Additional scan result of Farbar Recovery Scan Tool (x64) Version:27-02-2016 Ran by [removed] (2016-02-27 22:18:29) Running from C:\Users\[removed]\Documents\Computing\Troubleshooting Tools\FRST64 Windows 7 Professional Service Pack 1 (X64) (2010-05-10 13:22:20) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2615649320-1316126405-2989575285-500 - Administrator - Disabled) => C:\Users\Administrator G.S. Ovenden (S-1-5-21-2615649320-1316126405-2989575285-1001 - Administrator - Enabled) => C:\Users\G.S. Ovenden Guest (S-1-5-21-2615649320-1316126405-2989575285-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-2615649320-1316126405-2989575285-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Norton 360 (Enabled - Up to date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton 360 (Enabled - Up to date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66} FW: Norton 360 (Enabled) {6BFC5632-188D-B806-D13E-C607121B42A0} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 6500_E709_eDocs (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden 6500_E709_Help (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden 6500_E709a (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden Adobe Flash Player 10 ActiveX 64-bit (HKLM\...\Adobe Flash Player ActiveX 64) (Version: 10.2.161.22 - Adobe Systems Incorporated) Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.306 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated) Adobe Reader X (10.1.4) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.4 - Adobe Systems Incorporated) Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version: 3.0 - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) bpd_scan (x32 Version: 3.00.0000 - Hewlett-Packard) Hidden BPDSoftware (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden BufferChm (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden ChromecastApp (HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\{079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1) (Version: 1.5.1693.0 - Google Inc.) Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dell DataSafe Local Backup - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 2.34 - Dell) Dell DataSafe Local Backup (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.67 - Dell Inc.) Dell Dock (HKLM-x32\...\Dell Dock) (Version: - Stardock Corporation) Dell Dock (Version: 2.0 - Stardock Corporation) Hidden Dell Driver Download Manager (HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\bd4d3a0508d364f5) (Version: 3.0.0.0 - Dell Inc) Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc) Dell Getting Started Guide (HKLM-x32\...\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.) Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.2.6745.47 - Dell) Dell System Detect (HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\58d94f3ce2c27db0) (Version: 6.12.0.5 - Dell) Dell Update (HKLM-x32\...\{3FB000F3-7444-41C1-A0A6-53E8FD0B7D9C}) (Version: 1.6.1007.0 - Dell Inc.) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden DirectXInstallService (x32 Version: 9.0.2 - Roxio) Hidden DocMgr (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden DocProc (x32 Version: 140.0.100.000 - Hewlett-Packard) Hidden Elf 1 Toolbar (HKLM-x32\...\Elf_1 Toolbar) (Version: 6.2.7.3 - Elf 1) EMC 10 Content (x32 Version: 1.0.035 - Roxo, Inc.) Hidden EMCGadgets64 (Version: 1.0.302 - Sonic) Hidden Fax (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden Freemake Video Downloader (HKLM-x32\...\Freemake Video Downloader_is1) (Version: 3.7.4 - Ellora Assets Corporation) Freemake Youtube Mp3 Converter (HKLM-x32\...\Freemake Youtube Mp3 Converter_is1) (Version: 3.6.3 - Ellora Assets Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6227.252 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden GoToAssist 8.0.0.514 (HKLM-x32\...\GoToAssist) (Version: - ) GPBaseService2 (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP) HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Officejet 6500 E709 Series (HKLM\...\{58D79E62-CFC8-4331-8469-3A1B16E1769C}) (Version: 14.0 - HP) HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP) HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation) Internet Explorer (Enable DEP) (HKLM\...