Jump to content

cwallremove

Honorary Members
  • Posts

    40
  • Joined

  • Last visited

Reputation

0 Neutral
  1. One thing I have noticed that remains is that if I go into word and I click 'edit header' there's a message relating to help decrypt come up. Will post the print screens. Any ideas?
  2. Great! No error message on start up. AVG webtune up gone. Running better in general. Thanks so much Ron! I really appreciate your help.
  3. Thanks Ron. Sorry to sound a bit stupid, how do I attach the file to the post?
  4. Hi Ron Thanks again for your replies. 1) No AVG toolbar in my program list, uninstalled AVG protection and AVG. Still on the list: AVG web tuneup clicked on it to uninstall but no action. 2) Completed the fixlist. 3) Java update still on program list 4) One of the error messages gone away: still have this one: RegSvr32 C:\Users\HD\AppData\Local\YhPack\mdnsNSP.dll Any ideas?
  5. Additional scan result of Farbar Recovery Scan Tool (x64) Version:01-12-2015 Ran by HD (2015-12-02 10:11:14) Running from C:\Users\HD\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2011-12-30 11:39:07) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-790991912-2550835033-3860445865-500 - Administrator - Disabled) Guest (S-1-5-21-790991912-2550835033-3860445865-501 - Limited - Disabled) HD (S-1-5-21-790991912-2550835033-3860445865-1000 - Administrator - Enabled) => C:\Users\HD HomeGroupUser$ (S-1-5-21-790991912-2550835033-3860445865-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG AntiVirus Free Edition (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 1400 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden 1400_Help (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden 1400Trb (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.13 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.7.0.1860 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.6 - Adobe Systems Incorporated) Adobe Flash Player 19 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 19.0.0.245 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) Adobe Shockwave Player 11.5 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.5.9.620 - Adobe Systems, Inc.) AIO_CDB_ProductContext (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden AIO_CDB_Software (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden Apple Application Support (32-bit) (HKLM-x32\...\{649A1FD9-5892-46AD-8DF0-C4A43FF61CB7}) (Version: 4.1 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{0DE0A178-AC7B-4650-806C-CF226DE03766}) (Version: 4.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) AVG (HKLM\...\AvgZen) (Version: 1.22.1.40089 - AVG Technologies) AVG (Version: 16.7.7227 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4477 - AVG Technologies) Hidden AVG Protection (HKLM\...\AVG) (Version: 2016.7.7227 - AVG Technologies) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.1.8.599 - AVG Technologies) AVG Zen (Version: 1.22.1 - AVG Technologies) Hidden BBC iPlayer Desktop (HKLM-x32\...\BBCiPlayerDesktop.61DB7A798358575D6A969CCD73DDBBD723A6DA9D.1) (Version: 3.2.15 - British Broadcasting Corp.) BBC iPlayer Desktop (x32 Version: 3.2.15 - British Broadcasting Corp.) Hidden Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.1.4119 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.24 - DivX, LLC) DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden ESU for Microsoft Windows 7 SP1 (HKLM-x32\...\{E96CAA2A-0244-4A2A-8403-0C3C9534778B}) (Version: 2.1.1 - Hewlett-Packard) Excel Password Recovery Master 3.6 (HKLM-x32\...\Excel Password Recovery Master_is1) (Version: - ) Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden FMW 1 (Version: 1.32.2 - AVG Technologies) Hidden Genie Timeline (HKLM-x32\...\Genie Timeline) (Version: 3.0 - Genie9) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.86 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Documentation (HKLM-x32\...\{DE15C5EC-7C30-44BF-ACEB-03960FC5601D}) (Version: 1.1.1.0 - Hewlett-Packard) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Launch Box (HKLM\...\{5A847522-375C-4D05-BD3D-88C450CC047F}) (Version: 1.1.5 - Hewlett-Packard Company) HP On Screen Display (HKLM-x32\...\{ED1BD69A-07E3-418C-91F1-D856582581BF}) (Version: 1.3.5 - Hewlett-Packard Company) HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP) HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (HKLM\...\{B61ED343-0B14-4241-999C-490CB1A20DA4}) (Version: 13.0 - HP) HP Setup (HKLM-x32\...\{5036764A-435D-40C9-869C-31085A3D741D}) (Version: 8.7.4751.3798 - Hewlett-Packard Company) HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13476.3753 - Hewlett-Packard Company) HP Software Framework (HKLM-x32\...\{675D093B-815D-47FD-AB2C-192EC751E8E2}) (Version: 4.6.10.1 - Hewlett-Packard Company) HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP) HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.1.40.3 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{55065080-504F-43BB-BE00-36B80D7D39A5}) (Version: 12.0.30.219 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{97486FBE-A3FC-4783-8D55-EA37E9D171CC}) (Version: 5.005.000.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6365.0 - IDT) InstallConverter (HKLM-x32\...\InstallConverter) (Version: 1.0 - InstallConverter) Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel® Identity Protection Technology 1.1.2.0 (HKLM-x32\...\{C01A86F5-56E7-101F-9BC9-E3F1025EB779}) (Version: 1.1.2.0 - Intel Corporation) Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2372 - Intel Corporation) Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC) iTunes (HKLM\...\{E690A491-702F-4DEC-9977-C015D1DBB57C}) (Version: 12.3.1.23 - Apple Inc.) Java 6 Update 37 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216035FF}) (Version: 6.0.370 - Oracle) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden LaCie Desktop Manager 2.3.0 (HKLM-x32\...\{3845209F-142E-4F48-B61A-AA34D2DB54BB}_is1) (Version: 2.3.0 - LaCie) Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 x64 English (HKLM\...\{F83779DF-E1F5-43A2-A7BE-732F856FADB7}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NETGEAR WNDA3200 wireless adapter Setup (HKLM-x32\...\{9B02F55E-7E6B-4226-8E67-76514D33FD41}_is1) (Version: 1.0.0.11 - NETGEAR) Network64 (Version: 130.0.572.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP) Opera 12.16 (HKLM-x32\...\Opera 12.16.1860) (Version: 12.16.1860 - Opera Software ASA) QuickTime 7 (HKLM-x32\...\{627FFC10-CE0A-497F-BA2B-208CAC638010}) (Version: 7.77.80.95 - Apple Inc.) Ralink RT5390 802.11b/g/n WiFi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 3.2.13.0 - Ralink) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.85 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 2.0.0 - Hewlett-Packard) Hidden Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden Synaptics TouchPad Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.11.0 - Synaptics Incorporated) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden USB Storage Driver (HKLM-x32\...\GENEUIDE) (Version: - ) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VIP Access SDK (1.0.1.2) (HKLM-x32\...\VIP Access SDK) (Version: 1.0.1.2 - Symantec Inc.) Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies) Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.623 - Nullsoft, Inc) Winamp Detector Plug-in (HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) WinRAR 4.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) ZTE_1.2059.0.8 (HKLM-x32\...\ZTE_1.2059.0.8) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 22-11-2015 03:00:15 Windows Update 24-11-2015 22:51:53 Removed HP Power Manager 24-11-2015 22:52:51 Removed HP Quick Launch 24-11-2015 22:55:04 Removed Java 6 Update 37 24-11-2015 22:56:11 Removed HP SimplePass PE 2011. 24-11-2015 22:58:05 Removed Java 6 Update 37 24-11-2015 22:59:31 Windows Live Essentials 24-11-2015 22:59:54 WLSetup 28-11-2015 22:01:10 Restore Point Created by FRST 28-11-2015 22:25:02 Removed Java 6 Update 37 ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 02:34 - 2015-03-31 18:27 - 00000019 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {029DF2B2-91DE-45FE-B322-AD07DF474370} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2015-11-04] (Hewlett-Packard) Task: {12506AF6-AF70-4F9E-8FDC-FF92DA019643} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company) Task: {143AC611-7445-431E-99B1-5036BBF51DE5} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {24AC103D-693B-456C-8DF9-09791B47C7C0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2015-11-04] (Hewlett-Packard) Task: {32112E33-1530-42F3-975F-ECDB8134B02E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-02] (Google Inc.) Task: {383A2E06-95D1-43B8-AC4E-AB7F0F019516} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {3CC6E8EE-F4B5-45DC-B07C-3C5EBD36A657} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {3E38FDB1-07DB-4542-A004-E3F3DC83DE6B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-11] (Adobe Systems Incorporated) Task: {42DC1E66-6B83-45FE-8A86-D3A79E5257BD} - System32\Tasks\{37E200F2-F0DA-480E-8C5D-F90178EBEC8C} => pcalua.exe -a "I:\LaCie Setup\LaCie Setup.exe" -d "I:\LaCie Setup" Task: {66F996CF-CB4F-4007-9F13-E578BD18DD05} - System32\Tasks\{5A7748BB-DEE4-4341-81D7-C4A57563A6D6} => pcalua.exe -a C:\Users\HD\Downloads\AdobeAIRInstaller.exe -d C:\Users\HD\Desktop Task: {6BE000D1-BB03-44EC-9657-50F47FEBD0F4} - System32\Tasks\HPCeeScheduleForHD => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {72BAE328-8A19-4F1D-B28B-FBFE7B3EFF2F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-27] (Hewlett-Packard) Task: {7B2146CB-F30B-4785-9998-69B456C81525} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.) Task: {7D195A02-9CCB-433A-A560-76A68C4C4903} - System32\Tasks\{B8255646-8301-4024-8695-3F0E95711F24} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.1.0.129.272/en/abandoninstall?page=tsProgressBar Task: {8C1590CA-546A-48F0-9FB4-02F1B5A5FA60} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-06-28] () Task: {DA9EC47A-C905-4FF8-9009-B8F3B68660E7} - System32\Tasks\{85932C58-3690-48DF-A1E5-09073CFC0FEC} => pcalua.exe -a C:\Users\HD\Downloads\CF_101.exe -d C:\Users\HD\Desktop Task: {DCA20E7B-2573-4556-8A62-B4E59CE47D9A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-02] (Google Inc.) Task: {E1B00C8A-A174-4A0C-8AA0-27364EE8DE89} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-06-28] () Task: {E8BDF611-E0C1-4648-9276-A5114E4DE84B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company) Task: {F54C477F-4CF8-41F8-9C2E-8F36CB39C2B0} - System32\Tasks\ROC_REG_JAN_DELETE => C:\ProgramData\AVG January 2013 Campaign\ROC.exe [2013-01-17] () Task: {F799B1DD-E5F0-44AE-AE99-FFBD0D76EF20} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-06-16] (CyberLink) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForHD.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\Windows\Tasks\ROC_REG_JAN_DELETE.job => C:\ProgramData\AVG January 2013 Campaign\ROC.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2015-11-13 13:07 - 2015-11-13 13:06 - 01205136 ____N () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe 2015-05-15 15:26 - 2015-05-15 15:26 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-10-13 05:45 - 2015-10-13 05:45 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00332800 _____ () C:\Program Files\Genie9\Genie Timeline\OnlineHandler.dll 2012-04-24 09:29 - 2012-04-24 09:29 - 00045568 _____ () C:\Program Files\Genie9\Genie Timeline\GSLogging.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00488960 _____ () C:\Program Files\Genie9\Genie Timeline\GSIndexDB.dll 2012-02-02 09:16 - 2012-02-02 09:16 - 00740864 _____ () C:\Program Files\Genie9\Genie Timeline\sqlite3.dll 2012-04-24 09:29 - 2012-04-24 09:29 - 00011264 _____ () C:\Program Files\Genie9\Genie Timeline\RWLock.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00205824 _____ () C:\Program Files\Genie9\Genie Timeline\Settings.dll 2012-04-24 09:29 - 2012-04-24 09:29 - 00089600 _____ () C:\Program Files\Genie9\Genie Timeline\GSEncryption.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00087040 _____ () C:\Program Files\Genie9\Genie Timeline\QueueManager.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00708608 _____ () C:\Program Files\Genie9\Genie Timeline\GSBackupManager.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00343552 _____ () C:\Program Files\Genie9\Genie Timeline\GSWatcher4.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00054784 _____ () C:\Program Files\Genie9\Genie Timeline\GSLogManager.dll 2012-02-02 09:16 - 2012-02-02 09:16 - 00010752 _____ () C:\Program Files\Genie9\Genie Timeline\VSSEngine_Proxy.dll 2012-04-24 09:29 - 2012-04-24 09:29 - 00058368 _____ () C:\Program Files\Genie9\Genie Timeline\GSLibrariesManager.dll 2012-02-02 09:16 - 2012-02-02 09:16 - 00031232 _____ () C:\Program Files\Genie9\Genie Timeline\VSSEngine_W2K3.dll 2011-05-10 17:56 - 2011-05-10 17:56 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-09-10 14:29 - 2012-09-10 14:29 - 00063488 _____ () C:\Program Files\Genie9\Genie Timeline\XBalloonMsgDll.dll 2012-04-24 09:29 - 2012-04-24 09:29 - 00093696 _____ () C:\Program Files\Genie9\Genie Timeline\GSCurl.dll 2013-02-13 02:37 - 2013-02-13 02:37 - 01263952 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2015-11-11 14:14 - 2014-09-22 09:34 - 02278912 _____ () C:\Program Files (x86)\LaCie\LaCie Desktop Manager\QtCore4.dll 2015-11-11 14:14 - 2014-09-22 09:34 - 08151040 _____ () C:\Program Files (x86)\LaCie\LaCie Desktop Manager\QtGui4.dll 2015-11-11 14:14 - 2014-09-22 09:34 - 00911872 _____ () C:\Program Files (x86)\LaCie\LaCie Desktop Manager\QtNetwork4.dll 2015-11-11 14:14 - 2014-09-22 09:34 - 00339456 _____ () C:\Program Files (x86)\LaCie\LaCie Desktop Manager\QtXml4.dll 2013-02-13 02:38 - 2013-02-13 02:38 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2015-11-13 12:50 - 2015-11-13 12:49 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll 2014-10-21 19:16 - 2014-10-21 19:16 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\c152a64e30c5b94894d75ac86aa7aad2\IsdiInterop.ni.dll 2011-09-23 08:33 - 2011-04-30 07:28 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll 2015-11-11 19:44 - 2015-11-07 04:36 - 01532744 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libglesv2.dll 2015-11-11 19:44 - 2015-11-07 04:36 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libegl.dll 2015-11-11 19:44 - 2015-11-07 04:36 - 16496456 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:16EAB5F6 AlternateDataStreams: C:\ProgramData\Temp:8FFC7CF4 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-790991912-2550835033-3860445865-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\HD\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{614582A4-85F4-4C37-8364-E1055222BD3F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{05BA44B1-9770-45D8-9AEB-8A9EBCE29E3B}] => (Allow) LPort=2869 FirewallRules: [{40076678-29C4-4030-8008-E1E7822C5D11}] => (Allow) LPort=1900 FirewallRules: [{15AE612D-A7E6-4E6A-B3AA-2A84844E70A5}] => (Allow) C:\Windows\system32\ezSharedSvcHost.exe FirewallRules: [{4162BB8F-D695-4E33-8195-265740A3D167}] => (Allow) C:\Program Files (x86)\EasyBits For Kids\ezDesktop.exe FirewallRules: [{7615B21B-A1E2-4992-97AE-FD11A2AC48AA}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS206C\hppiw.exe FirewallRules: [{78A2D2C3-E8F9-4D6C-9728-F32173EA98A5}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS206C\hppiw.exe FirewallRules: [{A5728895-2EF5-459F-A3A9-77BC15310319}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS24A8\hppiw.exe FirewallRules: [{67617C66-01AA-4FCF-B22E-50C8E0D93C50}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS24A8\hppiw.exe FirewallRules: [{2137483A-98EF-43A2-8FA7-D62180418D41}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS2C11\hppiw.exe FirewallRules: [{2DA8ED79-F6D5-4D09-8533-D8397300651A}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS2C11\hppiw.exe FirewallRules: [{69B22D2E-36E5-455F-A483-83A0DAED92CA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{FE2E9389-0938-4F43-810F-C541956DA062}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D94837B6-FF3F-4C9F-9691-4D5C7CDAC8F5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{30AF7599-9503-45ED-ADEE-354C4C56436D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [TCP Query User{7FBA15FC-D1BC-48E6-9F26-000349A0E0F5}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [uDP Query User{45977704-FF79-4161-843F-A1F3D3F21426}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [{B20B3A39-2E5C-4256-B237-C6352D0A2FE2}] => (Block) C:\program files (x86)\winamp\winamp.exe FirewallRules: [{3DEE8EF9-F73E-41E2-8EF7-796F1AB4D18F}] => (Block) C:\program files (x86)\winamp\winamp.exe FirewallRules: [{2C14F5A5-D77D-4E46-A17F-BD6CFD44726C}] => (Allow) C:\Program Files (x86)\BearShare Applications\BearShare\BearShare.exe FirewallRules: [{7173E337-6968-4A88-A495-92BAB3871430}] => (Allow) C:\Program Files (x86)\BearShare Applications\BearShare\BearShare.exe FirewallRules: [TCP Query User{EB31D149-71BA-46AB-8AE3-6A0B84769905}C:\program files (x86)\bearshare applications\bearshare\bearshare.exe] => (Allow) C:\program files (x86)\bearshare applications\bearshare\bearshare.exe FirewallRules: [uDP Query User{27EE48CE-257B-4112-80D7-F3A0C82CBFE8}C:\program files (x86)\bearshare applications\bearshare\bearshare.exe] => (Allow) C:\program files (x86)\bearshare applications\bearshare\bearshare.exe FirewallRules: [{45BF514C-B32F-44CB-95BB-B507E774802D}] => (Allow) C:\Program Files (x86)\FrostWire 5\FrostWire.exe FirewallRules: [{4F3512B4-6D00-4618-8C7F-9C29B1E088E0}] => (Allow) C:\Program Files (x86)\FrostWire 5\FrostWire.exe FirewallRules: [{EC1DE418-D0D1-44E4-A0E6-4BE4EC461D70}] => (Allow) C:\Program Files (x86)\AVG\AVG2012\avgdiagex.exe FirewallRules: [{11D4EDA4-7974-4C9F-87CB-3974DE2C0619}] => (Allow) C:\Program Files (x86)\AVG\AVG2012\avgdiagex.exe FirewallRules: [{952270A4-B69D-4123-92FE-453D83C3631E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{0F10156A-C338-4CD5-A2FB-FD967B5224B3}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [uDP Query User{E267FAEE-95A5-4A1A-A543-2144CE00B3BD}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [TCP Query User{9C05F0F2-0AA9-4FF7-B680-EDDDB27BEC00}C:\users\hd\appdata\local\pearson vue common\jre\jre1.6.0_29\bin\java.exe] => (Allow) C:\users\hd\appdata\local\pearson vue common\jre\jre1.6.0_29\bin\java.exe FirewallRules: [uDP Query User{874FE1F8-2A7D-4897-8B7F-7BC64CE6FA8B}C:\users\hd\appdata\local\pearson vue common\jre\jre1.6.0_29\bin\java.exe] => (Allow) C:\users\hd\appdata\local\pearson vue common\jre\jre1.6.0_29\bin\java.exe FirewallRules: [{5AB6D06C-4816-4AE6-A9AE-B3321A20BE82}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{A590A189-28AC-4665-BD3B-CCF14200B8A9}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{B06A38BE-C9DD-47DC-BBB1-28C094A54699}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS1C4A\hppiw.exe FirewallRules: [{8A98DBAB-877A-4372-8A3B-36D1ECA05F99}] => (Allow) C:\Users\HD\AppData\Local\Temp\7zS1C4A\hppiw.exe FirewallRules: [{52016BED-F6A4-41B3-95CA-584C7283179E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{AAB9FA19-584B-4F0B-8735-EF0AEB9E1F44}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{4E4AF0F6-053B-4DD9-93C5-7D0D0F3AE78F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe FirewallRules: [{EEB9B7F5-6846-4C7A-90A7-9AB9DE297967}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe FirewallRules: [{E56361B4-BAAA-4E0C-BA78-AFA0C8BF9EEC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{927ED191-A1BA-457A-B81F-705E050F5838}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{180B1B1C-AB27-4A38-8B56-03D3D0E382B3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{8034EEB2-9EB6-4EBF-8C7D-4E0B10FFEC62}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{F1AF2D08-4189-4B23-8505-2B5DE74106D5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe FirewallRules: [{C7F537BF-1F48-408E-9CF1-D4CD99A069F9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{FED2820C-3BE5-459D-A972-BC85558880B8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe FirewallRules: [{F52DEE61-44B9-4B1F-A796-D20781B0D1AF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{066F02D9-D367-4A94-B688-894246EDF8D3}] => (Allow) C:\Program Files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe FirewallRules: [{3ECFFB87-C2EB-4FBF-9933-8BA8C6AB5099}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqsudi.exe FirewallRules: [{26FD7136-A615-42FE-B0B2-798D0F34A2CA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpsapp.exe FirewallRules: [{D9A59CC1-9C03-47AC-9616-BCC47DD0B52D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe FirewallRules: [{C1198291-7293-4D82-AE9C-45AA8887275C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe FirewallRules: [{4B5ACC21-9E60-4F9C-9186-D943F9A347BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe FirewallRules: [{CA61B0C9-BF1A-43B4-8974-01D52A4138F9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{EB87E9D5-47D3-4AA7-B1FE-4A7C6B815EDC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{1469B0AA-E6B7-4D4D-ACAD-8FEC8B737116}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{4E67A9F6-EF4C-4AC7-84AA-3141A7F96137}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{CEEFA4F0-41B8-40EA-A083-65E1FFE58157}] => (Allow) C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\dtUser.exe FirewallRules: [{4B3E233F-818A-4EED-B9CF-8CE46094EFA6}] => (Allow) C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\dtUser.exe FirewallRules: [{D38A1C7A-DDE5-40FB-919E-900038CAC138}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe FirewallRules: [{46926604-3383-40BA-82EA-276FCD7B9B70}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe FirewallRules: [{C2E24CF7-4579-4C68-A355-394A9EA59082}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe FirewallRules: [{B5174953-5218-4DFA-A783-0C641FFD738D}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe FirewallRules: [{DD230501-6B1B-498A-AB59-7BB4CC4E8312}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe FirewallRules: [{0B5DCFA4-D24A-4828-9A2B-B2D6DC5D4100}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe FirewallRules: [{546C7B2E-5DA5-480E-AB9D-3F2179E3C302}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe FirewallRules: [{EE5AD014-01F0-443E-B773-497948BEC93B}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe FirewallRules: [{96BBB5B0-633F-4960-B31D-47D31FDBA3D0}] => (Allow) C:\Windows\explorer.exe FirewallRules: [{268C26D6-3337-4BA3-AC87-F7899D55FB9B}] => (Allow) C:\Windows\explorer.exe FirewallRules: [{600E0492-257C-4875-B9F3-149BCA223887}] => (Allow) C:\Windows\SysWOW64\explorer.exe FirewallRules: [{CCA6D64B-6399-4138-A5D1-902F743997BE}] => (Allow) C:\Windows\SysWOW64\explorer.exe FirewallRules: [TCP Query User{63A4573B-7E0D-45B5-A8CD-F7F1B4B13E92}C:\windows\syswow64\explorer.exe] => (Block) C:\windows\syswow64\explorer.exe FirewallRules: [uDP Query User{4CA47036-11E7-4A08-A894-E2541658573A}C:\windows\syswow64\explorer.exe] => (Block) C:\windows\syswow64\explorer.exe FirewallRules: [{29BFDFC6-FEDE-4B24-8678-B00039405859}] => (Allow) C:\Users\HD\AppData\Local\Temp\nsq33FC.tmp\CnetInstaller-10794603.exe FirewallRules: [{CD8B1EF3-2138-4A91-857F-67E5F0EEE35D}] => (Allow) C:\Users\HD\AppData\Local\Temp\nsq33FC.tmp\CnetInstaller-10794603.exe FirewallRules: [{D328FEEC-52BB-4E78-8D42-8BD8324F0CB2}] => (Allow) C:\Program Files (x86)\AVG\AVG2012\avgmfapx.exe FirewallRules: [{654AB552-EE35-419A-83E0-87B616873C4A}] => (Allow) C:\Program Files (x86)\AVG\AVG2012\avgmfapx.exe FirewallRules: [{6FF6B03A-3CE4-4BF9-B523-C483A2DC33C9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{9358448F-FB64-48E6-896F-AD5598443583}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{6102061C-C447-4DF8-8C5E-236518868E9B}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{46C04DCD-1DFB-44AE-A519-0AE5A20F7DB0}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe FirewallRules: [{E4569A14-5472-47B4-AC3F-B0626C06F0A6}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe FirewallRules: [{D6CFD0D5-016F-4D9A-BC18-ED9C2C3B7DB9}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{581C1F6F-E16C-4F52-87BE-82DCF4C44ECE}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{3330E8AF-D338-493C-B04F-7AD46A1C6F76}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{5FDAA864-CC72-48FA-99B7-586CED68B25B}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{7148B359-5161-4523-A082-036DF4635CBC}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{1513D57E-996D-41B8-8FF0-BA4E8C7D687B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{53F80699-9222-46EE-8355-093EECC8AAC3}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{96AF39D9-7F4F-4FC8-8E8A-B5B0C4AE8A63}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{F57E01C0-044D-4615-A81B-D64BBD5A1C2E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{71243A21-E08F-4C4B-880E-CA3CBE4180E2}] => (Allow) C:\Program Files\iTunes\iTunes.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/02/2015 10:06:15 AM) (Source: MsiInstaller) (EventID: 10997) (User: NT AUTHORITY) Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG -- Error 997. Overlapped I/O operation is in progress. (NULL)(NULL)(NULL)(NULL)(NULL) Error: (12/02/2015 10:03:14 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/01/2015 07:46:47 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (12/01/2015 03:46:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: CDVIEWER.EXE, version: 1.2.0.0, time stamp: 0x39927608 Faulting module name: CDVIEWER.EXE, version: 1.2.0.0, time stamp: 0x39927608 Exception code: 0xc0000094 Fault offset: 0x00005b75 Faulting process id: 0x221c Faulting application start time: 0xCDVIEWER.EXE0 Faulting application path: CDVIEWER.EXE1 Faulting module path: CDVIEWER.EXE2 Report Id: CDVIEWER.EXE3 Error: (12/01/2015 03:41:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: CDVIEWER.EXE, version: 1.2.0.0, time stamp: 0x39927608 Faulting module name: CDVIEWER.EXE, version: 1.2.0.0, time stamp: 0x39927608 Exception code: 0xc0000094 Fault offset: 0x00005b75 Faulting process id: 0x1224 Faulting application start time: 0xCDVIEWER.EXE0 Faulting application path: CDVIEWER.EXE1 Faulting module path: CDVIEWER.EXE2 Report Id: CDVIEWER.EXE3 Error: (12/01/2015 07:13:06 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7644 Error: (12/01/2015 07:13:06 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7644 Error: (12/01/2015 07:13:06 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (12/01/2015 07:13:05 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 6630 Error: (12/01/2015 07:13:05 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 6630 System errors: ============= Error: (12/02/2015 10:04:42 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The HP Network Devices Support service terminated with the following error: %%126 Error: (12/02/2015 00:35:50 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the GenieTimelineService service. Error: (12/02/2015 00:34:59 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the GenieTimelineService service. Error: (12/02/2015 00:34:29 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the avgsvc service. Error: (12/02/2015 00:34:17 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (12/02/2015 00:34:04 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {078AEF33-C48A-49F7-AFF3-A0EE810BFE7C} Error: (11/28/2015 10:08:00 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The HP Network Devices Support service terminated with the following error: %%126 Error: (11/28/2015 10:02:15 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error: %%1056 Error: (11/28/2015 10:01:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The AVGIDSAgent service terminated unexpectedly. It has done this 1 time(s). Error: (11/28/2015 10:01:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The WtuSystemSupport service terminated unexpectedly. It has done this 1 time(s). ==================== Memory info =========================== Processor: Intel® Core i5-2430M CPU @ 2.40GHz Percentage of memory in use: 44% Total physical RAM: 6091.86 MB Available physical RAM: 3384.14 MB Total Virtual: 12181.93 MB Available Virtual: 9399.32 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:679.24 GB) (Free:598.89 GB) NTFS ==>[system with boot components (obtained from drive)] Drive d: (Recovery) (Fixed) (Total:15.24 GB) (Free:1.65 GB) NTFS ==>[system with boot components (obtained from drive)] Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:3.95 GB) FAT32 Drive g: () (Removable) (Total:29.87 GB) (Free:28.42 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: EBFB7460) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=679.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=15.2 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=4 GB) - (Type=0C) ======================================================== Disk: 1 (Size: 29.9 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================
  6. can result of Farbar Recovery Scan Tool (FRST) (x64) Version:01-12-2015 Ran by HD (administrator) on HD-HP (02-12-2015 10:08:18) Running from C:\Users\HD\Desktop Loaded Profiles: HD (Available Profiles: HD) Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States) Internet Explorer Version 10 (Default browser: IE) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Trend Micro Inc.) C:\Program Files (x86)\AntiRansomware2.0\ARService.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Genie9) C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (LaCie) C:\Program Files (x86)\LaCie\LaCie Desktop Manager\LaCie Desktop Manager.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe (LaCie) C:\Program Files (x86)\LaCie\LaCie Desktop Manager\LaCieDesktopManagerDaemon.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Genie9) C:\Program Files\Genie9\Genie Timeline\GenieTimeLineAgent.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe (Easybits) C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [sysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1424896 2012-01-11] (IDT, Inc.) HKLM\...\Run: [synTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [setDefault] => C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [44880 2011-12-19] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-10-16] (Apple Inc.) HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [WinampAgent] => "C:\Program Files (x86)\Winamp\winampa.exe" HKLM-x32\...\Run: [iAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [284440 2011-04-30] (Intel Corporation) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688 2015-10-13] (Apple Inc.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1263952 2013-02-13] () HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3498728 2015-09-26] (Adobe Systems Inc.) HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1136552 2015-11-12] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3826600 2015-10-30] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1444880 2015-11-25] (Easybits) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Run: [AVG-Secure-Search-Update_1113a] => C:\Users\HD\AppData\Roaming\AVG 1113a Campaign\AVG-Secure-Search-Update-1113a.exe /PROMPT /mid=44c53dddba0b47d08ca9c15632504498-8e3f2d5a62688078dbb924d632c9ff21b4437419 /CMPID=1113a HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.) HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Run: [ifsoft] => regsvr32.exe C:\Users\HD\AppData\Local\Ifsoft\CNBJOP6N.DLL <===== ATTENTION HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Run: [Odics] => C:\Windows\SysWOW64\regsvr32.exe C:\Users\HD\AppData\Local\YhPack\mdnsNSP.dll HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Run: [LaCie Desktop Manager 2 Startup] => C:\Program Files (x86)\LaCie\LaCie Desktop Manager\LaCie Desktop Manager.exe [869232 2014-09-22] (LaCie) HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\MountPoints2: G - G:\laucher.exe HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\MountPoints2: {02e4023e-371a-11e1-84eb-101f74b4ad6b} - G:\AutoRun.exe HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\MountPoints2: {5ae6f57c-d377-11e1-ab15-101f74b4ad6b} - G:\Startme.exe HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\MountPoints2: {61ce1fd0-acc3-11e1-858c-101f74b4ad6b} - G:\laucher.exe HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\MountPoints2: {7553b7b3-354d-11e1-a314-101f74b4ad6b} - H:\SETUP.EXE HKU\S-1-5-21-790991912-2550835033-3860445865-1000\...