Hello Ken,
Here is the SystemLook log as requested.......
--------------------------------------------------------------
SystemLook 30.07.11 by jpshortstuff
Log created at 12:57 on 31/01/2012 by Gooderham
Administrator - Elevation successful
========== filefind ==========
Searching for "AVG"
No files found.
========== folderfind ==========
Searching for "AVG"
No folders found.
========== regfind ==========
Searching for "AVG"
[HKEY_CURRENT_USER\Software\Microsoft\Search Assistant\ACMru\5603]
"000"="avg"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*]
"j"="C:\Documents and Settings\Gooderham.LAPTOP\Desktop\AVG.jpg"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\JPG]
"c"="C:\Documents and Settings\Gooderham.LAPTOP\Desktop\AVG.jpg"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Documents and Settings\Gooderham.LAPTOP\Local Settings\Temporary Internet Files\Content.IE5\8342ZUPM\avg_remover_stf_x86_2011_1322[1].exe"="AVG Remover Utility"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Documents and Settings\Gooderham.LAPTOP\Local Settings\Temporary Internet Files\Content.IE5\8342ZUPM\avg_remover_stf_x86_2012_1796[1].exe"="AVG Remover Utility"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\avgamsvr.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\avgemc.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\avgupsvc.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\avgvault.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{3C9EFEA1-8D1A-11D5-989F-0000E87B4FB1}]
@="avgemc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{3C9EFEA1-8D1A-11D5-989F-0000E87B4FB1}]
"LocalService"="AVGEMS"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{41564737-3200-1076-989B-0000E87B4FB1}]
@="avgvault"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{833EE712-3BB4-4DFB-8ACE-4686829895B7}]
@="avgupsvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{833EE712-3BB4-4DFB-8ACE-4686829895B7}]
"LocalService"="Avg7UpdSvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{A434D6BB-090E-4DF6-8B03-AA04A6F58804}]
@="avgamsvr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{A434D6BB-090E-4DF6-8B03-AA04A6F58804}]
"LocalService"="Avg7Alrt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVG.UpdateService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVG.UpdateService]
@="AvgUpdateService Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVG.UpdateService\CurVer]
@="AVG.UpdateService.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVG.UpdateService.7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVG.UpdateService.7]
@="AvgUpdateService Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification]
@="AVGeneralNotification Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification\CurVer]
@="AVGeneralNotification.AVGeneralNotification.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification.1]
@="AVGeneralNotification Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{239A3C5E-8D41-11D1-B675-00C04FA3C554}]
@="AVGeneralNotification Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{239A3C5E-8D41-11D1-B675-00C04FA3C554}\ProgID]
@="AVGeneralNotification.AVGeneralNotification.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{239A3C5E-8D41-11D1-B675-00C04FA3C554}\VersionIndependentProgID]
@="AVGeneralNotification.AVGeneralNotification"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}]
@="AVG 7.0 Control Center Plugin Enumerator"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A5624-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Scheduler Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A5625-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Resident Shield Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A5626-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Virus Vault Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A5627-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Update Manager Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A5628-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Virus Database Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A562A-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Shell Extension Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A562C-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Email Scanner Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A562D-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center Alert Manager Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F10B322D-D5EB-45B1-81C0-380EB462A462}\{491A562E-1E72-4BD9-B454-299127582DA5}]
