Good Morning,
Here are the two logs you requested. I was able to boot into safe mode by pressing f7 several times and picking the "safe mode" selection on the screen. Copied frst64.exe to the desktop and ran the program. It did not ask for a disclaimer, but it did produce two logs. WOW, wish I understood all that looks interesting
Also, since I am retired it would be nice to learn how and give back, but I need to be about 20 years younger and have the extra time to learn what you do. Your school or learning process sounds really good and I appreciate your efforts. You would make a good little profit if you wrote a book, but then you would not be here to help us. Thanks again and I await your reply.
FRST.TXT
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by Deborah (administrator) on DEBORAH-PC on 17-10-2013 08:55:17
Running from C:\
Windows 7 Home Premium (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Safe Mode (minimal)
==================== Processes (Whitelisted) =================
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2281256 2012-01-11] (Synaptics Incorporated)
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6489704 2011-06-18] (Realtek Semiconductor)
HKLM\...\Run: [RtkOSD] - C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe [995840 2010-01-12] (Realtek Semiconductor Corp.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [172032 2010-05-15] (Sun Microsystems, Inc.)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-07-05] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18642024 2013-02-28] (Skype Technologies S.A.)
HKCU\...409d6c4515e9\InprocServer32: [Default-shell32] C:\Users\Deborah\AppData\Local\Temp\stpxixy\sxkkxwy\wow64.dll ATTENTION! ====> ZeroAccess?
HKLM-x32\...\Run: [NortonOnlineBackupReminder] - C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe [600936 2009-06-29] (Symantec Corporation)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-09-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2011-01-31] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WirelessAssistant] - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2012-02-20] (Apple Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2012-04-18] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [421736 2012-03-27] (Apple Inc.)
HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [586296 2010-11-09] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254896 2012-09-17] (Sun Microsystems, Inc.)
HKU\Default\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1712184 2010-02-09] ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/?ilc=32HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://g.msn.com/HPNOT/1HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://g.msn.com/HPNOT/1HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://g.msn.com/HPNOT/1HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://g.msn.com/HPNOT/1HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
http://g.msn.com/HPNOT/1URLSearchHook: (No Name) - {c3d3840c-12ea-4461-a61d-190555fecc82} - No File
URLSearchHook: (No Name) - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - No File
StartMenuInternet: IEXPLORE.EXE - %ProgramFiles(x86)%\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {66778C30-7ACC-4C16-975D-E0ED68404825} URL =
http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {66778C30-7ACC-4C16-975D-E0ED68404825} URL =
http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKLM-x32 - {9bd172ba-3f40-4303-bca1-0484b5ba2a7b} URL =
http://search.mywebsearch.com/mywebsear ... searchfor={searchTerms}
SearchScopes: HKCU - DefaultScope {D14E65FB-0AD1-44B1-A334-31A08336F0E6} URL =
http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
SearchScopes: HKCU - {66778C30-7ACC-4C16-975D-E0ED68404825} URL =
http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKCU - {9bd172ba-3f40-4303-bca1-0484b5ba2a7b} URL =
http://search.mywebsearch.com/mywebsear ... searchfor={searchTerms}
SearchScopes: HKCU - {C04B7D22-5AEC-4561-8F49-27F6269208F6} URL =
http://www2.inbox.com/search/dispatcher.aspx?tp=bs&qkw={searchTerms}&tbid=82122&lng=en
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\17.0.0.136\coIEPlg.dll (Symantec Corporation)
BHO-x32: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\17.0.0.136\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Toolbar BHO - {a916eefe-6a17-4d7d-a131-2738b260bb55} - C:\Program Files (x86)\Guffins\bar\1.bin\u4bar.dll (MindSpark)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Microsoft Live Search Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
BHO-x32: Inbox Toolbar - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - C:\Program Files (x86)\Inbox Toolbar\Inbox.dll (Inbox.com, Inc.)
