends launcher |
"{A204A5B3-E704-4CD1-B7C8-BF7F9ACB5B5E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{A428ACA1-223B-4376-8C7A-5AD7B55A86C7}" = lport=8378 | protocol=17 | dir=in | name=league of legends launcher |
"{AA977795-EB54-431E-8AC8-293A75930FC5}" = lport=6893 | protocol=6 | dir=in | name=league of legends launcher |
"{AD6DE199-9CCD-4C99-ABA3-AD65F24397EE}" = lport=6936 | protocol=6 | dir=in | name=league of legends launcher |
"{B179F5F3-03CB-402F-B5C3-FA12F85B9A64}" = lport=8374 | protocol=6 | dir=in | name=league of legends launcher |
"{B4BA204B-89F7-4410-86A9-792F7BFD6BF0}" = lport=6884 | protocol=17 | dir=in | name=league of legends launcher |
"{B85D160B-FF11-4A04-B40D-DBC6D9B5E984}" = lport=8390 | protocol=6 | dir=in | name=league of legends game client |
"{BB5C1554-189F-442C-A795-7A9A409E0DBE}" = lport=8379 | protocol=17 | dir=in | name=league of legends launcher |
"{BC89FBE4-75A1-4F7D-A668-1D6857574474}" = lport=8370 | protocol=17 | dir=in | name=league of legends launcher |
"{C0AA85BD-06D3-4CCF-92AA-9A2FC523FE07}" = lport=8373 | protocol=17 | dir=in | name=league of legends launcher |
"{C1A29FBD-7DB5-415B-873F-DDEB4D6AF139}" = lport=8375 | protocol=6 | dir=in | name=league of legends launcher |
"{C1BC8512-D0B5-404E-A0C2-D1EF1337D9C2}" = lport=139 | protocol=6 | dir=in | app=system |
"{C24CE88D-52B1-4EEE-8708-D05877C9F058}" = lport=6962 | protocol=17 | dir=in | name=league of legends launcher |
"{C6269A84-DA96-4A5F-8CCE-7E756BFB2E80}" = lport=8378 | protocol=6 | dir=in | name=league of legends launcher |
"{C68B9978-8678-4B61-B862-F93C5912F642}" = lport=8372 | protocol=6 | dir=in | name=league of legends launcher |
"{C9C3BA85-451B-42A3-B10B-1961A7E035A5}" = lport=8377 | protocol=6 | dir=in | name=league of legends launcher |
"{CC759B9A-8F9E-49A8-8720-1D8DDF3B0738}" = rport=137 | protocol=17 | dir=out | app=system |
"{CFC667C4-FE48-49D4-8668-5EE1313F6E17}" = lport=8371 | protocol=6 | dir=in | name=league of legends launcher |
"{CFD56471-3F25-4A61-BD6D-58DFA48F2C0C}" = lport=8372 | protocol=17 | dir=in | name=league of legends launcher |
"{D09C8230-A867-42EC-ADE5-230BC25A9C06}" = lport=6960 | protocol=17 | dir=in | name=league of legends launcher |
"{D2A9DB90-185D-4AC4-9BB3-9EBD42D0BFB6}" = lport=6993 | protocol=17 | dir=in | name=league of legends launcher |
"{D58EDB98-FFEA-4CF3-9EE3-2D1CC7A98C0F}" = lport=8379 | protocol=17 | dir=in | name=league of legends launcher |
"{D5DDF2D1-E2FA-4CC7-A3D2-B628FAFFC27E}" = lport=6886 | protocol=17 | dir=in | name=league of legends launcher |
"{D6CA4D12-D99D-4594-AC20-E430F6903C4E}" = lport=8370 | protocol=6 | dir=in | name=league of legends launcher |
"{D92FBFBB-534D-4F7E-8CD8-027229C8A215}" = lport=6950 | protocol=17 | dir=in | name=league of legends launcher |
"{DCF869A5-DEF3-43AA-8FEA-E5BD844DC9D6}" = lport=8381 | protocol=6 | dir=in | name=league of legends launcher |
"{E169F414-7C41-41B4-8D7B-3997DDAA045C}" = lport=6967 | protocol=17 | dir=in | name=league of legends launcher |
"{E1CD7082-2FD6-4E55-A14D-B928211B3C46}" = lport=8383 | protocol=6 | dir=in | name=league of legends launcher |
"{E4F29549-F6B9-428E-9AA1-5AC7E2C55DFF}" = lport=445 | protocol=6 | dir=in | app=system |
"{E64E7F01-2A6C-4D87-9056-0D76F2043C06}" = lport=8380 | protocol=6 | dir=in | name=league of legends launcher |
"{E65E5E31-8C1F-4368-9796-DDC2F5206B75}" = lport=8393 | protocol=17 | dir=in | name=league of legends lobby |
"{E7012ED8-2D32-4712-B8F1-4187EECBFE76}" = lport=3724 | protocol=6 | dir=in | name=blizzard downloader: 3724 |
"{E8A0E772-E44D-4171-BA68-896F03B7C29D}" = lport=8380 | protocol=17 | dir=in | name=league of legends launcher |
"{E8E389EF-73CB-425E-890E-F47E4EC1C992}" = lport=8381 | protocol=17 | dir=in | name=league of legends launcher |
"{F0A39205-191F-4B13-9AE1-F33B0A75F68D}" = lport=8377 | protocol=6 | dir=in | name=league of legends launcher |
"{F0E55EA9-2D20-4154-A6A6-4D6096961C80}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{F328A877-59E3-4719-BAC6-F2B39F695091}" = lport=8371 | protocol=17 | dir=in | name=league of legends launcher |
"{F9FABF1B-4244-454D-AC89-FC41059EF201}" = lport=6993 | protocol=6 | dir=in | name=league of legends launcher |
"{FB57E749-5CA7-46DC-BB16-A2E44D483CA8}" = lport=8371 | protocol=6 | dir=in | name=league of legends launcher |
"{FCA811E6-53B5-43EA-A866-2D929F4EB0FA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0026755D-8249-4EE3-96C5-D19B64A889A5}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{0033F53C-D5A4-420B-B6EF-BE74BD71001A}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{03286D1F-3694-4185-9432-FF2C2286E4AA}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{034E9449-0904-475E-B497-C632FC1F2BF8}" = protocol=6 | dir=in | app=c:\riot games\league of legends\lol.launcher.exe |
"{03EF600B-8F1B-44E0-BF0A-DB998689243F}" = protocol=17 | dir=in | app=h:\program files\starcraft ii\versions\base18574\sc2.exe |
"{0443FFD9-335A-42FA-B6DB-88B3AB915D4E}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\shadowgrounds survivor\survivor.exe |
"{0744E0B1-F8EC-444F-80F3-AD70E0A644F0}" = protocol=6 | dir=in | app=h:\program files\starcraft ii\starcraft ii.exe |
"{0A105CAB-FCA9-4CDE-9995-FAF086A6F603}" = dir=in | app=c:\program files\acer arcade deluxe\play movie\pmvservice.exe |
"{0C107650-8AB1-4C68-828B-0C253BCC12AB}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\blocks that matter\btm_launcher_win.exe |
"{0C57610A-CC4C-4CA8-B3D1-9D256B98770E}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{0CC17820-F225-4E69-BE1D-5D20744576EF}" = protocol=17 | dir=in | app=h:\program files\starcraft ii\starcraft ii.exe |
"{0D784E03-019D-4FD0-95EF-3D4A6E61D139}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\swkotor\swkotor.exe |
"{11907147-5F33-4728-9DDD-50ADE1D63446}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\gish\gish.exe |
"{1411DA04-BD2A-40FB-9018-81A98CBE70C6}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\swkotor\swkotor.exe |
"{14F3B768-5642-4005-BE54-94917224C2FC}" = protocol=17 | dir=in | app=c:\program files\microsoft games\age of empires online\spartan.exe |
"{190CA950-13F0-496C-9436-1FBA84FD3F4B}" = dir=in | app=c:\program files\acer arcade deluxe\dvdivine\dvdivine.exe |
"{1B22040A-6361-494F-8E0F-793F21A8C4F2}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\magic the gathering dotp 2012\magic_2012.exe |
"{1C6344A2-DD43-4DF4-9388-6D3B7577D92E}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{1CD2E59C-0798-4BBC-91FC-2D983DC2CB0D}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\trauma\trauma.exe |
"{1EBC1FBE-ADF8-4D44-81D6-872CE56470D7}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\portal 2\portal2.exe |