@="AVG 7.0 Control Center License Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82EDB94-BE85-42BE-9B70-EA5005AB5BAA}]
@="AvgUpdateService Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82EDB94-BE85-42BE-9B70-EA5005AB5BAA}\LocalServer32]
@=""C:\Program Files\Grisoft\AVG7\avgupsvc.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82EDB94-BE85-42BE-9B70-EA5005AB5BAA}\ProgID]
@="AVG.UpdateService.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82EDB94-BE85-42BE-9B70-EA5005AB5BAA}\VersionIndependentProgID]
@="AVG.UpdateService"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Microsoft Silverlight|4.0.60129.0|hr|system.resources.dll]
"system.resources,culture="hr",fileVersion="4.0.60129.0",processorArchitecture="MSIL",publicKeyToken="7cec85d7bea7798e",version="2.0.5.0""="3PgDT0$gy?~Dc}DI]?&!Complete4.0.60129.0>NGEM5AVgG=~j$-v0s9cr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2133AA56-84E6-4df1-886D-2948783CF2B6}]
@="IAvgAmAlertManagerPluginValuesConfig"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED0-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgEmailControl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED1-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgEmailServer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED2-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgEmailMonitor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED3-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgEmailServerPop3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED4-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgEmailServerSmtp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED5-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgEmailControl2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED6-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgServerMoreParams"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C9EFED7-8D1A-11D5-989F-0000E87B4FB1}]
@="IAvgEmailControl3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41564737-3200-1100-989B-0000E87B4FB1}]
@="IAvgUpdateManager"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41564737-3200-1101-989B-0000E87B4FB1}]
@="IAvgCheckUpdateCallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41564737-3200-1105-989B-0000E87B4FB1}]
@="IAvgProcessUpdateCallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41564737-3200-1110-989B-0000E87B4FB1}]
@="IAvgUpdateManager2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AA70B423-9C37-4793-9EB8-6292160324E8}]
@="IAvgAmRule2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CC8FF1FA-0040-4318-99EA-205DD4FD25C8}]
@="IAvgAmEnumAttributes"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CC8FF1FA-0040-4321-99EA-205DD4FD25C8}]
@="IAvgAmEnumBSTR"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EC6BB3BB-5EE8-4046-8D20-1A6975C45141}]
@="IAvgAmEvent2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F7A533DB-676E-4cc2-9890-BD547A7CFD28}]
@="IAvgAmAlertManager2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Grisoft\Clients\{3C9EFEC2-8D1A-11D5-989F-0000E87B4FB1}]
@="@Avg_App_Mail"
[HKEY_LOCAL_MACHINE\SOFTWARE\Grisoft\Clients\{3C9EFEC2-8D1A-11D5-989F-0000E87B4FB1}]
"Log"="C:\Documents and Settings\All Users\Application Data\AVG7\Log"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\delavg7_en[1]]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
"DllName"="avgssie.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\Registration\{91120000-002E-0000-0000-0000000FF1CE}]
"Current"="TQBJAEMAUgBPAFMATwBGAFQAIABTAE8ARgBUAFcAQQBSAEUAIABMAEkAQwBFAE4AUwBFACAAVABFAFIATQBTAA0ACgAyADAAMAA3ACAATQBJAEMAUgBPAFMATwBGAFQAIABPAEYARgBJAEMARQAgAFMAWQBTAFQARQBNACAARABFAFMASwBUAE8AUAAgAEEAUABQAEwASQBDAEEAVABJAE8ATgAgAFMATwBGAFQAVwBBAFIARQANAAoAQgBlAGwAbwB3ACAAYQByAGUAIAB0AGgAcgBlAGUAIABzAGUAcABhAHIAYQB0AGUAIABzAGUAdABzACAAbwBmACAATABpAGMAZQBuAHMAZQAgAFQAZQByAG0AcwAuAKAAIABPAG4AbAB5ACAAbwBuAGUAIABzAGUAdAAgAGEAcABwAGwAaQBlAHMAIAB0AG8AIAB5AG8AdQAuAKAAIABUAG8AIABkAGUAdABlAHIAbQBpAG4AZQAgAHcAaABpAGMAaAAgAEwAaQBjAGUAbgBzAGUAIABUAGUAcgBtAHMAIABhAHAAcABsAHkAIAB0AG8AIAB5AG8AdQAgAGMAaABlAGMAawAgAHQAaABlACAAbABpAGMAZQBuAHMAZQAgAGQAZQBzAGkAZwBuAGEAdABpAG8AbgAgAHAAcgBpAG4AdABlAGQAIABlAGkAdABoAGUAcgAgAG8AbgAgAHkAbwB1AHIAIABwAHIAbwBkAHUAYwB0ACAAawBlAHkALAAgAG4AZQBhAHIAIAB0AGgAZQAgAHAAcgBvAGQAdQBjAHQAIABuAGEAbQBlACAAbwBuACAAeQBvAHUAcgAgAEMAZQByAHQAaQBmAGkAYwBhAHQAZQAgAG8AZgAgAEEAdQB0AGgAZQBuAHQAaQBjAGkAdAB5
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119E20000000000000000F01FEC\Features]
"VSTAIDEFiles"="*'=!-^1,a=%'HvwuM1s`lKe5wH&]&@iPgg*yzeka^FHUlH5uN9JD-'X2le-Ps(AJAjg'5=pm02,i9u5Td?k78go{S9v~.(_vyvb?7hLd@@7WH?biopFjqbsZ4?0!M_EtF9n3t3Yv}eU**z@Br{g1g(Rsy?VXB]2dxS}AW1_mOA!$oMQKOGPv*5!ULp'a99B&BsXmnNlg^k^shb2)g(FNy?VXB]2dgMB+sWA*0?jr)%4E?mxW}?0KnSBBC@uW&p3_R8rRJ54(qwdUx@+wP31En{vb`BzOcNs9F9~+.(+LTJE7ydnm1rV!1A1_C0b~kk=YW@g!R3IjB@l52{kc-~ak={8UQmN?b?x%%F%R9~S_@!iX2C%EJ@-,dmh3~OTp%chs4XT1W@.n.cJ&=gEZ%m[NUKVZU?&~nA,q7iv-R*hIkzh[)@*)d?=di1Y&v,B]z(D@4AAgL2?R3hF,z@(CfHR}{9(tu$Vq'QBd!FH'Qp8GB@Z2YrD[[C?9x)rAZTkpo9u!-Gb}$QWPlH*czRL2*96Y3KkKmxWX_q'UA+WQJAj%VbnaI0G?y68!l89BL@n~CX`crX-O5$&uxpTp_=A89%l7Qjzj46CT9*IvZ8=EXq+,6+([Ae-p$J{+o=QtITuzyO8Zs.C2V_Fe`A~HkA-Ty8qv!42?$gW$r9lZ)wXcl7aRwE?=@sCO3=HmWx%iGDJ*,!!V-bI9%9sresQy6&Xc'BFM1pD(u8=H@`P&+d$2m}[fE+4Ia?QI?y=)RA)^-d%_JNIM]8P1ch1vDV6P}'-*F{zoM@Slv={j_uap)^fAv9p'S?&tq64pQ10,{zJA,Yg!GA[^F.EP^h6RToHvwCweq?[FVtL,~k~,kDG-p
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\AutorunsDisabled]
"{9F97547E-460A-42C5-AE0C-81C61FFAEBC3}"="AVG7 Find Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\AutorunsDisabled]
"{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}"="AVG7 Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009]
"Counter"="1 1847 2 System 4 Memory 6 % Processor Time 10 File Read Operations/sec 12 File Write Operations/sec 14 File Control Operations/sec 16 File Read Bytes/sec 18 File Write Bytes/sec 20 File Control Bytes/sec 24 Available Bytes 26 Committed Bytes 28 Page Faults/sec 30 Commit Limit 32 Write Copies/sec 34 Transition Faults/sec 36 Cache Faults/sec 38 Demand Zero Faults/sec 40 Pages/sec 42 Page Reads/sec 44 Processor Queue Length 46 Thread State 48 Pages Output/sec 50 Page Writes/sec 52 Browser 54 Announcements Server/sec 56 Pool Paged Bytes 58 Pool Nonpaged Bytes 60 Pool Paged Allocs 64 Pool Nonpaged Allocs 66 Pool Paged Resident Bytes 68 System Code Total Bytes 70 System Code Resident Bytes 72 System Driver Total Bytes 74 System Driver Resident Bytes 76 System Cache Resident Bytes 78 Announcements Domain/sec 80 Election Packets/sec 82 Mailslot Writes/sec 84 Server List Requests/sec 86 Cache 88 Data Maps/sec 90 Sync Data Maps/s
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009]
"Help"="3 The System performance object consists of counters that apply to more than one instance of a component processors on the computer. 5 The Memory performance object consists of counters that describe the behavior of physical and virtual memory on the computer. Physical memory is the amount of random access memory on the computer. Virtual memory consists of the space in physical memory and on disk. Many of the memory counters monitor paging, which is the movement of pages of code and data between disk and physical memory. Excessive paging, a symptom of a memory shortage, can cause delays which interfere with all system processes. 7 % Processor Time is the percentage of elapsed time that the processor spends to execute a non-Idle thread. It is calculated by measuring the duration of the idle thread is active in the sample interval, and subtracting that time from interval duration. (Each processor has an idle thread tha
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7CORE]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7CORE\0000]
"Service"="Avg7Core"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7CORE\0000]
"DeviceDesc"="AVG7 Kernel"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7RSW]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7RSW\0000]