\MountPoints2: {bc7cf4ad-ad9a-11e1-adc2-101f74b4ad6b} - G:\laucher.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{77AE7A19-732E-4EA7-8965-47C741A5A197}: [NameServer] 8.8.8.8,8.8.8.8 Tcpip\..\Interfaces\{8E675C0D-6714-481B-986A-5E644D6737AF}: [NameServer] 8.8.8.8,8.8.8.8 Tcpip\..\Interfaces\{8E675C0D-6714-481B-986A-5E644D6737AF}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{9B4AD3B2-583E-49AE-A01A-EF3519946C33}: [NameServer] 8.8.8.8,8.8.8.8 Tcpip\..\Interfaces\{9FEAFB74-FDC6-454E-A2A8-7DBB7EB65219}: [NameServer] 8.8.8.8,8.8.8.8 Tcpip\..\Interfaces\{D8E81319-F7C4-42DE-92B6-8428AEF256B9}: [NameServer] 8.8.8.8,8.8.8.8 Tcpip\..\Interfaces\{D8E81319-F7C4-42DE-92B6-8428AEF256B9}: [DhcpNameServer] 194.168.4.100 194.168.8.100 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://uk.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/710-111095-2958-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21] (Adobe Systems Incorporated) Toolbar: HKU\S-1-5-21-790991912-2550835033-3860445865-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKU\S-1-5-21-790991912-2550835033-3860445865-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKU\S-1-5-21-790991912-2550835033-3860445865-1000 -> No Name - {DB87BFA2-A2E3-451E-8E5A-C89982D87CBF} - No File Toolbar: HKU\S-1-5-21-790991912-2550835033-3860445865-1000 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated) DPF: HKLM-x32 {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} hxxp://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1327170353107 Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-04-08] (Skype Technologies) FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-11] () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.) FF Plugin: @microsoft.com/GENUINE -> disabled [No File] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [No File] FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-08] () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll [2013-02-07] (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.) FF Plugin-x32: @java.com/DTPlugin -> C:\Program Files (x86)\Java\jre6\bin\dtplugin\npDeployJava1.dll [No File] FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll [No File] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-14] (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] () FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2015-09-26] (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-26] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems) FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 FF Extension: DivX Plus Web Player HTML5 &video& - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013-02-22] [not signed] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-10-15] [not signed] Chrome: ======= CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\ppGoogleNaClPluginChrome.dll => No File CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\pdf.dll => No File CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\gcswf32.dll => No File CHR Plugin: (Simple Pass 2011) - C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdhihajbmafmgilcciomnamcjfkdhikl\1.0_0\npwebsitelogon.dll => No File CHR Plugin: (Norton Confidential) - C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.0.140_0\npcoplgn.dll => No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll => No File CHR Plugin: (Java Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll => No File CHR Plugin: (WildTangent Games App Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll => No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll => No File CHR Profile: C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Adobe Acrobat) - C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-11-09] CHR Extension: (Chrome Web Store Payments) - C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-14] CHR Extension: (DivX Plus Web Player HTML5 <video>) - C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2015-02-23] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2015-09-26] CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2013-02-07] ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiRansomwareService; C:\Program Files (x86)\AntiRansomware2.0\arservice.exe [100864 2015-07-30] (Trend Micro Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.) S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [595376 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3815648 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-11-12] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed] R2 GenieTimelineService; C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe [662104 2012-09-16] (Genie9) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company) R2 LaCieDesktopManagerDaemon; C:\Program Files (x86)\LaCie\LaCie Desktop Manager\LaCieDesktopManagerDaemon.exe [1147248 2014-09-22] (LaCie) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1205136 2015-11-13] () S4 hpqcxs08; [X] S4 hpqddsvc; [X] S2 HPSLPSVC; C:\Users\HD\AppData\Local\Temp\7zS206C\hpslpsvc64.dll [X] S4 jswpsapi; [X] S4 Net Driver HPZ12; [X] S4 PassThru Service; [X] S4 Pml Driver HPZ12; [X] S4 WDCS_WNDA3200; [X] ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R1 A2DDA; C:\EEK\bin\a2ddax64.sys [26176 2015-03-30] (Emsisoft GmbH) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [197040 2015-08-10] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-10-19] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255408 2015-10-21] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [302000 2015-10-08] (AVG Technologies CZ, s.r.o.) S3 cleanhlp; C:\EEK\bin\cleanhlp64.sys [57024 2015-03-30] (Emsisoft GmbH) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-02] (HTC, Corporation) [File not signed] R1 KbHook; C:\Program Files (x86)\AntiRansomware2.0\hookdriver64.sys [18720 2013-06-08] (<company name here>) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited) S4 USBAAPL64; [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-11-29 00:18 - 2015-11-29 00:18 - 00616845 _____ C:\Users\HD\Downloads\420553_DPoWJobDescription.pdf 2015-11-29 00:16 - 2015-11-29 00:16 - 00213110 _____ C:\Users\HD\Downloads\Job_Description_Clinical_Fellow_in_Anaesthesia_-_November_2015.pdf 2015-11-28 22:42 - 2015-11-28 22:42 - 00011888 _____ C:\Users\HD\Downloads\Monday teaching timetable June-Sept 2015.xlsx 2015-11-28 22:01 - 2015-11-28 22:03 - 00102026 _____ C:\Users\HD\Desktop\Fixlog.txt 2015-11-28 22:00 - 2015-12-02 10:05 - 00000000 ____D C:\Users\HD\Desktop\FRST-OlderVersion 2015-11-28 21:59 - 2015-12-02 10:05 - 02350080 _____ (Farbar) C:\Users\HD\Desktop\FRST64.exe 2015-11-28 21:39 - 2015-11-28 21:39 - 00045313 _____ C:\Users\HD\Downloads\fixlist.txt 2015-11-28 21:35 - 2015-11-28 21:45 - 00190222 _____ C:\Users\HD\Downloads\JavaRa-2.6.1 (2).zip 2015-11-26 12:04 - 2015-11-26 12:04 - 00293564 _____ C:\Users\HD\Downloads\9088-2005-6228-4144-2904.pdf 2015-11-26 10:16 - 2015-11-26 10:16 - 00852720 _____ C:\Users\HD\Downloads\SecurityCheck (1).exe 2015-11-25 17:17 - 2015-11-25 17:17 - 00242813 _____ C:\Users\HD\Downloads\418430_349_CSS_0389_RotationalClinicalFellowJobPackJuly142.pdf 2015-11-25 17:13 - 2015-11-25 17:13 - 00030730 _____ C:\Users\HD\Downloads\422031_JCFPersonSpecification2015.pdf 2015-11-25 14:12 - 2015-11-25 14:12 - 00452424 _____ (Bleeping Computer, LLC) C:\Users\HD\Downloads\ListCWall.exe 2015-11-25 13:42 - 2015-11-25 13:47 - 00000000 ____D C:\ProgramData\Easybits Magic Desktop for HP 2015-11-24 22:45 - 2015-11-24 22:45 - 00204496 _____ (Malwarebytes) C:\Users\HD\Downloads\startuplite-setup-1.07.exe 2015-11-24 22:02 - 2015-11-24 22:02 - 00132951 _____ C:\Users\HD\Downloads\Junior Drs Industrial Action Letter - December 2015.pdf 2015-11-24 18:46 - 2015-11-24 18:46 - 00371953 _____ C:\Users\HD\Downloads\2015-PS-Neurology-ST3-2-0 (1).pdf 2015-11-24 18:44 - 2015-11-24 18:44 - 00371953 _____ C:\Users\HD\Downloads\2015-PS-Neurology-ST3-2-0.pdf 2015-11-24 18:04 - 2015-11-24 18:04 - 00001753 _____ C:\Users\Public\Desktop\iTunes.lnk 2015-11-24 18:04 - 2015-11-24 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-11-24 18:03 - 2015-11-24 18:03 - 00000000 ____D C:\Program Files\iPod 2015-11-24 18:02 - 2015-11-24 18:04 - 00000000 ____D C:\Program Files\iTunes 2015-11-24 17:58 - 2015-11-24 17:58 - 00000000 ____D C:\Program Files\Bonjour 2015-11-24 17:58 - 2015-11-24 17:58 - 00000000 ____D C:\Program Files (x86)\Bonjour 2015-11-24 17:57 - 2015-11-24 17:57 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2015-11-24 17:57 - 2015-11-24 17:57 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2015-11-23 23:02 - 2015-11-23 23:02 - 01032704 _____ C:\Users\HD\Downloads\ABGs.ppt 2015-11-21 22:24 - 2015-11-21 22:24 - 00001072 _____ C:\Users\HD\Desktop\latest malware log 21.11.txt 2015-11-21 21:33 - 2015-11-21 21:34 - 01898368 _____ (Kaspersky Lab) C:\Users\HD\Downloads\kav16.0.0.614en_8627.exe 2015-11-21 20:58 - 2015-11-21 21:03 - 00190673 _____ C:\Users\HD\Downloads\JavaRa-2.6.1 (1).zip 2015-11-21 20:57 - 2015-11-21 20:57 - 00184620 _____ C:\Users\HD\Downloads\JavaRa-2.6.1.zip 2015-11-20 23:15 - 2015-11-20 23:15 - 00018432 ___SH C:\Users\HD\AppData\Thumbs.db 2015-11-20 22:31 - 2015-11-20 22:31 - 00000896 _____ C:\Users\HD\Desktop\checkup.txt 2015-11-20 22:22 - 2015-11-20 22:22 - 00852720 _____ C:\Users\HD\Downloads\SecurityCheck.exe 2015-11-20 22:16 - 2015-11-20 22:16 - 00448512 _____ (OldTimer Tools) C:\Users\HD\Downloads\TFC.exe 2015-11-20 22:07 - 2015-11-20 22:07 - 00659968 _____ C:\Users\HD\Downloads\MicrosoftFixit50195.msi 2015-11-20 22:06 - 2015-11-20 22:06 - 00019117 _____ C:\Users\HD\Documents\bookmarks_11_20_15 chrome.html 2015-11-20 20:34 - 2015-11-22 03:33 - 00766820 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2015-11-19 09:24 - 2015-11-19 09:24 - 02870984 _____ (ESET) C:\Users\HD\Downloads\esetsmartinstaller_enu.exe 2015-11-18 17:40 - 2015-11-25 13:53 - 00000000 ____D C:\Users\HD\Downloads\FRST-OlderVersion 2015-11-18 17:31 - 2015-11-18 17:31 - 00100026 _____ C:\Users\HD\Desktop\eset scanner.txt 2015-11-17 17:47 - 2015-11-17 17:47 - 00356996 _____ C:\Users\HD\Downloads\Person_Specification_CT2_Anaesthetics (1).pdf 2015-11-17 17:42 - 2015-11-17 17:42 - 00356996 _____ C:\Users\HD\Downloads\Person_Specification_CT2_Anaesthetics.pdf 2015-11-17 15:54 - 2015-11-17 15:54 - 00000000 ____D C:\Program Files (x86)\ESET 2015-11-17 15:52 - 2015-11-17 15:52 - 00001065 _____ C:\Users\HD\Desktop\2nd malware scan.txt 2015-11-17 14:32 - 2015-11-17 14:32 - 00002836 _____ C:\Users\HD\Desktop\AdwCleaner[s2].txt 2015-11-17 14:26 - 2015-11-17 14:26 - 00009746 _____ C:\Users\HD\Desktop\JRT.txt 2015-11-13 19:45 - 2015-11-13 20:37 - 00021504 _____ C:\Users\HD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-11-13 16:05 - 2015-11-13 16:05 - 00000000 ____D C:\Users\Default\AppData\Roaming\Genie9 2015-11-13 16:05 - 2015-11-13 16:05 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Genie9 2015-11-13 15:56 - 2015-11-13 15:56 - 00001059 _____ C:\Users\HD\Documents\malware scan log.txt 2015-11-13 13:07 - 2015-11-13 13:07 - 00000000 ____D C:\Users\HD\AppData\Local\AVG Web TuneUp 2015-11-13 13:07 - 2015-11-13 13:07 - 00000000 ____D C:\ProgramData\AVG Web TuneUp 2015-11-13 13:07 - 2015-11-13 13:07 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp 2015-11-13 13:03 - 2015-12-02 10:05 - 00000000 ____D C:\Users\HD\AppData\Local\Avg 2015-11-13 13:03 - 2015-11-13 13:03 - 00000000 ____D C:\Users\HD\AppData\Roaming\AVG 2015-11-13 12:53 - 2015-11-18 17:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen 2015-11-13 12:49 - 2015-11-13 12:56 - 00000000 ____D C:\ProgramData\Avg 2015-11-12 20:42 - 2015-11-03 17:55 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-11-11 15:02 - 2015-10-13 04:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-11-11 15:01 - 2015-10-20 18:42 - 03168768 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-11-11 15:01 - 2015-10-20 18:42 - 02608128 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-11-11 15:01 - 2015-10-20 18:42 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-11-11 15:01 - 2015-10-20 18:42 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-11-11 15:01 - 2015-10-20 18:42 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-11-11 15:01 - 2015-10-20 18:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-11-11 15:01 - 2015-10-20 18:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-11-11 15:01 - 2015-10-20 18:41 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-11-11 15:01 - 2015-10-20 18:41 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-11-11 15:01 - 2015-10-20 18:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-11-11 15:01 - 2015-10-20 18:41 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-11-11 15:01 - 2015-10-20 17:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-11-11 15:01 - 2015-10-20 17:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-11-11 15:01 - 2015-10-20 17:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-11-11 15:01 - 2015-10-20 17:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-11-11 15:01 - 2015-10-20 17:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-11-11 15:01 - 2015-10-20 15:01 - 01763328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-11-11 15:01 - 2015-10-20 15:01 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 14292992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 13775360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 02866176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 02056704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-11-11 15:01 - 2015-10-20 15:00 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00715776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-11-11 15:01 - 2015-10-20 15:00 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-11-11 15:01 - 2015-10-20 13:54 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-11-11 15:01 - 2015-10-20 13:54 - 01409024 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-11-11 15:01 - 2015-10-20 13:54 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-11-11 15:01 - 2015-10-20 13:54 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-11-11 15:01 - 2015-10-20 13:53 - 19283456 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 15416320 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 03960832 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 02657280 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-11-11 15:01 - 2015-10-20 13:53 - 00857600 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-11-11 15:01 - 2015-10-20 13:53 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-11-11 15:01 - 2015-10-15 19:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-11-11 15:01 - 2015-10-15 19:04 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-11-11 15:01 - 2015-10-15 18:39 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-11-11 15:01 - 2015-10-15 18:36 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-11-11 15:01 - 2015-10-15 18:11 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2015-11-11 15:01 - 