\{a9264802-8a7a-40fe-a135-5c6d204aed7a}.sdb) (Version: - ) iTunes (HKLM\...\{76FF0F03-B707-4332-B5D1-A56C8303514E}) (Version: 11.0.4.4 - Apple Inc.) Java 8 Update 73 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418073F0}) (Version: 8.0.730.2 - Oracle Corporation) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden LizardTech DjVu Control (HKLM-x32\...\{105CFC7C-6992-11D5-BD9D-000102C10FD8}) (Version: - ) MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden Media Jukebox 14 (HKLM-x32\...\Media Jukebox 14) (Version: 14 - J. River, Inc.) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{91110409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Outlook Personal Folders Backup (HKLM-x32\...\{C63E7C60-25EB-11D3-8EDA-00A0C911E8E5}) (Version: 1.10.0.0 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 1.0.0.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Works (HKLM-x32\...\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}) (Version: 9.7.0621 - Microsoft Corporation) Mozilla Firefox 43.0.4 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 43.0.4 (x86 en-US)) (Version: 43.0.4 - Mozilla) Mozilla Firefox 44.0.2 (x64 en-US) (HKLM\...\Mozilla Firefox 44.0.2 (x64 en-US)) (Version: 44.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.4 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero BackItUp (HKLM-x32\...\{0420F95C-11FF-4E02-B967-6CC22B188F9F}) (Version: 5.2.22001 - Nero AG) Nero BackItUp and Burn (HKLM-x32\...\{E08CC458-41FB-4BB5-9B08-2C83DB55A5B9}) (Version: 1.2.0031 - Nero AG) Nero BurnRights (HKLM-x32\...\{397516AE-7DFE-4F90-84E0-BD616D559434}) (Version: 3.6.26001 - Nero AG) Nero Express (HKLM-x32\...\{6C3CF7AC-5AB0-42D9-93C0-68166A57AFB6}) (Version: 9.6.16000 - Nero AG) Nero RescueAgent (HKLM-x32\...\{51E2F9B3-A972-4F58-B4EF-4D9676D9F5D1}) (Version: 2.6.26000 - Nero AG) Network64 (Version: 140.0.215.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden Netzip Classic 7.5.1.86 (HKLM-x32\...\Netzip Classic 7.5.1.86) (Version: - ) Norton 360 (HKLM-x32\...\N360) (Version: 6.4.1.14 - Symantec Corporation) Norton Utilities (HKLM-x32\...\Norton Utilities_is1) (Version: 14.5 - Symantec Corporation) NVIDIA 3D Vision Controller Driver 326.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 326.01 - NVIDIA Corporation) NVIDIA GeForce Experience 1.6.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.6.1 - NVIDIA Corporation) NVIDIA Graphics Driver 341.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.44 - NVIDIA Corporation) OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) Octoshape Streaming Services (HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\Octoshape Streaming Services) (Version: - ) PC VGA Camer@ Plus (HKLM-x32\...\InstallShield_{73C2BB36-ABE5-4E02-A043-E6C0F91A3E2C}) (Version: 1.0.0.19 - PixArt) PC VGA Camer@ Plus (x32 Version: 1.0.0.19 - PixArt) Hidden PowerChute Business Edition Agent (HKLM-x32\...\{BCE9F441-9027-4911-82E0-5FB28057897D}) (Version: 9.0.1.606 - American Power Conversion) PowerChute Business Edition Server (HKLM-x32\...\{A6491A4A-AAA0-4892-BFEF-ECD6CECE2FF3}) (Version: 9.0.1.606 - American Power Conversion) PowerDVD DX (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.3.7501 - CyberLink Corp.) PowerNap (HKLM-x32\...\{A710BCF1-03EA-4C0D-9878-1169B6E813C3}) (Version: 1.2.11 - Dell) ProductContext (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) RealDownloader (x32 Version: 1.3.0 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.0 - RealNetworks) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5700 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7100.30093 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Roxio Easy CD and DVD Burning (HKLM-x32\...\{537BF16E-7412-448C-95D8-846E85A1D817}) (Version: 10.3 - Roxio) Roxio File Backup (Version: 1.3.0 - Roxio) Hidden Scan (x32 Version: 140.0.167.000 - Hewlett-Packard) Hidden SES Driver (HKLM\...\{D8CC254C-C671-4664-9A38-FA368D1E2C97}) (Version: 1.0.0 - Western Digital) SHIELD Streaming (Version: 1.05.28 - NVIDIA Corporation) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP) SmartWebPrinting (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden softOSD Client (Build 1436) (HKLM-x32\...