Seems to be running <B>OK</B>
Here's the logs
OTL logfile created on: 13/07/2012 14:29:28 - Run 1
OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\Jeff\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.75 Gb Total Physical Memory | 1.47 Gb Available Physical Memory | 53.61% Memory free
5.70 Gb Paging File | 4.40 Gb Available in Paging File | 77.13% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 69.52 Gb Total Space | 38.85 Gb Free Space | 55.89% Space Free | Partition Type: NTFS
Drive D: | 69.52 Gb Total Space | 54.12 Gb Free Space | 77.85% Space Free | Partition Type: NTFS
Computer Name: JEFF-PC | User Name: Jeff | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/07/13 14:27:54 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Jeff\Desktop\OTL.exe
PRC - [2011/01/17 18:37:40 | 011,322,880 | ---- | M] (OpenOffice.org) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe
PRC - [2011/01/17 18:37:40 | 011,314,688 | ---- | M] (OpenOffice.org) -- C:\Program Files\OpenOffice.org 3\program\soffice.bin
PRC - [2009/04/10 23:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/08/06 10:18:52 | 006,265,376 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2008/06/24 09:33:44 | 000,817,672 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\QtZyEmachine.EXE
PRC - [2008/06/11 11:18:30 | 000,024,576 | ---- | M] () -- C:\Program Files\eMachines\eMachines Recovery Management\Service\ETService.exe
PRC - [2007/01/04 19:48:50 | 000,112,152 | ---- | M] (InterVideo) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2005/12/03 14:52:36 | 001,015,808 | ---- | M] (UnH Solutions) -- C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe
========== Modules (No Company Name) ==========
MOD - [2012/06/03 19:48:38 | 000,985,088 | ---- | M] () -- C:\Program Files\OpenOffice.org 3\program\libxml2.dll
MOD - [2012/02/20 21:29:04 | 000,087,912 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012/02/20 21:28:42 | 001,242,472 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2008/04/04 12:00:54 | 000,002,560 | ---- | M] () -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTrayLOC.dll
========== Win32 Services (SafeList) ==========
SRV - [2008/06/11 11:18:30 | 000,024,576 | ---- | M] () [Auto | Running] -- C:\Program Files\eMachines\eMachines Recovery Management\Service\ETService.exe -- (ETService)
SRV - [2008/01/21 03:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/01/04 19:48:50 | 000,112,152 | ---- | M] (InterVideo) [Auto | Running] -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Jeff\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - [2008/08/20 03:12:00 | 007,546,080 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2008/07/22 03:21:08 | 000,015,872 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu)
DRV - [2008/07/21 09:12:22 | 000,145,952 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\nvstor32.sys -- (nvstor32)
DRV - [2008/06/11 11:13:24 | 000,015,392 | ---- | M] (Acer, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\int15.sys -- (int15)
DRV - [2007/04/17 20:09:28 | 000,011,032 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\regi.sys -- (regi)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://homepage.emachines.com/rdr.aspx?b=ACEW&l=0809&s=2&o=vp32&d=0612&m=emg420
IE - HKLM\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" =
http://www.google.com/search?source...nputEncoding}&oe={outputEncoding}&rlz=1I7ACEW
IE - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.co.uk/
IE - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\..\SearchScopes,DefaultScope = {62D30063-57E4-40A8-B197-FD74DBF4452E}
IE - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\..\SearchScopes\{62D30063-57E4-40A8-B197-FD74DBF4452E}: "URL" =
http://www.google.com/search?q={sea...&oe={outputEncoding}&sourceid=ie7&rlz=1I7ACEW
IE - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_33: C:\Windows\system32\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F53C93F1-07D5-430c-86D4-C9531B27DFAF}: C:\Program Files\AVG\AVG2012\Firefox\DoNotTrack\
O1 HOSTS File: ([2012/07/13 00:55:17 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AVG Do Not Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files\AVG\AVG2012\avgdtiex.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [IE Privacy Keeper] C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe (UnH Solutions)
O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\QtZyEmachine.EXE (Dritek System Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [WarReg_PopUp] C:\Program Files\eMachines\WR_PopUp\WarReg_PopUp.exe (eMachines)
O4 - Startup: C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1467792508-2178941819-3802134164-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files\AVG\AVG2012\avgdtiex.dll (AVG Technologies CZ, s.r.o.)
