Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

IE7 Redirect and Extremely Slow WinXP Desktop System


  • Please log in to reply
No replies to this topic

#1 adam1994

adam1994

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:02:41 PM

Posted 21 January 2010 - 03:59 PM

Hi:

Running a Gateway desktop system, WIN XP. Having browser re-direct when using IE 7 and have an extremely SLOW system. AVG 9 is up to date. WinPatrol is installed. I ran Spybot S & D, Spyware Blaster is up to date, and I ran Windows Defender. Malware Bytes is up to date and was run. Windows updates are up to date, JAVA is up to date, Firewall is On, and so forth. MBAM and GMER log, in addition to the OTL log, follows. Thank you in advance. Kaspersky online scan found nothing.

Adam

Malwarebytes' Anti-Malware 1.44
Database version: 3598
Windows 5.1.2600 Service Pack 3
Internet Explorer 7.0.5730.13

1/19/2010 12:39:55 PM
mbam-log-2010-01-19 (12-39-55).txt

Scan type: Quick Scan
Objects scanned: 118416
Time elapsed: 22 minute(s), 17 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-01-19 15:04:15
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\Owner\LOCALS~1\Temp\pxtdapod.sys


---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

---- EOF - GMER 1.0.15 ----

OTL logfile created on: 1/19/2010 3:07:43 PM - Run 1
OTL by OldTimer - Version 3.1.25.2 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

254.00 Mb Total Physical Memory | 68.00 Mb Available Physical Memory | 27.00% Memory free
625.00 Mb Paging File | 250.00 Mb Available in Paging File | 40.00% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINNT | %ProgramFiles% = C:\Program Files
Drive C: | 37.27 Gb Total Space | 23.35 Gb Free Space | 62.64% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: DESI
Current User Name: Owner
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan

========== Processes (SafeList) ==========

PRC - [2010/01/19 12:27:54 | 00,547,328 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
PRC - [2010/01/11 09:55:44 | 02,033,432 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgtray.exe
PRC - [2010/01/11 09:45:12 | 01,055,000 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgchsvx.exe
PRC - [2010/01/11 09:45:12 | 00,600,344 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgnsx.exe
PRC - [2010/01/11 09:45:11 | 00,702,744 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgcsrvx.exe
PRC - [2010/01/11 09:45:11 | 00,503,576 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgrsx.exe
PRC - [2010/01/11 09:44:37 | 00,285,392 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgwdsvc.exe
PRC - [2010/01/11 07:52:52 | 00,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2009/10/28 01:54:16 | 00,634,632 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe
PRC - [2009/10/10 16:07:08 | 00,320,832 | ---- | M] (BillP Studios) -- C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe
PRC - [2008/04/13 19:12:19 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINNT\explorer.exe
PRC - [2005/12/12 14:02:24 | 00,176,193 | ---- | M] (American Power Conversion Corporation) -- C:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe
PRC - [2005/04/05 10:17:22 | 00,206,552 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
PRC - [2002/08/06 15:24:14 | 00,090,112 | ---- | M] (GTW) -- C:\WINNT\GWMDMMSG.exe
PRC - [2002/05/03 12:36:24 | 01,118,208 | ---- | M] (Intel Corporation) -- C:\WINNT\system32\NMSSvc.Exe
PRC - [2000/08/08 10:32:54 | 00,067,848 | ---- | M] (Seiko Instruments USA, Inc.) -- C:\WINNT\system32\slpmonx.exe
PRC - [2000/03/21 19:24:00 | 00,032,256 | ---- | M] (ProdEx Technologies) -- C:\WINNT\system32\slpservice.exe
PRC - [1999/09/17 13:33:48 | 00,049,152 | ---- | M] (Seiko Instruments USA Inc.) -- C:\WINNT\Seiko\slpcap.exe


========== Modules (SafeList) ==========

MOD - [2010/01/19 12:27:54 | 00,547,328 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
MOD - [2007/03/26 13:03:20 | 00,057,344 | ---- | M] (BillP Studios) -- C:\Program Files\BillP Studios\WinPatrol\patrolpro.dll


========== Win32 Services (SafeList) ==========

SRV - [2010/01/11 09:44:37 | 00,285,392 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG9\avgwdsvc.exe -- (avg9wd)
SRV - [2010/01/11 07:52:52 | 00,153,376 | ---- | M] (Sun Microsystems, Inc.) [Auto | Running] -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2006/11/03 18:19:58 | 00,013,592 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV - [2005/12/12 14:02:24 | 00,176,193 | ---- | M] (American Power Conversion Corporation) [Auto | Running] -- C:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe -- (APC UPS Service)
SRV - [2005/04/05 10:17:22 | 00,206,552 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -- (SNDSrvc)
SRV - [2002/12/04 03:24:20 | 00,065,536 | ---- | M] (HP) [On_Demand | Stopped] -- C:\WINNT\system32\HPZipm12.exe -- (Pml Driver HPZ12)
SRV - [2002/05/03 12:36:24 | 01,118,208 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\WINNT\system32\NMSSvc.Exe -- (NMSSvc) Intel®
SRV - [2000/03/21 19:24:00 | 00,032,256 | ---- | M] (ProdEx Technologies) [Auto | Running] -- C:\WINNT\system32\slpservice.exe -- (SLPMONX)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1



