Content of OTL.txt
OTL logfile created on: 11/30/2009 2:10:54 PM - Run 1
OTL by OldTimer - Version 3.1.11.3 Folder = C:\Users\Parimal\Desktop
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6000.16916)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.16 Gb Available Physical Memory | 58.29% Memory free
4.00 Gb Paging File | 3.27 Gb Available in Paging File | 81.85% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 25.00 Gb Total Space | 5.03 Gb Free Space | 20.12% Space Free | Partition Type: NTFS
Drive D: | 121.99 Gb Total Space | 54.30 Gb Free Space | 44.51% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: PARIMAL-PC
Current User Name: Parimal
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ========== PRC - [2009/11/30 08:14:02 | 00,536,064 | ---- | M] (OldTimer Tools) -- C:\Users\Parimal\Desktop\OTL.exe
PRC - [2009/11/28 07:48:15 | 00,134,488 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\scanwscs.exe
PRC - [2009/11/26 09:27:26 | 00,323,392 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Parimal\Program Files\DNA\btdna.exe
PRC - [2009/10/03 04:08:38 | 00,035,696 | ---- | M] (Adobe Systems Incorporated) -- D:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
PRC - [2009/08/03 01:48:25 | 00,058,744 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\quhlpsvc.exe
PRC - [2009/08/03 01:48:23 | 00,214,392 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\onlinent.exe
PRC - [2009/08/03 00:19:13 | 01,006,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
PRC - [2009/08/02 23:58:27 | 01,232,896 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Sidebar\sidebar.exe
PRC - [2009/08/02 22:11:53 | 02,923,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/08/02 21:12:10 | 00,095,608 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\UPSCHD.EXE
PRC - [2009/08/02 21:12:09 | 00,017,272 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\OPSSVC.EXE
PRC - [2009/08/02 21:12:08 | 00,267,640 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\EMLPROUI.EXE
PRC - [2009/08/02 21:12:08 | 00,050,552 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\EMLPROXY.EXE
PRC - [2009/03/03 16:08:40 | 00,145,736 | ---- | M] (Metacafe) -- D:\Program Files\Metacafe\MetacafeAgent.exe
PRC - [2008/07/31 14:37:24 | 01,941,504 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Firewall Pro\op_mon.exe
PRC - [2008/07/31 14:37:24 | 01,224,704 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Firewall Pro\acs.exe
PRC - [2007/11/01 15:39:28 | 00,189,736 | ---- | M] (CyberLink Corp.) -- C:\Program Files\Dell\MediaDirect\PCMService.exe
PRC - [2007/09/20 14:31:10 | 00,073,728 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\AEstSrv.exe
PRC - [2007/09/13 14:45:38 | 00,102,400 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\stacsv.exe
PRC - [2007/09/13 14:44:48 | 00,405,504 | ---- | M] (IDT, Inc.) -- C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe
PRC - [2007/07/02 13:29:22 | 00,159,744 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe
PRC - [2007/06/06 16:44:44 | 00,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe
PRC - [2007/05/22 14:18:56 | 00,050,736 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe
PRC - [2007/05/10 01:01:00 | 00,036,864 | ---- | M] (Creative Technology Ltd.) -- C:\Windows\OEM02Mon.exe
PRC - [2007/01/02 02:52:02 | 03,739,648 | ---- | M] (Google) -- C:\Users\Parimal\AppData\Roaming\Google\Google Talk\googletalk.exe
PRC - [2006/11/03 17:55:50 | 00,703,280 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2006/11/03 17:55:48 | 01,583,920 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
PRC - [2006/11/02 18:06:04 | 00,201,728 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnscfg.exe
PRC - [2006/10/27 00:47:42 | 00,031,016 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
PRC - [2006/09/08 15:10:22 | 00,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe
PRC - [2006/08/04 16:39:20 | 00,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe
========== Modules (SafeList) ========== MOD - [2009/11/30 08:14:02 | 00,536,064 | ---- | M] (OldTimer Tools) -- C:\Users\Parimal\Desktop\OTL.exe
MOD - [2006/11/02 15:08:57 | 01,648,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll
========== Win32 Services (SafeList) ========== SRV - [2009/11/28 07:48:15 | 00,134,488 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\scanwscs.exe -- (ScanWscS)
SRV - [2009/08/24 02:30:06 | 00,136,120 | ---- | M] (Google) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc)
SRV - [2009/08/03 01:48:25 | 00,058,744 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\quhlpsvc.exe -- (Quick Update Service)
SRV - [2009/08/03 00:19:12 | 00,265,912 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009/08/02 21:12:09 | 00,017,272 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\OPSSVC.EXE -- (Online Protection System)
SRV - [2009/08/02 21:12:08 | 00,050,552 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\EMLPROXY.EXE -- (Quick Heal Antivirus Plus Mail Protection)
SRV - [2008/07/31 14:37:24 | 01,224,704 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Firewall Pro\acs.exe -- (acssrv)
SRV - [2007/09/20 14:31:10 | 00,073,728 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\AEstSrv.exe -- (AESTFilters)
SRV - [2007/09/13 14:45:38 | 00,102,400 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\stacsv.exe -- (STacSV)
SRV - [2006/11/02 18:05:29 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehstart.dll -- (ehstart)
SRV - [2006/10/27 00:47:54 | 00,065,824 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service)
SRV - [2006/10/26 19:49:34 | 00,441,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2006/10/26 14:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2006/08/04 16:39:20 | 00,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe -- (XAudioService)
========== Driver Services (SafeList) ========== DRV - [2009/08/03 01:48:22 | 00,065,144 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Windows\System32\drivers\catflt.sys -- (catflt)
DRV - [2009/08/02 21:12:08 | 00,028,656 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Windows\System32\drivers\EMLTDI.SYS -- (EMLSS)
DRV - [2008/07/11 15:41:28 | 00,673,920 | ---- | M] (Agnitum Ltd.) -- C:\Windows\System32\drivers\SandBox.sys -- (SandBox)
DRV - [2008/06/30 17:13:54 | 00,242,704 | ---- | M] (Agnitum Ltd.) -- C:\Windows\System32\drivers\afwcore.sys -- (afwcore)
DRV - [2008/06/30 17:13:38 | 00,028,688 | ---- | M] (Agnitum Ltd.) -- C:\Windows\System32\drivers\afw.sys -- (afw)
DRV - [2007/09/13 14:46:06 | 00,330,240 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
DRV - [2007/07/18 01:02:00 | 00,235,520 | ---- | M] (Creative Technology Ltd.) -- C:\Windows\System32\drivers\OEM02Dev.sys -- (OEM02Dev)
DRV - [2007/06/25 18:53:10 | 00,155,136 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2007/06/14 16:25:00 | 07,110,880 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2007/03/21 22:02:04 | 00,037,376 | ---- | M] (REDC) -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007/03/05 18:45:00 | 00,007,424 | ---- | M] (EyePower Games Pte. Ltd.) -- C:\Windows\System32\drivers\OEM02Vfx.sys -- (OEM02Vfx)
DRV - [2007/02/26 14:52:22 | 00,179,712 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\b57nd60x.sys -- (b57nd60x)
DRV - [2007/02/24 14:42:22 | 00,039,936 | ---- | M] (REDC) -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007/02/22 01:19:47 | 00,017,512 | ---- | M] (VIA Technologies, Inc.) -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2007/02/22 01:19:47 | 00,016,488 | ---- | M] (CMD Technology, Inc.) -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2007/02/22 01:19:47 | 00,014,952 | ---- | M] (Acer Laboratories Inc.) -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2007/01/23 16:40:20 | 00,042,496 | ---- | M] (REDC) -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2007/01/06 11:29:42 | 00,035,920 | ---- | M] (NVIDIA Corporation) -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2007/01/06 11:29:34 | 00,086,096 | ---- | M] (NVIDIA Corporation) -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid) NVIDIA nForce
DRV - [2006/11/06 17:37:16 | 00,078,128 | ---- | M] (Broadcom Corporation.) -- C:\Windows\System32\drivers\btwaudio.sys -- (btwaudio)
DRV - [2006/11/06 15:13:52 | 00,016,560 | ---- | M] (Broadcom Corporation.) -- C:\Windows\System32\drivers\btwrchid.sys -- (btwrchid)
DRV - [2006/11/06 15:13:50 | 00,080,176 | ---- | M] (Broadcom Corporation.) -- C:\Windows\System32\drivers\btwavdt.sys -- (btwavdt)
DRV - [2006/11/02 18:43:30 | 00,986,624 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\HSX_DPV.sys -- (HSF_DPV)
DRV - [2006/11/02 18:42:18 | 00,206,848 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\HSXHWAZL.sys -- (HSXHWAZL)
DRV - [2006/11/02 18:42:08 | 00,659,968 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\HSX_CNXT.sys -- (winachsf)
DRV - [2006/11/02 15:21:45 | 00,900,712 | ---- | M] (QLogic Corporation) -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2006/11/02 15:21:38 | 00,420,968 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2006/11/02 15:21:34 | 00,316,520 | ---- | M] (Emulex) -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2006/11/02 15:21:32 | 00,297,576 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2006/11/02 15:21:25 | 00,235,112 | ---- | M] (ULi Electronics Inc.) -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2006/11/02 15:21:25 | 00,232,040 | ---- | M] (Intel Corporation) -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2006/11/02 15:21:00 | 00,147,048 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2006/11/02 15:20:45 | 00,115,816 | ---- | M] (Promise Technology, Inc.) -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2006/11/02 15:20:41 | 00,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2006/11/02 15:20:35 | 00,106,088 | ---- | M] (QLogic Corporation) -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006/11/02 15:20:35 | 00,098,408 | ---- | M] (Promise Technology, Inc.) -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006/11/02 15:20:35 | 00,098,408 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2006/11/02 15:20:19 | 00,045,160 | ---- | M] (IBM Corporation) -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006/11/02 15:20:17 | 00,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006/11/02 15:20:16 | 00,071,784 | ---- | M] (Silicon Integrated Systems) -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2006/11/02 15:20:11 | 00,071,272 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006/11/02 15:20:10 | 00,067,688 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2006/11/02 15:20:10 | 00,065,640 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2006/11/02 15:20:10 | 00,038,504 | ---- | M] (Silicon Integrated Systems Corp.) -- C:\Windows\system32\drivers\sisraid2.sys -- (SiSRaid2)
DRV - [2006/11/02 15:20:10 | 00,037,480 | ---- | M] (Hewlett-Packard Company) -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2006/11/02 15:20:09 | 00,067,688 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2006/11/02 15:20:09 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006/11/02 15:20:07 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006/11/02 15:20:05 | 00,065,640 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2006/11/02 15:20:05 | 00,035,944 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006/11/02 15:20:04 | 00,065,640 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2006/11/02 15:20:03 | 00,034,920 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006/11/02 15:19:59 | 00,033,384 | ---- | M] (LSI Logic Corporation) -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006/11/02 15:19:56 | 00,031,848 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006/11/02 15:19:53 | 00,028,776 | ---- | M] (LSI Logic Corporation) -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2006/11/02 13:55:24 | 00,071,808 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006/11/02 13:54:47 | 00,011,904 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006/11/02 13:54:46 | 00,005,248 | ---- | M] (Brother Industries, Ltd.) -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006/11/02 13:54:45 | 00,013,568 | ---- | M] (Brother Industries, Ltd.) -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006/11/02 13:54:44 | 00,062,336 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006/11/02 13:54:44 | 00,012,160 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006/11/02 13:11:49 | 00,200,704 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\VSTAZL3.SYS -- (HSFHWAZL)
DRV - [2006/11/02 13:06:50 | 00,020,608 | ---- | M] (N-trig Innovative Technologies) -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)
DRV - [2006/11/02 13:00:54 | 01,781,760 | ---- | M] (Intel® Corporation) -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32) Intel®
DRV - [2006/11/02 13:00:54 | 00,117,760 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel®
DRV - [2006/11/02 12:07:21 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\Windows\System32\drivers\secdrv.sys -- (secdrv)
DRV - [2006/08/04 16:39:10 | 00,008,192 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2006/06/19 13:26:58 | 00,012,672 | ---- | M] (Conexant) -- C:\Windows\System32\drivers\mdmxsdk.sys -- (mdmxsdk)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000\S-1-5-21-2771952238-3464439678-2661860132-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000\S-1-5-21-2771952238-3464439678-2661860132-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000\S-1-5-21-2771952238-3464439678-2661860132-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 10.0.1.1:8080
========== FireFox ========== FF - prefs.js..extensions.enabledItems: {d5bc46d8-67c7-11dc-8c1d-0097498c2b7a}:1.0.0.1
FF - prefs.js..extensions.enabledItems: {952d8189-ea25-431b-8ed6-7758dcc933d1}:2.5.1.8
FF - prefs.js..network.proxy.backup.ftp: "10.0.1.1"
FF - prefs.js..network.proxy.backup.ftp_port: 8080
FF - prefs.js..network.proxy.backup.gopher: "10.0.1.1"
FF - prefs.js..network.proxy.backup.gopher_port: 8080
FF - prefs.js..network.proxy.backup.socks: "10.0.1.1"
FF - prefs.js..network.proxy.backup.socks_port: 8080
FF - prefs.js..network.proxy.backup.ssl: "10.0.1.1"
FF - prefs.js..network.proxy.backup.ssl_port: 8080
FF - prefs.js..network.proxy.ftp: "10.0.1.1"
FF - prefs.js..network.proxy.ftp_port: 8080
FF - prefs.js..network.proxy.gopher: "10.0.1.1"
FF - prefs.js..network.proxy.gopher_port: 8080
FF - prefs.js..network.proxy.http: "10.0.1.1"
FF - prefs.js..network.proxy.http_port: 8080
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.socks: "10.0.1.1"
FF - prefs.js..network.proxy.socks_port: 8080
FF - prefs.js..network.proxy.ssl: "10.0.1.1"
FF - prefs.js..network.proxy.ssl_port: 8080
FF - prefs.js..network.proxy.type: 4
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2009/11/11 02:31:50 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2009/11/06 23:08:05 | 00,000,000 | ---D | M]
[2009/08/03 06:44:30 | 00,000,000 | ---D | M] -- C:\Users\Parimal\AppData\Roaming\Mozilla\Extensions
[2009/11/29 17:31:02 | 00,000,000 | ---D | M] -- C:\Users\Parimal\AppData\Roaming\Mozilla\Firefox\Profiles\icyyzwnk.default\extensions
[2009/11/29 17:30:58 | 00,000,000 | ---D | M] -- C:\Users\Parimal\AppData\Roaming\Mozilla\Firefox\Profiles\icyyzwnk.default\extensions\{952d8189-ea25-431b-8ed6-7758dcc933d1}
O1 HOSTS File: (27 bytes) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [Email Protection] C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\EMLPROUI.EXE (Quick Heal Technologies (P) Ltd.)
O4 - HKLM..\Run: [GrooveMonitor] D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NVHotkey] C:\Windows\System32\nvHotkey.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvSvc] C:\Windows\System32\nvsvc.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [On-Line Protection] C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\cateye.exe (Quick Heal Technologies (P) Ltd.)
O4 - HKLM..\Run: [PCMService] C:\Program Files\Dell\MediaDirect\PCMService.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Quick Heal Monitor] C:\Program Files\Quick Heal\Quick Heal Firewall Pro\op_mon.exe (Quick Heal Technologies (P) Ltd.)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe (IDT, Inc.)
O4 - HKLM..\Run: [Update Scheduler] C:\Program Files\Quick Heal\Quick Heal AntiVirus Plus\UPSCHD.EXE (Quick Heal Technologies (P) Ltd.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000..\Run: [BitTorrent DNA] C:\Users\Parimal\Program Files\DNA\btdna.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000..\Run: [googletalk] C:\Users\Parimal\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
O4 - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
O4 - Startup: C:\Users\Parimal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Metacafe.lnk = D:\Program Files\Metacafe\MetacafeAgent.exe (Metacafe)
O4 - Startup: C:\Users\Parimal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = D:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-2771952238-3464439678-2661860132-1000_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xport to Microsoft Excel - D:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10}
http://cdn.scan.onecare.live.com/resource/...S/wlscctrl2.cab (Windows Live OneCare safety scanner control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 202.88.130.67 202.88.130.15 202.88.130.5
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (c:\PROGRA~1\QUICKH~1\QUICKH~2\wl_hook.dll) - c:\Program Files\Quick Heal\Quick Heal Firewall Pro\wl_hook.dll (Quick Heal Technologies (P) Ltd.)
O20 - HKLM Winlogon: Shell - (EXPLORER.EXE) - C:\Windows\explorer.exe (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/11/29 18:51:43 | 00,000,024 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (*) - File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found
========== Files/Folders - Created Within 30 Days ========== [2009/11/30 08:13:31 | 00,536,064 | ---- | C] (OldTimer Tools) -- C:\Users\Parimal\Desktop\OTL.exe
[2009/11/29 18:30:36 | 00,000,000 | ---D | C] -- C:\Windows\temp
[2009/11/29 18:30:36 | 00,000,000 | ---D | C] -- C:\Users\Parimal\AppData\Local\temp
[2009/11/29 18:20:26 | 00,000,000 | ---D | C] -- C:\schrauber
[2009/11/29 18:19:57 | 00,000,000 | ---D | C] -- C:\32788R22FWJFW
[2009/11/28 19:24:45 | 00,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2009/11/28 19:24:45 | 00,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2009/11/28 19:23:36 | 00,000,000 | ---D | C] -- C:\Windows\ERDNT
[2009/11/28 19:00:27 | 00,000,000 | ---D | C] -- C:\Qoobox
[2009/11/25 17:18:03 | 00,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2009/11/25 07:55:22 | 00,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml6r.dll
[2009/11/25 07:55:21 | 00,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll
[2009/11/25 07:33:19 | 00,713,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\timedate.cpl
[2009/11/15 00:50:31 | 00,000,000 | ---D | C] -- C:\Users\Parimal\AppData\Roaming\Malwarebytes
[2009/11/15 00:50:25 | 00,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2009/11/14 23:56:01 | 00,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2009/11/14 21:56:37 | 00,000,000 | ---D | C] -- C:\Program Files\Windows Live Safety Center
[2009/11/14 20:14:03 | 00,000,000 | ---D | C] -- C:\Program Files\Panda Security
[2009/11/14 15:39:28 | 00,000,000 | ---D | C] -- C:\Users\Parimal\Desktop\problem
[2009/11/11 13:47:04 | 02,031,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2009/11/11 13:46:21 | 00,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSDApi.dll
[2009/11/04 19:24:47 | 01,383,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
========== Files - Modified Within 30 Days ========== [2009/11/30 14:12:24 | 01,835,008 | -HS- | M] () -- C:\Users\Parimal\NTUSER.DAT
[2009/11/30 14:06:19 | 00,052,065 | ---- | M] () -- C:\Users\Parimal\AppData\Roaming\nvModes.001
[2009/11/30 14:06:09 | 00,003,552 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2009/11/30 14:06:09 | 00,003,552 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2009/11/30 14:06:06 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2009/11/30 14:06:00 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2009/11/30 14:05:57 | 21,454,31552 | -HS- | M] () -- C:\hiberfil.sys
[2009/11/30 11:50:00 | 00,000,350 | ---- | M] () -- C:\Windows\tasks\Resume Quickup Download.job
[2009/11/30 11:47:48 | 00,716,948 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2009/11/30 11:47:48 | 00,618,648 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2009/11/30 11:47:48 | 00,104,024 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2009/11/30 11:41:38 | 00,052,065 | ---- | M] () -- C:\Users\Parimal\AppData\Roaming\nvModes.dat
[2009/11/30 09:25:41 | 00,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2009/11/30 09:25:31 | 02,059,749 | -H-- | M] () -- C:\Users\Parimal\AppData\Local\IconCache.db
[2009/11/30 08:35:14 | 00,120,832 | ---- | M] () -- C:\Users\Parimal\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/11/30 08:14:02 | 00,536,064 | ---- | M] (OldTimer Tools) -- C:\Users\Parimal\Desktop\OTL.exe
[2009/11/30 08:06:44 | 00,000,422 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{DEF55360-C41E-46B4-AA3C-3A37930F2041}.job
[2009/11/29 18:51:43 | 00,000,024 | ---- | M] () -- C:\AUTOEXEC.BAT
[2009/11/29 18:33:31 | 00,000,215 | ---- | M] () -- C:\Windows\system.ini
[2009/11/29 18:33:11 | 00,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2009/11/28 20:19:04 | 03,578,697 | R--- | M] () -- C:\Users\Parimal\Desktop\schrauber.exe
[2009/11/28 19:10:52 | 00,007,592 | ---- | M] () -- C:\Users\Parimal\AppData\Local\d3d9caps.dat
[2009/11/26 09:20:40 | 27,162,9405 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2009/11/26 09:15:54 | 00,292,352 | ---- | M] () -- C:\Users\Parimal\Desktop\3s89ormf.exe
[2009/11/23 17:02:37 | 00,003,631 | ---- | M] () -- C:\Users\Parimal\Desktop\DDS02
[2009/11/23 17:02:37 | 00,001,908 | ---- | M] () -- C:\Users\Parimal\Desktop\temp00
[2009/11/23 17:02:37 | 00,001,191 | ---- | M] () -- C:\Users\Parimal\Desktop\active_setup.dat
[2009/11/23 17:02:37 | 00,000,076 | ---- | M] () -- C:\Users\Parimal\Desktop\temp01
[2009/11/23 17:02:37 | 00,000,000 | ---- | M] () -- C:\Users\Parimal\Desktop\DbPath
[2009/11/23 17:02:32 | 00,003,096 | ---- | M] () -- C:\Users\Parimal\Desktop\FILES00
[2009/11/23 17:02:27 | 00,036,181 | ---- | M] () -- C:\Users\Parimal\Desktop\svclist.dat
[2009/11/23 17:02:23 | 00,000,038 | ---- | M] () -- C:\Users\Parimal\Desktop\Vista.mac
[2009/11/23 17:02:23 | 00,000,000 | ---- | M] () -- C:\Users\Parimal\Desktop\Vista.krl
[2009/11/19 20:28:44 | 00,032,803 | ---- | M] () -- C:\Users\Parimal\Desktop\throat_cancer_smoking.jpg
[2009/11/14 15:27:37 | 00,140,031 | ---- | M] () -- C:\Users\Parimal\Desktop\RootRepeal.dmp
[2009/11/14 15:25:58 | 00,000,000 | ---- | M] () -- C:\Users\Parimal\Desktop\settings.dat
[2009/11/11 18:38:56 | 00,370,960 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2009/11/07 20:57:16 | 00,016,990 | ---- | M] () -- C:\Users\Parimal\Desktop\New Microsoft Office Word Document.docx
[2009/11/07 19:51:38 | 00,104,960 | ---- | M] () -- C:\Users\Parimal\Desktop\Parimal.doc
[2009/11/03 23:46:36 | 00,001,683 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2009/11/02 20:42:06 | 00,195,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2009/11/02 09:03:20 | 00,000,162 | -H-- | M] () -- C:\Users\Parimal\Desktop\~$w Microsoft Office Word Document.docx
========== Files Created - No Company Name ========== [2009/11/28 20:15:19 | 03,578,697 | R--- | C] () -- C:\Users\Parimal\Desktop\schrauber.exe
[2009/11/28 19:24:45 | 00,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2009/11/28 19:24:45 | 00,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2009/11/28 19:24:45 | 00,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2009/11/26 09:15:47 | 00,292,352 | ---- | C] () -- C:\Users\Parimal\Desktop\3s89ormf.exe
[2009/11/23 17:02:37 | 00,001,191 | ---- | C] () -- C:\Users\Parimal\Desktop\active_setup.dat
[2009/11/23 17:02:37 | 00,000,000 | ---- | C] () -- C:\Users\Parimal\Desktop\DbPath
[2009/11/23 17:02:33 | 00,003,631 | ---- | C] () -- C:\Users\Parimal\Desktop\DDS02
[2009/11/23 17:02:27 | 00,003,096 | ---- | C] () -- C:\Users\Parimal\Desktop\FILES00
[2009/11/23 17:02:24 | 00,036,181 | ---- | C] () -- C:\Users\Parimal\Desktop\svclist.dat
[2009/11/23 17:02:23 | 00,001,908 | ---- | C] () -- C:\Users\Parimal\Desktop\temp00
[2009/11/23 17:02:23 | 00,000,076 | ---- | C] () -- C:\Users\Parimal\Desktop\temp01
[2009/11/23 17:02:23 | 00,000,038 | ---- | C] () -- C:\Users\Parimal\Desktop\Vista.mac
[2009/11/23 17:02:23 | 00,000,000 | ---- | C] () -- C:\Users\Parimal\Desktop\Vista.krl
[2009/11/19 20:28:44 | 00,032,803 | ---- | C] () -- C:\Users\Parimal\Desktop\throat_cancer_smoking.jpg
[2009/11/14 15:27:34 | 00,140,031 | ---- | C] () -- C:\Users\Parimal\Desktop\RootRepeal.dmp
[2009/11/14 15:25:58 | 00,000,000 | ---- | C] () -- C:\Users\Parimal\Desktop\settings.dat
[2009/11/03 23:46:36 | 00,001,683 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2009/11/02 09:03:20 | 00,000,162 | -H-- | C] () -- C:\Users\Parimal\Desktop\~$w Microsoft Office Word Document.docx
[2009/10/24 00:59:59 | 00,116,224 | ---- | C] () -- C:\Windows\System32\pdfmonnt.dll
[2009/08/05 07:00:56 | 00,052,065 | ---- | C] () -- C:\Users\Parimal\AppData\Roaming\nvModes.001
[2009/08/05 06:58:56 | 00,052,065 | ---- | C] () -- C:\Users\Parimal\AppData\Roaming\nvModes.dat
[2009/08/03 08:10:06 | 00,120,832 | ---- | C] () -- C:\Users\Parimal\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/08/02 21:11:26 | 00,000,055 | ---- | C] () -- C:\Windows\QH32.INI
[2009/08/02 20:44:28 | 00,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2009/08/02 19:35:59 | 00,007,592 | ---- | C] () -- C:\Users\Parimal\AppData\Local\d3d9caps.dat
[2006/11/03 17:25:56 | 00,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll
[2006/11/02 18:05:32 | 00,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 13:10:29 | 00,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2001/11/14 12:56:00 | 01,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
< End of report >
Content of Extras.txt
OTL Extras logfile created on: 11/30/2009 2:10:54 PM - Run 1
OTL by OldTimer - Version 3.1.11.3 Folder = C:\Users\Parimal\Desktop
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6000.16916)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.16 Gb Available Physical Memory | 58.29% Memory free
4.00 Gb Paging File | 3.27 Gb Available in Paging File | 81.85% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 25.00 Gb Total Space | 5.03 Gb Free Space | 20.12% Space Free | Partition Type: NTFS
Drive D: | 121.99 Gb Total Space | 54.30 Gb Free Space | 44.51% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: PARIMAL-PC
Current User Name: Parimal
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm [@ = chm.file] -- "%SystemRoot%\hh.exe" %1
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-2771952238-3464439678-2661860132-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- D:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
chm.file [open] -- "%SystemRoot%\hh.exe" %1 File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "D:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [AddToPlaylistVLC] -- "d:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- D:\PROGRA~1\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Directory [PlayWithVLC] -- "d:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"d:\Program Files\BitTorrent\bittorrent.exe" = d:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent -- (BitTorrent, Inc.)
========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{004D34DB-AD10-4A19-A400-833A11CEF58C}" = rport=137 | protocol=17 | dir=out | app=system |
"{186D4F6C-336A-467B-AC14-ED6558326331}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{1FD0E6D3-0048-4662-B672-02DF8FB833AB}" = lport=445 | protocol=6 | dir=in | app=system |
"{37F2A919-4847-47A0-AA00-676D8AC91F2B}" = lport=137 | protocol=17 | dir=in | app=system |
"{4457BAEF-0495-4F65-9070-7C44EF92370B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{532533FF-2967-42EB-A8B8-DFFD2C24AEDE}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{6C9FD286-83D1-47FB-B8E5-EBB1ED0D9C9D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{6F693BA6-609B-4519-838C-0F33E8657BCB}" = lport=6004 | protocol=17 | dir=in | app=d:\program files\microsoft office\office12\outlook.exe |
"{72D22EB7-FC1F-4451-98A2-880798CDD5AF}" = rport=139 | protocol=6 | dir=out | app=system |
"{786A76DC-D041-41F1-B5E5-19A9A4724305}" = lport=139 | protocol=6 | dir=in | app=system |
"{B338F628-029C-40E7-969A-7226B59F4655}" = rport=138 | protocol=17 | dir=out | app=system |
"{C3BC76B5-C712-481C-8171-AF11F83A5F1F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{CF3D323F-BD1F-43B9-849E-EDFC4D2CE459}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{F23F8B5C-25AC-4670-B224-268E6531CC32}" = rport=445 | protocol=6 | dir=out | app=system |
"{F3896BDC-6AC2-4772-9AE1-011F93A76C4A}" = lport=138 | protocol=17 | dir=in | app=system |
========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01362687-BC24-44AE-B475-D2F8F6A32ECA}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{026248B0-96D1-44AB-86C4-62E1354540CF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{026B6097-2607-4357-8F21-53F0B1CA915A}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{0D2C9835-949D-4A50-AFAF-C1FBB584ED43}" = dir=in | app=c:\program files\dell\mediadirect\pcmservice.exe |
"{224119FE-1AF5-4D36-A637-E8034FB25801}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{2CED2ACA-F555-4A4C-B62E-B03287DE55FB}" = protocol=6 | dir=in | app=d:\downloads\bittorrent.exe |
"{351B72E2-4F02-4C6D-B9A1-16B674E8FC93}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{479AC644-91F9-43D3-94D3-BA77EEAC08B5}" = protocol=17 | dir=in | app=d:\program files\microsoft office\office12\groove.exe |
"{4B40B437-E0CC-43AC-8A53-720EB6BC12BE}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{5FEFD481-9007-4589-85C6-F5B3950645EF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{625AE019-60DE-475B-97D1-91550EA9EC9D}" = dir=in | app=c:\program files\dell\mediadirect\kernel\dms\clmsservice.exe |
"{64C05B98-0EA1-4C89-AD97-1C6C9030DA1A}" = protocol=17 | dir=in | app=c:\program files\dna\btdna.exe |
"{7921DB79-D991-4DF5-AFCB-1560C8C61278}" = protocol=17 | dir=in | app=d:\downloads\bittorrent.exe |
"{7C345D71-EAFC-4ABF-A11C-83EC316DA279}" = dir=in | app=c:\program files\dell\mediadirect\mediadirect.exe |
"{86AF3B66-95E3-40A3-865B-98E39C7A021C}" = protocol=6 | dir=in | app=d:\program files\microsoft office\office12\onenote.exe |
"{89FDE657-B3B5-4E44-9949-083C9B218D8B}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{AA594F5D-FF5A-41BC-9C1D-351E081D14FF}" = protocol=6 | dir=in | app=c:\program files\dna\btdna.exe |
"{B0097872-C106-4B98-9E14-30F94B693E94}" = protocol=17 | dir=in | app=d:\program files\microsoft office\office12\onenote.exe |
"{CA0EF982-1EB3-4816-A44C-DC103B78D2CF}" = protocol=6 | dir=in | app=d:\program files\microsoft office\office12\groove.exe |
"{E243EE7F-DDC7-4ABF-9E5A-FE2DDEDC0C0C}" = dir=in | app=c:\program files\dell\mediadirect\kernel\dmp\clbrowserengine.exe |
"{FAF37EED-1815-4004-BD13-2600D85DD14D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"TCP Query User{2825F9D0-3FF9-4779-8AE7-F1C195F938E6}D:\program files\counter-strike\hl.exe" = protocol=6 | dir=in | app=d:\program files\counter-strike\hl.exe |
"TCP Query User{28483A65-D74B-4059-844D-18B2C9AB027E}C:\program files\windows sidebar\sidebar.exe" = protocol=6 | dir=in | app=c:\program files\windows sidebar\sidebar.exe |
"TCP Query User{2A2CB1CE-7D7B-4723-8F1E-66D264E613D9}C:\users\parimal\program files\dna\btdna.exe" = protocol=6 | dir=in | app=c:\users\parimal\program files\dna\btdna.exe |
"TCP Query User{7145B8C1-6803-4562-A809-E44741D1EC17}C:\users\parimal\program files\dna\btdna.exe" = protocol=6 | dir=in | app=c:\users\parimal\program files\dna\btdna.exe |
"TCP Query User{7F077171-FC23-4F12-A6EB-C63DDC6A928B}D:\downloads\bittorrent.exe" = protocol=6 | dir=in | app=d:\downloads\bittorrent.exe |
"UDP Query User{5D2CFB08-5F61-4523-9D49-F625568B4D38}C:\program files\windows sidebar\sidebar.exe" = protocol=17 | dir=in | app=c:\program files\windows sidebar\sidebar.exe |
"UDP Query User{6003CE87-406F-4BAE-8EC7-C63D0B56B3ED}C:\users\parimal\program files\dna\btdna.exe" = protocol=17 | dir=in | app=c:\users\parimal\program files\dna\btdna.exe |
"UDP Query User{84D4F2B8-5582-4C80-A8A4-0333A809A31A}C:\users\parimal\program files\dna\btdna.exe" = protocol=17 | dir=in | app=c:\users\parimal\program files\dna\btdna.exe |
"UDP Query User{8CEE2EDF-7075-483A-A2B8-0C6EF6486842}D:\downloads\bittorrent.exe" = protocol=17 | dir=in | app=d:\downloads\bittorrent.exe |
"UDP Query User{9607A878-000F-41F0-A76F-C154E95CCC57}D:\program files\counter-strike\hl.exe" = protocol=17 | dir=in | app=d:\program files\counter-strike\hl.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{42929F0F-CE14-47AF-9FC7-FF297A603021}" = Dell Resource CD
"{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Media Driver x86 Ver.3.34.03
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}" = OutlookAddinSetup
"{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}" = MediaDirect
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Dell Touchpad
"{A13E07E1-A423-44FB-9DEE-B24C75C1BAF2}" = WIDCOMM Bluetooth Software 6.0.1.3100
"{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}" = SigmaTel Audio
"{AC76BA86-7AD7-1033-7B44-A92000000001}" = Adobe Reader 9.2
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D3B3B9B2-FE73-44CB-8C0A-F737D92F991B}" = Broadcom Gigabit Integrated Controller
"{FE0646A7-19D0-41B4-A2BB-2C35D644270D}" = Windows Live OneCare safety scanner
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F" = Conexant HDA D330 MDC V.92 Modem
"Counter-Strike" = Counter-Strike 1.0
"Creative OEM002" = Laptop Integrated Webcam Driver (1.03.02.0719)
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Metacafe" = Metacafe
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.5.2)" = Mozilla Firefox (3.5.2)
"NVIDIA Drivers" = NVIDIA Drivers
"Picasa 3" = Picasa 3
"Quick Heal AntiVirus Plus" = Quick Heal AntiVirus Plus
"Quick Heal Firewall Pro_is1" = Quick Heal Firewall Pro
"VLC media player" = VLC media player 1.0.2
"Windows Live OneCare safety scanner" = Windows Live OneCare safety scanner
"WinRAR archiver" = WinRAR archiver
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-2771952238-3464439678-2661860132-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"BitTorrent" = BitTorrent
"BitTorrent DNA" = DNA
"Mozilla Firefox (3.5.5)" = Mozilla Firefox (3.5.5)
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 10/17/2009 1:56:26 PM | Computer Name = Parimal-PC | Source = Application Hang | ID = 1002
Description = The program firefox.exe version 1.9.1.3523 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 15c0 Start Time: 01ca4f41da9acf3d Termination Time: 13
Error - 10/29/2009 9:32:03 PM | Computer Name = Parimal-PC | Source = Application Hang | ID = 1002
Description = The program firefox.exe version 1.9.1.3576 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 9a8 Start Time: 01ca58fc85b5b627 Termination Time: 23
Error - 11/14/2009 5:57:44 AM | Computer Name = Parimal-PC | Source = Application Error | ID = 1000
Description = Faulting application RootRepeal.exe, version 1.3.5.0, time stamp 0x4a842d4f,
faulting module ntdll.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception
code 0xc0000005, fault offset 0x00062086, process id 0x15e8, application start time
0x01ca6510a9aa4036.
Error - 11/14/2009 6:18:00 AM | Computer Name = Parimal-PC | Source = Application Error | ID = 1000
Description = Faulting application RootRepeal.exe, version 1.3.5.0, time stamp 0x4a842d4f,
faulting module ntdll.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception
code 0xc0000005, fault offset 0x00062086, process id 0x1754, application start time
0x01ca6513910d41f6.
Error - 11/14/2009 2:20:36 PM | Computer Name = Parimal-PC | Source = Application Error | ID = 1000
Description = Faulting application wlschost.EXE, version 1.11.8942.1, time stamp
0x4ad6ad00, faulting module ntdll.dll, version 6.0.6000.16386, time stamp 0x4549bdc9,
exception code 0xc0000374, fault offset 0x000af1c9, process id 0xb94, application
start time 0x01ca65474d072c86.
Error - 11/14/2009 4:05:30 PM | Computer Name = Parimal-PC | Source = Application Hang | ID = 1002
Description = The program Explorer.EXE version 6.0.6000.16771 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 688 Start Time: 01ca655f0f97e4e8 Termination Time: 50
Error - 11/14/2009 10:49:37 PM | Computer Name = Parimal-PC | Source = Application Error | ID = 1000
Description = Faulting application Explorer.EXE, version 6.0.6000.16771, time stamp
0x4907deda, faulting module SHELL32.dll, version 6.0.6000.16774, time stamp 0x4912e93f,
exception code 0xc0000005, fault offset 0x002f8dee, process id 0x710, application
start time 0x01ca6566d3faf64b.
Error - 11/25/2009 11:56:53 PM | Computer Name = Parimal-PC | Source = Perflib | ID = 1008
Description =
Error - 11/25/2009 11:56:53 PM | Computer Name = Parimal-PC | Source = Perflib | ID = 1010
Description =
Error - 11/27/2009 1:09:16 PM | Computer Name = Parimal-PC | Source = Application Hang | ID = 1002
Description = The program firefox.exe version 1.9.1.3593 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 1abc Start Time: 01ca6f840f70d00b Termination Time: 1448
[ System Events ]
Error - 10/6/2009 1:27:17 PM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/6/2009 10:37:14 PM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/7/2009 10:30:17 AM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/8/2009 10:40:23 AM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/8/2009 9:53:24 PM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/9/2009 1:26:16 PM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/10/2009 3:47:02 AM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/10/2009 10:04:32 AM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/11/2009 11:09:15 AM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10/11/2009 12:11:02 PM | Computer Name = Parimal-PC | Source = Service Control Manager | ID = 7000
Description =
< End of report >