O9 - Extra 'Tools' menuitem : IE Privacy Keeper - {D799B0E4-BEDE-41d2-AEE0-1E3A1C4EF918} - C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe (UnH Solutions)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab (Java Plug-in 1.6.0_33)
O16 - DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab (Java Plug-in 1.6.0_33)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab (Java Plug-in 1.6.0_33)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{35BB6215-BA26-4981-B6AB-9DA0FC76046E}: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\eM1_Wide.bmp
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\eM1_Wide.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2012/07/13 14:28:26 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Jeff\Desktop\OTL.exe
[2012/07/13 14:27:03 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{486EE1EF-A7BD-4F08-A58D-0A8BDE77450E}
[2012/07/13 14:26:42 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{EEF498C7-FE69-4DF1-A314-1AD66D8CDA18}
[2012/07/13 14:26:31 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{0E9D0353-928B-498F-93CB-BB893FB62C2E}
[2012/07/13 01:05:09 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/07/13 01:05:01 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012/07/13 01:05:01 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\temp
[2012/07/13 00:44:20 | 004,576,941 | R--- | C] (Swearware) -- C:\Users\Jeff\Desktop\ComboFix.exe
[2012/07/12 23:46:37 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/07/12 23:44:36 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{8421E53C-3738-4B4B-AD90-A8D81FDBB3DC}
[2012/07/12 23:43:21 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{3B3AFBBE-8E5F-4709-847B-E09FF0F76229}
[2012/07/12 15:04:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2012/07/12 15:04:23 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2012/07/12 12:56:54 | 000,000,000 | ---D | C] -- C:\Users\Jeff\logs
[2012/07/12 11:59:57 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2012/07/12 11:59:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\catroot2
[2012/07/12 11:44:56 | 000,000,000 | ---D | C] -- C:\Reg_Backup
[2012/07/12 11:23:21 | 000,181,064 | ---- | C] (Sysinternals) -- C:\Windows\PSEXESVC.EXE
[2012/07/12 11:21:59 | 000,000,000 | ---D | C] -- C:\Tweaking.com_Windows_Repair_Logs
[2012/07/12 11:03:41 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{6A330BE2-1C16-4F65-9138-EEAD27146062}
[2012/07/12 11:03:25 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{920DA113-09CF-4C90-BAB5-AB4D3A03C045}
[2012/07/12 11:03:02 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{C4AAF749-D59A-4431-8982-55F67E7F4FE0}
[2012/07/11 19:10:00 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/07/11 19:10:00 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/07/11 19:10:00 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/07/11 19:09:40 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2012/07/11 11:50:49 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\ElevatedDiagnostics
[2012/07/11 10:28:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2012/07/11 10:20:50 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{94196EA3-4018-4B7D-9DBB-456C4EA3C421}
[2012/07/11 10:20:16 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{0704AA33-8574-4082-AEC4-C2E68C2E36EA}
[2012/07/10 23:54:53 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{4E0F39CC-670E-41E8-9A3C-8D0958B90215}
[2012/07/10 14:44:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/07/10 14:44:43 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012/07/10 11:02:39 | 000,000,000 | ---D | C] -- C:\Users\Jeff\Documents\InterVideo
[2012/07/10 11:02:27 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Roaming\InterVideo
[2012/07/09 20:43:25 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Roaming\Malwarebytes
[2012/07/09 20:43:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/07/09 20:43:15 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/07/09 13:56:16 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{CF1CCC50-B0B9-472E-803B-F9D6503300B2}
[2012/07/07 14:56:17 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{7550A854-4479-4217-92D0-1541B42EE475}
[2012/07/07 14:55:55 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{4A61CCD8-4FD6-4210-9C95-A3DFC385FFE4}
[2012/07/06 12:23:34 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{E0B86CB4-1BEE-4703-BF7D-7CD2270DE305}
