BigEd
Topic Starter
Hello, New to the forum here and looks to be a great place. The issue I'm having is about 4 days ago I lost the click sound while browsing with I.E. I was able to turn the sound back on, but I was left with a slow browser and now when i click on any item , there is a delay in the click sound and I.E has slowed down while browsing and while loading. I logged off and switched users and found that my wifes side of the computer and I.E are working fine. The second issue is loading pictures or videos as I receive a message "Windows Host Process wants to open" and asking allow or not. I have run Malwarebytes, but had no change. I'm having trouble downloading Hijackthis as I can't run as adminstrator. Here is the 2 copys of the DDS files. Thank you in advance
DDS (Ver_09-06-26.01) - NTFSx86
Run by [removed] at 11:54:59.96 on Fri 08/20/2010
Internet Explorer: 8.0.6001.18943
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.2942.1002 [GMT -4:00]
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\LSI SoftModem\agrsmsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\dldtcoms.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
c:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Windows\system32\lxdqcoms.exe
C:\Program Files\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Odometer\hpsysdrv.exe
C:\Program Files\Dell V305\dldtmon.exe
C:\Program Files\Dell V305\dldtMsdMon.exe
C:\Program Files\MSN Toolbar\Platform\4.0.0334.0\mswinext.exe
C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\PictureMover\Bin\PictureMover.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\iPod\bin\iPodService.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10i_ActiveX.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Eddie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZIISGOGC\downloads[2].scr
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.xfinity.com/?cid=xfactiv_tech_main
uSearch Bar = Preserve
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=93&bd=Presario&pf=cndt
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=93&bd=Presario&pf=cndt
uInternet Settings,ProxyOverride = *.local
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton internet security\engine\16.8.0.41\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton internet security\engine\16.8.0.41\IPSBHO.DLL
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: MSN Toolbar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\4.0.0334.0\npwinext.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton internet security\engine\16.8.0.41\coIEPlg.dll
TB: MSN Toolbar: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\4.0.0334.0\npwinext.dll
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [hpsysdrv] c:\program files\hewlett-packard\hp odometer\hpsysdrv.exe
mRun: [HP Health Check Scheduler] c:\program files\hewlett-packard\hp health check\HPHC_Scheduler.exe
mRun: [dldtmon.exe] "c:\program files\dell v305\dldtmon.exe"
mRun: [dldtamon] "c:\program files\dell v305\dldtamon.exe"
mRun: [Dell PC TuneUp Startup] "c:\program files\iolo\common\lib\ioloLManager.exe"
mRun: [MSN Toolbar] "c:\program files\msn toolbar\platform\4.0.0334.0\mswinext.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [nmctxth] "c:\program files\common files\pure networks shared\platform\nmctxth.exe"
mRun: []
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [DVDAgent] "c:\program files\hewlett-packard\media\dvd\DVDAgent.exe"
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\pictur~1.lnk - c:\program files\picturemover\bin\PictureMover.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49}
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp4.dll
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - c:\program files\norton internet security\engine\16.8.0.41\CoIEPlg.dll
============= SERVICES / DRIVERS ===============
R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\nis\1008000.029\SymEFA.sys [2010-1-27 310320]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\nis\1008000.029\BHDrvx86.sys [2010-1-27 259632]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\nis\1008000.029\cchpx86.sys [2010-1-27 482432]
R1 ElRawDisk;ElRawDisk;c:\windows\system32\drivers\elrawdsk.sys [2009-9-5 20392]
R1 IDSVix86;IDSVix86;c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\definitions\ipsdefs\20100818.002\IDSvix86.sys [2010-8-20 344112]
R2 dldt_device;dldt_device;c:\windows\system32\dldtcoms.exe -service –> c:\windows\system32\dldtcoms.exe -service [?]
R2 ioloFileInfoList;iolo FileInfoList Service;c:\program files\iolo\common\lib\ioloServiceManager.exe [2009-9-5 600944]
R2 ioloSystemService;iolo System Service;c:\program files\iolo\common\lib\ioloServiceManager.exe [2009-9-5 600944]
R2 lxdq_device;lxdq_device;c:\windows\system32\lxdqcoms.exe -service –> c:\windows\system32\lxdqcoms.exe -service [?]
