This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Searchqu.com malware

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hello,
At the weekend I downloaded iLivid and since then have had searchqu.com set as default on all my internet browsers.
I have tried my best to remove it by uninstalling all the iLivid and Bandoo files etc. that I can find, however whenever I search in the Google Chrome search bar, it is evident that searchqu is still on my system, even though I have removed it from the internet options, and reset Google as my default search provider. I have cleared cookies etc. to no avail. I have also run Malwarebytes Anti-Malware, but that didn’t find anything to do with this problem so it still exists.
I tried to do a system restore a few times but it was unsuccessful. I finally managed to do this, but when I logged on the problem still existed, and Norton Antivirus had been turned off, so I had to turn that on again and run updates.
At this point I thought it would be best to ask for some advice. Any help would be really appreciated so this problem can be solved asap.
The computer performance hasn't really changed too much, although it has been slow a couple of times. The main issue is just the search bar indicating the malware

I have run OTL and these are the results:

OTL logfile created on: 18/05/2011 14:40:56 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Martyn\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19048)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 60.00% Memory free
6.00 Gb Paging File | 5.00 Gb Available in Paging File | 74.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 220.27 Gb Total Space | 110.02 Gb Free Space | 49.95% Space Free | Partition Type: NTFS
Drive D: | 10.00 Gb Total Space | 5.55 Gb Free Space | 55.50% Space Free | Partition Type: NTFS
Drive E: | 2.52 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive F: | 968.23 Mb Total Space | 766.08 Mb Free Space | 79.12% Space Free | Partition Type: FAT

Computer Name: MARTYN-PC | User Name: Martyn | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Martyn\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Common Files\Steam\SteamService.exe (Valve Corporation)
PRC - C:\Program Files\Norton Internet Security\Engine\18.6.0.29\ccsvchst.exe (Symantec Corporation)
PRC - C:\Program Files\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
PRC - C:\Program Files\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe (SoftThinks - Dell)
PRC - C:\Program Files\Dell DataSafe Local Backup\Toaster.exe (SoftThinks - Dell)
PRC - C:\Program Files\Dell DataSafe Local Backup\Components\Scheduler\STService.exe ()
PRC - C:\Program Files\Dell DataSafe Local Backup\SftService.exe (SoftThinks SAS)
PRC - C:\Program Files\Steam\Steammm\steam.exe (Valve Corporation)
PRC - C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
PRC - C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
PRC - C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\SCRUTINIZER\html\scrut_filer.exe (Plixer International, Inc.)
PRC - C:\SCRUTINIZER\html\scrut_collector.exe (Plixer International, Inc.)
PRC - C:\Program Files\OpenOffice.org 3\program\soffice.bin (OpenOffice.org)
PRC - C:\Program Files\OpenOffice.org 3\program\soffice.exe (OpenOffice.org)
PRC - C:\SCRUTINIZER\apache2\bin\Apache.exe (Apache Software Foundation)
PRC - C:\SCRUTINIZER\mysql\bin\mysqld.exe ()
PRC - C:\SCRUTINIZER\files\crons.exe ()
PRC - C:\Program Files\Dell Support Center\bin\sprtsvc.exe (SupportSoft, Inc.)
PRC - C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
PRC - C:\Program Files\Dell\DellDock\DockLogin.exe (Stardock Corporation)
PRC - C:\Windows\OEM02Mon.exe (Creative Technology Ltd.)
PRC - C:\Program Files\Kontiki\KHost.exe (Kontiki Inc.)
PRC - C:\Program Files\DellTPad\hidfind.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\DellTPad\ApMsgFwd.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\DellTPad\ApntEx.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\Dell\MediaDirect\PCMService.exe (CyberLink Corp.)
PRC - C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe (IDT, Inc.)
PRC - C:\Windows\System32\stacsv.exe (IDT, Inc.)
PRC - C:\Windows\System32\AEstSrv.exe (Andrea Electronics Corporation)
PRC - C:\Program Files\Fingerprint Reader Suite\upeksvr.exe (UPEK Inc.)
PRC - C:\Program Files\Fingerprint Reader Suite\psqltray.exe (UPEK Inc.)
PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
PRC - C:\Windows\System32\ico.exe (Primax Electronics Ltd.)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
PRC - c:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Broadcom Corporation.)
PRC - C:\Windows\System32\wpcumi.exe (Microsoft Corporation)


========== Modules (SafeList) ==========

MOD - C:\Users\Martyn\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Norton Internet Security\Engine\18.6.0.29\asoehook.dll (Symantec Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c
2\msvcr90.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c
2\msvcp90.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (Steam Client Service) – C:\Program Files\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (NIS) – C:\Program Files\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe (Symantec Corporation)
SRV - (BBSvc) – C:\Program Files\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation.)
SRV - (SeaPort) – C:\Program Files\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
SRV - (SftService) – C:\Program Files\Dell DataSafe Local Backup\sftservice.EXE (SoftThinks SAS)
SRV - (NMSAccess) – C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
SRV - (scrutinizer_filed) – C:\SCRUTINIZER\html\scrut_filer.exe (Plixer International, Inc.)
SRV - (scrutinizer) – C:\SCRUTINIZER\html\scrut_collector.exe (Plixer International, Inc.)
SRV - (scrutinizer_apache2) – C:\SCRUTINIZER\apache2\bin\Apache.exe (Apache Software Foundation)
SRV - (scrutinizer_mysql) – C:\SCRUTINIZER\mysql\bin\mysqld.exe ()
SRV - (CRON) – C:\SCRUTINIZER\files\crons.exe ()
SRV - (sprtsvc_dellsupportcenter) SupportSoft Sprocket Service (dellsupportcenter) – C:\Program Files\Dell Support Center\bin\sprtsvc.exe (SupportSoft, Inc.)
SRV - (GoToAssist) – C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe (Citrix Online, a division of Citrix Systems, Inc.)
SRV - (DockLoginService) – C:\Program Files\Dell\DellDock\DockLogin.exe (Stardock Corporation)
SRV - (KService) – C:\Program Files\Kontiki\KService.exe (Kontiki Inc.)
SRV - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (STacSV) – C:\Windows\System32\stacsv.exe (IDT, Inc.)
SRV - (AESTFilters) – C:\Windows\System32\AEstSrv.exe (Andrea Electronics Corporation)
SRV - (IAANTMON) Intel® – C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)