[2012/07/06 12:23:15 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{F439B8AE-D22C-42F9-A1B3-71F6B51B2ADB}
[2012/07/05 16:33:58 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{6A1198A9-4F8C-4AD4-9555-D835879CA415}
[2012/07/05 16:33:35 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{03A12F39-48A6-476E-86D9-855FAFE9D83C}
[2012/07/04 13:09:47 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{244D5B8F-50E4-42FB-AE0D-0434C84F619A}
[2012/07/04 13:09:15 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{0796BD6D-9333-4F28-9223-D11C58712030}
[2012/07/03 16:05:34 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{96C3F418-FE1F-43CD-BDF4-AFC635F294C1}
[2012/07/03 16:05:22 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{34C0BEE4-64B5-44CC-AAA4-8DD4DA182377}
[2012/07/02 22:10:35 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{98B51387-2E2B-4A1A-94EA-ACA85DD5B9AE}
[2012/07/02 22:10:11 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{F345071C-7E0C-45B3-BCB2-6DD10DB39588}
[2012/07/01 19:49:20 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{517F1EE2-A815-4A46-84C8-03A1AAE04852}
[2012/07/01 19:48:50 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{45ECFB5D-3844-489A-A203-781E4425EC11}
[2012/06/30 17:17:32 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{CE247976-4E74-4727-B075-1160DDCAD798}
[2012/06/30 17:17:04 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{5B05675A-8033-4332-85BD-B87148C57C18}
[2012/06/29 09:28:42 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{FDA5F888-7D15-43D8-B245-4193EA028C3A}
[2012/06/29 09:28:07 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{8F75E1AA-F897-4EAD-99F1-D69031AB2156}
[2012/06/28 12:54:05 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{A806548A-CC76-4258-A87B-6AB6405D54C6}
[2012/06/28 12:53:46 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{05DD32FC-BB6F-495D-93EE-D5060D704A64}
[2012/06/27 13:45:44 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{0B36D1A6-6462-4909-B7FB-EAFDEBCB4EA3}
[2012/06/27 13:45:24 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{56A14038-B18F-40BB-B2BC-352DACC2969C}
[2012/06/25 19:34:06 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{05F80646-62B3-43AA-9A92-F4D61F4ABACB}
[2012/06/25 19:33:47 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{CB0B8CDE-4E7D-4C54-9B1E-2EDA50FB0935}
[2012/06/24 10:33:40 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{C6611571-9ED9-4394-B881-666CCFD9A3DB}
[2012/06/24 10:33:02 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{0F13CB4C-E0E2-4922-96FE-1BBFCEFD1220}
[2012/06/22 16:10:33 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{5BDE8C0B-1F5F-4B65-854A-FF0D977740E4}
[2012/06/22 16:10:15 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{60E4E911-638E-4260-867A-8676AC544F2F}
[2012/06/21 16:15:20 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{E7E97699-FC9B-4736-84AD-075C2060C038}
[2012/06/21 16:14:56 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{4831D65C-1D72-4D1D-8BBE-938B3B1D52F7}
[2012/06/20 13:19:22 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2012/06/20 13:04:55 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{B235F3A2-62DE-48E5-8DF0-7999C6B22FC6}
[2012/06/20 13:04:35 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{DAC1C1B3-CBAF-447E-AEE3-671BB37AFA8B}
[2012/06/18 14:22:14 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{AB062E04-55C1-48EF-9FFE-8617C7727ED4}
[2012/06/17 12:09:25 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{7D0B4857-E983-41BF-BF68-517C336D5576}
[2012/06/15 13:31:17 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{29987AF5-6D54-4FF6-BF0C-6F4CC84F9259}
[2012/06/14 20:10:06 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{6F928CD3-68C5-4554-BCE8-2916C1C4D281}
[2012/06/14 20:09:26 | 000,000,000 | ---D | C] -- C:\Users\Jeff\AppData\Local\{1C4091AA-DC9B-42CE-975D-0220C283119A}
[1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/07/13 14:33:09 | 000,609,196 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/07/13 14:33:09 | 000,108,672 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/07/13 14:28:25 | 000,027,744 | ---- | M] () -- C:\ProgramData\nvModes.001
[2012/07/13 14:27:54 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Jeff\Desktop\OTL.exe
[2012/07/13 14:25:28 | 000,000,000 | ---- | M] () -- C:\Windows\System32\LogConfigTemp.xml