"{1FBE4030-1FB3-46A5-BDAC-6E9FA0B062CE}" = protocol=17 | dir=in | app=c:0\allods online\bin\launcher.exe |
"{2189F549-09B7-46D7-88D6-AA35C41A3871}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\steelstorm\steelstorm-dedicated.exe |
"{21BE251D-395C-401A-96E7-20806194F329}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{275768FC-CD76-4674-A715-1B35215095A2}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\space pirates and zombies demo\spazdemo.exe |
"{2C6D45E2-DE0D-49A2-A94B-4EDEB719B06B}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\revenge of the titans\revengeofthetitans.exe |
"{307A8295-DCBD-4E54-9995-CF7266104439}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\steelstorm\steelstorm-dedicated.exe |
"{3189CEC1-6233-419F-8B23-40683AF37D87}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\prince of persia\launcher\launcher.exe |
"{36D25031-2176-460D-AFD0-E28E9ED41FBA}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\apps\simcity 4.exe |
"{380B7218-C9C2-4079-80B3-318FAF384B13}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\frozen synapse\frozensynapse.exe |
"{39164F14-DBEE-4CC0-B27A-DEE53D06F7F9}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe |
"{392AF52F-70A9-4953-9609-DF13F7117183}" = protocol=6 | dir=in | app=c:\program files\microsoft games\age of empires online\spartan.exe |
"{3B8CB33A-95AF-4FCE-8FD9-10DE5FA56E33}" = dir=in | app=c:\program files\acer\acer vcm\vc.exe |
"{3CC49F40-65F2-4751-8D85-2A85CC789742}" = protocol=17 | dir=in | app=c:\program files\vuze\azureus.exe |
"{3EB730E0-DBF3-40B9-BAE8-81CF0381B922}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\osmos\osmos.exe |
"{3F8919E7-9F73-4777-AB6B-A5D4992A21AB}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe |
"{4041C3E2-5B1D-4012-A3AF-7B270934D3FF}" = protocol=6 | dir=in | app=d:\steam\steamapps\dantefromh\counter-strike\hl.exe |
"{40C40A38-207C-4ABA-854D-94344709837E}" = protocol=17 | dir=in | app=c:0\allods online\bin\aogame.exe |
"{443382C8-10EF-4B35-859A-52A4F71C6181}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\mass effect\docs\ea help\electronic_arts_technical_support.htm |
"{46270CD1-C6C6-4B14-9D0C-6831B6C03D98}" = protocol=17 | dir=in | app=c:\windows\system32\rundll32.exe |
"{483AF523-DCF1-4D6C-9C63-840A9EC4D3FF}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\machinarium\machinarium.exe |
"{48ED6FFB-D81F-4821-A7FE-E7BE98FC897E}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\revenge of the titans\revengeofthetitans.exe |
"{491353C8-10EA-4B01-950B-C58EAF2DF18E}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\apps\simcity 4.exe |
"{4AA669B6-E0A6-4E41-90D2-77EF56364BBF}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\command and conquer 3 kanes wrath trailer\smp.exe |
"{4AF6039B-0F1E-4A6E-8CDD-627009CC8958}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\spacechem\spacechem.exe |
"{4ED762E2-862F-4AA9-B4B3-8C39FE74DDAB}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{4FA6A220-3DA0-487D-96AC-1327061BBBCB}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\shadowgrounds survivor\shadowgrounds survivor launcher.exe |
"{519D590E-974F-4CEA-BED3-86944FDE2124}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\shadowgrounds survivor\survivor.exe |
"{542EF4F6-96D4-4FDC-A703-24B4CF261B63}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\the binding of isaac\isaac.exe |
"{583B9E3B-5593-43A0-9453-1B64BE015F19}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\sid meier's civilization v\launcher.exe |
"{5A6026B1-AFF1-40F4-897B-DB34007A350B}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\shadowgrounds survivor\shadowgrounds survivor launcher.exe |
"{5C32B04B-8DDA-4E7F-B1E2-35B4308B652C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{5D542F00-681C-4D23-9655-0801727F161B}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\support\ea help\electronic_arts_technical_support.htm |
"{618A638A-7FC0-40A8-867C-DC9BEBE7AB73}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{61D97CD9-5473-4D16-A2E5-D0BC0457897F}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\cogs\cogs.exe |
"{62B4460D-FC2B-4204-ABE6-00B19F8B0F8D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{62E85503-0641-47C4-A545-72BC38B84F73}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{64D3081C-4E8F-4604-80BA-7615F0F25627}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{657B017C-A2BF-4B61-8118-65AE421C730A}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\torchlight\torchlight.exe |
"{66E4DF6C-B5EA-48E7-9C95-6C6DB821EF88}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{67AE4EFA-75D0-4439-B275-319AE62C038C}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{69D8CE88-1100-460E-BB81-67BD89E58D9A}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{69F5AD54-4FE0-4111-BC39-952A3B5F3DBF}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\support\ea help\electronic_arts_technical_support.htm |
"{6A412879-4C85-42DE-94FA-437A793534B6}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{6A6E13E5-1306-432C-9B5A-9F16FB45CAF4}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\shadowgrounds\shadowgroundslauncher.exe |
"{6AF83944-F5E5-4211-A885-086639F42222}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\spacechem\spacechem.exe |
"{6DAC2F6A-9B25-4CF2-BB6F-E24076F70412}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\magic the gathering dotp 2012\magic_2012.exe |
"{6F48A57E-7AFE-40F4-8EBA-C32A2E7D7C66}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\kings bounty armored princess\kb.exe |
"{706E6A7A-2111-460A-ADB7-F139593707CC}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\blocks that matter\btm_launcher_win.exe |
"{70709065-6A69-400A-8AE8-040225ABE15F}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\king's bounty - the legend\save_fixer.exe |
"{71CC0EBC-D361-4344-98CD-67B6C76DF51B}" = protocol=6 | dir=in | app=h:\program files\starcraft ii\versions\base18574\sc2.exe |
"{727A0BB0-DF0E-421C-B80C-ADBA98A52D46}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\magicka\magicka.exe |
"{72B05A76-8F82-4779-A390-EC504A2E3487}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{74E28CD7-0A28-4919-A512-72ABBE671876}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\bastion\bastion.exe |
"{76D53441-7C40-4A16-B565-D35EAEB7D62A}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\support\ea help\electronic_arts_technical_support.htm |
"{76DF19A6-B67A-4950-88BB-B72F8A308AA0}" = protocol=17 | dir=in | app=c:\program files\ventrilo\ventrilo.exe |
"{77369FD5-0C2A-4ABC-82B1-B6B4939F21C5}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe |
"{77A4320E-E234-46A3-89F9-59280E0804E1}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\mass effect\binaries\masseffect.exe |
"{7B8008A5-BB3D-4EC4-A61F-C8C27063F666}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\osmos\osmos.exe |
"{7F69CA05-8331-4360-BD3C-91D1C22F96B4}" = protocol=6 | dir=in | app=c:\program files\ijji\ijji reactor\ijjioptimizer.exe |
"{843CA8CB-D48C-4CA8-A446-62BE16DD015C}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{848E5EEC-2D3B-4C18-B00B-EB3410C1D676}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{8B23BAC2-21BA-48F3-8E5B-FDD3DC8B95EF}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\blocks that matter\btm_launcher_win.exe |
"{8B37A5F0-DA25-4E80-9E70-FDABC7A4D7A0}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\apps\simcity 4.exe |
"{8BD4863A-EDF6-4912-8E30-EBDAAF704154}" = dir=in | app=c:\program files\acer arcade deluxe\play movie\playmovie.exe |
"{8E257174-8A4A-4B66-B079-305CFE1532A3}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\apps\simcity 4.exe |
"{8F80FB90-06ED-40BE-BBDC-F0ABAF3E728A}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\swkotor\swkotor.exe |
"{90B6E017-B130-4D07-AAA0-185845BD51AF}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{91109767-AA04-46C2-97DB-F5AD9A6C7FF0}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\shadowgrounds\shadowgrounds.exe |
"{91CCF417-CF74-4BD8-A969-9384788F7D81}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\space pirates and zombies demo\spazdemo.exe |
"{930BDFA1-E4F5-43DD-94D7-D17F37C0897E}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\spacechem\spacechem.exe |
"{96FD7E42-0842-432B-B347-940060AB5C80}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\forsaken world\patcher.exe |
"{97F6C08B-095C-4443-9C08-B64906B349A8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{99A2AFFA-1AD5-40F6-9942-2FB301B5ACF8}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{9EFE124B-6A56-48AD-97C7-95D07C014576}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\torchlight\torchlight.exe |
"{9F1C3A23-B0D8-4D41-9357-28B47EAB2307}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\king's bounty - the legend\save_fixer.exe |
"{A1058A12-6F0A-48BF-8267-59B8F2BBBACA}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\audiosurf\engine\questviewer.exe |
"{A15830A1-4263-43E6-AC28-887C35FA8415}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\mass effect\binaries\masseffect.exe |
"{A2D92421-119A-4191-9D50-842C977E8D9D}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\king's bounty - the legend\kb.exe |
"{A3132F33-7434-4A7A-978D-FB9C86854F4C}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\kings bounty armored princess\kb.exe |
"{A5C7668B-0DE1-4795-A48F-8363EF63611C}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\prince of persia\launcher\launcher.exe |
"{A5E7ADEB-655C-41BF-B532-DC4014EB853C}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{A6FD3046-5FD8-47FB-85E5-96509FF09A89}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\defensegridtheawakening\defensegrid.exe |
"{A9B9E834-1F4B-4DD9-80C5-0806E4B84959}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\blocks that matter\btm_launcher_win.exe |
"{A9BC6981-F8FD-4D3E-9212-12050191C10B}" = protocol=6 | dir=in | app=c:\program files\warcraft iii\frozen throne.exe |
"{AA856D53-325E-4611-99C5-93E7C046D3B1}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{AAEB46AB-4674-4F7F-B81D-D0339CBE99F5}" = protocol=17 | dir=in | app=c:\riot games\league of legends\lol.launcher.exe |
"{ABEAC66E-EC66-42E2-9F09-60ACCBD6CE5B}" = protocol=17 | dir=in | app=c:\windows\system32\rundll32.exe |
"{AC80B4F9-40F7-426F-AA06-7E95D8858C1C}" = protocol=17 | dir=in | app=d:\steam\steamapps\dantefromh\counter-strike\hl.exe |
"{AD4B875E-AFBC-4537-9D6F-8D92C4D40858}" = protocol=6 | dir=in | app=h:\program files\starcraft ii\starcraft ii.exe |
"{AF06D218-B559-4AC1-9EED-424074064697}" = protocol=17 | dir=in | app=c:\program files\ijji\ijji reactor\ijjioptimizer.exe |
"{AF665330-CB5E-44E9-966C-A956F77BE7F9}" = dir=in | app=c:\program files\acer arcade deluxe\acer arcade deluxe\acer arcade deluxe.exe |
"{B39F7062-AA64-47B1-A2C0-C16F074B6514}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\swkotor\swkotor.exe |
"{B6689658-B068-4DFE-9468-3622BC8BC718}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{B6E2594B-6E79-4ADD-8139-4908E657AA7C}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{BAE6D7AA-3EE7-4DFD-AA63-C30E4D808116}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\sid meier's civilization v\launcher.exe |
"{BC9AE945-43DB-4110-AA3C-56996DC147A8}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\forsaken world\patcher.exe |
"{BDBBBB64-693A-477C-B9F2-4502526B464A}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\frozen synapse\frozensynapse.exe |
"{BE07C9F4-AC8E-4CB1-B73F-32EC617F23FC}" = protocol=6 | dir=in | app=c:\program files\dna\btdna.exe |
"{BE4A94B6-9B9F-459D-A447-A97DB52AAFA3}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{BEF5B974-3178-442C-89C2-7EE0B1F4CA9F}" = dir=in | app=c:\program files\acer arcade deluxe\homemedia\homemedia.exe |
"{C075B9D5-5984-4E2E-8947-E007D4B0C705}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\sid meier's civilization v\launcher.exe |
"{C2A1AB42-8A47-4D5F-8F71-1DD248E4F68C}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\machinarium\machinarium.exe |
"{C30D9496-5CFB-4A6D-A73D-4CDE66D3460C}" = protocol=6 | dir=in | app=c:\program files\ventrilo\ventrilo.exe |
"{C3432620-CF0A-4C34-B94E-DCFBFE405D1C}" = dir=in | app=c:\program files\acer arcade deluxe\videomagician\videomagician.exe |
"{C3B61BD7-1EFC-4FB7-A31A-2DC7EDC1EF3B}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\gish\gish.exe |
"{C40AB6CD-DED0-41F2-90E2-097793FECAB3}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\magicka\magicka.exe |
"{C5AB23DF-09D8-4D53-BAF1-160048F155C1}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\magicka\magicka.exe |
"{C5C4379F-08F0-4DBF-810B-F7DA38D9F871}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\revenge of the titans\revengeofthetitans.exe |
"{C69BE60A-EBA8-4002-A7ED-ACCBCFEAAFF5}" = protocol=17 | dir=in | app=c:\program files\dna\btdna.exe |
"{C9E7640B-C5AA-457F-AA71-FA8F84E81628}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\shadowgrounds\shadowgroundslauncher.exe |
"{CACC1E28-F9C8-4B11-A80B-0178BF5F7003}" = protocol=17 | dir=in | app=h:\program files\starcraft ii\starcraft ii.exe |
"{CADE5D52-F1AF-49F0-AE22-5BCD5371752D}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\dota 2 beta\dota.exe |
"{CB49F3CE-51DA-48D5-BA4F-516BFCB7975A}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\bastion\bastion.exe |
lilhurricane

lilhurricane to PinkyThePig

Numquam oblita

to PinkyThePig
"{CB81A576-B7E3-41FA-9377-A94A619825B7}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
"{CBAE30BB-18A2-49A9-876D-2800252D3856}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\portal 2\portal2.exe |
"{CCCEECBC-621D-49B7-9C61-24ECE8BCC1D2}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\mass effect\docs\ea help\electronic_arts_technical_support.htm |
"{CD5001B5-EC8D-4879-A4DF-CA8F7C57A8CC}" = protocol=6 | dir=in | app=c:0\allods online\bin\aogame.exe |
"{CFC81124-FA61-4D01-98C9-5C5A72483438}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{D00D4A84-B8E8-4355-BCB2-F2E1558BA9F8}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\the binding of isaac\isaac.exe |
"{D3F91DCD-4137-4181-8168-3705EF1AE6AF}" = protocol=6 | dir=in | app=c:\program files\vuze\azureus.exe |
"{D4C8E867-E50C-4160-B00D-EC7EC30CC282}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{D772EFFA-4DB0-4D22-92CE-970BD17B0ADA}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\trine\trine_launcher.exe |
"{D852779C-8097-45F3-9675-A6A27E8B471B}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{D87166D4-BB14-4933-AADC-7D340BCE9B95}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\sid meier's civilization v\launcher.exe |
"{DA24C1D5-FF8A-4428-A0D6-5F71AE264F05}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\cogs\cogs.exe |
"{DD18747C-DC75-4E19-B627-03FFAEE48476}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{DD3206C0-2206-47A8-B9EF-F3AAF3DB3AF9}" = protocol=6 | dir=in | app=d:\steam\steamapps\dantefromh\counter-strike\hl.exe |
"{DE999271-40A9-4E5E-BE16-B0DE1B86FD22}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\simcity 4 deluxe\support\ea help\electronic_arts_technical_support.htm |
"{DEB0E46D-B812-4013-A438-387C05DB6F00}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{E05DE50D-ED6B-47C7-8791-F318258F4038}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\shadowgrounds\shadowgrounds.exe |
"{E063BA99-716A-4456-B1DB-A91B4DEF9FD0}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\revenge of the titans\revengeofthetitans.exe |
"{E3AEDF97-2157-4BBA-8403-34CCC056B23C}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\alien breed 2 assault\binaries\alienbreed2assault.exe |
"{E3F85D34-BCB0-462D-840C-FBD6475310FD}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\trauma\trauma.exe |
"{E543F93B-569F-4DAD-AB6A-FC8C7515C0B3}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\alien breed 2 assault\binaries\alienbreed2assault.exe |
"{E5F78EA4-3E54-4558-BE95-1C9CEF3F0526}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\command and conquer 3 kanes wrath trailer\smp.exe |
"{E64AA837-47DD-4433-A638-0DA0C1482127}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\king's bounty - the legend\kb.exe |
"{E6AB3D98-4E7E-48A2-A7C8-6827EF7114C5}" = protocol=6 | dir=in | app=c:\windows\system32\rundll32.exe |
"{E79B74CE-61B9-4D0C-AC9E-533524DEAE84}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\spacechem\spacechem.exe |
"{E9D0AC72-FE27-4BBA-933B-78FCAC48220A}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\shadowgrounds\shadowgroundseditor.exe |
"{EA7FC603-69D4-4B43-BDE4-E8573AE2A4F5}" = protocol=17 | dir=in | app=d:\steam\steamapps\dantefromh\counter-strike\hl.exe |
"{EA97C62C-D4B0-42F8-A350-1A6EDF828FC6}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\crayon physics deluxe\launcher.exe |
"{EB036F24-6DFB-4F89-8E4A-7B9A879B7C44}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\crayon physics deluxe\launcher.exe |
"{EB435A7A-031E-47C9-AC08-26EBF795F484}" = dir=in | app=c:\program files\acer arcade deluxe\dv wizard\dv wizard.exe |
"{ED2C7CF7-8786-42EB-B0BE-BE510FDD5FDE}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\magicka\magicka.exe |
"{ED5C7518-9E46-4B4D-BEDC-15E111084B5D}" = protocol=6 | dir=in | app=c:0\allods online\bin\launcher.exe |
"{EF4357EE-CBDF-42F0-88E4-E1CB3D7D3E59}" = protocol=17 | dir=in | app=c:\program files\warcraft iii\frozen throne.exe |
"{F01BEC42-F5F2-400B-9CE1-7FB6AA6000A0}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\dota 2 beta\dota.exe |
"{F4C3B90A-00CE-4580-A254-8C765F245DB4}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe |
"{F4C6A5E2-66BB-40AB-857A-90CF734D876C}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\steelstorm\steelstorm.exe |
"{F6F6306F-81B7-4E25-A2D1-F5F05D538581}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{F74D660D-4766-443C-8EF5-C48AE0FCB7A4}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\hammerfight\hammerfight.exe |
"{F7EB4B7A-54DB-4F70-8EFA-36890408379E}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{FA85B3CF-16DA-4962-9768-7AA0CB9759D6}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\shadowgrounds\shadowgroundseditor.exe |
"{FB354A4F-45BD-40E7-95C9-D7969B659B42}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\hammerfight\hammerfight.exe |
"{FBFD656B-BBFD-44C8-B48C-D95ABDDF8794}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\trine\trine_launcher.exe |
"{FC807468-7761-454D-A359-92AB503E69EC}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{FCFF27E6-CA96-44A0-9BC2-36742747381E}" = protocol=6 | dir=in | app=c:\windows\system32\rundll32.exe |
"{FDE61E25-C29B-4CB4-8ED2-60A0785C1E8E}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{FE6931DB-DDE1-4C0B-B499-71044C4B4247}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\aaaaaaaaaaaaaaaaaaaaaaaaa!!!\main.exe |
"{FF2FBBF2-2D63-48A4-BD84-0D63B0FE02F8}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{FF761DED-5389-41AD-A7C3-CFE64887C705}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"TCP Query User{02C44B37-A51B-4CDF-BB0A-A021A99677F0}C:\program files\vuze\azureus.exe" = protocol=6 | dir=in | app=c:\program files\vuze\azureus.exe |
"TCP Query User{083599C9-AF15-4DF5-9446-F346D198BB14}C:\program files\warcraft iii\war3.exe" = protocol=6 | dir=in | app=c:\program files\warcraft iii\war3.exe |
"TCP Query User{0B972BE9-86EE-48D5-B80B-7CDCDA06F2ED}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{0EF360B2-4E08-4C5B-9507-0B33F212992C}C:\users\blake2\desktop\terraria 1-0-6\terrariaserver.exe" = protocol=6 | dir=in | app=c:\users\blake2\desktop\terraria 1-0-6\terrariaserver.exe |