R2 Norton Internet Security;Norton Internet Security;c:\program files\norton internet security\engine\16.8.0.41\ccSvcHst.exe [2010-1-27 117640]
R2 SeaPort;SeaPort;c:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2010-5-14 249136]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files\tomtom home 2\TomTomHOMEService.exe [2010-6-24 92008]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2010-8-17 102448]
R3 SYMNDISV;Symantec Network Filter Driver;c:\windows\system32\drivers\nis\1008000.029\symndisv.sys [2010-1-27 48688]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 dldtCATSCustConnectService;dldtCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\dldtserv.exe [2009-7-9 98984]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-20 21504]
S3 PCDSRVC{4F253FFC-7957E8FC-06000000}_0;PCDSRVC{4F253FFC-7957E8FC-06000000}_0 - PCDR Kernel Mode Service Helper Driver;c:\program files\pc-doctor for windows\pcdsrvc.pkms [2009-2-2 20848]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S3 WSDPrintDevice;WSD Print Support via UMB;c:\windows\system32\drivers\WSDPrint.sys [2008-1-20 16896]
S4 nvrd32;NVIDIA nForce RAID Driver;c:\windows\system32\drivers\nvrd32.sys [2009-4-28 133152]
============== File Associations ===============
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
=============== Created Last 30 ================
2010-08-19 18:21 –d—– c:\program files\Trend Micro
2010-08-19 06:24 52 a——- c:\windows\system32\ashttpstats.csv
2010-08-19 00:54 385 a——- c:\windows\system32\user_gensett.xml
2010-08-19 00:54 –d—– c:\programdata\BitDefender
2010-08-19 00:54 –d—– c:\progra~2\BitDefender
2010-08-19 00:35 –d—– c:\users\eddie\appdata\roaming\Auslogics
2010-08-19 00:35 –d—– c:\programdata\Auslogics
2010-08-19 00:35 –d—– c:\program files\common files\Auslogics
2010-08-19 00:35 –d—– c:\program files\Auslogics
2010-08-19 00:35 –d—– c:\progra~2\Auslogics
2010-08-19 00:33 –d—– c:\program files\common files\BitDefender
2010-08-18 23:53 –d—– c:\users\eddie\appdata\roaming\Malwarebytes
2010-08-18 23:53 38,224 a——- c:\windows\system32\drivers\mbamswissarmy.sys
2010-08-18 23:53 20,952 a——- c:\windows\system32\drivers\mbam.sys
2010-08-18 23:53 –d—– c:\programdata\Malwarebytes
2010-08-18 23:53 –d—– c:\program files\Malwarebytes' Anti-Malware
2010-08-18 23:53 –d—– c:\progra~2\Malwarebytes
2010-08-18 21:34 221,568 ——– c:\windows\system32\MpSigStub.exe
2010-08-18 18:54 –d—– c:\users\eddie\appdata\roaming\System Tweaker
2010-08-18 18:40 –d—– c:\program files\Uniblue
2010-08-18 18:08 –d—– c:\program files\MSXML 4.0
2010-08-18 02:00 –d—– c:\programdata\SUPERAntiSpyware.com
2010-08-18 02:00 –d—– c:\progra~2\SUPERAntiSpyware.com
2010-08-18 01:37 420,352 a——- c:\windows\system32\vbscript.dll
2010-08-18 01:23 385,024 a——- c:\windows\system32\html.iec
2010-08-18 01:23 169,472 a——- c:\windows\system32\iexpress.exe
2010-08-18 01:23 45,568 a——- c:\windows\system32\mshta.exe
2010-08-18 01:23 107,520 a——- c:\windows\system32\RegisterIEPKEYs.exe
2010-08-18 01:23 103,936 a——- c:\windows\system32\SetDepNx.exe
2010-08-18 01:23 109,568 a——- c:\windows\system32\PDMSetup.exe
2010-08-18 01:23 107,008 a——- c:\windows\system32\SetIEInstalledDate.exe
2010-08-17 23:09 9,592 a——- c:\windows\system32\drivers\kgpcpy.cfg
2010-08-17 22:15 –d—– c:\programdata\STOPzilla!
2010-08-17 22:15 –d—– c:\progra~2\STOPzilla!
2010-08-17 21:55 –d—– c:\program files\Microsoft ATS
2010-08-16 19:14 –d—– c:\programdata\Uniblue
2010-08-16 19:14 –d—– c:\progra~2\Uniblue
2010-08-16 19:14 –d—– c:\users\eddie\appdata\roaming\Uniblue
2010-08-11 17:13 81,920 a——- c:\windows\system32\iccvid.dll
2010-08-11 17:13 274,944 a——- c:\windows\system32\schannel.dll
2010-08-11 17:13 1,248,768 a——- c:\windows\system32\msxml3.dll
2010-08-11 17:13 2,037,760 a——- c:\windows\system32\win32k.sys
2010-08-11 17:13 36,864 a——- c:\windows\system32\rtutils.dll
2010-08-11 17:13 3,600,768 a——- c:\windows\system32\ntkrnlpa.exe
2010-08-11 17:13 3,548,040 a——- c:\windows\system32\ntoskrnl.exe
2010-08-11 17:13 302,080 a——- c:\windows\system32\drivers\srv.sys
2010-08-11 17:13 144,896 a——- c:\windows\system32\drivers\srv2.sys
2010-08-11 17:12 905,088 a——- c:\windows\system32\drivers\tcpip.sys
2010-07-26 18:44 –d—– c:\program files\iPod
2010-07-26 18:44 –d—– c:\program files\iTunes
==================== Find3M ====================
2010-08-18 15:26 143,360 a——- c:\windows\inf\infstrng.dat
2010-08-18 15:26 143,360 a——- c:\windows\inf\infstor.dat
2010-08-18 15:26 86,016 a——- c:\windows\inf\infpub.dat
2010-08-18 13:15 665,600 a——- c:\windows\inf\drvindex.dat
2010-08-16 22:02 3,684 a——- c:\users\eddie\appdata\roaming\wklnhst.dat
2010-07-17 05:00 423,656 a——- c:\windows\system32\deployJava1.dll
2010-06-30 00:12 13,312 a——- c:\windows\LPRES.DLL
2010-06-26 02:05 916,480 a——- c:\windows\system32\wininet.dll
2010-06-26 02:02 109,056 a——- c:\windows\system32\iesysprep.dll
2010-06-26 02:02 71,680 a——- c:\windows\system32\iesetup.dll
2010-06-26 00:25 133,632 a——- c:\windows\system32\ieUnatt.exe
2010-06-05 13:14 3 a——- c:\program files\option.txt
