Page 2 of 3 FirstFirst 123 LastLast
Results 11 to 20 of 24

Thread: Live Player 3.2

  1. #11
    Junior Member
    Join Date
    May 2013
    Posts
    13

    Default

    OTL Extras logfile created on: 6/11/2013 1:43:57 AM - Run 4
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\xWiCkeDx\Desktop
    64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.10.9200.16576)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    15.99 Gb Total Physical Memory | 13.25 Gb Available Physical Memory | 82.88% Memory free
    31.98 Gb Paging File | 28.60 Gb Available in Paging File | 89.43% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 223.56 Gb Total Space | 46.69 Gb Free Space | 20.88% Space Free | Partition Type: NTFS
    Drive D: | 558.90 Gb Total Space | 174.50 Gb Free Space | 31.22% Space Free | Partition Type: NTFS
    Drive E: | 1863.01 Gb Total Space | 160.55 Gb Free Space | 8.62% Space Free | Partition Type: NTFS
    Drive F: | 1397.25 Gb Total Space | 486.61 Gb Free Space | 34.83% Space Free | Partition Type: NTFS
    Drive G: | 1862.89 Gb Total Space | 559.14 Gb Free Space | 30.01% Space Free | Partition Type: NTFS

    Computer Name: GT-R | User Name: xWiCkeDx | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
    .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

    [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
    .html [@ = ChromeHTML] -- Reg Error: Key error. File not found

    ========== Shell Spawning ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htafile [open] -- "%1" %*
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
    InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htafile [open] -- "%1" %*
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

    ========== Security Center Settings ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 0

