Hi
Avira keeps popping up with a box and the name of something which it want me to 'deny access' to. It would not let me continue the OTL scan until I performed these actions (about 7 times).
Crystal
OTL logfile created on: 28/02/2010 2:51:52 PM - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000C09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
511.00 Mb Total Physical Memory | 335.00 Mb Available Physical Memory | 66.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 78.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 111.78 Gb Total Space | 98.78 Gb Free Space | 88.37% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: PUNKY
Current User Name: Crystal & Addz
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Minimal
Quick Scan
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
PRC - C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
PRC - C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - C:\Program Files\Telstra\BigPond Wireless Broadband 2.0\BigPond_CM.exe (Telstra)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (NMIndexingService) – File not found
SRV - (iPod Service) – C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (gusvc) – C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (JavaQuickStarterService) – C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (AntiVirService) – C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (Apple Mobile Device) – C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (AntiVirSchedulerService) – C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (Bonjour Service) – C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (LightScribeService) – C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
SRV - (ServiceLayer) – C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia.)
SRV - (NVSvc) – C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.com/search?q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com.au/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = localhost:2323
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "
http://www.google.com"
FF - prefs.js..extensions.enabledItems: {CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}:3.0.1
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20091028
FF - prefs.js..network.proxy.ftp: "localhost"
FF - prefs.js..network.proxy.ftp_port: 2323
FF - prefs.js..network.proxy.gopher: "localhost"
FF - prefs.js..network.proxy.gopher_port: 2323
FF - prefs.js..network.proxy.http: "localhost"
FF - prefs.js..network.proxy.http_port: 2323
FF - prefs.js..network.proxy.no_proxies_on: "local,*.local"
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.socks: "localhost"
FF - prefs.js..network.proxy.socks_port: 2323
FF - prefs.js..network.proxy.ssl: "localhost"
FF - prefs.js..network.proxy.ssl_port: 2323
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/02/01 20:50:15 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/02/01 20:50:15 | 000,000,000 | —D | M]
[2009/12/15 11:58:10 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Mozilla\Extensions
[2009/08/13 02:20:29 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Mozilla\Extensions\[removed]
[2010/02/28 11:24:46 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Mozilla\Firefox\Profiles\mppc2bn9.default\extensions
[2010/02/28 11:24:46 | 000,000,000 | —D | M] (WOT) – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Mozilla\Firefox\Profiles\mppc2bn9.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2010/02/07 19:59:34 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Mozilla\Firefox\Profiles\mppc2bn9.default\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}
[2009/12/15 11:57:08 | 000,000,000 | —D | M] – C:\Program Files\Mozilla Firefox\extensions
O1 HOSTS File: ([2010/02/28 10:53:18 | 000,000,027 | —- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (BigPond Wireless Broadband 2.0 Auto Dial) - {DB92EC3F-697D-4C3B-9A3B-3ABBD23D4A85} - C:\Program Files\Telstra\BigPond Wireless Broadband 2.0\bpwbb2ad.dll (Telstra)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [BigPondWirelessBroadbandCM] C:\Program Files\Telstra\BigPond Wireless Broadband 2.0\BigPond_CM.exe (Telstra)