"Service"="Avg7RsW"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7RSW\0000]
"DeviceDesc"="AVG7 Wrap Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7RSXP]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7RSXP\0000]
"Service"="Avg7RsXP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7RSXP\0000]
"DeviceDesc"="AVG7 Resident Driver XP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7UPDSVC]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7UPDSVC\0000]
"Service"="Avg7UpdSvc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG7UPDSVC\0000]
"DeviceDesc"="AVG7 Update Service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIO]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGNTFLT]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGNTFLT\0000]
"Service"="avgntflt"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGNTFLT\0000]
"DeviceDesc"="avgntflt"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDI]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDI\0000]
"Service"="AvgTdi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDI\0000]
"DeviceDesc"="AVG Network Redirector"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application]
"Sources"="WSH WMIAdapter WMI.NET Provider Extension WmdmPmSN wltrysvc WinMgmt Winlogon Windows Product Activation Windows Media Encoder Windows 3.1 Migration WinDefendRtp WebClient VSS VBRuntime Userinit Userenv TrojanHunter System.ServiceModel.Install 3.0.0.0 System.ServiceModel 3.0.0.0 System.Runtime.Serialization 3.0.0.0 System.IO.Log 3.0.0.0 System.IdentityModel 3.0.0.0 SysmonLog Starter SQLWriter SQLWEP SQLVDI SQLNCLI SQLDumper SQLCTR$MSSMLBIZ SQLBrowser Spybot - Search & Destroy 2 SpoolerCtrs Software Restriction Policies Software Installation SNL HiveManager ServiceModel Audit 3.0.0.0 SecurityCenter SclgNtfy SceSrv SceCli safrslv SAFrdms RPC Remote Assistance Professional PerfProc PerfOS PerfNet Perfmon Perflib PerfDisk Perfctrs Outlook Offline Files Oakley Ntbackup.ini ntbackup NDP1.1sp1-KB979906-X86 NDP1.1sp1-KB953297-X86 NDP1.1sp1-KB2656353-X86 NDP1.1sp1-KB2572067-X86 NDP1.1sp1-KB2416447-X86 MSSQLServerADHelper MSSQLSERVER/MSD
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\AVG7]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\AVG7]
"EventMessageFile"="C:\Program Files\Grisoft\AVG7\avglog.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\AVG7]
"CategoryMessageFile"="C:\Program Files\Grisoft\AVG7\avglog.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Avg7Alrt]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Avg7Alrt]
"EventMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgamint.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Avg7Alrt]
"CategoryMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgamint.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Avg7UpdSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Avg7UpdSvc]
"EventMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgupsvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SysmonLog\Log Queries\{bdb21d47-4c9c-4bbd-a74c-6ff76a2c1ef3}]
"Counter List"="\Processor(_Total)\% Processor Time \Memory\Pages/sec \PhysicalDisk(_Total)\Avg. Disk Queue Length"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7CORE]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7CORE\0000]
"Service"="Avg7Core"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7CORE\0000]
"DeviceDesc"="AVG7 Kernel"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7RSW]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7RSW\0000]
"Service"="Avg7RsW"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7RSW\0000]
"DeviceDesc"="AVG7 Wrap Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7RSXP]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7RSXP\0000]
"Service"="Avg7RsXP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7RSXP\0000]
"DeviceDesc"="AVG7 Resident Driver XP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7UPDSVC]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7UPDSVC\0000]
"Service"="Avg7UpdSvc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVG7UPDSVC\0000]
"DeviceDesc"="AVG7 Update Service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGIO]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGNTFLT]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGNTFLT\0000]
"Service"="avgntflt"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGNTFLT\0000]
"DeviceDesc"="avgntflt"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGTDI]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGTDI\0000]
"Service"="AvgTdi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGTDI\0000]
"DeviceDesc"="AVG Network Redirector"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application]
"Sources"="WSH WMIAdapter WMI.NET Provider Extension WmdmPmSN wltrysvc WinMgmt Winlogon Windows Product Activation Windows Media Encoder Windows 3.1 Migration WinDefendRtp WebClient VSS VBRuntime Userinit Userenv TrojanHunter System.ServiceModel.Install 3.0.0.0 System.ServiceModel 3.0.0.0 System.Runtime.Serialization 3.0.0.0 System.IO.Log 3.0.0.0 System.IdentityModel 3.0.0.0 SysmonLog Starter SQLWriter SQLWEP SQLVDI SQLNCLI SQLDumper SQLCTR$MSSMLBIZ SQLBrowser Spybot - Search & Destroy 2 SpoolerCtrs Software Restriction Policies Software Installation SNL HiveManager ServiceModel Audit 3.0.0.0 SecurityCenter SclgNtfy SceSrv SceCli safrslv SAFrdms RPC Remote Assistance Professional PerfProc PerfOS PerfNet Perfmon Perflib PerfDisk Perfctrs Outlook Offline Files Oakley Ntbackup.ini ntbackup NDP1.1sp1-KB979906-X86 NDP1.1sp1-KB953297-X86 NDP1.1sp1-KB2656353-X86 NDP1.1sp1-KB2572067-X86 NDP1.1sp1-KB2416447-X86 MSSQLServerADHelper MSSQLSERVER/MSD
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\AVG7]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\AVG7]
"EventMessageFile"="C:\Program Files\Grisoft\AVG7\avglog.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\AVG7]
"CategoryMessageFile"="C:\Program Files\Grisoft\AVG7\avglog.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\Avg7Alrt]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\Avg7Alrt]
"EventMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgamint.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\Avg7Alrt]
"CategoryMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgamint.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\Avg7UpdSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\Avg7UpdSvc]
"EventMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgupsvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\SysmonLog\Log Queries\{bdb21d47-4c9c-4bbd-a74c-6ff76a2c1ef3}]
"Counter List"="\Processor(_Total)\% Processor Time \Memory\Pages/sec \PhysicalDisk(_Total)\Avg. Disk Queue Length"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7CORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7CORE\0000]
"Service"="Avg7Core"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7CORE\0000]
"DeviceDesc"="AVG7 Kernel"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7RSW]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7RSW\0000]
"Service"="Avg7RsW"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7RSW\0000]
"DeviceDesc"="AVG7 Wrap Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7RSXP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7RSXP\0000]
"Service"="Avg7RsXP"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7RSXP\0000]
"DeviceDesc"="AVG7 Resident Driver XP"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7UPDSVC]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7UPDSVC\0000]
"Service"="Avg7UpdSvc"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG7UPDSVC\0000]
"DeviceDesc"="AVG7 Update Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIO]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTFLT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTFLT\0000]
"Service"="avgntflt"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTFLT\0000]
"DeviceDesc"="avgntflt"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDI\0000]
"Service"="AvgTdi"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDI\0000]
"DeviceDesc"="AVG Network Redirector"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application]