[2012/07/13 14:25:25 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/07/13 14:25:25 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/07/13 14:25:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/07/13 14:25:15 | 2951,057,408 | -HS- | M] () -- C:\hiberfil.sys
[2012/07/13 01:07:12 | 000,033,758 | ---- | M] () -- C:\Users\Jeff\AppData\Local\dt.dat
[2012/07/13 00:55:17 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2012/07/13 00:33:02 | 000,139,264 | ---- | M] () -- C:\Users\Jeff\Desktop\SystemLook.exe
[2012/07/12 23:45:42 | 004,576,941 | R--- | M] (Swearware) -- C:\Users\Jeff\Desktop\ComboFix.exe
[2012/07/12 15:39:42 | 000,442,725 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.msn
[2012/07/12 13:51:09 | 000,328,936 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2012/07/12 12:00:15 | 000,181,064 | ---- | M] (Sysinternals) -- C:\Windows\PSEXESVC.EXE
[2012/07/12 12:00:15 | 000,000,042 | ---- | M] () -- C:\repairs_running.dat
[2012/07/11 19:19:41 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20120712-153942.backup
[2012/07/11 11:44:26 | 000,000,104 | ---- | M] () -- C:\Users\Jeff\Application Data\Microsoft\Internet Explorer\Quick Launch\The Internet - Shortcut.lnk
[2012/07/09 20:32:08 | 000,000,680 | ---- | M] () -- C:\Users\Jeff\AppData\Local\d3d9caps.dat
[2012/06/28 22:08:14 | 000,167,776 | ---- | M] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm
[2012/06/13 20:16:49 | 000,210,407 | ---- | M] () -- C:\Users\Jeff\Documents\V376241CTITC2_0345E491EB4B489897EBF89D24B683A4.pdf
[1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/07/13 01:07:12 | 000,033,758 | ---- | C] () -- C:\Users\Jeff\AppData\Local\dt.dat
[2012/07/13 00:35:33 | 000,139,264 | ---- | C] () -- C:\Users\Jeff\Desktop\SystemLook.exe
[2012/07/12 23:41:28 | 2951,057,408 | -HS- | C] () -- C:\hiberfil.sys
[2012/07/12 11:57:53 | 000,303,616 | ---- | C] ( ) -- C:\SetACL.exe
[2012/07/12 11:23:20 | 000,000,042 | ---- | C] () -- C:\repairs_running.dat
[2012/07/11 19:10:00 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/07/11 19:10:00 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/07/11 19:10:00 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/07/11 19:10:00 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/07/11 19:10:00 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012/07/11 11:44:26 | 000,000,104 | ---- | C] () -- C:\Users\Jeff\Application Data\Microsoft\Internet Explorer\Quick Launch\The Internet - Shortcut.lnk
[2012/07/09 20:27:59 | 000,000,680 | ---- | C] () -- C:\Users\Jeff\AppData\Local\d3d9caps.dat
[2012/06/13 20:16:48 | 000,210,407 | ---- | C] () -- C:\Users\Jeff\Documents\V376241CTITC2_0345E491EB4B489897EBF89D24B683A4.pdf
[2012/06/04 17:34:47 | 000,003,584 | ---- | C] () -- C:\Users\Jeff\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/06/03 22:01:01 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2012/06/03 22:00:33 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2012/06/03 20:02:07 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2012/06/03 18:27:52 | 000,487,424 | ---- | C] () -- C:\Windows\System32\INT15.dll
[2012/06/03 18:25:44 | 000,027,744 | ---- | C] () -- C:\ProgramData\nvModes.001
[2012/06/03 18:24:55 | 000,027,744 | ---- | C] () -- C:\ProgramData\nvModes.dat
========== LOP Check ==========
[2012/06/04 13:40:48 | 000,000,000 | ---D | M] -- C:\Users\Jeff\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2012/07/10 11:02:27 | 000,000,000 | ---D | M] -- C:\Users\Jeff\AppData\Roaming\InterVideo
[2012/07/13 14:26:12 | 000,000,000 | ---D | M] -- C:\Users\Jeff\AppData\Roaming\MailWasherPro
[2012/06/03 19:49:44 | 000,000,000 | ---D | M] -- C:\Users\Jeff\AppData\Roaming\OpenOffice.org
[2012/06/05 16:18:11 | 000,000,000 | ---D | M] -- C:\Users\Jeff\AppData\Roaming\Windows Live Writer
[2012/07/13 01:12:00 | 000,032,552 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >
OTL Extras logfile created on: 13/07/2012 14:29:28 - Run 1
OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\Jeff\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.75 Gb Total Physical Memory | 1.47 Gb Available Physical Memory | 53.61% Memory free
5.70 Gb Paging File | 4.40 Gb Available in Paging File | 77.13% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 69.52 Gb Total Space | 38.85 Gb Free Space | 55.89% Space Free | Partition Type: NTFS