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [LifeCam] C:\Program Files\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [VX1000] C:\WINDOWS\vVX1000.exe (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ClassicShell = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Feed Discovery present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Feeds present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Security present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbar present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeKeyboardNavigationIndicators = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoBandCustomize = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\Yinsthelper.dll (Installation Support)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://www.update.microsoft.com/microsoftu…b?1189190842093 (MUWebControl Class)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.0…oUploader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8A0DCBDB-6E20-489C-9041-C1E8A0352E75} http://awbeta.net-nucleus.com/FIX/WinATS.cab (Mirar_Dummy_ATS1 Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {E862C832-3A5F-4CEB-BFAA-167B22010A71}
http://support.packardbell.com/files/activ…nfosFinder2.CAB (InfosFinder2.InfosFinder)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/07/20 13:49:10 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] – "%1" %*
O35 - exefile [open] – "%1" %*
========== Files/Folders - Created Within 14 Days ==========
[2010/02/28 14:48:18 | 000,549,888 | —- | C] (OldTimer Tools) – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\OTL.exe
[2010/02/28 13:42:33 | 000,000,000 | -HSD | C] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\PrivacIE
[2010/02/28 13:16:06 | 000,000,000 | —D | C] – C:\ComboFix
[2010/02/28 12:16:29 | 000,000,000 | —D | C] – C:\Config.Msi
[2010/02/28 12:15:52 | 000,000,000 | —D | C] – C:\WINDOWS\SxsCaPendDel
[2010/02/28 12:02:43 | 000,095,024 | —- | C] (Sunbelt Software) – C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010/02/28 11:56:58 | 000,000,000 | —D | C] – C:\Program Files\Lavasoft
[2010/02/28 11:56:58 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINDOWS\Application Data\Lavasoft
[2010/02/28 11:18:26 | 000,096,104 | —- | C] (Avira GmbH) – C:\WINDOWS\System32\drivers\avipbb.sys
[2010/02/28 11:18:25 | 000,055,656 | —- | C] (Avira GmbH) – C:\WINDOWS\System32\drivers\avgntflt.sys
[2010/02/28 11:18:25 | 000,045,416 | —- | C] (Avira GmbH) – C:\WINDOWS\System32\drivers\avgntdd.sys
[2010/02/28 11:18:25 | 000,022,360 | —- | C] (Avira GmbH) – C:\WINDOWS\System32\drivers\avgntmgr.sys
[2010/02/28 11:18:23 | 000,028,520 | —- | C] (Avira GmbH) – C:\WINDOWS\System32\drivers\ssmdrv.sys
[2010/02/28 11:18:20 | 000,000,000 | —D | C] – C:\Program Files\Avira
[2010/02/28 11:18:20 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira
[2010/02/27 08:53:27 | 000,000,000 | RHSD | C] – C:\cmdcons
[2010/02/27 08:51:42 | 000,212,480 | —- | C] (SteelWerX) – C:\WINDOWS\SWXCACLS.exe
[2010/02/27 08:51:42 | 000,161,792 | —- | C] (SteelWerX) – C:\WINDOWS\SWREG.exe
[2010/02/27 08:51:42 | 000,136,704 | —- | C] (SteelWerX) – C:\WINDOWS\SWSC.exe
[2010/02/27 08:51:42 | 000,031,232 | —- | C] (NirSoft) – C:\WINDOWS\NIRCMD.exe
[2010/02/27 08:50:57 | 000,000,000 | —D | C] – C:\Qoobox
[2010/02/24 03:03:11 | 000,000,000 | —D | C] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Malwarebytes
[2010/02/24 03:03:05 | 000,038,224 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/02/24 03:03:03 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
[2010/02/24 03:03:02 | 000,019,160 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbam.sys
[2010/02/24 03:03:02 | 000,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
[2010/02/24 02:59:27 | 000,000,000 | —D | C] – C:\WINDOWS\ERDNT
[2010/02/24 02:58:12 | 000,000,000 | —D | C] – C:\Program Files\ERUNT
[2007/07/20 13:52:41 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2007/07/20 13:52:40 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2007/07/20 13:48:46 | 000,000,000 | –SD | M] – C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2007/07/20 13:48:46 | 000,000,000 | –SD | M] – C:\Documents and Settings\LocalService\Application Data\Microsoft
[4 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 14 Days ==========
[2010/02/28 14:48:25 | 000,549,888 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\OTL.exe
[2010/02/28 13:24:43 | 000,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/02/28 13:23:22 | 000,000,227 | —- | M] () – C:\WINDOWS\system.ini
[2010/02/28 12:40:54 | 000,002,206 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2010/02/28 12:40:32 | 000,000,236 | —- | M] () – C:\WINDOWS\tasks\OGALogon.job
[2010/02/28 12:40:28 | 000,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2010/02/28 12:39:03 | 004,980,736 | —- | M] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\ntuser.dat
[2010/02/28 12:39:03 | 000,000,178 | -HS- | M] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\ntuser.ini
[2010/02/28 12:02:41 | 000,095,024 | —- | M] (Sunbelt Software) – C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010/02/28 11:18:44 | 000,001,707 | —- | M] () – C:\Documents and Settings\All Users.WINDOWS\Desktop\Avira AntiVir Control Center.lnk
[2010/02/28 10:53:18 | 000,000,027 | —- | M] () – C:\WINDOWS\System32\drivers\etc\hosts
[2010/02/28 10:42:15 | 000,002,577 | —- | M] () – C:\WINDOWS\System32\CONFIG.NT
[2010/02/27 17:41:03 | 000,000,284 | —- | M] () – C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/02/27 08:53:40 | 000,000,460 | RHS- | M] () – C:\boot.ini
[2010/02/27 08:50:17 | 003,873,931 | R— | M] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\ComboFix.exe
[2010/02/26 17:57:40 | 000,293,376 | —- | M] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\gymer.exe
[2010/02/25 11:31:00 | 000,001,374 | —- | M] () – C:\WINDOWS\imsins.BAK
[2010/02/25 10:37:24 | 000,000,120 | —- | M] () – C:\WINDOWS\Ydicejukoze.dat
[2010/02/25 10:36:10 | 000,000,000 | —- | M] () – C:\WINDOWS\Obapezupewada.bin
[2010/02/24 05:34:00 | 000,000,696 | —- | M] () – C:\Documents and Settings\All Users.WINDOWS\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/02/24 02:58:13 | 000,000,611 | —- | M] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\NTREGOPT.lnk
[2010/02/24 02:58:13 | 000,000,592 | —- | M] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\ERUNT.lnk
[2010/02/23 21:30:07 | 000,002,137 | —- | M] () – C:\Documents and Settings\All Users.WINDOWS\Desktop\iTunes.lnk
[2010/02/21 19:31:27 | 000,040,960 | —- | M] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[4 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/02/28 11:18:44 | 000,001,707 | —- | C] () – C:\Documents and Settings\All Users.WINDOWS\Desktop\Avira AntiVir Control Center.lnk
[2010/02/27 08:53:40 | 000,000,389 | —- | C] () – C:\Boot.bak
[2010/02/27 08:53:34 | 000,260,272 | —- | C] () – C:\cmldr
[2010/02/27 08:51:42 | 000,261,632 | —- | C] () – C:\WINDOWS\PEV.exe
[2010/02/27 08:51:42 | 000,098,816 | —- | C] () – C:\WINDOWS\sed.exe
[2010/02/27 08:51:42 | 000,080,412 | —- | C] () – C:\WINDOWS\grep.exe
[2010/02/27 08:51:42 | 000,077,312 | —- | C] () – C:\WINDOWS\MBR.exe
[2010/02/27 08:51:42 | 000,068,096 | —- | C] () – C:\WINDOWS\zip.exe
[2010/02/27 08:50:06 | 003,873,931 | R— | C] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\ComboFix.exe
[2010/02/26 17:57:40 | 000,293,376 | —- | C] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\gymer.exe
[2010/02/24 03:03:07 | 000,000,696 | —- | C] () – C:\Documents and Settings\All Users.WINDOWS\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/02/24 02:58:13 | 000,000,611 | —- | C] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\NTREGOPT.lnk
[2010/02/24 02:58:13 | 000,000,592 | —- | C] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop\ERUNT.lnk
[2010/02/24 02:03:47 | 000,000,000 | —- | C] () – C:\WINDOWS\Obapezupewada.bin
[2010/02/24 02:03:45 | 000,000,120 | —- | C] () – C:\WINDOWS\Ydicejukoze.dat
[2009/08/03 15:07:42 | 000,403,816 | —- | C] () – C:\WINDOWS\System32\OGACheckControl.dll
[2008/02/05 13:28:20 | 000,000,051 | —- | C] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Local Settings\Application Data\setup.txt
[2007/10/23 20:34:23 | 000,000,276 | —- | C] () – C:\WINDOWS\System32\MRT.INI
[2007/10/09 06:46:06 | 000,000,376 | —- | C] () – C:\WINDOWS\ODBC.INI
[2007/10/04 17:14:48 | 002,067,140 | R— | C] () – C:\WINDOWS\System32\avcodec.dll
[2007/09/08 20:53:03 | 000,000,151 | —- | C] () – C:\WINDOWS\PhotoSnapViewer.INI
[2007/09/08 18:26:11 | 000,015,498 | R— | C] () – C:\WINDOWS\VX1000.ini
[2007/08/25 16:47:53 | 000,000,069 | —- | C] () – C:\WINDOWS\NeroDigital.ini
[2007/08/24 23:55:40 | 000,061,440 | —- | C] () – C:\WINDOWS\System32\dsnct511.dll
[2007/08/24 23:55:40 | 000,015,541 | R— | C] () – C:\WINDOWS\snct511.ini
[2007/08/24 23:55:39 | 000,219,264 | R— | C] () – C:\WINDOWS\System32\drivers\snct511.sys
[2007/08/24 23:55:39 | 000,028,672 | R— | C] () – C:\WINDOWS\System32\vsnct511.dll
[2007/08/12 15:46:24 | 000,000,093 | —- | C] () – C:\WINDOWS\AVerTV2K.ini
[2007/08/11 20:39:01 | 000,000,046 | —- | C] () – C:\WINDOWS\System32\Oeminfo.ini
[2007/08/02 15:12:50 | 000,000,288 | —- | C] () – C:\WINDOWS\_delis32.ini
[2007/07/28 20:30:52 | 000,000,091 | —- | C] () – C:\WINDOWS\msiosd.ini
[2007/07/28 15:12:43 | 000,000,153 | —- | C] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Local Settings\Application Data\fusioncache.dat
[2007/07/28 04:34:44 | 000,000,041 | —- | C] () – C:\WINDOWS\SIERRA.INI
[2007/07/28 03:10:21 | 000,008,704 | —- | C] () – C:\WINDOWS\System32\CNMVS7I.DLL
[2007/07/27 18:42:49 | 000,040,960 | —- | C] () – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2005/02/21 11:27:25 | 000,040,448 | —- | C] () – C:\WINDOWS\System32\REGOBJ.DLL
[2004/08/04 22:00:00 | 000,027,440 | —- | C] () – C:\WINDOWS\System32\drivers\secdrv.sys
[2002/01/27 05:02:00 | 000,792,064 | —- | C] () – C:\WINDOWS\System32\drivers\btxbar.sys.bak
========== LOP Check ==========
[2007/08/11 18:57:28 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\Avg7
[2007/08/11 20:00:32 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\CA
[2007/08/25 17:03:59 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\LightScribe
[2007/08/02 01:28:46 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\PC Suite
[2007/07/28 08:57:45 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\Playtonium Games
[2007/10/05 15:54:48 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP
[2007/08/11 20:35:37 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\TuneUp Software
[2007/08/27 04:11:55 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\Ulead Systems
[2010/02/01 19:54:00 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/08/04 20:44:12 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2007/08/12 16:11:57 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\AverAlbum
[2007/10/09 06:42:15 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Canon
[2010/02/23 01:28:54 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\LimeWire
[2007/08/10 07:44:33 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\MSNInstaller
[2007/08/24 01:48:13 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Nokia
[2007/07/27 18:42:24 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\PC Suite
[2009/08/04 21:21:18 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Red Chair Software
[2007/07/27 23:52:28 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Registry Cleaner
[2007/10/04 17:23:32 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Samsung
[2007/07/27 17:45:54 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Systweak
[2007/08/11 20:35:52 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\TuneUp Software
[2007/08/13 18:50:00 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Ulead Systems
[2007/08/12 04:41:19 | 000,000,000 | —D | M] – C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Application Data\Vso
[2010/02/28 12:40:32 | 000,000,236 | —- | M] () – C:\WINDOWS\Tasks\OGALogon.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:27AAAD97
< End of report >
OTL Extras logfile created on: 28/02/2010 2:51:52 PM - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = C:\Documents and Settings\Crystal & Addz.HOME-8B021C13CE\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000C09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
511.00 Mb Total Physical Memory | 335.00 Mb Available Physical Memory | 66.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 78.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 111.78 Gb Total Space | 98.78 Gb Free Space | 88.37% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: PUNKY
Current User Name: Crystal & Addz
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Minimal
Quick Scan
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.html [@ = htmlfile] – C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] – C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
exefile [open] – "%1" %*
htmlfile – "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] – "%programfiles%\internet explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\MSN Messenger\msncall.exe" = C:\Program Files\MSN Messenger\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone) – File not found
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call – (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\WINDOWS\system32\mmc.exe" = C:\WINDOWS\system32\mmc.exe:*:Enabled:Microsoft Management Console – (Microsoft Corporation)
"C:\Program Files\Microsoft LifeCam\LifeExp.exe" = C:\Program Files\Microsoft LifeCam\LifeExp.exe:*:Enabled:LifeExp.exe – (Microsoft Corporation)
"C:\Program Files\Microsoft LifeCam\LifeCam.exe" = C:\Program Files\Microsoft LifeCam\LifeCam.exe:*:Enabled:LifeCam.exe – (Microsoft Corporation)
"C:\Program Files\Bonjour\mDNSResponder.exe" = C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour – (Apple Inc.)
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call – (Microsoft Corporation)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes – (Apple Inc.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{068502DA-6979-4D9A-BBE1-C3AD0FF11F19}" = Ulead DVD MovieFactory 3 SE
"{06C32EA0-4A22-4919-979A-8700715865B8}" = Microsoft LifeCam
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0EEE3193-5E0D-471B-BFB0-0C2034F17B3B}" = BigPond Wireless Broadband 2.8.13
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java™ 6 Update 17
"{2EBA5473-558B-462C-AEE4-FE50FA799F2A}" = Mouse Driver
"{3248F0A8-6813-11D6-A77B-00B0D0150030}" = J2SE Runtime Environment 5.0 Update 3
"{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java™ 6 Update 2
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{45534579-B75B-4A42-953B-2EF8E1DEB4F3}" = Microsoft XML Parser
"{49FC50FC-F965-40D9-89B4-CBFF80941033}" = Windows Movie Maker 2.0
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{888019C0-54D4-40C2-9274-27B9DAB17017}" = Intel® Network Connections [removed]
"{8AD824A5-1CCC-4BB7-82C9-E6FB25CC0479}" = VIMICRO USB PC Camera VC0305
"{90280409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional with FrontPage
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{A87B11AC-4344-4E5D-8B12-8F471A87DAD9}" = LightScribe 1.4.136.1
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AB2347E4-153B-4194-AA3B-97C0A662B369}" = PC Connectivity Solution
"{AC76BA86-7AD7-1033-7B44-A70000000000}" = Adobe Reader 7.0
"{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}" = REALTEK GbE & FE Ethernet PCI NIC Driver
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C4A4722E-79F9-417C-BD72-8D359A090C97}" = Samsung PC Studio
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CECFDD53-35DB-4235-9363-7964A0C88E0E}" = Samsung PC Studio
"{D6E4E5D6-7693-4BB4-95BA-21F38FAFEE90}" = Safari
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}" = Samsung PC Studio 3 USB Driver Installer
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F439D7AF-03F3-4F8E-AEC4-571BFE977C61}" = iTunes
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop 7.0" = Adobe Photoshop 7.0
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"ERUNT_is1" = ERUNT 1.1j
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"Macromedia Shockwave Player" = Macromedia Shockwave Player
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6)" = Mozilla Firefox (3.6)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA Display Driver" = NVIDIA Display Driver
"Picasa 3" = Picasa 3
"SAMSUNG CDMA Modem" = SAMSUNG CDMA Modem Driver Set
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"TweakMP9" = Windows Media Player 9 Series TweakMP PowerToy
"WIC" = Windows Imaging Component
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01005" = Microsoft User-Mode Driver Framework Feature Pack 1.5
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 5/10/2007 1:59:05 AM | Computer Name = HOME-8B021C13CE | Source = MsiInstaller | ID = 11606
Description = Product: Java™ 6 Update 3 – Error 1606.Could not access network
location
http://javadl.sun.com/webapps/download/Get…86/jb160000.cab.
