SystemLook 30.07.11 by jpshortstuff Log created at 16:20 on 13/03/2013 by tosza Administrator - Elevation successful ========== dir ========== C:\$Recycle.Bin - Unable to find folder. ========== reg ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{003e0278-eca8-4bb8-a256-3689ca1c2600}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{3BF043EF-A974-49B3-8322-B853CF1E5EC5}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{566296fe-e0e8-475f-ba9c-a31ad31620b1}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{68ddbb56-9d1d-4fd9-89c5-c0da2a625392}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{6FDEDD65-AC51-43CA-B2D0-9EB5D1155D03}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{7007ACCF-3202-11D1-AAD2-00805FC1270E}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{7849596a-48ea-486e-8937-a2a3009f31a9}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{900c0763-5cad-4a34-bc1f-40cd513679d5}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{A1607060-5D4C-467a-B711-2B59A6F25957}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{AAA288BA-9A4C-45B0-95D7-94D524869DB5}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{C2796011-81BA-4148-8FCA-C6643245113F}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{DA67B8AD-E81B-4c70-9B91-B417B5E33527}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{EF4D1E1A-1C87-4AA8-8934-E68E4367468D}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{F08C5AC2-E722-4116-ADB7-CE41B527994B}] @="Bluetooth Authentication Agent SSO" "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{F20487CC-FC04-4B1E-863F-D9801796130B}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{F56F6FDD-AA9D-4618-A949-C1B91AF43B1A}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{fbeb8a05-beee-4442-804e-409d6c4515e9}] "AutoStart"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects\{ff363bfe-4941-4179-a81c-f3f1ca72d820}] @="HomeGroup SSO" "AutoStart"="" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] "!Do not use this registry key"="Use the SHGetFolderPath or SHGetKnownFolderPath function instead" "AppData"="C:\Users\tosza\AppData\Roaming" "Local AppData"="C:\Users\tosza\AppData\Local" "My Video"="C:\Users\tosza\Videos" "{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Libraries" "My Pictures"="C:\Users\tosza\Pictures" "Desktop"="C:\Users\tosza\Desktop" "History"="C:\Users\tosza\AppData\Local\Microsoft\Windows\History" "NetHood"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "{56784854-C6CB-462B-8169-88E350ACB882}"="C:\Users\tosza\Contacts" "Cookies"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Cookies" "Favorites"="C:\Users\tosza\Favorites" "SendTo"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\SendTo" "Start Menu"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Start Menu" "My Music"="C:\Users\tosza\Music" "Programs"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Recent" "CD Burning"="C:\Users\tosza\AppData\Local\Microsoft\Windows\Burn\Burn" "PrintHood"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" "{7D1D3A04-DEBB-4115-95CF-2F29DA2920DA}"="C:\Users\tosza\Searches" "{374DE290-123F-4565-9164-39C4925E467B}"="C:\Users\tosza\Downloads" "{A520A1A4-1780-4FF6-BD18-167343C5AF16}"="C:\Users\tosza\AppData\LocalLow" "Startup"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Administrative Tools"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools" "Personal"="C:\Users\tosza\Documents" "{BFB9D5E0-C6A9-404C-B2B2-AE6DB6AF4968}"="C:\Users\tosza\Links" "Cache"="C:\Users\tosza\AppData\Local\Microsoft\Windows\Temporary Internet Files" "Templates"="C:\Users\tosza\AppData\Roaming\Microsoft\Windows\Templates" "{4C5C32FF-BB9D-43B0-B5B4-2D72E54EAAA4}"="C:\Users\tosza\Saved Games" "Fonts"="C:\Windows\Fonts" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "AppData"="%USERPROFILE%\AppData\Roaming" "Cache"="%USERPROFILE%\AppData\Local\Microsoft\Windows\Temporary Internet Files" "Cookies"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Cookies" "Desktop"="%USERPROFILE%\Desktop" "Favorites"="%USERPROFILE%\Favorites" "History"="%USERPROFILE%\AppData\Local\Microsoft\Windows\History" "Local AppData"="%USERPROFILE%\AppData\Local" "My Music"="%USERPROFILE%\Music" "My Pictures"="%USERPROFILE%\Pictures" "My Video"="%USERPROFILE%\Videos" "NetHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "Personal"="%USERPROFILE%\Documents" "Programs"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent" "SendTo"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\SendTo" "Startup"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Start Menu"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu" "Templates"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Templates" "{374DE290-123F-4565-9164-39C4925E467B}"="%USERPROFILE%\Downloads" "PrintHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] "Common Desktop"="C:\Users\Public\Desktop" "Common Start Menu"="C:\ProgramData\Microsoft\Windows\Start Menu" "CommonVideo"="C:\Users\Public\Videos" "CommonPictures"="C:\Users\Public\Pictures" "Common Programs"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs" "CommonMusic"="C:\Users\Public\Music" "Common Administrative Tools"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools" "Common Startup"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "Common Documents"="C:\Users\Public\Documents" "OEM Links"="C:\ProgramData\OEM Links" "Common Templates"="C:\ProgramData\Microsoft\Windows\Templates" "Common AppData"="C:\ProgramData" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "Common Desktop"="%PUBLIC%\Desktop" "Common Documents"="%PUBLIC%\Documents" "CommonPictures"="%PUBLIC%\Pictures" "CommonMusic"="%PUBLIC%\Music" "CommonVideo"="%PUBLIC%\Videos" "{3D644C9B-1FB8-4f30-9B45-F670235F79C0}"="%PUBLIC%\Downloads" "Common Start Menu"="%ProgramData%\Microsoft\Windows\Start Menu" "Common Programs"="%ProgramData%\Microsoft\Windows\Start Menu\Programs" "Common Startup"="%ProgramData%\Microsoft\Windows\Start Menu\Programs\Startup" "Common AppData"="%ProgramData%" "Common Templates"="%ProgramData%\Microsoft\Windows\Templates" -= EOF =-