2015-10-15 18:11 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2015-11-11 14:59 - 2015-10-20 01:12 - 05570496 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-11-11 14:59 - 2015-10-20 01:12 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-11-11 14:59 - 2015-10-20 01:12 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-11-11 14:59 - 2015-10-20 01:09 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-11-11 14:59 - 2015-10-20 01:06 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-11-11 14:59 - 2015-10-20 01:06 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-11-11 14:59 - 2015-10-20 01:06 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-11-11 14:59 - 2015-10-20 01:06 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-11-11 14:59 - 2015-10-20 01:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-11-11 14:59 - 2015-10-20 01:05 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-11-11 14:59 - 2015-10-20 01:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-11-11 14:59 - 2015-10-20 01:04 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-11-11 14:59 - 2015-10-20 01:04 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-11-11 14:59 - 2015-10-20 01:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-11-11 14:59 - 2015-10-20 01:00 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-11-11 14:59 - 2015-10-20 00:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-11-11 14:59 - 2015-10-20 00:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-11-11 14:59 - 2015-10-20 00:48 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-11-11 14:59 - 2015-10-20 00:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-11-11 14:59 - 2015-10-20 00:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-11-11 14:59 - 2015-10-20 00:44 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-11-11 14:59 - 2015-10-20 00:44 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-11-11 14:59 - 2015-10-20 00:44 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-11-11 14:59 - 2015-10-20 00:44 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-11-11 14:59 - 2015-10-20 00:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-11-11 14:59 - 2015-10-20 00:44 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-11-11 14:59 - 2015-10-20 00:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-11-11 14:59 - 2015-10-20 00:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-11-11 14:59 - 2015-10-20 00:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-11-11 14:59 - 2015-10-19 23:41 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-11-11 14:59 - 2015-10-19 23:40 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-11-11 14:59 - 2015-10-19 23:40 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-11-11 14:59 - 2015-10-19 23:29 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-11-11 14:59 - 2015-10-19 23:29 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-11-11 14:59 - 2015-10-19 23:27 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-11-11 14:59 - 2015-10-19 23:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-11-11 14:59 - 2015-10-19 23:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-11-11 14:59 - 2015-10-19 23:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-11-11 14:59 - 2015-09-23 13:15 - 00460776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-11-11 14:59 - 2015-09-23 13:15 - 00299632 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-11-11 14:59 - 2015-09-23 13:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-11-11 14:58 - 2015-10-13 16:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-11-11 14:58 - 2015-10-13 16:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2015-11-11 14:57 - 2015-10-01 18:00 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2015-11-11 14:57 - 2015-10-01 17:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2015-11-11 14:14 - 2015-11-11 14:14 - 00002211 _____ C:\Users\Public\Desktop\LaCie Desktop Manager.lnk 2015-11-11 14:14 - 2015-11-11 14:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LaCie 2015-11-11 14:14 - 2015-11-11 14:14 - 00000000 ____D C:\ProgramData\LaCie 2015-11-11 14:14 - 2015-11-11 14:14 - 00000000 ____D C:\Program Files (x86)\LaCie 2015-11-11 14:13 - 2015-11-11 14:13 - 00000000 ___RD C:\Users\HD\Desktop\No-Backup Zone 2015-11-11 14:13 - 2015-11-11 14:13 - 00000000 ____D C:\Users\HD\AppData\Roaming\Genie9 2015-11-11 14:12 - 2015-11-11 14:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genie9 2015-11-11 14:11 - 2015-11-11 14:11 - 00000000 ____D C:\Program Files\Genie9 2015-11-11 14:09 - 2015-11-11 14:09 - 00003086 _____ C:\Windows\System32\Tasks\{37E200F2-F0DA-480E-8C5D-F90178EBEC8C} 2015-11-10 02:56 - 2015-12-02 10:09 - 00022075 _____ C:\Users\HD\Desktop\FRST.txt 2015-11-10 02:56 - 2015-11-10 02:56 - 00045456 _____ C:\Users\HD\Desktop\Addition.txt 2015-11-10 02:35 - 2015-11-26 11:45 - 00047823 _____ C:\Users\HD\Downloads\Addition.txt 2015-11-10 02:33 - 2015-11-26 11:45 - 00062829 _____ C:\Users\HD\Downloads\FRST.txt 2015-11-10 02:30 - 2015-12-02 10:08 - 00000000 ____D C:\FRST 2015-11-10 02:30 - 2015-11-25 13:53 - 02348544 _____ (Farbar) C:\Users\HD\Downloads\FRST64.exe 2015-11-10 01:49 - 2015-11-10 01:51 - 00000000 ____D C:\Users\HD\AppData\Roaming\Media Player Classic 2015-11-10 01:41 - 2015-11-10 01:41 - 00000000 ____D C:\Users\HD\AppData\Roaming\com.adobe.formscentral.FormsCentralForAcrobat 2015-11-10 01:22 - 2015-11-10 01:22 - 00026900 _____ C:\Users\HD\AppData\LocalLow\dt.dat 2015-11-10 00:08 - 2015-11-10 00:08 - 00000412 _____ C:\Windows\DCEBOOT.RST 2015-11-10 00:06 - 2015-11-10 00:06 - 00231960 _____ C:\Windows\RegBootClean64.exe 2015-11-10 00:06 - 2015-11-10 00:06 - 00021528 _____ C:\Windows\DCEBoot64.exe 2015-11-10 00:06 - 2015-11-10 00:06 - 00009392 _____ C:\Windows\RegBootClean64.CFG 2015-11-10 00:04 - 2015-11-10 00:08 - 00000000 ____D C:\ProgramData\AntiRansomware 2015-11-10 00:04 - 2015-11-10 00:06 - 00000000 ____D C:\Program Files (x86)\AntiRansomware2.0 2015-11-09 22:17 - 2015-11-26 10:08 - 02581978 _____ C:\Users\HD\Desktop\ListCWall.txt 2015-11-09 21:51 - 2015-11-13 13:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2015-11-09 21:51 - 2015-11-13 13:01 - 00000000 ____D C:\Program Files\Common Files\AV 2015-11-09 21:45 - 2015-11-13 13:02 - 00000000 ___HD C:\$AVG 2015-11-09 21:43 - 2015-11-13 16:06 - 00000000 ____D C:\Program Files (x86)\AVG 2015-11-09 21:40 - 2015-12-02 10:05 - 00000000 ____D C:\ProgramData\MFAData ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-12-02 10:06 - 2011-12-30 11:43 - 00003902 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{61AB342F-D81B-48E5-8BC6-556E460029F9} 2015-12-02 10:01 - 2012-02-07 12:53 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-02 10:01 - 2009-07-14 05:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-12-02 00:29 - 2012-02-07 12:53 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-01 23:36 - 2012-06-03 00:46 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-12-01 23:16 - 2012-08-06 09:25 - 00000000 ____D C:\Users\HD\AppData\Roaming\Skype 2015-12-01 16:42 - 2009-07-14 04:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-12-01 16:42 - 2009-07-14 04:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-12-01 15:46 - 2012-01-18 18:28 - 00000000 ____D C:\Users\HD\AppData\Local\CrashDumps 2015-12-01 15:42 - 2011-12-30 11:39 - 00000000 ____D C:\Users\HD\AppData\Local\VirtualStore 2015-11-28 22:01 - 2015-02-15 00:38 - 00000000 ____D C:\Users\HD\Documents\Endocrine CT2 2015-11-28 22:01 - 2015-01-24 11:22 - 00000000 ____D C:\Users\HD\AppData\Local\YhPack 2015-11-28 22:01 - 2015-01-24 11:21 - 00000000 ____D C:\Users\HD\AppData\Local\Ifsoft 2015-11-28 22:01 - 2014-07-21 13:59 - 00000000 ____D C:\Users\HD\Documents\COPD audit 2015-11-28 22:01 - 2014-03-16 23:53 - 00000000 ____D C:\Users\HD\Documents\Eportfolio CT1 2015-11-28 22:01 - 2013-03-08 09:44 - 00000000 ____D C:\Users\HD\AppData\Roaming\Guitar Pro 6 2015-11-28 22:01 - 2013-02-15 04:24 - 00000000 ____D C:\Users\HD\Documents\Certificates of learning 2015-11-28 22:01 - 2012-06-04 19:32 - 00000000 ____D C:\Users\HD\AppData\Roaming\Winamp 2015-11-28 22:01 - 2012-06-03 00:43 - 00000000 ____D C:\Users\HD\AppData\Roaming\TuneUpMedia 2015-11-28 22:01 - 2012-06-03 00:43 - 00000000 ____D C:\ProgramData\TuneUpMedia 2015-11-28 22:01 - 2011-12-30 11:39 - 00000000 ____D C:\Users\HD 2015-11-26 11:44 - 2009-07-14 03:20 - 00000000 ____D C:\Windows 2015-11-26 10:43 - 2015-03-30 21:25 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-11-26 10:37 - 2009-07-14 05:13 - 00782510 _____ C:\Windows\system32\PerfStringBackup.INI 2015-11-26 10:37 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\inf 2015-11-25 14:20 - 2012-03-25 01:45 - 00000000 ____D C:\Users\HD\Documents\Hannah 2015-11-24 23:10 - 2013-08-22 09:33 - 00000000 ____D C:\Windows\Minidump 2015-11-24 23:02 - 2011-07-16 06:12 - 00000000 ____D C:\Program Files (x86)\Windows Live 2015-11-24 23:01 - 2011-07-16 06:12 - 00000000 ____D C:\Program Files\Windows Live 2015-11-24 22:57 - 2011-07-16 06:10 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection 2015-11-24 22:56 - 2011-07-16 06:02 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2015-11-24 22:54 - 2013-08-10 14:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2015-11-24 22:51 - 2011-07-16 06:07 - 00000000 ____D C:\Program Files (x86)\HP Games 2015-11-24 22:51 - 2009-07-14 05:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-11-24 18:03 - 2012-05-07 10:49 - 00000000 ____D C:\Program Files (x86)\iTunes 2015-11-24 18:02 - 2012-05-07 10:48 - 00000000 ____D C:\Program Files\Common Files\Apple 2015-11-24 17:57 - 2012-05-07 10:48 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2015-11-21 20:59 - 2012-09-13 05:48 - 00000000 ____D C:\Program Files (x86)\Java 2015-11-21 20:46 - 2011-07-16 06:18 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard 2015-11-21 20:46 - 2011-07-16 06:11 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2015-11-21 20:40 - 2015-06-11 18:48 - 00415472 _____ C:\Windows\system32\FNTCACHE.DAT 2015-11-21 20:39 - 2012-06-25 20:36 - 00000320 _____ C:\Windows\Tasks\HPCeeScheduleForHD.job 2015-11-20 20:56 - 2011-07-16 06:18 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-11-20 20:56 - 2011-07-16 06:09 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2015-11-20 20:56 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\Help 2015-11-20 20:52 - 2011-12-30 11:41 - 00111136 _____ C:\Users\HD\AppData\Local\GDIPFONTCACHEV1.DAT 2015-11-20 20:46 - 2011-02-10 19:23 - 00000000 ____D C:\SWSetup 2015-11-19 14:03 - 2012-06-25 20:36 - 00003168 _____ C:\Windows\System32\Tasks\HPCeeScheduleForHD 2015-11-19 11:35 - 2014-02-27 16:55 - 00000000 ____D C:\Users\HD\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant 2015-11-19 11:35 - 2013-08-10 14:56 - 00000000 ____D C:\Users\HD\AppData\Roaming\HP 2015-11-19 11:35 - 2013-05-25 13:13 - 00000000 ____D C:\Users\HD\AppData\Roaming\Malwarebytes 2015-11-19 11:35 - 2013-01-08 01:14 - 00000000 ____D C:\Users\HD\AppData\Roaming\Teleca 2015-11-19 11:35 - 2012-05-07 10:49 - 00000000 ____D C:\Users\HD\AppData\Roaming\Apple Computer 2015-11-19 11:35 - 2012-01-04 21:25 - 00000000 ____D C:\Users\HD\AppData\Roaming\Birdstep Technology 2015-11-19 11:34 - 2012-02-25 14:14 - 00000000 ____D C:\Users\HD\AppData\LocalLow\Sun 2015-11-19 11:34 - 2012-01-11 18:44 - 00000000 ____D C:\Users\HD\AppData\LocalLow\Adobe 2015-11-19 11:34 - 2012-01-02 15:31 - 00000000 ____D C:\Users\HD\AppData\Roaming\Adobe 2015-11-19 11:33 - 2014-03-07 21:03 - 00000000 ____D C:\Users\HD\AppData\Local\Skype 2015-11-19 11:33 - 2013-01-08 11:51 - 00000000 ____D C:\Users\HD\AppData\Local\Pearson VUE Common 2015-11-19 11:32 - 2013-01-08 11:51 - 00000000 ____D C:\Users\HD\AppData\Local\Pearson VUE 2015-11-19 11:31 - 2013-02-05 17:28 - 00000000 ____D C:\Users\HD\AppData\Local\Opera 2015-11-19 11:30 - 2014-09-16 18:43 - 00000000 ____D C:\Users\HD\AppData\Local\Citrix 2015-11-19 11:30 - 2012-05-07 10:49 - 00000000 ____D C:\Users\HD\AppData\Local\Apple Computer 2015-11-19 11:30 - 2012-02-07 12:53 - 00000000 ____D C:\Users\HD\AppData\Local\Google 2015-11-19 11:30 - 2012-01-11 18:44 - 00000000 ____D C:\Users\HD\AppData\Local\Adobe 2015-11-19 11:30 - 2012-01-04 21:25 - 00000000 ____D C:\ProgramData\Birdstep Technology 2015-11-17 14:33 - 2015-03-31 18:29 - 00000000 ____D C:\AdwCleaner 2015-11-17 14:23 - 2013-11-13 18:20 - 00000000 ____D C:\ProgramData\Ad-Aware Browsing Protection 2015-11-13 14:32 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\rescache 2015-11-13 13:07 - 2013-02-15 10:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-11-12 20:47 - 2013-08-17 11:52 - 00000000 ____D C:\Windows\system32\MRT 2015-11-12 20:47 - 2012-01-11 18:38 - 145617392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-11-12 20:47 - 2012-01-02 15:45 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-11-11 19:44 - 2012-02-24 21:36 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-11-11 14:37 - 2012-06-03 00:46 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-11-11 14:37 - 2012-06-03 00:46 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-11-11 14:37 - 2011-07-16 06:05 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-11-10 01:43 - 2013-02-15 10:35 - 00000000 ____D C:\Program Files (x86)\ElcomSoft 2015-11-10 01:42 - 2011-09-23 08:42 - 00000000 ____D C:\ProgramData\Temp 2015-11-10 01:17 - 2012-01-02 15:35 - 00000000 ____D C:\Users\HD\AppData\Roaming\DAEMON Tools Lite 2015-11-10 00:47 - 2013-01-08 01:12 - 00000000 ____D C:\Program Files (x86)\HTC 2015-11-10 00:47 - 2012-01-20 01:31 - 00000000 ____D C:\Users\HD\AppData\Local\Downloaded Installations 2015-11-10 00:10 - 2015-03-31 17:44 - 00454078 _____ C:\Windows\ntbtlog.txt 2015-11-10 00:06 - 2015-08-13 14:44 - 00000000 ____D C:\Program Files (x86)\QuickTime 2015-11-10 00:06 - 2012-06-04 19:32 - 00000000 ____D C:\Program Files (x86)\Winamp 2015-11-09 23:56 - 2015-03-30 21:25 - 00001102 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-11-09 23:56 - 2015-03-30 21:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-11-09 23:56 - 2015-03-30 21:25 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-11-09 23:38 - 2009-07-14 04:45 - 00000000 ____D C:\Windows\ServiceProfiles 2015-11-09 21:46 - 2012-04-11 17:22 - 00003230 _____ C:\Windows\System32\Tasks\SidebarExecute 2015-11-09 21:01 - 2012-10-13 06:31 - 00000000 ____D C:\Users\HD\Documents\Interview questions ==================== Files in the root of some directories ======= 2012-05-21 22:31 - 2012-05-21 22:31 - 0000000 _____ () C:\Users\HD\AppData\Roaming\.googlewebacchosts 2015-03-29 22:14 - 2015-03-29 22:14 - 0045306 _____ () C:\Users\HD\AppData\Roaming\HELP_DECRYPT.PNG 2015-03-29 22:14 - 2015-03-29 22:14 - 0000276 _____ () C:\Users\HD\AppData\Roaming\HELP_DECRYPT.URL 2015-08-27 15:11 - 2015-08-27 15:11 - 0000038 ___SH () C:\Users\HD\AppData\Local\69ff07055291669bb2b218.72821112 2015-11-13 19:45 - 2015-11-13 20:37 - 0021504 _____ () C:\Users\HD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-03-29 22:13 - 2015-03-29 22:13 - 0045306 _____ () C:\Users\HD\AppData\Local\HELP_DECRYPT.PNG 2015-03-29 22:13 - 2015-03-29 22:13 - 0000276 _____ () C:\Users\HD\AppData\Local\HELP_DECRYPT.URL 2015-03-29 22:12 - 2015-03-29 22:12 - 0045306 _____ () C:\ProgramData\HELP_DECRYPT.PNG 2015-03-29 22:12 - 2015-03-29 22:12 - 0000276 _____ () C:\ProgramData\HELP_DECRYPT.URL 2012-01-21 18:07 - 2015-11-24 22:54 - 0003120 _____ () C:\ProgramData\hpzinstall.log Files to move or delete: ==================== C:\Users\HD\DeletePrintJobs.cmd ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-11-30 22:12 ==================== End of FRST.txt ============================
  7. Would prefer a tool if possible. It is running much better thanks. Those DLL entries I mentioned are still popping up on start up. Any ideas for removing these?