========== Driver Services (SafeList) ==========

DRV - (NAVEX15) – C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\VirusDefs\20110517.050\NAVEX15.SYS (Symantec Corporation)
DRV - (NAVENG) – C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\VirusDefs\20110517.050\NAVENG.SYS (Symantec Corporation)
DRV - (eeCtrl) – C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) – C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (SymEvent) – C:\Windows\System32\drivers\SYMEVENT.SYS (Symantec Corporation)
DRV - (BHDrvx86) – C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\BASHDefs\20110430.001\BHDrvx86.sys (Symantec Corporation)
DRV - (SRTSP) – C:\Windows\System32\Drivers\NIS\1206000.01D\SRTSP.SYS (Symantec Corporation)
DRV - (SRTSPX) Symantec Real Time Storage Protection (PEL) – C:\Windows\system32\drivers\NIS\1206000.01D\SRTSPX.SYS (Symantec Corporation)
DRV - (SYMTDIv) – C:\Windows\System32\Drivers\NIS\1206000.01D\SYMTDIV.SYS (Symantec Corporation)
DRV - (SymEFA) – C:\Windows\system32\drivers\NIS\1206000.01D\SYMEFA.SYS (Symantec Corporation)
DRV - (IDSVix86) – C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\IPSDefs\20110514.001\IDSvix86.sys (Symantec Corporation)
DRV - (SymDS) – C:\Windows\system32\drivers\NIS\1206000.01D\SYMDS.SYS (Symantec Corporation)
DRV - (SymIRON) – C:\Windows\system32\drivers\NIS\1206000.01D\Ironx86.SYS (Symantec Corporation)
DRV - (StarOpen) – C:\Windows\System32\drivers\StarOpen.sys ()
DRV - (nvlddmkm) – C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (OEM02Vfx) – C:\Windows\System32\drivers\OEM02Vfx.sys (EyePower Games Pte. Ltd.)
DRV - (OEM02Dev) – C:\Windows\System32\drivers\OEM02Dev.sys (Creative Technology Ltd.)
DRV - (ApfiltrService) – C:\Windows\System32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (e1express) Intel® – C:\Windows\System32\drivers\e1e6032.sys (Intel Corporation)
DRV - (STHDA) – C:\Windows\System32\drivers\stwrt.sys (IDT, Inc.)
DRV - (iaNvStor) Intel® – C:\Windows\system32\drivers\ianvstor.sys (Intel Corporation)
DRV - (rismxdp) – C:\Windows\System32\drivers\rixdptsk.sys (REDC)
DRV - (rimmptsk) – C:\Windows\System32\drivers\rimmptsk.sys (REDC)
DRV - (rimsptsk) – C:\Windows\System32\drivers\rimsptsk.sys (REDC)
DRV - (pmxmouse) – C:\Windows\System32\drivers\pmxmouse.sys (Primax Electronics Ltd.)
DRV - (pmxusblf) – C:\Windows\System32\drivers\pmxusblf.sys (Primax Electronics Ltd.)
DRV - (R300) – C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (WimFltr) – C:\Windows\System32\drivers\WimFltr.sys (Microsoft Corporation)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.co.uk/ig/dell?hl=en&…amp;ibd=2080719
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bbc.co.uk/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\IPSFFPlgn\ [2011/05/03 09:36:55 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\coFFPlgn\ [2011/05/02 23:19:46 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010/07/17 19:10:19 | 000,000,000 | —D | M]

[2009/07/09 12:41:03 | 000,000,000 | —D | M] (No name found) – C:\Users\Martyn\AppData\Roaming\Mozilla\Firefox\extensions
[2009/07/09 12:41:03 | 000,000,000 | —D | M] ("Ask Toolbar for Firefox") – C:\Users\Martyn\AppData\Roaming\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}

O1 HOSTS File: ([2006/09/18 22:41:30 | 000,000,761 | —- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.6.0.29\coieplg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.6.0.29\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.)
O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.6.0.29\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.6.0.29\coieplg.dll (Symantec Corporation)
O4 - HKLM..\Run: [4oD] C:\Program Files\Kontiki\KHost.exe (Kontiki Inc.)
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [DellSupportCenter] C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe ( )
O4 - HKLM..\Run: [ECenter] C:\DELL\E-Center\EULALauncher.exe ( )
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (Intel Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NVHotkey] C:\Windows\System32\nvHotkey.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [PCMService] C:\Program Files\Dell\MediaDirect\PCMService.exe (CyberLink Corp.)
O4 - HKLM..\Run: [PMX Daemon] C:\Windows\System32\ico.exe (Primax Electronics Ltd.)
O4 - HKLM..\Run: [PSQLLauncher] C:\Program Files\Fingerprint Reader Suite\launcher.exe (UPEK Inc.)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe (IDT, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [WPCUMI] C:\Windows\System32\wpcumi.exe (Microsoft Corporation)
O4 - HKCU..\Run: [DellSupportCenter] C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKCU..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe (Kontiki Inc.)
O4 - HKCU..\Run: [Steam] C:\Program Files\Steam\Steammm\Steam.exe (Valve Corporation)
O4 - HKLM..\RunOnce: [Launcher] C:\Program Files\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe (Softthinks)
O4 - Startup: C:\Users\Martyn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
O4 - Startup: C:\Users\Martyn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1
O8 - Extra context menu item: Google Sidewiki… - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll (Google Inc.)
O8 - Extra context menu item: Send image to &Bluetooth Device… - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device… - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash…r/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Filter\application/x-internet-signup {A173B69A-1F9B-4823-9FDA-412F641E65D6} - C:\Program Files\Tiscali\Tiscali Internet\dlls\tiscalifilter.dll ()
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: GinaDLL - (vrlogon.dll) - C:\Windows\System32\vrlogon.dll (UPEK Inc.)
O20 - Winlogon\Notify\GoToAssist: DllName - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll - C:\Program Files\Citrix\GoToAssist\514\g2awinlogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
O20 - Winlogon\Notify\psfus: DllName - C:\Windows\system32\psqlpwd.dll - C:\Windows\System32\psqlpwd.dll (UPEK Inc.)
O24 - Desktop WallPaper: C:\Users\Martyn\Documents\Downloads\69834745_be39a2c3e8.jpg
O24 - Desktop BackupWallPaper: C:\Users\Martyn\Documents\Downloads\69834745_be39a2c3e8.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 22:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O32 - AutoRun File - [2004/04/30 18:01:00 | 000,000,053 | -HS- | M] () - D:\AUTORUN.INF – [ NTFS ]
O32 - AutoRun File - [2010/08/16 13:57:50 | 000,000,154 | R— | M] () - E:\autorun.cfg – [ UDF ]
O32 - AutoRun File - [2010/10/05 15:53:16 | 000,214,344 | R— | M] (Sports Interactive) - E:\autorun.exe – [ UDF ]
O32 - AutoRun File - [2006/09/11 14:26:42 | 000,000,027 | R— | M] () - E:\autorun.inf – [ UDF ]
O33 - MountPoints2\{1b092339-3a11-11de-9187-001fe1e1c281}\Shell - "" = AutoRun
O33 - MountPoints2\{1b092339-3a11-11de-9187-001fe1e1c281}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{81f16782-550d-11dd-ad18-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{81f16782-550d-11dd-ad18-806e6f6e6963}\Shell\AutoRun\command - "" = E:\autorun.exe – [2010/10/05 15:53:16 | 000,214,344 | R— | M] (Sports Interactive)
O33 - MountPoints2\{e4c3a271-bf97-11dd-884d-001fe1e1c281}\Shell - "" = AutoRun
O33 - MountPoints2\{e4c3a271-bf97-11dd-884d-001fe1e1c281}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2011/05/18 11:41:25 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{C453A69D-8430-486A-A054-834872A05A14}
[2011/05/17 17:20:08 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{D86104B6-3B57-4620-A575-F5EB30F8946C}
[2011/05/16 21:09:06 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Roaming\Tific
[2011/05/16 21:08:11 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\Symantec
[2011/05/16 21:07:56 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{55F084D2-F9DE-4F17-8D29-AC7092802172}
[2011/05/16 16:38:48 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{BBABFE1F-9757-43D8-9C74-6CE59DA76304}
[2011/05/16 04:32:54 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{00B70BEE-C9FB-496C-B305-1523D7B923A1}
[2011/05/16 01:41:42 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Roaming\Malwarebytes
[2011/05/16 01:41:30 | 000,000,000 | —D | C] – C:\ProgramData\Malwarebytes
[2011/05/16 01:41:27 | 000,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
[2011/05/15 23:00:35 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Roaming\PeerNetworking
[2011/05/15 18:04:48 | 000,000,000 | -H-D | C] – C:\ProgramData\Common Files
[2011/05/15 18:04:00 | 000,000,000 | —D | C] – C:\ProgramData\MFAData
[2011/05/15 12:28:18 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{6C27B997-1340-4A55-BF0B-3D652C838FC6}
[2011/05/15 01:08:20 | 000,000,000 | —D | C] – C:\Windows\pdk-Martyn-5856
[2011/05/14 20:10:57 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\Ilivid Player
[2011/05/14 20:08:18 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\PackageAware
[2011/05/14 20:03:12 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\Ares
[2011/05/14 17:03:22 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{50804A34-416F-4185-94BE-1F4E51C02F1E}
[2011/05/14 04:25:42 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{1BB0A6C2-8A39-4984-8C3A-7EFA8CB6BAAF}
[2011/05/13 04:12:04 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{5E902BE0-2ECD-4DE5-9DC2-B043FC56E7ED}
[2011/05/12 12:56:27 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{B14939D2-B2DA-44C2-AF0B-C470A63AFE1D}
[2011/05/11 19:01:31 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{153140FD-B251-442D-A7D8-730E3153346B}
[2011/05/11 12:51:51 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{6F9BE137-AEBC-4619-9C45-B37E92994004}
[2011/05/11 11:25:11 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{A4CA0F6C-5896-481C-848B-8110BB9FB233}
[2011/05/10 12:44:22 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{402AB235-D6BF-432B-A2C0-D271A6011989}
[2011/05/09 17:39:13 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{4CFA7BDE-F082-4A7E-93D8-C5060BA87C46}
[2011/05/08 23:28:55 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{E4DF3DC7-B44D-4CB3-AE79-97778704CB42}
[2011/05/08 16:10:28 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{063FE85C-CCFE-41AA-9E50-E5EB468B1DDF}
[2011/05/08 11:26:49 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{EF9D0873-49A3-47B3-8AE6-169FB9753907}
[2011/05/07 12:49:04 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{FFEDF3BD-303F-403E-9F39-0A53CB8994C2}
[2011/05/06 13:38:35 | 000,000,000 | —D | C] – C:\Users\Martyn\Documents\Dissertation printing
[2011/05/06 10:09:17 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{CAE29B42-058E-4068-AC9F-A37C98AD60FA}
[2011/05/06 03:43:28 | 000,000,000 | —D | C] – C:\Users\Martyn\Documents\Testt
[2011/05/05 21:24:21 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{4A1C701D-D8E9-43E5-B8ED-F701B5CBEEB8}
[2011/05/04 21:46:46 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{67744B03-6331-4876-A8D5-19425B126E75}
[2011/05/04 09:26:02 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{99F9034F-3796-4674-BFFF-6DDCCB294411}
[2011/05/03 09:38:46 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{A9D37FEB-F85C-4776-B626-4C19E5C8564F}
[2011/05/02 09:10:34 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{EC6052EF-EE22-4C59-BFC0-4F7F663EDAFB}
[2011/05/01 18:54:12 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{362AEE72-4C2F-4245-9B9D-03762002194A}
[2011/04/30 11:36:49 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{91E579E7-D1CE-4A45-90BF-CD91F9F607E6}
[2011/04/29 11:02:53 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{A3CFBFAE-155F-41FB-ACEB-AE70DB440F45}
[2011/04/28 19:28:46 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{0A5F8D78-9F4E-4C8C-8F04-2A3B8C721EC5}
[2011/04/28 06:26:09 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{AC63F910-08D3-4E0B-9DB0-C3352B81987C}
[2011/04/27 09:34:50 | 000,028,672 | —- | C] (Microsoft Corporation) – C:\Windows\System32\Apphlpdm.dll
[2011/04/27 09:34:49 | 004,240,384 | —- | C] (Microsoft) – C:\Windows\System32\GameUXLegacyGDFs.dll
[2011/04/27 09:34:43 | 000,876,032 | —- | C] (Microsoft Corporation) – C:\Windows\System32\XpsPrint.dll
[2011/04/27 09:26:24 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{F7C95204-F57E-45DF-804D-27395BDF5187}
[2011/04/27 02:43:31 | 000,000,000 | —D | C] – C:\Windows\pdk-Martyn-2076
[2011/04/26 10:36:47 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{47EC6244-2E10-4B65-B941-026BC83EA2B0}
[2011/04/24 16:56:50 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{EA4BAEE4-1022-4DC4-A78D-4E1A37A6DD6E}
[2011/04/24 03:12:06 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{92B8EF05-1B25-429C-86FD-854963429466}
[2011/04/23 12:06:56 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{5998647B-FA34-4058-9854-8AD81A360B69}
[2011/04/22 08:29:53 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{740F6A34-964A-42EF-8543-EAD206C97AF3}
[2011/04/21 11:56:24 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{06DE32C2-48DE-4D8A-9D68-E28F25C7BCEA}
[2011/04/20 12:41:43 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{96EB8D54-3437-4E38-AA90-478CEE83A4EF}
[2011/04/19 11:15:24 | 000,000,000 | —D | C] – C:\Users\Martyn\AppData\Local\{D62E81B8-F95B-4EED-AE67-2541F595C3DB}
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Martyn\Documents\*.tmp files -> C:\Users\Martyn\Documents\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/05/18 14:37:00 | 000,000,912 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1324060679-460454841-1612088172-1000UA.job
[2011/05/18 14:34:18 | 000,000,819 | —- | M] () – C:\Users\Martyn\Desktop\OTL - Shortcut.lnk
[2011/05/18 14:32:06 | 000,003,616 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/05/18 14:32:06 | 000,003,616 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/05/18 13:59:00 | 000,000,886 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/05/18 13:10:00 | 000,027,934 | —- | M] () – C:\ProgramData\nvModes.001
[2011/05/18 13:07:09 | 000,000,882 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/05/18 13:06:32 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2011/05/18 13:06:29 | 3219,193,856 | -HS- | M] () – C:\hiberfil.sys
[2011/05/18 12:07:58 | 000,003,204 | —- | M] () – C:\Windows\bthservsdp.dat
[2011/05/17 20:37:00 | 000,000,860 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1324060679-460454841-1612088172-1000Core.job
[2011/05/17 18:00:00 | 000,000,446 | —- | M] () – C:\Windows\tasks\ParetoLogic Registration3.job
[2011/05/15 23:00:36 | 000,017,089 | —- | M] () – C:\Users\Martyn\AppData\Roaming\UserTile.png
[2011/05/11 11:38:02 | 002,278,102 | —- | M] () – C:\Windows\System32\drivers\NIS\1206000.01D\Cat.DB
[2011/05/10 20:05:34 | 000,000,472 | -H– | M] () – C:\Windows\tasks\Norton Security Scan for Martyn.job
[2011/05/09 17:41:59 | 000,002,011 | —- | M] () – C:\Users\Martyn\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/05/09 17:41:58 | 000,002,049 | —- | M] () – C:\Users\Martyn\Desktop\Google Chrome.lnk
[2011/05/09 02:39:28 | 000,000,382 | —- | M] () – C:\Windows\tasks\DriverCure.job
[2011/05/03 09:34:14 | 000,000,540 | —- | M] () – C:\Windows\tasks\Norton Internet Security - Run Full System Scan - Martyn.job
[2011/05/03 09:34:11 | 000,002,215 | —- | M] () – C:\Users\Public\Desktop\Norton Internet Security.lnk
[2011/05/02 23:20:14 | 000,126,584 | —- | M] (Symantec Corporation) – C:\Windows\System32\drivers\SYMEVENT.SYS
[2011/05/02 23:20:14 | 000,007,468 | —- | M] () – C:\Windows\System32\drivers\SYMEVENT.CAT
[2011/05/02 23:20:14 | 000,000,806 | —- | M] () – C:\Windows\System32\drivers\SYMEVENT.INF
[2011/04/29 04:29:05 | 000,000,172 | —- | M] () – C:\Windows\System32\drivers\NIS\1206000.01D\isolate.ini
[2011/04/22 19:09:20 | 000,051,200 | —- | M] () – C:\Users\Martyn\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Martyn\Documents\*.tmp files -> C:\Users\Martyn\Documents\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/05/18 14:34:17 | 000,000,819 | —- | C] () – C:\Users\Martyn\Desktop\OTL - Shortcut.lnk
[2011/05/16 21:01:10 | 3219,193,856 | -HS- | C] () – C:\hiberfil.sys
[2011/05/15 23:00:36 | 000,017,089 | —- | C] () – C:\Users\Martyn\AppData\Roaming\UserTile.png
[2011/01/04 22:43:37 | 000,001,940 | —- | C] () – C:\Users\Martyn\AppData\Local\{96C87F53-AC72-4604-A9CC-186A49F17F3C}.ini
[2010/10/22 13:48:51 | 000,000,552 | —- | C] () – C:\Users\Martyn\AppData\Local\d3d8caps.dat
[2010/07/14 17:18:40 | 000,007,168 | —- | C] () – C:\Windows\System32\drivers\StarOpen.sys
[2009/09/24 12:40:59 | 000,107,612 | —- | C] () – C:\Windows\System32\StructuredQuerySchema.bin
[2009/09/24 12:40:58 | 000,117,248 | —- | C] () – C:\Windows\System32\EhStorAuthn.dll
[2009/08/03 15:07:42 | 000,403,816 | —- | C] () – C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | —- | C] () – C:\Windows\System32\OGAEXEC.exe
[2009/07/22 16:19:02 | 000,116,839 | —- | C] () – C:\Windows\hpqins00.dat
[2009/07/09 22:09:20 | 000,484,352 | —- | C] () – C:\Windows\System32\lame_enc.dll
[2009/04/14 14:26:18 | 000,160,523 | —- | C] () – C:\Windows\hpoins27.dat
[2009/03/30 02:04:20 | 000,000,680 | —- | C] () – C:\Users\Martyn\AppData\Local\d3d9caps.dat
[2009/03/10 02:14:06 | 000,000,000 | —- | C] () – C:\Windows\pcfriend.INI
[2009/02/28 20:02:00 | 000,000,024 | —- | C] () – C:\Windows\cdplayer.ini
[2008/10/26 18:09:09 | 000,141,490 | —- | C] () – C:\Windows\hpoins15.dat
[2008/10/09 03:02:33 | 000,018,904 | —- | C] () – C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008/07/31 22:47:08 | 000,027,934 | —- | C] () – C:\ProgramData\nvModes.001
[2008/07/31 22:19:38 | 000,027,934 | —- | C] () – C:\ProgramData\nvModes.dat
[2008/07/31 20:12:52 | 000,003,278 | —- | C] () – C:\Users\Martyn\AppData\Roaming\wklnhst.dat
[2008/07/31 19:29:03 | 000,051,200 | —- | C] () – C:\Users\Martyn\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/07/19 06:04:38 | 000,167,936 | —- | C] () – C:\Windows\System32\nvccoin.dll
[2008/07/19 06:04:37 | 000,016,480 | —- | C] () – C:\Windows\System32\rixdicon.dll
[2008/07/18 22:11:30 | 000,003,204 | —- | C] () – C:\Windows\bthservsdp.dat
[2008/07/18 21:33:34 | 000,000,076 | RHS- | C] () – C:\Windows\CT4CET.bin
[2008/07/18 21:28:56 | 000,054,784 | —- | C] () – C:\Windows\System32\bcmwlrmt.dll
[2008/07/18 21:28:55 | 000,024,064 | —- | C] () – C:\Windows\System32\WLTRYSVC.EXE
[2008/07/18 21:27:54 | 000,303,104 | —- | C] () – C:\Windows\System32\FontZoom.exe
[2008/07/18 21:27:53 | 000,131,070 | —- | C] () – C:\Windows\System32\DellPM.ini
[2008/02/04 00:11:25 | 000,000,000 | —- | C] () – C:\Windows\System32\atiicdxx.dat
[2007/12/12 21:02:34 | 000,001,039 | —- | C] () – C:\Windows\hpomdl15.dat
[2007/12/12 18:04:27 | 000,000,932 | —- | C] () – C:\Windows\hpomdl27.dat
[2006/11/03 17:25:56 | 000,389,120 | —- | C] () – C:\Windows\System32\btwhidcs.dll
[2006/11/02 13:57:28 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2006/11/02 13:47:37 | 000,389,672 | —- | C] () – C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 13:35:32 | 000,005,632 | —- | C] () – C:\Windows\System32\sysprepMCE.dll
[2006/11/02 11:33:01 | 000,598,084 | —- | C] () – C:\Windows\System32\perfh009.dat
[2006/11/02 11:33:01 | 000,287,440 | —- | C] () – C:\Windows\System32\perfi009.dat
[2006/11/02 11:33:01 | 000,105,162 | —- | C] () – C:\Windows\System32\perfc009.dat
[2006/11/02 11:33:01 | 000,030,674 | —- | C] () – C:\Windows\System32\perfd009.dat
[2006/11/02 11:25:44 | 000,159,744 | —- | C] () – C:\Windows\System32\atitmmxx.dll
[2006/11/02 11:23:21 | 000,215,943 | —- | C] () – C:\Windows\System32\dssec.dat
[2006/11/02 09:58:30 | 000,043,131 | —- | C] () – C:\Windows\mib.bin
[2006/11/02 09:19:00 | 000,000,741 | —- | C] () – C:\Windows\System32\NOISE.DAT
[2006/11/02 08:40:29 | 000,013,750 | —- | C] () – C:\Windows\System32\pacerprf.ini
[2006/11/02 08:25:31 | 000,673,088 | —- | C] () – C:\Windows\System32\mlang.dat
[2001/11/14 12:56:00 | 001,802,240 | —- | C] () – C:\Windows\System32\lcppn21.dll
[1998/10/11 01:07:38 | 000,088,576 | —- | C] () – C:\Windows\System32\Iticheck.dll

========== LOP Check ==========

[2009/04/21 23:29:06 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\BBCiPlayerDesktop.61DB7A798358575D6A969CCD73DDBBD723A6DA9D.1
[2010/07/14 17:18:55 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\Canneverbe Limited
[2008/09/16 23:30:59 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\CoSoSys
[2010/07/17 14:16:19 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\DriverCure
[2009/01/28 02:03:02 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\OpenOffice.org
[2011/05/15 23:00:35 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\PeerNetworking
[2009/01/28 01:56:31 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\Serif
[2010/12/01 23:39:43 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\Sports Interactive
[2008/07/31 20:12:53 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\Template
[2011/05/16 21:09:06 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\Tific
[2008/10/27 21:11:27 | 000,000,000 | —D | M] – C:\Users\Martyn\AppData\Roaming\Windows Live Writer
[2011/05/09 02:39:28 | 000,000,382 | —- | M] () – C:\Windows\Tasks\DriverCure.job
[2011/05/17 18:00:00 | 000,000,446 | —- | M] () – C:\Windows\Tasks\ParetoLogic Registration3.job
[2011/03/22 04:33:11 | 000,000,420 | —- | M] () – C:\Windows\Tasks\ParetoLogic Update Version3.job
[2011/05/18 12:07:58 | 000,032,556 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2006/09/18 22:43:36 | 000,000,024 | —- | M] () – C:\autoexec.bat
[2009/04/11 07:36:36 | 000,333,257 | RHS- | M] () – C:\bootmgr
[2006/09/18 22:43:37 | 000,000,010 | —- | M] () – C:\config.sys
[2008/07/19 06:04:49 | 000,005,097 | RH– | M] () – C:\dell.sdr
[2011/05/18 13:06:29 | 3219,193,856 | -HS- | M] () – C:\hiberfil.sys
[2009/09/10 14:44:15 | 000,022,729 | —- | M] () – C:\newfile.enc
[2009/09/10 14:44:15 | 000,022,729 | —- | M] () – C:\newkey
[2011/05/18 13:06:27 | 3533,000,704 | -HS- | M] () – C:\pagefile.sys
[2008/10/26 22:05:42 | 000,000,232 | -H– | M] () – C:\sqmdata00.sqm
[2008/10/26 22:05:42 | 000,000,244 | -H– | M] () – C:\sqmnoopt00.sqm
[2009/09/16 19:10:45 | 000,000,909 | —- | M] () – C:\updatedatfix.log

< %systemroot%\Fonts\*.com >
[2006/11/02 13:37:12 | 000,026,040 | —- | M] () – C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006/11/02 13:37:12 | 000,026,489 | —- | M] () – C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006/11/02 13:37:12 | 000,029,779 | —- | M] () – C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009/10/13 11:56:37 | 000,037,665 | —- | M] () – C:\Windows\Fonts\GlobalUserInterface.CompositeFont

< %systemroot%\Fonts\*.dll >

< %systemroot%\Fonts\*.ini >
[2006/09/18 22:37:34 | 000,000,065 | —- | M] () – C:\Windows\Fonts\desktop.ini

< %systemroot%\Fonts\*.ini2 >

< %systemroot%\Fonts\*.exe >

< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2007/03/28 14:57:34 | 000,274,944 | —- | M] (Hewlett-Packard Corporation) – C:\Windows\System32\spool\prtprocs\w32x86\hpzpp5ha.dll
[2007/10/20 18:21:50 | 000,278,016 | —- | M] (Hewlett-Packard Corporation) – C:\Windows\System32\spool\prtprocs\w32x86\hpzpp5mu.dll
[2008/01/21 03:23:14 | 000,089,600 | —- | M] (Hewlett-Packard Corporation) – C:\Windows\System32\spool\prtprocs\w32x86\HPZPPLHN.DLL
[2006/11/02 13:35:48 | 000,022,528 | —- | M] (Microsoft Corporation) – C:\Windows\System32\spool\prtprocs\w32x86\jnwppr.dll
[2006/10/26 19:56:12 | 000,033,104 | —- | M] (Microsoft Corporation) – C:\Windows\System32\spool\prtprocs\w32x86\msonpppr.dll

< %systemroot%\REPAIR\*.bak1 >

< %systemroot%\REPAIR\*.ini >

< %systemroot%\system32\*.jpg >

< %systemroot%\*.jpg >

< %systemroot%\*.png >

< %systemroot%\*.scr >
[2010/11/10 02:28:46 | 000,301,936 | —- | M] (Microsoft Corporation) – C:\Windows\WLXPGSS.SCR
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

< %systemroot%\*._sy >

< %APPDATA%\Adobe\Update\*.* >

< %ALLUSERSPROFILE%\Favorites\*.* >

< %APPDATA%\Microsoft\*.* >

< %PROGRAMFILES%\*.* >
[2008/01/21 03:43:21 | 000,000,174 | -HS- | M] () – C:\Program Files\desktop.ini

< %APPDATA%\Update\*.* >

< %systemroot%\*. /mp /s >

< %systemroot%\System32\config\*.sav >
[2008/01/21 04:14:18 | 016,846,848 | —- | M] () – C:\Windows\System32\config\COMPONENTS.SAV
[2008/01/21 04:14:08 | 000,106,496 | —- | M] () – C:\Windows\System32\config\DEFAULT.SAV
[2008/01/21 04:14:18 | 000,020,480 | —- | M] () – C:\Windows\System32\config\SECURITY.SAV
[2006/11/02 11:34:08 | 010,133,504 | —- | M] () – C:\Windows\System32\config\SOFTWARE.SAV
[2006/11/02 11:34:08 | 001,826,816 | —- | M] () – C:\Windows\System32\config\SYSTEM.SAV

< %PROGRAMFILES%\bak. /s >

< %systemroot%\system32\bak. /s >

< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >

< %systemroot%\system32\config\systemprofile\*.dat /x >

< %systemroot%\*.config >

< %systemroot%\system32\*.db >

< %PROGRAMFILES%\Internet Explorer\*.dat >

< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/09/05 02:45:25 | 000,000,286 | -HS- | M] () – C:\Users\Martyn\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini

< %USERPROFILE%\Desktop\*.exe >

< %PROGRAMFILES%\Common Files\*.* >

< %systemroot%\*.src >

< %systemroot%\install\*.* >

< %systemroot%\system32\DLL\*.* >

< %systemroot%\system32\HelpFiles\*.* >

< %systemroot%\system32\rundll\*.* >

< %systemroot%\winn32\*.* >

< %systemroot%\Java\*.* >

< %systemroot%\system32\test\*.* >

< %systemroot%\system32\Rundll32\*.* >

< %systemroot%\AppPatch\Custom\*.* >

< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-05-17 01:35:10

< End of report >

OTL Extras logfile created on: 18/05/2011 14:40:56 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Martyn\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19048)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 60.00% Memory free
6.00 Gb Paging File | 5.00 Gb Available in Paging File | 74.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 220.27 Gb Total Space | 110.02 Gb Free Space | 49.95% Space Free | Partition Type: NTFS
Drive D: | 10.00 Gb Total Space | 5.55 Gb Free Space | 55.50% Space Free | Partition Type: NTFS
Drive E: | 2.52 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive F: | 968.23 Mb Total Space | 766.08 Mb Free Space | 79.12% Space Free | Partition Type: FAT

Computer Name: MARTYN-PC | User Name: Martyn | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] – C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] – C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = htmlfile] – Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
cplfile [cplopen] – %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] – "%1" %*
helpfile [open] – Reg Error: Key error.
hlpfile [open] – %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"UacDisableNotify" = 1
"InternetSettingsDisableNotify" = 1
"AutoUpdateDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type – File not found
"VistaSp2" = Reg Error: Unknown registry data type – File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{17DC51DB-B049-471B-ABF4-BD8B9BEC4C9A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{7CFCDB52-A5DF-4A4D-8898-D6BBC4131179}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{ABE6353C-E27F-4765-9307-0800BCAFA530}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{FD7CBD8A-4B49-49F6-9BC4-2E5A4B207FE6}" = lport=2869 | protocol=6 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0B8E6245-44C0-4585-927D-2041ABED35F0}" = protocol=6 | dir=in | app=c:\program files\steam\steammm\steamapps\common\football manager 2011\fm.exe |
"{1DFEBE9C-7C43-4D3A-B7AE-CC1E4573053C}" = protocol=6 | dir=in | app=c:\program files\sports interactive\football manager 2008\fm.exe |
"{29828D40-1FDC-4ECB-9DC2-72B3D70BD409}" = protocol=6 | dir=in | app=c:\program files\sports interactive\football manager 2009\fm.exe |
"{2C1C13DE-E694-460A-AD80-DC6BCDD37C85}" = protocol=17 | dir=in | app=c:\program files\sports interactive\football manager 2009\fm.exe |
"{317161FD-C8C9-44CF-8F94-B78B463BC7A1}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{3B96A1DF-5245-4A52-856B-E25DB2E11C8E}" = protocol=6 | dir=in | app=c:\program files\sports interactive\football manager 2011 demo\fm.exe |
"{3D5B0A79-E5CB-42AE-99EB-729C6ABC2E14}" = protocol=6 | dir=in | app=c:\program files\sports interactive\football manager 2011\fm.exe |
"{51605FB2-B116-4337-A3C5-9C5FC1830B26}" = protocol=17 | dir=in | app=c:\program files\sports interactive\football manager 2011 demo\fm.exe |
"{563CB82D-DE6B-4EED-802C-E7AF23CAD8BF}" = protocol=6 | dir=in | app=c:\program files\steam\steammm\steamapps\common\football manager 2010\fm.exe |
"{57A7EF19-1AEB-4731-9DBA-58FE38FC36DE}" = protocol=17 | dir=in | app=c:\program files\sports interactive\football manager 2008\fm.exe |
"{57E2A403-1F75-46B8-9A9A-3D40A6F0A385}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{5FFD3EC2-6997-4DFA-B79E-EE59B7C2AB93}" = protocol=6 | dir=in | app=c:\program files\steam\steammm\steamapps\common\football manager 2010\fm.exe |
"{624CA66A-F0BE-4BDE-BC90-2707CC851E43}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{6AA7559C-72D1-4A82-B2AA-22BC6B7F7C0F}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{74B028E0-98E5-4D62-8B03-681BC12A5340}" = protocol=17 | dir=in | app=c:\program files\kontiki\kservice.exe |
"{7D62502D-241A-414C-A893-9320B817E649}" = dir=in | app=c:\program files\dell\mediadirect\pcmservice.exe |
"{900E6A2A-B664-436B-8CFA-A7197E74CF38}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{9B0650C2-3C5B-4B7E-AB4D-69E28707B96F}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{9BC7EE7E-9332-4EE3-990E-6FC3065C86CC}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{A181D707-AC3F-4E8A-89DA-ABC423BC5A85}" = dir=in | app=c:\program files\dell\mediadirect\kernel\dmp\clbrowserengine.exe |
"{BB244E7E-4CA8-4499-9D37-9CBCC69DD7F2}" = protocol=17 | dir=in | app=c:\program files\steam\steammm\steamapps\common\football manager 2011\fm.exe |
"{BE344D9A-FBFD-4B9D-9AC0-A80D6675CD94}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{C81E5E94-872D-49A1-A1ED-967305F2C984}" = protocol=17 | dir=in | app=c:\program files\steam\steammm\steamapps\common\football manager 2010\fm.exe |
"{C8C5CEBE-A004-40A7-8E96-F37E278566C0}" = protocol=17 | dir=in | app=c:\program files\steam\steammm\steamapps\common\football manager 2010\fm.exe |
"{CE62F8DE-F5D2-44CA-A276-B3F5785673FD}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{D2A100AB-6F9E-463F-9263-739DD37B1B87}" = dir=in | app=c:\program files\dell\mediadirect\kernel\dms\clmsservice.exe |
"{DE1118AD-8245-4E6D-BC27-FAF7417FE00E}" = protocol=6 | dir=in | app=c:\program files\kontiki\kservice.exe |
"{E19B69A1-1B16-4947-9184-11173FD27337}" = protocol=17 | dir=in | app=c:\program files\sports interactive\football manager 2011\fm.exe |
"{E7AA00AE-EA3E-4433-AA66-6F22685B89F6}" = dir=in | app=c:\program files\dell\mediadirect\mediadirect.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{001E7FB6-BB6B-4ED0-BEDC-B5404ED96D4E}" = DocProc
"{0289B35E-DC07-4c7a-9710-BBD686EA4B7D}" = Status
"{04441EE4-3631-43DB-813A-9D031380C8E5}" = MarketingReg
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{052bac4a-6f79-46d4-a024-1ce1b4f73cd4}" = Microsoft Visual C++ 2005 Redistributable
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{07FCBED5-94C3-4F94-B9D3-360FA27C7B06}" = Microsoft Windows SDK for Visual Studio 2008 Express Tools for Win32
"{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Creator Data
"{09760D42-E223-42AD-8C3E-55B47D0DDAC3}" = Roxio Creator DE
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0ED7EE95-6A97-47AA-AD73-152C08A15B04}" = Dell DataSafe Local Backup
"{0F7C2E47-089E-4d23-B9F7-39BE00100776}" = Toolbox
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{162B71B8-8464-4680-A086-601D555B331D}" = Apple Mobile Device Support
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{18669FF9-C8FE-407a-9F70-E674896B1DB4}" = GPBaseService
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1D5E29AD-39A9-4D0A-A8B6-46A6FCD8C995}" = Live! Cam Avatar v1.0
"{1E0D8F69-A6AB-4934-9B2D-159D9F97BA4A}" = ParetoLogic DriverCure
"{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Creator Tools
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}" = QuickTime
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{25BB07FA-D9A0-478E-8A4B-38466A4E8BF2}" = Serif PagePlus SE 1.0
"{2614F54E-A828-49FA-93BA-45A3F756BFAA}" = 32 Bit HP CIO Components Installer
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java™ 6 Update 24
"{294BF709-D758-4363-8D75-01479AD20927}" = Windows Live Family Safety
"{2E5C075E-11AB-4BDD-918C-7B9A68953FF8}" = Microsoft SQL Server Compact 3.5 Design Tools ENU
"{30465B6C-B53F-49A1-9EBA-A3F187AD502E}" = Roxio Update Manager
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java™ 6 Update 5
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{341201D4-4F61-4ADB-987E-9CCE4D83A58D}" = Windows Live Toolbar Extension (Windows Live Toolbar)
"{34BFB099-07B2-4E95-A673-7362D60866A2}" = PSSWCORE
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{36FDBE6E-6684-462b-AE98-9A39A1B200CC}" = HPProductAssistant
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B6AD248-D3BF-426A-8D64-847288154F13}" = QuickSet
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{4E5386F5-C0F6-4532-A54A-374865AEAB71}" = Cisco PEAP Module
"{5109C064-813E-4e87-B0DE-C8AF7B5BC02B}" = SmartWebPrintingOC
"{58B2B6D3-E5FF-4D16-87AC-52CC5717C7C6}" = Tiscali Internet
"{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{5FE917F6-88DB-82FC-AC44-EDF00C57EF21}" = BBC iPlayer Desktop
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{62230596-37E5-4618-A329-0D21F529A86F}" = Browser Address Error Redirector
"{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}" = Live! Cam Avatar Creator
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{687FEF8A-8597-40b4-832C-297EA3F35817}" = BufferChm
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6A05FEDF-662E-46BF-8A25-010E3F1C9C69}" = Windows Live UX Platform Language Pack
"{6AC940FC-0A75-49C4-B8D5-BC6D2B67520F}" = FMRTE
"{6B7B6D4D-8F9B-4CB3-8CA4-BCA9CC4C1A22}" = EDocs
"{6FFB40A5-7F7D-4A32-8905-3CDF962EE1E4}" = Internet From BT
"{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Creator Audio
"{76F9CF97-FC4B-4E20-B363-D127C888448F}" = Cisco LEAP Module
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7745B7A9-F323-4BB9-9811-01BF57A028DA}" = Map Button (Windows Live Toolbar)
"{77F8A71E-3515-4832-B8B2-2F1EDBD2E0F1}" = Bing Bar
"{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}" = Windows Live Favorites for Windows Live Toolbar
"{7988ba74-4a27-4685-991a-53f072f22808}" = F2200_Help
"{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}" = Dell Getting Started Guide
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger
"{818ABC3C-635C-4651-8183-D0E9640B7DD1}" = HP Update
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{86F14AEE-853E-4DC8-A31B-7EF518285FAE}" = Scrutinizer NetFlow Analyzer
"{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A85DEAD-7C1F-4368-881C-72AC74CB2E91}" = UnloadSupport
"{8B7443F5-E141-42A0-AB61-ED2331AAD606}" = 4oD
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{90850409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}" = OutlookAddinSetup
"{9C2D4047-0E40-499a-AC7A-C4B9BB12FE03}" = TrayApp
"{9C2DC81B-8114-37D9-A922-95E460A1FAFB}" = Microsoft Visual Basic 2008 Express Edition - ENU
"{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}" = MediaDirect
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Dell Touchpad
"{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175
"{A11409F1-CD33-4076-85CB-4EE4A8439BFE}" = Scan
"{A13E07E1-A423-44FB-9DEE-B24C75C1BAF2}" = WIDCOMM Bluetooth Software 6.0.1.3100
"{A2289997-10A3-48F2-AA03-99180D761661}" = Fingerprint Reader Suite 5.6
"{A5AB9D5E-52E2-440e-A3ED-9512E253C81A}" = SolutionCenter
"{A5C4AD72-25FE-4899-B6DF-6D8DF63C93CF}" = Highlight Viewer (Windows Live Toolbar)
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9668246-FB70-4103-A1E3-66C9BC2EFB49}" = Dell DataSafe Local Backup - Support Software
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-7AD7-1033-7B44-A81200000003}" = Adobe Reader 8.1.2
"{ACA85783-8EEA-4f0a-B2A3-A8173F30209F}" = C4200_doccd
"{AF7FC1CA-79DF-43c3-90A3-33EFEB9294CE}" = AIO_Scan
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{B09BCBF6-87EE-4403-A336-3A9510856535}" = HP Photosmart All-In-One Software 9.0
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B4C0A315-07FB-39F9-85CD-8CE20C019350}" = Microsoft Windows SDK for Visual Studio 2008 Express Tools for .NET Framework
"{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Creator Copy
"{B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF}" = HPSSupply
"{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}" = HP Photosmart Essential 2.5
"{BCC899FE-2DAA-460C-A5FB-60291E73D9C3}" = Microsoft SQL Server Compact 3.5 ENU
"{BF13AA9D-E4CE-4015-9778-ECC1D4FB06E4}" = Mouse Suite for Laptop Computers
"{BF53252E-4AB2-4C7F-A0FD-6100755745E3}" = Cisco EAP-FAST Module
"{BFDE4176-5DFE-4db9-AA00-8F30CB001BDA}" = c4200_Help
"{C26B06A9-27BB-45B0-9873-9C623EC2BA38}" = iTunes
"{C39E671D-0528-4c5e-A034-8470C5BC393A}" = C4200
"{C4421C89-1F2F-479D-AED1-27ACBF1310E8}" = BTOffer
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{c6922d7f-c698-4d9e-9671-8b3de04d1511}" = DJ_AIO_03_F2200_Software_Min
"{CCB9B81A-167F-4832-B305-D2A0430840B3}" = WebReg
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D2E0F0CC-6BE0-490b-B08B-9267083E34C9}" = MarketResearch
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D466F3D9-510C-4729-B7D4-2E70490E4CDF}" = BBC iPlayer Download Manager
"{D77D43B5-ED55-426b-B67B-E21F804F6102}" = HP Deskjet F2200 All-In-One Driver Software 10.0 Rel .3
"{D8B7A682-20DA-4797-8415-B1FB14D4D32B}" = PS_AIO_Software
"{D90AFDE3-3E67-407A-ACA8-F0BAAD012F08}" = Safari
"{D99A8E3A-AE5A-4692-8B19-6F16D454E240}" = Destination Component
"{db18dc72-cd20-4801-be82-f5d2caeec4d7}" = DJ_AIO_03_F2200_Software
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DF38F332-2AC3-37FF-9FDC-8C4C80E531FB}" = MSDN Library for Microsoft Visual Studio 2008 Express Editions
"{E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC}" = VideoToolkit01
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E28750A2-45F2-4b63-99F7-9F81A94B1E2D}" = PS_AIO_Software_min
"{E3BFEE55-39E2-4BE0-B966-89FE583822C1}" = Dell Support Center (Support Software)
"{e97a9fd7-2fa1-4474-820d-3f8893a5b78a}" = F2200
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{eca3039b-e429-420f-bd5e-7dec0683fc32}" = DJ_AIO_03_F2200_ProductContext
"{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Creator DE
"{EF1ADA5A-0B1A-4662-8C55-7475A61D8B65}" = DeviceDiscovery
"{F084395C-40FB-4DB3-981C-B51E74E1E83D}" = Smart Menus (Windows Live Toolbar)
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F42CD69D-E393-47c8-B2CD-B139C4ADA9A8}" = Copy
"{F44DA61E-720D-4E79-871F-F6E628B33242}" = OpenOffice.org 3.0
"{F4F4F84E-804F-4E9A-84D7-C34283F0088F}" = RealUpgrade 1.0
"{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety
"{F6CB42B9-F033-4152-8813-FF11DA8E6A78}" = Dell Dock
"{FD7F242B-9AA0-40c3-941E-3A9821D19C09}" = PS_AIO_ProductContext
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF29527A-44CD-3422-945E-981A13584000}" = VC Runtimes MSI
"4oD" = 4oD
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Advanced Audio FX Engine" = Advanced Audio FX Engine
"Advanced Video FX Engine" = Advanced Video FX Engine
"Ask Toolbar_is1" = Ask Toolbar
"BBC iPlayer Download Manager" = BBC iPlayer Download Manager
"Broadcom 802.11b Network Adapter" = Dell Wireless WLAN Card
"Bubble Shooter Premium_is1" = Bubble Shooter Premium
"Creative OEM002" = Laptop Integrated Webcam Driver (1.04.01.1011)
"Dell Webcam Center" = Dell Webcam Center
"Dell Webcam Manager" = Dell Webcam Manager
"DivX Setup.divx.com" = DivX Setup
"Football Manager 2008" = Football Manager 2008
"Football Manager 2009" = Football Manager 2009
"Football Manager 2011" = Football Manager 2011
"Football Manager 2011 Demo" = Football Manager 2011 Demo
"Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 1.8.0
"Free YouTube to Mp3 Converter_is1" = Free YouTube to Mp3 Converter version 3.1
"Google Desktop" = Google Desktop
"GoToAssist" = GoToAssist 8.0.0.514
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HP Imaging Device Functions" = HP Imaging Device Functions 10.0
"HP Photosmart Essential" = HP Photosmart Essential 2.5
"HP Smart Web Printing" = HP Smart Web Printing
"HP Solution Center & Imaging Support Tools" = HP Solution Center 10.0
"HPExtendedCapabilities" = HP Customer Participation Program 10.0
"HPOCR" = HP OCR Software 9.0
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft Visual Basic 2008 Express Edition - ENU" = Microsoft Visual Basic 2008 Express Edition - ENU
"MSDN Library for Microsoft Visual Studio 2008 Express Editions" = MSDN Library for Microsoft Visual Studio 2008 Express Editions
"NIS" = Norton Internet Security
"NSS" = Norton Security Scan
"NVIDIA Drivers" = NVIDIA Drivers
"PCFriendly" = PCFriendly
"RealPlayer 12.0" = RealPlayer
"Shop for HP Supplies" = Shop for HP Supplies
"SopCast" = SopCast 2.0.4
"Steam App 34000" = Football Manager 2010
"Steam App 34220" = Football Manager 2011
"Uninstall_is1" = Uninstall 1.0.0.1
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 17/05/2011 12:18:32 | Computer Name = Martyn-PC | Source = Application Error | ID = 1000
Description = Faulting application bcmwltry.exe, version 4.170.25.12, time stamp
0x46f3437a, faulting module unknown, version 0.0.0.0, time stamp 0x00000000, exception
code 0xc0000005, fault offset 0x01d1992a, process id 0x180, application start time
0x01cc14ad92979120.

Error - 17/05/2011 12:25:27 | Computer Name = Martyn-PC | Source = Application Hang | ID = 1002
Description = The program msnmsgr.exe version 15.4.3508.1109 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 1048 Start Time: 01cc14adfa5db2d0 Termination Time: 0

Error - 17/05/2011 12:44:58 | Computer Name = Martyn-PC | Source = Application Error | ID = 1000
Description = Faulting application WINWORD.EXE, version 12.0.6545.5000, time stamp
0x4c653e57, faulting module ntdll.dll, version 6.0.6002.18327, time stamp 0x4cb73436,
exception code 0xc0000005, fault offset 0x0003de2d, process id 0x12b8, application
start time 0x01cc14b1b9c82c10.

Error - 17/05/2011 15:29:23 | Computer Name = Martyn-PC | Source = Apache Service | ID = 3299
Description = The Apache service named reported the following error: >>> [Tue May
17 20:29:23 2011] [warn] (OS 2)The system cannot find the file specified. : No
installed ConfigArgs for the service "scrutinizer_apache2", using Apache defaults.
.

Error - 17/05/2011 15:30:18 | Computer Name = Martyn-PC | Source = WinMgmt | ID = 10
Description =

Error - 17/05/2011 17:19:42 | Computer Name = Martyn-PC | Source = MySQL | ID = 100
Description = Got error 134 when reading table './scrutinizer/opstats' For more information,
see Help and Support Center at http://www.mysql.com.

Error - 18/05/2011 06:36:56 | Computer Name = Martyn-PC | Source = Apache Service | ID = 3299
Description = The Apache service named reported the following error: >>> [Wed May
18 11:36:56 2011] [warn] (OS 2)The system cannot find the file specified. : No
installed ConfigArgs for the service "scrutinizer_apache2", using Apache defaults.
.

Error - 18/05/2011 06:38:08 | Computer Name = Martyn-PC | Source = WinMgmt | ID = 10
Description =

Error - 18/05/2011 08:06:46 | Computer Name = Martyn-PC | Source = Apache Service | ID = 3299
Description = The Apache service named reported the following error: >>> [Wed May
18 13:06:46 2011] [warn] (OS 2)The system cannot find the file specified. : No
installed ConfigArgs for the service "scrutinizer_apache2", using Apache defaults.
.

Error - 18/05/2011 08:08:00 | Computer Name = Martyn-PC | Source = WinMgmt | ID = 10
Description =

[ Dell Events ]
Error - 20/11/2010 18:07:57 | Computer Name = Martyn-PC | Source = DataSafe | ID = 17
Description = The process was interrupted before completion.

Error - 20/11/2010 18:07:57 | Computer Name = Martyn-PC | Source = DataSafe | ID = 17
Description = The process was interrupted before completion.

Error - 19/03/2011 22:24:11 | Computer Name = Martyn-PC | Source = DataSafe | ID = 17
Description = The process was interrupted before completion.

Error - 19/03/2011 22:24:11 | Computer Name = Martyn-PC | Source = DataSafe | ID = 17
Description = The process was interrupted before completion.

Error - 26/03/2011 14:10:51 | Computer Name = Martyn-PC | Source = DataSafe | ID = 17
Description = The process was interrupted before completion.

[ OSession Events ]
Error - 30/01/2009 07:55:03 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 17 seconds with 0 seconds of active time. This session ended with a crash.

Error - 30/01/2009 09:27:13 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 1246 seconds with 300 seconds of active time. This session ended with a
crash.

Error - 30/01/2009 09:27:23 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 2 seconds with 0 seconds of active time. This session ended with a crash.

Error - 30/01/2009 09:32:41 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 64 seconds with 60 seconds of active time. This session ended with a crash.

Error - 30/01/2009 09:51:37 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 1127 seconds with 0 seconds of active time. This session ended with a crash.

Error - 30/01/2009 09:51:54 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 9 seconds with 0 seconds of active time. This session ended with a crash.

Error - 23/03/2009 21:23:31 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 292 seconds with 0 seconds of active time. This session ended with a crash.

Error - 23/03/2009 21:23:53 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6300.5000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 16 seconds with 0 seconds of active time. This session ended with a crash.

Error - 05/05/2011 18:59:29 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3
seconds with 0 seconds of active time. This session ended with a crash.

Error - 17/05/2011 12:44:56 | Computer Name = Martyn-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 12
seconds with 0 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 18/05/2011 08:08:01 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7023
Description =

Error - 18/05/2011 08:08:28 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7022
Description =

Error - 18/05/2011 08:08:28 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 18/05/2011 08:08:39 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 18/05/2011 08:08:42 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 18/05/2011 08:08:44 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 18/05/2011 08:08:44 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 18/05/2011 08:10:01 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 18/05/2011 08:10:02 | Computer Name = Martyn-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 18/05/2011 08:28:41 | Computer Name = Martyn-PC | Source = BROWSER | ID = 8032
Description =


< End of report >

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI