This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Need Help With Machine

69 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Run OTL again for a final scan and lets see if we missed anything

Run OTL

  • Double click on the icon to run it. Make sure all other windows are closed to let it run uninterrupted.
  • When the window appears, underneath Output at the top change it to Minimal Output.
  • Under the Standard Registry box change it to All.
  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply.
Log Requested

OTL logfile created on: 7/26/2010 8:14:40 AM - Run 3
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Documents and Settings\Dick\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 69.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 78.00% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 111.76 Gb Total Space | 74.76 Gb Free Space | 66.89% Space Free | Partition Type: NTFS
Drive D: | 174.39 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: D30D6921
Current User Name: Dick
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Dick\My Documents\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
PRC - C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE (Microsoft Corporation)
PRC - C:\Program Files\AGI\core\3.0\AGCoreService.exe (AG Interactive)
PRC - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
PRC - C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
PRC - C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
PRC - C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe (SupportSoft, Inc.)
PRC - C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe (SupportSoft, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\SYSTEM32\hpzipm12.exe (HP)
PRC - C:\Program Files\Ulead Systems\Ulead Photo Express 4.0 SE\CalCheck.exe (Ulead Systems, Inc.)
PRC - C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe (Microsoft® Corporation)


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Dick\My Documents\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\SYSTEM32\msscript.ocx (Microsoft Corporation)
MOD - C:\Program Files\Comcast\Desktop Doctor\bin\sprthook.dll (SupportSoft, Inc.)


========== Win32 Services (SafeList) ==========

SRV - (HidServ) – C:\WINDOWS\System32\hidserv.dll File not found
SRV - (AppMgmt) – C:\WINDOWS\System32\appmgmts.dll File not found
SRV - (GoogleDesktopManager-051210-111108) – C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
SRV - (avg9wd) – C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (AGCoreService) – C:\Program Files\AGI\core\3.0\AGCoreService.exe (AG Interactive)
SRV - (getPlus® Helper) getPlus® – C:\Program Files\NOS\bin\getPlus_HelperSvc.exe (NOS Microsystems Ltd.)
SRV - (YahooAUService) – C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
SRV - (NMSAccessU) – C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
SRV - (sprtsvc_ddoctorv2) SupportSoft Sprocket Service (ddoctorv2) – C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe (SupportSoft, Inc.)
SRV - (Pml Driver HPZ12) – C:\WINDOWS\SYSTEM32\hpzipm12.exe (HP)


========== Driver Services (SafeList) ==========

DRV - (SDVC05) – C:\WINDOWS\System32\Drivers\SDVC05.sys File not found
DRV - (MTK) – C:\WINDOWS\System32\Drivers\mtk.sys File not found
DRV - (AvgTdiX) – C:\WINDOWS\System32\Drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgLdx86) – C:\WINDOWS\System32\Drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgMfx86) – C:\WINDOWS\System32\Drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AFS2K) – C:\WINDOWS\System32\drivers\AFS2K.SYS (Oak Technology Inc.)
DRV - (tmcomm) – C:\WINDOWS\SYSTEM32\DRIVERS\tmcomm.sys (Trend Micro Inc.)
DRV - (Cdralw2k) – C:\WINDOWS\System32\drivers\cdralw2k.sys (Sonic Solutions)
DRV - (Cdr4_xp) – C:\WINDOWS\System32\drivers\cdr4_xp.sys (Sonic Solutions)
DRV - (amdagp) – C:\WINDOWS\System32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (sisagp) – C:\WINDOWS\System32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (nv) – C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (iAimFP4) – C:\WINDOWS\SYSTEM32\DRIVERS\wvchntxx.sys (Intel® Corporation)
DRV - (iAimFP3) – C:\WINDOWS\SYSTEM32\DRIVERS\wsiintxx.sys (Intel® Corporation)
DRV - (iAimTV4) – C:\WINDOWS\SYSTEM32\DRIVERS\wch7xxnt.sys (Intel® Corporation)
DRV - (iAimTV3) – C:\WINDOWS\SYSTEM32\DRIVERS\watv04nt.sys (Intel® Corporation)
DRV - (iAimTV1) – C:\WINDOWS\SYSTEM32\DRIVERS\watv02nt.sys (Intel® Corporation)
DRV - (iAimTV0) – C:\WINDOWS\SYSTEM32\DRIVERS\watv01nt.sys (Intel® Corporation)
DRV - (iAimFP0) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv01nt.sys (Intel® Corporation)
DRV - (iAimFP1) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv02nt.sys (Intel® Corporation)
DRV - (iAimFP2) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv05nt.sys (Intel® Corporation)
DRV - (i81x) – C:\WINDOWS\SYSTEM32\DRIVERS\i81xnt5.sys (Intel® Corporation)
DRV - (omci) – C:\WINDOWS\SYSTEM32\DRIVERS\omci.sys (Dell Computer Corporation)
DRV - (bvrp_pci) – C:\WINDOWS\System32\drivers\bvrp_pci.sys ()
DRV - (IPFilter) – C:\WINDOWS\SYSTEM32\DRIVERS\ipfilter.sys (Microsoft Corporation)
DRV - (ati2mtaa) – C:\WINDOWS\SYSTEM32\DRIVERS\ati2mtaa.sys (ATI Technologies Inc.)
DRV - (Sparrow) – C:\WINDOWS\System32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (sym_u3) – C:\WINDOWS\System32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (sym_hi) – C:\WINDOWS\System32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (symc8xx) – C:\WINDOWS\System32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (symc810) – C:\WINDOWS\System32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (MODEMCSA) – C:\WINDOWS\SYSTEM32\DRIVERS\MODEMCSA.sys (Microsoft Corporation)
DRV - (ultra) – C:\WINDOWS\System32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (ql12160) – C:\WINDOWS\System32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1080) – C:\WINDOWS\System32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql1280) – C:\WINDOWS\System32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (dac2w2k) – C:\WINDOWS\System32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (mraid35x) – C:\WINDOWS\System32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (asc) – C:\WINDOWS\System32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550) – C:\WINDOWS\System32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (AliIde) – C:\WINDOWS\System32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (CmdIde) – C:\WINDOWS\System32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (hsf_msft) – C:\WINDOWS\SYSTEM32\DRIVERS\HSF_MSFT.sys (Conexant)
DRV - (EL90XBC) – C:\WINDOWS\SYSTEM32\DRIVERS\EL90XBC5.SYS (3Com Corporation)
DRV - (winachsf) – C:\WINDOWS\SYSTEM32\DRIVERS\hsf_cnxt.sys (Conexant Systems)
DRV - (SpeakerPhone) – C:\WINDOWS\SYSTEM32\DRIVERS\spkpnt.sys (Conexant Systems)
DRV - (K56) – C:\WINDOWS\SYSTEM32\DRIVERS\k56nt.sys (Conexant Systems)
DRV - (Fsks) – C:\WINDOWS\SYSTEM32\DRIVERS\fsksnt.sys (Conexant Systems)
DRV - (SoftFax) – C:\WINDOWS\SYSTEM32\DRIVERS\faxnt.sys (Conexant Systems)
DRV - (Tones) – C:\WINDOWS\SYSTEM32\DRIVERS\tonesnt.sys (Conexant Systems)
DRV - (Fallback) – C:\WINDOWS\SYSTEM32\DRIVERS\fallback.sys (Conexant Systems)
DRV - (basic2) – C:\WINDOWS\SYSTEM32\DRIVERS\basic2.sys (Conexant Systems)
DRV - (Rksample) – C:\WINDOWS\SYSTEM32\DRIVERS\rksample.sys (Conexant Systems)
DRV - (V124) – C:\WINDOWS\SYSTEM32\DRIVERS\v124nt.sys (Conexant Systems)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?p…amp;ar=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerm…tf8&oe;=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\SYSTEM32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://start.mozilla.org/firefox?client=firefox-a&rls;=org.mozilla:en-US:official"
FF - prefs.js..network.proxy.autoconfig_url: "http://overdrive.innernet.net/overdrive.pac"
FF - prefs.js..network.proxy.type: 4