  8. Just to say that I had previously manually deleted some of the files but could not remember which ones so that might be why some were not found.
  9. C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\DANResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\DEUResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ENGResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ENUResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ESNResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ESPResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ESTResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\FRAResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\FRCResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\GREResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\HEBResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\HINResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\HUNResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\INDResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ITAResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\JPNResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\KORResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\NLDResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\POLResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\PTBResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\PTGResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\RUSResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\SVEResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\THAResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\TRKResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\URDResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\WELResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\layout\Dsa_engResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\layout\Dsa_welResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\com\dtd\pearsonvue_com_inforequest.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_closemessage.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_inforequest.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_logerror.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_lognote.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_logwarning.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_navigate.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_showmessage.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_vtsreply.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_vtsrequest.dtd" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\loftanalysis\ui\resources\LOFTAnalysisResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\player\ui\resources\MediaPlayerResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\prevue\viewer\ui\resources\PreVUEResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\simulator\ui\resources\CandidateSimulatorResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\testdrive\parser\TestDrive.dtd" => not found. C:\Users\HD\AppData\Local\Skype\Apps\login\images\picture.jpg => moved successfully C:\Users\HD\AppData\Local\VirtualStore\sdktools-toolsonly.rar => moved successfully C:\Users\HD\AppData\Local\YhPack\CNBIC4_2.txt => moved successfully "C:\Users\HD\AppData\Local\adawarebp\data\temp.zip" => not found. C:\Users\HD\AppData\Roaming\Adobe\Adobe PDF\Distiller\Data\epilogue.ps => moved successfully C:\Users\HD\AppData\Roaming\Adobe\Adobe PDF\Distiller\Data\prologue.ps => moved successfully C:\Users\HD\AppData\Roaming\Adobe\Adobe PDF\Distiller\Startup\example.ps => moved successfully C:\Users\HD\AppData\Roaming\Adobe\Flash Player\AssetCache\N97BFN54\cacheSize.txt => moved successfully C:\Users\HD\AppData\Roaming\Apple Computer\SyncServices\Local\clientdata\928ce871e31e838b84dc3874b86b384438631594\clientname.txt => moved successfully C:\Users\HD\AppData\Roaming\Apple Computer\SyncServices\Local\clientdata\ebf0f86d30f0f15eb295a85fd1c590756e81420a\clientname.txt => moved successfully "C:\Users\HD\AppData\Roaming\Birdstep Technology\EasyConnect\BkupLogfile.txt" => not found. "C:\Users\HD\AppData\Roaming\Birdstep Technology\EasyConnect\Logfile.txt" => not found. C:\Users\HD\AppData\Roaming\Guitar Pro 6\session.txt => moved successfully C:\Users\HD\AppData\Roaming\HP\WebRegLogs\WebRegLog.txt => moved successfully C:\Users\HD\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-05-26 (01-14-53).txt => moved successfully C:\Users\HD\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-11-13 (17-42-55).txt => moved successfully C:\Users\HD\AppData\Roaming\Microsoft\Document Building Blocks\1033\Building Blocks.dotx => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\bistats.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\dc.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\eas.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\griffin.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\griffin.db-journal => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\keyval.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\main.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\media_messaging\media_cache\asyncdb\cache_db.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\media_messaging\storage_db\asyncdb\storage_db.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\msn.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\qikdb\qik_main.db => moved successfully C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\statistics.db => moved successfully "C:\Users\HD\AppData\Roaming\Skype\shared_httpfe\queue.db-journal" => not found. C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\Application logs\appLauncher_all_log.txt => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\CA100\SpecificMPM-1.4.0.28.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\CAPMAN-1.3.0.176-1.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\CAPMAN-1.3.0.176-2.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\CAPMAN-1.3.0.176.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\DM-1.6.0.556-1.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\DM-1.6.0.556-2.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\DM-1.6.0.556.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\FMOBEXSERVER-2.1.11.285.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\HookStarter-1.1.0.88.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\LOGGER.TXT => moved successfully C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\teleca_common_log.txt => moved successfully C:\Users\HD\AppData\Roaming\TuneUpMedia\CleanupDB.bak => moved successfully C:\Users\HD\AppData\Roaming\Winamp\Plugins\ml\main.idx => moved successfully C:\Users\HD\AppData\Roaming\Winamp\Plugins\ml\recent.idx => moved successfully C:\Users\HD\AppData\Roaming\Winamp\demo.mp3 => moved successfully C:\Users\HD\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant\Local Store\application.db => moved successfully C:\Users\HD\Data analysis UGI database.txt => moved successfully "C:\Users\HD\Dates CT2 2014 2015.t" => not found. C:\Users\HD\Documents\5a - Competency Statement for urgent return.doc => moved successfully C:\Users\HD\Documents\ANNUAL AND STUDY LEAVE PLANNER - resp rotation NHH 2014.doc => moved successfully "C:\Users\HD\Documents\ANZ account.doc" => not found. "C:\Users\HD\Documents\Accom request form Abergavenny Nevill Hall.doc" => not found. "C:\Users\HD\Documents\All transactions santander 2012 2013 tax year.xls" => not found. "C:\Users\HD\Documents\Annual and study leave COTE Nevill Hall.docx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\1000 lives improving dementia care.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\11_433 - Registration Form.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Adm & Pharmacy Data combined.xls" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Antipsychotic audit in dementiav4 eb2011.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Atypical Antipsychotics and Symptoms of Dementia draft 2.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Atypical Antipsychotics and Symptoms of Dementia.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Atypical antipsychotic prescribing presentation.pptx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\BCUHB Clinical Audit SBAR-Jan 11.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\BCUHB Clinical audit SBAR-guidance sheet-Jan 11.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Dementia drivers.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Dementia in General hospital.ppt" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Draft proforma - dementia.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Draft proforma - dementia.docx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\MISSING NOTES FOR AUDIT.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\NICE audit support for dementia.docx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Antipsychotic audit in dementiav4 eb2011.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Design Form 2008.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Registration Form 2.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Registration Form 2010.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Registration Form.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Data collection tool.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Dementia in General hospital.ppt" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\MHLD.11_019 SBAR.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Milner audit.docx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Powerpoint Presentation - Dr Jamil 2008.ppt" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Prescribing of psychotropic drugsfor inpatients-PROFORMA for audit.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Previous audits\password for previous audit.txt" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Progress Form Clinical Audit and Effectiveness Department.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Project 11_433.doc" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1) (Recovered).xls" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1) (Recovered).xls.bak" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1).xls" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1).xls.bak" => not found. "C:\Users\HD\Documents\Antipsychotics audit\RCOP antipsych audit 2011 and 2012.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Re -Run data Adm & pharmacy data combined.xls" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Report proforma with actions 2008.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\Trusted to care Andrews report.pdf" => not found. "C:\Users\HD\Documents\Antipsychotics audit\analysed data antipsychotic audit - my contribution.xlsx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\antipsychotics audit request for processed data and changes.docx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\audit emails.docx" => not found. "C:\Users\HD\Documents\Antipsychotics audit\pharmacy data.xls" => not found. "C:\Users\HD\Documents\Apartment monies orari New Zealand Christchurch.xlsx" => not found. "C:\Users\HD\Documents\Application Form for Login -expenses.doc" => not found. "C:\Users\HD\Documents\Application Form for Login Travel Expenses.doc" => not found. C:\Users\HD\Documents\Application Form for Login.doc => moved successfully "C:\Users\HD\Documents\April New Zealand trip Milford Doubtful Routeburn.docx" => not found. "C:\Users\HD\Documents\Audit of calls in Nevill Hall Hospital - NEWS patient locations.docx" => not found. C:\Users\HD\Documents\Audit of calls in Nevill Hall Hospital.docx => moved successfully C:\Users\HD\Documents\BCUHB Clinical Audit SBAR-Jan 11.doc => moved successfully C:\Users\HD\Documents\BHSF limits.xlsx => moved successfully C:\Users\HD\Documents\BMA membership end.docx => moved successfully C:\Users\HD\Documents\Beta-blockers asthma and COPD.pdf => moved successfully C:\Users\HD\Documents\Bex and Sar response.docx => moved successfully C:\Users\HD\Documents\British haem society splenectomy.pdf => moved successfully C:\Users\HD\Documents\CMT feedback resp.docx => moved successfully C:\Users\HD\Documents\COPD audit\COPD audit report.doc => moved successfully C:\Users\HD\Documents\COPD audit\Dr Wales COPD presentation 1.jpg => moved successfully C:\Users\HD\Documents\COPD audit\Dr Wales COPD presentation 2.jpg => moved successfully C:\Users\HD\Documents\COPD audit\Things we could do in addition to analysis from BTS.docx => moved successfully C:\Users\HD\Documents\COPD audit\copd audit.csv => moved successfully C:\Users\HD\Documents\COPD managing exacerbations.doc => moved successfully C:\Users\HD\Documents\CT1 Aug 14 - Jan 15 New 2.xls => moved successfully C:\Users\HD\Documents\Cardiff Uni username.txt => moved successfully C:\Users\HD\Documents\Cardiff library wifi settings.docx => moved successfully C:\Users\HD\Documents\Cardio rota original.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\AKI certificate.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\AXR certificate.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\DKA certificate.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\Foundation certificate.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\abnormal LFTs certificate 2.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\abnormal LFTs certificate.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\end of life care certificate.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\fluid challenge 2.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\fluid management certificate.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\warfarin certificate 2.pdf => moved successfully C:\Users\HD\Documents\Certificates of learning\warfarin certificate.pdf => moved successfully C:\Users\HD\Documents\Check orari invoice information.xlsx => moved successfully C:\Users\HD\Documents\Christchurch med students 2013 Log Book.docx => moved successfully C:\Users\HD\Documents\Coeliac in children.docx => moved successfully C:\Users\HD\Documents\Coleg Gwent car course enquiries.docx => moved successfully C:\Users\HD\Documents\Competency Statement for urgent return.doc => moved successfully C:\Users\HD\Documents\Copy of CT1 Rota Feb 2015 - July 2015.xls => moved successfully C:\Users\HD\Documents\Copy of FP1 FP2 Rota Dec 2014 - March 2015 NEW 2.xls => moved successfully C:\Users\HD\Documents\Copy of GastroClinicsPTWR Aug 14 - Nov 14.xlsm => moved successfully C:\Users\HD\Documents\Copy of SpR Rota Dec 2014 - March 2015 new vers 2.xls => moved successfully C:\Users\HD\Documents\Cord lesions.pps => moved successfully C:\Users\HD\Documents\Crohns disease.pptx => moved successfully C:\Users\HD\Documents\DVLA driving guidelines.pdf => moved successfully C:\Users\HD\Documents\Dahwa Hannah - letter of service.pdf => moved successfully C:\Users\HD\Documents\Dahwa Hannah - service CDHB.pdf => moved successfully C:\Users\HD\Documents\Data protection act disclosure request interview sheets July 2013.docx => moved successfully C:\Users\HD\Documents\Deep vein thrombosis uptodate.docx => moved successfully C:\Users\HD\Documents\Disclosed data.docx => moved successfully C:\Users\HD\Documents\EAU audit for MBrouns.xlsx => moved successfully C:\Users\HD\Documents\EAU audit.pptx => moved successfully C:\Users\HD\Documents\EAU audit.xlsx => moved successfully C:\Users\HD\Documents\EMERGENCY CONTACT FORM.doc => moved successfully C:\Users\HD\Documents\Endocrine CT2\8-2 April 15 - July 15.xlsx => moved successfully C:\Users\HD\Documents\Endocrine CT2\8-2 Friday teachings.docx => moved successfully C:\Users\HD\Documents\Endocrine CT2\8-2 Thursday Lunchtime Meetings.docx => moved successfully C:\Users\HD\Documents\Endocrine CT2\8-2 dec-march 2015.xlsx => moved successfully C:\Users\HD\Documents\Endocrine CT2\~$2 Friday teachings.docx => moved successfully C:\Users\HD\Documents\Endocrine CT2\~$2 Thursday Lunchtime Meetings.docx => moved successfully C:\Users\HD\Documents\Eportfolio CT1\ALS 2013.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\CMT study day 4.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\CMT study day 5.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\CMT study day 6.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\CMT study days 1, 2 and 3.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\Chest drain workshop.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\Clinic CMT March 2014.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\EPES survey completion.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\GMC survey 2014.docx => moved successfully C:\Users\HD\Documents\Eportfolio CT1\MRCP 2 course Royal College of Physicians.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\MRCP part one letter.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\MRCP part two course Pastest.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\MRCP part two result.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\NIV workshop.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\New Zealand WPBA\Workplace based assessments New Zealand.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\Pleural tap feedback sheets.pdf => moved successfully C:\Users\HD\Documents\Eportfolio CT1\clinic record as of June 3rd 2014.pdf => moved successfully C:\Users\HD\Documents\Evaluation Form for Teaching JRCPTB form CMT foundation.doc => moved successfully C:\Users\HD\Documents\Extra shifts new zealand.xlsx => moved successfully C:\Users\HD\Documents\allianz motor insurance 2014 2.pdf => moved successfully C:\Users\HD\Documents\allianz motor insurance 2014.pdf => moved successfully C:\Users\HD\Documents\american pie 2.docx => moved successfully C:\Users\HD\Documents\american pie.docx => moved successfully C:\Users\HD\Documents\ascites and cirrhosis management guidelines.pdf => moved successfully C:\Users\HD\Documents\bond lodgement form New Zealand.pdf => moved successfully C:\Users\HD\Documents\bond refund form.jpg => moved successfully C:\Users\HD\Documents\budget2012_pressnotice.pdf => moved successfully C:\Users\HD\Documents\camping.txt => moved successfully C:\Users\HD\Documents\cardio rota.doc => moved successfully C:\Users\HD\Documents\classic cars.txt => moved successfully C:\Users\HD\Documents\claude complaint.docx => moved successfully C:\Users\HD\Documents\closure nationwide credit card.docx => moved successfully C:\Users\HD\Documents\closure normal santander credit card.docx => moved successfully C:\Users\HD\Documents\cofunds.docx => moved successfully C:\Users\HD\Documents\colour schemes house.docx => moved successfully C:\Users\HD\Documents\complex pacemakers.pptx => moved successfully C:\Users\HD\Documents\confirm saga sell 2.pdf => moved successfully C:\Users\HD\Documents\confirm saga sell.pdf => moved successfully C:\Users\HD\Documents\copd audit print screen.docx => moved successfully C:\Users\HD\Documents\copy complaint Air New Zealand 17.01.13.docx => moved successfully C:\Users\HD\Documents\credit card decision letter.docx => moved successfully C:\Users\HD\Documents\critical care.docx => moved successfully C:\Users\HD\Documents\cry me a river tab.docx => moved successfully C:\Users\HD\Documents\culture fusion.docx => moved successfully C:\Users\HD\Documents\draft shift cover roster email.docx => moved successfully C:\Users\HD\Documents\dunedin oamaru costs.xlsx => moved successfully C:\Users\HD\Documents\dvla covering letter tax disk 2014.docx => moved successfully C:\Users\HD\Documents\email laura.docx => moved successfully C:\Users\HD\Documents\email tenants protection.docx => moved successfully C:\Users\HD\Documents\estimate contents.txt => moved successfully C:\Users\HD\Documents\feedback psychiatry.docx => moved successfully E:\HPSF_Rep.txt => moved successfully "E:\Hewlett-Packard\QuickWeb\Settings\timezoneoffset.txt" => not found. ========= bitsadmin /reset /allusers ========= BITSADMIN version 3.0 [ 7.5.7601 ] BITS administration utility. © Copyright 2000-2006 Microsoft Corp. BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows. Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets. 0 out of 0 jobs canceled. ========= End of CMD: ========= EmptyTemp: => 923 MB temporary data Removed. The system needed a reboot.
  10. Fix result of Farbar Recovery Scan Tool (x64) Version:28-11-2015 Ran by HD (2015-11-28 22:01:06) Run:1 Running from C:\Users\HD\Desktop Loaded Profiles: HD (Available Profiles: HD) Boot Mode: Normal ============================================== fixlist content: ***************** Start CreateRestorePoint: CloseProcesses: C:\ProgramData\Birdstep Technology\EasyConnect\banner.swf C:\ProgramData\Microsoft\RAC\PublishedData\RacWmiDatabase.sdf C:\ProgramData\Search Protection\log1.txt C:\ProgramData\TuneUpMedia\cacerts.crt C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0401b497fa36224eba32e8afd3717f78.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0d81881f0864dd459b6f9eb5334d1a29.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0de97056eca05b498cedda7fce5d391b.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0eebec1471254ac9a6eb01a18861798a.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\10a25f8f81f644da91c526650c67c2d3.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1bcbde849a2690b0f3faf3ef5694f417.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1c1f6062af0a2b449a3edfa6205f3146.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1cb8391e7a11234cbdafb8dc4ca83d4f.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1f1520647ea1234e9a23fed6eedcef78.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\266b8859a1844e51b6ab11c68110794c.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\275d78673f25f944be159b04d00c6cf6.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\2aacb34678d94eefa4ee354be211bf5f.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\2ae97f917e5d554882c2e06577f5f10b.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\2b4a22f6dcae11df8126002608031d7e.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\304b13ad89f859499455b420abf65e42.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\33a7a34247423328a2fb1df2fde23b30.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\3489c997f7ab414cb2f7099e8c5a1a6c.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\356a448992ef4b4aa3ac2d46f919fb7b.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\3731df984cf2710db4e6039a8eea8234.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\377d696f8580a94692f6fd2e16c72b33.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\39c9c249dae391acea5fe31d80f08cde.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\3e2f81b493260a4a97f34dc46c217c22.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\407b3f25b3a94717b8f3ebd3020910e9.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\40eb0dc111f970907149a82513d6bee3.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\414d02de4132f340b8e2eb2f7a182031.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4666a07295bd44488be687354cacc6e4.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\483490656cccdcc72144677dd68f0c9c.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\486ae5f7775e42a487f43d9e8bb8e694.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\48cc36dd98fc644186277c5abbf14f9a.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\491d91de371aa243a2456d85ca6b41e9.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4a81e57e67a09e4194fb4fa706827126.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4b4b31e02993b849800ef594664f19fc.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4ec8478cf7db0051f731a15a55df86c6.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\529f553cfcac0840a4001cec5c2d08d8.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\533a3cbb2cd4a948baa44335802155c1.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\53ccf36068632f47b056d4ad74585635.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\53effb338cd67d44aab39db90327c262.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\5a5f672db125e4abe9f83447edb53498.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\5d65406156ced54bae8c3028227f9cf4.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\5dcc63a272031b4bbff97febe1fcd92b.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\619fbeaf2667bc489a9a9f3094b7dc1f.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\61e5a9378b0d0b9147a5744e24556d01.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\62c6de335e05df4c9409b24e9eaa818a.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\64e7fd3f6d174a45a9bebd3d8e4e2489.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\66ca14e54127234a9b9bfad2bede4e94.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\6701e429a8da024ba457fb4d90f3a655.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\6ae8152e75fa5446ad5726e4ea630783.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\6b2d93d963114c51869e194323fcf0f9.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\7150ced23aa343de85b3a785916ffe60.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\746fd3cbe3b4b9de7e1b2b65121eb734.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\77cd921efc032f98c0454085a86e93b9.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\79726ae73f964ef787b640ee1375ba1d.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\7e3b3c9bbaf46a4db86d092a8342fa26.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\7ecefe50d77bff49855358fe96bf7666.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\80db0ea2d11db2110a00a00810000000.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\82fad50a5f3ea6c3a7f58974af110913.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\84ffcea88a267043a37fa690731d4766.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\92e041b019f0f643a6b609aa851788f8.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9373d101bb69624b97486036159c8a68.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\93762b4d9b1413f0e2124f47b446aaea.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9538ce934381cd4d83f80f5b29ebc900.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\97c26677eed87b3563608bd5dae82560.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9d64af0411bb5f458a741c7b7e0957ba.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9e93422f1f3fd340adba7163f39ebd58.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9f0217cdf18f1146a16ae259e1fb384a.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9f9cd84788f978458942e682d2ef7db3.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9f9f6c1bde876447a1bac7940cbc7ab0.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a09cf8095978e349b29cb9656d6cadaf.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a5f7d911376cb742b50bf123c3058877.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a80eac8d52c51e48b1c05b7234c251ab.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\ac6006791d0911deb51c001451687cca.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\aed05f1dbcacb947b4110ab0d2927362.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b28ecd8eb528a8393a606d28300de2b1.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b4f1cd1b7315a045990b3a3a9cc40eb2.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b5805987c56b93418cdc102672df6611.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b61a6536924b643d30338c00242dbe87.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b776c7fb730211daa680000d933986ae.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b8c3a99ba40d4361971beeda18ad02ea.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c06d2064e4fef74994f13ecd8b54cd9c.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c17d2bc8d11db2110a00f00810000000.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c5f8a4bea86646b493b6f549b4661c76.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c9e2ff90feb8c843b4757f287e760ded.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\caa3b8a8d11db2110a00bc0810000000.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\cb4664d70c02ec45a2647be371edb096.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\ce4695215019c94faf8574ff65300b2a.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d1baf07f6c14a0409d05b44d41fc1451.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d424386106a943e0a9d024b4ce1e42bf.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d699a6efbf0e2a42821e6a2b5613f850.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d80412c1c1f24f4cb7a79a1fa72ae963.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d83686830851f94bb2a3615cb7937bab.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\da6e4d0fb99f327b8642f1d7e7c243f6.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\dd23b347cc14d240a7cc053f44c4b3a3.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\de9beef997a93343ad39b0bfb061c775.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e233c78b8fbcd34ebc8e9c99f5dca03c.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e676726a786c6b5fe04c6f3a6b6b80bb.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e7928ab037aff147a68f3979550af29a.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e7c49ccf88fb4ef9bb3e90c11869852a.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f1776259bde0d54b91d04df4292e82bc.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f212ff6947d8944fa2e42be5b22825b5.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f5a5f2007d975007f716297d983733a3.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f9d1d34bd21db2110a0050dfd80140c5.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\fba368732dd04640892bfcb899261a3b.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\fcb138fb1a2cf246b89cee18979d9401.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\fd9695a8eb801144987198a7755509a6.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\rdrmessage.zip C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\07a4d95b0fb542898984efe2360318bf.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\0c308400fbd2694eb44f60591cb056f8.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\1f29ffb77edc3946a67809c8bde61e7e.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\223507f3c984d743bca2010cb6e06ff6.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\223f3945dc717e42a28eea46f2b8dff8.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\33bad03c5d44c34bb3b4833137f562b2.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\394153bdd24f6a4f8a7e04a27d13bee3.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\483ea3c41ffbf24e92bc1a698b56e903.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\548ce191e39945e2b6a7fd94251ce388.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\632b108b4ea47a45851dc7569a37e9cb.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\66334fb01a272447bb8e9a87686e78ea.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\7aca928f2a5a42eab339cca0767a6008.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\7bd929116e5eb845b2893bddaff81293.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\9488eef7761c654b9183fea4323cdba1.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\98d4b98c11b6ef4a8a2309f4cd04e2e3.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\a93819a3ac8a6855b730cbe7046d0ef2.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\ba835cf2bfa995a7fb9c58a747a6dcbc.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\be9a0bfd815ca34193acdb3d833cff4e.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\c411dc748ab5122d42f46e4cae86dd35.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\cd0ed40f81c7ee4089ff109c86d40c87.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\df77e3f89ce5b5428bac1eca0c2501a5.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\ed487501a0b96f40ab796a586ff83257.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\edf00f4f12f84348b4b9d94221cf4a69.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\fcb138fb1a2cf246b89cee18979d9401.idx C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\fde3464dfbff1549916d468a987cea58.idx C:\Users\HD\AppData\LocalLow\Microsoft\MuCatalog\mucataloglog.txt C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\3lozfbt13fcuaawha2aegjbiamxdgnwnjythcjhrraqxc0snupaaadaa\f\PlayerId.txt C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\jw40ub2geo4fq1x3fekmyxzwg5fakxc2ko44hrf4fxn2i23zpvaaaefa\f\PlayerId.txt C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\pnsdpvtb5exgchyg03smstegrqs5kzr50c1qg51ibdd01qibu2aaagfa\f\fnsc.txt C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\psld1rq2evnjg2ki2ziatkouhebg2l4klzm3vvurqxwtu41pinaaahda\f\krb.txt C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\qmq203fn3qtn0mbot2ewy5y2renlk1xlpshvlg0rf2admreghbaaadfa\f\PlayerId.txt C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9.idx C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74.idx C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-36971c15.idx C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4487777a.idx C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-541777b4.idx C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-6205caf4.idx C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-634469ee.idx C:\Users\HD\AppData\Local\Adobe\OOBE\opm.db C:\Users\HD\AppData\Local\Adobe\contentstore\store.db C:\Users\HD\AppData\Local\Apple Computer\iTunes\Cache.db C:\Users\HD\AppData\Local\Apple Computer\iTunes\goog-phish-shavar.db C:\Users\HD\AppData\Local\Citrix\GoToMeeting\1468\G2MTestSound.wav C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\audio\chime.wav C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000159.bak C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000163.bak C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000166.bak C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000169.bak C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\3MJ9S6CH\cacheSize.txt C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Preferences.bak C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db-journal C:\Users\HD\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt C:\Users\HD\AppData\Local\HP\Digital Imaging\cache2\1.DB C:\Users\HD\AppData\Local\HP\Digital Imaging\cache2\CacheUpdateInfo.txt C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\AlbumProjectTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\AlbumProjectTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\EXIFTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\EXIFTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\InboundAlbumTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\InboundAlbumTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\OutboundAlbumTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\OutboundAlbumTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ProjectsTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ProjectsTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFImagesTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFImagesTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\administrativeInfo.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumImagesTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumImagesTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\contactsTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\contactsTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupFriendsTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupFriendsTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\imageTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\imageTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordGroupTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordGroupTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordImagesTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordImagesTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordattributeTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordattributeTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\managedFolderTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\outboundAlbumContactsTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\outboundAlbumContactsTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\pathnameTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\pathnameTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\propertiesTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\propertiesTable.dbf C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\recentActivitiesTable.cdx C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\recentActivitiesTable.dbf C:\Users\HD\AppData\Local\Ifsoft\CNBJOP6N.txt C:\Users\HD\AppData\Local\Microsoft\Device Metadata\dmrc.idx C:\Users\HD\AppData\Local\Microsoft\Internet Explorer\brndlog.bak C:\Users\HD\AppData\Local\Microsoft\Internet Explorer\brndlog.txt C:\Users\HD\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\{94399433-9C7D-49E7-ADF5-DF30AA011C92}.jpg C:\Users\HD\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\{B3E693E3-A167-4B46-BFEB-73A91A8CF3E1}.jpg C:\Users\HD\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\{C5F81BC9-129A-4935-BBD2-58A2ED3E78F5}.jpg C:\Users\HD\AppData\Local\Microsoft\Messenger\ContactsLog.txt C:\Users\HD\AppData\Local\Microsoft\Photo Acquisition\PreviouslyAcquired.db C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Backup\new\Mail.pat C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Calendars\DBStore\Backup\new\WLCalendarStore.pat C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Calendars\DBStore\WLCalendarStore.pat C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Mail.pat C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Sentinel\WLMailSearchSentinel.eml C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Storage Folders\Drafts\101168F3-00000001.eml C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Storage Folders\Drafts\27B43BAC-00000002.eml C:\Users\HD\AppData\Local\Microsoft\Windows Live\Contacts\Default\15.4\DBStore\Backup\new\contacts.pat C:\Users\HD\AppData\Local\Microsoft\Windows Live\Contacts\Default\15.4\DBStore\contacts.pat C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Backup\new\WindowsMail.pat C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Local Folders\Inbox\1642710B-00000001.eml C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Bears.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Garden.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\GreenBubbles.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\HandPrints.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\OrangeCircles.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Peacock.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Roses.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\ShadesOfBlue.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\SoftBlue.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Stars.jpg C:\Users\HD\AppData\Local\Microsoft\Windows Mail\WindowsMail.pat C:\Users\HD\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNS.DTD C:\Users\HD\AppData\Local\Opera\Opera\icons\addons.opera.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\duckduckgo.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\en.wikipedia.org.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\mail.opera.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\mail.yandex.ru.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\my.opera.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\persistent.txt C:\Users\HD\AppData\Local\Opera\Opera\icons\portal.opera.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\redir.opera.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\win.mail.ru.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\www.bing.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\www.fastmail.fm.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\www.google.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\www.opera.com.idx C:\Users\HD\AppData\Local\Opera\Opera\icons\yahoo.opera.com.idx C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\LICENSE.txt C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\README.txt C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\THIRDPARTYLICENSEREADME.txt C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\bin\client\Xusage.txt C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\lib\deploy\ffjcext.zip C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\lib\jvm.hprof.txt C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnLightYellowResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnSalmonResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnWhiteResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnYellowResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlueOnWhiteResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlueOnYellowResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\LightYellowOnBlackResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\WhiteOnBlackResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\WhiteOnBlueResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\YellowOnBlackResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\YellowOnBlueResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ARAResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\BULResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\CHSResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\CHTResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\CSYResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\DANResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\DEUResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ENGResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ENUResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ESNResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ESPResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ESTResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\FRAResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\FRCResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\GREResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\HEBResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\HINResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\HUNResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\INDResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ITAResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\JPNResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\KORResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\NLDResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\POLResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\PTBResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\PTGResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\RUSResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\SVEResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\THAResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\TRKResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\URDResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\WELResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\layout\Dsa_engResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\layout\Dsa_welResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\com\dtd\pearsonvue_com_inforequest.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_closemessage.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_inforequest.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_logerror.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_lognote.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_logwarning.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_navigate.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_showmessage.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_vtsreply.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\driver\ui\components\legacyexternalitem\flash\dtd\pearsonvue_flashadapter_vtsrequest.dtd C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\loftanalysis\ui\resources\LOFTAnalysisResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\player\ui\resources\MediaPlayerResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\prevue\viewer\ui\resources\PreVUEResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\simulator\ui\resources\CandidateSimulatorResourceContainer.zip C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\testdrive\parser\TestDrive.dtd C:\Users\HD\AppData\Local\Skype\Apps\login\images\picture.jpg C:\Users\HD\AppData\Local\VirtualStore\sdktools-toolsonly.rar C:\Users\HD\AppData\Local\YhPack\CNBIC4_2.txt C:\Users\HD\AppData\Local\adawarebp\data\temp.zip C:\Users\HD\AppData\Roaming\Adobe\Adobe PDF\Distiller\Data\epilogue.ps C:\Users\HD\AppData\Roaming\Adobe\Adobe PDF\Distiller\Data\prologue.ps C:\Users\HD\AppData\Roaming\Adobe\Adobe PDF\Distiller\Startup\example.ps C:\Users\HD\AppData\Roaming\Adobe\Flash Player\AssetCache\N97BFN54\cacheSize.txt C:\Users\HD\AppData\Roaming\Apple Computer\SyncServices\Local\clientdata\928ce871e31e838b84dc3874b86b384438631594\clientname.txt C:\Users\HD\AppData\Roaming\Apple Computer\SyncServices\Local\clientdata\ebf0f86d30f0f15eb295a85fd1c590756e81420a\clientname.txt C:\Users\HD\AppData\Roaming\Birdstep Technology\EasyConnect\BkupLogfile.txt C:\Users\HD\AppData\Roaming\Birdstep Technology\EasyConnect\Logfile.txt C:\Users\HD\AppData\Roaming\Guitar Pro 6\session.txt C:\Users\HD\AppData\Roaming\HP\WebRegLogs\WebRegLog.txt C:\Users\HD\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-05-26 (01-14-53).txt C:\Users\HD\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-11-13 (17-42-55).txt C:\Users\HD\AppData\Roaming\Microsoft\Document Building Blocks\1033\Building Blocks.dotx C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\bistats.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\dc.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\eas.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\griffin.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\griffin.db-journal C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\keyval.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\main.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\media_messaging\media_cache\asyncdb\cache_db.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\media_messaging\storage_db\asyncdb\storage_db.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\msn.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\qikdb\qik_main.db C:\Users\HD\AppData\Roaming\Skype\hannahdahwa\statistics.db C:\Users\HD\AppData\Roaming\Skype\shared_httpfe\queue.db-journal C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\Application logs\appLauncher_all_log.txt C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\CA100\SpecificMPM-1.4.0.28.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\CAPMAN-1.3.0.176-1.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\CAPMAN-1.3.0.176-2.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\CAPMAN-1.3.0.176.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\DM-1.6.0.556-1.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\DM-1.6.0.556-2.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\DM-1.6.0.556.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\FMOBEXSERVER-2.1.11.285.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\GE\HookStarter-1.1.0.88.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\LOGGER.TXT C:\Users\HD\AppData\Roaming\Teleca\Telecalib\Logging\teleca_common_log.txt C:\Users\HD\AppData\Roaming\TuneUpMedia\CleanupDB.bak C:\Users\HD\AppData\Roaming\Winamp\Plugins\ml\main.idx C:\Users\HD\AppData\Roaming\Winamp\Plugins\ml\recent.idx C:\Users\HD\AppData\Roaming\Winamp\demo.mp3 C:\Users\HD\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant\Local Store\application.db C:\Users\HD\Data analysis UGI database.txt C:\Users\HD\Dates CT2 2014 2015.t C:\Users\HD\Documents\5a - Competency Statement for urgent return.doc C:\Users\HD\Documents\ANNUAL AND STUDY LEAVE PLANNER - resp rotation NHH 2014.doc C:\Users\HD\Documents\ANZ account.doc C:\Users\HD\Documents\Accom request form Abergavenny Nevill Hall.doc C:\Users\HD\Documents\All transactions santander 2012 2013 tax year.xls C:\Users\HD\Documents\Annual and study leave COTE Nevill Hall.docx C:\Users\HD\Documents\Antipsychotics audit\1000 lives improving dementia care.pdf C:\Users\HD\Documents\Antipsychotics audit\11_433 - Registration Form.pdf C:\Users\HD\Documents\Antipsychotics audit\Adm & Pharmacy Data combined.xls C:\Users\HD\Documents\Antipsychotics audit\Antipsychotic audit in dementiav4 eb2011.doc C:\Users\HD\Documents\Antipsychotics audit\Atypical Antipsychotics and Symptoms of Dementia draft 2.pdf C:\Users\HD\Documents\Antipsychotics audit\Atypical Antipsychotics and Symptoms of Dementia.pdf C:\Users\HD\Documents\Antipsychotics audit\Atypical antipsychotic prescribing presentation.pptx C:\Users\HD\Documents\Antipsychotics audit\BCUHB Clinical Audit SBAR-Jan 11.doc C:\Users\HD\Documents\Antipsychotics audit\BCUHB Clinical audit SBAR-guidance sheet-Jan 11.pdf C:\Users\HD\Documents\Antipsychotics audit\Dementia drivers.pdf C:\Users\HD\Documents\Antipsychotics audit\Dementia in General hospital.ppt C:\Users\HD\Documents\Antipsychotics audit\Draft proforma - dementia.doc C:\Users\HD\Documents\Antipsychotics audit\Draft proforma - dementia.docx C:\Users\HD\Documents\Antipsychotics audit\MISSING NOTES FOR AUDIT.doc C:\Users\HD\Documents\Antipsychotics audit\NICE audit support for dementia.docx C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Antipsychotic audit in dementiav4 eb2011.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Design Form 2008.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Registration Form 2.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Registration Form 2010.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Audit Registration Form.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Data collection tool.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Dementia in General hospital.ppt C:\Users\HD\Documents\Antipsychotics audit\Previous audits\MHLD.11_019 SBAR.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Milner audit.docx C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Powerpoint Presentation - Dr Jamil 2008.ppt C:\Users\HD\Documents\Antipsychotics audit\Previous audits\Prescribing of psychotropic drugsfor inpatients-PROFORMA for audit.doc C:\Users\HD\Documents\Antipsychotics audit\Previous audits\password for previous audit.txt C:\Users\HD\Documents\Antipsychotics audit\Progress Form Clinical Audit and Effectiveness Department.doc C:\Users\HD\Documents\Antipsychotics audit\Project 11_433.doc C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1) (Recovered).xls C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1) (Recovered).xls.bak C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1).xls C:\Users\HD\Documents\Antipsychotics audit\Project_11_433_-_Atypical_Antipsychotics_and_Symptoms_of_Dementia(1).xls.bak C:\Users\HD\Documents\Antipsychotics audit\RCOP antipsych audit 2011 and 2012.pdf C:\Users\HD\Documents\Antipsychotics audit\Re -Run data Adm & pharmacy data combined.xls C:\Users\HD\Documents\Antipsychotics audit\Report proforma with actions 2008.pdf C:\Users\HD\Documents\Antipsychotics audit\Trusted to care Andrews report.pdf C:\Users\HD\Documents\Antipsychotics audit\analysed data antipsychotic audit - my contribution.xlsx C:\Users\HD\Documents\Antipsychotics audit\antipsychotics audit request for processed data and changes.docx C:\Users\HD\Documents\Antipsychotics audit\audit emails.docx C:\Users\HD\Documents\Antipsychotics audit\pharmacy data.xls C:\Users\HD\Documents\Apartment monies orari New Zealand Christchurch.xlsx C:\Users\HD\Documents\Application Form for Login -expenses.doc C:\Users\HD\Documents\Application Form for Login Travel Expenses.doc C:\Users\HD\Documents\Application Form for Login.doc C:\Users\HD\Documents\April New Zealand trip Milford Doubtful Routeburn.docx C:\Users\HD\Documents\Audit of calls in Nevill Hall Hospital - NEWS patient locations.docx C:\Users\HD\Documents\Audit of calls in Nevill Hall Hospital.docx C:\Users\HD\Documents\BCUHB Clinical Audit SBAR-Jan 11.doc C:\Users\HD\Documents\BHSF limits.xlsx C:\Users\HD\Documents\BMA membership end.docx C:\Users\HD\Documents\Beta-blockers asthma and COPD.pdf C:\Users\HD\Documents\Bex and Sar response.docx C:\Users\HD\Documents\British haem society splenectomy.pdf C:\Users\HD\Documents\CMT feedback resp.docx C:\Users\HD\Documents\COPD audit\COPD audit report.doc C:\Users\HD\Documents\COPD audit\Dr Wales COPD presentation 1.jpg C:\Users\HD\Documents\COPD audit\Dr Wales COPD presentation 2.jpg C:\Users\HD\Documents\COPD audit\Things we could do in addition to analysis from BTS.docx C:\Users\HD\Documents\COPD audit\copd audit.csv C:\Users\HD\Documents\COPD managing exacerbations.doc C:\Users\HD\Documents\CT1 Aug 14 - Jan 15 New 2.xls C:\Users\HD\Documents\Cardiff Uni username.txt C:\Users\HD\Documents\Cardiff library wifi settings.docx C:\Users\HD\Documents\Cardio rota original.pdf C:\Users\HD\Documents\Certificates of learning\AKI certificate.pdf C:\Users\HD\Documents\Certificates of learning\AXR certificate.pdf C:\Users\HD\Documents\Certificates of learning\DKA certificate.pdf C:\Users\HD\Documents\Certificates of learning\Foundation certificate.pdf C:\Users\HD\Documents\Certificates of learning\abnormal LFTs certificate 2.pdf C:\Users\HD\Documents\Certificates of learning\abnormal LFTs certificate.pdf C:\Users\HD\Documents\Certificates of learning\end of life care certificate.pdf C:\Users\HD\Documents\Certificates of learning\fluid challenge 2.pdf C:\Users\HD\Documents\Certificates of learning\fluid management certificate.pdf C:\Users\HD\Documents\Certificates of learning\warfarin certificate 2.pdf C:\Users\HD\Documents\Certificates of learning\warfarin certificate.pdf C:\Users\HD\Documents\Check orari invoice information.xlsx C:\Users\HD\Documents\Christchurch med students 2013 Log Book.docx C:\Users\HD\Documents\Coeliac in children.docx C:\Users\HD\Documents\Coleg Gwent car course enquiries.docx C:\Users\HD\Documents\Competency Statement for urgent return.doc C:\Users\HD\Documents\Copy of CT1 Rota Feb 2015 - July 2015.xls C:\Users\HD\Documents\Copy of FP1 FP2 Rota Dec 2014 - March 2015 NEW 2.xls C:\Users\HD\Documents\Copy of GastroClinicsPTWR Aug 14 - Nov 14.xlsm C:\Users\HD\Documents\Copy of SpR Rota Dec 2014 - March 2015 new vers 2.xls C:\Users\HD\Documents\Cord lesions.pps C:\Users\HD\Documents\Crohns disease.pptx C:\Users\HD\Documents\DVLA driving guidelines.pdf C:\Users\HD\Documents\Dahwa Hannah - letter of service.pdf C:\Users\HD\Documents\Dahwa Hannah - service CDHB.pdf C:\Users\HD\Documents\Data protection act disclosure request interview sheets July 2013.docx C:\Users\HD\Documents\Deep vein thrombosis uptodate.docx C:\Users\HD\Documents\Disclosed data.docx C:\Users\HD\Documents\EAU audit for MBrouns.xlsx C:\Users\HD\Documents\EAU audit.pptx C:\Users\HD\Documents\EAU audit.xlsx C:\Users\HD\Documents\EMERGENCY CONTACT FORM.doc C:\Users\HD\Documents\Endocrine CT2\8-2 April 15 - July 15.xlsx C:\Users\HD\Documents\Endocrine CT2\8-2 Friday teachings.docx C:\Users\HD\Documents\Endocrine CT2\8-2 Thursday Lunchtime Meetings.docx C:\Users\HD\Documents\Endocrine CT2\8-2 dec-march 2015.xlsx C:\Users\HD\Documents\Endocrine CT2\~$2 Friday teachings.docx C:\Users\HD\Documents\Endocrine CT2\~$2 Thursday Lunchtime Meetings.docx C:\Users\HD\Documents\Eportfolio CT1\ALS 2013.pdf C:\Users\HD\Documents\Eportfolio CT1\CMT study day 4.pdf C:\Users\HD\Documents\Eportfolio CT1\CMT study day 5.pdf C:\Users\HD\Documents\Eportfolio CT1\CMT study day 6.pdf C:\Users\HD\Documents\Eportfolio CT1\CMT study days 1, 2 and 3.pdf C:\Users\HD\Documents\Eportfolio CT1\Chest drain workshop.pdf C:\Users\HD\Documents\Eportfolio CT1\Clinic CMT March 2014.pdf C:\Users\HD\Documents\Eportfolio CT1\EPES survey completion.pdf C:\Users\HD\Documents\Eportfolio CT1\GMC survey 2014.docx C:\Users\HD\Documents\Eportfolio CT1\MRCP 2 course Royal College of Physicians.pdf C:\Users\HD\Documents\Eportfolio CT1\MRCP part one letter.pdf C:\Users\HD\Documents\Eportfolio CT1\MRCP part two course Pastest.pdf C:\Users\HD\Documents\Eportfolio CT1\MRCP part two result.pdf C:\Users\HD\Documents\Eportfolio CT1\NIV workshop.pdf C:\Users\HD\Documents\Eportfolio CT1\New Zealand WPBA\Workplace based assessments New Zealand.pdf C:\Users\HD\Documents\Eportfolio CT1\Pleural tap feedback sheets.pdf C:\Users\HD\Documents\Eportfolio CT1\clinic record as of June 3rd 2014.pdf C:\Users\HD\Documents\Evaluation Form for Teaching JRCPTB form CMT foundation.doc C:\Users\HD\Documents\Extra shifts new zealand.xlsx C:\Users\HD\Documents\allianz motor insurance 2014 2.pdf C:\Users\HD\Documents\allianz motor insurance 2014.pdf C:\Users\HD\Documents\american pie 2.docx C:\Users\HD\Documents\american pie.docx C:\Users\HD\Documents\ascites and cirrhosis management guidelines.pdf C:\Users\HD\Documents\bond lodgement form New Zealand.pdf C:\Users\HD\Documents\bond refund form.jpg C:\Users\HD\Documents\budget2012_pressnotice.pdf C:\Users\HD\Documents\camping.txt C:\Users\HD\Documents\cardio rota.doc C:\Users\HD\Documents\classic cars.txt C:\Users\HD\Documents\claude complaint.docx C:\Users\HD\Documents\closure nationwide credit card.docx C:\Users\HD\Documents\closure normal santander credit card.docx C:\Users\HD\Documents\cofunds.docx C:\Users\HD\Documents\colour schemes house.docx C:\Users\HD\Documents\complex pacemakers.pptx C:\Users\HD\Documents\confirm saga sell 2.pdf C:\Users\HD\Documents\confirm saga sell.pdf C:\Users\HD\Documents\copd audit print screen.docx C:\Users\HD\Documents\copy complaint Air New Zealand 17.01.13.docx C:\Users\HD\Documents\credit card decision letter.docx C:\Users\HD\Documents\critical care.docx C:\Users\HD\Documents\cry me a river tab.docx C:\Users\HD\Documents\culture fusion.docx C:\Users\HD\Documents\draft shift cover roster email.docx C:\Users\HD\Documents\dunedin oamaru costs.xlsx C:\Users\HD\Documents\dvla covering letter tax disk 2014.docx C:\Users\HD\Documents\email laura.docx C:\Users\HD\Documents\email tenants protection.docx C:\Users\HD\Documents\estimate contents.txt C:\Users\HD\Documents\feedback psychiatry.docx E:\HPSF_Rep.txt E:\Hewlett-Packard\QuickWeb\Settings\timezoneoffset.txt EmptyTemp: CMD: bitsadmin /reset /allusers Reboot: ***************** Restore point was successfully created. Processes closed successfully. "C:\ProgramData\Birdstep Technology\EasyConnect\banner.swf" => not found. C:\ProgramData\Microsoft\RAC\PublishedData\RacWmiDatabase.sdf => moved successfully "C:\ProgramData\Search Protection\log1.txt" => not found. C:\ProgramData\TuneUpMedia\cacerts.crt => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0401b497fa36224eba32e8afd3717f78.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0d81881f0864dd459b6f9eb5334d1a29.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0de97056eca05b498cedda7fce5d391b.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\0eebec1471254ac9a6eb01a18861798a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\10a25f8f81f644da91c526650c67c2d3.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1bcbde849a2690b0f3faf3ef5694f417.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1c1f6062af0a2b449a3edfa6205f3146.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1cb8391e7a11234cbdafb8dc4ca83d4f.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1f1520647ea1234e9a23fed6eedcef78.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\266b8859a1844e51b6ab11c68110794c.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\275d78673f25f944be159b04d00c6cf6.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\2aacb34678d94eefa4ee354be211bf5f.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\2ae97f917e5d554882c2e06577f5f10b.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\2b4a22f6dcae11df8126002608031d7e.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\304b13ad89f859499455b420abf65e42.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\33a7a34247423328a2fb1df2fde23b30.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\3489c997f7ab414cb2f7099e8c5a1a6c.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\356a448992ef4b4aa3ac2d46f919fb7b.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\3731df984cf2710db4e6039a8eea8234.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\377d696f8580a94692f6fd2e16c72b33.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\39c9c249dae391acea5fe31d80f08cde.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\3e2f81b493260a4a97f34dc46c217c22.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\407b3f25b3a94717b8f3ebd3020910e9.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\40eb0dc111f970907149a82513d6bee3.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\414d02de4132f340b8e2eb2f7a182031.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4666a07295bd44488be687354cacc6e4.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\483490656cccdcc72144677dd68f0c9c.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\486ae5f7775e42a487f43d9e8bb8e694.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\48cc36dd98fc644186277c5abbf14f9a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\491d91de371aa243a2456d85ca6b41e9.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4a81e57e67a09e4194fb4fa706827126.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4b4b31e02993b849800ef594664f19fc.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4ec8478cf7db0051f731a15a55df86c6.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\529f553cfcac0840a4001cec5c2d08d8.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\533a3cbb2cd4a948baa44335802155c1.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\53ccf36068632f47b056d4ad74585635.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\53effb338cd67d44aab39db90327c262.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\5a5f672db125e4abe9f83447edb53498.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\5d65406156ced54bae8c3028227f9cf4.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\5dcc63a272031b4bbff97febe1fcd92b.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\619fbeaf2667bc489a9a9f3094b7dc1f.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\61e5a9378b0d0b9147a5744e24556d01.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\62c6de335e05df4c9409b24e9eaa818a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\64e7fd3f6d174a45a9bebd3d8e4e2489.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\66ca14e54127234a9b9bfad2bede4e94.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\6701e429a8da024ba457fb4d90f3a655.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\6ae8152e75fa5446ad5726e4ea630783.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\6b2d93d963114c51869e194323fcf0f9.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\7150ced23aa343de85b3a785916ffe60.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\746fd3cbe3b4b9de7e1b2b65121eb734.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\77cd921efc032f98c0454085a86e93b9.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\79726ae73f964ef787b640ee1375ba1d.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\7e3b3c9bbaf46a4db86d092a8342fa26.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\7ecefe50d77bff49855358fe96bf7666.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\80db0ea2d11db2110a00a00810000000.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\82fad50a5f3ea6c3a7f58974af110913.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\84ffcea88a267043a37fa690731d4766.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\92e041b019f0f643a6b609aa851788f8.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9373d101bb69624b97486036159c8a68.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\93762b4d9b1413f0e2124f47b446aaea.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9538ce934381cd4d83f80f5b29ebc900.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\97c26677eed87b3563608bd5dae82560.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9d64af0411bb5f458a741c7b7e0957ba.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9e93422f1f3fd340adba7163f39ebd58.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9f0217cdf18f1146a16ae259e1fb384a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9f9cd84788f978458942e682d2ef7db3.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9f9f6c1bde876447a1bac7940cbc7ab0.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a09cf8095978e349b29cb9656d6cadaf.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a5f7d911376cb742b50bf123c3058877.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a80eac8d52c51e48b1c05b7234c251ab.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\ac6006791d0911deb51c001451687cca.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\aed05f1dbcacb947b4110ab0d2927362.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b28ecd8eb528a8393a606d28300de2b1.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b4f1cd1b7315a045990b3a3a9cc40eb2.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b5805987c56b93418cdc102672df6611.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b61a6536924b643d30338c00242dbe87.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b776c7fb730211daa680000d933986ae.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b8c3a99ba40d4361971beeda18ad02ea.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c06d2064e4fef74994f13ecd8b54cd9c.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c17d2bc8d11db2110a00f00810000000.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c5f8a4bea86646b493b6f549b4661c76.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c9e2ff90feb8c843b4757f287e760ded.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\caa3b8a8d11db2110a00bc0810000000.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\cb4664d70c02ec45a2647be371edb096.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\ce4695215019c94faf8574ff65300b2a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d1baf07f6c14a0409d05b44d41fc1451.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d424386106a943e0a9d024b4ce1e42bf.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d699a6efbf0e2a42821e6a2b5613f850.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d80412c1c1f24f4cb7a79a1fa72ae963.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d83686830851f94bb2a3615cb7937bab.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\da6e4d0fb99f327b8642f1d7e7c243f6.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\dd23b347cc14d240a7cc053f44c4b3a3.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\de9beef997a93343ad39b0bfb061c775.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e233c78b8fbcd34ebc8e9c99f5dca03c.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e676726a786c6b5fe04c6f3a6b6b80bb.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e7928ab037aff147a68f3979550af29a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\e7c49ccf88fb4ef9bb3e90c11869852a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f1776259bde0d54b91d04df4292e82bc.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f212ff6947d8944fa2e42be5b22825b5.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f5a5f2007d975007f716297d983733a3.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\f9d1d34bd21db2110a0050dfd80140c5.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\fba368732dd04640892bfcb899261a3b.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\fcb138fb1a2cf246b89cee18979d9401.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\Search\fd9695a8eb801144987198a7755509a6.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\10.0\rdrmessage.zip => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\07a4d95b0fb542898984efe2360318bf.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\0c308400fbd2694eb44f60591cb056f8.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\1f29ffb77edc3946a67809c8bde61e7e.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\223507f3c984d743bca2010cb6e06ff6.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\223f3945dc717e42a28eea46f2b8dff8.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\33bad03c5d44c34bb3b4833137f562b2.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\394153bdd24f6a4f8a7e04a27d13bee3.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\483ea3c41ffbf24e92bc1a698b56e903.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\548ce191e39945e2b6a7fd94251ce388.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\632b108b4ea47a45851dc7569a37e9cb.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\66334fb01a272447bb8e9a87686e78ea.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\7aca928f2a5a42eab339cca0767a6008.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\7bd929116e5eb845b2893bddaff81293.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\9488eef7761c654b9183fea4323cdba1.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\98d4b98c11b6ef4a8a2309f4cd04e2e3.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\a93819a3ac8a6855b730cbe7046d0ef2.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\ba835cf2bfa995a7fb9c58a747a6dcbc.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\be9a0bfd815ca34193acdb3d833cff4e.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\c411dc748ab5122d42f46e4cae86dd35.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\cd0ed40f81c7ee4089ff109c86d40c87.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\df77e3f89ce5b5428bac1eca0c2501a5.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\ed487501a0b96f40ab796a586ff83257.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\edf00f4f12f84348b4b9d94221cf4a69.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\fcb138fb1a2cf246b89cee18979d9401.idx => moved successfully C:\Users\HD\AppData\LocalLow\Adobe\Acrobat\11.0\Search\fde3464dfbff1549916d468a987cea58.idx => moved successfully C:\Users\HD\AppData\LocalLow\Microsoft\MuCatalog\mucataloglog.txt => moved successfully C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\3lozfbt13fcuaawha2aegjbiamxdgnwnjythcjhrraqxc0snupaaadaa\f\PlayerId.txt => moved successfully C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\jw40ub2geo4fq1x3fekmyxzwg5fakxc2ko44hrf4fxn2i23zpvaaaefa\f\PlayerId.txt => moved successfully C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\pnsdpvtb5exgchyg03smstegrqs5kzr50c1qg51ibdd01qibu2aaagfa\f\fnsc.txt => moved successfully C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\psld1rq2evnjg2ki2ziatkouhebg2l4klzm3vvurqxwtu41pinaaahda\f\krb.txt => moved successfully C:\Users\HD\AppData\LocalLow\Microsoft\Silverlight\is\lb43ftcd.2dq\sdbj3pu0.3zn\1\s\qmq203fn3qtn0mbot2ewy5y2renlk1xlpshvlg0rf2admreghbaaadfa\f\PlayerId.txt => moved successfully C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9.idx => moved successfully C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74.idx => moved successfully C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-36971c15.idx => moved successfully C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4487777a.idx => moved successfully C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-541777b4.idx => moved successfully C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-6205caf4.idx => moved successfully C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-634469ee.idx => moved successfully C:\Users\HD\AppData\Local\Adobe\OOBE\opm.db => moved successfully C:\Users\HD\AppData\Local\Adobe\contentstore\store.db => moved successfully C:\Users\HD\AppData\Local\Apple Computer\iTunes\Cache.db => moved successfully C:\Users\HD\AppData\Local\Apple Computer\iTunes\goog-phish-shavar.db => moved successfully C:\Users\HD\AppData\Local\Citrix\GoToMeeting\1468\G2MTestSound.wav => moved successfully C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak => moved successfully "C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\audio\chime.wav" => not found. "C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000159.bak" => not found. "C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000163.bak" => not found. "C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000166.bak" => not found. "C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.co.uk_0.indexeddb.leveldb\000169.bak" => not found. C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\3MJ9S6CH\cacheSize.txt => moved successfully C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\Preferences.bak => moved successfully C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db => moved successfully C:\Users\HD\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db-journal => moved successfully "C:\Users\HD\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\cache2\1.DB" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\cache2\CacheUpdateInfo.txt" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\AlbumProjectTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\AlbumProjectTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\EXIFTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\EXIFTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\InboundAlbumTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\InboundAlbumTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\OutboundAlbumTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\OutboundAlbumTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ProjectsTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ProjectsTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFImagesTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFImagesTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\ROFTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\administrativeInfo.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumImagesTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumImagesTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\albumTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\contactsTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\contactsTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupFriendsTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupFriendsTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\groupTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\imageTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\imageTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordGroupTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordGroupTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordImagesTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordImagesTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordattributeTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\keywordattributeTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\managedFolderTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\outboundAlbumContactsTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\outboundAlbumContactsTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\pathnameTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\pathnameTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\propertiesTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\propertiesTable.dbf" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\recentActivitiesTable.cdx" => not found. "C:\Users\HD\AppData\Local\HP\Digital Imaging\db2\recentActivitiesTable.dbf" => not found. C:\Users\HD\AppData\Local\Ifsoft\CNBJOP6N.txt => moved successfully C:\Users\HD\AppData\Local\Microsoft\Device Metadata\dmrc.idx => moved successfully C:\Users\HD\AppData\Local\Microsoft\Internet Explorer\brndlog.bak => moved successfully C:\Users\HD\AppData\Local\Microsoft\Internet Explorer\brndlog.txt => moved successfully C:\Users\HD\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\{94399433-9C7D-49E7-ADF5-DF30AA011C92}.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\{B3E693E3-A167-4B46-BFEB-73A91A8CF3E1}.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\{C5F81BC9-129A-4935-BBD2-58A2ED3E78F5}.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Messenger\ContactsLog.txt => moved successfully C:\Users\HD\AppData\Local\Microsoft\Photo Acquisition\PreviouslyAcquired.db => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Backup\new\Mail.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Calendars\DBStore\Backup\new\WLCalendarStore.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Calendars\DBStore\WLCalendarStore.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Mail.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Sentinel\WLMailSearchSentinel.eml => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Storage Folders\Drafts\101168F3-00000001.eml => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live Mail\Storage Folders\Drafts\27B43BAC-00000002.eml => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live\Contacts\Default\15.4\DBStore\Backup\new\contacts.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Live\Contacts\Default\15.4\DBStore\contacts.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Backup\new\WindowsMail.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Local Folders\Inbox\1642710B-00000001.eml => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Bears.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Garden.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\GreenBubbles.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\HandPrints.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\OrangeCircles.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Peacock.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Roses.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\ShadesOfBlue.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\SoftBlue.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\Stationery\Stars.jpg => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Mail\WindowsMail.pat => moved successfully C:\Users\HD\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNS.DTD => moved successfully "C:\Users\HD\AppData\Local\Opera\Opera\icons\addons.opera.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\duckduckgo.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\en.wikipedia.org.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\mail.opera.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\mail.yandex.ru.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\my.opera.com.idx" => not found. C:\Users\HD\AppData\Local\Opera\Opera\icons\persistent.txt => moved successfully "C:\Users\HD\AppData\Local\Opera\Opera\icons\portal.opera.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\redir.opera.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\win.mail.ru.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\www.bing.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\www.fastmail.fm.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\www.google.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\www.opera.com.idx" => not found. "C:\Users\HD\AppData\Local\Opera\Opera\icons\yahoo.opera.com.idx" => not found. "C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\LICENSE.txt" => not found. "C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\README.txt" => not found. "C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\THIRDPARTYLICENSEREADME.txt" => not found. "C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\bin\client\Xusage.txt" => not found. "C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\lib\deploy\ffjcext.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE Common\JRE\jre1.6.0_29\lib\jvm.hprof.txt" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnLightYellowResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnSalmonResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnWhiteResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlackOnYellowResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlueOnWhiteResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\BlueOnYellowResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\LightYellowOnBlackResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\WhiteOnBlackResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\WhiteOnBlueResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\YellowOnBlackResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\color\YellowOnBlueResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\ARAResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\BULResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\CHSResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\CHTResourceContainer.zip" => not found. "C:\Users\HD\AppData\Local\Pearson VUE\Pearson VUE Tutorial and Demo\lib\vue\exam\core\resource\language\CSYResourceContainer.zip" => not found. " ==== End of Fixlog 22:03:13 ====
  11. Unfortunately the link to the first version of Javara is broken so not able to run it. I ran the second version. User initialised redundant data purge. ...................... Exception encountered in module [JavaRa] Message: Cannot delete a subkey tree because the subkey does not exist. at Microsoft.Win32.RegistryKey.DeleteSubKeyTreeInternal(String subkey) at Microsoft.Win32.RegistryKey.DeleteSubKeyTree(String subkey) at JavaRa.routines_registry.delete_key(String key) Removal routine completed successfully. 0 items have been deleted. == Cleaning JRE temporary files == Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\HELP_DECRYPT.URL Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\HELP_DECRYPT.URL Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\lastAccessed Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9 Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74 Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-36971c15.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4487777a.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-541777b4.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-6205caf4.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-634469ee.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\HELP_DECRYPT.URL == Cleaning JRE temporary files == Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\HELP_DECRYPT.URL Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\HELP_DECRYPT.URL Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\lastAccessed Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9 Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74 Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-36971c15.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4487777a.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-541777b4.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-6205caf4.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-634469ee.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\HELP_DECRYPT.URL == Cleaning JRE temporary files == Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\HELP_DECRYPT.URL Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\HELP_DECRYPT.URL Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\lastAccessed Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9 Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2e267ad9.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74 Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-339ddb74.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-36971c15.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4487777a.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-541777b4.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-6205caf4.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-634469ee.idx Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\HELP_DECRYPT.PNG Deleted file: C:\Users\HD\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\HELP_DECRYPT.URL
  12. I think the c wall list might be picking up some older files that are already deleted as some of the files I have deleted (photos etc) already.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.