2010-05-26 13:06 34,304 a——- c:\windows\system32\atmlib.dll
2010-05-26 10:47 289,792 a——- c:\windows\system32\atmfd.dll
2008-01-20 22:43 174 a–sh— c:\program files\desktop.ini
2006-11-02 08:42 287,440 a——- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 08:42 287,440 a——- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 08:42 30,674 a——- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 08:42 30,674 a——- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 05:20 287,440 a——- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 05:20 287,440 a——- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 05:20 30,674 a——- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 05:20 30,674 a——- c:\windows\inf\perflib\0000\perfc.dat
2010-04-27 11:51 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\cookies\index.dat
2010-04-27 11:51 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\history\history.ie5\index.dat
2010-04-27 11:51 32,768 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\temporary internet files\content.ie5\index.dat
2009-04-28 21:11 8,192 a–sh— c:\windows\users\default\NTUSER.DAT
============= FINISH: 11:55:27.28 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-06-26.01)
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 5/21/2009 1:38:02 PM
System Uptime: 8/20/2010 2:05:11 AM (9 hours ago)
Motherboard: PEGATRON CORPORATION | | NARRA5
Processor: AMD Athlon™ 7550 Dual-Core Processor | Socket AM2 | 2500/200mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 287 GiB total, 196.607 GiB free.
D: is FIXED (NTFS) - 11 GiB total, 1.554 GiB free.
E: is CDROM ()
F: is Removable
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP373: 8/10/2010 7:16:10 PM - Device Driver Package Install: Research In Motion Universal Serial Bus controllers
RP374: 8/11/2010 3:00:14 PM - Scheduled Checkpoint
RP375: 8/11/2010 5:41:43 PM - Windows Update
RP376: 8/12/2010 12:11:12 PM - Scheduled Checkpoint
RP377: 8/14/2010 4:41:08 AM - Scheduled Checkpoint
RP378: 8/15/2010 12:00:04 AM - Scheduled Checkpoint
RP379: 8/16/2010 12:46:40 PM - Scheduled Checkpoint
RP380: 8/17/2010 1:09:55 AM - Scheduled Checkpoint
RP381: 8/17/2010 5:29:22 PM - Restore Operation
RP382: 8/17/2010 9:11:13 PM - Restore Operation
RP383: 8/17/2010 10:15:26 PM - Installed STOPzilla. Available with Windows Installer version 1.2 and later.
RP385: 8/17/2010 10:27:53 PM - StopZILLA! Restore Point.
RP386: 8/18/2010 12:55:23 AM - Removed STOPzilla. Available with Windows Installer version 1.2 and later.
RP387: 8/18/2010 1:04:43 AM - Windows Modules Installer
RP388: 8/18/2010 1:22:50 AM - Windows Update
RP389: 8/18/2010 1:38:04 AM - Windows Update
RP391: 8/18/2010 12:58:53 PM - Installed MediaSmart DVD
RP392: 8/18/2010 1:02:12 PM - Windows Update
RP393: 8/18/2010 3:26:01 PM - Device Driver Package Install: Microsoft Network Protocol
RP394: 8/18/2010 6:08:30 PM - Windows Update
RP395: 8/18/2010 7:56:07 PM - Removed Safari
RP396: 8/18/2010 9:34:14 PM - Windows Update
RP397: 8/19/2010 12:34:49 AM - Installed Auslogics Antivirus
RP398: 8/19/2010 8:43:15 AM - Removed Auslogics Antivirus
RP399: 8/19/2010 8:44:29 AM - Removed Auslogics Antivirus
RP400: 8/19/2010 1:07:44 PM - Windows Update
RP401: 8/19/2010 7:24:25 PM - Installed HiJackThis
RP402: 8/19/2010 7:39:49 PM - Removed HiJackThis
RP403: 8/19/2010 11:40:10 PM - Installed HiJackThis
RP404: 8/19/2010 11:45:10 PM - Removed HiJackThis
RP405: 8/19/2010 11:46:10 PM - Installed HiJackThis
RP406: 8/19/2010 11:59:03 PM - Removed HiJackThis
RP407: 8/20/2010 12:03:07 AM - Installed HiJackThis
==== Installed Programs ======================
ABBYY FineReader 6.0 Sprint
Acrobat.com
Activation Assistant for the 2007 Microsoft Office suites
ActiveCheck component for HP Active Support Library
Adobe Flash Player 10 ActiveX
Adobe Reader 9.3.3
Apple Application Support
Apple Mobile Device Support
Apple Software Update
BlackBerry Desktop Software 6.0
BlackBerry Device Software Updater
Bonjour
Canon DIGITAL CAMERA Solution Disk Software Guide
CANON iMAGE GATEWAY Task for ZoomBrowser EX
Canon Internet Library for ZoomBrowser EX
Canon MOV Decoder
Canon MOV Encoder
Canon MovieEdit Task for ZoomBrowser EX
Canon Personal Printing Guide
Canon PowerShot SD980 IS_IXUS 200 IS Camera User Guide
Canon Utilities CameraWindow
Canon Utilities CameraWindow DC
Canon Utilities CameraWindow DC 8
Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
Canon Utilities MyCamera
Canon Utilities MyCamera DC
Canon Utilities PhotoStitch
Canon Utilities RemoteCapture Task for ZoomBrowser EX
Canon Utilities ZoomBrowser EX
Canon ZoomBrowser EX Memory Card Utility
Comcast Desktop Software (v1.2.0.9)
Compatibility Pack for the 2007 Office system
CyberLink DVD Suite Deluxe
Dell Driver Download Manager
Dell PC TuneUp
Dell V305
Desktop Doctor
DHTML Editing Component
DirectX for Managed Code Update (Summer 2004)
Hardware Diagnostic Tools
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Active Support Library
HP Advisor
HP Customer Experience Enhancements
HP Games
HP MediaSmart DVD