    ========== Authorized Applications List ==========


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{0918A49F-4D0E-42C9-8FBF-69C41F74F618}" = lport=445 | protocol=6 | dir=in | app=system |
    "{0B0902B6-96CC-417D-998A-674152DCC709}" = lport=139 | protocol=6 | dir=in | app=system |
    "{0E4E7BCC-EC81-4F3F-8BB9-A8943055255C}" = lport=57646 | protocol=6 | dir=in | name=pando media booster |
    "{45A8E19D-0AFE-499B-BFA0-5F1966A132D8}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{518F53EE-B17B-43B2-A680-376BF98462ED}" = rport=137 | protocol=17 | dir=out | app=system |
    "{51C32542-330A-483D-AAD9-5DA23AB490C0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{5C16005A-70C1-4738-BC91-20BECE282BAA}" = lport=137 | protocol=17 | dir=in | app=system |
    "{68D496D7-50B6-4177-8666-1D96E6958C50}" = rport=138 | protocol=17 | dir=out | app=system |
    "{7DF25FB0-DC92-4855-B1B3-4F4A4D7146A2}" = rport=445 | protocol=6 | dir=out | app=system |
    "{8658683B-CF53-4EF7-9D64-49FC3A377406}" = lport=57646 | protocol=17 | dir=in | name=pando media booster |
    "{92DDB89D-98AE-4A08-8486-CFD1E8BC99C2}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
    "{A45F6FD0-BEA6-405E-AD50-7D5C76C140C4}" = lport=57646 | protocol=17 | dir=in | name=pando media booster |
    "{AC6B382F-6101-41A6-81C8-AF176F1578AB}" = lport=57646 | protocol=6 | dir=in | name=pando media booster |
    "{AF855B78-624A-4322-A805-ED3EE4702199}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
    "{D813562B-004F-4946-9C7A-E49CE5E4D056}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
    "{ED0D72AF-17AA-40AE-8494-8B559BB3ABF6}" = lport=138 | protocol=17 | dir=in | app=system |
    "{F2230D49-ABC2-48AB-BDB3-51F75B6A7196}" = rport=139 | protocol=6 | dir=out | app=system |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{0048767E-ED3C-498A-82CE-27EF5B2DFE5E}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.0\sonarhost.exe |
    "{0235393F-242B-4434-B30B-1BAB8EEFAE7B}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
    "{03FD07DB-ED86-4725-97EA-6C70BF33974E}" = protocol=6 | dir=in | app=c:\program files (x86)\dolbyaxon\axon.exe |
    "{0FCAFC62-E89B-4E56-A6C1-C885976F0912}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
    "{13DD3116-B3B1-4DE0-AC1F-1274063147B6}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
    "{18C8C12E-EFE3-46ED-B038-F263710A4032}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
    "{206CBF07-A8D0-4DCB-BEE5-D1C6018DD6AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\far cry 3\bin\fc3updatersteam.exe |
    "{2598A5C5-E44F-4068-99A1-14F86FFAA2AC}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{2B1C3B0F-9BF4-4EAD-B78A-D803592EB9B9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
    "{344148F6-5472-47AA-A498-5DF6618723E1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{375EC517-A74E-4CCA-9860-43354502E81C}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{3B3A7618-045A-4281-A5F2-98FE7DC7D224}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{3E787B5B-DE19-41E6-8AB3-400D41A02A87}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
    "{449933DF-3C45-4D46-8088-EE8D5E5E2BAA}" = protocol=6 | dir=in | app=c:\users\xwickedx\appdata\local\google\google talk plugin\googletalkplugin.exe |
    "{464DA071-A2F0-4BA7-9EF3-7E13FB9CEEEC}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
    "{46DFB4ED-C3A5-4130-BDCD-1C3FF4E63075}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.0\sonarhost.exe |
    "{496B98ED-BCC7-4A43-AD16-E73C1E37A22C}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
    "{49DC875D-3C08-4178-B97B-063534B3E666}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
    "{4AC7C07E-C648-41DB-8E14-9D06614BD6CF}" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\fax utility\fufaxcnt.exe |
    "{4C0CC38F-30D9-43A8-B821-20CC968D2292}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
    "{5055F7BC-8064-4E99-96F3-FFDD523C7716}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
    "{5491E092-BDD2-452E-A19B-0E571EAFA326}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{5B81F554-08A6-4EFF-92AA-280001E1CD12}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sid meier's civilization v\launcher.exe |
    "{5C19F236-9278-40EC-B8E2-40C301305908}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
    "{5D2DAAF0-6334-4130-95A7-AE7953D51C44}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
    "{5F35310D-00DE-4C29-9A50-9AB80CC42B8F}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{62D578B3-8221-44E4-97FD-F182288118A9}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
    "{62DEF18A-6E8B-4980-8200-DBF34B4CC135}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{63A511DF-35D7-42A6-9A42-F965A5D35CAA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sanctum2\binaries\win32\sanctumgame-win32-shipping.exe |
    "{6F1986F0-FEF3-48BC-B75F-13CD5DD640E9}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
    "{6FEF370E-2A45-4EDC-AADA-689FF3CAD7EC}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
    "{778A1F87-1552-4C80-B2CD-D4E1ACE1DB87}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    "{7890E59B-68F5-4DFA-A20A-826EFD949A4D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\far cry 3\bin\fc3updatersteam.exe |
    "{7C31D999-0CCD-469D-A269-BC5B50F7FF49}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
    "{7EECBCE5-4573-4751-A954-4E730A312333}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
    "{80D4031D-12BE-45CA-BFD1-E12A58A91C96}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
    "{84A7BC64-6062-45EB-AD80-B0B9C4A6926E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
    "{8E60D13A-6F56-4275-A816-28CFBEB954FB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
    "{9570C467-C400-435B-84FE-824EF8FA74C7}" = protocol=17 | dir=in | app=c:\program files (x86)\dolbyaxon\axon.exe |
    "{9808C9A1-5447-4E41-AF36-810E47D8F515}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
    "{9A735510-B946-4E9B-8709-1D02988B169F}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
    "{9BA92B24-CCE7-4E58-AAAD-3B9EA2A1CF3D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
    "{9C3118CB-072C-4A42-A80F-2EE9AC630D77}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
    "{9C414891-6F02-4B7E-8553-D49A3374EEBB}" = protocol=17 | dir=in | app=c:\users\xwickedx\appdata\local\google\google talk plugin\googletalkplugin.exe |
    "{AED448FC-266D-472D-B368-0AE841A21049}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
    "{BC0990DD-3C07-4F81-B3B9-09D34B3C7D35}" = protocol=6 | dir=in | app=c:\users\xwickedx\appdata\local\google\google talk plugin\googletalkplugin.exe |
    "{BD39E35C-34D2-4E41-A441-021A008FBA77}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    "{BEA42B4B-F2EB-4125-A55D-46CD27E88154}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{CB237E25-F2C9-4B79-97C4-3D3A88255020}" = protocol=17 | dir=in | app=c:\users\xwickedx\appdata\local\google\google talk plugin\googletalkplugin.exe |
    "{CEE0A33E-A78D-4787-B089-02DB3E5D4ECD}" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\fax utility\fufaxcnt.exe |
    "{DD470C0F-A893-4404-8BAA-039B75977B3B}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
    "{DFAC77EA-AA48-4070-BEEB-0411E0DBA19C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sid meier's civilization v\launcher.exe |
    "{E0350101-7970-4D91-9A91-CEB7482FA83B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
    "{E1165601-8A4C-4D24-8C94-4202AB9481ED}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{E369B5B2-E3D5-434B-874D-1D535CBFE81B}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{E5DC6F66-8C8E-40D4-A540-AD5C0D98B107}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
    "{EEA2A683-D97E-49C2-9657-AA6F79496E12}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sanctum2\binaries\win32\sanctumgame-win32-shipping.exe |
    "{F49C6F55-346D-45D7-8907-8D6BD3D3C151}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
    "TCP Query User{0BD40228-8032-42BC-A811-B05E63AA9C0C}C:\program files (x86)\steam\steamapps\common\f1 2010\f1_2010_game.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\f1 2010\f1_2010_game.exe |
    "TCP Query User{129D47C0-8083-48B6-9861-7151E41C99A2}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe |
    "TCP Query User{23D44D74-BD92-4C32-AD80-6819DAB7A4D1}C:\program files\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files\mirc\mirc.exe |
    "TCP Query User{343C1DC0-59D8-4ABA-8457-E63C725CFF6D}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
    "UDP Query User{090AA706-7691-4943-BAB0-A0D3EAD654AF}C:\program files (x86)\steam\steamapps\common\f1 2010\f1_2010_game.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\f1 2010\f1_2010_game.exe |
    "UDP Query User{28BD13A5-ECCC-41D0-899B-FAC0AA0AA2A1}C:\program files\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files\mirc\mirc.exe |
    "UDP Query User{B4C80D5D-2563-4906-82C8-1B54BAFF056C}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
    "UDP Query User{FD6E52AE-BCF6-4924-8763-4246E77CD5D7}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
    "{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support
    "{4975DE61-6BF6-B9BC-1FDE-C04C5EC78E4C}" = AMD Media Foundation Decoders
    "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
    "{5E03A267-415E-5383-FA8F-3CE4145663B9}" = AMD Catalyst Install Manager
    "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
    "{690285C2-2481-44FB-8402-162EA970A6DD}" = Logitech Gaming Software
    "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
    "{704C0303-D20C-45AF-BD2B-556EAF31BE09}" = iCloud
    "{76FF0F03-B707-4332-B5D1-A56C8303514E}" = iTunes
    "{814FA673-A085-403C-9545-747FC1495069}" = Epson Customer Participation
    "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
    "{8882ED04-FE2B-478C-AF10-E7BE2A3C7AD4}" = Intel(R) Network Connections 15.0.4.0
    "{89EE4A30-080F-2C95-6F78-C98D18FBD74D}" = AMD Accelerated Video Transcoding
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
    "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
    "{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
    "{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
    "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
    "{9CF11D16-ECEB-90A5-A028-CA9E068D848B}" = ccc-utility64
    "{A71060CF-81D0-EC17-2252-78CA0E96CCCF}" = AMD Drag and Drop Transcoding
    "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
    "{D3120436-1358-4253-9EB2-257FFE8CE1D9}" = Logitech SetPoint 5.20
    "{D9C50188-12D5-4D3E-8F00-682346C2AA5F}" = Microsoft Xbox 360 Accessories 1.2
    "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
    "30853F7174C6EB267FDAABE50A369169D18DA611" = Windows Driver Package - Datel Design & Development (usbio) USBIOControlledDevices (04/21/2009 2.40.0.0)
    "3DS Compatible Action Replay Firmware Update_is1" = 3DS Compatible Action Replay Firmware Update version 1.0
    "8555DF8099612EF2F8333DC0EC454113D4537E7B" = Windows Driver Package - Datel Design & Development USBIOControlledDevices (04/21/2009 2.40.0.0)
    "Action Replay DSi Code Manager_is1" = Action Replay DSi Code Manager
    "C-Media Oxygen HD Audio Driver" = HT OMEGA CLARO
    "CPUID CPU-Z_is1" = CPUID CPU-Z 1.57.1
    "EPSON Artisan 837 Series" = EPSON Artisan 837 Series Printer Uninstall
    "Logitech Gaming Software" = Logitech Gaming Software 8.40
    "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
    "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
    "PROSetDX" = Intel(R) Network Connections 15.0.4.0
    "WinRAR archiver" = WinRAR 4.00 (64-bit)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
    "{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1" = Live Update 5
    "{017F8447-2A1D-0DDB-B5D7-CA2BFACE2886}" = CCC Help French
    "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
    "{054E9A1C-3EA2-C657-E787-FD8DCF5C3D3B}" = CCC Help Czech
    "{0A590981-75A9-B968-4A29-718E5A8E1416}" = CCC Help Dutch
    "{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1" = MSI Kombustor 2.0.0
    "{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}" = Epson FAX Utility
    "{0E6B8EA7-4FDF-F730-8F28-05720874BE71}" = CCC Help Chinese Traditional
    "{1003E625-BE5B-390B-7B60-D483D0B75A26}" = CCC Help Russian
    "{10F63395-157F-4B93-AB4D-702A2FF11942}" = Epson Download Navigator
    "{1111706F-666A-4037-7777-210328764D10}" = JavaFX 2.1.0
    "{1690611F-D4EA-A00D-DAAD-91D216869679}" = CCC Help Polish
    "{17936630-5344-4F18-9970-616129E2A114}_is1" = Dolby Axon - 1.5.0.1
    "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
    "{1C3DA126-D523-4089-BCCA-FA46FE34D6F8}" = Google Drive
    "{1DE2BD51-0300-772D-5E18-F337D95D5687}" = CCC Help German
    "{224E8FEB-5C1F-077F-6FC5-602AC1AE644D}" = CCC Help Danish
    "{2348B586-C9AE-46CE-936C-A68E9426E214}" = Nero StartSmart Help
    "{26A24AE4-039D-4CA4-87B4-2F83217021FF}" = Java 7 Update 21
    "{26EED5E6-EC40-35A9-602A-C3CF03A9C1E6}" = CCC Help Portuguese
    "{275E9C49-C72F-D754-DEB7-77F10A9C00D8}" = CCC Help Japanese
    "{2C33E65D-9187-8F2E-40D8-BD9E24E341FB}" = CCC Help Italian
    "{30049739-BE95-6591-B504-E6D7057D49CC}" = CCC Help Spanish
    "{36B6FF8B-38E3-E64C-F840-75F6AAEBE3EA}" = Catalyst Control Center Graphics Previews Common
    "{38F6C932-2274-4897-479D-03AA6BA5B567}" = CCC Help Turkish
    "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMicron JMB36X Driver
    "{3AB00888-CA03-0BFD-3F3C-C877767192B0}" = CCC Help Swedish
    "{3ACA2563-E786-BDD4-C87B-09909BB3F61C}" = CCC Help Thai
    "{3E31400D-274E-4647-916C-2CACC3741799}" = EpsonNet Print
    "{3F1EB155-F96E-EB7B-2EF2-7375490E0FA9}" = CCC Help English
    "{434D0831-A4CC-401A-9E74-621000018401}" = F1 2010
    "{434D0831-A4CC-401A-9E74-621000018402}" = F1 2010
    "{434D0FA1-A4CC-401A-9E74-621000028101}" = F1 2011
    "{491D92A9-69CA-4EB4-81D3-0106F9337957}" = TurboV EVO
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{4B023D7B-9E67-795D-FB31-B5E1F6DCA451}" = CCC Help Italian
    "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
    "{4D43D635-6FDA-4FA5-AA9B-23CF73D058EA}" = Nero StartSmart OEM
    "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.2
    "{51268A7D-4E1A-371A-9849-496D48930952}" = Google Talk Plugin
    "{55F6C486-8C75-2A72-DAFE-CE78A624C9F7}" = CCC Help Russian
    "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
    "{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate
    "{595A3116-40BB-4E0F-A2E8-D7951DA56270}" = NeroExpress
    "{5AF23993-7152-1620-E43F-1B4542FB4F84}" = CCC Help Thai
    "{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
    "{60C731FB-C951-41CE-AD41-8E54C8594609}" = Nero Disc Copy Gadget Help
    "{63326924-3CAF-C858-3A8F-8598C87019D7}" = Catalyst Control Center
    "{63822E89-11AA-F8EC-D433-F72A85799EC0}" = CCC Help Greek
    "{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX
    "{64BA551C-9AF6-495C-93F3-D1270E0045FC}" = Epson Connect
    "{66361420-4905-AEB8-17AE-172FDD164A7E}" = CCC Help Polish
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
    "{7204BDEE-1A48-4D95-A964-44A9250B439E}" = Facebook Messenger 2.1.4814.0
    "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
    "{769F2A4B-84A3-9486-ADD2-9E5AB4B4E1E3}" = Catalyst Control Center InstallProxy
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart
    "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
    "{7ADCABE0-E651-6EA5-5128-26E203DAA5E1}" = CCC Help Korean
    "{83202942-84B3-4C50-8622-B8C0AA2D2885}" = Nero Express Help
    "{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
    "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
    "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    "{8773DD1C-5FB2-95B5-5A93-0EFEAC900A4D}" = CCC Help Norwegian
    "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
    "{8CCBB0BF-9CC1-1A65-BB93-56012A460EE6}" = CCC Help Portuguese
    "{8ED262EE-FC73-47A9-BB86-D92223246881}" = PowerChute Personal Edition 3.0.2
    "{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}" = Epson Event Manager
    "{8F80DAA3-8A1D-09E9-57E6-DB0223CF2CE4}" = CCC Help French
    "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
    "{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
    "{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
    "{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
    "{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
    "{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
    "{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
    "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
    "{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002A-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
    "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
    "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
    "{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
    "{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
    "{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
    "{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
    "{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
    "{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0116-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
    "{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
    "{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends
    "{944B1F23-53F4-48C6-80A6-8D764DFFB8F3}" = Fan Control Software
    "{9a0f9046-d0dc-4819-a9e0-e189cc23e984}" = Nero 9 Essentials
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
    "{A0087DDE-69D0-11E2-AD57-43CA6188709B}" = Adobe AIR
    "{A0A3CE05-96CB-52E9-434E-074F3BB7807E}" = CCC Help Turkish
    "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{A9C64319-932F-D02B-B14C-FFFC3EC49E77}" = CCC Help Chinese Standard
    "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.7)
    "{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
    "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
    "{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
    "{BBC2068D-CE9C-48F5-A6EA-4B44B9DB14A5}" = Catalyst Control Center - Branding
    "{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
    "{C01AE05C-3C8C-75B3-C9F0-1B525DD3697C}" = Catalyst Control Center InstallProxy
    "{C09DB932-7619-7B56-30E3-C0454811D6D7}" = CCC Help Korean
    "{C22A4697-BD77-ACB1-744F-1FD0A0BFF798}" = CCC Help Swedish
    "{C5B6078F-5D37-A122-2E6E-EDC623E8C787}" = CCC Help Czech
    "{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}" = Nero Online Upgrade
    "{CE1CA06F-0AD8-CA2A-3A3A-872E8191C198}" = CCC Help Norwegian
    "{CECECCED-B7F3-B1A3-3241-0C5D775F8E70}" = CCC Help Chinese Standard
    "{D08A5DFE-F0C2-74FC-DD56-A3B371E9344D}" = EA Shared Game Component: Activation
    "{D16A31F9-276D-4968-A753-FFEAC56995D0}" = Epson Print CD
    "{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.9 Game
    "{D3CEF909-78DC-9D3D-37BD-52F5324C01DA}" = CCC Help Hungarian
    "{D4B457B2-260F-C561-CA87-703BD3B724CA}" = Catalyst Control Center Graphics Previews Common
    "{D6CDB506-297D-AE70-0EF6-DE5185F961BE}" = CCC Help Chinese Traditional
    "{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver
    "{DFAEC123-FE78-4305-879C-4994BC4C56F8}" = Fan Control Driver x64
    "{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
    "{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
    "{ECFD508E-68A2-91B2-46DD-1D03D783D94B}" = Catalyst Control Center Localization All
    "{EDE361D5-35A5-DA7D-3462-C3DABD24029B}" = CCC Help Hungarian
    "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    "{F1861F30-3419-44DB-B2A1-C274825698B3}" = Nero Disc Copy Gadget
    "{F1E7DD6A-AE2D-D706-BEB3-937F76CA6AE9}" = CCC Help Finnish
    "{F1EA61A2-B88F-44AD-3143-419ECB6C7E9A}" = CCC Help Japanese
    "{F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}" = Nero ControlCenter
    "{F56F54DD-BCB2-1221-2CB7-E983A5CF9D15}" = CCC Help Dutch
    "{FE54AF33-9364-7053-670F-A15AD658214C}" = Catalyst Control Center Localization All
    "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    "Action Replay Code Manager_is1" = Action Replay Code Manager
    "Adobe AIR" = Adobe AIR
    "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
    "Afterburner" = MSI Afterburner 2.1.0
    "AudibleDownloadManager" = Audible Download Manager
    "AudibleManager" = AudibleManager
    "avast" = avast! Free Antivirus
    "Battlelog Web Plugins" = Battlelog Web Plugins
    "com.ea.Activation.919CACB699904AC5D41B606703500DD39747C02D.1" = EA Shared Game Component: Activation
    "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2013-04-20
    "DAEMON Tools Pro" = DAEMON Tools Pro
    "EA Installer.-2099549384" = EA Installer
    "ENTERPRISE" = Microsoft Office Enterprise 2007
    "EPSON PC-FAX Driver 2" = Epson PC-FAX Driver
    "EPSON Scanner" = EPSON Scan
    "ERUNT_is1" = ERUNT 1.1j
    "ESN Sonar-0.70.0" = ESN Sonar
    "ESN Sonar-0.70.4" = ESN Sonar
    "Google Chrome" = Google Chrome
    "InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver
    "MagniDriver" = marvell 91xx driver
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
    "mIRC" = mIRC
    "OpenAL" = OpenAL
    "Origin" = Origin
    "Rockstar Games Social Club" = Rockstar Games Social Club
    "StarCraft II" = StarCraft II
    "Steam App 202350" = Steam Mobile Access
    "Steam App 210770" = Sanctum 2
    "Steam App 550" = Left 4 Dead 2
    "Steam App 8930" = Sid Meier's Civilization V
    "Uplay" = Uplay
    "WinRAR archiver" = WinRAR archiver

    ========== Last 20 Event Log Errors ==========

    [ Application Events ]
    Error - 1/14/2013 12:12:43 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:44 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:45 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:46 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:47 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:48 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:49 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:50 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    Error - 1/14/2013 12:12:51 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = 504: Could not write data to client after 550 seconds, 5 replies waiting

    Error - 1/14/2013 12:12:51 AM | Computer Name = GT-R | Source = Bonjour Service | ID = 100
    Description = Task Scheduling Error: Continuously busy for more than a second

    [ System Events ]
    Error - 5/28/2013 9:34:25 AM | Computer Name = GT-R | Source = DCOM | ID = 10005
    Description =

    Error - 5/28/2013 9:34:26 AM | Computer Name = GT-R | Source = DCOM | ID = 10005
    Description =

    Error - 5/28/2013 9:34:25 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068

    Error - 5/28/2013 9:34:25 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068

    Error - 5/28/2013 9:34:26 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068

    Error - 5/28/2013 9:34:26 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068

    Error - 5/28/2013 9:34:26 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068

    Error - 5/28/2013 9:34:26 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068

    Error - 5/28/2013 9:34:26 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068

    Error - 5/28/2013 9:34:26 AM | Computer Name = GT-R | Source = Service Control Manager | ID = 7001
    Description = The Network List Service service depends on the Network Location Awareness
    service which failed to start because of the following error: %%1068


    < End of report >

  2. #12
    Junior Member
    Join Date
    May 2013
    Posts
    13

    Default

    # AdwCleaner v2.303 - Logfile created 06/11/2013 at 01:50:22
    # Updated 08/06/2013 by Xplode
    # Operating system : Windows 7 Ultimate Service Pack 1 (64 bits)
    # User : xWiCkeDx - GT-R
    # Boot Mode : Normal
    # Running from : C:\Users\xWiCkeDx\Desktop\AdwCleaner.exe
    # Option [Delete]


    ***** [Services] *****


    ***** [Files / Folders] *****


    ***** [Registry] *****


    ***** [Internet Browsers] *****

    -\\ Internet Explorer v10.0.9200.16576

    [OK] Registry is clean.

    -\\ Google Chrome v27.0.1453.110

    File : C:\Users\xWiCkeDx\AppData\Local\Google\Chrome\User Data\Default\Preferences

    [OK] File is clean.

    *************************

    AdwCleaner[R16].txt - [788 octets] - [11/06/2013 01:50:10]
    AdwCleaner[S7].txt - [719 octets] - [11/06/2013 01:50:22]

    ########## EOF - C:\AdwCleaner[S7].txt - [778 octets] ##########



    RogueKiller V8.5.4 _x64_ [Mar 18 2013] by Tigzy
    mail : tigzyRK<at>gmail<dot>com
    Feedback : http://www.geekstogo.com/forum/files...3-roguekiller/
    Website : http://tigzy.geekstogo.com/roguekiller.php
    Blog : http://tigzyrk.blogspot.com/

    Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
    Started in : Normal mode
    User : xWiCkeDx [Admin rights]
    Mode : Scan -- Date : 06/11/2013 01:54:51
    | ARK || FAK || MBR |

    ¤¤¤ Bad processes : 0 ¤¤¤

    ¤¤¤ Registry Entries : 7 ¤¤¤
    [RUN][PREVRUN] HKLM\[...]\Run : Cmaudio8788 (C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd) [7] -> FOUND
    [HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> FOUND
    [HJ] HKLM\[...]\Wow6432Node\System : ConsentPromptBehaviorAdmin (0) -> FOUND
    [HJ] HKLM\[...]\System : EnableLUA (0) -> FOUND
    [HJ] HKLM\[...]\Wow6432Node\System : EnableLUA (0) -> FOUND
    [HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
    [HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

    ¤¤¤ Particular Files / Folders: ¤¤¤

    ¤¤¤ Driver : [NOT LOADED] ¤¤¤

    ¤¤¤ HOSTS File: ¤¤¤
    --> C:\Windows\system32\drivers\etc\hosts

    127.0.0.1 www.007guard.com
    127.0.0.1 007guard.com
    127.0.0.1 008i.com
    127.0.0.1 www.008k.com
    127.0.0.1 008k.com
    127.0.0.1 www.00hq.com
    127.0.0.1 00hq.com
    127.0.0.1 010402.com
    127.0.0.1 www.032439.com
    127.0.0.1 032439.com
    127.0.0.1 www.0scan.com
    127.0.0.1 0scan.com
    127.0.0.1 www.1000gratisproben.com
    127.0.0.1 1000gratisproben.com
    127.0.0.1 1001namen.com
    127.0.0.1 www.1001namen.com
    127.0.0.1 100888290cs.com
    127.0.0.1 www.100888290cs.com
    127.0.0.1 www.100sexlinks.com
    127.0.0.1 100sexlinks.com
    [...]


    ¤¤¤ MBR Check: ¤¤¤

    +++++ PhysicalDrive0: WDC WD2002FAEX-007BA0 ATA Device +++++
    --- User ---
    [MBR] 0ba89cdb744425bd1025c796d16d1f27
    [BSP] 19e547fdbd01bf19ddf3ba14908ad6e6 : Windows 7/8 MBR Code
    Partition table:
    0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 1907727 Mo
    User = LL1 ... OK!
    User = LL2 ... OK!

    +++++ PhysicalDrive1: ST31500341AS ATA Device +++++
    --- User ---
    [MBR] 8192976fec1e1a818f153e8a22a38c3f
    [BSP] 104253d550d5e20da50848e5b431d444 : Empty MBR Code
    Partition table:
    1 - [ACTIVE] EXTEN (0x05) [VISIBLE] Offset (sectors): 16065 | Size: 1430789 Mo
    User = LL1 ... OK!
    User = LL2 ... OK!

    +++++ PhysicalDrive2: WDC WD2002FAEX-007BA0 ATA Device +++++
    --- User ---
    [MBR] 0086f36f0b7bc8b257f89fc226376c3d
    [BSP] 9e3b3c473b1db0daa516427cdae6e1cc : Windows 7/8 MBR Code
    Partition table:
    0 - [XXXXXX] UNKNOWN (0xee) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
    User = LL1 ... OK!
    User = LL2 ... OK!

    +++++ PhysicalDrive3: OCZ-VERT EX3 SCSI Disk Device +++++
    --- User ---
    [MBR] bac0ea2db447f5ade898e6b4c08e290b
    [BSP] 4fed6c2b23ed22184d5e9a17098e3f36 : Windows 7/8 MBR Code
    Partition table:
    0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 228926 Mo
    User = LL1 ... OK!
    Error reading LL2 MBR!

    +++++ PhysicalDrive4: WDC WD60 00HLHX-01JJPV0 SCSI Disk Device +++++
    --- User ---
    [MBR] 92cc348e575e19eefbd47040d36f83cc
    [BSP] cd890d81a495539dc3899265eea5a621 : Windows 7/8 MBR Code
    Partition table:
    0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 572315 Mo
    User = LL1 ... OK!
    Error reading LL2 MBR!

    Finished : << RKreport[1]_S_06112013_02d0154.txt >>
    RKreport[1]_S_06112013_02d0154.txt



    The only browser it seems to be effecting is chrome currently.

  3. #13
    Malware Team-Emeritus
    Join Date
    Sep 2012
    Location
    Florida, USA
    Posts
    1,161

    Default

    Hi xwickedx,

    Try to uninstall using step 1. If the programs are not listed continue on to step 2.

    =========================

    1. Revo Uninstaller Pro

    Please download Revo Uninstaller Pro and save it to your desktop.
    (This version is a fully functional, 30 day free trial)
    • Vista-W7 Users: You must right-click on "RevoUninProSetup.exe", and select "Run As Administrator" to install. If UAC prompts, allow it.
    • From the list of programs click on (follow the steps for each program listed)
      AML Registery Cleaner
      Live Player 3.2
    • Chose "Uninstall". When prompted click Yes.
    • Make sure the advanced option is checked... then click Next.
    • The program will run, when prompted... click Yes... then Next.
    • Once the program has searched for leftovers click Next.
    • Check ONLY the bolded items on the list then... click Next... then Yes.
    • When done click Finish.
    =========================

    2. Enable Hidden Files & Folders :

    To enable the viewing of hidden and protected system files in Windows please follow these steps:
    1. Close all programs so that you are at your desktop.
    2. Click on the Start button. (This is the small round button with the Windows flag in the lower left corner.)
    3. Click on the Control Panel menu option.
    4. When the control panel opens you can either be in Classic View or Control Panel Home view:

      If you are in the Classic View do the following:
      1. Double-click on the Folder Options icon.
      2. Click on the View tab.
      3. Go to step 5

      If you are in the Control Panel Home view do the following:
      1. Click on the Appearance and Personalization link.
      2. Click on Show Hidden Files or Folders.
      3. Go to step 5.
    5. Under the Hidden files and folders section select the radio button labeled Show hidden files and folders.
    6. Remove the check mark from the check box labeled Hide extensions for known file types.
    7. Remove the check mark from the check box labeled Hide protected operating system files.
    8. Press the Apply button and then the OK button.
    =========================

    3. SystemLook

    Please download SystemLook from one of the links below and save it to your Desktop.
    Download Mirror #1
    Download Mirror #2

    • Right click SystemLook.exe and select "Run as Administrator" to run it.
    • Copy the content of the following codebox into the main textfield:
      Code:
      :dir /s
      C:\ProgramFiles\Live Player 3.2
      C:\ProgramFiles\AML Registery Cleaner
    • Click the Look button to start the scan.
    • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
    Note: The log can also be found on your Desktop entitled SystemLook.txt

    =========================

    4. Disable Pop-ups in Chrome
    • Click the Chrome menu on the browser toolbar.
    • Select Settings scroll down to Show Advanced Settings and click it.
    • Scroll to Privacy >> select Content Settings
    • Scroll down to Pop-ups, select Do not allow any site to show pop-ups
    • Press Done and exit Chrome settings.
    =========================

    5. Delete cache and other browser data in Chrome
    • Click the Chrome menu on the browser toolbar.
    • Select Tools.
    • Select Clear browsing data.
    • In the dialogue that appears, select the highlighted check-boxes for the types of information that you want to remove.
      • Clear browsing history
      • Clear download history
      • Empty the cache
      • Delete cookies and other site and plug-in data
      • Clear saved passwords
      • Clear saved Autofill form data
      • Clear data from hosted apps
      • Deauthorize content licenses
    • Use the menu at the top to select the amount of data that you want to delete. Select beginning of time to delete everything.
    • Click Clear browsing data.

    =========================

    In your next post please provide the following:
    • Revo results or
    • SystemLook.txt
    OCD
    ----------
    Graduate of WTT Classroom
    Member of UNITE

    Threads will be closed if no response after 5 days

  4. #14
    Junior Member
    Join Date
    May 2013
    Posts
    13

    Default

    SystemLook 30.07.11 by jpshortstuff
    Log created at 16:32 on 11/06/2013 by xWiCkeDx
    Administrator - Elevation successful
    WARNING: SystemLook running under WOW64. Use SystemLook_x64 for accurate results.

    Invalid Context: dir /s

    No Context: C:\ProgramFiles\Live Player 3.2

    No Context: C:\ProgramFiles\AML Registery Cleaner

    -= EOF =-

    Still not listed under the list using Revo Uninstaller Pro

  5. #15
    Malware Team-Emeritus
    Join Date
    Sep 2012
    Location
    Florida, USA
    Posts
    1,161

    Default

    Hi xwickedx,

    I apologize, you needed the 64 bit version. Please delete the copy of SystemLook and download the correct version.