\softOSD Client) (Version: - ) SolutionCenter (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden Sonic CinePlayer Decoder Pack (x32 Version: 4.3.0 - Sonic Solutions) Hidden SopCast 3.2.9 (HKLM-x32\...\SopCast) (Version: 3.2.9 - www.sopcast.com) Status (x32 Version: 140.0.256.000 - Hewlett-Packard) Hidden Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden VD64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden Veetle TV 0.9.18 (HKLM-x32\...\Veetle TV) (Version: 0.9.18 - Veetle, Inc) Verbatim Hard Drive Formatter (HKLM-x32\...\Verbatim Hard Drive Formatter_is1) (Version: - Verbatim) VIO Player version 1.0.1 (HKLM-x32\...\{C8A17598-7F89-41EA-9876-0F89DA0B24F1}_is1) (Version: 1.0.1 - VIO) vShare Plugin (HKLM-x32\...\vShare) (Version: - ) WD Quick View (HKLM-x32\...\{507B1304-194A-4204-A9D9-9BAAF51EF760}) (Version: 2.2.1.6 - Western Digital Technologies, Inc.) WD SmartWare Installer (HKLM-x32\...\{ba99df5b-3e46-419e-81e2-544352772fda}) (Version: 2.2.1.6 - Western Digital Technologies, Inc.) WebReg (x32 Version: 140.0.213.017 - Hewlett-Packard) Hidden Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (03/06/2009 1.0.0008.0) (HKLM\...\422991454CB076E9B856C21BBF99AF2B82317EDA) (Version: 03/06/2009 1.0.0008.0 - Western Digital Technologies) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation) Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) Yahoo! Toolbar (HKLM-x32\...\Yahoo! Companion) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\G.S. Ovenden\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {00EA6EF6-2B36-43CA-B3E3-403CDAAA35E6} - System32\Tasks\{706B4E89-02AF-492E-A271-BD9953D0630A} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\JAVA\32-Bit\jre-8u71-windows-i586-iftw.exe" -d "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\JAVA\32-Bit" Task: {0478F72F-A13F-4F8C-BAB8-4391CBC2A9B5} - System32\Tasks\{1365222F-FDD4-4454-91AA-7FA686CC023E} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\JAVA\32-Bit\jre-8u71-windows-i586.exe" -d "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\JAVA\32-Bit" Task: {0C6992AE-1F60-4593-BA92-C83361C3E8F9} - System32\Tasks\{6FD3F8F1-A8F7-49E1-BA60-D59D8B5A81A8} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Active\APC\PowerChute Business Edition\5 Node 9.0.1\pcbesetup.exe" -d "C:\Users\G.S. Ovenden\Documents\My Downloads Active\APC\PowerChute Business Edition\5 Node 9.0.1" Task: {1133EF35-2627-4D20-99AC-9928062D149C} - System32\Tasks\GS Ovenden => C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBCore.exe [2010-03-14] (Nero AG) Task: {1463A3BB-F642-4BB8-AEF4-00D0776189B7} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2615649320-1316126405-2989575285-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.) Task: {256AC3F8-BD66-464C-87E6-BDE5A89D8214} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2615649320-1316126405-2989575285-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.) Task: {29AD200B-5BAA-4E61-90DB-CE047B138B96} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2615649320-1316126405-2989575285-1001Core => C:\Users\G.S. Ovenden\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-30] (Google Inc.) Task: {2AD39C0F-7597-4B0C-9DD3-65C63CA0AD6E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.) Task: {2B26AAE4-5ECE-4EAE-BE77-6C2A424782E3} - System32\Tasks\{9FE57A5C-1D0A-4D27-9610-8509FE6D4AB9} => C:\Program Files (x86)\Norton Utilities 14\nu.exe [2011-03-28] (Symantec Corporation) Task: {418B0E6B-5846-4ABF-A9F9-CF71E0980EB8} - System32\Tasks\G.S. Ovenden NBAgent => C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [2010-03-14] (Nero AG) Task: {4AE0DC8D-913B-4531-A109-1FD1F45A55E0} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2015-08-06] (Symantec Corporation) Task: {5F9AD47B-F7B9-4178-A2D9-00DD78098263} - System32\Tasks\IHSelfDeleteTASK => CMD Task: {6FC0E2AB-6C68-451F-9913-52C4307F0149} - System32\Tasks\{7A102BD5-314E-4E67-A85B-A20ABD0B526E} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Active\Eaton Powerware\LanSafe\LS_606_Win64.exe" -d "C:\Users\G.S. Ovenden\Documents\My Downloads Active\Eaton Powerware\LanSafe" Task: {6FFC1F79-1B0B-4C56-8D9D-822819D95975} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2615649320-1316126405-2989575285-1001UA => C:\Users\G.S. Ovenden\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-30] (Google Inc.) Task: {78FCBA3A-310A-4468-ADA8-EBFC4B133DE2} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2615649320-1316126405-2989575285-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2012-11-29] (RealNetworks, Inc.) Task: {798B96D6-A159-4734-8B2E-F7944CEA88E4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.) Task: {7CB60FF2-F768-4EFB-AA4D-9E6702AFA687} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2615649320-1316126405-2989575285-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.) Task: {7ECC52B5-4B10-4F3F-BE71-3E796937B71F} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => C:\Program Files\Microsoft Device Center\devicecenter.exe Task: {7F7F5CA2-DE0F-4C3C-9657-D657453D7B51} - System32\Tasks\{311925F0-6761-460D-A405-B78FE05E7511} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\nVidia Graphics Update\R292829.exe" -d "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\nVidia Graphics Update" Task: {834EF59C-D3E4-4C37-9271-43E97B21F19E} - System32\Tasks\RealCreateProcessScheduledTask278777671S-1-5-21-2615649320-1316126405-2989575285-1001 => c:\program files (x86)\real\realplayer\update\realsched.exe [2013-02-18] (RealNetworks, Inc.) Task: {93638E26-B9A7-492E-AA79-CEB431523DD4} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files (x86)\Engine\6.4.1.14\SymErr.exe [2012-02-03] (Symantec Corporation) Task: {9E9287E7-0BD3-4315-97E4-EAA587119DB9} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell\SupportAssist\uaclauncher.exe [2015-12-29] (PC-Doctor, Inc.) Task: {9EB003D0-64E2-4508-BB75-F62088DFBFCB} - System32\Tasks\{1C1B1930-FBBD-46FE-BD5D-3656C238BB90} => pcalua.exe -a C:\Users\GS47E1~1.OVE\AppData\Local\Temp\jre-8u51-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 Task: {A3246E4C-4F8F-45F9-B8E9-B6B02CDF4886} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {A67644D1-4061-44FC-9A53-CD7D6CAFEEB1} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {A8BECB9A-9363-4CA1-A4B1-1F0132B255B1} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2615649320-1316126405-2989575285-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.) Task: {AA3951CB-2D87-43FA-A296-5B6A13826EAC} - System32\Tasks\{A74502E6-B1BE-47A0-9DEC-CCE317679A00} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Active\Eaton Powerware\setup.exe" -d "C:\Users\G.S. Ovenden\Desktop" Task: {ADDEB3FA-06D5-4A4C-9F37-E68B46AD237E} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {AE329785-7267-4057-B05A-6F182E1F3380} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {B4B3CCBC-4E8A-4217-82E8-3B14D283AAB0} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Dell\SupportAssist\sessionchecker.exe [2015-12-29] (PC-Doctor, Inc.) Task: {B8E30F01-F2FF-4FBD-A5E5-3B4EB9ABA8C8} - System32\Tasks\{9A7F1CB1-6D6D-4121-8F31-818874CE5C1A} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=4.1.0.166.350&LastError=404 Task: {B8E691F4-69EC-4738-8334-F301BB619F58} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {C226C170-5D5D-42E3-A2AE-C4F51B04AD80} - System32\Tasks\{D50B7D7A-A071-40B9-B01E-35CA507FBFD9} => pcalua.exe -a C:\Users\GS47E1~1.OVE\AppData\Local\Temp\jre-8u60-windows-au.exe -d "C:\Program Files (x86)\Java\jre1.8.0_45\bin" -c /installmethod=jau-m FAMILYUPGRADE=1 Task: {CAB10FFD-B930-49E0-A878-E8EE133C83F1} - System32\Tasks\IHUninstallTrackingTASK => CMD Task: {CDDFF5C4-AB73-48BC-8522-F4C23FC1A6E1} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files (x86)\Engine\6.4.1.14\SymErr.exe [2012-02-03] (Symantec Corporation) Task: {D195B08C-395B-4086-B7BC-1713C3B450FB} - System32\Tasks\PCDDataUploadTask => uaclauncher.exe Task: {D2609572-0336-417E-B619-6079ACB3C30A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-09] (Adobe Systems Incorporated) Task: {D84B86A2-E7EB-436F-84D9-BE3028EE0873} - System32\Tasks\{806D4838-A2E7-4BC8-ABCF-8996CB3B0542} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Active\Eaton Powerware\Intelligent Power Manager\MS UPS Management\PSP_2_63_03.exe" -d "C:\Users\G.S. Ovenden\Documents\My Downloads Active\Eaton Powerware\Intelligent Power Manager\MS UPS Management" Task: {D90442B5-CDC3-4338-976A-6075DF9BBAE8} - System32\Tasks\{93CD8D1C-E8B3-425F-A05B-57892FC5590D} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\Computing\Monitor\Dell P2411H Flat Panel\setup.exe" -d "C:\Users\G.S. Ovenden\Documents\Computing\Monitor\Dell P2411H Flat Panel" Task: {DCD44AEC-4E51-4482-A4DB-1727C93E0A61} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2615649320-1316126405-2989575285-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2012-11-29] (RealNetworks, Inc.) Task: {E0DC7858-A0E2-4C29-9D38-2708D68CA242} - System32\Tasks\{23C190FA-A907-4F2B-907A-D3390E28AB12} => C:\Program Files (x86)\Hewlett-Packard\Digital Imaging\bin\Hpqdirec.exe Task: {EC6FCECA-249C-4856-8F11-487B04EEE33E} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Engine\6.4.1.14\WSCStub.exe [2015-08-06] (Symantec Corporation) Task: {F0ADD3E5-DBA5-4DDC-A192-476C141162F4} - System32\Tasks\{008BF113-D2F1-4DA4-A621-07C6E6F7F6A0} => C:\Program Files (x86)\Hewlett-Packard\Digital Imaging\bin\Hpqdirec.exe Task: {F76A8867-DD6E-4A5B-8BBB-5D45899D25EB} - System32\Tasks\{EE8B125D-A057-4764-93B8-C6B998EC6051} => pcalua.exe -a "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\JAVA\32-Bit\jre-8u73-windows-i586.exe" -d "C:\Users\G.S. Ovenden\Documents\My Downloads Dell XPS\JAVA\32-Bit" Task: {F94A0B47-A9C9-4D78-A81B-210108994527} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2615649320-1316126405-2989575285-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2012-11-29] (RealNetworks, Inc.) Task: {FAB0796B-1805-4793-81C4-ED9D9CC177D5} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft) Task: {FB306CED-81E8-4044-B253-96793477C474} - System32\Tasks\{5D1B4382-BAA5-49EC-B7E5-D9F978E5A8C5} => pcalua.exe -a C:\Users\GS47E1~1.OVE\AppData\Local\Temp\jre-8u71-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2615649320-1316126405-2989575285-1001Core.job => C:\Users\G.S. Ovenden\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2615649320-1316126405-2989575285-1001UA.job => C:\Users\G.S. Ovenden\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2013-08-25 13:59 - 2015-02-03 21:21 - 00115400 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2010-03-24 11:54 - 2010-03-24 11:54 - 00011776 _____ () C:\Program Files (x86)\Dell\PowerNap\PowerNap.Service.exe 2010-03-24 11:54 - 2010-03-24 11:54 - 00044544 _____ () C:\Program Files (x86)\Dell\PowerNap\PowerNap.Core.dll 2012-11-29 20:31 - 2012-11-29 20:31 - 00038608 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 2010-04-19 12:02 - 2012-01-26 20:49 - 02751808 ____N () C:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\STService.exe 2011-06-01 09:48 - 2005-01-05 16:13 - 00027648 _____ () C:\Program Files (x86)\APC\PowerChute Business Edition\agent\lib\win32\win32com.dll 2011-06-01 09:48 - 2011-01-26 12:36 - 00032768 _____ () C:\Program Files (x86)\APC\PowerChute Business Edition\agent\lib\win32\ApcUsb_ul.dll 2011-09-27 07:23 - 2011-09-27 07:23 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2011-09-27 07:22 - 2011-09-27 07:22 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2009-08-05 09:45 - 2009-08-05 09:45 - 00106312 _____ () C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLCTL.DLL ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:D287FACF ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\se64a.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\2wire.net -> hxxps://gsovenden-pc.gateway.2wire.net IE trusted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\dell.com -> dell.com IE trusted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\servername -> servername IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.75tz.com -> .75tz.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.aavc.com -> .aavc.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.acjp.com -> .acjp.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.count.cc -> .count.cc IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebav.com -> .ebav.