"TCP Query User{18B95EB3-203D-4710-A213-C4D1FFFC7908}C:\program files\starcraft\starcraft.exe" = protocol=6 | dir=in | app=c:\program files\starcraft\starcraft.exe |
"TCP Query User{1DFAC886-4ABA-4CC8-BBE4-F1B62AD91313}C:\program files\lolreplay\lolreplay.exe" = protocol=6 | dir=in | app=c:\program files\lolreplay\lolreplay.exe |
"TCP Query User{22041A51-DB1F-4AF3-A2E2-DB028B2B0943}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{22A8E6FD-5D2F-4A18-9A07-7A4B1430F910}C:\program files\garena\garena.exe" = protocol=6 | dir=in | app=c:\program files\garena\garena.exe |
"TCP Query User{4083E3E6-A019-4EF3-BEB5-C194D06891C3}C:\users\blake2\desktop\terraria\terrariaserver.exe" = protocol=6 | dir=in | app=c:\users\blake2\desktop\terraria\terrariaserver.exe |
"TCP Query User{4356013B-B9C0-407F-AAE5-B932F04BA683}C:\ijji\english\u_gunz.exe" = protocol=6 | dir=in | app=c:\ijji\english\u_gunz.exe |
"TCP Query User{5300F7D4-D98A-44EE-A069-F1DF121E1049}C:\program files\xchat\xchat.exe" = protocol=6 | dir=in | app=c:\program files\xchat\xchat.exe |
"TCP Query User{6E87847D-ED4E-47F6-BA77-9B9F71DDF9E1}C:\program files\lolreplay\lolreplay.exe" = protocol=6 | dir=in | app=c:\program files\lolreplay\lolreplay.exe |
"TCP Query User{75EA2EA9-6C5C-49E8-9C5D-36C658C8BF9F}C:\program files\starcraft\starcraft.exe" = protocol=6 | dir=in | app=c:\program files\starcraft\starcraft.exe |
"TCP Query User{836A12AF-75FE-4DB4-AD2E-D973B3765969}H:\program files\sabnzbd\sickbeard\sickbeard-win32-alpha-build488\sickbeard.exe" = protocol=6 | dir=in | app=h:\program files\sabnzbd\sickbeard\sickbeard-win32-alpha-build488\sickbeard.exe |
"TCP Query User{8BD61803-E61C-4765-8E02-1E2EC0A15CFF}D:\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\common\terraria\terrariaserver.exe |
"TCP Query User{8F1F2D47-D565-4857-9F21-0974AD743C64}C:\program files\ijji\ijji reactor\reactor.exe" = protocol=6 | dir=in | app=c:\program files\ijji\ijji reactor\reactor.exe |
"TCP Query User{9670B62F-4E38-4186-8564-E6F5A30A54E2}C:\program files\dna\btdna.exe" = protocol=6 | dir=in | app=c:\program files\dna\btdna.exe |
"TCP Query User{9C24FF1F-3619-4965-84AC-B7029228770F}C:\users\blake2\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\blake2\appdata\local\akamai\netsession_win.exe |
"TCP Query User{9D0EB1B8-6E83-4806-8D3B-2BDD10788CD6}D:\steam\steamapps\dantefromh\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\dantefromh\team fortress 2\hl2.exe |
"TCP Query User{A5957902-0111-4515-A3B3-55766FCCE55B}C:\users\blake2\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\blake2\appdata\local\akamai\netsession_win.exe |
"TCP Query User{ACEFF50B-0375-4686-8F2B-72DB2C49215B}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{B72DEE79-E33A-4C14-BBAD-66D41CDC2E21}D:\steam\steamapps\dantefromh\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\dantefromh\team fortress 2\hl2.exe |
"TCP Query User{C2DBB1E5-5386-41E0-9B85-72FCA293B897}C:\program files\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files\electronic arts\eadm\core.exe |
"TCP Query User{EBE970DF-3AB8-4B59-A818-BABF97561309}H:\gamecube emulator\dolphin.exe" = protocol=6 | dir=in | app=h:\gamecube emulator\dolphin.exe |
"TCP Query User{EEAFAA04-0270-43BE-9067-9DF2C64F4F09}C:\program files\garena\garena.exe" = protocol=6 | dir=in | app=c:\program files\garena\garena.exe |
"TCP Query User{F2FF367E-2DB9-42D7-B4DE-1B18195110AE}D:\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\common\terraria\terrariaserver.exe |
"TCP Query User{F5633267-2F60-4908-A5BC-407A718292DD}C:\users\blake2\desktop\terraria\tmod\tmod v3.exe" = protocol=6 | dir=in | app=c:\users\blake2\desktop\terraria\tmod\tmod v3.exe |
"TCP Query User{F9DD226B-4DE6-4F03-B225-6042D7130A42}C:\users\blake2\desktop\terraria 1-1\terrariaserver.exe" = protocol=6 | dir=in | app=c:\users\blake2\desktop\terraria 1-1\terrariaserver.exe |
"UDP Query User{090234E8-27BC-4D30-9B63-75E5A560E23D}C:\users\blake2\desktop\terraria\tmod\tmod v3.exe" = protocol=17 | dir=in | app=c:\users\blake2\desktop\terraria\tmod\tmod v3.exe |
"UDP Query User{11AEF4B8-EF1E-4B0F-BE2B-9E14CF904F30}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{19E5C7A1-C45B-4516-8E9D-4FF4B1FE4D6F}H:\program files\sabnzbd\sickbeard\sickbeard-win32-alpha-build488\sickbeard.exe" = protocol=17 | dir=in | app=h:\program files\sabnzbd\sickbeard\sickbeard-win32-alpha-build488\sickbeard.exe |
"UDP Query User{22CCF24E-29F2-4FA8-B932-CA900948BFD7}C:\users\blake2\desktop\terraria 1-0-6\terrariaserver.exe" = protocol=17 | dir=in | app=c:\users\blake2\desktop\terraria 1-0-6\terrariaserver.exe |
"UDP Query User{2726AAD0-904F-4589-9935-6C6BBCE68EB3}C:\program files\lolreplay\lolreplay.exe" = protocol=17 | dir=in | app=c:\program files\lolreplay\lolreplay.exe |
"UDP Query User{2AC29FB0-8F90-4FCD-8534-67916D1D26D1}C:\users\blake2\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\blake2\appdata\local\akamai\netsession_win.exe |
"UDP Query User{2B504E7F-918B-424B-9680-201D351486D5}C:\program files\lolreplay\lolreplay.exe" = protocol=17 | dir=in | app=c:\program files\lolreplay\lolreplay.exe |
"UDP Query User{2CC5B468-E66F-4823-980C-9C3371339877}C:\program files\starcraft\starcraft.exe" = protocol=17 | dir=in | app=c:\program files\starcraft\starcraft.exe |
"UDP Query User{3AB2C8C2-C799-4B49-849D-AC16013927A2}C:\program files\warcraft iii\war3.exe" = protocol=17 | dir=in | app=c:\program files\warcraft iii\war3.exe |
"UDP Query User{42C406A4-D501-4A73-937E-537011AB886F}C:\program files\dna\btdna.exe" = protocol=17 | dir=in | app=c:\program files\dna\btdna.exe |
"UDP Query User{4ABFDE96-0741-4F0C-936E-551F05F910EB}C:\ijji\english\u_gunz.exe" = protocol=17 | dir=in | app=c:\ijji\english\u_gunz.exe |
"UDP Query User{4F8FE02E-8EEE-4048-8557-94A8D1C33AE9}C:\users\blake2\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\blake2\appdata\local\akamai\netsession_win.exe |
"UDP Query User{5F583C82-C314-4264-9479-B1BF85EB984A}C:\program files\garena\garena.exe" = protocol=17 | dir=in | app=c:\program files\garena\garena.exe |
"UDP Query User{60039AF6-969D-4238-A37C-C13D39FD4E24}C:\users\blake2\desktop\terraria\terrariaserver.exe" = protocol=17 | dir=in | app=c:\users\blake2\desktop\terraria\terrariaserver.exe |
"UDP Query User{68E1B535-F526-467D-808E-7FFC403C2B21}D:\steam\steamapps\dantefromh\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\dantefromh\team fortress 2\hl2.exe |
"UDP Query User{6A14CB26-90A5-40B6-BEC4-9B51D7E16B21}H:\gamecube emulator\dolphin.exe" = protocol=17 | dir=in | app=h:\gamecube emulator\dolphin.exe |
"UDP Query User{6F16BF0E-E10B-488D-9992-8B3C02CDE098}D:\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\common\terraria\terrariaserver.exe |
"UDP Query User{715EB135-07F7-4FC1-9E17-53A0DEF519F1}C:\users\blake2\desktop\terraria 1-1\terrariaserver.exe" = protocol=17 | dir=in | app=c:\users\blake2\desktop\terraria 1-1\terrariaserver.exe |
"UDP Query User{83D3D720-F20F-430C-936E-A196FFAF48B9}C:\program files\garena\garena.exe" = protocol=17 | dir=in | app=c:\program files\garena\garena.exe |
"UDP Query User{8E288AC6-F7CA-4AA4-ADD5-7EF3D75FCD63}C:\program files\vuze\azureus.exe" = protocol=17 | dir=in | app=c:\program files\vuze\azureus.exe |
"UDP Query User{92E896F4-1A05-4BB5-BB57-4A7C05BAA7BF}C:\program files\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files\electronic arts\eadm\core.exe |
"UDP Query User{BA62F9FD-C3EF-4528-90F2-C694549AD028}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{BC109659-BA29-466A-9E8D-2CC75D7A278D}D:\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\common\terraria\terrariaserver.exe |
"UDP Query User{C0016B39-7FAE-42A3-8731-2699E2CF25C5}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{C12943C9-F770-40BC-A717-BE9742AE9AC7}C:\program files\ijji\ijji reactor\reactor.exe" = protocol=17 | dir=in | app=c:\program files\ijji\ijji reactor\reactor.exe |
"UDP Query User{CA2A9D51-45D3-4C23-B122-789201380D81}C:\program files\starcraft\starcraft.exe" = protocol=17 | dir=in | app=c:\program files\starcraft\starcraft.exe |
"UDP Query User{E2A6BE76-456C-4D2A-A347-15D7A8E1D96F}D:\steam\steamapps\dantefromh\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\dantefromh\team fortress 2\hl2.exe |
"UDP Query User{F080A471-FA48-4BD1-8AA2-F81DDCFF213C}C:\program files\xchat\xchat.exe" = protocol=17 | dir=in | app=c:\program files\xchat\xchat.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{047F790A-7A2A-4B6A-AD02-38092BA63DAC}" = Acer VCM
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{065CB65B-A200-42F8-93B2-F83BBEDE530B}" = League of Legends Test Realm
"{07FCBED5-94C3-4F94-B9D3-360FA27C7B06}" = Microsoft Windows SDK for Visual Studio 2008 Express Tools for Win32
"{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{0E2B767B-EA6A-489B-BF83-8083FE1DB661}" = Pcsx2 0.9.6
"{11316260-6666-467B-AC34-183FCB5D4335}" = Acer Mobility Center Plug-In
"{116FF17B-1A30-4FC2-9B01-5BC5BD46B0B3}" = Acer eLock Management
"{13515135-48BB-4184-8C1F-2FAE0138E200}" = TBS WMP Plug-in
"{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter
"{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{20C640F8-4703-4B78-9EC5-D43E42E92E90}" = XSplit
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{23F79416-CAD1-41BF-99A3-040F6C814AAA}" = NVIDIA Photoshop Plug-ins
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 26
"{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java(TM) 6 Update 22
"{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}" = Microsoft SQL Server 2005 Tools Express Edition
"{28999392-5871-4A39-863A-D2A6EA3260AF}" = League of Legends
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{297CE337-53C9-4D81-B8B8-25C19EDC70E4}" = Bing Bar
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (SQLEXPRESS)
"{2B653229-9854-4989-B780-D978F5F13EAB}" = FEAR
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{2E5C075E-11AB-4BDD-918C-7B9A68953FF8}" = Microsoft SQL Server Compact 3.5 Design Tools ENU
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper
"{3127F76D-5335-4AC7-BD1E-2F5247A23C24}" = iTunes
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = Acer Crystal Eye webcam
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3E171899-0175-47CC-84C4-562ACDD4C021}" = OpenOffice.org 3.3
"{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
"{427967BF-09F8-46D5-9275-37001CCBBA5D}" = Winbond CIR Drivers
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4D530FA3-9B89-4186-98B7-F51000008100}" = Age of Empires Online
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{57265292-228A-41FA-9AEC-4620CBCC2739}" = Acer eAudio Management
"{58E5844B-7CE2-413D-83D1-99294BF6C74F}" = Acer ePower Management
"{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.52.02
"{5A88C46B-C38D-48C6-BE6D-BBC92BC30DAA}" = Livestream Procaster
"{5C1DA723-24FC-48AD-93BA-925695C3EF26}" = Logitech Gaming Software
"{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
"{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}" = NCsoft Launcher
"{6530FDAA-5B1F-4830-95BB-650E9804D239}" = UE3Redist
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{67ADE9AF-5CD9-4089-8825-55DE4B366799}" = NTI Backup NOW! 4.7
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6D52C408-B09A-4520-9B18-475B81D393F1}" = Microsoft Works
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}" = Microsoft SQL Server Native Client
"{767CC44C-9BBC-438D-BAD3-FD4595DD148B}" = VC80CRTRedist - 8.0.50727.762
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo Client
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}" = Acer ScreenSaver
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
"{8153ED9A-C94A-426E-9880-5E6775C08B62}" = Apple Mobile Device Support
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11170417}" = Luxor 2
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{868EC22E-7E82-4760-9265-3F2E705BF24B}" = League of Legends
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{901DC58A-5C1B-4315-BA40-5AD3D3A463B9}" = ijji REACTOR
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends
"{928D2FB1-291A-362B-89A4-7075A9D904A4}" = Microsoft Windows SDK for Windows 7 (7.1)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9559F7CA-5E34-4237-A2D9-D856464AD727}" = Project64 1.6
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C2DC81B-8114-37D9-A922-95E460A1FAFB}" = Microsoft Visual Basic 2008 Express Edition - ENU
"{9C2F9B2C-1585-43AD-9EF9-48AAD60DFC04}" = Microsoft IntelliPoint 8.1
"{9CF4A37B-A8C4-44D7-8C53-13B9D9594BB2}" = Paint.NET v3.5.8
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{A498D9EB-927B-459B-85D6-DD6EF8C2C564}" = erLT
"{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A96E97134CA649888820BCDE5E300BBD}" = H.264 Decoder
"{AA047D7C-5E7C-4878-B75C-77589151B563}" = Acer Crystal Eye webcam
"{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
"{AAC389499AEF40428987B3D30CFC76C9}" = MKV Splitter
"{AB6097D9-D722-4987-BD9E-A076E2848EE2}" = Acer Empowering Technology
"{AC1ACE88-C471-494E-B5FA-0B7C21F22E4F}" = Orion
"{AC76BA86-7AD7-1033-7B44-A83000000003}" = Adobe Reader 8.3.1
"{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}" = Adobe AIR
"{AEEAE013-92F1-4515-B278-139F1A692A36}" = Acer eDataSecurity Management
"{AEF9DC35ADDF4825B049ACBFD1C6EB37}" = AAC Decoder
"{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 280.26
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 280.26
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 280.19
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.4.28
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B3D7648D-104F-442D-9D1B-44A5016D74DB}" = WinSudoku
"{B4C0A315-07FB-39F9-85CD-8CE20C019350}" = Microsoft Windows SDK for Visual Studio 2008 Express Tools for .NET Framework
"{B57EAFF2-D6EE-4C6C-9175-ED9F17BFC1BC}" = Windows Live Messenger
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{BCC899FE-2DAA-460C-A5FB-60291E73D9C3}" = Microsoft SQL Server Compact 3.5 ENU
"{BF839132-BD43-4056-ACBF-4377F4A88E2A}" = Acer ePresentation Management
"{C008BDCC-69EC-47F5-8459-AF3994C07A3C}" = ProxyCap
"{C06554A1-2C1E-4D20-B613-EE62C79927CC}" = Acer eNet Management
"{C3ABE126-2BB2-4246-BFE1-6797679B3579}" = LG USB Modem driver
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE386A4E-D0DA-4208-8235-BCE43275C694}" = LightScribe 1.4.142.1
"{CE65A9A0-9686-45C6-9098-3C9543A412F0}" = Acer eSettings Management
"{D09605BE-5587-4B0C-86C8-69B5092CB80F}" = Debugging Tools for Windows (x86)
"{D3B3B9B2-FE73-44CB-8C0A-F737D92F991B}" = Broadcom Gigabit Integrated Controller
"{D8BB36D2-0C3A-49ED-B164-05785A3FECB5}" = League of Legends Test Realm
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{DF38F332-2AC3-37FF-9FDC-8C4C80E531FB}" = MSDN Library for Microsoft Visual Studio 2008 Express Editions
"{E3AA4ACF-5F67-40BC-A302-52C45C210141}" = League of Legends Test Realm
"{E6158D07-2637-4ECF-B576-37C489669174}" = Windows Live Call
"{E7084B89-69E0-46B3-A118-8F99D06988CD}" = Microsoft SQL Server VSS Writer
"{EF7E931D-DC84-471B-8DB6-A83358095474}" = EA Download Manager
"{EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}" = Acer Arcade Deluxe
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{F2996FC2-47B9-409E-9442-C89390D49D8E}" = Windows Vista Battery Sidebar Gadget
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint
"{F65E0C61-60D9-42EF-8ECD-BC8C4AA5DF01}" = League of Legends - Test Realm
"{FF29527A-44CD-3422-945E-981A13584000}" = VC Runtimes MSI
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 4.65
"8461-7759-5462-8226" = Vuze
"AC3Filter" = AC3Filter (remove only)
"Acer Assist" = Acer Assist
"Acer Registration" = Acer Registration
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"AudioCS" = Creative Audio Control Panel
"AVS Update Manager_is1" = AVS Update Manager 1.0
"AVS4YOU Software Navigator_is1" = AVS4YOU Software Navigator 1.3
"AVS4YOU Video Converter 6_is1" = AVS Video Converter 6
"Battle for Wesnoth_is1" = Battle for Wesnoth 1.4.5
"CCleaner" = CCleaner
"Chocolate Castle" = Chocolate Castle 1.09
"Cisco Connect" = Cisco Connect
"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFAOR2C06_118" = HDAUDIO Soft Data Fax Modem with SmartCP
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2008-09-21 16:18
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"CoreAVC 14 Day Trial Edition" = CoreAVC 14 Day Trial Edition (remove only)
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"Creative Sound Blaster Properties" = Creative Sound Blaster Properties
"DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
"DMC" = DMC Screen Saver
"Garena" = Garena
"GFWL_{4D530FA3-9B89-4186-98B7-F51000008100}" = Age of Empires Online
"Google Chrome" = Google Chrome
"GrabIt_is1" = GrabIt 1.7.2 Beta 3 (build 996)
"GridVista" = Acer GridVista
"Guild Wars" = Guild Wars
"HaaliMkx" = Haali Media Splitter
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"Host OpenAL" = Host OpenAL
"HyperCam 2" = HyperCam 2
"ImgBurn" = ImgBurn
"InstallShield_{13515135-48BB-4184-8C1F-2FAE0138E200}" = TBS WMP Plug-in
"InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
"InstallShield_{EF7E931D-DC84-471B-8DB6-A83358095474}" = EA Download Manager
"IrfanView" = IrfanView (remove only)
"Jasper's Journeys" = Jasper's Journeys 2.14
"LiveUpdate" = LiveUpdate 3.2 (Symantec Corporation)
"LManager" = Launch Manager
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.2.1300
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft IntelliPoint 8.1" = Microsoft IntelliPoint 8.1
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Microsoft Visual Basic 2008 Express Edition - ENU" = Microsoft Visual Basic 2008 Express Edition - ENU
"Mozilla Firefox 8.0.1 (x86 en-US)" = Mozilla Firefox 8.0.1 (x86 en-US)
"MSDN Library for Microsoft Visual Studio 2008 Express Editions" = MSDN Library for Microsoft Visual Studio 2008 Express Editions
"Mumble" = Mumble and Murmur
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"OpenAL" = OpenAL
"pcsx2-r4600" = PCSX2 - Playstation 2 Emulator
"Pidgin" = Pidgin
"PS3 Media Server" = PS3 Media Server
"QuickPar" = QuickPar 0.9
"RealPlayer 12.0" = RealPlayer
"Red Alert" = Red Alert Windows 95
"RollerCoaster Tycoon Deluxe_is1" = RollerCoaster Tycoon Deluxe
"ROSE Online Evolution162" = ROSE Online Evolution
"SABnzbd" = SABnzbd 0.6.10
"Sandboxie" = Sandboxie 3.52
"SDKSetup_7.1.7600.0.30514" = Microsoft Windows SDK for Windows 7 (7.1)
lilhurricane

lilhurricane to PinkyThePig

Numquam oblita

to PinkyThePig
"ShiftWindow_is1" = ShiftWindow 1.02
"SpeedFan" = SpeedFan (remove only)
"StarCraft II" = StarCraft II
"StealthBot v2.6 Revision 3" = StealthBot v2.6 Revision 3 (remove only)
"Steam App 105600" = Terraria
"Steam App 107100" = Bastion
"Steam App 107210" = Space Pirates and Zombies Demo
"Steam App 111800" = Blocks That Matter
"Steam App 11200" = Shadowgrounds: Survivor
"Steam App 113200" = The Binding Of Isaac
"Steam App 1250" = Killing Floor
"Steam App 15520" = AaAaAA!!! - A Reckless Disregard for Gravity
"Steam App 18500" = Defense Grid: The Awakening
"Steam App 18700" = And Yet It Moves
"Steam App 19980" = Prince of Persia
"Steam App 220" = Half-Life 2
"Steam App 22650" = Alien Breed 2: Assault
"Steam App 24780" = SimCity 4 Deluxe
"Steam App 2500" = Shadowgrounds
"Steam App 2505" = Shadowgrounds Editor
"Steam App 25900" = King's Bounty: The Legend
"Steam App 26500" = Cogs
"Steam App 26800" = Braid
"Steam App 26900" = Crayon Physics Deluxe
"Steam App 29180" = Osmos
"Steam App 3170" = King's Bounty: Armored Princess
"Steam App 32370" = Star Wars: Knights of the Old Republic
"Steam App 35700" = Trine
"Steam App 36620" = Forsaken World
"Steam App 40700" = Machinarium
"Steam App 40800" = Super Meat Boy
"Steam App 41100" = Hammerfight
"Steam App 41500" = Torchlight
"Steam App 42910" = Magicka
"Steam App 49470" = Magic: The Gathering — Duels of the Planeswalkers 2012
"Steam App 550" = Left 4 Dead 2
"Steam App 55040" = Atom Zombie Smasher
"Steam App 570" = Dota 2
"Steam App 620" = Portal 2
"Steam App 63910" = King's Bounty: Crossworlds
"Steam App 70300" = VVVVVV
"Steam App 8930" = Sid Meier's Civilization V
"Steam App 91200" = Anomaly Warzone Earth
"Steam App 92800" = SpaceChem
"Steam App 93200" = Revenge of the Titans
"Steam App 9500" = Gish
"Steam App 96200" = Steel Storm: Burning Retribution
"Steam App 98100" = TRAUMA
"Steam App 98200" = Frozen Synapse
"Steam App 99900" = Spiral Knights
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"SystemRequirementsLab" = System Requirements Lab
"Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TurboBT" = TurboBT 5.0
"Uninstall_is1" = Uninstall 1.0.0.1
"VLC media player" = VLC media player 1.1.9
"Voxatron" = Voxatron 0.1.5
"WhiteSmoke" = WhiteSmoke
"Winamp" = Winamp
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinPcapInst" = WinPcap 3.1
"WinRAR archiver" = WinRAR archiver
"xchat" = XChat 2 (remove only)
"Xvid_is1" = Xvid 1.2.1 final uninstall
"Zen Puzzle Garden" = Zen Puzzle Garden 1.29

[color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Flux" = F.lux

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 4/16/2011 3:35:02 PM | Computer Name = Blake-PC | Source = System Restore | ID = 8193
Description =

Error - 4/16/2011 4:50:09 PM | Computer Name = Blake-PC | Source = VSS | ID = 8194
Description =

Error - 4/16/2011 4:51:40 PM | Computer Name = Blake-PC | Source = System Restore | ID = 8193
Description =

Error - 4/18/2011 7:40:58 PM | Computer Name = Blake-PC | Source = Application Hang | ID = 1002
Description = The program Steam.exe version 1.0.968.628 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 2a10 Start Time: 01cbfa9a5c7dffa0 Termination Time: 483

Error - 4/23/2011 2:42:56 PM | Computer Name = Blake-PC | Source = Application Hang | ID = 1002
Description = The program hl2.exe version 0.0.0.0 stopped interacting with Windows
and was closed. To see if more information about the problem is available, check
the problem history in the Problem Reports and Solutions control panel. Process
ID: 1104 Start Time: 01cc01e6355f0fb0 Termination Time: 53

Error - 4/24/2011 7:42:05 PM | Computer Name = Blake-PC | Source = MSSQL$SQLEXPRESS | ID = 9003
Description = The log scan number (219:280:1) passed to log scan in database 'master'
is not valid. This error may indicate data corruption or that the log file (.ldf)
does not match the data file (.mdf). If this error occurred during replication,
re-create the publication. Otherwise, restore from backup if the problem results
in a failure during startup.

Error - 4/24/2011 10:36:56 PM | Computer Name = Blake-PC | Source = MSSQL$SQLEXPRESS | ID = 9003
Description = The log scan number (219:280:1) passed to log scan in database 'master'
is not valid. This error may indicate data corruption or that the log file (.ldf)
does not match the data file (.mdf). If this error occurred during replication,
re-create the publication. Otherwise, restore from backup if the problem results
in a failure during startup.

Error - 4/24/2011 11:23:50 PM | Computer Name = Blake-PC | Source = MSSQL$SQLEXPRESS | ID = 9003
Description = The log scan number (219:280:1) passed to log scan in database 'master'
is not valid. This error may indicate data corruption or that the log file (.ldf)
does not match the data file (.mdf). If this error occurred during replication,
re-create the publication. Otherwise, restore from backup if the problem results
in a failure during startup.

Error - 4/26/2011 1:05:02 PM | Computer Name = Blake-PC | Source = Application Hang | ID = 1002
Description = The program hl2.exe version 0.0.0.0 stopped interacting with Windows
and was closed. To see if more information about the problem is available, check
the problem history in the Problem Reports and Solutions control panel. Process
ID: 14ac Start Time: 01cc0433e31d4050 Termination Time: 83

Error - 4/26/2011 3:14:45 PM | Computer Name = Blake-PC | Source = Application Hang | ID = 1002
Description = The program hl2.exe version 0.0.0.0 stopped interacting with Windows
and was closed. To see if more information about the problem is available, check
the problem history in the Problem Reports and Solutions control panel. Process
ID: 1620 Start Time: 01cc044612e4fb40 Termination Time: 85

[ System Events ]
Error - 12/1/2011 7:34:13 PM | Computer Name = Blake-PC | Source = disk | ID = 262151
Description = The device, \Device\Harddisk0\DR0, has a bad block.

Error - 12/1/2011 7:59:52 PM | Computer Name = Blake-PC | Source = disk | ID = 262151
Description = The device, \Device\Harddisk0\DR0, has a bad block.

Error - 12/1/2011 8:09:53 PM | Computer Name = Blake-PC | Source = disk | ID = 262151
Description = The device, \Device\Harddisk0\DR0, has a bad block.

Error - 12/1/2011 11:33:55 PM | Computer Name = Blake-PC | Source = disk | ID = 262151
Description = The device, \Device\Harddisk0\DR0, has a bad block.

Error - 12/14/2011 4:35:13 PM | Computer Name = Blake-PC | Source = Service Control Manager | ID = 7011
Description =

Error - 12/14/2011 8:04:00 PM | Computer Name = Blake-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =

Error - 12/14/2011 8:04:00 PM | Computer Name = Blake-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =

Error - 12/14/2011 8:08:38 PM | Computer Name = Blake-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 12/14/2011 8:08:38 PM | Computer Name = Blake-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 12/14/2011 8:08:38 PM | Computer Name = Blake-PC | Source = Service Control Manager | ID = 7024
Description =
lilhurricane

lilhurricane to PinkyThePig

Numquam oblita

to PinkyThePig
For reference only:

»[FireFox] Bizarre firefox crashes

LoPhatPhuud
MVM
join:2002-01-06
Albuquerque, NM

1 recommendation

LoPhatPhuud to PinkyThePig

MVM

to PinkyThePig
First:
What anti-virus were you running about the time the Firefox issue began. The logs do not show an active AV.

Second:
Start Firefox with extensions and plug-ins disabled. Does the problem continue?

Note: To start Firefox with extensions and plugins disabled:
Firefox -> Help -> Restart with Add-ons disabled...
PinkyThePig
Premium Member
join:2011-05-02
Tempe, AZ

PinkyThePig

Premium Member

In response to the first question the only antivirus I ever use is malware bytes and I try to run it at leas once a month (but I don't always remember to) and in response to the second question I had tried that and it didn't help out. I also tried making a new profile on firefox and reinstalling but none of that had helped either.

LoPhatPhuud
MVM
join:2002-01-06
Albuquerque, NM

1 recommendation

LoPhatPhuud to PinkyThePig

MVM

to PinkyThePig
MalwareBytes, while an excellent program, is not a full antivirus program.

In the absence of an AntiVirus program, the only recommendation I will make is reformat and re-install.

Reference:
»Security Cleanup FAQ »Noteworthy Comments About Compromised Computers