FF - HKLM\software\mozilla\Firefox\extensions\\[removed]: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009/04/09 10:40:26 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/09/02 01:24:58 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG9\Firefox [2010/07/21 08:15:26 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\[removed]: C:\Program Files\AG Toolbar\Firefox\0.1 [2009/05/01 08:00:29 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\avg@igeared: C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared [2010/05/21 12:41:42 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/07/25 05:30:00 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/07/25 05:30:00 | 000,000,000 | —D | M]

[2008/10/23 09:24:24 | 000,000,000 | —D | M] – C:\Documents and Settings\Dick\Application Data\Mozilla\Extensions
[2010/07/26 05:51:49 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Dick\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010/07/23 05:46:13 | 000,000,000 | —D | M] – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\0zeyryfe.Default User\extensions
[2005/12/11 12:30:45 | 000,000,000 | —D | M] (Firefox (default)) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\0zeyryfe.Default User\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010/07/12 04:14:35 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\0zeyryfe.Default User\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}
[2010/07/26 05:53:18 | 000,000,000 | —D | M] – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions
[2009/11/10 20:06:28 | 000,000,000 | —D | M] (Winamp Toolbar) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2010/07/12 03:53:04 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/07/26 05:52:41 | 000,000,000 | —D | M] (Firefox Sync) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{340c2bbc-ce74-4362-90b5-7c26312808ef}
[2010/07/20 02:15:10 | 000,000,000 | —D | M] (WeatherBug) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{3EC9C995-8072-4fc0-953E-4F30620D17F3}
[2010/02/18 10:46:57 | 000,000,000 | —D | M] (Yahoo! Toolbar) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010/07/12 03:53:03 | 000,000,000 | —D | M] (iMacros for Firefox) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2010/02/18 10:46:54 | 000,000,000 | —D | M] (Firefox Showcase) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{89506680-e3f4-484c-a2c0-ed711d481eda}
[2010/07/26 05:52:35 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{D2A6A719-7CBC-4594-85FD-C36AD881424F}
[2010/07/26 05:52:37 | 000,000,000 | —D | M] (Yoono) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{d9284e50-81fc-11da-a72b-0800200c9a66}
[2010/07/17 10:58:28 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\{FBF6D7FB-F305-4445-BB3D-FEF66579A033}
[2010/07/05 17:51:22 | 000,000,000 | —D | M] – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\feedly@devhd
[2010/07/05 17:51:17 | 000,000,000 | —D | M] – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\[removed]
[2010/07/05 17:51:19 | 000,000,000 | —D | M] – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\ejszbwp1.Default User\extensions\feedly@devhd\content\app\extension
[2010/07/12 04:02:48 | 000,000,000 | —D | M] – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\hm7vtyjs.default\extensions
[2009/07/12 18:48:13 | 000,000,000 | —D | M] (Winamp Toolbar) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\hm7vtyjs.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2005/02/06 11:17:53 | 000,000,000 | —D | M] (Firefox (default)) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\hm7vtyjs.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2005/02/06 12:46:40 | 000,000,000 | —D | M] (BBCode) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\hm7vtyjs.default\extensions\{AE37D527-6604-461c-8102-975CF8053A2F}
[2010/07/12 04:14:34 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Dick\Application Data\Mozilla\Firefox\Profiles\hm7vtyjs.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}
[2010/07/26 05:53:18 | 000,000,000 | —D | M] – C:\Program Files\Mozilla Firefox\extensions
[2010/07/25 05:30:00 | 000,000,000 | —D | M] (Default) – C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2006/02/25 07:27:01 | 000,000,000 | —D | M] (SDI_Integrator) – C:\Program Files\Mozilla Firefox\extensions\{9d613b03-9b7c-4fa0-b2f8-32f7cc24873f}
[2009/06/02 12:47:29 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
[2009/04/09 10:40:28 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2010/07/25 05:29:50 | 000,023,512 | —- | M] (Mozilla Foundation) – C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010/07/25 05:29:50 | 000,138,712 | —- | M] (Mozilla Foundation) – C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2010/07/17 13:23:54 | 000,119,808 | —- | M] (Google) – C:\Program Files\Mozilla Firefox\components\GoogleDesktopMozilla.dll
[2009/04/03 08:08:48 | 000,410,984 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
[2008/06/27 17:03:12 | 001,446,440 | —- | M] (Microsoft Corporation) – C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
[2010/07/25 05:29:53 | 000,064,984 | —- | M] (mozilla.org) – C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006/10/26 21:12:16 | 000,016,192 | —- | M] (Microsoft Corporation) – C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2010/06/19 15:34:11 | 000,103,864 | —- | M] (Adobe Systems Inc.) – C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2002/09/27 08:59:00 | 000,090,112 | —- | M] () – C:\Program Files\Mozilla Firefox\plugins\NpPopup.dll
[2009/06/02 01:48:54 | 000,143,360 | —- | M] (Apple Inc.) – C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2005/04/27 16:10:49 | 000,102,400 | —- | M] (RealNetworks) – C:\Program Files\Mozilla Firefox\plugins\npracplug.dll
[2005/06/13 01:12:00 | 000,098,304 | —- | M] (SkillJam Technologies) – C:\Program Files\Mozilla Firefox\plugins\npskilljamloader.dll
[2004/01/13 22:09:25 | 000,176,176 | —- | M] () – C:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
[2010/01/15 20:13:03 | 000,001,394 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
[2010/01/15 20:13:03 | 000,002,193 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
[2010/01/28 11:13:54 | 000,002,266 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\avg_igeared.xml
[2010/01/15 20:13:03 | 000,001,534 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
[2010/01/15 20:13:03 | 000,002,344 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
[2010/01/15 20:13:03 | 000,002,371 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010/07/17 13:23:57 | 000,002,020 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\googledesktop.xml
[2010/01/15 20:13:03 | 000,001,178 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml
[2010/01/15 20:13:03 | 000,001,096 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\yahoo.xml