    =========================

    1. SystemLook

    Please download SystemLook from one of the links below and save it to your Desktop.

    Download the version suitable to your computer.

    • Right click SystemLook.exe and select "Run as Administrator" to run it.
    • Copy the content of the following code-box into the main text-field:
      Code:
      :folderfind
      Live Player 3.2
      AML Registery Cleaner
      
      :dir
      C:\ProgramFiles\Live Player 3.2
      C:\ProgramFiles\AML Registery Cleaner
    • Click the Look button to start the scan.
    • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
    Note: The log can also be found on your Desktop entitled SystemLook.txt

    =========================

    In your next post please provide the following:

    • SystemLook.txt
    OCD
    ----------
    Graduate of WTT Classroom
    Member of UNITE

    Threads will be closed if no response after 5 days

  6. #16
    Junior Member
    Join Date
    May 2013
    Posts
    13

    Default

    SystemLook 30.07.11 by jpshortstuff
    Log created at 21:43 on 11/06/2013 by xWiCkeDx
    Administrator - Elevation successful

    ========== folderfind ==========

    Searching for "Live Player 3.2"
    No folders found.

    Searching for "AML Registery Cleaner"
    No folders found.

    ========== dir ==========

    C:\ProgramFiles\Live Player 3.2 - Unable to find folder.

    C:\ProgramFiles\AML Registery Cleaner - Unable to find folder.

    -= EOF =-


    I found this folder: C:\Program Files (x86)\AML Products\Registry Cleaner
    But I don't see any uninstall program in any of the folders

  7. #17
    Malware Team-Emeritus
    Join Date
    Sep 2012
    Location
    Florida, USA
    Posts
    1,161

    Default

    Hi xwickedx,

    1. Enable Hidden Files & Folders :

    To enable the viewing of hidden and protected system files in Windows please follow these steps:
    1. Close all programs so that you are at your desktop.
    2. Click on the Start button. (This is the small round button with the Windows flag in the lower left corner.)
    3. Click on the Control Panel menu option.
    4. When the control panel opens you can either be in Classic View or Control Panel Home view:

      If you are in the Classic View do the following:
      1. Double-click on the Folder Options icon.
      2. Click on the View tab.
      3. Go to step 5

      If you are in the Control Panel Home view do the following:
      1. Click on the Appearance and Personalization link.
      2. Click on Show Hidden Files or Folders.
      3. Go to step 5.
    5. Under the Hidden files and folders section select the radio button labeled Show hidden files and folders.
    6. Remove the check mark from the check box labeled Hide extensions for known file types.
    7. Remove the check mark from the check box labeled Hide protected operating system files.
    8. Press the Apply button and then the OK button.

    =========================

    2. Delete a File/Folder

    Using Windows Explorer (Windows Key + E), locate the following files/folders, and DELETE them (if still present):
    • C:\Program Files (x86)\AML Products\Registry Cleaner <-- delete the folder, if present
      If you have no other AML products, remove the AML Products folder
    • C:\Program Files (x86)\PC Live Player or Live Player <-- delete the folder, if present
    Exit Explorer

    =========================

    3. Disable Plug-ins in Google Chrome

    • Click the Chrome menu on the browser toolbar.
    • Select Settings.
    • Scroll down to Show advanced settings...
    • Locate the Privacy Section, select Content Settings
    • In the pop up window scoll to Plug-Ins, select Disable individual plug-ins...
    • Locate the following plug-ins and set them to Disable:
      • PC Live Player
      • Live Player
    • Exit Chrome settings menu.

    =========================

    In your next post please provide the following:

    • Results from the above steps
    OCD
    ----------
    Graduate of WTT Classroom
    Member of UNITE

    Threads will be closed if no response after 5 days

  8. #18
    Junior Member
    Join Date
    May 2013
    Posts
    13

    Default

    AML is gone, but only way I could disable the live player 3.2 was through using avast! browser cleaner.

  9. #19
    Malware Team-Emeritus
    Join Date
    Sep 2012
    Location
    Florida, USA
    Posts
    1,161

    Default

    Hi xwickedx,

    Sometimes when a program is uninstalled incorrectly the program can become fragmented and make complete removal difficult.

    1. Did you previously try and remove Live Player? If so, how did you go about it?
    2. Is PC Live Player or Live Player listed as a extension in Chrome?


    Search you computer for both of these:

    • PC Live Player
    • Live Player


    Post the results
    OCD
    ----------
    Graduate of WTT Classroom
    Member of UNITE

    Threads will be closed if no response after 5 days

  10. #20
    Junior Member
    Join Date
    May 2013
    Posts
    13

    Default

    Okay I finally was able to get rid of it. What I did was:
    Click the Chrome menu on the browser toolbar
    Click extensions and turn on developer mode
    Copy the ID: string into notepad
    Then went into regedit and CTRL+F for that string with everything checked and once it found it deleted that entire folder.
    Then did a windows search to make sure it was gone.
    Restart chrome and check extensions and it was still there, but had a new ID: so repeated steps above, and now its finally gone.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •