SystemLook 30.07.11 by jpshortstuff Log created at 15:43 on 02/05/2013 by aga Administrator - Elevation successful ========== reg ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\AFBAgent] "AFBAgent"= 0x0000000002 (2) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\Amsp] "Amsp"= 0x0000000003 (3) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000032 (50) "SECOND"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\ATKGFNEXSrv] "ATKGFNEXSrv"= 0x0000000002 (2) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\BBSvc] "BBSvc"= 0x0000000002 (2) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000011 (17) "SECOND"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\BBUpdate] "BBUpdate"= 0x0000000003 (3) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000011 (17) "SECOND"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\Bonjour Service] "Bonjour Service"= 0x0000000002 (2) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\fsssvc] "fsssvc"= 0x0000000003 (3) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000011 (17) "SECOND"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\TiMiniService] "TiMiniService"= 0x0000000003 (3) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000032 (50) "SECOND"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\wlidsvc] "wlidsvc"= 0x0000000002 (2) "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000011 (17) "SECOND"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk] "path"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk" "backup"="C:\Windows\pss\Adobe Gamma Loader.lnk.CommonStartup" "location"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "backupExtension"=".CommonStartup" "command"="C:\PROGRA~2\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE " "item"="Adobe Gamma Loader" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AmIcoSinglun64] "key"="SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "item"="AmIcoSinglun64" "hkey"="HKLM" "command"="C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="APSDaemon" "hkey"="HKLM" "command"=""C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ASUS Screen Saver Protector] "command"="C:\Windows\AsScrPro.exe" "hkey"="HKLM" "inimapping"="0" "item"="ASUS Screen Saver Protector" "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "YEAR"= 0x00000007dc (2012) "MONTH"= 0x0000000002 (2) "DAY"= 0x0000000011 (17) "HOUR"= 0x000000000e (14) "MINUTE"= 0x0000000039 (57) "SECOND"= 0x0000000011 (17) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ASUSPRP] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="ASUSPRP" "hkey"="HKLM" "command"=""C:\Program Files (x86)\ASUS\APRP\APRP.EXE"" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ASUSWebStorage] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="ASUSWebStorage" "hkey"="HKLM" "command"="C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ATKMEDIA] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="ATKMEDIA" "hkey"="HKLM" "command"="C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ATKOSD2] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="ATKOSD2" "hkey"="HKLM" "command"="C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CLMLServer] "command"=""C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"" "hkey"="HKLM" "inimapping"="0" "item"="CLMLServer" "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "YEAR"= 0x00000007dc (2012) "MONTH"= 0x0000000002 (2) "DAY"= 0x0000000011 (17) "HOUR"= 0x000000000e (14) "MINUTE"= 0x0000000039 (57) "SECOND"= 0x0000000011 (17) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Facebook Update] "key"="SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "item"="Facebook Update" "hkey"="HKCU" "command"=""C:\Users\aga\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Gadu-Gadu 10] "key"="SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "item"="Gadu-Gadu 10" "hkey"="HKCU" "command"=""C:\Program Files (x86)\Gadu-Gadu 10\gg.exe"" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HControlUser] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="HControlUser" "hkey"="HKLM" "command"="C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Nuance PDF Reader-reminder] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="Nuance PDF Reader-reminder" "hkey"="HKLM" "command"=""C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PrivitizeVPN] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="PrivitizeVPN" "hkey"="HKLM" "command"="C:\Program Files (x86)\PrivitizeVPN\PrivitizeVPN.exe /autorun" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl] "command"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "hkey"="HKLM" "inimapping"="0" "item"="RtHDVCpl" "key"="SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "YEAR"= 0x00000007dc (2012) "MONTH"= 0x0000000002 (2) "DAY"= 0x0000000011 (17) "HOUR"= 0x000000000e (14) "MINUTE"= 0x0000000034 (52) "SECOND"= 0x000000001c (28) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SonicMasterTray] "key"="SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "item"="SonicMasterTray" "hkey"="HKLM" "command"="C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000005 (5) "DAY"= 0x0000000001 (1) "HOUR"= 0x0000000014 (20) "MINUTE"= 0x0000000009 (9) "SECOND"= 0x000000001e (30) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Trend Micro Titanium] "key"="SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "item"="Trend Micro Titanium" "hkey"="HKLM" "command"="C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none"" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VizorHtmlDialog.exe] "key"="SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "item"="VizorHtmlDialog.exe" "hkey"="HKLM" "command"=""C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF"" "inimapping"="0" "YEAR"= 0x00000007dd (2013) "MONTH"= 0x0000000004 (4) "DAY"= 0x000000001e (30) "HOUR"= 0x0000000012 (18) "MINUTE"= 0x0000000031 (49) "SECOND"= 0x0000000028 (40) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state] "startup"= 0x0000000002 (2) "services"= 0x0000000002 (2) -= EOF =-