HP Odometer
HP Recovery Manager RSS
HP Support Information
HP Total Care Setup
HP Update
HPAsset component for HP Active Support Library
Internet Explorer (Enable DEP)
iTunes
Japanese Fonts Support For Adobe Reader 9
Java Auto Updater
Java™ 6 Update 21
Java™ 6 Update 3
Junk Mail filter update
LabelPrint
LG USB Modem driver
LightScribe System Software
Linksys EasyLink Advisor
Malwarebytes' Anti-Malware
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Office Excel MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Works
MSN Toolbar
MSN Toolbar Platform
MSVCRT
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Norton Internet Security
NVIDIA Drivers
OGA Notifier 2.0.0048.0
PictureMover
Power2Go
PowerDirector
Pure Networks Platform
Python 2.6 pywin32-212
Python 2.6.1
QuickTime
Realtek High Definition Audio Driver
Shipping Assistant 3.6
TomTom HOME 2.7.5.2014
TomTom HOME Visual Studio Merge Modules
Turbo Lister 2
Uniblue RegistryBooster
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
WebEx Support Manager for Internet Explorer
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live OneCare safety scanner
Windows Live Photo Gallery
==== Event Viewer Messages From Past Week ========
8/19/2010 8:16:49 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Media Player Network Sharing Service service to connect.
8/19/2010 8:16:49 AM, Error: Service Control Manager [7000] - The Windows Media Player Network Sharing Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/19/2010 6:21:23 AM, Error: Service Control Manager [7034] - The dldt_device service terminated unexpectedly. It has done this 1 time(s).
8/19/2010 12:57:00 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the HP Health Check Service service to connect.
8/19/2010 12:57:00 AM, Error: Service Control Manager [7000] - The HP Health Check Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/19/2010 12:39:30 AM, Error: Service Control Manager [7031] - The Windows Defender service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: i8042prt
8/19/2010 12:21:29 PM, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error 2147749155 (0x80040D23).
8/19/2010 12:21:29 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the dldtCATSCustConnectService service to connect.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7000] - The Parallel port driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7000] - The dldtCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/18/2010 9:24:49 PM, Error: Microsoft-Windows-DistributedCOM [10016] - The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} to the user eddie-maria\Eddie SID (S-1-5-21-1119333972-2933176690-2880281189-1000) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.
8/18/2010 12:56:20 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the szserver service.
8/18/2010 1:44:56 AM, Error: Service Control Manager [7001] - The Windows Image Acquisition (WIA) service depends on the Shell Hardware Detection service which failed to start because of the following error: The operation completed successfully.
8/17/2010 9:24:51 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.
8/17/2010 6:35:23 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.0.2 for the Network Card with network address 00248CF8EFF0 has been denied by the DHCP server 192.168.0.1 (The DHCP Server sent a DHCPNACK message).
8/17/2010 10:26:51 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
8/17/2010 10:26:51 PM, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/17/2010 10:26:51 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
8/17/2010 10:26:27 PM, Error: Service Control Manager [7022] - The KtmRm for Distributed Transaction Coordinator service hung on starting.
8/17/2010 10:22:14 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: i8042prt is3srv
8/16/2010 7:41:49 PM, Error: Service Control Manager [7030] - The dldt_device service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
8/16/2010 3:34:50 PM, Error: Microsoft-Windows-PrintSpooler [6161] - The document https://ibdswebp25-ext.pb.com/images/USPS/H…lders/HTML15/f3, owned by Eddie, failed to print on printer Dell V305. Try to print the document again, or restart the print spooler. Data type: LEMF. Size of the spool file in bytes: 185102. Number of bytes printed: 185102. Total number of pages in the document: 1. Number of pages printed: 0. Client computer: \\EDDIE-MARIA. Win32 error code returned by the print processor: 0. The operation completed successfully.
8/15/2010 9:48:27 PM, Error: Microsoft-Windows-PrintSpooler [6161] - The document http://mail.aol.com/32447-111/aol-1/en-us/…rintMessage.asp, owned by Eddie, failed to print on printer Dell V305. Try to print the document again, or restart the print spooler. Data type: LEMF. Size of the spool file in bytes: 77560. Number of bytes printed: 77560. Total number of pages in the document: 1. Number of pages printed: 0. Client computer: \\EDDIE-MARIA. Win32 error code returned by the print processor: 0. The operation completed successfully.
==== End Of File ===========================
DDS (Ver_09-06-26.01) - NTFSx86
Run by [removed] at 11:54:59.96 on Fri 08/20/2010
Internet Explorer: 8.0.6001.18943
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.2942.1002 [GMT -4:00]
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\LSI SoftModem\agrsmsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\dldtcoms.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
c:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Windows\system32\lxdqcoms.exe
C:\Program Files\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Odometer\hpsysdrv.exe
C:\Program Files\Dell V305\dldtmon.exe
C:\Program Files\Dell V305\dldtMsdMon.exe
C:\Program Files\MSN Toolbar\Platform\4.0.0334.0\mswinext.exe
C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\PictureMover\Bin\PictureMover.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\iPod\bin\iPodService.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10i_ActiveX.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Eddie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZIISGOGC\downloads[2].scr
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.xfinity.com/?cid=xfactiv_tech_main
uSearch Bar = Preserve
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=93&bd=Presario&pf=cndt
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=93&bd=Presario&pf=cndt
uInternet Settings,ProxyOverride = *.local
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton internet security\engine\16.8.0.41\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton internet security\engine\16.8.0.41\IPSBHO.DLL
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: MSN Toolbar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\4.0.0334.0\npwinext.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton internet security\engine\16.8.0.41\coIEPlg.dll
TB: MSN Toolbar: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\4.0.0334.0\npwinext.dll
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [hpsysdrv] c:\program files\hewlett-packard\hp odometer\hpsysdrv.exe
mRun: [HP Health Check Scheduler] c:\program files\hewlett-packard\hp health check\HPHC_Scheduler.exe
mRun: [dldtmon.exe] "c:\program files\dell v305\dldtmon.exe"
mRun: [dldtamon] "c:\program files\dell v305\dldtamon.exe"
mRun: [Dell PC TuneUp Startup] "c:\program files\iolo\common\lib\ioloLManager.exe"
mRun: [MSN Toolbar] "c:\program files\msn toolbar\platform\4.0.0334.0\mswinext.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [nmctxth] "c:\program files\common files\pure networks shared\platform\nmctxth.exe"
mRun: []
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [DVDAgent] "c:\program files\hewlett-packard\media\dvd\DVDAgent.exe"
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\pictur~1.lnk - c:\program files\picturemover\bin\PictureMover.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49}
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp4.dll
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - c:\program files\norton internet security\engine\16.8.0.41\CoIEPlg.dll
============= SERVICES / DRIVERS ===============
R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\nis\1008000.029\SymEFA.sys [2010-1-27 310320]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\nis\1008000.029\BHDrvx86.sys [2010-1-27 259632]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\nis\1008000.029\cchpx86.sys [2010-1-27 482432]
R1 ElRawDisk;ElRawDisk;c:\windows\system32\drivers\elrawdsk.sys [2009-9-5 20392]
R1 IDSVix86;IDSVix86;c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\definitions\ipsdefs\20100818.002\IDSvix86.sys [2010-8-20 344112]
R2 dldt_device;dldt_device;c:\windows\system32\dldtcoms.exe -service –> c:\windows\system32\dldtcoms.exe -service [?]
R2 ioloFileInfoList;iolo FileInfoList Service;c:\program files\iolo\common\lib\ioloServiceManager.exe [2009-9-5 600944]
R2 ioloSystemService;iolo System Service;c:\program files\iolo\common\lib\ioloServiceManager.exe [2009-9-5 600944]
R2 lxdq_device;lxdq_device;c:\windows\system32\lxdqcoms.exe -service –> c:\windows\system32\lxdqcoms.exe -service [?]
R2 Norton Internet Security;Norton Internet Security;c:\program files\norton internet security\engine\16.8.0.41\ccSvcHst.exe [2010-1-27 117640]
R2 SeaPort;SeaPort;c:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2010-5-14 249136]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files\tomtom home 2\TomTomHOMEService.exe [2010-6-24 92008]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2010-8-17 102448]
R3 SYMNDISV;Symantec Network Filter Driver;c:\windows\system32\drivers\nis\1008000.029\symndisv.sys [2010-1-27 48688]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 dldtCATSCustConnectService;dldtCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\dldtserv.exe [2009-7-9 98984]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-20 21504]
S3 PCDSRVC{4F253FFC-7957E8FC-06000000}_0;PCDSRVC{4F253FFC-7957E8FC-06000000}_0 - PCDR Kernel Mode Service Helper Driver;c:\program files\pc-doctor for windows\pcdsrvc.pkms [2009-2-2 20848]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S3 WSDPrintDevice;WSD Print Support via UMB;c:\windows\system32\drivers\WSDPrint.sys [2008-1-20 16896]
S4 nvrd32;NVIDIA nForce RAID Driver;c:\windows\system32\drivers\nvrd32.sys [2009-4-28 133152]
============== File Associations ===============
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
=============== Created Last 30 ================
2010-08-19 18:21 –d—– c:\program files\Trend Micro
2010-08-19 06:24 52 a——- c:\windows\system32\ashttpstats.csv
2010-08-19 00:54 385 a——- c:\windows\system32\user_gensett.xml
2010-08-19 00:54 –d—– c:\programdata\BitDefender
2010-08-19 00:54 –d—– c:\progra~2\BitDefender
2010-08-19 00:35 –d—– c:\users\eddie\appdata\roaming\Auslogics
2010-08-19 00:35 –d—– c:\programdata\Auslogics
2010-08-19 00:35 –d—– c:\program files\common files\Auslogics
2010-08-19 00:35 –d—– c:\program files\Auslogics
2010-08-19 00:35 –d—– c:\progra~2\Auslogics
2010-08-19 00:33 –d—– c:\program files\common files\BitDefender
2010-08-18 23:53 –d—– c:\users\eddie\appdata\roaming\Malwarebytes
2010-08-18 23:53 38,224 a——- c:\windows\system32\drivers\mbamswissarmy.sys
2010-08-18 23:53 20,952 a——- c:\windows\system32\drivers\mbam.sys
2010-08-18 23:53 –d—– c:\programdata\Malwarebytes
2010-08-18 23:53 –d—– c:\program files\Malwarebytes' Anti-Malware
2010-08-18 23:53 –d—– c:\progra~2\Malwarebytes
2010-08-18 21:34 221,568 ——– c:\windows\system32\MpSigStub.exe
2010-08-18 18:54 –d—– c:\users\eddie\appdata\roaming\System Tweaker
2010-08-18 18:40 –d—– c:\program files\Uniblue
2010-08-18 18:08 –d—– c:\program files\MSXML 4.0
2010-08-18 02:00 –d—– c:\programdata\SUPERAntiSpyware.com
2010-08-18 02:00 –d—– c:\progra~2\SUPERAntiSpyware.com
2010-08-18 01:37 420,352 a——- c:\windows\system32\vbscript.dll
2010-08-18 01:23 385,024 a——- c:\windows\system32\html.iec
2010-08-18 01:23 169,472 a——- c:\windows\system32\iexpress.exe
2010-08-18 01:23 45,568 a——- c:\windows\system32\mshta.exe
2010-08-18 01:23 107,520 a——- c:\windows\system32\RegisterIEPKEYs.exe
2010-08-18 01:23 103,936 a——- c:\windows\system32\SetDepNx.exe
2010-08-18 01:23 109,568 a——- c:\windows\system32\PDMSetup.exe
2010-08-18 01:23 107,008 a——- c:\windows\system32\SetIEInstalledDate.exe
2010-08-17 23:09 9,592 a——- c:\windows\system32\drivers\kgpcpy.cfg
2010-08-17 22:15 –d—– c:\programdata\STOPzilla!
2010-08-17 22:15 –d—– c:\progra~2\STOPzilla!
2010-08-17 21:55 –d—– c:\program files\Microsoft ATS
2010-08-16 19:14 –d—– c:\programdata\Uniblue
2010-08-16 19:14 –d—– c:\progra~2\Uniblue
2010-08-16 19:14 –d—– c:\users\eddie\appdata\roaming\Uniblue
2010-08-11 17:13 81,920 a——- c:\windows\system32\iccvid.dll
2010-08-11 17:13 274,944 a——- c:\windows\system32\schannel.dll
2010-08-11 17:13 1,248,768 a——- c:\windows\system32\msxml3.dll
2010-08-11 17:13 2,037,760 a——- c:\windows\system32\win32k.sys
2010-08-11 17:13 36,864 a——- c:\windows\system32\rtutils.dll
2010-08-11 17:13 3,600,768 a——- c:\windows\system32\ntkrnlpa.exe
2010-08-11 17:13 3,548,040 a——- c:\windows\system32\ntoskrnl.exe
2010-08-11 17:13 302,080 a——- c:\windows\system32\drivers\srv.sys
2010-08-11 17:13 144,896 a——- c:\windows\system32\drivers\srv2.sys
2010-08-11 17:12 905,088 a——- c:\windows\system32\drivers\tcpip.sys
2010-07-26 18:44 –d—– c:\program files\iPod
2010-07-26 18:44 –d—– c:\program files\iTunes
==================== Find3M ====================
2010-08-18 15:26 143,360 a——- c:\windows\inf\infstrng.dat
2010-08-18 15:26 143,360 a——- c:\windows\inf\infstor.dat
2010-08-18 15:26 86,016 a——- c:\windows\inf\infpub.dat
2010-08-18 13:15 665,600 a——- c:\windows\inf\drvindex.dat
2010-08-16 22:02 3,684 a——- c:\users\eddie\appdata\roaming\wklnhst.dat
2010-07-17 05:00 423,656 a——- c:\windows\system32\deployJava1.dll
2010-06-30 00:12 13,312 a——- c:\windows\LPRES.DLL
2010-06-26 02:05 916,480 a——- c:\windows\system32\wininet.dll
2010-06-26 02:02 109,056 a——- c:\windows\system32\iesysprep.dll
2010-06-26 02:02 71,680 a——- c:\windows\system32\iesetup.dll
2010-06-26 00:25 133,632 a——- c:\windows\system32\ieUnatt.exe
2010-06-05 13:14 3 a——- c:\program files\option.txt
2010-05-26 13:06 34,304 a——- c:\windows\system32\atmlib.dll
2010-05-26 10:47 289,792 a——- c:\windows\system32\atmfd.dll
2008-01-20 22:43 174 a–sh— c:\program files\desktop.ini
2006-11-02 08:42 287,440 a——- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 08:42 287,440 a——- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 08:42 30,674 a——- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 08:42 30,674 a——- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 05:20 287,440 a——- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 05:20 287,440 a——- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 05:20 30,674 a——- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 05:20 30,674 a——- c:\windows\inf\perflib\0000\perfc.dat
2010-04-27 11:51 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\cookies\index.dat
2010-04-27 11:51 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\history\history.ie5\index.dat
2010-04-27 11:51 32,768 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\temporary internet files\content.ie5\index.dat
2009-04-28 21:11 8,192 a–sh— c:\windows\users\default\NTUSER.DAT
============= FINISH: 11:55:27.28 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-06-26.01)
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 5/21/2009 1:38:02 PM
System Uptime: 8/20/2010 2:05:11 AM (9 hours ago)
Motherboard: PEGATRON CORPORATION | | NARRA5
Processor: AMD Athlon™ 7550 Dual-Core Processor | Socket AM2 | 2500/200mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 287 GiB total, 196.607 GiB free.
D: is FIXED (NTFS) - 11 GiB total, 1.554 GiB free.
E: is CDROM ()
F: is Removable
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP373: 8/10/2010 7:16:10 PM - Device Driver Package Install: Research In Motion Universal Serial Bus controllers
RP374: 8/11/2010 3:00:14 PM - Scheduled Checkpoint
RP375: 8/11/2010 5:41:43 PM - Windows Update
RP376: 8/12/2010 12:11:12 PM - Scheduled Checkpoint
RP377: 8/14/2010 4:41:08 AM - Scheduled Checkpoint
RP378: 8/15/2010 12:00:04 AM - Scheduled Checkpoint
RP379: 8/16/2010 12:46:40 PM - Scheduled Checkpoint
RP380: 8/17/2010 1:09:55 AM - Scheduled Checkpoint
RP381: 8/17/2010 5:29:22 PM - Restore Operation
RP382: 8/17/2010 9:11:13 PM - Restore Operation
RP383: 8/17/2010 10:15:26 PM - Installed STOPzilla. Available with Windows Installer version 1.2 and later.
RP385: 8/17/2010 10:27:53 PM - StopZILLA! Restore Point.
RP386: 8/18/2010 12:55:23 AM - Removed STOPzilla. Available with Windows Installer version 1.2 and later.
RP387: 8/18/2010 1:04:43 AM - Windows Modules Installer
RP388: 8/18/2010 1:22:50 AM - Windows Update
RP389: 8/18/2010 1:38:04 AM - Windows Update
RP391: 8/18/2010 12:58:53 PM - Installed MediaSmart DVD
RP392: 8/18/2010 1:02:12 PM - Windows Update
RP393: 8/18/2010 3:26:01 PM - Device Driver Package Install: Microsoft Network Protocol
RP394: 8/18/2010 6:08:30 PM - Windows Update
RP395: 8/18/2010 7:56:07 PM - Removed Safari
RP396: 8/18/2010 9:34:14 PM - Windows Update
RP397: 8/19/2010 12:34:49 AM - Installed Auslogics Antivirus
RP398: 8/19/2010 8:43:15 AM - Removed Auslogics Antivirus
RP399: 8/19/2010 8:44:29 AM - Removed Auslogics Antivirus
RP400: 8/19/2010 1:07:44 PM - Windows Update
RP401: 8/19/2010 7:24:25 PM - Installed HiJackThis
RP402: 8/19/2010 7:39:49 PM - Removed HiJackThis
RP403: 8/19/2010 11:40:10 PM - Installed HiJackThis
RP404: 8/19/2010 11:45:10 PM - Removed HiJackThis
RP405: 8/19/2010 11:46:10 PM - Installed HiJackThis
RP406: 8/19/2010 11:59:03 PM - Removed HiJackThis
RP407: 8/20/2010 12:03:07 AM - Installed HiJackThis
==== Installed Programs ======================
ABBYY FineReader 6.0 Sprint
Acrobat.com
Activation Assistant for the 2007 Microsoft Office suites
ActiveCheck component for HP Active Support Library
Adobe Flash Player 10 ActiveX
Adobe Reader 9.3.3
Apple Application Support
Apple Mobile Device Support
Apple Software Update
BlackBerry Desktop Software 6.0
BlackBerry Device Software Updater
Bonjour
Canon DIGITAL CAMERA Solution Disk Software Guide
CANON iMAGE GATEWAY Task for ZoomBrowser EX
Canon Internet Library for ZoomBrowser EX
Canon MOV Decoder
Canon MOV Encoder
Canon MovieEdit Task for ZoomBrowser EX
Canon Personal Printing Guide
Canon PowerShot SD980 IS_IXUS 200 IS Camera User Guide
Canon Utilities CameraWindow
Canon Utilities CameraWindow DC
Canon Utilities CameraWindow DC 8
Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
Canon Utilities MyCamera
Canon Utilities MyCamera DC
Canon Utilities PhotoStitch
Canon Utilities RemoteCapture Task for ZoomBrowser EX
Canon Utilities ZoomBrowser EX
Canon ZoomBrowser EX Memory Card Utility
Comcast Desktop Software (v1.2.0.9)
Compatibility Pack for the 2007 Office system
CyberLink DVD Suite Deluxe
Dell Driver Download Manager
Dell PC TuneUp
Dell V305
Desktop Doctor
DHTML Editing Component
DirectX for Managed Code Update (Summer 2004)
Hardware Diagnostic Tools
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Active Support Library
HP Advisor
HP Customer Experience Enhancements
HP Games
HP MediaSmart DVD
HP Odometer
HP Recovery Manager RSS
HP Support Information
HP Total Care Setup
HP Update
HPAsset component for HP Active Support Library
Internet Explorer (Enable DEP)
iTunes
Japanese Fonts Support For Adobe Reader 9
Java Auto Updater
Java™ 6 Update 21
Java™ 6 Update 3
Junk Mail filter update
LabelPrint
LG USB Modem driver
LightScribe System Software
Linksys EasyLink Advisor
Malwarebytes' Anti-Malware
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Office Excel MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Works
MSN Toolbar
MSN Toolbar Platform
MSVCRT
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Norton Internet Security
NVIDIA Drivers
OGA Notifier 2.0.0048.0
PictureMover
Power2Go
PowerDirector
Pure Networks Platform
Python 2.6 pywin32-212
Python 2.6.1
QuickTime
Realtek High Definition Audio Driver