O1 HOSTS File: ([2010/01/07 10:07:04 | 00,372,393 | R--- | M]) - C:\WINNT\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.123topsearch.com
O1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1 www.132.com
O1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1 www.136136.net
O1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 127.0.0.1 www.163ns.com
O1 - Hosts: 127.0.0.1 163ns.com
O1 - Hosts: 12837 more lines...
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O4 - HKLM..\Run: [AVG9_TRAY] C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [GWMDMMSG] C:\WINNT\GWMDMMSG.exe (GTW)
O4 - HKLM..\Run: [IgfxTray] C:\WINNT\system32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe (BillP Studios)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SmartCapture.lnk = C:\WINNT\Seiko\slpcap.exe (Seiko Instruments USA Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINNT\system32\nwprovau.dll (Microsoft Corporation)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (InterTrust Technologies Corporation, Inc.)
O15 - HKLM\..Trusted Domains: 58 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: 66 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/F/6...922/wmv9VCM.CAB (Reg Error: Key error.)
O16 - DPF: {3B5E6F50-41B3-4DAA-8BC7-8155DDC7810C} http://install.spywarelabs.com/DistID/3801...r3801040702.EXE (Reg Error: Key error.)
O16 - DPF: {511073AD-BE56-4D43-AE68-93390514385E} hcp://system/TechTools.CAB (TechToolsActivex.TechTools)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftu...b?1262898629328 (MUWebControl Class)
O16 - DPF: {739E8D90-2F4C-43AD-A1B8-66C356FCEA35} hcp://system/RunExeActiveX.CAB (RunExeActiveX.RunExe)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {99CDFD87-F97A-42E1-9C13-D18220D90AD1} hcp://system/StartFirstControl.CAB (StartFirstControl.CheckFirst)
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} http://messenger.msn.com/download/MsnMesse...pDownloader.cab (MsnMessengerSetupDownloadControl Class)
O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} http://cdn.digitalcity.com/radio/ampx2.6.1.7_en_dl.cab (IWinAmpActiveX Class)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/get/shock...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes file://C:\WINNT\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINNT\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINNT\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINNT\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINNT\System32\igfxsrvc.dll (Intel Corporation)
O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - C:\WINNT\System32\LMIinit.dll (LogMeIn, Inc.)
O28 - HKLM ShellExecuteHooks: {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - C:\Program Files\Windows Defender\MpShHook.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINNT\system32\ias [2003/01/09 08:37:10 | 00,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINNT\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (16891891626803200)

========== Files/Folders - Created Within 14 Days ==========

[2010/01/19 12:27:38 | 00,547,328 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
[2010/01/19 12:26:00 | 00,439,808 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\TFC.exe
[2010/01/11 13:37:07 | 00,000,000 | ---D | C] -- C:\Program Files\Free Window Registry Repair
[2010/01/11 09:47:07 | 00,000,000 | -H-D | C] -- C:\$AVG
[2010/01/11 09:46:07 | 00,012,464 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\avgrsstx.dll
[2010/01/11 09:46:05 | 00,360,584 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\drivers\avgtdix.sys
[2010/01/11 09:45:40 | 00,333,192 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\drivers\avgldx86.sys
[2010/01/11 09:45:37 | 00,028,424 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\drivers\avgmfx86.sys
[2010/01/11 09:45:28 | 00,000,000 | ---D | C] -- C:\WINNT\System32\drivers\Avg
[2010/01/11 09:44:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\avg9
[2010/01/11 09:30:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2010/01/11 09:30:10 | 00,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2010/01/11 09:30:10 | 00,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2010/01/11 09:30:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010/01/11 09:21:11 | 00,891,248 | ---- | C] (AVG Technologies) -- C:\Program Files\avg_free_stb_all_9_40_cnet.exe
[2010/01/11 09:11:27 | 00,000,000 | ---D | C] -- C:\WINNT\Prefetch
[2010/01/11 07:52:39 | 00,000,000 | ---D | C] -- C:\Program Files\Java
[2010/01/11 07:51:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Owner\Application Data\Sun
[2010/01/11 07:51:26 | 00,800,544 | ---- | C] (Sun Microsystems, Inc.) -- C:\Program Files\JavaSetup6u17-rv.exe
[2010/01/11 06:42:46 | 00,000,000 | ---D | C] -- C:\9877835da0abe2b107
[2010/01/11 06:05:47 | 33,180,5736 | ---- | C] (Microsoft Corporation) -- C:\Program Files\WindowsXP-KB936929-SP3-x86-ENU.exe
[2010/01/09 10:34:46 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2010/01/07 15:36:01 | 00,000,000 | ---D | C] -- C:\WINNT\ie7updates
[2010/01/07 15:30:58 | 00,000,000 | ---D | C] -- C:\WINNT\WBEM
[2010/01/07 15:27:30 | 00,000,000 | -H-D | C] -- C:\WINNT\ie7
[2010/01/07 15:25:35 | 00,000,000 | -H-D | C] -- C:\WINNT\$NtServicePackUninstallIDNMitigationAPIs$
[2010/01/07 15:22:16 | 00,000,000 | -H-D | C] -- C:\WINNT\$NtServicePackUninstallNLSDownlevelMapping$
[2010/01/07 14:48:17 | 15,452,536 | ---- | C] (Microsoft Corporation) -- C:\Program Files\IE7-WindowsXP-x86-enu.exe
[2010/01/06 16:38:32 | 16,409,960 | ---- | C] (Safer Networking Limited ) -- C:\Program Files\spybotsd162.exe
[2010/01/06 15:27:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2010/01/06 15:26:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Owner\Application Data\SUPERAntiSpyware.com
[2010/01/06 15:26:22 | 00,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2010/01/06 14:45:27 | 03,357,024 | ---- | C] (Piriform Ltd) -- C:\Program Files\ccsetup227.exe
[2010/01/06 14:42:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Owner\Application Data\WinPatrol
[2010/01/06 14:42:28 | 00,000,000 | ---D | C] -- C:\Program Files\BillP Studios
[2010/01/06 14:41:30 | 00,999,160 | ---- | C] (BillP Studios) -- C:\Program Files\wpsetup.exe
[2010/01/06 14:11:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Owner\Application Data\Malwarebytes
[2010/01/06 14:11:16 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINNT\System32\drivers\mbamswissarmy.sys
[2010/01/06 14:11:13 | 00,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINNT\System32\drivers\mbam.sys
[2010/01/06 14:11:13 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/01/06 14:11:12 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/01/06 14:10:04 | 05,061,520 | ---- | C] (Malwarebytes Corporation ) -- C:\Program Files\mbam-setup.exe
[2010/01/06 12:54:04 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2009/12/29 02:24:35 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\PCHealth
[2009/10/26 10:13:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\ICS
[2009/07/16 07:41:50 | 03,012,768 | ---- | C] (Javacool Software LLC ) -- C:\Program Files\spywareblastersetup42.exe
[2008/07/31 13:32:48 | 48,367,896 | ---- | C] (AVG Technologies) -- C:\Program Files\avg_free_stf_en_8_138a1332.exe
[2008/07/31 13:25:47 | 15,083,520 | ---- | C] (Safer Networking Limited ) -- C:\Program Files\spybotsd160.exe
[2005/08/02 08:49:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Symantec
[2003/05/01 12:09:08 | 00,751,560 | ---- | C] (InstallShield Software Corporation) -- C:\Program Files\CMWSetup.exe
[1996/11/18 21:15:46 | 00,018,944 | ---- | C] ( ) -- C:\WINNT\System32\implode.dll

========== Files - Modified Within 14 Days ==========

[2010/01/19 12:57:05 | 00,000,006 | -H-- | M] () -- C:\WINNT\tasks\SA.DAT
[2010/01/19 12:56:55 | 00,002,048 | --S- | M] () -- C:\WINNT\bootstat.dat
[2010/01/19 12:56:51 | 26,619,4944 | -HS- | M] () -- C:\hiberfil.sys
[2010/01/19 12:55:52 | 08,126,464 | -H-- | M] () -- C:\Documents and Settings\Owner\NTUSER.DAT
[2010/01/19 12:55:30 | 00,000,278 | -HS- | M] () -- C:\Documents and Settings\Owner\ntuser.ini
[2010/01/19 12:27:54 | 00,547,328 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
[2010/01/19 12:27:13 | 00,284,915 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\gmer.zip
[2010/01/19 12:26:22 | 00,439,808 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\TFC.exe
[2010/01/19 11:38:41 | 00,000,732 | ---- | M] () -- C:\WINNT\win.ini
[2010/01/19 09:00:05 | 00,000,382 | -H-- | M] () -- C:\WINNT\tasks\{F751E295-159B-4D08-850F-83B473E17C7A}_DESI_Owner.job
[2010/01/19 08:36:38 | 48,043,716 | ---- | M] () -- C:\WINNT\System32\drivers\Avg\incavi.avm
[2010/01/19 08:35:10 | 00,142,471 | ---- | M] () -- C:\WINNT\System32\drivers\Avg\microavi.avg
[2010/01/18 16:00:04 | 00,000,382 | -H-- | M] () -- C:\WINNT\tasks\{92087109-E8FF-4CC3-93C1-72A3675397A5}_DESI_Owner.job
[2010/01/15 16:00:23 | 00,000,382 | -H-- | M] () -- C:\WINNT\tasks\{A553A9B0-86B9-472F-B3A5-4778491F6735}_DESI_Owner.job
[2010/01/14 10:05:21 | 00,000,496 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\medicaid sign in .url
[2010/01/13 08:18:13 | 00,001,158 | ---- | M] () -- C:\WINNT\System32\wpa.dbl
[2010/01/11 13:36:56 | 00,798,000 | ---- | M] () -- C:\Program Files\RegpairSetup.exe
[2010/01/11 09:46:11 | 00,001,507 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG Free 9.0.lnk
[2010/01/11 09:46:07 | 00,012,464 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\avgrsstx.dll
[2010/01/11 09:46:05 | 00,360,584 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\drivers\avgtdix.sys
[2010/01/11 09:45:41 | 00,333,192 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\drivers\avgldx86.sys
[2010/01/11 09:45:37 | 00,113,461 | ---- | M] () -- C:\WINNT\System32\drivers\Avg\iavichjw.avm
[2010/01/11 09:45:37 | 00,028,424 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINNT\System32\drivers\avgmfx86.sys
[2010/01/11 09:45:28 | 06,061,540 | ---- | M] () -- C:\WINNT\System32\drivers\Avg\avi7.avg
[2010/01/11 09:45:28 | 00,492,629 | ---- | M] () -- C:\WINNT\System32\drivers\Avg\miniavi.avg
[2010/01/11 09:21:22 | 00,891,248 | ---- | M] (AVG Technologies) -- C:\Program Files\avg_free_stb_all_9_40_cnet.exe
[2010/01/11 09:09:29 | 04,836,884 | -H-- | M] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\IconCache.db
[2010/01/11 09:03:15 | 00,001,374 | ---- | M] () -- C:\WINNT\imsins.BAK
[2010/01/07 16:07:14 | 00,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINNT\System32\drivers\mbamswissarmy.sys
[2010/01/07 16:07:04 | 00,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINNT\System32\drivers\mbam.sys
[2010/01/07 10:07:04 | 00,372,393 | R--- | M] () -- C:\WINNT\System32\drivers\etc\hosts
[2010/01/07 09:41:55 | 00,364,064 | ---- | M] () -- C:\WINNT\System32\perfh009.dat
[2010/01/07 09:41:54 | 00,414,482 | ---- | M] () -- C:\WINNT\System32\PerfStringBackup.INI
[2010/01/07 09:41:54 | 00,045,612 | ---- | M] () -- C:\WINNT\System32\perfc009.dat
[2010/01/07 09:35:05 | 00,243,920 | ---- | M] () -- C:\WINNT\System32\FNTCACHE.DAT
[2010/01/06 16:40:11 | 00,000,933 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\Spybot - Search & Destroy.lnk
[2010/01/06 16:39:14 | 16,409,960 | ---- | M] (Safer Networking Limited ) -- C:\Program Files\spybotsd162.exe
[2010/01/06 15:26:56 | 00,000,780 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010/01/06 14:46:59 | 00,001,548 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\CCleaner.lnk
[2010/01/06 14:46:41 | 03,357,024 | ---- | M] (Piriform Ltd) -- C:\Program Files\ccsetup227.exe
[2010/01/06 14:42:24 | 00,999,160 | ---- | M] (BillP Studios) -- C:\Program Files\wpsetup.exe
[2010/01/06 14:27:41 | 00,054,156 | -H-- | M] () -- C:\WINNT\QTFont.qfn
[2010/01/06 14:11:19 | 00,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/01/06 14:10:59 | 05,061,520 | ---- | M] (Malwarebytes Corporation ) -- C:\Program Files\mbam-setup.exe
[2010/01/06 12:49:56 | 07,451,168 | ---- | M] () -- C:\Program Files\SUPERAntiSpyware.exe

========== Files Created - No Company Name ==========

[2010/01/19 13:04:52 | 00,293,376 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\gmer.exe
[2010/01/19 12:27:10 | 00,284,915 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\gmer.zip
[2010/01/11 13:35:29 | 00,798,000 | ---- | C] () -- C:\Program Files\RegpairSetup.exe
[2010/01/11 09:46:11 | 00,001,507 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\AVG Free 9.0.lnk
[2010/01/11 09:45:37 | 00,113,461 | ---- | C] () -- C:\WINNT\System32\drivers\Avg\iavichjw.avm
[2010/01/11 09:45:28 | 48,043,716 | ---- | C] () -- C:\WINNT\System32\drivers\Avg\incavi.avm
[2010/01/11 09:45:28 | 06,061,540 | ---- | C] () -- C:\WINNT\System32\drivers\Avg\avi7.avg
[2010/01/11 09:45:28 | 00,492,629 | ---- | C] () -- C:\WINNT\System32\drivers\Avg\miniavi.avg
[2010/01/11 09:45:28 | 00,142,471 | ---- | C] () -- C:\WINNT\System32\drivers\Avg\microavi.avg
[2010/01/07 06:11:54 | 26,619,4944 | -HS- | C] () -- C:\hiberfil.sys
[2010/01/06 16:40:11 | 00,000,933 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\Spybot - Search & Destroy.lnk
[2010/01/06 15:26:56 | 00,000,780 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010/01/06 14:46:59 | 00,001,548 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\CCleaner.lnk
[2010/01/06 14:11:19 | 00,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/01/06 12:49:37 | 07,451,168 | ---- | C] () -- C:\Program Files\SUPERAntiSpyware.exe
[2009/10/26 10:03:55 | 16,597,504 | ---- | C] () -- C:\Program Files\LogMeIn.msi
[2008/08/20 13:12:32 | 00,120,205 | ---- | C] () -- C:\Program Files\Referral Request Details.pdf
[2008/05/05 11:59:07 | 00,040,448 | R--- | C] () -- C:\WINNT\System32\Regobj.dll
[2008/05/05 11:59:06 | 00,070,656 | ---- | C] () -- C:\WINNT\System32\u2lesbse.dll
[2008/05/05 11:59:06 | 00,040,960 | ---- | C] () -- C:\WINNT\System32\u2lbar.dll
[2008/05/05 11:59:06 | 00,038,400 | ---- | C] () -- C:\WINNT\System32\u2ldts.dll
[2008/05/05 11:59:06 | 00,036,864 | ---- | C] () -- C:\WINNT\System32\u2lexch.dll
[2008/05/05 11:59:06 | 00,027,136 | ---- | C] () -- C:\WINNT\System32\u2lsamp1.dll
[2008/05/05 11:59:06 | 00,012,288 | ---- | C] () -- C:\WINNT\System32\u2lfinra.dll
[2008/05/05 11:59:04 | 00,061,440 | ---- | C] () -- C:\WINNT\System32\u25store.dll
[2008/05/05 11:59:04 | 00,059,904 | ---- | C] () -- C:\WINNT\System32\u25total.dll
[2008/05/05 11:59:04 | 00,044,544 | ---- | C] () -- C:\WINNT\System32\u25dts.dll
[2008/05/05 11:59:03 | 00,306,176 | ---- | C] () -- C:\WINNT\System32\p2smcube.dll
[2008/05/05 11:59:03 | 00,239,616 | ---- | C] () -- C:\WINNT\System32\p2solap.dll
[2008/05/05 11:59:00 | 00,300,544 | ---- | C] () -- C:\WINNT\System32\p2molap.dll
[2007/02/16 08:42:24 | 19,170,000 | ---- | C] () -- C:\Program Files\avg75free_441a944.exe
[2007/01/03 07:35:27 | 18,257,616 | ---- | C] () -- C:\Program Files\avg75free_432a904.exe
[2007/01/03 07:34:57 | 05,186,048 | ---- | C] () -- C:\Program Files\WindowsDefender.msi
[2006/10/21 09:49:17 | 06,469,352 | ---- | C] () -- C:\Program Files\avgas-setup-7.5.0.50.exe
[2006/06/13 13:27:30 | 02,855,080 | ---- | C] () -- C:\Program Files\aawsepersonal.exe
[2006/06/13 09:50:21 | 17,093,296 | ---- | C] () -- C:\Program Files\avg71free_394a757.exe
[2005/11/11 09:03:33 | 00,000,000 | ---- | C] () -- C:\WINNT\ka.ini
[2005/05/04 08:58:36 | 00,000,358 | ---- | C] () -- C:\WINNT\farmmext.ini
[2005/05/04 08:58:28 | 00,000,045 | ---- | C] () -- C:\WINNT\FBCDJMKN.ini
[2005/03/04 15:48:11 | 00,000,000 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\dm.ini
[2005/03/04 15:48:10 | 00,001,596 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\AdobeDLM.log
[2004/05/21 10:12:23 | 00,000,021 | ---- | C] () -- C:\WINNT\PI_setup.ini
[2004/05/21 10:04:41 | 00,000,029 | ---- | C] () -- C:\WINNT\DEBUGSM.INI
[2004/04/27 11:03:39 | 00,000,400 | ---- | C] () -- C:\WINNT\Belt.ini
[2004/04/22 12:01:27 | 00,000,017 | ---- | C] () -- C:\WINNT\wininit.ini
[2004/02/05 09:56:11 | 00,000,111 | ---- | C] () -- C:\WINNT\EPSON Stylus CX5400.ini
[2004/01/12 11:52:40 | 00,036,864 | ---- | C] () -- C:\WINNT\System32\SlpApi42.dll
[2004/01/07 16:31:54 | 00,012,288 | ---- | C] () -- C:\WINNT\impborl.dll
[2004/01/06 14:33:39 | 00,000,004 | ---- | C] () -- C:\WINNT\msoffice.ini
[2004/01/06 08:31:09 | 00,015,576 | R--- | C] () -- C:\WINNT\System32\drivers\usbbc.sys
[2004/01/06 08:25:44 | 00,000,264 | ---- | C] () -- C:\WINNT\System32\winsusrm.dll
[2003/09/16 13:07:23 | 00,000,074 | ---- | C] () -- C:\WINNT\TwainUI.INI
[2003/08/28 15:25:50 | 00,000,026 | ---- | C] () -- C:\WINNT\UP9ASP.INI
[2003/07/15 15:30:01 | 00,044,659 | ---- | C] () -- C:\Program Files\WarnerBros-Thirt.jpg
[2003/05/01 11:53:34 | 00,007,711 | ---- | C] () -- C:\Program Files\SETUP.INI
[2003/04/03 11:34:00 | 00,000,054 | ---- | C] () -- C:\WINNT\TwUI215.INI
[2003/03/14 14:48:13 | 00,000,235 | ---- | C] () -- C:\WINNT\qwimp.ini
[2003/03/14 10:53:22 | 00,000,776 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2003/03/06 23:33:24 | 00,000,061 | ---- | C] () -- C:\WINNT\smscfg.ini
[2003/03/06 23:18:58 | 00,028,672 | ---- | C] () -- C:\WINNT\System32\CTPdeSrvps.dll
[2003/03/06 23:16:28 | 00,000,540 | ---- | C] () -- C:\WINNT\ODBC.INI
[2003/03/06 23:14:36 | 00,001,262 | ---- | C] () -- C:\WINNT\QUICKEN.INI
[2003/03/06 23:14:36 | 00,000,372 | ---- | C] () -- C:\WINNT\intuprof.ini
[2003/03/06 23:13:16 | 00,069,632 | ---- | C] () -- C:\WINNT\System32\PROInst.dll
[2003/03/06 23:13:16 | 00,065,536 | ---- | C] () -- C:\WINNT\System32\NMSInst.dll
[2003/03/06 23:12:01 | 00,000,256 | ---- | C] () -- C:\WINNT\System32\UPDATE.INI
[2003/03/06 23:11:59 | 00,000,701 | ---- | C] () -- C:\WINNT\System32\OEMINFO.INI
[2003/01/09 09:22:56 | 00,363,520 | ---- | C] () -- C:\WINNT\System32\psisdecd.dll
[2003/01/09 09:04:29 | 00,000,770 | ---- | C] () -- C:\WINNT\orun32.ini
[2002/12/04 03:24:26 | 00,561,152 | ---- | C] () -- C:\WINNT\System32\hpotscl.dll
[1998/05/30 23:00:00 | 00,748,160 | ---- | C] () -- C:\WINNT\System32\CO2C40EN.DLL

========== LOP Check ==========

[2010/01/11 09:44:33 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2008/07/31 16:02:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Grisoft
[2010/01/11 12:26:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2003/08/28 15:38:47 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2008/06/13 09:39:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinZipSE
[2003/03/06 23:14:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\InterTrust
[2004/02/05 10:05:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Leadertech
[2004/04/26 07:36:35 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Lycos
[2010/01/06 14:42:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\WinPatrol
[2010/01/18 16:00:04 | 00,000,382 | -H-- | M] () -- C:\WINNT\Tasks\{92087109-E8FF-4CC3-93C1-72A3675397A5}_DESI_Owner.job
[2010/01/15 16:00:23 | 00,000,382 | -H-- | M] () -- C:\WINNT\Tasks\{A553A9B0-86B9-472F-B3A5-4778491F6735}_DESI_Owner.job
[2010/01/19 09:00:05 | 00,000,382 | -H-- | M] () -- C:\WINNT\Tasks\{F751E295-159B-4D08-850F-83B473E17C7A}_DESI_Owner.job

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.exe >


< MD5 for: AGP440.SYS >
[2004/11/09 08:00:22 | 22,245,337 | ---- | M] () .cab file -- C:\WINNT\Driver Cache\i386\sp2.cab:AGP440.sys
[2008/04/14 05:51:44 | 20,056,462 | ---- | M] () .cab file -- C:\WINNT\Driver Cache\i386\sp3.cab:AGP440.sys
[2004/11/09 08:00:22 | 22,245,337 | ---- | M] () .cab file -- C:\WINNT\ServicePackFiles\i386\sp2.cab:AGP440.sys
[2008/04/14 05:51:44 | 20,056,462 | ---- | M] () .cab file -- C:\WINNT\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/09/22 07:33:44 | 23,852,652 | ---- | M] () .cab file -- C:\WINNT\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\sp3.cab:AGP440.sys
[2008/04/13 13:36:38 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINNT\ServicePackFiles\i386\agp440.sys
[2008/04/13 13:36:38 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINNT\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\agp440.sys
[2008/04/13 13:36:38 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINNT\system32\drivers\agp440.sys
[2004/08/04 01:07:41 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINNT\$NtServicePackUninstall$\agp440.sys

< MD5 for: ATAPI.SYS >
[2002/08/29 07:00:00 | 10,158,890 | ---- | M] () .cab file -- C:\I386\sp1.cab:atapi.sys
[2002/08/29 07:00:00 | 10,158,890 | ---- | M] () .cab file -- C:\WINNT\Driver Cache\i386\sp1.cab:atapi.sys
[2004/11/09 08:00:22 | 22,245,337 | ---- | M] () .cab file -- C:\WINNT\Driver Cache\i386\sp2.cab:atapi.sys
[2008/04/14 05:51:44 | 20,056,462 | ---- | M] () .cab file -- C:\WINNT\Driver Cache\i386\sp3.cab:atapi.sys
[2004/11/09 08:00:22 | 22,245,337 | ---- | M] () .cab file -- C:\WINNT\ServicePackFiles\i386\sp2.cab:atapi.sys
[2008/04/14 05:51:44 | 20,056,462 | ---- | M] () .cab file -- C:\WINNT\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/09/22 07:33:44 | 23,852,652 | ---- | M] () .cab file -- C:\WINNT\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\sp3.cab:atapi.sys
[2002/08/29 01:27:50 | 00,086,912 | ---- | M] (Microsoft Corporation) MD5=95B858761A00E1D4F81F79A0DA019ACA -- C:\WINNT\system32\ReinstallBackups\0004\DriverFiles\i386\atapi.sys
[2008/04/13 13:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINNT\ServicePackFiles\i386\atapi.sys
[2008/04/13 13:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINNT\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\atapi.sys
[2008/04/13 13:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINNT\system32\drivers\atapi.sys
[2004/08/04 00:59:42 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINNT\$NtServicePackUninstall$\atapi.sys

< MD5 for: EVENTLOG.DLL >
[2008/04/13 19:11:53 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINNT\ServicePackFiles\i386\eventlog.dll
[2008/04/13 19:11:53 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINNT\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\eventlog.dll
[2008/04/13 19:11:53 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINNT\system32\eventlog.dll
[2004/08/04 02:56:42 | 00,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINNT\$NtServicePackUninstall$\eventlog.dll

< MD5 for: NETLOGON.DLL >
[2008/04/13 19:12:01 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINNT\ServicePackFiles\i386\netlogon.dll
[2008/04/13 19:12:01 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINNT\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\netlogon.dll
[2008/04/13 19:12:01 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINNT\system32\netlogon.dll
[2004/08/04 02:56:44 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINNT\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004/08/04 02:56:44 | 00,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINNT\$NtServicePackUninstall$\scecli.dll
[2008/04/13 19:12:05 | 00,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINNT\ServicePackFiles\i386\scecli.dll
[2008/04/13 19:12:05 | 00,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINNT\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\scecli.dll
[2008/04/13 19:12:05 | 00,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINNT\system32\scecli.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2009/10/29 02:46:50 | 00,347,136 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINNT\system32\dxtmsft.dll
[2009/10/29 02:46:51 | 00,214,528 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINNT\system32\dxtrans.dll

< %systemroot%\Tasks\*.job /lockedfiles >

========== Alternate Data Streams ==========

@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
< End of report >

OTL Extras logfile created on: 1/19/2010 3:07:44 PM - Run 1
OTL by OldTimer - Version 3.1.25.2 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

254.00 Mb Total Physical Memory | 68.00 Mb Available Physical Memory | 27.00% Memory free
625.00 Mb Paging File | 250.00 Mb Available in Paging File | 40.00% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINNT | %ProgramFiles% = C:\Program Files
Drive C: | 37.27 Gb Total Space | 23.35 Gb Free Space | 62.64% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: DESI
Current User Name: Owner
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\MSN Messenger\msnmsgr.exe" = C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5 -- File not found

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:*:Enabled:Connection Manager -- File not found
"C:\WINNT\system32\wjview.exe" = C:\WINNT\system32\wjview.exe:*:Enabled:Microsoft® VM Command Line Interpreter -- (Microsoft Corporation)
"C:\WINNT\system32\spool\drivers\w32x86\3\SAGENT4.EXE" = C:\WINNT\system32\spool\drivers\w32x86\3\SAGENT4.EXE:*:Disabled:SAgent4 -- (SEIKO EPSON CORPORATION)
"C:\Program Files\Toolbar\TBPSSvc.exe" = C:\Program Files\Toolbar\TBPSSvc.exe:*:Enabled:WebSearch Toolbar Service -- File not found
"C:\Program Files\Toolbar\TBPS.exe" = C:\Program Files\Toolbar\TBPS.exe:*:Enabled:WebSearch Toolbar -- File not found
"C:\Program Files\Toolbar\PIB.exe" = C:\Program Files\Toolbar\PIB.exe:*:Enabled:WebSearch Toolbar -- File not found
"C:\Program Files\MSN Messenger\msnmsgr.exe" = C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5 -- File not found
"C:\Program Files\Real\RealPlayer\realplay.exe" = C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer -- (RealNetworks, Inc.)
"C:\Program Files\Grisoft\AVG7\avginet.exe" = C:\Program Files\Grisoft\AVG7\avginet.exe:*:Enabled:avginet.exe -- File not found
"C:\Program Files\Grisoft\AVG7\avgcc.exe" = C:\Program Files\Grisoft\AVG7\avgcc.exe:*:Enabled:avgcc.exe -- File not found
"C:\Program Files\Grisoft\AVG7\avgamsvr.exe" = C:\Program Files\Grisoft\AVG7\avgamsvr.exe:*:Enabled:avgamsvr.exe -- File not found
"C:\Program Files\Internet Explorer\iexplore.exe" = C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer -- (Microsoft Corporation)
"C:\Program Files\AVG\AVG9\avgupd.exe" = C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe -- (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG9\avgnsx.exe" = C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe -- (AVG Technologies CZ, s.r.o.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01A4AEDE-F219-49A2-B855-16A016EAF9A4}" = Intel® PROSet II
"{11B569C2-4BF6-4ED0-9D17-A4273943CB24}" = Adobe Photoshop Album 2.0 Starter Edition
"{1F7CCFA3-D926-4882-B2A5-A0217ED25597}" = PC-Doctor for Windows
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java™ 6 Update 17
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B}" = Google Earth
"{47D684C4-817D-11D5-818F-009027864C7F}" = pressplay
"{54DE0B75-6CD9-44C4-B10A-1F25DA9899D8}" = Quicken 2004
"{5A0C892E-FD1C-4203-941E-0956AED20A6A}" = APC PowerChute Personal Edition
"{66C8BE35-8BBB-472B-96C7-C7C9A499F988}" = ArcSoft Software Suite
"{6C5D7191-140A-11D6-B5A0-0050DA208A93}" = ArcSoft PhotoImpression
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7F34A21F-2DEB-4598-BB19-611D6BD24271}" = Managed DirectX (0900)
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel® Extreme Graphics Driver
"{90150409-6000-11D3-8CFE-0050048383C9}" = Microsoft Access 2002
"{90300409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Media Content
"{91130409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Small Business
"{911A0409-6000-11D3-8CFE-0050048383C9}" = Microsoft Outlook 2002
"{A06275F4-324B-4E85-95E6-87B2CD729401}" = Windows Defender
"{A5CC2A09-E9D3-49EC-923D-03874BBD4C2C}" = Windows Defender Signatures
"{AC76BA86-7AD7-1033-7B44-A70900000002}" = Adobe Reader 7.0.9
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B43357AA-3A6D-4D94-B56E-43C44D09E548}" = Microsoft .NET Framework (English)
"{B6751A10-2389-4AEF-870A-4DD925F48733}" = IntelliMover
"{CA0A1E54-CE0F-4366-B09C-A87B61DC5633}" = Symantec Network Drivers Update
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
"{D1696920-9794-4BBC-8A30-7A88763DE5A2}" = ABBYY FineReader 5.0 Sprint Plus
"{D9FDA523-3D44-4256-8C7E-0E0CD98FB603}" = MD Office 2000 HIPAA Compliant version
"{F45C8DD6-EFDF-4F1E-8E5C-AB80653BCB75}" = Lexar Media Reader Products
"Adobe Acrobat 5.0" = Adobe Acrobat 5.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"AdobeESD" = Adobe Download Manager 2.0 (Remove Only)
"AVG9Uninstall" = AVG Free 9.0
"CCleaner" = CCleaner
"CleanUp!" = CleanUp!
"Creative Jukebox Driver" = Creative Jukebox Driver
"Creative NOMAD II Driver" = Creative NOMAD II Driver
"Do More" = Do More
"EPSON Printer and Utilities" = EPSON Printer Software
"Florida MEVS" = Florida MEVS
"GTW V.92 Voicemodem" = GTW V.92 Voicemodem
"HelpSpot" = HelpSpot
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{54DE0B75-6CD9-44C4-B10A-1F25DA9899D8}" = Quicken 2004
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework Full v1.0.3705 (1033)" = Microsoft .NET Framework (English) v1.0.3705
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSN Music Assistant" = MSN Music Assistant
"MUSICMATCH Jukebox" = MUSICMATCH Jukebox
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NOMAD Jukebox 3 Driver" = NOMAD Jukebox 3 Driver
"PROSet" = Intel® PRO Ethernet Adapter and Software
"PX: {20BBF229-A337-40AD-9FEB-2C98CDA53D1C}" = Gateway Rhapsody
"QuickTime" = QuickTime
"RealPlayer 6.0" = RealPlayer Basic
"Shockwave" = Shockwave
"SK_PS2MillenniumKeyboard" = PS/2 Millennium Keyboard
"Slp32V4" = Smart Label Printer
"SpywareBlaster_is1" = SpywareBlaster 4.2
"ST6UNST #1" = SOS
"ViewpointMediaPlayer" = Viewpoint Media Player
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinPatrol" = WinPatrol 2009
"WinZip Self-Extractor" = WinZip Self-Extractor
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"Zuma Deluxe 1.0" = Zuma Deluxe 1.0

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 1/9/2010 11:33:35 AM | Computer Name = DESI | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office XP Small Business -- Error 1706. Setup cannot
find the required files. Check your connection to the network, or CD-ROM drive.
For other potential solutions to this problem, see C:\Program Files\Microsoft Office\Office10\1033\SETUP.HLP.

Error - 1/9/2010 11:33:53 AM | Computer Name = DESI | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office XP Small Business - Update '{DA256408-A2E7-41A5-8AD6-62ACB86A0FD7}'
could not be installed. Error code 1603. Windows Installer can create logs to help
troubleshoot issues with installing software packages. Use the following link for
instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/11/2010 3:12:20 AM | Computer Name = DESI | Source = MPSampleSubmission | ID = 5000
Description = EventType mptelemetry, P1 8024402c, P2 endsearch, P3 search, P4 1.1.1593.0,
P5 mpsigdwn.dll, P6 1.1.1593.0, P7 windows defender, P8 NIL, P9 NIL, P10 NIL.

Error - 1/11/2010 6:46:08 AM | Computer Name = DESI | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office XP Small Business -- Error 1706. Setup cannot
find the required files. Check your connection to the network, or CD-ROM drive.
For other potential solutions to this problem, see C:\Program Files\Microsoft Office\Office10\1033\SETUP.HLP.

Error - 1/11/2010 6:46:11 AM | Computer Name = DESI | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office XP Small Business - Update '{DA256408-A2E7-41A5-8AD6-62ACB86A0FD7}'
could not be installed. Error code 1603. Windows Installer can create logs to help
troubleshoot issues with installing software packages. Use the following link for
instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/19/2010 12:33:46 PM | Computer Name = DESI | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 7.0.6000.16945, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

Error - 1/19/2010 12:33:46 PM | Computer Name = DESI | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 7.0.6000.16945, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

Error - 1/19/2010 12:33:49 PM | Computer Name = DESI | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 7.0.6000.16945, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

Error - 1/19/2010 12:33:49 PM | Computer Name = DESI | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 7.0.6000.16945, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

Error - 1/19/2010 12:33:49 PM | Computer Name = DESI | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 7.0.6000.16945, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

[ System Events ]
Error - 1/19/2010 12:59:39 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
SYMTDI

Error - 1/19/2010 1:54:02 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7034
Description = The APC UPS Service service terminated unexpectedly. It has done
this 1 time(s).

Error - 1/19/2010 1:54:03 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7034
Description = The SLPMONX service terminated unexpectedly. It has done this 1 time(s).

Error - 1/19/2010 1:54:03 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7034
Description = The Intel® NMS service terminated unexpectedly. It has done this
1 time(s).

Error - 1/19/2010 1:54:04 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7034
Description = The Java Quick Starter service terminated unexpectedly. It has done
this 1 time(s).

Error - 1/19/2010 1:54:04 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7034
Description = The Symantec Network Drivers Service service terminated unexpectedly.
It has done this 1 time(s).

Error - 1/19/2010 1:54:04 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7031
Description = The AVG Free WatchDog service terminated unexpectedly. It has done
this 1 time(s). The following corrective action will be taken in 0 milliseconds:
Restart the service.

Error - 1/19/2010 1:57:22 PM | Computer Name = DESI | Source = Serial | ID = 393241
Description = User configuration for parameter Serial-1 must have PortAddress.

Error - 1/19/2010 1:58:45 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7000
Description = The LogMeIn Kernel Information Provider service failed to start due
to the following error: %%3

Error - 1/19/2010 2:00:26 PM | Computer Name = DESI | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
SYMTDI


< End of report >

BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users