O1 HOSTS File: ([2009/12/05 03:20:12 | 000,223,826 | R— | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 1001-search.info
O1 - Hosts: 127.0.0.1 www.1001-search.info
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1 www.123topsearch.com
O1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1 www.132.com
O1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 127.0.0.1 www.136136.net
O1 - Hosts: 7882 more lines…
O2 - BHO: (&Yahoo;! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (&Google;) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&Address;) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\SYSTEM32\browseui.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Links;) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\SYSTEM32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Google;) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AVG9_TRAY] C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [ddoctorv2] C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe (Hewlett-Packard)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Inc.)
O4 - HKCU..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe File not found
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Works Calendar Reminders.lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe (Microsoft® Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Ulead Photo Express 4.0 SE Calendar Checker .lnk = C:\Program Files\Ulead Systems\Ulead Photo Express 4.0 SE\CalCheck.exe (Ulead Systems, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuMFUprogramsList = 1
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\SYSTEM32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\SYSTEM32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\SYSTEM32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\SYSTEM32\mswsock.dll (Microsoft Corporation)
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} http://pccheckup.dellfix.com/sdccommon/download/tgctlcm.cab (Support.com Configuration Class)
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} http://support.dell.com/systemprofiler/SysPro.CAB (SysProWmi Class)
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} https://support.microsoft.com/dcode/ActiveX/MSDcode.cab (Microsoft Data Collection Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\Yinsthelper.dll (Installation Support)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdat…b?1125759480093 (MUWebControl Class)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20270.www2.hp.com/ediags/gmn2/inst…tDetection2.cab (GMNRev Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} http://www.pandasoftware.com/activescan/as5/asinst.cab (Reg Error: Key error.)
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} http://ak.imgag.com/imgag/cp/install/Crusher.cab (Creative Toolbox Plug-in)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} http://wwwimages.adobe.com/www.adobe.com/p…obat/nos/gp.cab (get_atlcom Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shoc…ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: CabBuilder http://ak.imgag.com/imgag/kiw/toolbar/down…llerControl.cab (Reg Error: Key error.)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O16 - DPF: PackageCab http://ak.imgag.com/imgag/cp/install/AxCtp2.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = [removed] [removed]
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\SYSTEM32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\SYSTEM32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\SYSTEM32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\SYSTEM32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\SYSTEM32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\SYSTEM32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\SYSTEM32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\SYSTEM32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\SYSTEM32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\SYSTEM32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\SYSTEM32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\SYSTEM32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\SYSTEM32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\SYSTEM32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\SYSTEM32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\SYSTEM32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\SYSTEM32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\SYSTEM32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\SYSTEM32\browseui.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\SYSTEM32\browseui.dll (Microsoft Corporation)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/01/10 14:24:32 | 000,000,488 | —- | M] () - C:\AUTOEXEC.BAK – [ NTFS ]
O32 - AutoRun File - [2010/02/18 10:36:48 | 000,000,590 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O32 - AutoRun File - [2009/01/03 17:49:52 | 000,000,375 | —- | M] () - C:\AUTOEXEC.LTN – [ NTFS ]
O32 - AutoRun File - [2009/02/12 00:08:51 | 000,000,045 | R— | M] () - D:\autorun.inf – [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010/07/25 12:09:37 | 000,000,000 | —D | C] – C:\Program Files\ESET
[2010/07/22 02:23:04 | 000,000,000 | —D | C] – C:\Documents and Settings\Dick\My Documents\Dick's Finances
[2010/07/16 08:05:30 | 000,012,536 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\avgrsstx.dll
[2010/07/14 16:26:09 | 000,744,448 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\helpsvc.exe
[2010/07/12 06:49:44 | 000,000,000 | —D | C] – C:\Avenger
[2010/07/12 04:09:38 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Desktop\Microsoft IntelliPoint
[2010/07/11 20:37:55 | 000,000,000 | —D | C] – C:\Documents and Settings\Dick\Local Settings\Application Data\The Weather Channel
[2010/07/10 06:28:58 | 000,000,000 | —D | C] – C:\Program Files\Search Toolbar
[2010/07/09 04:52:53 | 000,000,000 | —D | C] – C:\Amazon Orders
[2010/07/07 06:31:09 | 000,000,000 | —D | C] – C:\Post 606 Website
[2010/07/07 05:53:27 | 000,674,280 | —- | C] (ScreenTime Media) – C:\WINDOWS\System32\nature_3120380.scr
[2010/07/07 05:53:27 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Screentime
[2010/07/07 05:52:30 | 000,000,000 | —D | C] – C:\Documents and Settings\Dick\Local Settings\Application Data\Screentime
[2010/07/06 03:16:58 | 000,000,000 | —D | C] – C:\Documents and Settings\Dick\My Documents\Todd Ryder
[2010/07/05 04:11:39 | 000,000,000 | —D | C] – C:\Documents and Settings\Dick\Application Data\Process Hacker
[2010/07/05 04:10:50 | 000,000,000 | —D | C] – C:\Program Files\Process Hacker
[2010/07/04 19:20:44 | 000,000,000 | —D | C] – C:\Documents and Settings\Dick\My Documents\emmys Documents& Pics
[2010/07/02 05:56:23 | 000,000,000 | —D | C] – C:\Documents and Settings\Dick\My Documents\Dell Dimension E510
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]
[1 C:\Documents and Settings\Dick\My Documents\*.tmp files -> C:\Documents and Settings\Dick\My Documents\*.tmp -> ]
[1 C:\Documents and Settings\Dick\*.tmp files -> C:\Documents and Settings\Dick\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/07/26 08:10:23 | 000,000,000 | —- | M] () – C:\Documents and Settings\Dick\Local Settings\Application Data\prvlcl.dat
[2010/07/26 08:07:49 | 062,552,093 | —- | M] () – C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/07/26 05:56:53 | 000,002,515 | —- | M] () – C:\Documents and Settings\Dick\Desktop\Microsoft Word.lnk
[2010/07/26 05:45:59 | 000,001,170 | —- | M] () – C:\WINDOWS\System32\WPA.DBL
[2010/07/26 05:45:29 | 000,000,436 | —- | M] () – C:\WINDOWS\tasks\RegCure Program Check.job
[2010/07/26 05:45:16 | 000,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/07/26 05:45:13 | 000,002,048 | –S- | M] () – C:\WINDOWS\BOOTSTAT.DAT
[2010/07/26 05:32:33 | 009,699,328 | —- | M] () – C:\Documents and Settings\Dick\ntuser.dat
[2010/07/26 05:32:27 | 000,000,178 | -HS- | M] () – C:\Documents and Settings\Dick\NTUSER.INI
[2010/07/26 04:59:36 | 000,000,326 | —- | M] () – C:\WINDOWS\tasks\Spybot - Search & Destroy - Scheduled Task.job
[2010/07/26 00:33:00 | 000,000,414 | —- | M] () – C:\WINDOWS\tasks\ParetoLogic Update Version2.job
[2010/07/25 22:08:57 | 000,000,022 | —- | M] () – C:\WINDOWS\popcinfot.dat
[2010/07/25 19:31:43 | 002,285,901 | —- | M] () – C:\Documents and Settings\Dick\My Documents\JumboRemoteEM_InstructionManual.pdf
[2010/07/25 19:12:41 | 000,019,883 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Larry Clayton Resume.docx
[2010/07/25 18:00:00 | 000,000,440 | —- | M] () – C:\WINDOWS\tasks\ParetoLogic Registration.job
[2010/07/25 04:13:00 | 000,000,370 | —- | M] () – C:\WINDOWS\tasks\RegCure.job
[2010/07/25 03:06:30 | 000,002,519 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Comcast Desktop Doctor.lnk
[2010/07/24 20:25:34 | 001,150,464 | —- | M] () – C:\Documents and Settings\Dick\My Documents\megabytes.doc
[2010/07/24 20:20:20 | 000,102,501 | —- | M] () – C:\Documents and Settings\Dick\Desktop\Malwarebytes Problem.JPG
[2010/07/24 20:09:05 | 002,359,350 | —- | M] () – C:\Documents and Settings\Dick\Desktop\Malwarebytes Problem.bmp
[2010/07/24 04:26:59 | 000,096,010 | —- | M] () – C:\Documents and Settings\Dick\Desktop\GMER 1.docx
[2010/07/23 04:34:15 | 000,000,871 | —- | M] () – C:\Documents and Settings\Dick\Desktop\Shortcut to OTL.lnk
[2010/07/22 02:26:40 | 000,015,143 | —- | M] () – C:\Documents and Settings\Dick\My Documents\USAA Account.docx
[2010/07/21 05:56:57 | 000,000,226 | —- | M] () – C:\WINDOWS\wininit.ini
[2010/07/19 11:47:15 | 000,226,258 | —- | M] () – C:\Documents and Settings\Dick\My Documents\EMBARQ_WiFi_Wireless.pdf
[2010/07/17 15:45:55 | 001,431,981 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Mr Coffee JWX27_43_56431310.pdf
[2010/07/17 10:40:27 | 000,000,022 | —- | M] () – C:\Documents and Settings\Dick\Desktop\DelIndex.BAT
[2010/07/16 08:05:33 | 000,243,024 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgtdix.sys
[2010/07/16 08:05:30 | 000,012,536 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\avgrsstx.dll
[2010/07/16 08:04:22 | 000,216,400 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgldx86.sys
[2010/07/16 04:47:13 | 000,150,528 | —- | M] () – C:\Documents and Settings\Dick\My Documents\One of the Better Ones.doc
[2010/07/15 04:53:55 | 000,000,264 | —- | M] () – C:\WINDOWS\tasks\Spybot - Search & Destroy Updater - Scheduled Task.job
[2010/07/12 18:28:17 | 000,261,697 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Home Association CardsNEW Page 30.docx
[2010/07/12 18:24:02 | 000,002,473 | —- | M] () – C:\Documents and Settings\Dick\Desktop\Microsoft Excel.lnk
[2010/07/12 05:32:35 | 000,026,112 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Electronic Cigarete.doc
[2010/07/12 03:56:22 | 000,001,062 | —- | M] () – C:\Documents and Settings\Dick\My Documents\cc_20100712_035614.reg
[2010/07/11 09:08:23 | 000,009,410 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Todd Ryder.xlsx
[2010/07/11 06:58:07 | 000,014,852 | —- | M] () – C:\Documents and Settings\Dick\My Documents\USAA.docx
[2010/07/10 17:03:41 | 000,258,048 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Did I Read this Right.doc
[2010/07/09 21:48:55 | 000,015,058 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Your Names to be on the check.docx
[2010/07/09 06:39:27 | 000,263,862 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Home Association CardsNEW Page 29.docx
[2010/07/08 16:39:16 | 000,262,856 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Home Association CardsNEW Page 28.docx
[2010/07/08 06:07:31 | 000,001,854 | —- | M] () – C:\Documents and Settings\Dick\My Documents\cc_20100708_060723.reg
[2010/07/08 03:57:50 | 000,124,416 | —- | M] () – C:\Documents and Settings\Dick\My Documents\BETWEEN THE U.doc
[2010/07/07 17:24:52 | 000,014,909 | —- | M] () – C:\Documents and Settings\Dick\My Documents\HOME ASSOCIATION BOARD MINUTES.docx
[2010/07/07 08:28:29 | 000,026,338 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Resume.docx
[2010/07/07 08:26:05 | 000,062,976 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Resume.doc
[2010/07/07 05:53:27 | 000,674,280 | —- | M] (ScreenTime Media) – C:\WINDOWS\System32\nature_3120380.scr
[2010/07/07 04:39:42 | 000,000,288 | -H– | M] () – C:\WINDOWS\tasks\Microsoft_Hardware_Launch_IPoint_exe.job
[2010/07/06 03:48:52 | 000,042,496 | —- | M] () – C:\Documents and Settings\Dick\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/05 08:06:50 | 000,015,087 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Richard G.docx
[2010/07/05 05:03:30 | 000,024,980 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Brad Slaybaugh.docx
[2010/07/05 04:58:24 | 000,024,936 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Dear Tim.docx
[2010/07/05 04:31:04 | 000,003,085 | —- | M] () – C:\Documents and Settings\Dick\Desktop\Penn State.jpg
[2010/07/05 04:28:30 | 000,009,145 | —- | M] () – C:\Documents and Settings\Dick\My Documents\July 2010 Budget.xlsx
[2010/07/05 04:10:51 | 000,001,677 | —- | M] () – C:\Documents and Settings\Dick\Desktop\Process Hacker.lnk
[2010/07/04 20:37:30 | 000,021,795 | —- | M] () – C:\Documents and Settings\Dick\My Documents\Mike Carrucoli.docx
[2010/07/03 04:25:46 | 000,496,264 | —- | M] () – C:\WINDOWS\System32\PERFH009.DAT
[2010/07/03 04:25:46 | 000,091,642 | —- | M] () – C:\WINDOWS\System32\PERFC009.DAT
[2010/07/03 04:25:45 | 000,599,752 | —- | M] () – C:\WINDOWS\System32\PerfStringBackup.INI
[2010/07/01 06:28:48 | 000,001,729 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2010/06/30 06:34:32 | 000,003,838 | —- | M] () – C:\Documents and Settings\Dick\My Documents\cc_20100630_063418.reg
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]
[1 C:\Documents and Settings\Dick\My Documents\*.tmp files -> C:\Documents and Settings\Dick\My Documents\*.tmp -> ]
[1 C:\Documents and Settings\Dick\*.tmp files -> C:\Documents and Settings\Dick\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/07/25 19:31:43 | 002,285,901 | —- | C] () – C:\Documents and Settings\Dick\My Documents\JumboRemoteEM_InstructionManual.pdf
[2010/07/25 15:53:17 | 000,019,883 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Larry Clayton Resume.docx
[2010/07/25 03:04:28 | 000,002,519 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Comcast Desktop Doctor.lnk
[2010/07/24 20:25:32 | 001,150,464 | —- | C] () – C:\Documents and Settings\Dick\My Documents\megabytes.doc
[2010/07/24 20:20:18 | 000,102,501 | —- | C] () – C:\Documents and Settings\Dick\Desktop\Malwarebytes Problem.JPG
[2010/07/24 20:09:04 | 002,359,350 | —- | C] () – C:\Documents and Settings\Dick\Desktop\Malwarebytes Problem.bmp
[2010/07/24 04:26:58 | 000,096,010 | —- | C] () – C:\Documents and Settings\Dick\Desktop\GMER 1.docx
[2010/07/23 04:34:15 | 000,000,871 | —- | C] () – C:\Documents and Settings\Dick\Desktop\Shortcut to OTL.lnk
[2010/07/22 02:26:40 | 000,015,143 | —- | C] () – C:\Documents and Settings\Dick\My Documents\USAA Account.docx
[2010/07/19 11:47:15 | 000,226,258 | —- | C] () – C:\Documents and Settings\Dick\My Documents\EMBARQ_WiFi_Wireless.pdf
[2010/07/17 15:45:54 | 001,431,981 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Mr Coffee JWX27_43_56431310.pdf
[2010/07/16 04:47:12 | 000,150,528 | —- | C] () – C:\Documents and Settings\Dick\My Documents\One of the Better Ones.doc
[2010/07/15 04:53:55 | 000,000,264 | —- | C] () – C:\WINDOWS\tasks\Spybot - Search & Destroy Updater - Scheduled Task.job
[2010/07/15 04:52:02 | 000,000,326 | —- | C] () – C:\WINDOWS\tasks\Spybot - Search & Destroy - Scheduled Task.job
[2010/07/12 18:28:16 | 000,261,697 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Home Association CardsNEW Page 30.docx
[2010/07/12 05:32:34 | 000,026,112 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Electronic Cigarete.doc
[2010/07/12 03:56:16 | 000,001,062 | —- | C] () – C:\Documents and Settings\Dick\My Documents\cc_20100712_035614.reg
[2010/07/11 08:41:53 | 000,009,410 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Todd Ryder.xlsx
[2010/07/11 06:58:07 | 000,014,852 | —- | C] () – C:\Documents and Settings\Dick\My Documents\USAA.docx
[2010/07/10 17:03:40 | 000,258,048 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Did I Read this Right.doc
[2010/07/09 21:48:52 | 000,015,058 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Your Names to be on the check.docx
[2010/07/09 06:14:55 | 000,263,862 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Home Association CardsNEW Page 29.docx
[2010/07/08 06:53:15 | 000,262,856 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Home Association CardsNEW Page 28.docx
[2010/07/08 06:07:26 | 000,001,854 | —- | C] () – C:\Documents and Settings\Dick\My Documents\cc_20100708_060723.reg
[2010/07/08 03:57:49 | 000,124,416 | —- | C] () – C:\Documents and Settings\Dick\My Documents\BETWEEN THE U.doc
[2010/07/07 17:23:59 | 000,014,909 | —- | C] () – C:\Documents and Settings\Dick\My Documents\HOME ASSOCIATION BOARD MINUTES.docx
[2010/07/07 08:28:28 | 000,026,338 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Resume.docx
[2010/07/07 04:37:50 | 000,000,288 | -H– | C] () – C:\WINDOWS\tasks\Microsoft_Hardware_Launch_IPoint_exe.job
[2010/07/06 03:20:59 | 000,080,790 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Copy of schizo19.jpg
[2010/07/06 03:20:59 | 000,079,595 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Copy of schizo21.jpg
[2010/07/06 03:20:59 | 000,073,197 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Copy of schizo22.jpg
[2010/07/05 08:06:50 | 000,015,087 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Richard G.docx
[2010/07/05 05:03:08 | 000,024,980 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Brad Slaybaugh.docx
[2010/07/05 04:58:24 | 000,024,936 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Dear Tim.docx
[2010/07/05 04:31:03 | 000,003,085 | —- | C] () – C:\Documents and Settings\Dick\Desktop\Penn State.jpg
[2010/07/05 04:27:43 | 000,009,145 | —- | C] () – C:\Documents and Settings\Dick\My Documents\July 2010 Budget.xlsx
[2010/07/05 04:10:51 | 000,001,677 | —- | C] () – C:\Documents and Settings\Dick\Desktop\Process Hacker.lnk
[2010/07/04 20:37:30 | 000,021,795 | —- | C] () – C:\Documents and Settings\Dick\My Documents\Mike Carrucoli.docx
[2010/07/04 19:07:12 | 000,002,473 | —- | C] () – C:\Documents and Settings\Dick\Desktop\Microsoft Excel.lnk
[2010/06/30 06:34:21 | 000,003,838 | —- | C] () – C:\Documents and Settings\Dick\My Documents\cc_20100630_063418.reg
[2010/04/14 08:12:46 | 000,000,130 | —- | C] () – C:\WINDOWS\cfplogvw.INI
[2010/02/18 10:31:28 | 000,000,042 | —- | C] () – C:\WINDOWS\System32\RegistryPatrolUpdates.ini
[2010/02/06 14:10:04 | 000,000,616 | —- | C] () – C:\WINDOWS\RegGenie.ini
[2010/02/06 12:22:48 | 000,000,032 | —- | C] () – C:\WINDOWS\CD_Start.INI
[2009/08/31 15:00:22 | 000,021,504 | —- | C] () – C:\WINDOWS\System32\WBCustomizer.dll
[2009/08/31 15:00:21 | 000,185,344 | —- | C] () – C:\WINDOWS\System32\MemWarp.dll
[2009/04/20 14:30:40 | 000,565,248 | R— | C] () – C:\WINDOWS\System32\hpotscl.dll
[2009/01/08 18:16:53 | 000,000,086 | —- | C] () – C:\WINDOWS\KINGCORN.INI
[2009/01/01 12:18:06 | 000,000,214 | —- | C] () – C:\WINDOWS\HP_48BitScanUpdatePatch.ini
[2007/09/27 11:51:02 | 000,020,698 | —- | C] () – C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 11:48:48 | 000,030,628 | —- | C] () – C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 11:48:28 | 000,031,698 | —- | C] () – C:\WINDOWS\System32\gthrctr.ini
[2007/08/22 10:28:25 | 000,063,488 | —- | C] () – C:\WINDOWS\xobglu16.dll
[2007/08/22 10:28:25 | 000,032,714 | —- | C] () – C:\WINDOWS\xobglu32.dll
[2007/08/08 20:26:08 | 000,000,340 | —- | C] () – C:\WINDOWS\QTW.INI
[2007/03/27 10:45:22 | 000,004,096 | —- | C] () – C:\WINDOWS\System32\sysres.dll
[2007/03/24 03:02:51 | 000,000,027 | —- | C] () – C:\WINDOWS\AtxTCBizControl03.ini
[2005/11/17 13:57:25 | 000,000,000 | —- | C] () – C:\WINDOWS\Versabook.INI
[2005/11/17 13:15:05 | 000,027,136 | —- | C] () – C:\WINDOWS\System32\VbMCHook.dll
[2005/03/02 08:34:06 | 000,000,754 | —- | C] () – C:\WINDOWS\WORDPAD.INI
[2004/12/31 11:11:49 | 000,000,032 | —- | C] () – C:\WINDOWS\thxcfg.ini
[2004/11/27 14:34:17 | 000,000,035 | —- | C] () – C:\WINDOWS\ulead32.ini
[2004/10/18 11:02:53 | 000,011,776 | —- | C] () – C:\WINDOWS\System32\ZPORT4AS.dll
[2004/07/27 18:44:36 | 000,000,000 | —- | C] () – C:\WINDOWS\VPC32.INI
[2004/07/22 16:36:32 | 000,363,520 | —- | C] () – C:\WINDOWS\System32\psisdecd.dll
[2004/07/19 10:34:18 | 000,005,632 | —- | C] () – C:\WINDOWS\System32\CNMVS0W.DLL
[2004/04/28 20:47:20 | 000,000,226 | —- | C] () – C:\WINDOWS\wininit.ini
[2004/04/17 09:40:54 | 000,000,679 | —- | C] () – C:\WINDOWS\TSC.ini
[2004/04/17 09:40:53 | 000,071,749 | —- | C] () – C:\WINDOWS\HCExtOutput.dll
[2004/04/17 09:23:08 | 000,000,170 | —- | C] () – C:\WINDOWS\GetServer.ini
[2004/01/01 08:41:53 | 000,000,105 | —- | C] () – C:\WINDOWS\AtxTCBizPref03.ini
[2003/11/15 04:35:29 | 000,004,272 | —- | C] () – C:\WINDOWS\System32\drivers\bvrp_pci.sys
[2003/11/13 23:34:40 | 000,000,297 | —- | C] () – C:\WINDOWS\ER3.ini
[2003/10/12 23:08:31 | 000,000,004 | —- | C] () – C:\WINDOWS\uccspecb.sys
[2003/05/24 01:14:17 | 000,000,002 | —- | C] () – C:\WINDOWS\msoffice.ini
[2003/04/15 16:12:11 | 000,000,077 | —- | C] () – C:\WINDOWS\PrintWorkShop2003LE.ini
[2003/01/28 20:17:51 | 000,016,326 | —- | C] () – C:\WINDOWS\cdplayer.ini
[2003/01/20 22:15:02 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2003/01/20 22:08:27 | 000,000,376 | —- | C] () – C:\WINDOWS\ODBC.INI
[2003/01/20 22:04:52 | 000,000,890 | —- | C] () – C:\WINDOWS\orun32.ini
[2003/01/20 21:12:16 | 000,000,549 | —- | C] () – C:\WINDOWS\System32\OEMINFO.INI
[2002/12/28 00:33:36 | 000,002,129 | —- | C] () – C:\WINDOWS\lexbar.ini
[2002/12/05 19:51:00 | 000,059,392 | R— | C] () – C:\WINDOWS\streamhlp.dll
[2002/04/11 14:47:52 | 000,049,152 | —- | C] () – C:\WINDOWS\System32\msmscoin.dll
[2000/07/27 01:13:02 | 000,053,760 | —- | C] () – C:\WINDOWS\System32\zlib.dll
[1999/07/23 14:46:48 | 000,000,116 | —- | C] () – C:\WINDOWS\AuHCcup1.ini
[1999/07/23 11:53:20 | 000,129,536 | —- | C] () – C:\WINDOWS\AuHCcup1.dll

========== Alternate Data Streams ==========

@Alternate Data Stream - 88 bytes -> C:\Documents and Settings\Dick\My Documents\spider.sav:SummaryInformation
< End of report >
This is the only Extra Logfile I could find?

OTL Extras logfile created on: 7/23/2010 2:57:45 AM - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Documents and Settings\Dick\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 62.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 68.00% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 111.76 Gb Total Space | 74.50 Gb Free Space | 66.66% Space Free | Partition Type: NTFS
Drive D: | 174.39 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: D30D6921
Current User Name: Dick
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.js [@ = JSFile] –
.reg [@ = regfile] –
.scr [@ = scrFile] – "%1" /s
.vbs [@ = VBSFile] –

[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] – C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
exefile [open] – "%1" %*
htmlfile – "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] – "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] – "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
https [open] – "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
jsfile [open] –
piffile [open] – "%1" %*
regfile [open] –
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" /s
txtfile – Reg Error: Key error.
vbsfile [open] –
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 1
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"DoNotAllowExceptions" = 1
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe – (Hewlett-Packard Development Co. L.P.)
"C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe" = C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe – (Hewlett-Packard Development Co. L.P.)
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe – (Hewlett-Packard Development Co. L.P.)
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe – (Hewlett-Packard Development Co. L.P.)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\AIM\aim.exe" = C:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger – File not found
"C:\Program Files\LimeWire\LimeWire.exe" = C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire – File not found
"C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Mozilla Firefox – (Mozilla Corporation)
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger – File not found
"C:\Program Files\Yahoo!\Messenger\YServer.exe" = C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server – File not found
"C:\Program Files\AVG\AVG8\avgemc.exe" = C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe – File not found
"C:\Program Files\AVG\AVG8\avgupd.exe" = C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe – File not found
"C:\Program Files\AVG\AVG8\avgnsx.exe" = C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe – File not found
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook – (Microsoft Corporation)
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe – (Hewlett-Packard Development Co. L.P.)
"C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe" = C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe – (Hewlett-Packard Development Co. L.P.)
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe – (Hewlett-Packard Development Co. L.P.)
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe – (Hewlett-Packard Development Co. L.P.)
"C:\Documents and Settings\Dick\Application Data\Facebook\facebook.exe" = C:\Documents and Settings\Dick\Application Data\Facebook\facebook.exe:127.0.0.1/255.255.255.255:Enabled:Facebook – File not found
"C:\Program Files\AVG\AVG9\avgupd.exe" = C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe – (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG9\avgnsx.exe" = C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe – (AVG Technologies CZ, s.r.o.)
"C:\Program Files\Vuze\Azureus.exe" = C:\Program Files\Vuze\Azureus.exe:*:Enabled:Azureus / Vuze – File not found