"Sources"="WSH WMIAdapter WMI.NET Provider Extension WmdmPmSN wltrysvc WinMgmt Winlogon Windows Product Activation Windows Media Encoder Windows 3.1 Migration WinDefendRtp WebClient VSS VBRuntime Userinit Userenv TrojanHunter System.ServiceModel.Install 3.0.0.0 System.ServiceModel 3.0.0.0 System.Runtime.Serialization 3.0.0.0 System.IO.Log 3.0.0.0 System.IdentityModel 3.0.0.0 SysmonLog Starter SQLWriter SQLWEP SQLVDI SQLNCLI SQLDumper SQLCTR$MSSMLBIZ SQLBrowser Spybot - Search & Destroy 2 SpoolerCtrs Software Restriction Policies Software Installation SNL HiveManager ServiceModel Audit 3.0.0.0 SecurityCenter SclgNtfy SceSrv SceCli safrslv SAFrdms RPC Remote Assistance Professional PerfProc PerfOS PerfNet Perfmon Perflib PerfDisk Perfctrs Outlook Offline Files Oakley Ntbackup.ini ntbackup NDP1.1sp1-KB979906-X86 NDP1.1sp1-KB953297-X86 NDP1.1sp1-KB2656353-X86 NDP1.1sp1-KB2572067-X86 NDP1.1sp1-KB2416447-X86 MSSQLServerADHelper MSSQLSERVER
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\AVG7]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\AVG7]
"EventMessageFile"="C:\Program Files\Grisoft\AVG7\avglog.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\AVG7]
"CategoryMessageFile"="C:\Program Files\Grisoft\AVG7\avglog.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg7Alrt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg7Alrt]
"EventMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgamint.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg7Alrt]
"CategoryMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgamint.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg7UpdSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg7UpdSvc]
"EventMessageFile"="C:\PROGRA~1\Grisoft\AVG7\avgupsvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SysmonLog\Log Queries\{bdb21d47-4c9c-4bbd-a74c-6ff76a2c1ef3}]
"Counter List"="\Processor(_Total)\% Processor Time \Memory\Pages/sec \PhysicalDisk(_Total)\Avg. Disk Queue Length"
[HKEY_USERS\.DEFAULT\Software\Grisoft\Avg7]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avg-secure.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-avg-download.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-avg.org]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grab-it-today.net\avg]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grab-it-today.net\
www.avg]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\official-avg-download-now.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarecenterz.com\avg]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarecenterz.com\
www.avg]
[HKEY_USERS\S-1-5-19\Software\Grisoft\Avg7]
[HKEY_USERS\S-1-5-20\Software\Grisoft\Avg7]
[HKEY_USERS\S-1-5-21-1111717751-3393396884-3224383096-1006\Software\Microsoft\Search Assistant\ACMru\5603]
"000"="avg"
[HKEY_USERS\S-1-5-21-1111717751-3393396884-3224383096-1006\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*]
"j"="C:\Documents and Settings\Gooderham.LAPTOP\Desktop\AVG.jpg"
[HKEY_USERS\S-1-5-21-1111717751-3393396884-3224383096-1006\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\JPG]
"c"="C:\Documents and Settings\Gooderham.LAPTOP\Desktop\AVG.jpg"
[HKEY_USERS\S-1-5-21-1111717751-3393396884-3224383096-1006\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Documents and Settings\Gooderham.LAPTOP\Local Settings\Temporary Internet Files\Content.IE5\8342ZUPM\avg_remover_stf_x86_2011_1322[1].exe"="AVG Remover Utility"
[HKEY_USERS\S-1-5-21-1111717751-3393396884-3224383096-1006\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Documents and Settings\Gooderham.LAPTOP\Local Settings\Temporary Internet Files\Content.IE5\8342ZUPM\avg_remover_stf_x86_2012_1796[1].exe"="AVG Remover Utility"
[HKEY_USERS\S-1-5-18\Software\Grisoft\Avg7]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avg-secure.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-avg-download.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-avg.org]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grab-it-today.net\avg]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grab-it-today.net\
www.avg]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\official-avg-download-now.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarecenterz.com\avg]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarecenterz.com\
www.avg]
-= EOF =-
.