BHO-x32: Search Assistant BHO - {d6a34acb-76fa-4a14-88ea-5d54797a2028} - C:\Program Files (x86)\Guffins\bar\1.bin\u4SrcAs.dll (COMPANYVERS_NAME)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.0.0.136\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Guffins - {de2fdf7c-2637-4ba3-b427-3fce2d331db5} - C:\Program Files (x86)\Guffins\bar\1.bin\u4bar.dll (MindSpark)
Toolbar: HKLM-x32 - &Inbox Toolbar - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - C:\Program Files (x86)\Inbox Toolbar\Inbox.dll (Inbox.com, Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKCU - No Name - {DE2FDF7C-2637-4BA3-B427-3FCE2D331DB5} - No File
Toolbar: HKCU - No Name - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No File
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258}
http://download.macromedia.com/pub/shoc ... tor/sw.cabHandler: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - C:\Program Files (x86)\Inbox Toolbar\Inbox.dll (Inbox.com, Inc.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 208.180.42.68 208.180.42.100
==================== Services (Whitelisted) =================
S2 MediaMall Server; C:\Program Files (x86)\MediaMall\MediaMallServer.exe [2062200 2012-03-13] (MediaMall Technologies, Inc.)
S2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\17.0.0.136\ccSvcHst.exe [126392 2009-08-24] (Symantec Corporation)
S2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] ()
==================== Drivers (Whitelisted) ====================
S3 msvad_simple; C:\Windows\System32\drivers\povrtdev.sys [28528 2010-04-29] (MediaMall Technologies, Inc.)
S1 SRTSP; C:\Windows\system32\drivers\NISx64\1100000.088\SRTSP64.SYS [504880 2009-08-29] (Symantec Corporation)
S1 SRTSPX; C:\Windows\system32\drivers\NISx64\1100000.088\SRTSPX64.SYS [32304 2009-08-29] (Symantec Corporation)
S3 NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20090829.019\ENG64.SYS [x]
S3 NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20090829.019\EX64.SYS [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-17 08:55 - 2013-10-02 09:47 - 01954124 _____ (Farbar) C:\FRST64.exe
2013-10-17 08:53 - 2013-10-17 08:53 - 00277040 _____ C:\Windows\Minidump\101713-42276-01.dmp
2013-10-17 00:14 - 2013-10-17 00:14 - 00277040 _____ C:\Windows\Minidump\101713-44397-01.dmp
2013-10-16 23:47 - 2013-10-16 23:47 - 00277040 _____ C:\Windows\Minidump\101613-33431-01.dmp
2013-10-16 23:43 - 2013-10-16 23:43 - 00277040 _____ C:\Windows\Minidump\101613-29718-01.dmp
2013-10-16 19:36 - 2013-10-16 19:36 - 00277040 _____ C:\Windows\Minidump\101613-41184-01.dmp
2013-10-16 19:16 - 2013-10-16 19:17 - 00277040 _____ C:\Windows\Minidump\101613-50091-01.dmp
2013-10-15 22:49 - 2013-10-15 22:49 - 00000000 __SHD C:\$$PendingFiles
2013-10-15 22:23 - 2013-10-15 22:23 - 00000000 ____D C:\FRST
2013-10-15 20:28 - 2013-10-15 20:28 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ceca0fed0d75e.job
==================== One Month Modified Files and Folders =======
2013-10-17 08:53 - 2013-10-17 08:53 - 00277040 _____ C:\Windows\Minidump\101713-42276-01.dmp
2013-10-17 08:53 - 2013-04-29 14:37 - 00000000 ____D C:\Windows\Minidump
2013-10-17 08:52 - 2013-04-29 14:36 - 478734742 _____ C:\Windows\MEMORY.DMP
2013-10-17 02:36 - 2010-12-26 00:03 - 00000000 ____D C:\Users\Deborah
2013-10-17 00:16 - 2011-12-20 04:13 - 00000000 ____D C:\ProgramData\MediaMall
2013-10-17 00:14 - 2013-10-17 00:14 - 00277040 _____ C:\Windows\Minidump\101713-44397-01.dmp
2013-10-17 00:14 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-17 00:14 - 2009-07-13 23:51 - 00100350 _____ C:\Windows\setupact.log
2013-10-16 23:55 - 2009-07-14 00:08 - 00032590 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-16 23:55 - 2009-07-13 23:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-16 23:55 - 2009-07-13 23:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-16 23:54 - 2010-07-08 03:28 - 02035825 _____ C:\Windows\WindowsUpdate.log
2013-10-16 23:53 - 2010-12-26 07:54 - 00003942 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{314085F5-C77B-43FC-BDC4-DE3BB10CE702}
2013-10-16 23:47 - 2013-10-16 23:47 - 00277040 _____ C:\Windows\Minidump\101613-33431-01.dmp
2013-10-16 23:43 - 2013-10-16 23:43 - 00277040 _____ C:\Windows\Minidump\101613-29718-01.dmp
2013-10-16 22:39 - 2010-12-26 02:58 - 00000000 ____D C:\ProgramData\Recovery
2013-10-16 19:36 - 2013-10-16 19:36 - 00277040 _____ C:\Windows\Minidump\101613-41184-01.dmp
2013-10-16 19:17 - 2013-10-16 19:16 - 00277040 _____ C:\Windows\Minidump\101613-50091-01.dmp
2013-10-15 22:49 - 2013-10-15 22:49 - 00000000 __SHD C:\$$PendingFiles
2013-10-15 22:40 - 2010-07-08 03:44 - 00000000 ____D C:\ProgramData\Norton
2013-10-15 22:40 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-10-15 22:40 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\NDF
2013-10-15 22:39 - 2010-07-08 04:18 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-10-15 22:39 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\registration
2013-10-15 22:23 - 2013-10-15 22:23 - 00000000 ____D C:\FRST
2013-10-15 21:13 - 2011-07-05 01:20 - 00000900 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-15 21:12 - 2010-12-26 01:58 - 00176400 _____ C:\Windows\PFRO.log
2013-10-15 20:28 - 2013-10-15 20:28 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ceca0fed0d75e.job
2013-10-15 20:20 - 2011-04-25 21:45 - 75016696 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-15 20:15 - 2010-12-26 08:57 - 00000000 ____D C:\Users\Deborah\AppData\Roaming\HpUpdate
2013-10-15 20:14 - 2011-07-05 01:20 - 00003896 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-15 20:14 - 2011-07-05 01:20 - 00003644 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-15 20:08 - 2011-07-05 01:19 - 00000000 ____D C:\Users\Deborah\AppData\Roaming\Skype
2013-10-02 09:47 - 2013-10-17 08:55 - 01954124 _____ (Farbar) C:\FRST64.exe
Files to move or delete:
====================
C:\Users\Deborah\AppData\Roaming\skype.dat
Some content of TEMP:
====================
C:\Users\Deborah\AppData\Local\Temp\0.193393282823619.exe
C:\Users\Deborah\AppData\Local\Temp\0.2884516017999489.exe
C:\Users\Deborah\AppData\Local\Temp\ApnStub.exe
C:\Users\Deborah\AppData\Local\Temp\Extract.exe
C:\Users\Deborah\AppData\Local\Temp\FlashPlayerUpdate.exe
C:\Users\Deborah\AppData\Local\Temp\GoogleToolbarInstaller.exe
C:\Users\Deborah\AppData\Local\Temp\HPHelpUpdater.exe
C:\Users\Deborah\AppData\Local\Temp\HPQSi.exe
C:\Users\Deborah\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe
C:\Users\Deborah\AppData\Local\Temp\Resource.exe
C:\Users\Deborah\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Deborah\AppData\Local\Temp\SP47636.exe
C:\Users\Deborah\AppData\Local\Temp\SP49521.exe
C:\Users\Deborah\AppData\Local\Temp\SP49522.exe
C:\Users\Deborah\AppData\Local\Temp\SP49524.exe
C:\Users\Deborah\AppData\Local\Temp\SP50718.exe
C:\Users\Deborah\AppData\Local\Temp\SP50720.exe
C:\Users\Deborah\AppData\Local\Temp\sp50843.exe.exe
C:\Users\Deborah\AppData\Local\Temp\SP51650.exe
C:\Users\Deborah\AppData\Local\Temp\SP51976.exe
C:\Users\Deborah\AppData\Local\Temp\SP52093.exe
C:\Users\Deborah\AppData\Local\Temp\sp52110.exe.exe
C:\Users\Deborah\AppData\Local\Temp\sp54373.exe
C:\Users\Deborah\AppData\Local\Temp\sp54620.exe
C:\Users\Deborah\AppData\Local\Temp\sp58915.exe
C:\Users\Deborah\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Deborah\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\Deborah\AppData\Local\Temp\w7e1944.tmp.exe
C:\Users\Deborah\AppData\Local\Temp\w7e95DA.tmp.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
C:\Program Files\Windows Defender\en-US => ATTENTION: ZeroAccess. Use DeleteJunctionsIndirectory: C:\Program Files\Windows Defender
LastRegBack: 2013-04-15 13:43
==================== End Of Log ============================
ADDITION.TXT
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-10-2013
Ran by Deborah at 2013-10-17 08:55:57
Running from C:\
Boot Mode: Safe Mode (minimal)
==========================================================
==================== Security Center ========================
AV: Norton Internet Security (Disabled - Up to date) {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton Internet Security (Disabled - Up to date) {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}
FW: Norton Internet Security (Disabled) {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}
==================== Installed Programs ======================
Acrobat.com (x32 Version: 1.6.65)
Adobe AIR (x32 Version: 1.5.0.7220)
Adobe Flash Player 10 ActiveX (x32 Version: 10.3.181.23)
Adobe Flash Player 10 ActiveX 64-bit (Version: 10.3.162.28)
Adobe Reader 9.4.4 MUI (x32 Version: 9.4.4)
Adobe Shockwave Player (x32 Version: 11.5.1.601)
Apple Application Support (x32 Version: 2.1.7)
Apple Mobile Device Support (Version: 5.1.1.4)
Apple Software Update (x32 Version: 2.1.3.127)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.82)
Blackhawk Striker 2 (x32 Version: 2.2.0.82)
Blasterball 3 (x32 Version: 2.2.0.82)
Bonjour (Version: 3.0.0.10)
Build-a-lot 2 (x32 Version: 2.2.0.82)
Cake Mania (x32 Version: 2.2.0.82)
Chuzzle Deluxe (x32 Version: 2.2.0.82)
Cisco EAP-FAST Module (x32 Version: 2.2.14)
Cisco LEAP Module (x32 Version: 1.0.19)
Cisco PEAP Module (x32 Version: 1.1.6)
CyberLink DVD Suite (x32 Version: 7.0.2216)
CyberLink MediaShow (x32 Version: 4.1.3419)
CyberLink PowerDVD 8 (x32 Version: 8.0.1.1110)
CyberLink YouCam (x32 Version: 3.0.2201)
D3DX10 (x32 Version: 15.4.2368.0902)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.82)
Dora's Carnival Adventure (x32 Version: 2.2.0.82)
Escape Rosecliff Island (x32 Version: 2.2.0.82)
ESU for Microsoft Windows 7 (x32 Version: 1.0.0)
Faerie Solitaire (x32 Version: 2.2.0.82)
FATE (x32 Version: 2.2.0.82)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0)
Google Toolbar for Internet Explorer (x32 Version: 7.4.3607.2246)
Google Update Helper (x32 Version: 1.3.21.165)
Guffins (x32)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000)
HP Advisor (x32 Version: 3.4.10262.3295)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7)
HP Game Console (x32)
HP Games (x32 Version: 1.0.0.80)
HP Quick Launch (x32 Version: 2.3.6)
HP Setup (x32 Version: 1.2.3560.3170)
HP Smart Web Printing (x32 Version: 131.1.35898)
HP Software Framework (x32 Version: 4.0.108.1)
HP Support Assistant (x32 Version: 7.0.39.15)
HP Update (x32 Version: 5.003.001.001)
HP User Guides 0183 (x32 Version: 1.01.0001)
HP Wireless Assistant (x32 Version: 3.50.9.1)
Inbox Toolbar (x32 Version: 2.0.0.17)
Intel(R) Control Center (x32 Version: 1.2.1.1007)
Intel(R) Graphics Media Accelerator Driver (x32 Version: 8.15.10.2086)
Intel(R) Rapid Storage Technology (x32 Version: 9.6.2.1001)
iTunes (Version: 10.6.1.7)
Java Auto Updater (x32 Version: 2.0.7.2)
Java(TM) 6 Update 17 (64-bit) (Version: 6.0.170)
Java(TM) 6 Update 37 (x32 Version: 6.0.370)
Jewel Quest 3 (x32 Version: 2.2.0.82)
Jewel Quest Solitaire 2 (x32 Version: 2.2.0.82)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
LabelPrint (x32 Version: 2.5.2215)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Live Search Toolbar (x32 Version: 3.0.566.0)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000)
Microsoft Office Click-to-Run 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - English (x32 Version: 14.0.4763.1000)
Microsoft Silverlight (Version: 5.1.20125.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
muvee Reveal (x32 Version: 7.0.43.12698)
Mystery P.I. - The New York Fortune (x32 Version: 2.2.0.82)
Need For Speed™ World (x32 Version: 1.0.0.1229)
Norton Internet Security (x32 Version: 17.0.0.136)
Norton Online Backup (x32 Version: 1.2.20.0)
Penguins! (x32 Version: 2.2.0.82)
PictureMover (x32 Version: 3.3.1.18)
Plants vs. Zombies (x32 Version: 2.2.0.82)
PlayOn (x32 Version: 3.4.29)
Poker Superstars III (x32 Version: 2.2.0.82)
Polar Bowler (x32 Version: 2.2.0.82)
Polar Golfer (x32 Version: 2.2.0.82)
Power2Go (x32 Version: 6.0.3415)
PowerDirector (x32 Version: 7.0.3420)
QuickTime (x32 Version: 7.72.80.56)
Realtek Ethernet Controller Driver For Windows 7 (x32 Version: 7.18.322.2010)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6206)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30105)
REALTEK Wireless LAN Software (x32 Version: 1.00.10.0104)
Recovery Manager (x32 Version: 5.5.2214)
ROBLOX Player for Deborah (HKCU)
RtVOsd (Version: 1.0.6)
Skype Toolbars (x32 Version: 5.5.7896)
Skype™ 6.3 (x32 Version: 6.3.105)
Synaptics Pointing Device Driver (Version: 15.1.6.64)
TextTwist 2 (x32 Version: 2.2.0.82)
Unity Web Player (HKCU Version: )
Unity Web Player (x32 Version: 2.5.5b4_50)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Virtual Families (x32 Version: 2.2.0.82)
Virtual Villagers - The Secret City (x32 Version: 2.2.0.82)
VoiceOver Kit (x32 Version: 1.42.128.0)
Wheel of Fortune 2 (x32 Version: 2.2.0.82)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live Sync (x32 Version: 14.0.8089.726)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Wizard101 (x32 Version: 1.0.0)
World of Warcraft (x32 Version: 5.1.0.16357)
Zuma's Revenge (x32 Version: 2.2.0.82)
==================== Restore Points =========================
31-03-2013 07:25:07 Windows Update
04-04-2013 02:27:33 Windows Update
11-04-2013 02:59:41 Windows Update
11-04-2013 05:34:43 Windows Update
13-04-2013 02:04:51 Windows Update
18-04-2013 02:27:05 Windows Update
23-04-2013 02:13:23 Windows Update
25-04-2013 04:46:12 Windows Update
27-04-2013 03:22:16 Windows Defender Checkpoint
07-05-2013 04:21:38 Windows Update
16-10-2013 01:14:43 Windows Update
==================== Hosts content: ==========================
2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {367D83D7-D8C1-403D-8746-B05F02912E96} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-03-21] (Hewlett-Packard)
Task: {433B0605-28AC-4149-B17A-92DA437AC57D} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {4397C71F-0D91-4134-AEB2-4E83BC33B396} - System32\Tasks\RecoveryCDWin7 => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2009-10-07] ()
Task: {670D9084-E630-4612-9E62-7D3D52538103} - System32\Tasks\{C1754FE6-8363-47D3-BEF4-C07985ABF4B4} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-02-28] (Skype Technologies S.A.)
Task: {9089D036-1565-4C98-B751-C92AF9BEB730} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {9B0E2767-759E-467C-BA2C-0CA20ECC7587} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {B462EFEC-3C90-4735-B611-0B7C5D6FF305} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-07-05] (Google Inc.)
Task: {C346FAF7-5B73-42E8-BB88-0AEE762489EE} - \1426109628 No Task File
Task: {CE783393-CB8C-4D93-90CE-A3C9D864EF30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company)
Task: {E4B43F0A-0F11-4E93-8DD7-6854941FEF27} - \win4036e0 No Task File
Task: {F3690BA2-9359-416D-9DC3-B11B2C6CCBDD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-07-05] (Google Inc.)
Task: {FADC0D64-DFB5-48A8-9857-75AF6FF53176} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ceca0fed0d75e.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="1"
==================== Faulty Device Manager Devices =============
Name: Security Processor Loader Driver
Description: Security Processor Loader Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: spldr
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
Error: (10/16/2013 11:55:04 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x00000000004f2ba0
Faulting process id: 0x3ac
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:47:57 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x0000000000015335
Faulting process id: 0x1401c
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:44:34 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x00000000004f2ba0
Faulting process id: 0x1054
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:38:42 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x00000000004f2ba0
Faulting process id: 0x100dc
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:33:16 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x00000000004f2ba0
Faulting process id: 0x2a0c
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:27:12 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x00000000004f2ba0
Faulting process id: 0x32e4
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:24:50 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x0000000000569409
Faulting process id: 0x170fc
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:18:02 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x0000000000569409
Faulting process id: 0x76d8
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:09:27 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: Flash64_10_3_162.ocx, version: 10.3.162.28, time stamp: 0x4cd9fabd
Exception code: 0xc0000005
Fault offset: 0x00000000004f2ba0
Faulting process id: 0xcf08
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
Error: (10/15/2013 10:07:10 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x0000000000015335
Faulting process id: 0x4888
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
System errors:
=============
Error: (10/17/2013 08:55:41 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:55:11 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:54:41 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:54:11 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:53:46 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:53:46 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:53:46 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:53:46 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:53:46 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Error: (10/17/2013 08:53:46 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:
%%1068
Microsoft Office Sessions:
=========================
Error: (10/16/2013 11:55:04 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc000000500000000004f2ba03ac01cecaf404210c3aC:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocx48d9b6f2-36e8-11e3-9b6a-60eb693077d3
Error: (10/15/2013 10:47:57 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1unknown0.0.0.000000000c000000500000000000153351401c01ceca22080d760cC:\Windows\system32\svchost.exeunknownbe35a8d8-3615-11e3-a191-60eb693077d3
Error: (10/15/2013 10:44:34 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc000000500000000004f2ba0105401ceca21399e802aC:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocx44f7833e-3615-11e3-a191-60eb693077d3
Error: (10/15/2013 10:38:42 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc000000500000000004f2ba0100dc01ceca20759637f5C:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocx7360dbb9-3614-11e3-a191-60eb693077d3
Error: (10/15/2013 10:33:16 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc000000500000000004f2ba02a0c01ceca1fb175b659C:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocxb09b787e-3613-11e3-a191-60eb693077d3
Error: (10/15/2013 10:27:12 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc000000500000000004f2ba032e401ceca1f4c2d1601C:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocxd6c80d4c-3612-11e3-a191-60eb693077d3
Error: (10/15/2013 10:24:50 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc00000050000000000569409170fc01ceca1e6f23493aC:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocx83aa7354-3612-11e3-a191-60eb693077d3
Error: (10/15/2013 10:18:02 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc0000005000000000056940976d801ceca1d21d57edeC:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocx8ffe86d9-3611-11e3-a191-60eb693077d3
Error: (10/15/2013 10:09:27 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1Flash64_10_3_162.ocx10.3.162.284cd9fabdc000000500000000004f2ba0cf0801ceca1d0ab26212C:\Windows\system32\svchost.exeC:\Windows\system32\Macromed\Flash\Flash64_10_3_162.ocx5d7505d9-3610-11e3-a191-60eb693077d3
Error: (10/15/2013 10:07:10 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1unknown0.0.0.000000000c00000050000000000015335488801ceca1c5b3fa71eC:\Windows\system32\svchost.exeunknown0b716503-3610-11e3-a191-60eb693077d3
CodeIntegrity Errors:
===================================
Date: 2013-10-17 00:14:39.418
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-17 00:10:42.228
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-16 23:48:43.602
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-16 23:44:07.492
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-16 19:36:56.499
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-16 19:33:38.908
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-16 19:13:19.328
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-15 22:54:19.903
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-15 22:33:48.916
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
Date: 2013-10-15 22:25:14.893
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\wininet.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Percentage of memory in use: 30%
Total physical RAM: 3002.92 MB
Available physical RAM: 2091.46 MB
Total Pagefile: 6003.98 MB
Available Pagefile: 5111.19 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:283.49 GB) (Free:195.95 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:14.31 GB) (Free:2.36 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
Drive g: (MEMORIX1G) (Removable) (Total:0.96 GB) (Free:0.42 GB) FAT
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 298 GB) (Disk ID: 7D497DE8)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=283 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=14 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
========================================================
Disk: 1 (Size: 984 MB) (Disk ID: 4D63645D)
Partition 1: (Active) - (Size=984 MB) - (Type=06)
==================== End Of Log ============================