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01001202-823E-46CD-A70E-BEE818F97169}" = Microsoft Encarta Encyclopedia Standard 2002
"{06b71ffd-f170-40df-8226-df403e1c5399}" = AmericanGreetings.com Toolbar for IE
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0BB3ADCD-85BF-470C-8808-6D2F327EE248}" = HSScoreKeeper
"{11F1920A-56A2-4642-B6E0-3B31A12C9288}" = Dell Solution Center
"{12BDDF23-B1DB-49C8-92D3-3E6841CCED61}" = Microsoft Streets and Trips 2002
"{151C555A-A9E7-4A2E-B6D7-165D04A3C956}" = Dell Picture Studio - Dell Image Expert
"{158BC6C5-5950-4FDD-BE33-0294668923F2}" = Samsung DVC Media 5.1
"{18E0918E-1060-48f3-925C-56C82E88551B}" = HP PSC & OfficeJet 3.5
"{1F63ED0B-EDD2-4037-B6AB-1358C624AF48}" = Scan
"{20294600-8093-11D3-9891-002078136B01}" = Microsoft Education Forms Student Attendance
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{2580A36D-B91C-45DF-B2A5-BDB24A82038C}" = Lemony Snicket's A Series of Unfortunate Events Demo
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java™ 6 Update 11
"{27337663-2619-11D4-99DC-0000F49094C7}" = Memory Stick Formatter
"{27F00C63-449B-2FAB-CBE8-24AB80E17449}" = Acrobat.com
"{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228
"{2D613A34-AC34-493B-8F40-74D646C1FFAD}" = HSMaster
"{2E132061-C78A-48D4-A899-1D13B9D189FA}" = Memories Disc Creator 2.0
"{2F1FD032-67D1-4569-923F-47EAF132BF0F}" = DocProc
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java™ 6 Update 7
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3CCBC9FF-7F35-4220-B66D-B60E2E7AB4E2}" = OpenOffice.org 2.2
"{3CF78481-FB7B-4B51-99A2-D5E0CD0B3AAF}" = HPSystemDiagnostics
"{47C25360-AEBC-4B21-B233-87CE653B3369}" = AIOMinimal
"{4E868D3D-6EEB-4273-926C-2287236B5B79}" = 3DVIA player 4.1
"{4F572B33-9591-4AA7-A3E2-0BB5BA286D08}" = Google Deskbar
"{4FB6F304-A91D-4919-98E5-D96E074EA9E5}" = SkinsHP1
"{5ADF6293-D60F-4425-AFA7-CEB820DB872B}" = QuickProjects
"{5bb71940-9c82-486c-9fd2-12a631edcdba}" = AmericanGreetings.com Toolbar for Firefox
"{621C02EA-AAFF-4026-A903-165D59529A16}" = Driver Detective
"{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}" = Windows Genuine Advantage v1.3.0254.0
"{681B698F-C997-42C3-B184-B489C6CA24C9}" = HPPhotoSmartDiscLabelContent1
"{745A92AF-53B4-41A7-91C3-9B026B1D5897}" = InstantShare
"{766273C1-A39B-47EB-ACE8-DEBDD8094BCC}" = overland
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7F142D56-3326-11D5-B229-002078017FBF}" = Modem Helper
"{829698DE-9EAC-475E-9A05-B7BA807CA1EF}" = Director
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{8777AC6D-89F9-4793-8266-DE406F343E89}" = QFolder
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_STANDARDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_STANDARDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_STANDARDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_STANDARDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_STANDARDR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_STANDARDR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_STANDARDR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_STANDARDR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_STANDARDR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90D55A3F-1D99-4C94-A77E-46DC14F0BF08}" = Help and Support Customization
"{91120000-0012-0000-0000-0000000FF1CE}" = Microsoft Office Standard 2007
"{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{951DA811-E6A2-4829-A0E2-5DA65400BC64}" = Create and Print Plugin 4.0 (build 6121)
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9F4EEA0C-7174-4BD3-89AF-7AB2F9F6AEDD}" = hpmdtab
"{A1062847-0846-427A-92A1-BB8251A91E91}" = HP PSC & OfficeJet 4.2
"{A1B7B9B3-E1D2-41CA-9B4A-F18DC2710704}" = Microsoft Works 6.0
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A363B66C-1547-47bf-90F0-3834E70A841A}" = CreativeProjects
"{A4EA3AB4-E78C-4286-96DF-26035507CE55}" = AiO_Scan
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.3
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B43357AA-3A6D-4D94-B56E-43C44D09E548}" = Microsoft .NET Framework (English)
"{B772E270-02DF-4B70-9FA8-1383BBB81FDD}" = Intel® Processor Frequency ID Utility
"{BBC0D330-C37B-4472-BFB9-AA217CF0C95F}" = Ulead Photo Express 4.0 SE
"{BD3DCAB0-3FE5-44FB-90DA-EFB0A2CD1387}" = Works Synchronization
"{BD77C684-DF3C-4237-A9F9-FA90ED58CA3F}" = PCLinq3
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C38BC5B7-62D3-4880-82DD-A4803FD81921}" = PhotoGallery
"{C3A439E4-7303-491F-A678-CEA36A87D517}" = Microsoft Works Suite Add-in for Microsoft Word
"{C769A271-7E1C-48F9-B331-474600DD4C06}" = Microsoft Picture It! Photo 2002
"{C78EAC6F-7A73-452E-8134-DBB2165C5A68}" = QuickTime
"{CADBCBBA-6CDD-4119-B5ED-4AE075B153E7}" = MobileMe Control Panel
"{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}" = HP Product Detection
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC31E358-7247-4143-890E-CE41AC1AD234}" = Fundamentals of Nursing 6e
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE4F8FFB-4063-4247-9F14-ECE61AFEFA25}" = TrayApp
"{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}" = getPlus® for Adobe
"{D1D8C9C4-89BE-4f37-9EC4-B80E3C239C41}" = Copy
"{D545BB81-DEB0-49f7-BE26-197BC31AAF57}" = SkinsHP2
"{D79113E7-274C-470B-BD46-01B10219DF6A}" = HPPhotosmartEssential
"{DC19E750-988B-4005-A355-85EF66055EFE}" = Works Suite OS Pack
"{E6112886-0630-11D7-AD8E-0050DA87D0EB}" = Print Workshop 2003 Limited Edition
"{E646DCF0-5A68-11D5-B229-002078017FBF}" = Digital Line Detect
"{EB21A812-671B-4D08-B974-2A347F0D8F70}" = HP Photosmart Essential
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F253FBB0-25E4-4EBA-8B75-5D8CB291E9CD}" = Passware Kit Basic Demo 9.3
"{FBBF532A-47AC-457d-AC06-0D3163D8911E}" = WebReg
"{FE57DE70-95DE-4B64-9266-84DA811053DB}" = HP Update
"Abacast Client" = Abacast Client
"Adobe Atmosphere Player" = Adobe Atmosphere Player for Acrobat and Adobe Reader
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Amazon MP3 Downloader" = Amazon MP3 Downloader 1.0.3
"ATI Display Driver" = ATI Display Driver
"AVG9Uninstall" = AVG Free 9.0
"AZZ Cardfile" = AZZ Cardfile
"CCleaner" = CCleaner
"Chime/Chime Pro for Internet Explorer" = Chime/Chime Pro for Internet Explorer
"CNXT_MODEM_PCI_VEN_14F1&DEV_2016&SUBSYS_021913E0" = Conexant HSF V92 56K RTAD Speakerphone PCI Modem
"ComcastHSI" = Comcast High-Speed Internet Install Wizard
"Comodo BackUp" = Comodo BackUp
"COMODO Internet Security" = COMODO Internet Security
"EPSON Scanner" = EPSON Scan
"ER Disaster Strikes" = ER Disaster Strikes
"ERUNT_is1" = ERUNT 1.1j
"exPressit S.E. 2.2" = exPressit S.E. 2.2
"FileAlyzer_is1" = FileAlyzer 1.1i
"Flash Movie Player" = Flash Movie Player 1.5
"Free Spider_is1" = Free Spider 2009 v2.0
"Google Desktop" = Google Desktop
"HijackThis" = HijackThis 2.0.2
"HP Photo & Imaging" = HP Image Zone 4.2
"HP Photosmart Essential" = HP Photosmart Essential 3.5
"HyperLoad" = HyperLoad
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{2580A36D-B91C-45DF-B2A5-BDB24A82038C}" = Lemony Snicket's A Series of Unfortunate Events Demo
"InstallShield_{621C02EA-AAFF-4026-A903-165D59529A16}" = Driver Detective
"JEOPARDY! 2" = JEOPARDY! 2 (remove only)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework Full v1.0.3705 (1033)" = Microsoft .NET Framework (English) v1.0.3705
"Mozilla Firefox (3.6.7)" = Mozilla Firefox (3.6.7)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSN Music Assistant" = MSN Music Assistant
"NanoScan" = Panda NanoScan
"nature_3120380" = nature_3120380 Screen Saver
"Navilog1_is1" = Navilog1 3.4.0
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Numus Disk Builder and Burner" = Numus Disk Builder and Burner 2.2.7
"Nvu_is1" = Nvu 1.0PR
"One-on-One Diagnostic" = One-on-One Diagnostic
"PC Pitstop Driver Alert_is1" = PC Pitstop Driver Alert 1.0
"PC Wizard 2008_is1" = PC Wizard 2008.1.871
"Prentice Hall" = Prentice Hall
"Process_Hacker_is1" = Process Hacker 1.11
"PROSet" = Intel® PRO Ethernet Adapter and Software
"Registry Patrol" = Registry Patrol
"Shockwave" = Shockwave
"ShockwaveFlash" = Macromedia Flash Player 8
"SkillJam Loader Plugin" = SkillJam Loader Plugin
"SkillSoft Course Manager" = SkillSoft Course Manager
"STANDARDR" = Microsoft Office Standard 2007
"Super Rumble Cube" = Super Rumble Cube
"System Security Suite 1.04" = System Security Suite 1.04
"US Air Force" = US Air Force
"WET7Cable" = Windows Easy Transfer for Windows 7
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinZip" = WinZip
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Software Update" = Yahoo! Software Update
"YInstHelper" = Yahoo! Install Manager
"Zuma's Revenge!" = Zuma's Revenge!