Error - 4/08/2009 6:05:23 AM | Computer Name = PUNKY | Source = crypt32 | ID = 131083
Description = Failed extract of third-party root list from auto update cab at: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file.
Error - 4/08/2009 6:05:23 AM | Computer Name = PUNKY | Source = crypt32 | ID = 131083
Description = Failed extract of third-party root list from auto update cab at: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file.
Error - 4/08/2009 6:05:38 AM | Computer Name = PUNKY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: This operation returned because the timeout period expired.
Error - 4/08/2009 6:05:49 AM | Computer Name = PUNKY | Source = crypt32 | ID = 131083
Description = Failed extract of third-party root list from auto update cab at: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file.
Error - 15/10/2009 7:45:04 AM | Computer Name = PUNKY | Source = Application Error | ID = 1000
Description = Faulting application iexplore.exe, version 7.0.6000.16876, faulting
module user32.dll, version 5.1.2600.3099, fault address 0x0001d3df.
Error - 18/10/2009 2:32:10 PM | Computer Name = PUNKY | Source = Application Error | ID = 1000
Description = Faulting application iexplore.exe, version 7.0.6000.16915, faulting
module mshtml.dll, version 7.0.6000.16915, fault address 0x002d0b0a.
Error - 18/10/2009 2:32:46 PM | Computer Name = PUNKY | Source = Application Error | ID = 1001
Description = Fault bucket 1513272013.
Error - 26/10/2009 5:06:32 AM | Computer Name = PUNKY | Source = Ci | ID = 4124
Description = Content index on c:\system volume information\catalog.wci is corrupt.
Please shutdown and restart the Indexing Service (cisvc).
Error - 26/10/2009 5:06:32 AM | Computer Name = PUNKY | Source = Ci | ID = 4126
Description = Cleaning up corrupt content index metadata on c:\system volume information\catalog.wci.
Index will be automatically restored by refiltering all documents.
[ System Events ]
Error - 27/02/2010 8:22:19 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM Video Capture service failed to start due
to the following error: %%1058
Error - 27/02/2010 8:22:19 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM TvTuner service failed to start due to the
following error: %%1058
Error - 27/02/2010 8:53:10 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM Video Capture service failed to start due
to the following error: %%1058
Error - 27/02/2010 8:53:10 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM TvTuner service failed to start due to the
following error: %%1058
Error - 27/02/2010 10:08:32 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM Video Capture service failed to start due
to the following error: %%1058
Error - 27/02/2010 10:08:32 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM TvTuner service failed to start due to the
following error: %%1058
Error - 27/02/2010 10:18:38 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM Video Capture service failed to start due
to the following error: %%1058
Error - 27/02/2010 10:18:38 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM TvTuner service failed to start due to the
following error: %%1058
Error - 27/02/2010 10:40:34 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM Video Capture service failed to start due
to the following error: %%1058
Error - 27/02/2010 10:40:34 PM | Computer Name = PUNKY | Source = Service Control Manager | ID = 7000
Description = The AVerMedia, AVerTV WDM TvTuner service failed to start due to the
following error: %%1058
< End of report >