Drive D: | 69.52 Gb Total Space | 54.12 Gb Free Space | 77.85% Space Free | Partition Type: NTFS
Computer Name: JEFF-PC | User Name: Jeff | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe ()
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome ()
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 ()
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome ()
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome ()
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 ()
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "%programfiles%\internet explorer\iexplore.exe" ()
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06F2B5CE-89FF-46EE-957C-E1DA839979CE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{1D1A465C-21FA-4B14-8F18-7F9A8A491ECB}" = rport=445 | protocol=6 | dir=out | app=system |
"{2E3E24F9-37FD-4496-9269-17CDF53F47C6}" = lport=137 | protocol=17 | dir=in | app=system |
"{383A04FD-074D-4025-9AA3-F6DCA48FF57F}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{38C380B2-F29C-40D9-B9D2-CF5BF66F93F6}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{67585BD3-A5A9-4072-9EB7-01A52BD51522}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{7557EF1D-D58E-4449-B6C8-A1E5A880ACB1}" = rport=137 | protocol=17 | dir=out | app=system |
"{8F566279-63B8-44E0-BCC8-120450026E50}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{98FBE655-0FBC-4DEA-9943-645D0FAD3499}" = lport=138 | protocol=17 | dir=in | app=system |
"{991C1E98-213B-4986-B0BC-BAA090173915}" = lport=139 | protocol=6 | dir=in | app=system |
"{A7C7F7F3-F873-4DC2-8138-301CB0FCA9E9}" = rport=138 | protocol=17 | dir=out | app=system |
"{C286A45B-A947-49B4-BAB3-5B76A5233424}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{C482D20E-1C15-4C08-AF68-9C1211D6E2B3}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{D7AC4B6B-8FDE-42E1-B58E-8B0890DBC3D1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss |
name=@firewallapi.dll,-28539 |
"{D8979CC5-3457-4474-ACBF-809CDB850D7B}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{D9F71384-68EF-4D94-BBF4-AA5039A4BD92}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{F5378DCE-0B44-4CC1-839F-42BD9E392B96}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F9B72107-85B0-42C9-8B46-A60111235E53}" = rport=139 | protocol=6 | dir=out | app=system |
"{FC92228D-6833-43A5-871F-A67D11BB60C1}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{FFB1A7A9-6F50-428F-A0CB-1A0C1078F8E9}" = lport=445 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{11B5906D-36B3-4466-9BED-24931210378F}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{2C4E8759-7937-4471-BE2B-44B19703DA8C}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe |
"{2D79CEE6-BE7E-4A5C-B433-1F0240BDDD35}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe |
"{2DC40111-B005-468E-ACCB-4B52254E23DE}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{40F1B4E1-91F2-406B-B90B-E604A06800FA}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{5CD4C9B1-A434-4C12-AB88-D790E5D58018}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\client\agentsvc.exe |
"{64264DF2-CDC2-4987-BADD-399FF7009F88}" = protocol=58 | dir=in |
name=@firewallapi.dll,-28545 |
"{71193A85-D40E-4EFB-B998-3D4787C05B23}" = protocol=1 | dir=in |
name=@firewallapi.dll,-28543 |
"{81C717B9-CE59-4546-996F-B874589F3801}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe |
"{9CABAE96-C7D8-440D-9661-1EF793C51F6F}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe |
"{A430D6F4-2275-49D9-95BF-92A611A06923}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe |
"{AE77B94E-A2F4-4353-96EE-51DA5E2404EA}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe |
"{AF21E004-C138-4517-A2BB-4935CE913B6B}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B52E5545-F2DF-4DE6-8F1B-C22B5F23348E}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
"{BC04C725-96B4-4762-84E1-E35562E4EE03}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{BDDBEDDF-C8A6-456C-A0D0-3F0F2554FD03}" = protocol=1 | dir=out |
name=@firewallapi.dll,-28544 |
"{BECF70A5-AECA-4D4E-B47E-F4251176FD66}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe |
"{C5B849F4-C361-49E5-98DA-EB293090067D}" = protocol=58 | dir=out |
name=@firewallapi.dll,-28546 |
"{CC66C7A5-16B2-4E0A-ADED-EBBD2CEF0CB9}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe |
"{D2C055EE-2124-4B0E-99C4-5DE725191E04}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe |
"{D7684545-3E52-4425-B880-21FE0176F157}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe |
"{E0139D9C-D2BA-4C43-A657-B8CF5A975185}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe |
"{EE3C351A-573B-421C-A734-6ACFB2ED38CE}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe |
"{F0BD9CF9-1C78-4B40-8BD8-C6FEA3C6F267}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{F512048F-1985-4F49-A978-B1A99EE8D26A}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\client\agentsvc.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
"{23B8A91D-680B-462B-87AD-3D70F7341731}" = iTunes
"{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
"{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 33
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3E171899-0175-47CC-84C4-562ACDD4C021}" = OpenOffice.org 3.3
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}" = eMachines ScreenSaver
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = eMachines Recovery Management
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AC76BA86-7AD7-1033-7B44-A92000000001}" = Adobe Reader 9.2
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE386A4E-D0DA-4208-8235-BCE43275C694}" = LightScribe 1.4.142.1
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
"{EFC04D3F-A152-47E7-8517-EE0F6201AFEF}" = Apple Mobile Device Support
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"IE Privacy Keeper" = IE Privacy Keeper
"InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5
"InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
"InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
"LManager" = Launch Manager
"MailWasher Free_is1" = MailWasher Free
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.61.0.1400
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"NVIDIA Drivers" = NVIDIA Drivers
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WinLiveSuite" = Windows Live Essentials
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 11/07/2012 08:34:27 | Computer Name = Jeff-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 0.0.0.0 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 1698 Start Time: 01cd5f60e6cc0300 Termination Time: 343
Error - 11/07/2012 10:09:05 | Computer Name = Jeff-PC | Source = WinMgmt | ID = 10
Description =
Error - 11/07/2012 12:58:01 | Computer Name = Jeff-PC | Source = WinMgmt | ID = 10
Description =
Error - 11/07/2012 13:31:56 | Computer Name = Jeff-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 0.0.0.0 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 122c Start Time: 01cd5f8ae930bc3f Termination Time: 328
Error - 11/07/2012 14:09:23 | Computer Name = Jeff-PC | Source = Application Error | ID = 1000
Description = Faulting application SynTPEnh.exe, version 10.2.4.0, time stamp 0x4790f827,
faulting module SynTPEnh.exe, version 10.2.4.0, time stamp 0x4790f827, exception
code 0xc0000409, fault offset 0x0002983c, process id 0xa28, application start time
0x01cd5f862f04df2f.
Error - 11/07/2012 14:20:58 | Computer Name = Jeff-PC | Source = WinMgmt | ID = 10
Description =
Error - 11/07/2012 14:36:45 | Computer Name = Jeff-PC | Source = WinMgmt | ID = 10
Description =
Error - 12/07/2012 06:00:28 | Computer Name = Jeff-PC | Source = WinMgmt | ID = 10
Description =
Error - 12/07/2012 06:29:23 | Computer Name = Jeff-PC | Source = WinMgmt | ID = 10
Description =
Error - 12/07/2012 06:44:13 | Computer Name = Jeff-PC | Source = WinMgmt | ID = 10
Description =
[ System Events ]
Error - 12/07/2012 19:21:07 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 12/07/2012 19:27:00 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 12/07/2012 19:27:00 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7023
Description =
Error - 12/07/2012 19:45:18 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7023
Description =
Error - 12/07/2012 19:45:26 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7023
Description =
Error - 12/07/2012 19:46:17 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7034
Description =
Error - 12/07/2012 19:46:24 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 12/07/2012 19:49:11 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 12/07/2012 19:55:26 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 13/07/2012 09:27:02 | Computer Name = Jeff-PC | Source = Service Control Manager | ID = 7000
Description =
< End of report >
Thank You