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebaw.com -> .ebaw.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebch.com -> .ebch.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebdv.com -> .ebdv.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebdw.com -> .ebdw.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebgo.com -> .ebgo.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebjp.com -> .ebjp.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebkb.com -> .ebkb.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebkn.com -> .ebkn.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebky.com -> .ebky.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.eblv.com -> .eblv.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebmu.com -> .ebmu.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ebvr.com -> .ebvr.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ecmh.com -> .ecmh.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ecmp.com -> .ecmp.com IE restricted site: HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\...\.ecpm.com -> .ecpm.com There are 10985 more sites. ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2615649320-1316126405-2989575285-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\G.S. Ovenden\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is disabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{1EE32ED9-1F22-4D93-BBC6-B231307CB352}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PowerDVD.exe FirewallRules: [{580D35AF-0AAC-4D53-8705-659BD7D6F388}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe FirewallRules: [{8B2FA089-94CB-41E7-9D36-E4C905950A46}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{B0D35AB8-0959-4FDB-A4E0-4FA8540AB227}] => (Allow) svchost.exe FirewallRules: [{D37E0FD4-2463-4270-A924-856B14AB6F0C}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [{FD1A40D6-5549-4FF3-BAE3-99BC8F8DBF41}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{B147BD0C-48B3-439C-9951-F52C06CFA5C3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{5BFFA208-E8F1-4D61-A6D8-FFE11ACCEF0A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe FirewallRules: [{D336BE2D-FAA6-4FD0-A6F5-89B10B68907A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe FirewallRules: [{241FD970-5799-4EE1-9FCD-13AE4A781FBD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{9C2FF320-5EDE-48C1-A03E-9C3D7996C983}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{F76B28F2-B2F7-4208-8FEA-27232C7651E0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{E91D5132-1BF6-45DB-AF4A-DC129E2712D4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe FirewallRules: [{A140F6CD-7186-49EE-BC29-F05648EB32E0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{A64988E0-51BB-41E4-8320-E8898BF782FD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{B5267EDB-2013-481C-B557-0D6715A34F42}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe FirewallRules: [{F32065B0-61EF-47B0-9F57-887D3B01B2B7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe FirewallRules: [{E9DFE42A-E13A-4E2E-A38A-38EBC59EF2AC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{0E056BC3-C8AC-4CDC-BCE3-D77245FE75F8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{B02DA681-02C4-4C5A-9627-88BC365ED57D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{6E57AB09-374A-42D8-996B-2E7B45D52195}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{DF02991B-3A33-4B4F-B388-A861B610D299}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{B706B514-7418-4296-802F-E74290EF2A75}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{E7A3DB6B-E5CF-49A9-8BEC-723B2A7AADCA}] => (Allow) C:\Program Files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe FirewallRules: [{0A87B281-AD58-491A-8791-0DE772E9A617}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqsudi.exe FirewallRules: [{0712DA2E-2012-40B0-93DC-E067E929368F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpsapp.exe FirewallRules: [{4FA7E78B-EE8A-401A-81F1-0B2767D56DE0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe FirewallRules: [{9C37118B-0F73-4B3A-8AC8-53D0361688BF}] => (Allow) C:\Program Files\Eaton\IntelligentPowerManager\mc2.exe FirewallRules: [{1A2EF036-2AC5-4E10-9B14-772E0D91E2B1}] => (Allow) C:\Program Files\Eaton\IntelligentPowerManager\mc2.exe FirewallRules: [{5236068B-8B0D-40F5-B35D-85254E727DD2}] => (Allow) C:\Program Files\Eaton\IntelligentPowerProtector\mc2.exe FirewallRules: [{AC46E49D-9868-47A9-A91D-A6ABA7123BD7}] => (Allow) C:\Program Files\Eaton\IntelligentPowerProtector\mc2.exe FirewallRules: [{6D755477-4558-4FF8-BFF9-CDD45D6B4511}] => (Allow) C:\Program Files (x86)\APC\PowerChute Business Edition\agent\pbeagent.exe FirewallRules: [{E3E8EB97-D383-4509-8900-933BA881C8F3}] => (Allow) C:\Program Files (x86)\APC\PowerChute Business Edition\agent\pbeagent.exe FirewallRules: [{8EBC017A-248E-47A3-83ED-1B68EDE05CA8}] => (Allow) C:\Program Files (x86)\APC\PowerChute Business Edition\server\pbeserver.exe FirewallRules: [{7473530C-B49B-453E-96B5-9D6AC2B5BEC0}] => (Allow) C:\Program Files (x86)\APC\PowerChute Business Edition\server\pbeserver.exe FirewallRules: [TCP Query User{0A108DBB-CB85-45BE-991B-4A9E6F2CEB14}C:\users\g.s. ovenden\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe] => (Allow) C:\users\g.s. ovenden\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe FirewallRules: [UDP Query User{B52352A3-DFA2-49A5-95A9-ECDC02A08D66}C:\users\g.s. ovenden\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe] => (Allow) C:\users\g.s. ovenden\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe FirewallRules: [{5074D35F-9F6F-41DF-BB31-9706D896A530}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{70CA36E9-B058-4739-82E8-09EBEF8FE36C}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{68D7BDBA-767F-4664-9284-6E4F5AC84A98}] => (Allow) LPort=2869 FirewallRules: [{B3E8CACC-202B-4938-AFFF-74917615CF2B}] => (Allow) LPort=1900 FirewallRules: [{4969CBBD-B0DC-487C-AFD9-EB7A5C008824}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{DEC4C9DD-E3A6-406A-97E4-E41414A9E5B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{62762B48-A100-40B1-B951-29C78E6ABF5A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{E70FA79C-7611-49D5-87FE-FF697FAFA01F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{A8B4D6B8-3A4B-401F-B87F-D144D0C11D6F}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{3089E8D5-6DAF-4059-9A4F-C7A53B34E92A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{1D87FAC7-4D63-4A06-833E-D87DE67C116A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{D35493A4-49FF-4C17-8688-7C4A86182863}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{6FBEE4DD-C4A0-407E-B577-B6783414A9C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{02771C5A-29D0-4F62-B7F9-9330D93D4600}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS13FB\HPDiagnosticCoreUI.exe FirewallRules: [{51C785A7-4BB2-4D67-AFB6-C20AC7CB55C5}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS13FB\HPDiagnosticCoreUI.exe FirewallRules: [{F5BB9EF4-C14C-46ED-8D5D-DBF568A9B733}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS4EF7\hppiw.exe FirewallRules: [{34F82AA5-CBA3-40E4-A5F1-77C69206FF0F}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS4EF7\hppiw.exe FirewallRules: [{A654B707-BB6C-4961-94E5-1B619692A6CC}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS50F2\HPDiagnosticCoreUI.exe FirewallRules: [{03F0C676-FF82-4284-B709-2FF5C1026937}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS50F2\HPDiagnosticCoreUI.exe FirewallRules: [{432DFA6B-0AA8-4188-A5AB-BFC35E63841A}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS4E8B\HPDiagnosticCoreUI.exe FirewallRules: [{F5EA0657-19A0-40E2-A93A-C426D6BA85E7}] => (Allow) C:\Users\G.S. Ovenden\AppData\Local\Temp\7zS4E8B\HPDiagnosticCoreUI.exe FirewallRules: [{2C69726C-7657-4E4B-B4B6-E53AD59E1F6A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9B52531E-3E92-4EBC-B9FE-ED9966A60A42}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{EFFB26A5-26A5-4CEC-8843-66ECAE476361}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{1BE6FC13-D427-49CF-A7CC-9F64C9DB9D2B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{896336A4-DD26-4781-882A-C484CC1E820E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Restore Points ========================= 17-02-2016 15:45:09 Windows Update 20-02-2016 16:39:49 Windows Modules Installer 20-02-2016 19:50:52 Installed Microsoft Fix it 50446 27-02-2016 20:12:16 Scheduled Checkpoint ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/27/2016 10:16:57 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program FRST64.exe version 27.2.2016.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 14a8 Start Time: 01d171d63159594e Termination Time: 2 Application Path: C:\Users\G.S. Ovenden\Documents\Computing\Troubleshooting Tools\FRST64\FRST64.exe Report Id: a3020e65-ddc9-11e5-b283-a4badbf97430 Error: (02/27/2016 10:00:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: OUTLOOK.EXE, version: 11.0.8326.0, time stamp: 0x4c1c2372 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x021f4667 Faulting process id: 0xaa4 Faulting application start time: 0xOUTLOOK.EXE0 Faulting application path: OUTLOOK.EXE1 Faulting module path: OUTLOOK.EXE2 Report Id: OUTLOOK.EXE3 Error: (02/27/2016 07:12:34 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [0] Error: (02/27/2016 07:12:34 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to load Audio DLL [126] Error: (02/25/2016 08:13:00 AM) (Source: APCPBEAgent) (EventID: 3000) (User: ) Description: "Lost Communication With UPS" Error: (02/25/2016 08:12:53 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5087505 Error: (02/25/2016 08:12:53 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5087505 Error: (02/25/2016 08:12:53 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/25/2016 08:12:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5086506 Error: (02/25/2016 08:12:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5086506 System errors: ============= Error: (02/27/2016 07:12:59 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: RxFilter Error: (02/27/2016 07:12:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The SessionLauncher service failed to start due to the following error: %%2 Error: (02/24/2016 04:02:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Microsoft Software Shadow Copy Provider service failed to start due to the following error: %%1053 Error: (02/24/2016 04:02:11 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Microsoft Software Shadow Copy Provider service to connect. Error: (02/24/2016 04:02:11 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1053swprv{65EE1DBA-8FF4-4A58-AC1C-3470EE2F376A} Error: (02/24/2016 02:39:51 PM) (Source: srv) (EventID: 2017) (User: ) Description: The server was unable to allocate from the system nonpaged pool because the server reached the configured limit for nonpaged pool allocations. Error: (02/24/2016 07:43:01 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The APC PBE Agent service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 0 milliseconds: Restart the service. Error: (02/24/2016 07:42:53 AM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk1\DR1. Error: (02/23/2016 05:38:58 PM) (Source: srv) (EventID: 2017) (User: ) Description: The server was unable to allocate from the system nonpaged pool because the server reached the configured limit for nonpaged pool allocations. Error: (02/23/2016 12:08:07 PM) (Source: srv) (EventID: 2017) (User: ) Description: The server was unable to allocate from the system nonpaged pool because the server reached the configured limit for nonpaged pool allocations. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz Percentage of memory in use: 47% Total physical RAM: 6134.99 MB Available physical RAM: 3233.87 MB Total Virtual: 12268.18 MB Available Virtual: 9444.11 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:456.11 GB) (Free:249.01 GB) NTFS Drive f: (WD SmartWare) (CDROM) (Total:0.43 GB) (Free:0 GB) UDF Drive i: (My Book) (Fixed) (Total:465.11 GB) (Free:339.92 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: C796C701) Partition 1: (Not Active) - (Size=39 MB) - (Type=DE) Partition 2: (Active) - (Size=9.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=456.1 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 465.1 GB) (Disk ID: 2D298E98) Partition 1: (Not Active) - (Size=465.1 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================