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"f031ef6ac137efc5" = Dell Driver Download Manager

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 7/23/2010 2:29:20 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry DATA\MOZILLA\FIREFOX\PROFILES\EJSZBWP1.DEFAULT USER\CACHE\_CACHE_002_> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

Error - 7/23/2010 2:29:20 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry DATA\MOZILLA\FIREFOX\PROFILES\EJSZBWP1.DEFAULT USER\CACHE\_CACHE_002_> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

Error - 7/23/2010 2:29:20 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry DATA\MOZILLA\FIREFOX\PROFILES\EJSZBWP1.DEFAULT USER\CACHE\_CACHE_003_> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

Error - 7/23/2010 2:29:20 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry DATA\MOZILLA\FIREFOX\PROFILES\EJSZBWP1.DEFAULT USER\CACHE\_CACHE_003_> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

Error - 7/23/2010 2:29:21 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry DATA\MOZILLA\FIREFOX\PROFILES\EJSZBWP1.DEFAULT USER\CACHE\_CACHE_MAP_> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

Error - 7/23/2010 2:29:21 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry DATA\MOZILLA\FIREFOX\PROFILES\EJSZBWP1.DEFAULT USER\CACHE\_CACHE_MAP_> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

Error - 7/23/2010 2:36:24 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry USER\YOONO\ANONUSER.SQLITE-JOURNAL> in the hash map cannot be updated. Context:
Application, SystemIndex Catalog Details: A device attached to the system is not
functioning. (0x8007001f)

Error - 7/23/2010 2:43:44 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry USER\SESSIONSTORE-1.JS> in the hash map cannot be updated. Context: Application,
SystemIndex Catalog Details: A device attached to the system is not functioning.
(0x8007001f)

Error - 7/23/2010 2:54:24 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry USER\YOONO\20F9D39BA2F1B80429A77389DEA27FD0_FRIENDS_DB.SQLITE-JOURNAL> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

Error - 7/23/2010 2:54:24 AM | Computer Name = D30D6921 | Source = Windows Search Service | ID = 3013
Description = The entry USER\YOONO\20F9D39BA2F1B80429A77389DEA27FD0_FRIENDS_DB.SQLITE-JOURNAL> in the hash
map cannot be updated. Context: Application, SystemIndex Catalog Details: A device
attached to the system is not functioning. (0x8007001f)

[ OSession Events ]
Error - 11/1/2009 7:53:29 AM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 345071
seconds with 13020 seconds of active time. This session ended with a crash.

Error - 3/17/2010 6:22:11 PM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 37421
seconds with 1080 seconds of active time. This session ended with a crash.

Error - 4/17/2010 4:24:27 PM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 25574
seconds with 900 seconds of active time. This session ended with a crash.

Error - 4/29/2010 9:28:43 AM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 180725
seconds with 4920 seconds of active time. This session ended with a crash.

Error - 5/13/2010 6:16:32 PM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
12.0.6524.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 26107
seconds with 0 seconds of active time. This session ended with a crash.

Error - 5/18/2010 6:20:48 AM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 105068
seconds with 5760 seconds of active time. This session ended with a crash.

Error - 5/22/2010 9:18:31 PM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 212398
seconds with 3480 seconds of active time. This session ended with a crash.

Error - 6/5/2010 1:34:16 AM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 104222
seconds with 2160 seconds of active time. This session ended with a crash.

Error - 6/24/2010 9:14:30 PM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 54378
seconds with 3120 seconds of active time. This session ended with a crash.

Error - 6/25/2010 4:12:22 PM | Computer Name = D30D6921 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 67081
seconds with 2280 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 7/12/2010 4:12:07 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/12/2010 4:12:07 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/12/2010 4:12:07 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/12/2010 4:12:07 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/12/2010 4:12:07 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/12/2010 4:12:08 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/12/2010 4:12:08 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/12/2010 4:12:08 AM | Computer Name = D30D6921 | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 7/15/2010 3:02:27 AM | Computer Name = D30D6921 | Source = Cdrom | ID = 262151
Description = The device, \Device\CdRom0, has a bad block.

Error - 7/16/2010 10:48:18 AM | Computer Name = D30D6921 | Source = sr | ID = 1
Description = The System Restore filter encountered the unexpected error '0xC0000243'
while processing the file 'avgupd.exe.old' on the volume 'HarddiskVolume2'. It
has stopped monitoring the volume.


< End of report >
Hi,

C:\WINDOWS\popcinfot.dat <– This may be related to PopCap Games, stay away from that site and don't download any popcap games.

O1 - Hosts: 7882 more lines… As long as there 127.0.0.1, there ok

Everything else looks fine. How are things running now ?
Hi Ken; 1. I still have a few problems. Just noticed that my bookmarks are missing in Firefox Don't know why? 2. When I run shutdown these hang, NSAPPSHELL.EVENT WINDOW 3. Outlook.exe Everything else look O.K Thanks, Marty ^_^
That error your getting is related to Firefox, you may have a bad plug in. What I would do is open Firefox and click Help > Update Firefox , the current version is 3.6.8. If after updating , if the problem still persists than disable your plug ins one by one until you find the culprit.

1. Open the Tools menu.
2. Choose Add-ons.
3. Click the Plugins tab.
4. Click on a plugin in the list.
5. Click the Disable button.


If you need help with this you can try posting in the Mozilla forum
http://forums.mozillazine.org/viewforum.php?f=38

Ken :)
Hello Again Ken545 :wavey: I Thank You for all your help! I will try and figure what's up with Firefox. My machine is running smooth! You have a great day! Marty1946 :thumbup:
Your welcome Marty :)


  • How did I get infected in the first place ?
    Read these links and find out how to prevent getting infected again.
  • Tutorial for System Restore <– Do this first to prevent yourself from being reinfected.
  • WhattheTech
  • Grinler BleepingComputer
  • GeeksTo Go
  • Dslreports



Keep in mind if you install some of these programs. Only ONE Anti Virus and only ONE Firewall is recommended, more is overkill and can cause you problems. You can install all the Spyware programs I have listed without any problems. If you install Spyware Blaster and Spyware Guard, they will conflict with the TeaTimer in Spybot , you can still install Spybot Search and Destroy but do not enable the TeaTimer .



Here are some free programs to install, all free and highly regarded by the fine people in the Malware Removal Community
  • Spybot Search and Destroy 1.6
    Check for Updates/ Immunize and run a Full System Scan on a regular basis. If you install Spyware Blaster ( Recommended ) then do not enable the TeaTimer in Spybot Search and Destroy.
  • Spyware Blaster It will prevent most spyware from ever being installed. No scan to run, just update about once a week and enable all protection.
  • Spyware Guard It offers realtime protection from spyware installation attempts, again, no scan to run, just install it and let it do its thing.
  • IE-Spyad
    IE-Spyad places over 6000 web sites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (cookies etc) from the sites listed, although you will still be able to connect to the sites.
  • Firefox 3 It has more features and is a lot more secure than IE. It is a very easy and painless download and install, it will no way interfere with IE, you can use them both.


Safe Surfn
Ken

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI