nastharl
2015-07-07, 03:52
For the last while (no real time frame), have been getting random video ad popups in the bottom right corner whenever ad-block is disabled. It doesn't consistantly do it on every page, but certain pages just do it all the time, and its one where i'm pretty sure its nothing to do with the actual page.
Log files are attached.1225312252
Except for Additions.txt which is pasted here because it was too big.
Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-07-2015
Ran by Nick at 2015-07-06 19:38:52
Running from C:\Users\Nick\Downloads
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-933702865-3488087127-4119853235-500 - Administrator - Disabled)
david (S-1-5-21-933702865-3488087127-4119853235-1010 - Limited - Enabled)
Guest (S-1-5-21-933702865-3488087127-4119853235-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-933702865-3488087127-4119853235-1002 - Limited - Enabled)
Nick (S-1-5-21-933702865-3488087127-4119853235-1001 - Administrator - Enabled) => C:\Users\Nick
UpdatusUser (S-1-5-21-933702865-3488087127-4119853235-1013 - Limited - Enabled) => C:\Users\UpdatusUser
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.11 - GIGABYTE)
µTorrent (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\uTorrent) (Version: 3.3.1.30017 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.178 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Reader X (10.1.14) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.14 - Adobe Systems Incorporated)
Advanced Combat Tracker (remove only) (HKLM-x32\...\Advanced Combat Tracker) (Version: - )
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.)
CameraHelperMsi (x32 Version: 13.51.815.0 - Logitech) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.13 - Piriform)
Cisco AnyConnect VPN Client (HKLM-x32\...\{28AAE6A5-B887-4E19-B06C-E367F3C43EDB}) (Version: 2.3.0185 - Cisco Systems, Inc.)
Combined Community Codec Pack 2013-03-25 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2013.03.25.0 - CCCP Project)
CPUID CPU-Z 1.63.0 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: - EnTech Taiwan)
Dell System Detect (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\9204f5692a8faf3b) (Version: 5.10.0.8 - Dell)
Dell System Detect (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\9204f5692a8faf3b) (Version: 5.10.0.8 - Dell)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - )
Dungeon Defenders Demo (HKLM-x32\...\Steam App 201680) (Version: - )
Easy Tune 6 B11.0630.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
Easy Tune 6 B11.0630.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
Free to Play (HKLM-x32\...\Steam App 245550) (Version: - Valve)
FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - Subset Games)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.1.39.5101 - Gretech Corporation)
Google Chrome (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.)
Google Chrome (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\Google Chrome) (Version: 31.0.1650.63 - Google Inc.)
Google Talk Plugin (HKLM-x32\...\{CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6}) (Version: 5.41.2.0 - Google)
HipChat (HKLM-x32\...\{1E58E3D7-8943-4BF1-BADD-BF471506B684}) (Version: 2.2.1388 - Atlassian Inc)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.20001.0 - IDT)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Java 7 Update 21 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417021FF}) (Version: 7.0.210 - Oracle)
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.650 - Oracle)
Java(TM) 6 Update 35 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416035FF}) (Version: 6.0.350 - Oracle)
JavaFX 2.2.4 (HKLM-x32\...\{1111706F-666A-4037-7777-224328764D10}) (Version: 2.2.4 - Oracle Corporation)
join.me (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\JoinMe) (Version: 1.17.0.156 - LogMeIn, Inc.)
join.me (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\JoinMe) (Version: 1.8.0.108 - LogMeIn, Inc.)
LatencyMon 6.00 (HKLM\...\LatencyMon_is1) (Version: - Resplendence Software Projects Sp.)
LG Verizon United Driver (HKLM-x32\...\{A17B9856-40CF-4BEA-BB65-ADB8154A83DC}) (Version: 2.11.1 - LG Electronics)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 15.0.4727.1003 - Microsoft Corporation)
Microsoft Office Excel Viewer (HKLM-x32\...\{95120000-003F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version: - )
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MotioninJoy ds3 driver version 0.5.0002 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.5.0002 - www.motioninjoy.com)
MotoHelper MergeModules (x32 Version: 1.2.0 - Motorola) Hidden
Mozilla Firefox 37.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 en-US)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.2 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Mumble 1.2.3 (HKLM-x32\...\{B4E343DD-BAAB-4D59-AD9C-DEA0AFE09DF1}) (Version: 1.2.3 - Thorvald Natvig)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.33.1 - Black Tree Gaming)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.9 - Notepad++ Team)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 352.86 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 352.86 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.4.3.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.3.22 - NVIDIA Corporation)
NVIDIA Graphics Driver 352.86 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 352.86 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Performance (HKLM-x32\...\InstallShield_{7C7F30F4-94E7-4AA8-8941-90C4A80C68BF}) (Version: 6.5 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
NVIDIA System Monitor (HKLM-x32\...\InstallShield_{E9CFBE78-ED91-4FCF-9E6F-210E477E527D}) (Version: 6.5 - NVIDIA Corporation)
NVIDIA System Update (HKLM-x32\...\InstallShield_{65A92AAA-3D05-4C94-9F70-731C05E60C16}) (Version: 3.00 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Pandora (HKLM-x32\...\com.pandora.desktop.E7C14276FFE9EEF0BC7DCE654C467D9A299EFD21.1) (Version: 2.0.8 - PANDORA MEDIA, INC.)
Pandora (x32 Version: 2.0.8 - PANDORA MEDIA, INC.) Hidden
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version: - )
Pidgin (HKLM-x32\...\Pidgin) (Version: 2.10.11 - )
Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve)
PS3 Media Server (HKLM-x32\...\PS3 Media Server) (Version: 1.82.0 - PS3 Media Server)
RaidCall (HKLM-x32\...\RaidCall) (Version: 7.3.0-1.0.10926.49 - raidcall.com)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.26027 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek)
Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
Serious Sam 3: BFE (HKLM-x32\...\Steam App 41070) (Version: - Croteam)
SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.3.22 - NVIDIA Corporation) Hidden
Sid Meier's Civilization: Beyond Earth (HKLM-x32\...\Steam App 65980) (Version: - Firaxis Games)
Skype™ 7.5 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.5.102 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\Spotify) (Version: 1.0.8.59.gee82e7e6 - Spotify AB)
Spotify (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\Spotify) (Version: 0.9.4.185.g7545a404 - Spotify AB)
Starbound (HKLM-x32\...\Steam App 211820) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
StepMania 3.9b (remove only) (HKLM-x32\...\StepMania) (Version: - )
System Requirements Lab for Intel (HKLM-x32\...\{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}) (Version: 4.5.24.0 - Husdawg, LLC)
The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version: - Nicalis, Inc.)
The Elder Scrolls Online Beta (HKLM-x32\...\The Elder Scrolls Online Beta_is1) (Version: 0.3.4 - )
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
TigerGame Superjoy Box Series (HKLM-x32\...\TigerGame Superjoy Box Series) (Version: - )
TouchBIOS B11.1201.1 (HKLM-x32\...\{A2EBACDD-09BB-4894-AE25-7168DB3BFA7F}) (Version: 1.00.0000 - GIGABYTE)
Tweaking.com - Registry Backup (HKLM-x32\...\Tweaking.com - Registry Backup) (Version: 2.2.0 - Tweaking.com)
Unity Web Player (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\UnityWebPlayer) (Version: 5.0.1f1 - Unity Technologies ApS)
Unity Web Player (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Warframe (HKLM-x32\...\Steam App 230410) (Version: - Digital Extremes)
Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc)
Winamp Detector Plug-in (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Winamp Detector Plug-in (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
Wireshark 1.10.1 (64-bit) (HKLM-x32\...\Wireshark) (Version: 1.10.1 - The Wireshark developer community, http://www.wireshark.org)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File
==================== Restore Points =========================
01-07-2015 04:22:36 Scheduled Checkpoint
06-07-2015 15:19:36 Installed HipChat
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {06847DE1-BE68-49ED-8E70-37A3FE317D8A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001UA => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)
Task: {115AC79F-F3DE-4B13-AD59-7A8A06E8AF57} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated)
Task: {3D121B54-F28A-456C-B52E-5BE7CA7C7012} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001Core => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)
Task: {59FB2BBF-9007-4978-B8CD-F2F413247931} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {5CB3BBA9-1CD9-4399-99BA-A6E89ED9CC1F} - System32\Tasks\{25ED3582-3C9E-49E6-8937-8BF5951D4455} => pcalua.exe -a C:\Users\Nick\Downloads\HECI\setup.exe -d C:\Users\Nick\Downloads\HECI
Task: {9FD375F7-8406-45D0-9C01-43D04F5A6308} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-05-12] (Microsoft Corporation)
Task: {A0EA8C16-038E-4CC5-93FA-235831516BD8} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-05-28] (Microsoft Corporation)
Task: {BF54F4F5-B081-4070-A1A8-745508AAED8A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-04-17] (Piriform Ltd)
Task: {F7EA13F1-251D-4408-A713-DD652F26FFAA} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {F91E3C1C-BF31-46A2-9C16-1229E11A70A6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-28] (Adobe Systems Incorporated)
Task: {FA9D5B58-694A-4B57-849A-1823485916E0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-05-12] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001Core.job => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001UA.job => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2015-05-01 13:37 - 2015-05-11 22:30 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-10-17 09:16 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-02-04 18:24 - 2015-02-04 18:25 - 00187072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2015-03-17 06:01 - 2015-01-27 10:29 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-05-12 04:49 - 2014-05-12 04:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2015-03-14 00:49 - 2015-03-14 00:49 - 00291840 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
2015-06-23 16:24 - 2015-06-23 16:24 - 04274688 _____ () C:\Program Files (x86)\Atlassian\HipChat\hipchat.exe
2015-05-01 12:44 - 2015-05-01 11:52 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-03-17 06:01 - 2015-01-27 09:13 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\Office15\1033\GrooveIntlResource.dll
2015-06-28 20:56 - 2015-04-16 12:40 - 00776192 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-06-28 20:56 - 2015-04-22 21:16 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-06-28 20:56 - 2015-04-22 21:16 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-06-28 20:56 - 2015-04-22 21:16 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-06-28 20:56 - 2015-06-04 13:56 - 02407104 _____ () C:\Program Files (x86)\Steam\video.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-06-28 20:56 - 2015-06-04 13:56 - 00703168 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2012-09-13 00:38 - 2012-09-13 00:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll
2015-05-19 21:29 - 2015-05-19 21:29 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2015-06-28 20:56 - 2015-05-11 14:01 - 36302728 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2015-03-03 20:44 - 2014-11-25 21:12 - 40622592 _____ () C:\Users\Nick\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll
2015-03-03 20:44 - 2014-11-25 21:12 - 00911360 _____ () C:\Users\Nick\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll
2015-03-03 20:44 - 2014-11-25 21:12 - 00134144 _____ () C:\Users\Nick\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll
2015-06-28 20:56 - 2015-05-11 14:01 - 08958344 _____ () C:\Program Files (x86)\Steam\bin\pdf.dll
2015-05-01 18:15 - 2015-07-05 18:55 - 41287224 _____ () C:\Users\Nick\AppData\Roaming\Spotify\libcef.dll
2015-05-01 18:15 - 2015-07-05 18:55 - 01488440 _____ () C:\Users\Nick\AppData\Roaming\Spotify\libglesv2.dll
2015-05-01 18:15 - 2015-07-05 18:55 - 00079928 _____ () C:\Users\Nick\AppData\Roaming\Spotify\libegl.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00036878 _____ () C:\Program Files (x86)\Pidgin\libssp-0.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00671031 _____ () C:\Program Files (x86)\Pidgin\exchndl.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00904525 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libcairo-2.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00279059 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libfontconfig-1.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00177586 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libexpat-1.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00553382 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\freetype6.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00216992 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libpng14-14.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00100352 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\zlib1.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 01274655 _____ () C:\Program Files (x86)\Pidgin\libxml2-2.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00475580 _____ () C:\Program Files (x86)\Pidgin\spellcheck\libgtkspell-0.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00021075 _____ () C:\Program Files (x86)\Pidgin\plugins\.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00020997 _____ () C:\Program Files (x86)\Pidgin\plugins\autoaccept.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00013253 _____ () C:\Program Files (x86)\Pidgin\plugins\buddynote.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00024924 _____ () C:\Program Files (x86)\Pidgin\plugins\convcolors.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015702 _____ () C:\Program Files (x86)\Pidgin\plugins\extplacement.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00014147 _____ () C:\Program Files (x86)\Pidgin\plugins\gtkbuddynote.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00018882 _____ () C:\Program Files (x86)\Pidgin\plugins\history.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00012865 _____ () C:\Program Files (x86)\Pidgin\plugins\iconaway.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00019043 _____ () C:\Program Files (x86)\Pidgin\plugins\idle.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00018555 _____ () C:\Program Files (x86)\Pidgin\plugins\joinpart.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015074 _____ () C:\Program Files (x86)\Pidgin\plugins\libaim.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00311021 _____ () C:\Program Files (x86)\Pidgin\liboscar.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00092398 _____ () C:\Program Files (x86)\Pidgin\plugins\libbonjour.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00328186 _____ () C:\Program Files (x86)\Pidgin\plugins\libgg.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00016005 _____ () C:\Program Files (x86)\Pidgin\plugins\libicq.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00107365 _____ () C:\Program Files (x86)\Pidgin\plugins\libirc.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00190464 _____ () C:\Program Files (x86)\Pidgin\libsasl.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00374169 _____ () C:\Program Files (x86)\Pidgin\plugins\libmsn.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00150598 _____ () C:\Program Files (x86)\Pidgin\plugins\libmxit.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00106671 _____ () C:\Program Files (x86)\Pidgin\plugins\libmyspace.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00123540 _____ () C:\Program Files (x86)\Pidgin\plugins\libnovell.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00116071 _____ () C:\Program Files (x86)\Pidgin\plugins\libsametime.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00152852 _____ () C:\Program Files (x86)\Pidgin\libmeanwhile-1.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00171123 _____ () C:\Program Files (x86)\Pidgin\plugins\libsilc.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 02097721 _____ () C:\Program Files (x86)\Pidgin\libsilc-1-1-2.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00818985 _____ () C:\Program Files (x86)\Pidgin\libsilcclient-1-1-3.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00055880 _____ () C:\Program Files (x86)\Pidgin\plugins\libsimple.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00021337 _____ () C:\Program Files (x86)\Pidgin\plugins\libxmpp.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00417758 _____ () C:\Program Files (x86)\Pidgin\libjabber.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00022832 _____ () C:\Program Files (x86)\Pidgin\plugins\libyahoo.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00236666 _____ () C:\Program Files (x86)\Pidgin\libymsg.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00019793 _____ () C:\Program Files (x86)\Pidgin\plugins\libyahoojp.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00047934 _____ () C:\Program Files (x86)\Pidgin\plugins\log_reader.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00021795 _____ () C:\Program Files (x86)\Pidgin\plugins\markerline.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00013456 _____ () C:\Program Files (x86)\Pidgin\plugins\newline.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00029225 _____ () C:\Program Files (x86)\Pidgin\plugins\notify.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00017023 _____ () C:\Program Files (x86)\Pidgin\plugins\offlinemsg.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00029256 _____ () C:\Program Files (x86)\Pidgin\plugins\pidginrc.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015380 _____ () C:\Program Files (x86)\Pidgin\plugins\psychic.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015429 _____ () C:\Program Files (x86)\Pidgin\plugins\relnot.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015045 _____ () C:\Program Files (x86)\Pidgin\plugins\sendbutton.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00069625 _____ () C:\Program Files (x86)\Pidgin\plugins\spellchk.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00031993 _____ () C:\Program Files (x86)\Pidgin\plugins\ssl-nss.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00012004 _____ () C:\Program Files (x86)\Pidgin\plugins\ssl.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015978 _____ () C:\Program Files (x86)\Pidgin\plugins\statenotify.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00030353 _____ () C:\Program Files (x86)\Pidgin\plugins\themeedit.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00032020 _____ () C:\Program Files (x86)\Pidgin\plugins\ticker.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00018399 _____ () C:\Program Files (x86)\Pidgin\plugins\timestamp.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00023851 _____ () C:\Program Files (x86)\Pidgin\plugins\timestamp_format.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00029791 _____ () C:\Program Files (x86)\Pidgin\plugins\win2ktrans.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00030771 _____ () C:\Program Files (x86)\Pidgin\plugins\winprefs.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00037191 _____ () C:\Program Files (x86)\Pidgin\plugins\xmppconsole.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00044494 _____ () C:\Program Files (x86)\Pidgin\plugins\xmppdisco.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00102400 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslANONYMOUS.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00115712 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslCRAMMD5.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00140288 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslDIGESTMD5.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00102912 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslLOGIN.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00102912 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslPLAIN.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00486400 _____ () C:\Program Files (x86)\Pidgin\sqlite3.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00090496 _____ () C:\Program Files (x86)\Pidgin\Gtk\lib\gtk-2.0\2.10.0\engines\libwimp.dll
2015-06-23 16:20 - 2015-06-23 16:20 - 01059328 _____ () C:\Program Files (x86)\Atlassian\HipChat\qxmpp0.dll
2015-06-23 16:20 - 2015-06-23 16:20 - 00258048 _____ () C:\Program Files (x86)\Atlassian\HipChat\KF5SonnetCore.dll
2015-06-23 16:21 - 2015-06-23 16:21 - 00234496 _____ () C:\Program Files (x86)\Atlassian\HipChat\KF5SonnetUi.dll
2014-07-15 13:25 - 2014-07-15 13:25 - 19670016 _____ () C:\Program Files (x86)\Atlassian\HipChat\OPENGL32.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00877056 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\platforms\qwindows.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00023552 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\imageformats\qgif.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00024064 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\imageformats\qico.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00241152 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\imageformats\qjpeg.dll
2014-09-11 04:55 - 2014-09-11 04:55 - 00012288 _____ () C:\Program Files (x86)\Atlassian\HipChat\QtQuick.2\qtquick2plugin.dll
2014-09-11 04:56 - 2014-09-11 04:56 - 00730112 _____ () C:\Program Files (x86)\Atlassian\HipChat\QtQuick\Controls\qtquickcontrolsplugin.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00037888 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\bearer\qgenericbearer.dll
2015-06-23 16:18 - 2015-06-23 16:18 - 00039936 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\bearer\qnativewifibearer.dll
2015-06-23 16:21 - 2015-06-23 16:21 - 00066048 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\kf5\sonnet\hunspell.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00119296 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\accessible\qtaccessiblewidgets.dll
2015-06-22 12:51 - 2015-06-20 00:46 - 01281864 _____ () C:\Users\Nick\AppData\Local\Google\Chrome\Application\43.0.2357.130\libglesv2.dll
2015-06-22 12:51 - 2015-06-20 00:46 - 00080712 _____ () C:\Users\Nick\AppData\Local\Google\Chrome\Application\43.0.2357.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\dell.com -> dell.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\sony.com -> sony.com
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-933702865-3488087127-4119853235-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 75.75.75.75 - 75.75.76.76
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: DellSystemDetect => C:\Users\Nick\AppData\Local\Apps\2.0\WWLJNK9P.Z1N\DQQLT1RK.LZ8\dell..tion_0f612f649c4a10af_0005.000a_17ece8424e43daec\DellSystemDetect.exe
MSCONFIG\startupreg: doubleTwist => C:\Program Files (x86)\doubleTwist\doubleTwist.Light.exe
MSCONFIG\startupreg: Google Update => "C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Nick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
MSCONFIG\startupreg: uTorrent => "C:\Users\Nick\AppData\Local\Temp\utt46DD.tmp.exe" /MINIMIZED
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{7AA6A0B8-B4B1-4264-99FE-2437633ADC84}] => (Allow) D:\Program Files\Steam\Steam.exe
FirewallRules: [{926FB89F-267D-4F2C-9F9C-96B059C6350D}] => (Allow) D:\Program Files\Steam\Steam.exe
FirewallRules: [TCP Query User{8D307F65-75D2-4D0A-8CA3-B7A7C1463ACD}D:\program files\winamp\winamp.exe] => (Allow) D:\program files\winamp\winamp.exe
FirewallRules: [UDP Query User{DBCE091D-F8EE-4E2F-A1CB-6DE5114460A8}D:\program files\winamp\winamp.exe] => (Allow) D:\program files\winamp\winamp.exe
FirewallRules: [{3125BCA4-56C5-4B21-BCBB-2BF56FE28A64}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{02C27C23-F9E6-4D9C-8389-43F4DF2344D3}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{617D952F-F0AF-49C2-A009-1322ADCCEC57}] => (Allow) LPort=3724
FirewallRules: [TCP Query User{54163F1C-D787-4187-B28B-DDE8C1F1BC9B}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{BB635D0A-0AEE-406B-96FB-BA7BD2CA35CF}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [TCP Query User{70469CB5-BA3C-490A-8BB3-0606EA922891}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{FC4AAA53-E9ED-4068-92CA-5FAE0ACBBCB7}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [TCP Query User{319F537E-7AE2-4B7B-AA5F-8DE1B4265D84}D:\sysreset\mirc.exe] => (Allow) D:\sysreset\mirc.exe
FirewallRules: [UDP Query User{0F1814A6-97E9-446F-8FC7-6597797285AB}D:\sysreset\mirc.exe] => (Allow) D:\sysreset\mirc.exe
FirewallRules: [{5452394A-6D58-48A7-BD27-46CFECDC9F9D}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{053593BA-1AE0-484F-961A-04CF83D0A7D3}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{65C6CFD8-00FF-4CAA-8014-5E9DD92DB8D0}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{D4EE98E5-1742-442A-95A8-5CCDB03D9FF8}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{F018C837-ED60-46FC-B0C2-FB670BED3FB1}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{0C474E9D-7A0F-44AE-8C06-227423AB5F12}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{BBF79ECD-75C9-4A52-AECD-8D0B39D5FE5A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{27A3DAAA-8784-4D27-9F05-3256032FE02F}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{C9B7F39B-1ED6-4160-9120-AB9A1C2FC5DC}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{902373B0-A7A3-488D-BB8C-4E053140D7B1}] => (Allow) D:\Program Files\Steam\steamapps\common\portal 2\portal2.exe
FirewallRules: [{4DB9A497-7F8B-497B-8F18-FDD1C7CFA689}] => (Allow) D:\Program Files\Steam\steamapps\common\portal 2\portal2.exe
FirewallRules: [{92DD19F9-4305-4E97-9795-1D819E232068}] => (Allow) D:\Program Files\Steam\steamapps\common\dawn of war 2\DOW2.exe
FirewallRules: [{80E73E73-4C7F-4932-AAA4-4DB189930E91}] => (Allow) D:\Program Files\Steam\steamapps\common\dawn of war 2\DOW2.exe
FirewallRules: [{BBD15215-8FBD-487B-B082-8DF1D12601AD}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\Binaries\MassEffect2.exe
FirewallRules: [{6DAF3A04-3275-4242-B501-E1CA64AB530A}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\Binaries\MassEffect2.exe
FirewallRules: [{3BF08B38-FF34-41D4-9AB7-DA43ECC546C7}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\MassEffect2Launcher.exe
FirewallRules: [{0FEE3F5D-7EDE-43B5-8EE4-056030C29FBB}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\MassEffect2Launcher.exe
FirewallRules: [{6FE46AC9-5D03-455D-ABD6-C86F9A47F28A}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{0029D676-3955-4DA8-A464-B737DF8FE35C}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{5FD451BE-4EF7-4256-8912-6BD2832A1CC4}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\recettear.exe
FirewallRules: [{2C30D1C1-36FA-410F-A11E-2BDFDE7D22F7}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\recettear.exe
FirewallRules: [{421708E0-E506-4B43-A051-C5CA84C31AAC}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\custom.exe
FirewallRules: [{4D79211F-3E69-4D7A-9850-DBFD43DFCD5C}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\custom.exe
FirewallRules: [{811E1FF2-2918-4E95-AD75-576A19D71CFF}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{41BA4319-676D-43F3-A606-D5D698B310A0}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{B920FBD7-6322-4623-9F94-FC8C48964BFF}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders demo\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{66D1E05A-09E5-496A-A6FE-8CBFD56AA698}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders demo\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{531F1FE2-9014-49D2-95B0-011398155391}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{3ADE9C73-035B-4153-8280-3F05BF5B1C80}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{FC5629BF-EAFD-4193-9842-06BA9B2CC2AF}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{7E0892E3-C9D0-4F3B-8888-2D42EE7FD3EC}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{336A00AA-71C7-4B75-BD07-6ABC4B8DD5AD}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{F2B47580-1638-4374-AF06-030100000F38}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{96A95E09-5BB7-40F5-B480-0180DDE9EE3C}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{68FE19E2-5C22-4711-A90F-7D3C0C8C8823}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{06EA9E12-F4B6-4819-9615-F01045F50685}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{FD104F85-2947-4C1F-889A-02624996EED8}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{E2D3B94E-7AFE-49B4-BE72-B1FE197FF275}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{AAED2B17-3765-4B44-80B1-31A737B46146}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{851F1990-3D0E-4A86-9E3A-9DBDC8E9A3AB}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{A814F35D-C94E-4289-B258-90D06CCABB2A}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{FBB87DCC-7454-4741-8075-1D76155641EB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{53F4B8F7-5522-4E13-8C68-BBB6015A70D0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{DFE82416-F482-44CE-A416-6D9A80337EEE}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{D1268EAF-3D40-4D7B-B4A1-0E25BF18E5F9}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{C3DEE63E-D0FD-491C-B09A-2E6349A1ECD9}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{BD940288-6B81-453F-A617-C7BECEB61E0E}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{4AFE5596-789C-4F13-BAB2-466CC32934FD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{A6B6562B-2288-4404-9C27-12205F338C27}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{D07D49FD-D84C-4BB4-88D0-C7A26F370221}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{52EF6003-9BF3-43BF-9122-B2984E791324}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1DBEEF4E-ADBA-4B34-9DF4-5137EA6CB500}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{63D57C85-3817-40A8-A083-349D48031E7B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{DCEB3780-7C75-485C-BA90-3D91E5B158CA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{68FDC97D-FF42-4EDF-8201-DDA10A621AF5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{A0AC361F-6537-4FE9-AD17-8D49A8D75DF3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F021F918-96FE-4AB9-B53B-3712E0FAA501}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{188FE494-1FCF-4B38-84B9-74914F42F3AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{21AAC1F0-119A-482D-8D19-D30D4CCB7349}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{3FD177FB-627F-4989-A2A0-F0E6D96EDF97}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{3A9EB43E-4A52-41C8-A432-56956DF353BA}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{C49EE13E-13C5-41FB-9DFE-7036B6568F81}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{C0EFBFB2-57A6-48D8-8AE3-3B0E824C640A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{B3812ACD-2E72-4A9F-8D3B-BB17A37C35E4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{05C4D969-B0DB-4A5A-8F92-6D7143BA8C98}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{6BB3D1BF-45DA-493F-A6D1-5DCC80883F1E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7D3D20E0-6C66-4D90-85C9-07779771F8CA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8BAFD6E2-CF6E-4F8A-BB32-C81999C235A0}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{E39422A4-BA84-4968-A9C6-79791596E21F}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{F2555453-69A8-4D62-B8D0-6F5558490622}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{305E0131-6EDA-44F3-A08F-48EF22293467}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{BD0CAFBC-25B2-4AF8-A7F3-C97CF591A287}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{94BB03B9-F68A-4F75-9A52-C3C8105FE5BB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{EBF8AAA9-1C01-4D1D-9DB2-AC833C2BC737}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{A2568F9C-D7C1-44CE-9607-2E9CCACEF35A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{D02B146E-C895-49C0-8B59-D10EA9CB25AF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{1333EEEB-2CA0-479C-AB2C-68B805184C2A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{17470F9E-2A26-457A-9F01-DC454B98CBC0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{4BDE3F65-0155-4E9E-AAA2-4688DBEB6D07}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{30164245-476B-4ABF-8FE5-240C7322C138}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{BDFF7EA6-59C6-4726-8F4C-5F75DA1BB45F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{21EBAEF0-6490-4234-AB7F-065E1232B2EB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{BEA2572E-1522-4F85-98E1-53FDDADB53D6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{74C739E3-E591-44A4-BC31-20409F85FE63}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{9618FCAD-E145-42BE-BA38-CC5675E96D23}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{B829BEED-5526-41E8-8E9F-5794BDC07BFE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{30A78922-3F09-492A-8B83-EBDA956E7A12}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{521C1791-1FCA-428C-9346-93F41E2E932E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{228670EE-2166-4458-BEBF-B10922AA91CF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{53C69B1C-8EEC-47AA-AE5D-3289101DA6B4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{228A5B39-A8AE-4C9F-AB65-4C7CB6765ECB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{AC338EFE-F194-4A0D-8C14-33F0DBBDF2B9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{9E23DFB1-DC3F-4677-B775-564A6B0CD340}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{E087D21C-2F56-4DD5-B83F-256DD8AAC1DD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{AC9B8EB1-2B86-4963-B020-54A29C341C3E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{9C988523-706F-4054-8A9C-32F7348D5593}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{0D822B51-E077-4E77-A1F4-F6F224BE1A24}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{B948FF19-0560-46B0-A3EB-5D8BAD3CDD1F}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{6FEAC59F-105A-4AA0-B19B-F1F443579D3A}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{3A2A9E06-BFF0-4CFA-BE22-549A525F42D0}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{C72D0A96-2061-418F-AE0F-40226BAA2858}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{BFA51BDD-3F6D-47AD-BFE4-C2D4CA8B47E4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{D15C20AD-773F-49A7-85D2-3BFA1E53840D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{02CB3F08-3B87-4C40-AF72-759B85C2AB5C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{5E4CC6A1-C7E5-4D66-AD4F-B60D6BE949CA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{E7C70136-71C5-409F-A045-CB7407742891}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{810A7BB5-742B-4036-BE25-8FE5B045574D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{07BEDD08-2F44-4D11-95D0-5B98B590F084}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{AACC54A1-689B-4830-A6C0-14DB27E9D396}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{4CD86D44-F2F5-4DA9-BC60-FFFC174FA524}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{55B1F1E6-5EB2-425F-AF4F-086DCE2B8CB3}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{D7AA8422-5A1C-4AD9-A2BA-5E1B89F72904}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{0D7180FD-4102-4DEC-BCBF-D0EA2DE53D75}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{03B5BA7B-D737-41C6-A99D-8AE34295E374}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{4E51CB80-4182-4F82-B75B-253B786102AD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{6B2846F7-D5EE-439A-A5C9-F4F011E9FD62}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{154EB2A0-F202-4AB2-9873-DCDA09043906}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{44F5CA1D-A838-4D67-A53D-87BFA497E6DF}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{0C061522-D2E4-4904-BB18-3CEA13DA6999}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{D18A2BB0-519E-4D5C-B1F1-70080DDCB717}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{DAFAE876-8DB7-46B0-945A-C475FF32A9C1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{800978A9-BDEC-45C6-8B4E-937213EB91C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FA9864D6-622D-4B78-93A1-952B801CA6C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{07B63234-A692-4D52-AFC3-282CD05B3B63}] => (Allow) D:\Program Files\Steam\steamapps\common\Source SDK Base\hl2.exe
FirewallRules: [{7C41819E-878C-4E4A-90F0-6550A826EDB9}] => (Allow) D:\Program Files\Steam\steamapps\common\Source SDK Base\hl2.exe
FirewallRules: [{33B3B32B-6BFB-4AFD-B3CF-75926A7BF95E}] => (Allow) D:\Program Files\Steam\steamapps\common\Free to Play\FTP.exe
FirewallRules: [{72639B92-2E3E-48DD-A774-1699AFF3C6F5}] => (Allow) D:\Program Files\Steam\steamapps\common\Free to Play\FTP.exe
FirewallRules: [{63129C2D-A9ED-486D-9985-9ADA77A4B6B7}] => (Allow) D:\Program Files\Steam\steamapps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{28EF2CC7-5C4A-4A34-977A-6D43437A32EC}] => (Allow) D:\Program Files\Steam\steamapps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{1066871E-A376-4695-807D-4C8EA5893031}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{69CB9BAF-A211-4A4A-A9A3-409D49637A64}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{37A1934E-F5F9-4346-B4A5-27F0A2BE6CF9}] => (Allow) D:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{25F722A9-29E1-4E36-8281-6B2197F7D498}] => (Allow) D:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{7E852111-4903-4BB3-99CA-7BF4754B9E56}] => (Allow) D:\Program Files\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{1F76B5CA-8E7F-46CB-9472-6F58A3494CFF}] => (Allow) D:\Program Files\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{17FD8A91-82E5-41C4-9332-E4FA3EB14314}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{14663198-3ABB-4EAD-AC7B-70F141F8D16D}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{2CD6E673-AB3A-4AD3-85F3-D853D2FB6310}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{68F9602F-D276-4734-AD2A-9C306788A714}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{373988CF-8CBB-4E3D-9FFC-18FFB0802A10}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{6345E56C-618F-4AD3-8564-91D7A6338256}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{B161D2F0-F3BD-423A-BA0A-BF840BBC770D}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{DAC3C5D5-3838-4F88-B083-BE9882E964CE}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\DAOrigins.exe
FirewallRules: [{515ED292-88BF-42BE-9E6B-1824D01E4C48}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\DAOrigins.exe
FirewallRules: [{E47B9290-BD4E-441D-A406-5B99C351502A}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{D7CA3C50-97E4-4910-B98E-E295247C72C4}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{EEFA0C20-4495-4C30-99B5-FB4EFF2411E5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{AB2F0043-03A4-4B9A-A127-4BF1E810F005}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{5228211D-2256-4609-B1DD-1575A581B6A1}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{D8A959BE-BBB5-4F6E-8B55-56B6F06FC723}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{573FED78-7C34-461D-981B-F6354D278ED9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{68D1A5FE-31D2-4EB0-BAC7-740F0FFADC12}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{214D23A3-07CA-4329-BC1A-C79C5A90E83C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{01AC6DA2-A84F-4174-AE4A-E246CD0D9574}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{5F384CC5-F288-4A16-A62D-A0990F8B658F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5589AC7D-B9DE-4F70-A853-69A66D482F28}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
==================== Faulty Device Manager Devices =============
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Description: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvvad_WaveExtensible
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Intel(R) HD Graphics 3000
Description: Intel(R) HD Graphics 3000
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: igfx
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Intel(R) Display Audio
Description: Intel(R) Display Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel(R) Corporation
Service: IntcDAud
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (07/05/2015 06:17:30 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 09:16:50 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:57:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:54:01 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
System errors:
=============
Error: (07/05/2015 06:15:42 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 09:15:02 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:57:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Steam Client Service service failed to start due to the following error:
%%1053
Error: (06/28/2015 08:57:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
Error: (06/28/2015 08:55:21 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:54:02 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:43:14 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:39:39 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:35:24 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 12291) (User: NT AUTHORITY)
Description: SAM failed to start the TCP/IP or SPX/IPX listening thread
Error: (06/28/2015 08:35:16 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Microsoft Office:
=========================
Error: (07/05/2015 06:17:30 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 09:16:50 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:57:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:54:01 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
CodeIntegrity Errors:
===================================
Date: 2012-02-11 21:04:04.982
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-02-11 21:04:04.973
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i7-2600K CPU @ 3.40GHz
Percentage of memory in use: 40%
Total physical RAM: 8109.18 MB
Available physical RAM: 4814.64 MB
Total Virtual: 16216.54 MB
Available Virtual: 12503.23 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:119.14 GB) (Free:25.56 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: B34EDF65)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS)
==================== End of log ============================
Log files are attached.1225312252
Except for Additions.txt which is pasted here because it was too big.
Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-07-2015
Ran by Nick at 2015-07-06 19:38:52
Running from C:\Users\Nick\Downloads
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-933702865-3488087127-4119853235-500 - Administrator - Disabled)
david (S-1-5-21-933702865-3488087127-4119853235-1010 - Limited - Enabled)
Guest (S-1-5-21-933702865-3488087127-4119853235-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-933702865-3488087127-4119853235-1002 - Limited - Enabled)
Nick (S-1-5-21-933702865-3488087127-4119853235-1001 - Administrator - Enabled) => C:\Users\Nick
UpdatusUser (S-1-5-21-933702865-3488087127-4119853235-1013 - Limited - Enabled) => C:\Users\UpdatusUser
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.11 - GIGABYTE)
µTorrent (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\uTorrent) (Version: 3.3.1.30017 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.178 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Reader X (10.1.14) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.14 - Adobe Systems Incorporated)
Advanced Combat Tracker (remove only) (HKLM-x32\...\Advanced Combat Tracker) (Version: - )
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.)
CameraHelperMsi (x32 Version: 13.51.815.0 - Logitech) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.13 - Piriform)
Cisco AnyConnect VPN Client (HKLM-x32\...\{28AAE6A5-B887-4E19-B06C-E367F3C43EDB}) (Version: 2.3.0185 - Cisco Systems, Inc.)
Combined Community Codec Pack 2013-03-25 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2013.03.25.0 - CCCP Project)
CPUID CPU-Z 1.63.0 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: - EnTech Taiwan)
Dell System Detect (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\9204f5692a8faf3b) (Version: 5.10.0.8 - Dell)
Dell System Detect (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\9204f5692a8faf3b) (Version: 5.10.0.8 - Dell)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - )
Dungeon Defenders Demo (HKLM-x32\...\Steam App 201680) (Version: - )
Easy Tune 6 B11.0630.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
Easy Tune 6 B11.0630.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
Free to Play (HKLM-x32\...\Steam App 245550) (Version: - Valve)
FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - Subset Games)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.1.39.5101 - Gretech Corporation)
Google Chrome (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.)
Google Chrome (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\Google Chrome) (Version: 31.0.1650.63 - Google Inc.)
Google Talk Plugin (HKLM-x32\...\{CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6}) (Version: 5.41.2.0 - Google)
HipChat (HKLM-x32\...\{1E58E3D7-8943-4BF1-BADD-BF471506B684}) (Version: 2.2.1388 - Atlassian Inc)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.20001.0 - IDT)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Java 7 Update 21 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417021FF}) (Version: 7.0.210 - Oracle)
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.650 - Oracle)
Java(TM) 6 Update 35 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416035FF}) (Version: 6.0.350 - Oracle)
JavaFX 2.2.4 (HKLM-x32\...\{1111706F-666A-4037-7777-224328764D10}) (Version: 2.2.4 - Oracle Corporation)
join.me (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\JoinMe) (Version: 1.17.0.156 - LogMeIn, Inc.)
join.me (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\JoinMe) (Version: 1.8.0.108 - LogMeIn, Inc.)
LatencyMon 6.00 (HKLM\...\LatencyMon_is1) (Version: - Resplendence Software Projects Sp.)
LG Verizon United Driver (HKLM-x32\...\{A17B9856-40CF-4BEA-BB65-ADB8154A83DC}) (Version: 2.11.1 - LG Electronics)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 15.0.4727.1003 - Microsoft Corporation)
Microsoft Office Excel Viewer (HKLM-x32\...\{95120000-003F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version: - )
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MotioninJoy ds3 driver version 0.5.0002 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.5.0002 - www.motioninjoy.com)
MotoHelper MergeModules (x32 Version: 1.2.0 - Motorola) Hidden
Mozilla Firefox 37.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 en-US)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.2 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Mumble 1.2.3 (HKLM-x32\...\{B4E343DD-BAAB-4D59-AD9C-DEA0AFE09DF1}) (Version: 1.2.3 - Thorvald Natvig)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.33.1 - Black Tree Gaming)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.9 - Notepad++ Team)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 352.86 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 352.86 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.4.3.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.3.22 - NVIDIA Corporation)
NVIDIA Graphics Driver 352.86 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 352.86 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Performance (HKLM-x32\...\InstallShield_{7C7F30F4-94E7-4AA8-8941-90C4A80C68BF}) (Version: 6.5 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
NVIDIA System Monitor (HKLM-x32\...\InstallShield_{E9CFBE78-ED91-4FCF-9E6F-210E477E527D}) (Version: 6.5 - NVIDIA Corporation)
NVIDIA System Update (HKLM-x32\...\InstallShield_{65A92AAA-3D05-4C94-9F70-731C05E60C16}) (Version: 3.00 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Pandora (HKLM-x32\...\com.pandora.desktop.E7C14276FFE9EEF0BC7DCE654C467D9A299EFD21.1) (Version: 2.0.8 - PANDORA MEDIA, INC.)
Pandora (x32 Version: 2.0.8 - PANDORA MEDIA, INC.) Hidden
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version: - )
Pidgin (HKLM-x32\...\Pidgin) (Version: 2.10.11 - )
Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve)
PS3 Media Server (HKLM-x32\...\PS3 Media Server) (Version: 1.82.0 - PS3 Media Server)
RaidCall (HKLM-x32\...\RaidCall) (Version: 7.3.0-1.0.10926.49 - raidcall.com)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.26027 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek)
Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
Serious Sam 3: BFE (HKLM-x32\...\Steam App 41070) (Version: - Croteam)
SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.3.22 - NVIDIA Corporation) Hidden
Sid Meier's Civilization: Beyond Earth (HKLM-x32\...\Steam App 65980) (Version: - Firaxis Games)
Skype™ 7.5 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.5.102 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\Spotify) (Version: 1.0.8.59.gee82e7e6 - Spotify AB)
Spotify (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\Spotify) (Version: 0.9.4.185.g7545a404 - Spotify AB)
Starbound (HKLM-x32\...\Steam App 211820) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
StepMania 3.9b (remove only) (HKLM-x32\...\StepMania) (Version: - )
System Requirements Lab for Intel (HKLM-x32\...\{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}) (Version: 4.5.24.0 - Husdawg, LLC)
The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version: - Nicalis, Inc.)
The Elder Scrolls Online Beta (HKLM-x32\...\The Elder Scrolls Online Beta_is1) (Version: 0.3.4 - )
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
TigerGame Superjoy Box Series (HKLM-x32\...\TigerGame Superjoy Box Series) (Version: - )
TouchBIOS B11.1201.1 (HKLM-x32\...\{A2EBACDD-09BB-4894-AE25-7168DB3BFA7F}) (Version: 1.00.0000 - GIGABYTE)
Tweaking.com - Registry Backup (HKLM-x32\...\Tweaking.com - Registry Backup) (Version: 2.2.0 - Tweaking.com)
Unity Web Player (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\UnityWebPlayer) (Version: 5.0.1f1 - Unity Technologies ApS)
Unity Web Player (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Warframe (HKLM-x32\...\Steam App 230410) (Version: - Digital Extremes)
Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc)
Winamp Detector Plug-in (HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Winamp Detector Plug-in (HKU\S-1-5-21-933702865-3488087127-4119853235-1013\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
Wireshark 1.10.1 (64-bit) (HKLM-x32\...\Wireshark) (Version: 1.10.1 - The Wireshark developer community, http://www.wireshark.org)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-933702865-3488087127-4119853235-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File
==================== Restore Points =========================
01-07-2015 04:22:36 Scheduled Checkpoint
06-07-2015 15:19:36 Installed HipChat
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {06847DE1-BE68-49ED-8E70-37A3FE317D8A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001UA => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)
Task: {115AC79F-F3DE-4B13-AD59-7A8A06E8AF57} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated)
Task: {3D121B54-F28A-456C-B52E-5BE7CA7C7012} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001Core => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)
Task: {59FB2BBF-9007-4978-B8CD-F2F413247931} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {5CB3BBA9-1CD9-4399-99BA-A6E89ED9CC1F} - System32\Tasks\{25ED3582-3C9E-49E6-8937-8BF5951D4455} => pcalua.exe -a C:\Users\Nick\Downloads\HECI\setup.exe -d C:\Users\Nick\Downloads\HECI
Task: {9FD375F7-8406-45D0-9C01-43D04F5A6308} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-05-12] (Microsoft Corporation)
Task: {A0EA8C16-038E-4CC5-93FA-235831516BD8} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-05-28] (Microsoft Corporation)
Task: {BF54F4F5-B081-4070-A1A8-745508AAED8A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-04-17] (Piriform Ltd)
Task: {F7EA13F1-251D-4408-A713-DD652F26FFAA} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {F91E3C1C-BF31-46A2-9C16-1229E11A70A6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-28] (Adobe Systems Incorporated)
Task: {FA9D5B58-694A-4B57-849A-1823485916E0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-05-12] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001Core.job => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-933702865-3488087127-4119853235-1001UA.job => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2015-05-01 13:37 - 2015-05-11 22:30 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-10-17 09:16 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-02-04 18:24 - 2015-02-04 18:25 - 00187072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2015-03-17 06:01 - 2015-01-27 10:29 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-05-12 04:49 - 2014-05-12 04:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2015-03-14 00:49 - 2015-03-14 00:49 - 00291840 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
2015-06-23 16:24 - 2015-06-23 16:24 - 04274688 _____ () C:\Program Files (x86)\Atlassian\HipChat\hipchat.exe
2015-05-01 12:44 - 2015-05-01 11:52 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-03-17 06:01 - 2015-01-27 09:13 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\Office15\1033\GrooveIntlResource.dll
2015-06-28 20:56 - 2015-04-16 12:40 - 00776192 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-06-28 20:56 - 2015-04-22 21:16 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-06-28 20:56 - 2015-04-22 21:16 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-06-28 20:56 - 2015-04-22 21:16 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-06-28 20:56 - 2015-06-04 13:56 - 02407104 _____ () C:\Program Files (x86)\Steam\video.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-06-28 20:56 - 2014-12-01 16:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-06-28 20:56 - 2015-06-04 13:56 - 00703168 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2012-09-13 00:38 - 2012-09-13 00:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll
2015-05-19 21:29 - 2015-05-19 21:29 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2015-06-28 20:56 - 2015-05-11 14:01 - 36302728 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2015-03-03 20:44 - 2014-11-25 21:12 - 40622592 _____ () C:\Users\Nick\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll
2015-03-03 20:44 - 2014-11-25 21:12 - 00911360 _____ () C:\Users\Nick\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll
2015-03-03 20:44 - 2014-11-25 21:12 - 00134144 _____ () C:\Users\Nick\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll
2015-06-28 20:56 - 2015-05-11 14:01 - 08958344 _____ () C:\Program Files (x86)\Steam\bin\pdf.dll
2015-05-01 18:15 - 2015-07-05 18:55 - 41287224 _____ () C:\Users\Nick\AppData\Roaming\Spotify\libcef.dll
2015-05-01 18:15 - 2015-07-05 18:55 - 01488440 _____ () C:\Users\Nick\AppData\Roaming\Spotify\libglesv2.dll
2015-05-01 18:15 - 2015-07-05 18:55 - 00079928 _____ () C:\Users\Nick\AppData\Roaming\Spotify\libegl.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00036878 _____ () C:\Program Files (x86)\Pidgin\libssp-0.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00671031 _____ () C:\Program Files (x86)\Pidgin\exchndl.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00904525 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libcairo-2.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00279059 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libfontconfig-1.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00177586 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libexpat-1.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00553382 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\freetype6.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00216992 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\libpng14-14.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00100352 _____ () C:\Program Files (x86)\Pidgin\Gtk\bin\zlib1.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 01274655 _____ () C:\Program Files (x86)\Pidgin\libxml2-2.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00475580 _____ () C:\Program Files (x86)\Pidgin\spellcheck\libgtkspell-0.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00021075 _____ () C:\Program Files (x86)\Pidgin\plugins\.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00020997 _____ () C:\Program Files (x86)\Pidgin\plugins\autoaccept.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00013253 _____ () C:\Program Files (x86)\Pidgin\plugins\buddynote.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00024924 _____ () C:\Program Files (x86)\Pidgin\plugins\convcolors.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015702 _____ () C:\Program Files (x86)\Pidgin\plugins\extplacement.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00014147 _____ () C:\Program Files (x86)\Pidgin\plugins\gtkbuddynote.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00018882 _____ () C:\Program Files (x86)\Pidgin\plugins\history.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00012865 _____ () C:\Program Files (x86)\Pidgin\plugins\iconaway.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00019043 _____ () C:\Program Files (x86)\Pidgin\plugins\idle.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00018555 _____ () C:\Program Files (x86)\Pidgin\plugins\joinpart.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015074 _____ () C:\Program Files (x86)\Pidgin\plugins\libaim.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00311021 _____ () C:\Program Files (x86)\Pidgin\liboscar.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00092398 _____ () C:\Program Files (x86)\Pidgin\plugins\libbonjour.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00328186 _____ () C:\Program Files (x86)\Pidgin\plugins\libgg.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00016005 _____ () C:\Program Files (x86)\Pidgin\plugins\libicq.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00107365 _____ () C:\Program Files (x86)\Pidgin\plugins\libirc.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00190464 _____ () C:\Program Files (x86)\Pidgin\libsasl.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00374169 _____ () C:\Program Files (x86)\Pidgin\plugins\libmsn.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00150598 _____ () C:\Program Files (x86)\Pidgin\plugins\libmxit.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00106671 _____ () C:\Program Files (x86)\Pidgin\plugins\libmyspace.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00123540 _____ () C:\Program Files (x86)\Pidgin\plugins\libnovell.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00116071 _____ () C:\Program Files (x86)\Pidgin\plugins\libsametime.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00152852 _____ () C:\Program Files (x86)\Pidgin\libmeanwhile-1.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00171123 _____ () C:\Program Files (x86)\Pidgin\plugins\libsilc.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 02097721 _____ () C:\Program Files (x86)\Pidgin\libsilc-1-1-2.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00818985 _____ () C:\Program Files (x86)\Pidgin\libsilcclient-1-1-3.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00055880 _____ () C:\Program Files (x86)\Pidgin\plugins\libsimple.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00021337 _____ () C:\Program Files (x86)\Pidgin\plugins\libxmpp.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00417758 _____ () C:\Program Files (x86)\Pidgin\libjabber.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00022832 _____ () C:\Program Files (x86)\Pidgin\plugins\libyahoo.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00236666 _____ () C:\Program Files (x86)\Pidgin\libymsg.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00019793 _____ () C:\Program Files (x86)\Pidgin\plugins\libyahoojp.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00047934 _____ () C:\Program Files (x86)\Pidgin\plugins\log_reader.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00021795 _____ () C:\Program Files (x86)\Pidgin\plugins\markerline.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00013456 _____ () C:\Program Files (x86)\Pidgin\plugins\newline.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00029225 _____ () C:\Program Files (x86)\Pidgin\plugins\notify.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00017023 _____ () C:\Program Files (x86)\Pidgin\plugins\offlinemsg.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00029256 _____ () C:\Program Files (x86)\Pidgin\plugins\pidginrc.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015380 _____ () C:\Program Files (x86)\Pidgin\plugins\psychic.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015429 _____ () C:\Program Files (x86)\Pidgin\plugins\relnot.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015045 _____ () C:\Program Files (x86)\Pidgin\plugins\sendbutton.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00069625 _____ () C:\Program Files (x86)\Pidgin\plugins\spellchk.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00031993 _____ () C:\Program Files (x86)\Pidgin\plugins\ssl-nss.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00012004 _____ () C:\Program Files (x86)\Pidgin\plugins\ssl.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00015978 _____ () C:\Program Files (x86)\Pidgin\plugins\statenotify.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00030353 _____ () C:\Program Files (x86)\Pidgin\plugins\themeedit.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00032020 _____ () C:\Program Files (x86)\Pidgin\plugins\ticker.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00018399 _____ () C:\Program Files (x86)\Pidgin\plugins\timestamp.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00023851 _____ () C:\Program Files (x86)\Pidgin\plugins\timestamp_format.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00029791 _____ () C:\Program Files (x86)\Pidgin\plugins\win2ktrans.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00030771 _____ () C:\Program Files (x86)\Pidgin\plugins\winprefs.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00037191 _____ () C:\Program Files (x86)\Pidgin\plugins\xmppconsole.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00044494 _____ () C:\Program Files (x86)\Pidgin\plugins\xmppdisco.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00102400 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslANONYMOUS.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00115712 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslCRAMMD5.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00140288 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslDIGESTMD5.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00102912 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslLOGIN.dll
2014-11-23 12:33 - 2014-11-23 12:33 - 00102912 _____ () C:\Program Files (x86)\Pidgin\sasl2\saslPLAIN.dll
2014-11-23 12:34 - 2014-11-23 12:34 - 00486400 _____ () C:\Program Files (x86)\Pidgin\sqlite3.dll
2015-07-06 14:56 - 2015-07-06 14:56 - 00090496 _____ () C:\Program Files (x86)\Pidgin\Gtk\lib\gtk-2.0\2.10.0\engines\libwimp.dll
2015-06-23 16:20 - 2015-06-23 16:20 - 01059328 _____ () C:\Program Files (x86)\Atlassian\HipChat\qxmpp0.dll
2015-06-23 16:20 - 2015-06-23 16:20 - 00258048 _____ () C:\Program Files (x86)\Atlassian\HipChat\KF5SonnetCore.dll
2015-06-23 16:21 - 2015-06-23 16:21 - 00234496 _____ () C:\Program Files (x86)\Atlassian\HipChat\KF5SonnetUi.dll
2014-07-15 13:25 - 2014-07-15 13:25 - 19670016 _____ () C:\Program Files (x86)\Atlassian\HipChat\OPENGL32.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00877056 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\platforms\qwindows.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00023552 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\imageformats\qgif.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00024064 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\imageformats\qico.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00241152 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\imageformats\qjpeg.dll
2014-09-11 04:55 - 2014-09-11 04:55 - 00012288 _____ () C:\Program Files (x86)\Atlassian\HipChat\QtQuick.2\qtquick2plugin.dll
2014-09-11 04:56 - 2014-09-11 04:56 - 00730112 _____ () C:\Program Files (x86)\Atlassian\HipChat\QtQuick\Controls\qtquickcontrolsplugin.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00037888 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\bearer\qgenericbearer.dll
2015-06-23 16:18 - 2015-06-23 16:18 - 00039936 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\bearer\qnativewifibearer.dll
2015-06-23 16:21 - 2015-06-23 16:21 - 00066048 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\kf5\sonnet\hunspell.dll
2014-09-11 04:40 - 2014-09-11 04:40 - 00119296 _____ () C:\Program Files (x86)\Atlassian\HipChat\plugins\accessible\qtaccessiblewidgets.dll
2015-06-22 12:51 - 2015-06-20 00:46 - 01281864 _____ () C:\Users\Nick\AppData\Local\Google\Chrome\Application\43.0.2357.130\libglesv2.dll
2015-06-22 12:51 - 2015-06-20 00:46 - 00080712 _____ () C:\Users\Nick\AppData\Local\Google\Chrome\Application\43.0.2357.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\dell.com -> dell.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-933702865-3488087127-4119853235-1001\...\sony.com -> sony.com
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-933702865-3488087127-4119853235-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 75.75.75.75 - 75.75.76.76
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: DellSystemDetect => C:\Users\Nick\AppData\Local\Apps\2.0\WWLJNK9P.Z1N\DQQLT1RK.LZ8\dell..tion_0f612f649c4a10af_0005.000a_17ece8424e43daec\DellSystemDetect.exe
MSCONFIG\startupreg: doubleTwist => C:\Program Files (x86)\doubleTwist\doubleTwist.Light.exe
MSCONFIG\startupreg: Google Update => "C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Nick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
MSCONFIG\startupreg: uTorrent => "C:\Users\Nick\AppData\Local\Temp\utt46DD.tmp.exe" /MINIMIZED
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{7AA6A0B8-B4B1-4264-99FE-2437633ADC84}] => (Allow) D:\Program Files\Steam\Steam.exe
FirewallRules: [{926FB89F-267D-4F2C-9F9C-96B059C6350D}] => (Allow) D:\Program Files\Steam\Steam.exe
FirewallRules: [TCP Query User{8D307F65-75D2-4D0A-8CA3-B7A7C1463ACD}D:\program files\winamp\winamp.exe] => (Allow) D:\program files\winamp\winamp.exe
FirewallRules: [UDP Query User{DBCE091D-F8EE-4E2F-A1CB-6DE5114460A8}D:\program files\winamp\winamp.exe] => (Allow) D:\program files\winamp\winamp.exe
FirewallRules: [{3125BCA4-56C5-4B21-BCBB-2BF56FE28A64}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{02C27C23-F9E6-4D9C-8389-43F4DF2344D3}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{617D952F-F0AF-49C2-A009-1322ADCCEC57}] => (Allow) LPort=3724
FirewallRules: [TCP Query User{54163F1C-D787-4187-B28B-DDE8C1F1BC9B}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{BB635D0A-0AEE-406B-96FB-BA7BD2CA35CF}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [TCP Query User{70469CB5-BA3C-490A-8BB3-0606EA922891}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{FC4AAA53-E9ED-4068-92CA-5FAE0ACBBCB7}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [TCP Query User{319F537E-7AE2-4B7B-AA5F-8DE1B4265D84}D:\sysreset\mirc.exe] => (Allow) D:\sysreset\mirc.exe
FirewallRules: [UDP Query User{0F1814A6-97E9-446F-8FC7-6597797285AB}D:\sysreset\mirc.exe] => (Allow) D:\sysreset\mirc.exe
FirewallRules: [{5452394A-6D58-48A7-BD27-46CFECDC9F9D}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{053593BA-1AE0-484F-961A-04CF83D0A7D3}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{65C6CFD8-00FF-4CAA-8014-5E9DD92DB8D0}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{D4EE98E5-1742-442A-95A8-5CCDB03D9FF8}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{F018C837-ED60-46FC-B0C2-FB670BED3FB1}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{0C474E9D-7A0F-44AE-8C06-227423AB5F12}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{BBF79ECD-75C9-4A52-AECD-8D0B39D5FE5A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{27A3DAAA-8784-4D27-9F05-3256032FE02F}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{C9B7F39B-1ED6-4160-9120-AB9A1C2FC5DC}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{902373B0-A7A3-488D-BB8C-4E053140D7B1}] => (Allow) D:\Program Files\Steam\steamapps\common\portal 2\portal2.exe
FirewallRules: [{4DB9A497-7F8B-497B-8F18-FDD1C7CFA689}] => (Allow) D:\Program Files\Steam\steamapps\common\portal 2\portal2.exe
FirewallRules: [{92DD19F9-4305-4E97-9795-1D819E232068}] => (Allow) D:\Program Files\Steam\steamapps\common\dawn of war 2\DOW2.exe
FirewallRules: [{80E73E73-4C7F-4932-AAA4-4DB189930E91}] => (Allow) D:\Program Files\Steam\steamapps\common\dawn of war 2\DOW2.exe
FirewallRules: [{BBD15215-8FBD-487B-B082-8DF1D12601AD}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\Binaries\MassEffect2.exe
FirewallRules: [{6DAF3A04-3275-4242-B501-E1CA64AB530A}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\Binaries\MassEffect2.exe
FirewallRules: [{3BF08B38-FF34-41D4-9AB7-DA43ECC546C7}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\MassEffect2Launcher.exe
FirewallRules: [{0FEE3F5D-7EDE-43B5-8EE4-056030C29FBB}] => (Allow) D:\Program Files\Steam\steamapps\common\mass effect 2\MassEffect2Launcher.exe
FirewallRules: [{6FE46AC9-5D03-455D-ABD6-C86F9A47F28A}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{0029D676-3955-4DA8-A464-B737DF8FE35C}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{5FD451BE-4EF7-4256-8912-6BD2832A1CC4}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\recettear.exe
FirewallRules: [{2C30D1C1-36FA-410F-A11E-2BDFDE7D22F7}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\recettear.exe
FirewallRules: [{421708E0-E506-4B43-A051-C5CA84C31AAC}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\custom.exe
FirewallRules: [{4D79211F-3E69-4D7A-9850-DBFD43DFCD5C}] => (Allow) D:\Program Files\Steam\steamapps\common\recettear\custom.exe
FirewallRules: [{811E1FF2-2918-4E95-AD75-576A19D71CFF}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{41BA4319-676D-43F3-A606-D5D698B310A0}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{B920FBD7-6322-4623-9F94-FC8C48964BFF}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders demo\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{66D1E05A-09E5-496A-A6FE-8CBFD56AA698}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders demo\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{531F1FE2-9014-49D2-95B0-011398155391}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{3ADE9C73-035B-4153-8280-3F05BF5B1C80}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\DAOriginsLauncher.exe
FirewallRules: [{FC5629BF-EAFD-4193-9842-06BA9B2CC2AF}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{7E0892E3-C9D0-4F3B-8888-2D42EE7FD3EC}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\docs\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{336A00AA-71C7-4B75-BD07-6ABC4B8DD5AD}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{F2B47580-1638-4374-AF06-030100000F38}] => (Allow) D:\Program Files\Steam\steamapps\common\torchlight\Torchlight.exe
FirewallRules: [{96A95E09-5BB7-40F5-B480-0180DDE9EE3C}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{68FE19E2-5C22-4711-A90F-7D3C0C8C8823}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{06EA9E12-F4B6-4819-9615-F01045F50685}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{FD104F85-2947-4C1F-889A-02624996EED8}] => (Allow) D:\Program Files\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{E2D3B94E-7AFE-49B4-BE72-B1FE197FF275}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{AAED2B17-3765-4B44-80B1-31A737B46146}] => (Allow) D:\Program Files\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{851F1990-3D0E-4A86-9E3A-9DBDC8E9A3AB}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{A814F35D-C94E-4289-B258-90D06CCABB2A}] => (Allow) D:\Program Files\Steam\steamapps\common\dungeon defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{FBB87DCC-7454-4741-8075-1D76155641EB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{53F4B8F7-5522-4E13-8C68-BBB6015A70D0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{DFE82416-F482-44CE-A416-6D9A80337EEE}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{D1268EAF-3D40-4D7B-B4A1-0E25BF18E5F9}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{C3DEE63E-D0FD-491C-B09A-2E6349A1ECD9}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{BD940288-6B81-453F-A617-C7BECEB61E0E}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{4AFE5596-789C-4F13-BAB2-466CC32934FD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{A6B6562B-2288-4404-9C27-12205F338C27}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{D07D49FD-D84C-4BB4-88D0-C7A26F370221}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{52EF6003-9BF3-43BF-9122-B2984E791324}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1DBEEF4E-ADBA-4B34-9DF4-5137EA6CB500}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{63D57C85-3817-40A8-A083-349D48031E7B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{DCEB3780-7C75-485C-BA90-3D91E5B158CA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{68FDC97D-FF42-4EDF-8201-DDA10A621AF5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{A0AC361F-6537-4FE9-AD17-8D49A8D75DF3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F021F918-96FE-4AB9-B53B-3712E0FAA501}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{188FE494-1FCF-4B38-84B9-74914F42F3AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{21AAC1F0-119A-482D-8D19-D30D4CCB7349}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{3FD177FB-627F-4989-A2A0-F0E6D96EDF97}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{3A9EB43E-4A52-41C8-A432-56956DF353BA}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{C49EE13E-13C5-41FB-9DFE-7036B6568F81}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{C0EFBFB2-57A6-48D8-8AE3-3B0E824C640A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{B3812ACD-2E72-4A9F-8D3B-BB17A37C35E4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{05C4D969-B0DB-4A5A-8F92-6D7143BA8C98}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{6BB3D1BF-45DA-493F-A6D1-5DCC80883F1E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7D3D20E0-6C66-4D90-85C9-07779771F8CA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8BAFD6E2-CF6E-4F8A-BB32-C81999C235A0}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{E39422A4-BA84-4968-A9C6-79791596E21F}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{F2555453-69A8-4D62-B8D0-6F5558490622}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{305E0131-6EDA-44F3-A08F-48EF22293467}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{BD0CAFBC-25B2-4AF8-A7F3-C97CF591A287}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{94BB03B9-F68A-4F75-9A52-C3C8105FE5BB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{EBF8AAA9-1C01-4D1D-9DB2-AC833C2BC737}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{A2568F9C-D7C1-44CE-9607-2E9CCACEF35A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{D02B146E-C895-49C0-8B59-D10EA9CB25AF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{1333EEEB-2CA0-479C-AB2C-68B805184C2A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{17470F9E-2A26-457A-9F01-DC454B98CBC0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{4BDE3F65-0155-4E9E-AAA2-4688DBEB6D07}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{30164245-476B-4ABF-8FE5-240C7322C138}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{BDFF7EA6-59C6-4726-8F4C-5F75DA1BB45F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{21EBAEF0-6490-4234-AB7F-065E1232B2EB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{BEA2572E-1522-4F85-98E1-53FDDADB53D6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{74C739E3-E591-44A4-BC31-20409F85FE63}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{9618FCAD-E145-42BE-BA38-CC5675E96D23}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{B829BEED-5526-41E8-8E9F-5794BDC07BFE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{30A78922-3F09-492A-8B83-EBDA956E7A12}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{521C1791-1FCA-428C-9346-93F41E2E932E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{228670EE-2166-4458-BEBF-B10922AA91CF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{53C69B1C-8EEC-47AA-AE5D-3289101DA6B4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{228A5B39-A8AE-4C9F-AB65-4C7CB6765ECB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{AC338EFE-F194-4A0D-8C14-33F0DBBDF2B9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{9E23DFB1-DC3F-4677-B775-564A6B0CD340}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{E087D21C-2F56-4DD5-B83F-256DD8AAC1DD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{AC9B8EB1-2B86-4963-B020-54A29C341C3E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{9C988523-706F-4054-8A9C-32F7348D5593}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{0D822B51-E077-4E77-A1F4-F6F224BE1A24}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{B948FF19-0560-46B0-A3EB-5D8BAD3CDD1F}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{6FEAC59F-105A-4AA0-B19B-F1F443579D3A}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{3A2A9E06-BFF0-4CFA-BE22-549A525F42D0}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{C72D0A96-2061-418F-AE0F-40226BAA2858}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{BFA51BDD-3F6D-47AD-BFE4-C2D4CA8B47E4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{D15C20AD-773F-49A7-85D2-3BFA1E53840D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{02CB3F08-3B87-4C40-AF72-759B85C2AB5C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{5E4CC6A1-C7E5-4D66-AD4F-B60D6BE949CA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{E7C70136-71C5-409F-A045-CB7407742891}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{810A7BB5-742B-4036-BE25-8FE5B045574D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{07BEDD08-2F44-4D11-95D0-5B98B590F084}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{AACC54A1-689B-4830-A6C0-14DB27E9D396}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{4CD86D44-F2F5-4DA9-BC60-FFFC174FA524}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{55B1F1E6-5EB2-425F-AF4F-086DCE2B8CB3}] => (Allow) D:\Program Files\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{D7AA8422-5A1C-4AD9-A2BA-5E1B89F72904}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{0D7180FD-4102-4DEC-BCBF-D0EA2DE53D75}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{03B5BA7B-D737-41C6-A99D-8AE34295E374}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{4E51CB80-4182-4F82-B75B-253B786102AD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{6B2846F7-D5EE-439A-A5C9-F4F011E9FD62}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{154EB2A0-F202-4AB2-9873-DCDA09043906}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{44F5CA1D-A838-4D67-A53D-87BFA497E6DF}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{0C061522-D2E4-4904-BB18-3CEA13DA6999}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{D18A2BB0-519E-4D5C-B1F1-70080DDCB717}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{DAFAE876-8DB7-46B0-945A-C475FF32A9C1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{800978A9-BDEC-45C6-8B4E-937213EB91C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FA9864D6-622D-4B78-93A1-952B801CA6C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{07B63234-A692-4D52-AFC3-282CD05B3B63}] => (Allow) D:\Program Files\Steam\steamapps\common\Source SDK Base\hl2.exe
FirewallRules: [{7C41819E-878C-4E4A-90F0-6550A826EDB9}] => (Allow) D:\Program Files\Steam\steamapps\common\Source SDK Base\hl2.exe
FirewallRules: [{33B3B32B-6BFB-4AFD-B3CF-75926A7BF95E}] => (Allow) D:\Program Files\Steam\steamapps\common\Free to Play\FTP.exe
FirewallRules: [{72639B92-2E3E-48DD-A774-1699AFF3C6F5}] => (Allow) D:\Program Files\Steam\steamapps\common\Free to Play\FTP.exe
FirewallRules: [{63129C2D-A9ED-486D-9985-9ADA77A4B6B7}] => (Allow) D:\Program Files\Steam\steamapps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{28EF2CC7-5C4A-4A34-977A-6D43437A32EC}] => (Allow) D:\Program Files\Steam\steamapps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{1066871E-A376-4695-807D-4C8EA5893031}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{69CB9BAF-A211-4A4A-A9A3-409D49637A64}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{37A1934E-F5F9-4346-B4A5-27F0A2BE6CF9}] => (Allow) D:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{25F722A9-29E1-4E36-8281-6B2197F7D498}] => (Allow) D:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{7E852111-4903-4BB3-99CA-7BF4754B9E56}] => (Allow) D:\Program Files\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{1F76B5CA-8E7F-46CB-9472-6F58A3494CFF}] => (Allow) D:\Program Files\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{17FD8A91-82E5-41C4-9332-E4FA3EB14314}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{14663198-3ABB-4EAD-AC7B-70F141F8D16D}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{2CD6E673-AB3A-4AD3-85F3-D853D2FB6310}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{68F9602F-D276-4734-AD2A-9C306788A714}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{373988CF-8CBB-4E3D-9FFC-18FFB0802A10}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{6345E56C-618F-4AD3-8564-91D7A6338256}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{B161D2F0-F3BD-423A-BA0A-BF840BBC770D}] => (Allow) D:\Program Files\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{DAC3C5D5-3838-4F88-B083-BE9882E964CE}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\DAOrigins.exe
FirewallRules: [{515ED292-88BF-42BE-9E6B-1824D01E4C48}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\DAOrigins.exe
FirewallRules: [{E47B9290-BD4E-441D-A406-5B99C351502A}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{D7CA3C50-97E4-4910-B98E-E295247C72C4}] => (Allow) D:\Program Files\Steam\steamapps\common\dragon age origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{EEFA0C20-4495-4C30-99B5-FB4EFF2411E5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{AB2F0043-03A4-4B9A-A127-4BF1E810F005}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{5228211D-2256-4609-B1DD-1575A581B6A1}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{D8A959BE-BBB5-4F6E-8B55-56B6F06FC723}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{573FED78-7C34-461D-981B-F6354D278ED9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{68D1A5FE-31D2-4EB0-BAC7-740F0FFADC12}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{214D23A3-07CA-4329-BC1A-C79C5A90E83C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{01AC6DA2-A84F-4174-AE4A-E246CD0D9574}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{5F384CC5-F288-4A16-A62D-A0990F8B658F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5589AC7D-B9DE-4F70-A853-69A66D482F28}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
==================== Faulty Device Manager Devices =============
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Description: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvvad_WaveExtensible
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Intel(R) HD Graphics 3000
Description: Intel(R) HD Graphics 3000
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: igfx
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Intel(R) Display Audio
Description: Intel(R) Display Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel(R) Corporation
Service: IntcDAud
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (07/05/2015 06:17:30 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 09:16:50 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:57:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:54:01 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
System errors:
=============
Error: (07/05/2015 06:15:42 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 09:15:02 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:57:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Steam Client Service service failed to start due to the following error:
%%1053
Error: (06/28/2015 08:57:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
Error: (06/28/2015 08:55:21 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:54:02 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:43:14 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:39:39 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Error: (06/28/2015 08:35:24 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 12291) (User: NT AUTHORITY)
Description: SAM failed to start the TCP/IP or SPX/IPX listening thread
Error: (06/28/2015 08:35:16 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
cdrom
Microsoft Office:
=========================
Error: (07/05/2015 06:17:30 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (07/05/2015 06:15:41 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 09:16:50 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 09:15:00 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:57:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
Error: (06/28/2015 08:55:20 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to open Audio Capture session [6]
Error: (06/28/2015 08:54:01 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [0]
CodeIntegrity Errors:
===================================
Date: 2012-02-11 21:04:04.982
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-02-11 21:04:04.973
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i7-2600K CPU @ 3.40GHz
Percentage of memory in use: 40%
Total physical RAM: 8109.18 MB
Available physical RAM: 4814.64 MB
Total Virtual: 16216.54 MB
Available Virtual: 12503.23 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:119.14 GB) (Free:25.56 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: B34EDF65)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS)
==================== End of log ============================