Inactive Windows starts but doesn't finish

Slantey

Posts: 6   +0
Hi. I'd be really grateful for some help! Since 22/6 my pc hasn't booted into Windows (XP, SP3): the Windows startup window appears for about 30s, then screen goes dark & all hdd activity seems to stop. (But monitor stays on, without the expected No video signal message or whatever). CTRL-ALT-DEL does nothing, so I have to press the reset button. I can boot into safe mode, but I don't have networking/online access even if I choose safe mode with networking. (Poss because I use a usb wifi adaptor?). Booting into last known good configuration doesn't have any effect, nor does System Restore (2 restore points tried). I don't remember anything untoward happening on 21/6. I've tried downloading McAfee (using another pc) & running a virus check, but can't do this without web access, and I haven't got access to my normal AVG in Safe Mode.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-06-2015
Ran by Martyn (administrator) on MAINPC on 25-06-2015 11:18:58
Running from C:\Documents and Settings\Martyn\Desktop
Loaded Profiles: Martyn (Available Profiles: Martyn & Guest)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Safe Mode (minimal)
Tutorial for Farbar Recovery Scan Tool:

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)



==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSConfig] => C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [169984 2008-04-14] (Microsoft Corporation)
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
HKU\S-1-5-21-329068152-963894560-839522115-1004\...\MountPoints2: E - E:\stub.exe
HKU\S-1-5-21-329068152-963894560-839522115-1004\...\MountPoints2: {32524920-98ce-11db-af6f-806d6172696f} - E:\stub.exe
HKU\S-1-5-21-329068152-963894560-839522115-1004\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssmypics.scr [47104 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [DWQueuedReporting] => C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [RunNarrator] => C:\WINDOWS\system32\Narrator.exe [53760 2008-04-14] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll [2015-06-10] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-12-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-12-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-12-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-12-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-12-06] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2013-12-06] (Google)
BootExecute: autocheck autochk * lsdeleteC:\PROGRA~1\AVG\AVG10\avgchsvx.exe /syncC:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-329068152-963894560-839522115-1004\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-329068152-963894560-839522115-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/advanced_search
HKU\S-1-5-21-329068152-963894560-839522115-1004\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
HKU\S-1-5-21-329068152-963894560-839522115-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wanadoo.co.uk
HKU\S-1-5-21-329068152-963894560-839522115-1004\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.co.uk/iesearch/default.htm
URLSearchHook: HKU\S-1-5-21-329068152-963894560-839522115-1004 - (No Name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - No File
SearchScopes: HKLM -> {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = http://us.yhs.search.yahoo.com/avg/...ahoo_avg_hs2-tb-web_chrome_us&p={searchTerms}
SearchScopes: HKU\.DEFAULT -> {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = http://us.yhs.search.yahoo.com/avg/...ahoo_avg_hs2-tb-web_chrome_us&p={searchTerms}
SearchScopes: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={...10f64953304&lang=us&ds=AVG&pr=fr&d=2011-12-08 10:34:50&v=14.2.0.1&pid=avg&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL =
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04] (Adobe Systems Incorporated)
BHO: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12] (DivX, LLC)
BHO: AVG Safe Search -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> C:\Program Files\AVG\AVG10\avgssie.dll [2011-09-09] (AVG Technologies CZ, s.r.o.)
BHO: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-04] (Oracle Corporation)
BHO: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: AVG Security Toolbar -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll [2013-02-18] ()
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> c:\program files\google\googletoolbar2.dll [2006-11-17] (Google Inc.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-01-31] (Skype Technologies S.A.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll [2010-10-07] (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-04] (Oracle Corporation)
Toolbar: HKLM - &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll [2006-11-17] (Google Inc.)
Toolbar: HKLM - No Name - {8B68564D-53FD-4293-B80C-993A9F3988EE} - No File
Toolbar: HKLM - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKLM - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll [2013-02-18] ()
Toolbar: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> No Name - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File
Toolbar: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> No Name - {C4069E3A-68F1-403E-B40E-20066696354B} - No File
Toolbar: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> &Google - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll [2006-11-17] (Google Inc.)
Toolbar: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> No Name - {A057A204-BACC-4D26-9990-79A187E2698E} - No File
Toolbar: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKU\S-1-5-21-329068152-963894560-839522115-1004 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/downl...-40e1-a617-af65a72a0465/LegitCheckControl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} http://212.98.46.120/activex/AxisCamControl.ocx
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} http://static.photobox.co.uk/sg/common/uploader_uni.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll [2011-02-08] (AVG Technologies CZ, s.r.o.)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-01-31] (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\14.2.0\ViProtocol.dll [2013-02-18] ()
ShellExecuteHooks: Microsoft AntiMalware ShellExecuteHook - {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - C:\Program Files\Windows Defender\MpShHook.dll [83224 2006-11-03] (Microsoft Corporation)
Winsock: Catalog5 06 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{1CF93FCF-8C59-4CC0-91FA-25BE08135B38}: [NameServer] 194.168.4.100,194.168.8.100

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Martyn\Application Data\Mozilla\Firefox\Profiles\otltn78s.default
FF Homepage: https://www.edmodo.com/?language=en&auto_selected_lang=true&logout=true
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_160.dll [2015-06-13] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw_1213153.dll [2014-06-24] (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2012-04-05] ()
FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll [2013-02-18] (AVG Technologies)
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2011-04-20] (CANON INC.)
FF Plugin: @canon.com/MycameraPlugin -> C:\Program Files\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.)
FF Plugin: @checkpoint.com/FFApi -> C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll No File
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-12-13] (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-04] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2008-11-13] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-26] (Google)
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll [2006-12-05] (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=1.0.2.2629 -> C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll [2006-12-05] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll [2006-12-05] (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll [2013-12-06] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll [2013-12-06] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @zylom.com/ZylomGamesPlayer -> C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll [2006-09-26] (Zylom)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2012-04-04] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdrmv2.dll [2007-03-27] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdsplay.dll [2007-03-27] (Microsoft Corporation (written by Digital Renaissance Inc.))
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL [2007-03-22] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2012-04-04] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll [2006-12-05] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2013-09-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2013-09-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2013-09-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2013-09-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2013-09-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2013-09-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprjplug.dll [2006-12-05] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpjplug.dll [2006-12-05] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwmsdrm.dll [2007-03-27] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npzylomgamesplayer.dll [2006-09-26] (Zylom)
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\Martyn\Application Data\Mozilla\Firefox\Profiles\otltn78s.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-04-27]
FF Extension: CCC001 - C:\Documents and Settings\Martyn\Application Data\Mozilla\Firefox\Profiles\otltn78s.default\Extensions\{91da5e8a-3318-4f8c-b67e-5964de3ab546} [2015-02-15]
FF Extension: FireFTP - C:\Documents and Settings\Martyn\Application Data\Mozilla\Firefox\Profiles\otltn78s.default\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2015-05-29]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2015-06-03]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-08-21]
FF HKLM\...\Firefox\Extensions: [{1E73965B-8B48-48be-9C8D-68B920ABC1C4}] - C:\Program Files\AVG\AVG10\Firefox4
FF Extension: AVG Safe Search - C:\Program Files\AVG\AVG10\Firefox4 [2011-03-31]
FF HKLM\...\Firefox\Extensions: [avg@toolbar] - C:\Documents and Settings\All Users\Application Data\AVG Secure Search\FireFoxExt\14.1.0.10
FF Extension: AVG Security Toolbar - C:\Documents and Settings\All Users\Application Data\AVG Secure Search\FireFoxExt\14.1.0.10 [2013-02-11]
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &video& - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-10-01]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-06-03]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [jmfkcklnlgedgbglfkkgedjfmejoahla] - C:\Program Files\AVG\AVG10\Chrome\safesearch.crx [2011-09-09]
CHR HKLM\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\Documents and Settings\All Users\Application Data\AVG Secure Search\ChromeExt\14.2.0.1\avg.crx [2013-02-18]
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2011-12-12]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation)
S3 AVG Security Toolbar Service; C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe [167264 2011-11-10] ()
S2 AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [7391072 2012-01-31] (AVG Technologies CZ, s.r.o.)
S2 avgwd; C:\Program Files\AVG\AVG10\avgwdsvc.exe [269520 2011-02-08] (AVG Technologies CZ, s.r.o.)
S2 C-DillaCdaC11BA; C:\WINDOWS\system32\drivers\CDAC11BA.EXE [39936 2007-02-11] (C-Dilla Ltd) [File not signed]
S2 CCALib8; C:\Program Files\Canon\CAL\CALMAIN.exe [96334 2009-09-08] (Canon Inc.) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S2 Iprip; C:\WINDOWS\System32\iprip.dll [35328 2008-04-14] (Microsoft Corporation)
S2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-11-04] (Oracle Corporation)
S3 Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [1753048 2011-04-07] (Lavasoft Limited)
S3 LPDSVC; C:\WINDOWS\system32\tcpsvcs.exe [19456 2006-02-28] (Microsoft Corporation)
S2 Maxtor Sync Service; C:\Program Files\Maxtor\Sync\SyncServices.exe [193888 2008-07-21] (Seagate Technology LLC)
S3 p2pgasvc; C:\WINDOWS\system32\p2pgasvc.dll [105472 2008-04-14] (Microsoft Corporation)
S3 Skype C2C Service; C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3289208 2013-01-31] (Skype Technologies S.A.)
S4 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-03-13] (Ulead Systems, Inc.) [File not signed]
S4 vToolbarUpdater14.0.1; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.0.1\ToolbarUpdater.exe [945328 2013-01-23] ()
S4 vToolbarUpdater14.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe [968880 2013-02-18] ()
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [13592 2006-11-03] (Microsoft Corporation)
S4 WysePocketCloud; C:\Program Files\Wyse\PocketCloud Windows Companion\PocketCloudService.exe [191488 2012-11-05] () [File not signed]
S4 WyseRemoteAccess; C:\Program Files\Wyse\PocketCloud Windows Companion\WyseRemoteAccess.exe [1436160 2012-11-05] (Wyse Technology.) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21361 2014-03-27] (Cisco Systems, Inc.) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
S3 alcan5wn; C:\WINDOWS\System32\DRIVERS\alcan5wn.sys [53600 2003-12-08] (THOMSON) [File not signed]
S3 alcaudsl; C:\WINDOWS\System32\DRIVERS\alcaudsl.sys [70688 2004-02-17] (THOMSON) [File not signed]
S1 AmdPPM; C:\WINDOWS\System32\DRIVERS\AmdPPM.sys [33792 2007-04-16] (Advanced Micro Devices)
S3 AVGIDSDriver; C:\WINDOWS\System32\DRIVERS\AVGIDSDriver.Sys [134480 2011-05-27] (AVG Technologies CZ, s.r.o. )
R0 AVGIDSEH; C:\WINDOWS\System32\DRIVERS\AVGIDSEH.Sys [22992 2011-02-22] (AVG Technologies CZ, s.r.o. )
S3 AVGIDSFilter; C:\WINDOWS\System32\DRIVERS\AVGIDSFilter.Sys [24144 2011-02-10] (AVG Technologies CZ, s.r.o. )
S3 AVGIDSShim; C:\WINDOWS\System32\DRIVERS\AVGIDSShim.Sys [27216 2011-02-10] (AVG Technologies CZ, s.r.o. )
S1 Avgldx86; C:\WINDOWS\System32\DRIVERS\avgldx86.sys [255968 2012-11-12] (AVG Technologies CZ, s.r.o.)
S1 Avgmfx86; C:\WINDOWS\System32\DRIVERS\avgmfx86.sys [34896 2011-03-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\WINDOWS\System32\DRIVERS\avgrkx86.sys [32592 2011-03-16] (AVG Technologies CZ, s.r.o.)
S1 Avgtdix; C:\WINDOWS\System32\DRIVERS\avgtdix.sys [299552 2014-11-04] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [33112 2013-02-18] (AVG Technologies)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S2 CdaC15BA; C:\WINDOWS\system32\drivers\CDAC15BA.SYS [8864 2007-02-11] () [File not signed]
R1 Cdr4_xp; C:\WINDOWS\system32\Drivers\Cdr4_xp.sys [9072 2011-11-29] (Sonic Solutions)
R1 Cdralw2k; C:\WINDOWS\system32\Drivers\Cdralw2k.sys [9200 2011-11-29] (Sonic Solutions)
S1 cdudf_xp; C:\WINDOWS\system32\Drivers\cdudf_xp.sys [241152 2002-12-17] (Roxio) [File not signed]
S3 DCamUSBSQTECH; C:\WINDOWS\System32\Drivers\SQcaptur.sys [30921 2003-01-10] (Service & Quality Technology.) [File not signed]
S3 dvd_2K; C:\WINDOWS\system32\Drivers\dvd_2K.sys [25930 2002-12-17] (Roxio) [File not signed]
S1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [376920 2013-09-20] (Symantec Corporation)
S3 FilterService; C:\WINDOWS\System32\DRIVERS\lvuvcflt.sys [23832 2009-10-07] (Logitech Inc.)
S3 HdAudAddService; C:\WINDOWS\System32\drivers\HdAudio.sys [145920 2005-01-07] (Windows (R) Server 2003 DDK provider)
S3 irsir; C:\WINDOWS\System32\DRIVERS\irsir.sys [18688 2001-08-17] (Microsoft Corporation)
R0 Lbd; C:\WINDOWS\System32\DRIVERS\Lbd.sys [64288 2010-09-23] (Lavasoft AB)
S3 LVPr2Mon; C:\WINDOWS\System32\Drivers\LVPr2Mon.sys [25752 2009-10-07] ()
S3 LVUSBSta; C:\WINDOWS\System32\drivers\LVUSBSta.sys [41752 2008-12-17] (Logitech Inc.)
S3 mmc_2K; C:\WINDOWS\system32\Drivers\mmc_2K.sys [30630 2002-12-17] (Roxio) [File not signed]
S3 MXOPSWD; C:\WINDOWS\System32\DRIVERS\mxopswd.sys [22152 2007-05-03] (Maxtor Corp.)
S3 Navcar; C:\WINDOWS\System32\DRIVERS\Navcar.sys [30329 2006-09-18] (NAVMAN) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54784 2008-08-01] (NVIDIA Corporation)
S3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2008-08-01] (NVIDIA Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [9856 2002-10-01] (Padus, Inc.) [File not signed]
R1 pwd_2k; C:\WINDOWS\system32\Drivers\pwd_2k.sys [139674 2002-12-17] (Roxio) [File not signed]
S3 Rasirda; C:\WINDOWS\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation)
S3 RTL2832U_IRHID; C:\WINDOWS\System32\DRIVERS\RTL2832U_IRHID.sys [41120 2009-03-05] (Realtek)
S3 RTL8192cu; C:\WINDOWS\System32\DRIVERS\rtwlanu.sys [1173992 2012-10-13] (Realtek Semiconductor Corporation )
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [721904 2009-08-16] () [File not signed]
S2 StarOpen; C:\WINDOWS\system32\Drivers\StarOpen.sys [13120 2013-08-25] ()
S1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
S2 TVicPort; C:\WINDOWS\system32\Drivers\TVicPort.sys [4080 1999-05-20] () [File not signed]
R1 UdfReadr_xp; C:\WINDOWS\system32\Drivers\UdfReadr_xp.sys [206464 2002-12-17] (Roxio) [File not signed]
R3 WmBEnum; C:\WINDOWS\System32\drivers\WmBEnum.sys [10144 2005-04-12] (Logitech Inc.)
S3 WmFilter; C:\WINDOWS\System32\drivers\WmFilter.sys [22240 2005-04-12] (Logitech Inc.)
S3 WmVirHid; C:\WINDOWS\System32\drivers\WmVirHid.sys [5600 2005-04-12] (Logitech Inc.)
R3 WmXlCore; C:\WINDOWS\System32\drivers\WmXlCore.sys [45504 2005-04-12] (Logitech Inc.)
S3 XPTWOPORT; C:\WINDOWS\System32\DRIVERS\XPTWOPORT.SYS [15872 2012-06-18] (Realtek Semiconductor Corporation )
S3 AR9271; system32\DRIVERS\athuw.sys [X]
S3 FXDRV; \??\C:\Program Files\SuperUtility\Fxdrv.sys [X]
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S0 srescan; system32\ZoneLabs\srescan.sys [X]
S3 VICPRT11; \??\C:\WINDOWS\SYSTEM32\DRIVERS\VICPRT11.SYS [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-25 11:18 - 2015-06-25 11:19 - 00029100 _____ C:\Documents and Settings\Martyn\Desktop\FRST.txt
2015-06-25 11:18 - 2015-06-25 11:19 - 00000000 ____D C:\FRST
2015-06-25 11:17 - 2015-06-25 11:11 - 01636352 _____ (Farbar) C:\Documents and Settings\Martyn\Desktop\FRST.exe
2015-06-25 11:15 - 2015-06-25 11:17 - 00000000 ____D C:\Documents and Settings\Martyn\Desktop\Temp storage
2015-06-22 11:15 - 2015-06-22 11:15 - 00000298 _____ C:\Documents and Settings\Martyn\My Documents\NetUptime 20150622 111512.txt
2015-06-19 13:58 - 2015-06-19 13:58 - 00000000 ____D C:\Documents and Settings\Martyn\Start Menu\Programs\Dropbox
2015-06-19 13:56 - 2015-06-22 22:01 - 00000992 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-329068152-963894560-839522115-1004UA.job
2015-06-19 13:56 - 2015-06-22 14:01 - 00000940 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-329068152-963894560-839522115-1004Core.job
2015-06-19 13:56 - 2015-06-19 13:56 - 00000000 ____D C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox
2015-06-19 13:56 - 2015-06-19 13:56 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Dropbox
2015-06-07 20:21 - 2015-06-07 20:21 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\TEMP
2015-06-07 20:20 - 2015-06-07 20:21 - 00000000 ____D C:\Documents and Settings\Martyn\Application Data\Afreet
2015-06-07 20:20 - 2015-06-07 20:20 - 00000000 ____D C:\Program Files\Afreet
2015-06-07 20:20 - 2015-06-07 20:20 - 00000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\Omni-Rig
2015-06-07 20:20 - 2015-06-07 20:20 - 00000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\CW Skimmer
2015-06-07 20:18 - 2015-06-07 21:56 - 00000000 ____D C:\Program Files\CWSkimmer
2015-06-07 10:10 - 2015-06-07 10:10 - 00000164 _____ C:\WINDOWS\ODBC.INI
2015-06-03 22:59 - 2015-06-03 23:00 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-05-31 09:25 - 2015-05-31 09:25 - 00065536 _____ C:\WINDOWS\Minidump\Mini053115-01.dmp

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-25 11:19 - 2006-12-02 21:22 - 00000000 ____D C:\Documents and Settings\Martyn\Local Settings\Temp
2015-06-25 09:24 - 2011-03-02 20:22 - 00412289 _____ C:\aaw7boot.log
2015-06-25 09:24 - 2008-12-28 16:00 - 00000000 _____ C:\WINDOWS\system32\Drivers\logiflt.iad
2015-06-25 09:22 - 2008-12-28 16:01 - 00000000 _____ C:\WINDOWS\system32\Drivers\lvuvc.hs
2015-06-24 23:06 - 2006-12-02 21:22 - 00000278 ___SH C:\Documents and Settings\Martyn\ntuser.ini
2015-06-24 23:06 - 2006-12-02 21:05 - 02063594 _____ C:\WINDOWS\WindowsUpdate.log
2015-06-24 17:05 - 2006-02-28 13:00 - 00001374 _____ C:\WINDOWS\system32\wpa.dbl
2015-06-24 16:59 - 2012-04-23 12:44 - 00000000 ____D C:\Documents and Settings\Martyn\Application Data\vlc
2015-06-23 21:04 - 2008-10-06 17:53 - 00000000 _____ C:\WINDOWS\SYSTEM.INI
2015-06-23 21:04 - 2008-09-01 22:21 - 00000549 _____ C:\WINDOWS\win.ini
2015-06-23 21:04 - 2006-12-03 02:06 - 00000211 ___SH C:\boot.ini
2015-06-23 20:26 - 2008-01-20 23:40 - 00000000 ____D C:\WINDOWS\pss
2015-06-23 12:01 - 2013-08-10 15:09 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\Visual Studio 2010
2015-06-23 11:59 - 2009-04-01 20:05 - 00001324 _____ C:\WINDOWS\system32\d3d9caps.dat
2015-06-23 11:47 - 2014-03-05 15:24 - 00000000 ____D C:\Program Files\Debugging Tools for Windows (x86)
2015-06-23 10:52 - 2010-08-11 20:01 - 00002427 _____ C:\Documents and Settings\Martyn\Desktop\Paint Shop Pro 7.lnk
2015-06-23 10:23 - 2007-02-15 21:44 - 00000000 ____D C:\Documents and Settings\Guest
2015-06-23 10:23 - 2006-12-02 21:22 - 00000000 ____D C:\Documents and Settings\Martyn
2015-06-23 10:23 - 2006-12-02 21:12 - 00000000 __SHD C:\Documents and Settings\LocalService
2015-06-23 10:23 - 2006-12-02 21:08 - 00000000 __SHD C:\Documents and Settings\NetworkService
2015-06-23 10:23 - 2006-12-02 21:03 - 00000000 ____D C:\WINDOWS\Registration
2015-06-22 22:47 - 2006-12-03 02:12 - 00000275 _____ C:\WINDOWS\wiadebug.log
2015-06-22 22:47 - 2006-12-03 02:12 - 00000049 _____ C:\WINDOWS\wiaservc.log
2015-06-22 22:47 - 2006-12-02 21:12 - 00032654 _____ C:\WINDOWS\SchedLgU.Txt
2015-06-22 22:47 - 2006-12-02 21:12 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-06-22 22:46 - 2008-09-04 21:50 - 03537176 _____ C:\WINDOWS\pfirewall.log
2015-06-22 19:46 - 2010-11-02 12:23 - 00000000 ____D C:\WINDOWS\system32\Drivers\AVG
2015-06-22 19:19 - 2008-08-02 13:46 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\pdf995
2015-06-22 18:00 - 2011-04-11 16:00 - 00000446 _____ C:\WINDOWS\Tasks\ParetoLogic Registration3.job
2015-06-22 17:32 - 2011-08-25 20:09 - 00000394 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{DBF2D6A5-353C-4465-AA6E-853C0F4A93AC}.job
2015-06-22 11:12 - 2012-03-23 17:14 - 00000000 ____D C:\Documents and Settings\Martyn\Application Data\Dropbox
2015-06-22 09:56 - 2014-03-27 12:21 - 00000000 _____ C:\WINDOWS\RTacDbg.txt
2015-06-22 09:55 - 2014-03-07 10:04 - 00000224 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job
2015-06-21 15:09 - 2008-09-04 21:50 - 04194331 _____ C:\WINDOWS\pfirewall.log.old
2015-06-21 09:36 - 2013-11-26 11:28 - 00000203 _____ C:\Documents and Settings\Martyn\Desktop\FS_DISC4.lnk
2015-06-20 12:49 - 2008-11-08 17:34 - 00000060 _____ C:\WINDOWS\wpd99.drv
2015-06-19 22:54 - 2006-12-23 20:14 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\Finances
2015-06-19 20:43 - 2007-01-26 11:32 - 00002497 _____ C:\Documents and Settings\Martyn\Desktop\Word 2003.lnk
2015-06-19 12:08 - 2006-12-23 20:07 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\Languages
2015-06-19 12:07 - 2007-01-31 10:59 - 00002471 _____ C:\Documents and Settings\Martyn\Desktop\Access 2003.lnk
2015-06-16 22:59 - 2006-12-23 20:04 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\Recipes
2015-06-16 21:01 - 2006-12-23 20:08 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\Radio
2015-06-16 20:18 - 2007-01-20 13:28 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2015-06-16 20:04 - 2007-01-26 17:10 - 00000000 ____D C:\Documents and Settings\Martyn\Application Data\Skype
2015-06-16 20:00 - 2014-03-25 20:33 - 00002265 _____ C:\Documents and Settings\All Users\Desktop\Skype.lnk
2015-06-14 23:15 - 2013-10-29 14:32 - 02566592 _____ C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2015-06-14 19:48 - 2012-04-02 14:53 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\Cards
2015-06-14 16:13 - 2006-12-23 20:05 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\Birds
2015-06-14 16:01 - 2011-11-07 21:24 - 00000000 ____D C:\Documents and Settings\Martyn\Application Data\ZoomBrowser EX
2015-06-14 15:57 - 2006-12-23 20:38 - 00000000 ____D C:\Documents and Settings\Martyn\My Documents\temp
2015-06-13 10:10 - 2007-01-12 16:04 - 00002495 _____ C:\Documents and Settings\Martyn\Desktop\Excel 2003.lnk
2015-06-13 10:07 - 2014-08-25 22:43 - 00000000 ____D C:\Documents and Settings\Martyn\Local Settings\Application Data\Adobe
2015-06-13 10:06 - 2012-04-12 09:28 - 00778416 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-06-13 10:06 - 2011-05-25 10:23 - 00142512 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-06-11 11:51 - 2009-02-07 12:53 - 00000548 _____ C:\WINDOWS\Tasks\Rescue Reminder for 2HAAD5DF.job
2015-06-11 11:51 - 2006-12-05 08:25 - 00000434 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2015-06-10 12:46 - 2013-07-17 14:08 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-06-10 12:35 - 2006-12-05 17:56 - 136900096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-06-08 15:00 - 2014-03-07 10:04 - 00000218 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job
2015-06-07 20:20 - 2007-11-07 17:36 - 00096058 _____ C:\winzip.log
2015-06-07 10:06 - 2015-05-05 16:41 - 00000000 ____D C:\Documents and Settings\Martyn\Application Data\Simon Brown, HB9DRV
2015-06-04 09:44 - 2012-05-06 12:31 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-05-31 17:33 - 2006-12-23 23:40 - 00166400 _____ C:\Documents and Settings\Martyn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-05-31 09:25 - 2008-01-30 10:55 - 00000000 ____D C:\WINDOWS\Minidump
2015-05-31 09:25 - 2006-12-03 02:01 - 148516864 _____ C:\WINDOWS\MEMORY.DMP
2015-05-30 15:55 - 2007-01-26 17:10 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Skype
2015-05-30 15:55 - 2007-01-26 17:06 - 00000000 ___RD C:\Program Files\Skype
2015-05-27 18:09 - 2013-02-28 23:45 - 00016072 _____ C:\WINDOWS\wmsetup.log

==================== Files in the root of some directories =======

2011-04-12 12:45 - 2011-04-12 14:13 - 0002916 _____ () C:\Documents and Settings\Martyn\Application Data\AD5E.5D8
2012-04-23 19:37 - 2012-04-23 19:40 - 0002437 _____ () C:\Documents and Settings\Martyn\Application Data\hamster_installer_log.txt
2011-04-12 12:45 - 2011-04-12 12:45 - 0001212 ___SH () C:\Documents and Settings\Martyn\Local Settings\Application Data\176u5ye3ex5ry35el1eh8m2h48
2011-02-27 12:58 - 2011-02-27 12:58 - 0003436 ___SH () C:\Documents and Settings\Martyn\Local Settings\Application Data\3036264323
2006-12-23 23:40 - 2015-05-31 17:33 - 0166400 _____ () C:\Documents and Settings\Martyn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-04-23 19:40 - 2012-04-23 19:40 - 0000393 _____ () C:\Documents and Settings\Martyn\Local Settings\Application Data\HamsterVideoConverterSettings.cfg
2010-04-22 20:12 - 2010-04-22 20:12 - 0004096 ____H () C:\Documents and Settings\Martyn\Local Settings\Application Data\keyfile3.drm
2010-08-31 16:56 - 2010-11-01 23:47 - 0000000 _____ () C:\Documents and Settings\Martyn\Local Settings\Application Data\prvlcl.dat
2011-11-20 13:14 - 2011-11-20 22:52 - 0000000 _____ () C:\Documents and Settings\Martyn\Local Settings\Application Data\{5FFAB8D8-74B7-4017-A225-AA8B3F161F96}
2011-11-20 13:14 - 2011-11-20 22:52 - 0000000 _____ () C:\Documents and Settings\Martyn\Local Settings\Application Data\{C2E6949D-0163-4BE4-9B27-90D4F7D8EDC3}

Some files in TEMP:
====================
C:\Documents and Settings\Martyn\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp9z6jwc.dll
C:\Documents and Settings\Martyn\Local Settings\Temp\hfvc_ml.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\hvc_update25811.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\jre-7u15-windows-i586-iftw.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\jre-7u17-windows-i586-iftw.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\jre-7u21-windows-i586-iftw.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\jre-7u25-windows-i586-iftw.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\jre-7u71-windows-i586-iftw.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\jre-8u31-windows-au.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\MSETUP4.EXE
C:\Documents and Settings\Martyn\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\uninstall.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.0.6-win32.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.0.7-win32.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.0.8-win32.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.1.1-win32.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.1.2-win32.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.1.3-win32.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.1.5-win32.exe
C:\Documents and Settings\Martyn\Local Settings\Temp\vlc-2.2.1-win32.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End of log ============================
 
Part 1 of Additional scan result of Farbar Recovery Scan Tool (x86) Version: 24-06-2015
Ran by Martyn at 2015-06-25 11:20:24
Running from C:\Documents and Settings\Martyn\Desktop
Boot Mode: Safe Mode (minimal)
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-329068152-963894560-839522115-500 - Administrator - Enabled)
ASPNET (S-1-5-21-329068152-963894560-839522115-1006 - Limited - Enabled)
Guest (S-1-5-21-329068152-963894560-839522115-501 - Limited - Enabled) => %SystemDrive%\Documents and Settings\Guest
HelpAssistant (S-1-5-21-329068152-963894560-839522115-1000 - Limited - Disabled)
Martyn (S-1-5-21-329068152-963894560-839522115-1004 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Martyn
SUPPORT_388945a0 (S-1-5-21-329068152-963894560-839522115-1002 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG Anti-Virus Free Edition 2011 (Enabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Lavasoft Ad-Watch Live! Anti-Virus (Disabled - Up to date) {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33}
FW: Norton Internet Worm Protection (Disabled) {990F9400-4CEE-43EA-A83A-D013ADD8EA6E}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Ad-Aware (HKLM\...\Ad-Aware) (Version: - Lavasoft)
Ad-Aware (Version: 8.3.0 - Lavasoft) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 14 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 14.0.0.125 - Adobe Systems Incorporated)
Adobe Flash Player 18 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 18.0.0.160 - Adobe Systems Incorporated)
Adobe Photoshop Elements 2.0 (HKLM\...\Adobe Photoshop Elements 2.0) (Version: 2.0 - Adobe Systems, Inc.)
Adobe Reader X (10.1.3) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.3 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.)
Air Traffic Control Center (HKLM\...\{2D47BB06-337A-11D5-A55B-00A0CC27E359}) (Version: 1.10.0000 - Xavius Software)
Alleycode HTML Editor 2.16.2 (HKLM\...\Kobeman_is1) (Version: - Konae Technologies, Inc.)
Apple Application Support (HKLM\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{8F1ADE4D-EFAC-4F5A-B346-23C2687FAF50}) (Version: 5.2.0.6 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArcSoft Camera Suite 1.3 (HKLM\...\{AD13BFB0-FDD2-4AFA-A8AF-9F4A950D56B7}) (Version: - )
ArcSoft PhotoBase 3 (HKLM\...\{C1D14C0D-FDAA-4DF2-8441-A902805CCE8C}) (Version: - )
ArcSoft PhotoStudio 5 (HKLM\...\{03F1CC67-5BD8-4C36-8394-76311B2AE69A}) (Version: - )
ASUS USB-N13 WLAN Card Utilities & Driver (HKLM\...\{9C049499-055C-4a0c-A916-1D12314F45EB}) (Version: 1.0.0.7 - ASUS)
Audacity 1.2.6 (HKLM\...\Audacity_is1) (Version: - )
AVG 2011 (HKLM\...\AVG) (Version: 10.0.1434 - AVG Technologies)
AVG 2011 (Version: 10.0.1434 - AVG Technologies) Hidden
AVG 2011 (Version: 10.0.4365 - AVG Technologies) Hidden
AVG Security Toolbar (HKLM\...\AVG Secure Search) (Version: 14.2.0.1 - AVG Technologies)
Av's SuperKeys (HKLM\...\SuperKeys) (Version: 1.1 - AvBrand.com)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Breezy Connector (HKU\S-1-5-21-329068152-963894560-839522115-1004\...\87a04cd0b3406b38) (Version: 1.0.608.957 - BreezyPrint Corporation)
Bulk Rename Utility 2.7.1.2 (HKLM\...\Bulk Rename Utility_is1) (Version: - TGRMN Software)
Canon Auto Update Service (HKLM\...\Auto Update Service) (Version: 1.1.0.13 - Canon Inc.)
Canon Camera Access Library (HKLM\...\CAL) (Version: 8.5.0.2 - Canon Inc.)
Canon CanoScan Toolbox 4.0 (HKLM\...\Canon CanoScan Toolbox 4.0) (Version: - )
Canon DIGITAL CAMERA Solution Disk Software Guide (HKLM\...\Software Guide) (Version: 1.6.0.1 - Canon Inc.)
Canon Easy-PhotoPrint EX (HKLM\...\Easy-PhotoPrint EX) (Version: - )
Canon IJ Network Scanner Selector EX (HKLM\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - )
Canon IJ Network Tool (HKLM\...\Canon_IJ_Network_UTILITY) (Version: - )
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM\...\MyCamera Download Plugin) (Version: 3.1.1.2 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM\...\CANON iMAGE GATEWAY Task) (Version: 1.9.0.9 - Canon Inc.)
Canon iP4500 series (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4500_series) (Version: - )
Canon iP4500 series User Registration (HKLM\...\Canon iP4500 series User Registration) (Version: - )
Canon MG5300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series) (Version: - )
Canon MG5300 series On-screen Manual (HKLM\...\Canon MG5300 series On-screen Manual) (Version: - )
Canon MG5300 series User Registration (HKLM\...\Canon MG5300 series User Registration) (Version: - )
Canon MOV Decoder (HKLM\...\Canon MOV Decoder) (Version: 1.9.0.8 - Canon Inc.)
Canon MOV Encoder (HKLM\...\Canon MOV Encoder) (Version: 1.8.0.1 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM\...\MovieEditTask) (Version: 3.9.0.6 - Canon Inc.)
Canon MP Navigator EX 5.0 (HKLM\...\MP Navigator EX 5.0) (Version: - )
Canon My Printer (HKLM\...\CanonMyPrinter) (Version: - )
Canon PowerShot SX40 HS Camera User Guide (HKLM\...\CameraUserGuide-PSSX40HS) (Version: 1.0.0.1 - Canon Inc.)
Canon Solution Menu EX (HKLM\...\CanonSolutionMenuEX) (Version: - )
Canon Utilities CameraWindow DC 8 (HKLM\...\CameraWindowDC8) (Version: 8.6.0.11 - Canon Inc.)
Canon Utilities CameraWindow Launcher (HKLM\...\CameraWindowLauncher) (Version: 7.6.0.1 - Canon Inc.)
Canon Utilities MyCamera (HKLM\...\MyCamera) (Version: 7.5.0.1 - Canon Inc.)
Canon Utilities PhotoStitch (HKLM\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM\...\ZoomBrowser EX) (Version: 6.8.0.10 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM\...\ZoomBrowser EX Memory Card Utility) (Version: 1.6.0.15 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 3.22 - Piriform)
Cda Product Service - shared component (HKLM\...\CdaC13Ba) (Version: - )
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4291 - CDBurnerXP)
CD-LabelPrint (HKLM\...\MediaNavigation.CDLabelPrint) (Version: - )
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Content Transfer (HKLM\...\{CFADE4AF-C0CF-4A04-A776-741318F1658F}) (Version: 1.3.0.23190 - Sony Corporation)
Critical Update for Windows Media Player 11 (KB959772) (HKLM\...\KB959772_WM11) (Version: - Microsoft Corporation)
Cumulus 1.9.0 (HKLM\...\Cumulus_is1) (Version: - Sandaysoft)
CW Skimmer 1.8.3 (HKLM\...\CW Skimmer_is1) (Version: - Afreet Software, Inc.)
Debugging Tools for Windows (x86) (HKLM\...\{D09605BE-5587-4B0C-86C8-69B5092CB80F}) (Version: 6.12.2.633 - Microsoft Corporation)
DiMAGE Scan Dual4 ver.1.0 (HKLM\...\{6F00F343-7562-4F03-B3C3-F9360E2DA333}) (Version: - )
DivX Setup (HKLM\...\DivX Setup) (Version: 2.6.1.9 - DivX, LLC)
Doxillion Document Converter (HKLM\...\Doxillion) (Version: 2.17 - NCH Software)
Dropbox (HKU\S-1-5-21-329068152-963894560-839522115-1004\...\Dropbox) (Version: 3.6.7 - Dropbox, Inc.)
Easy CD Creator 5 Basic (HKLM\...\{609F7AC8-C510-11D4-A788-009027ABA5D0}) (Version: 5.3.4.22 - Roxio Inc)
EasyWeather (HKLM\...\{CE1B03BC-3C99-4580-A2AC-A41DB9B83378}) (Version: - 1.0)
EchoLink (HKLM\...\EchoLink) (Version: - )
EuroTalk Talk Now Plus! (HKLM\...\EuroTalk Talk Now Plus!) (Version: - )
Express Talk (HKLM\...\Talk) (Version: - NCH Software)
EZBack-it-up 2.0.1 (HKLM\...\EZBack-it-up_is1) (Version: 2.0.1 - Rob Decker)
Finale NotePad 2007 (HKLM\...\Finale NotePad 2007) (Version: 12.0.13 - MakeMusic)
Flight Simulator X (HKLM\...\RTMshadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: - )
Flight Simulator X Service Pack 1 (HKLM\...\SP1shadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: - )
Google Drive (HKLM\...\{56D4499E-AC3E-4B8D-91C9-C700C148C44B}) (Version: 1.13.5782.599 - Google, Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (HKLM\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: - )
Google Update Helper (Version: 1.3.22.3 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
Ham Radio Deluxe (HKLM\...\{4DF979D5-464C-4926-AF73-54C1C219F06A}) (Version: 5.24.38.0 - HRD Software, LLC)
Hamster Free Video Converter (HKLM\...\{7E350663-86D3-466A-AB79-28156A9ABF6E}_is1) (Version: 2.5.8.11 - Hamster Soft)
High Definition Audio Driver Package - KB888111 (HKLM\...\KB888111WXPSP2) (Version: 20040219.000000 - Microsoft Corporation)
HP USB Disk Storage Format Tool (HKLM\...\{0E0DF90C-D0BA-4C89-9262-AD78D1A3DE51}) (Version: - )
HWiNFO32 Version 4.08 (HKLM\...\HWiNFO32_is1) (Version: 4.08 - Martin Malík - REALiX)
IBM ViaVoice Standard 8.0 - UK English (HKLM\...\DeleteProdVVFW80Basic_UK) (Version: - )
Image Resizer Powertoy for Windows XP (HKLM\...\{1CB92574-96F2-467B-B793-5CEB35C40C29}) (Version: 1.00.0001 - Microsoft Corporation)
Internet Explorer (Enable DEP) (HKLM\...\{a9264802-8a7a-40fe-a135-5c6d204aed7a}.sdb) (Version: - )
iTunes (HKLM\...\{6AD9F5F3-5BD0-4000-BD9C-B536CF86D988}) (Version: 10.6.3.25 - Apple Inc.)
Java 7 Update 71 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
Jessops (HKLM\...\Jessops) (Version: - )
Jewel Quest Deluxe (HKLM\...\Jewel Quest Deluxe) (Version: 1.0.0 - Zylom Games)
Just Flight VFR Real Scenery Demo (HKLM\...\{8CB79677-9ACF-44C2-9BE3-AC1C726EAA60}) (Version: 1.00.000 - )
Linguata Welsh 2.4 (HKLM\...\Linguata Welsh) (Version: 2.4 - )
Logitech Gaming Software (HKLM\...\{5C1DA723-24FC-48AD-93BA-925695C3EF26}) (Version: 4.60 - Logitech)
Logitech Updater (HKLM\...\{53735ECE-E461-4FD0-B742-23A352436D3A}) (Version: 1.70 - Logitech, Inc.)
Logitech Webcam Software (HKLM\...\{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}) (Version: 12.10.1113 - Logitech Inc.)
Logitech Webcam Software Driver Package (HKLM\...\lvdrivers_12.10) (Version: 12.10.1110 - Logitech Inc.)
MAGIX audio cleaning 3.0 (HKLM\...\MAGIX audio cleaning 3.0) (Version: - MAGIX AG)
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Maxtor Manager (HKLM\...\InstallShield_{4D36E953-4456-4F8F-BC44-90BC4AA59889}) (Version: 4.02.0303 - Seagate Technology)
Maxtor Manager (Version: 4.02.0303 - Seagate Technology) Hidden
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version: - )
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Automated Troubleshooting Services Shim (HKLM\...\{c9920352-04e6-469d-bab8-e2b9c7c75415}.sdb) (Version: - )
Microsoft AutoRoute Express GB 2000 (HKLM\...\Microsoft ARX GB 2000) (Version: 7.0.24.0700 - Microsoft Corp.)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Fix it Center (HKLM\...\{B7588D45-AFDC-4C93-9E2E-A100F3554B64}) (Version: 1.0.0100 - Microsoft Corporation)
Microsoft Flight Simulator 2004 A Century of Flight (HKLM\...\Flight Simulator 9.0) (Version: 9.0 - Microsoft)
Microsoft Flight Simulator X Demo (HKLM\...\InstallShield_{B98A34C0-A6A2-4087-B272-557C1C6D0A07}) (Version: 10.0.60905 - Microsoft Game Studios)
Microsoft Flight Simulator X: Acceleration (HKLM\...\FlightSim_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: 10.0.61637.0 - Microsoft Game Studios)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.3 (HKLM\...\{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}) (Version: 2.0.2313.0 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM\...\{77F1F8AD-51B8-4490-AEEC-BF480073E0FC}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM\...\{877B76B2-F83F-4F5A-B28D-3F398641ADB6}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft User-Mode Driver Framework Feature Pack 1.0 (HKLM\...\Wudf01000) (Version: - Microsoft Corporation)
Microsoft Visual Basic 2010 Express - ENU (HKLM\...\Microsoft Visual Basic 2010 Express - ENU) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (HKLM\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM\...\{14DD7530-CCD2-3798-B37D-3839ED6A441C}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (HKLM\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Script Host (HKLM\...\WindowsScriptHost) (Version: - )
Microsoft Windows SDK for Windows 7 (7.1) (HKLM\...\SDKSetup_7.1.7600.0.30514) (Version: 7.1.7600.0.30514 - Microsoft Corporation)
Microsoft WinUsb 2.0 (HKLM\...\winusb0200) (Version: - Microsoft Corporation)
Microsoft Works 6-9 Converter (HKLM\...\{172423F9-522A-483A-AD65-03600CE4CA4F}) (Version: 9.7.0621 - Microsoft Corporation)
MorseGen (HKLM\...\MorseGen) (Version: 2.0 - G4ILO's Shack)
Mozilla Firefox 38.0.5 (x86 en-GB) (HKLM\...\Mozilla Firefox 38.0.5 (x86 en-GB)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSN (HKLM\...\MSNINST) (Version: - )
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 6 Service Pack 2 (KB973686) (HKLM\...\{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}) (Version: 6.20.2003.0 - Microsoft Corporation)
My DSC (HKLM\...\{225AF9A1-B556-88D5-94AA-0010B5426419}) (Version: - )
Navman F20 Service Pack (HKLM\...\{D972C4DC-0E76-4698-A2B4-ABEFA25FFB9E}) (Version: 1.00.0007 - Navman New Zealand)
NCrypt TX (HKLM\...\NCrypt) (Version: - LittleLite Software)
Net Uptime Monitor (HKLM\...\{1D286320-1EAF-4B1F-8817-59370CF4CD1B}) (Version: 01.03.0000 - Net Uptime Monitor)
Nova for Windows (HKLM\...\{6CAE95DB-5D4E-11D4-8E9C-00E0292C9FA3}) (Version: 2.1 - Northern Lights Software Associates)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation)
NVIDIA nView Desktop Manager (HKLM\...\NVIDIA nView Desktop Manager) (Version: 6.14.10.13527 - NVIDIA Corporation)
NWZ-E440 WALKMAN Guide (HKLM\...\{E96FF910-1BC9-4EE5-BC12-0A30D4E20F37}) (Version: 2.0.00.07010 - Sony Corporation)
OmniFormat (HKLM\...\OmniFormat) (Version: - )
OmniPage SE (HKLM\...\{6249C22D-E6A8-407B-BA8B-40298848ED94}) (Version: 11.00.0001 - ScanSoft, Inc.)
Omni-Rig 1.15 (HKLM\...\Omni-Rig_is1) (Version: - Alex Shovkoplyas, VE3NEA)
Paint Shop Pro 7 Anniversary Edition (HKLM\...\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}) (Version: 7.0.4.0000 - Jasc Software Inc)
Pdf995 (HKLM\...\Pdf995) (Version: - )
Plan3D (HKLM\...\{4613D63D-52C3-4BC5-BB65-622A801997E2}) (Version: 1.0.43 - Plan3D)
Plan3D (HKLM\...\Plan3D) (Version: - )
PocketCloud Windows Companion (HKLM\...\{8C8C169B-D493-42C7-A975-7C1E0E4C5847}) (Version: 2.5.13 - Wyse Technology)
QRAE (C:\Program Files\QRAE\) (HKLM\...\ST6UNST #2) (Version: - )
QRAE (HKLM\...\ST6UNST #1) (Version: - )
QuickTime (HKLM\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
RealPlayer (HKLM\...\RealPlayer 6.0) (Version: - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 2.02 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
RootsMagic 5.0.4.1 UK Edition (HKLM\...\{C1689DDD-6378-4966-8865-6292D7141A6A}_is1) (Version: - RootsMagic, Inc.)
RouterStats-Lite v9.7 (HKLM\...\RouterStats-Lite_is1) (Version: - vwlowen.co.uk)
Roxio UDF Reader (HKLM\...\Roxio UDF Reader) (Version: - )
SeaTools for Windows (HKLM\...\{98613C99-1399-416C-A07C-1EE1C585D872}) (Version: 1.2.0.5 - Seagate Technology)
Segoe UI (Version: 14.0.4327.805 - Microsoft Corp) Hidden
Serif WebPlus 7.0 (HKLM\...\{8702416E-5CFD-4D48-9674-F0ED6AAC13BF}) (Version: - )
Skype Click to Call (HKLM\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.6.11664 - Skype Technologies S.A.)
Skype™ 7.4 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-329068152-963894560-839522115-1004\...\Spotify) (Version: 0.9.6.72.ge389c074 - Spotify AB)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TerraExplorer (HKLM\...\TerraExplorer) (Version: 5.0.2 - Skyline Software Systems, Inc.)
TweakNow PowerPack Professional (HKLM\...\TweakNow PowerPack Professional_is1) (Version: v2.2.0 - TweakNow.com)
Ulead DVD MovieFactory 4.0 (HKLM\...\{448AB2CB-C94A-47DE-80B8-9D7824DEFA57}) (Version: 4.0 - Ulead Systems, Inc.)
Ulead DVD PictureShow 2 (HKLM\...\{A9212616-FCA2-4173-BD99-5C741EB3A068}) (Version: 2.00.1000 - Ulead Systems, Inc.)
Ulead Photo Express 4.0 SE (HKLM\...\{BBC0D330-C37B-4472-BFB9-AA217CF0C95F}) (Version: - )
VC 9.0 Runtime (Version: 1.0.0 - Check Point Software Technologies Ltd) Hidden
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0 - DivX, Inc) Hidden
Vigenère Cipher (HKLM\...\Vigenère Cipher) (Version: 2.0.2.3 - JBO Software)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU (HKLM\...\{112C23F2-C036-4D40-BED4-0CB47BF5555C}) (Version: 4.0.8080.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VSee (HKU\S-1-5-21-329068152-963894560-839522115-1004\...\VSee) (Version: 12.0.0.702 - VSee Lab Inc)
Web Site Publisher 2.1.0 (HKLM\...\Web Site Publisher_is1) (Version: - Brian Cryer)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Defender (HKLM\...\{A06275F4-324B-4E85-95E6-87B2CD729401}) (Version: 1.1.1593.0 - Microsoft Corporation)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\KB892130) (Version: - Microsoft Corporation)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\WGA) (Version: 1.7.0069.2 - Microsoft Corporation)
Windows Imaging Component (HKLM\...\WIC) (Version: 3.0.0.0 - Microsoft Corporation)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Sign-in Assistant (HKLM\...\{9422C8EA-B0C6-4197-B8FC-DC797658CA00}) (Version: 5.000.818.6 - Microsoft Corporation)
Windows Live Upload Tool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
Windows Media Player 11 (HKLM\...\Windows Media Player) (Version: - )
Windows PowerShell(TM) 1.0 (HKLM\...\KB926139-v2) (Version: 2 - Microsoft Corporation)
Windows Rights Management Client Backwards Compatibility SP2 (HKLM\...\{EC905264-BCFE-423B-9C42-C3A106266790}) (Version: 5.2.70 - Microsoft)
Windows Rights Management Client with Service Pack 2 (HKLM\...\{BDCF27CA-BFC4-4F49-8D24-A925C9505AB8}) (Version: 5.2.70 - Microsoft)
Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031525 - Microsoft Corporation)
WinZip (HKLM\...\WinZip) (Version: - )
XBMC (HKU\S-1-5-21-329068152-963894560-839522115-1004\...\XBMC) (Version: - Team XBMC)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{3059C9E6-9EDC-4C89-933E-C65623F8FD60}\localserver32 -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{87DC457B-B35D-48AC-BD42-BDF35EF623CE}\localserver32 -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\1.3.27.29\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{9FAA38ED-5635-44F7-9BE0-8CAFE29B3783}\localserver32 -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\1.3.27.29\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{C0DD324D-A74F-4533-84AD-030F76771C77}\localserver32 -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\1.3.27.29\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{C32E3EEC-3C10-426E-95F3-38C7F139FADD}\localserver32 -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\1.3.27.29\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\1.3.27.29\psuser.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{E69341A3-E6D2-4175-B60C-C9D3D6FA40F6}\localserver32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\DropboxExt.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-329068152-963894560-839522115-1004_Classes\CLSID\{FE819BE5-BADF-4370-9913-6FB84ABA6FB1}\InprocServer32 -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\1.3.27.29\psuser.dll (Dropbox, Inc.)

==================== Restore Points =========================

26-03-2015 06:52:28 System Checkpoint
29-03-2015 10:37:38 System Checkpoint
13-04-2015 22:14:18 System Checkpoint
15-04-2015 12:58:16 System Checkpoint
16-04-2015 13:55:23 System Checkpoint
18-04-2015 20:14:59 System Checkpoint
19-04-2015 21:14:54 System Checkpoint
20-04-2015 22:58:01 Software Distribution Service 3.0
28-04-2015 10:55:35 System Checkpoint
30-04-2015 14:12:09 System Checkpoint
01-05-2015 16:27:24 System Checkpoint
03-05-2015 18:11:45 System Checkpoint
05-05-2015 16:40:33 Installed Ham Radio Deluxe
06-05-2015 18:07:41 System Checkpoint
08-05-2015 10:13:04 System Checkpoint
13-05-2015 15:56:38 System Checkpoint
13-05-2015 19:49:59 Software Distribution Service 3.0
14-05-2015 22:24:56 System Checkpoint
16-05-2015 18:10:04 System Checkpoint
18-05-2015 10:36:22 System Checkpoint
19-05-2015 22:15:09 System Checkpoint
21-05-2015 11:45:01 System Checkpoint
23-05-2015 12:26:34 System Checkpoint
24-05-2015 15:57:14 System Checkpoint
26-05-2015 09:52:05 System Checkpoint
27-05-2015 11:19:34 System Checkpoint
28-05-2015 13:31:16 System Checkpoint
29-05-2015 16:31:19 System Checkpoint
31-05-2015 10:21:14 System Checkpoint
01-06-2015 10:24:24 System Checkpoint
02-06-2015 12:42:55 System Checkpoint
03-06-2015 12:59:08 System Checkpoint
04-06-2015 13:14:40 System Checkpoint
05-06-2015 14:33:42 System Checkpoint
07-06-2015 07:52:46 System Checkpoint
08-06-2015 13:14:12 System Checkpoint
09-06-2015 13:37:52 System Checkpoint
10-06-2015 12:35:18 Software Distribution Service 3.0
11-06-2015 12:36:56 System Checkpoint
12-06-2015 16:47:44 System Checkpoint
13-06-2015 18:08:16 System Checkpoint
14-06-2015 18:31:35 System Checkpoint
15-06-2015 18:46:19 System Checkpoint
16-06-2015 19:22:33 System Checkpoint
17-06-2015 20:14:11 System Checkpoint
18-06-2015 20:35:37 System Checkpoint
20-06-2015 13:22:48 System Checkpoint
21-06-2015 19:19:25 System Checkpoint
22-06-2015 19:43:11 System Checkpoint
23-06-2015 10:07:57 Restore Operation
23-06-2015 10:22:17 Restore Operation

====================
 
Part 2

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-02-28 13:00 - 2006-02-28 13:00 - 00000734 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\AppleSoftwareUpdate.job => C:\Program Files\Apple Software Update\SoftwareUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-329068152-963894560-839522115-1004Core.job => C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-329068152-963894560-839522115-1004UA.job => C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\ParetoLogic Registration3.job => C:\WINDOWS\system32\rundll32.exeAC:\Program Files\Common Files\ParetoLogic\UUS3\UUS3.dll
Task: C:\WINDOWS\Tasks\Rescue Reminder for 2HAAD5DF.job => C:\Program Files\Maxtor\ManagerApp\MaxUtilities.exem-bmrReminder C:\Documents and Settings\All Users\Application Data\Maxtor\ULC\BMR\config2HAAD5DF.xml
Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{DBF2D6A5-353C-4465-AA6E-853C0F4A93AC}.job => C:\WINDOWS\system32\msfeedssync.exe

==================== Loaded Modules (Whitelisted) ==============

2010-08-14 15:11 - 2010-07-08 00:52 - 00555624 _____ () C:\Program Files\NVIDIA Corporation\nView\nvshell.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Lavasoft Ad-Aware Service => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="1"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\S-1-5-21-329068152-963894560-839522115-1004\...\crackspider.net -> hxxp://crackspider.net

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-329068152-963894560-839522115-1004\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\Martyn\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
DNS Servers: Media is not connected to internet.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^Documents and Settings^All Users^Start Menu^Programs^Startup^ASUS USB-N13 WLAN Control Center.lnk => C:\WINDOWS\pss\ASUS USB-N13 WLAN Control Center.lnkCommon Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Alcmtr => ALCMTR.EXE
MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: AVG_TRAY => C:\Program Files\AVG\AVG10\avgtray.exe
MSCONFIG\startupreg: CanonMyPrinter => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
MSCONFIG\startupreg: CanonSolutionMenuEx => C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
MSCONFIG\startupreg: CD Autorun => C:\Program Files\TweakNow PowerPack Pro\CDAuto.exe
MSCONFIG\startupreg: ctfmon.exe => C:\WINDOWS\system32\ctfmon.exe
MSCONFIG\startupreg: DivXUpdate => "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
MSCONFIG\startupreg: Dropbox Update => "C:\Documents and Settings\Martyn\Local Settings\Application Data\Dropbox\Update\DropboxUpdate.exe" /c
MSCONFIG\startupreg: High Definition Audio Property Page Shortcut => HDAShCut.exe
MSCONFIG\startupreg: IJNetworkScannerSelectorEX => C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
MSCONFIG\startupreg: KernelFaultCheck => %systemroot%\system32\dumprep 0 -k
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: mxomssmenu => "C:\Program Files\Maxtor\OneTouch Status\maxmenumgr.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\qttask.exe" -atboottime
MSCONFIG\startupreg: RTHDCPL => RTHDCPL.EXE
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: vProt => "C:\Program Files\AVG Secure Search\vprot.exe"
MSCONFIG\startupreg: VSee => "C:\Documents and Settings\Martyn\Application Data\VSeeInstall\vsee.exe" -quiet_start
MSCONFIG\startupreg: Windows Defender => "C:\Program Files\Windows Defender\MSASCui.exe" -hide

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

DomainProfile\AuthorizedApplications: [C:\Program Files\Windows Live\Messenger\wlcsdk.exe] => Enabled:Windows Live Call
DomainProfile\AuthorizedApplications: [C:\Program Files\Windows Live\Messenger\msnmsgr.exe] => Enabled:Windows Live Messenger
StandardProfile\AuthorizedApplications: [C:\Program Files\Messenger\msmsgs.exe] => Enabled:Windows Messenger
StandardProfile\AuthorizedApplications: [C:\Program Files\Grisoft\AVG Free\avginet.exe] => Enabled:avginet.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Grisoft\AVG Free\avgamsvr.exe] => Enabled:avgamsvr.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Grisoft\AVG Free\avgcc.exe] => Enabled:avgcc.exe
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\mmc.exe] => Enabled:Microsoft Management Console
StandardProfile\AuthorizedApplications: [C:\Program Files\Echolink\EchoLink.exe] => Enabled:EchoLink
StandardProfile\AuthorizedApplications: [C:\Program Files\AVG\AVG8\avgupd.exe] => Enabled:avgupd.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\AVG\AVG8\avgemc.exe] => Enabled:avgemc.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Skype.exe] => Enabled:Skype
StandardProfile\AuthorizedApplications: [C:\Program Files\Windows Live\Messenger\wlcsdk.exe] => Enabled:Windows Live Call
StandardProfile\AuthorizedApplications: [C:\Program Files\Windows Live\Messenger\msnmsgr.exe] => Enabled:Windows Live Messenger
StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Plugin Manager\skypePM.exe] => Enabled:Skype Extras Manager
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\ZoneLabs\vsmon.exe] => Enabled:vsmon
StandardProfile\AuthorizedApplications: [C:\Program Files\AVG\AVG10\avgmfapx.exe] => Enabled:AVG Installer
StandardProfile\AuthorizedApplications: [C:\Program Files\Online Services\Web Site Publisher\BCWebSitePublisher.exe] => Enabled:Web Site Publisher
StandardProfile\AuthorizedApplications: [C:\Program Files\ftpWanderer\FTPWanderer.exe] => Enabled:FTP Wanderer
StandardProfile\AuthorizedApplications: [C:\Program Files\Bonjour\mDNSResponder.exe] => Enabled:Bonjour Service
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Martyn\Application Data\Dropbox\bin\Dropbox.exe] => Enabled:Dropbox
StandardProfile\AuthorizedApplications: [C:\Program Files\NetMeeting\conf.exe] => Enabled:Windows® NetMeeting®
StandardProfile\AuthorizedApplications: [C:\Program Files\iTunes\iTunes.exe] => Enabled:iTunes
StandardProfile\AuthorizedApplications: [C:\Program Files\VideoLAN\VLC\vlc.exe] => Enabled:VLC media player 2.0.1
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Martyn\Application Data\VSeeInstall\vsee.exe] => Enabled:vsee
StandardProfile\AuthorizedApplications: [C:\Program Files\Java\jre7\bin\java.exe] => Enabled:Java(TM) Platform SE binary
StandardProfile\AuthorizedApplications: [C:\Program Files\Wyse\PocketCloud Windows Companion\WyseBrowser.exe] => Enabled:WyseBrowser
StandardProfile\AuthorizedApplications: [C:\Program Files\Wyse\PocketCloud Windows Companion\PocketCloudService.exe] => Enabled:pocketCloudService
StandardProfile\AuthorizedApplications: [C:\Program Files\Wyse\PocketCloud Windows Companion\WyseRemoteAccess.exe] => Enabled:WyseRemoteAccess
StandardProfile\AuthorizedApplications: [C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe] => Enabled:WebKit
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Martyn\Application Data\Spotify\spotify.exe] => Enabled:Spotify
StandardProfile\AuthorizedApplications: [C:\Program Files\ASUS\USB-N13 WLAN Card Utilities\RtWLan.exe] => Enabled:RtWlan
StandardProfile\AuthorizedApplications: [C:\Program Files\ASUS\USB-N13 WLAN Card Utilities\RTLDHCP.exe] => Enabled:RtlDHCP
StandardProfile\AuthorizedApplications: [C:\Program Files\SDRSharp\sdr-nightly\SDRSharp.exe] => Enabled:SDRSharp.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\SDRSharp\sdr-stable\SDRSharp.exe] => Enabled:SDRSharp.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\XBMC\XBMC.exe] => Enabled:XBMC
StandardProfile\AuthorizedApplications: [D:\PowerLine Utility\Powerline Scan\Powerline Scan.exe] => Enabled:powerline Scan
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\fxsclnt.exe] => Enabled:Microsoft Fax Console
StandardProfile\AuthorizedApplications: [C:\Program Files\AVG\AVG10\avgdiagex.exe] => Enabled:AVG Diagnostics 2011
StandardProfile\AuthorizedApplications: [C:\Program Files\AVG\AVG10\avgnsx.exe] => Enabled:Online Shield
StandardProfile\AuthorizedApplications: [C:\Program Files\AVG\AVG10\avgemcx.exe] => Enabled:personal E-mail Scanner
StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Phone\Skype.exe] => Enabled:Skype
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)
DomainProfile\GloballyOpenPorts: [139:TCP] => Enabled:mad:xpsp2res.dll,-22004
DomainProfile\GloballyOpenPorts: [445:TCP] => Enabled:mad:xpsp2res.dll,-22005
DomainProfile\GloballyOpenPorts: [137:UDP] => Enabled:mad:xpsp2res.dll,-22001
DomainProfile\GloballyOpenPorts: [138:UDP] => Enabled:mad:xpsp2res.dll,-22002
DomainProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
DomainProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22008
DomainProfile\GloballyOpenPorts: [3587:TCP] => Enabled:Windows Peer-to-Peer Grouping
DomainProfile\GloballyOpenPorts: [3540:UDP] => Enabled:peer Name Resolution Protocol (PNRP)
StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22008
StandardProfile\GloballyOpenPorts: [139:TCP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22004
StandardProfile\GloballyOpenPorts: [445:TCP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22005
StandardProfile\GloballyOpenPorts: [137:UDP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22001
StandardProfile\GloballyOpenPorts: [138:UDP] => :LocalSubNet:Enabled:mad:xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [3389:TCP] => Enabled:mad:xpsp2res.dll,-22009
StandardProfile\GloballyOpenPorts: [3587:TCP] => Enabled:Windows Peer-to-Peer Grouping
StandardProfile\GloballyOpenPorts: [3540:UDP] => Enabled:peer Name Resolution Protocol (PNRP)
StandardProfile\GloballyOpenPorts: [8000:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8001:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8002:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8003:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8004:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8005:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8006:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8007:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8008:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [8009:UDP] => Enabled:Express Talk RTP Incoming Audio (UDP)
StandardProfile\GloballyOpenPorts: [5060:UDP] => Enabled:Express Talk Sip Incoming Calls (UDP)
StandardProfile\GloballyOpenPorts: [1542:TCP] => Enabled:Realtek WPS TCP Prot
StandardProfile\GloballyOpenPorts: [1542:UDP] => Enabled:Realtek WPS UDP Prot
StandardProfile\GloballyOpenPorts: [53:UDP] => Enabled:Realtek AP UDP Prot

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/25/2015 11:19:24 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:23 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The server name or address could not be resolved

Error: (06/25/2015 11:19:16 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:16 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:11 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:09 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:09 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:08 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:08 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.

Error: (06/25/2015 11:19:08 AM) (Source: crypt32) (EventID: 8) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.


System errors:
=============
Error: (06/25/2015 11:14:06 AM) (Source: DCOM) (EventID: 10005) (User: MAINPC)
Description: DCOM got error "%%1084" attempting to start the service netman with arguments ""
in order to run the server:
{BA126AE5-2166-11D1-B1D0-00805FC1270E}

Error: (06/25/2015 11:14:06 AM) (Source: DCOM) (EventID: 10005) (User: MAINPC)
Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error: (06/25/2015 09:27:51 AM) (Source: DCOM) (EventID: 10005) (User: MAINPC)
Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error: (06/25/2015 09:27:12 AM) (Source: DCOM) (EventID: 10005) (User: MAINPC)
Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error: (06/25/2015 09:26:22 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
AFD
AmdPPM
Avgldx86
Avgmfx86
Avgtdix
cdudf_xp
eeCtrl
Fips
IPSec
MRxSmb
NetBIOS
NetBT
RasAcd
Rdbss
Tcpip
Tcpip6
WS2IFSL

Error: (06/25/2015 09:26:22 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Simple TCP/IP Services service depends on the AFD service which failed to start because of the following error:
%%31

Error: (06/25/2015 09:26:22 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error:
%%31

Error: (06/25/2015 09:26:22 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error:
%%31

Error: (06/25/2015 09:26:22 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The IPv6 Helper Service service depends on the Microsoft IPv6 Protocol Driver service which failed to start because of the following error:
%%31

Error: (06/25/2015 09:26:22 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error:
%%31


Microsoft Office:
=========================
Error: (06/25/2015 11:19:24 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:23 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThe server name or address could not be resolved

Error: (06/25/2015 11:19:16 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:16 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:11 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:09 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:09 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:08 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:08 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.

Error: (06/25/2015 11:19:08 AM) (Source: crypt32) (EventID: 8) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.


==================== Memory info ===========================

Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+
Percentage of memory in use: 19%
Total physical RAM: 2047.29 MB
Available physical RAM: 1654.45 MB
Total Pagefile: 3943.3 MB
Available Pagefile: 3804.46 MB
Total Virtual: 2047.88 MB
Available Virtual: 1945.66 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.88 GB) (Free:50.52 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive e: (FS_DISC4) (CDROM) (Total:0.62 GB) (Free:0 GB) CDFS
Drive f: (2nd HDD) (Fixed) (Total:149.05 GB) (Free:91.62 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive h: (MSVS FLASH) (Removable) (Total:0.24 GB) (Free:0.05 GB) FAT

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 232.9 GB) (Disk ID: 4ECA4EC9)
Partition 1: (Active) - (Size=232.9 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 149.1 GB) (Disk ID: 4BA41FC9)
Partition 1: (Active) - (Size=149 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 245 MB) (Disk ID: D523B711)
Partition 1: (Not Active) - (Size=245 MB) - (Type=06)

==================== End of log ============================
 
Welcome aboard

I don't actually see anything malicious there so I suggest new topic in Windows forum.
 
MANY thanks for your swift response: much appreciated! At least it's good to be able to rule one thing out. I have followed your advice, and am keeping my fingers crossed that someone there has some ideas!
 
You're very welcome
p22002759.gif
 
Back