Shipping Assistant 3.6
TomTom HOME 2.7.5.2014
TomTom HOME Visual Studio Merge Modules
Turbo Lister 2
Uniblue RegistryBooster
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
WebEx Support Manager for Internet Explorer
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live OneCare safety scanner
Windows Live Photo Gallery
==== Event Viewer Messages From Past Week ========
8/19/2010 8:16:49 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Media Player Network Sharing Service service to connect.
8/19/2010 8:16:49 AM, Error: Service Control Manager [7000] - The Windows Media Player Network Sharing Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/19/2010 6:21:23 AM, Error: Service Control Manager [7034] - The dldt_device service terminated unexpectedly. It has done this 1 time(s).
8/19/2010 12:57:00 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the HP Health Check Service service to connect.
8/19/2010 12:57:00 AM, Error: Service Control Manager [7000] - The HP Health Check Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/19/2010 12:39:30 AM, Error: Service Control Manager [7031] - The Windows Defender service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: i8042prt
8/19/2010 12:21:29 PM, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error 2147749155 (0x80040D23).
8/19/2010 12:21:29 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the dldtCATSCustConnectService service to connect.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7000] - The Parallel port driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
8/19/2010 12:21:29 PM, Error: Service Control Manager [7000] - The dldtCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/18/2010 9:24:49 PM, Error: Microsoft-Windows-DistributedCOM [10016] - The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} to the user eddie-maria\Eddie SID (S-1-5-21-1119333972-2933176690-2880281189-1000) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.
8/18/2010 12:56:20 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the szserver service.
8/18/2010 1:44:56 AM, Error: Service Control Manager [7001] - The Windows Image Acquisition (WIA) service depends on the Shell Hardware Detection service which failed to start because of the following error: The operation completed successfully.
8/17/2010 9:24:51 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.
8/17/2010 6:35:23 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.0.2 for the Network Card with network address 00248CF8EFF0 has been denied by the DHCP server 192.168.0.1 (The DHCP Server sent a DHCPNACK message).
8/17/2010 10:26:51 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
8/17/2010 10:26:51 PM, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/17/2010 10:26:51 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
8/17/2010 10:26:27 PM, Error: Service Control Manager [7022] - The KtmRm for Distributed Transaction Coordinator service hung on starting.
8/17/2010 10:22:14 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: i8042prt is3srv
8/16/2010 7:41:49 PM, Error: Service Control Manager [7030] - The dldt_device service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
8/16/2010 3:34:50 PM, Error: Microsoft-Windows-PrintSpooler [6161] - The document https://ibdswebp25-ext.pb.com/images/USPS/H…lders/HTML15/f3, owned by Eddie, failed to print on printer Dell V305. Try to print the document again, or restart the print spooler. Data type: LEMF. Size of the spool file in bytes: 185102. Number of bytes printed: 185102. Total number of pages in the document: 1. Number of pages printed: 0. Client computer: \\EDDIE-MARIA. Win32 error code returned by the print processor: 0. The operation completed successfully.
8/15/2010 9:48:27 PM, Error: Microsoft-Windows-PrintSpooler [6161] - The document http://mail.aol.com/32447-111/aol-1/en-us/…rintMessage.asp, owned by Eddie, failed to print on printer Dell V305. Try to print the document again, or restart the print spooler. Data type: LEMF. Size of the spool file in bytes: 77560. Number of bytes printed: 77560. Total number of pages in the document: 1. Number of pages printed: 0. Client computer: \\EDDIE-MARIA. Win32 error code returned by the print processor: 0. The operation completed successfully.
==== End Of File ===========================