Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Iminent Toolbar and search.iminent.com removal


  • Please log in to reply
18 replies to this topic

#1 creativegd

creativegd

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta
  • Local time:11:29 PM

Posted 30 April 2013 - 11:33 AM

Hi,

 

I have a PC running windows XP that has been infected with the iminent browser toolbar and search. I have tried many different virus removals softwares but it not going away. When I open chrome I get 2 tabs, one for google and one for iminent. It has travelled through the network to the other computers in the house as well. I have tried to go into setting for chrome and the other browsers to disable the plug-in but it cannot be done.

 

Please let me know how to clean this computer of this virus.

 

Thank you

 



BC AdBot (Login to Remove)

 


#2 Guest_Francis Houle_*

Guest_Francis Houle_*

  • Guests
  • OFFLINE
  •  

Posted 30 April 2013 - 12:13 PM

If your browser user profile is corrupted, you can create a new user profile to replace the broken one:

  1. Exit Google Chrome completely.
  2. Enter the keyboard shortcut Windows key +E to open Windows Explorer.
  3. In the Windows Explorer window that appears enter the following in the address bar.
    • Windows XP: %USERPROFILE%\Local Settings\Application Data\Google\Chrome\User Data\
    • Windows Vista/ Windows 7/ Windows 8: %LOCALAPPDATA%\Google\Chrome\User Data\
  4. Locate the folder called "Default" in the directory window that opens and rename it as "Backup default."
  5. Try opening Google Chrome again. A new "Default" folder is automatically created as you start using the browser.

Source : http://support.google.com/chrome/bin/answer.py?hl=en&answer=142059

 


Edited by Francis Houle, 30 April 2013 - 12:23 PM.


#3 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta

Posted 30 April 2013 - 12:54 PM

Ok, I will try this.

 

I forgot to mention that I had already tried to remove this with some help from bleeping computer a few months back. Here is the transcript: 

 

http://www.bleepingcomputer.com/forums/t/474921/searchiminentcom-browser-hijacker-cannot-remove/

 

 

Will post the results here shortly.



#4 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta
  • Local time:11:29 PM

Posted 30 April 2013 - 01:18 PM

Hi, I followed the steps and created the new default for chrome. When I opened up chrome again there was no iminent browser toolbar and search. But when I closed and opened a third time the second tab was there again. It had returned.

 

This computer is very very slow now. I have tried restarting and running software but the speed is painfully slow.

 

Thank you



#5 Guest_Francis Houle_*

Guest_Francis Houle_*

  • Guests
  • OFFLINE
  •  

Posted 30 April 2013 - 04:43 PM

1- Uninstall Iminent Toolbar from your computer
 
To remove a program that is installed on your computer, follow these steps:[/size]
  • Click Start, click Control Panel, and then double-click Add or Remove Programs.
  • In the Currently installed programs box, click the program that you want to remove (Iminent Toolbar and/or Iminent for Internet Explorer), and then click Remove.
  • If you are prompted to confirm the removal of the program, click Yes.
Source : http://support.microsoft.com/kb/307895
 
2- Reset browsers
 
Mozilla Firefox
  • Go to "Start / Run"
  • Enter the following command:firefox -safe-mode
  • In the open window (upon launching safe mode), select "Reset preferences to default Firefox"
  • Click "Make Changes and Restart"
  • You can now browse properly on Firefox.
Internet Explorer
  • Start Internet Explorer.
  • On the Tools menu, click Internet Options.
  • On the Advanced tab, click Reset under Reset Internet Explorer settings.
  • Check Delete personal settings
  • In the Reset Internet Explorer Settings dialog box, click Reset to confirm.
Google Chrome
  • Exit Google Chrome completely.
  • Enter the keyboard shortcut Windows key + E to open Windows Explorer.
  • In the Windows Explorer window that appears enter the following in the address bar : %USERPROFILE%\Local Settings\Application Data\Google\Chrome\User Data\
    Locate the folder called "Default" in the directory window that opens and rename it as "Backup default."

  • Try opening Google Chrome again. A new "Default" folder is automatically created as you start using the browser.
3- ADW CLEANER
  • Download AdwCleaner onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe
  • Click on Delete.
  • Confirm each time with Ok.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
  • Post the log back here.
     
4- MALWAREBYTES
  • Download Malwarebytes' Anti-Malware : https://www.bleepingcomputer.com/download/malwarebytes-anti-malware/ onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform quick scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad.
  • Post the log back here.
Sources : Broni & boopme

Edited by boopme, 09 January 2014 - 10:10 PM.


#6 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta
  • Local time:11:29 PM

Posted 05 May 2013 - 05:44 PM

I have tried several times to complete the first step but the add and remove window does not populate with anything. I will try again in safe-mode and let you know the results.



#7 Guest_Francis Houle_*

Guest_Francis Houle_*

  • Guests
  • OFFLINE
  •  

Posted 05 May 2013 - 06:09 PM

Ok good! If its not working, please follow these steps

 

 

Security Check

§  Download Security Check from here or here and save it to your Desktop.

§  Double-click on SecurityCheck.exe

§  Follow the on-screen instructions.

§  Notepad document should open automatically called checkup.txt.

§  Please post the content of that document.

 

Farbar Service Scanner

§  Download Farbar Service Scanner.

§  Run it on the computer.

§  Make sure the following options are checked:

o    Internet Services

o    Windows Firewall

o    System Restore

o    Security Center/Action Center

o    Windows Update

o    Windows Defender

o    Other Services

§  Press "Scan".

§  It will create a log (FSS.txt) in the same directory where you run the tool.

§  Please copy and paste the log to your reply.

 

MiniToolBox

§  Download MiniToolBox

§  Run it on the computer.

§  Checkmark following boxes:

§  Report IE Proxy Settings

§  Report FF Proxy Settings

§  List content of Hosts

§  List IP configuration

§  List Winsock Entries

§  List last 10 Event Viewer log

§  List Installed Programs

§  List Devices (do NOT change any settings here)

§  List Users, Partitions and Memory size

§  Click Go and post the result.

 

Malwarebytes’ Anti-Malware

§  Download Malwarebytes' Anti-Malware https://www.bleepingcomputer.com/download/malwarebytes-anti-malware/ to your desktop.

§  Double-click mbam-setup.exe and follow the prompts to install the program.

§  At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.

§  If an update is found, it will download and install the latest version.

§  Once the program has loaded, select Perform quick scan, then click Scan.

§  When the scan is complete, click OK, then Show Results to view the results.

§  Be sure that everything is checked, and click Remove Selected.

§  When completed, a log will open in Notepad.

§  Post the log back here.

§  Be sure to restart the computer.

§  The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

 

Malwarebytes’ Anti-Rootkit

§  Download Malwarebytes Anti-Rootkit from HERE to your Desktop.

§  Unzip downloaded file.

§  Open the folder where the contents were unzipped and run mbar.exe

§  Follow the instructions in the wizard to update and allow the program to scan your computer for threats.

§  DO NOT click on the Cleanup button. Simply exit the program.

§  When done, please post the two logs produced they will be in the MBAR folder..... mbar-log-xxxxx.txt and system-log.txt

 

 AdwCleaner

·         Please download AdwCleaner by Xplode onto your desktop.

·         Close all open programs and internet browsers.

·         Double click on adwcleaner.exe to run the tool.

·         Click on Delete.

·         Confirm each time with Ok.

·         Your computer will be rebooted automatically. A text file will open after the restart.

·         Please post the contents of that logfile with your next reply.

·         You can find the logfile at C:\AdwCleaner[S1].txt as well.

Junkware Removal Tool

§  Please download Junkware Removal Tool to your desktop.

§  Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".

§  The tool will open and start scanning your system.

§  Please be patient as this can take a while to complete depending on your system's specifications.

§  On completion, a log (JRT.txt) is saved to your desktop and will automatically open.

§  Post the contents of JRT.txt into your next message.

 

Temp File Cleaner

§  Download Temp File Cleaner (TFC) Alternate download: http://www.itxassociates.com/OT-Tools/TFC.exe

§  Double click on TFC.exe to run the program.

§  Click on Start button to begin cleaning process.

§  TFC will close all running programs, and it may ask you to restart computer.

§  NOTE. If it freezes in normal mode run it from safe mode. Be patient

 

Reset browsers

 

How to restore Google Chrome:
1. Close the Google Chrome browser, if it is running.
2. Go to Start menu, search for Run and open it. Or find it out from the Start menu, All programs, Accessories.
3. Type the following line according to the OS in the run box.

%LOCALAPPDATA%\Google\Chrome\User Data\ (in Windows 8/7/Vista)
%USERPROFILE%\Local Settings\Application Data\Google\Chrome\User Data\ (in Windows Xp). And hit Enter.

4. There is a folder named Default and this folder contains all the current settings.

5. Rename the Default folder to Default.old.

6. Now lunch the Google Chrome.

See, all the original settings are restored. A new folder "Default" will be created and it will hold all settings for now.

 

How to restore Internet Explorer in Windows 8:

1.     Swipe in from the right edge of the screen (if you're using a mouse, point to the upper-right corner of the screen and move the mouse pointer down), and then tap or click Search. Enter Internet options in the search box, and then tap or click Settings.

 

2.     In the search results, tap or click Internet Options. Tap or click the Advanced tab and then tap or click Reset… 
Note:
 Select the Delete personal settings check box if you would also like to remove browsing history, search providers, Accelerators, home pages, Tracking Protection, and ActiveX Filtering data. 

 

3.     In the Reset Internet Explorer Settings window tap or click Reset 
Note: 
To delete all personal settings,tap or click the checkbox for Delete personal settings.

 

4.     Close and then restart Internet Explorer for the changes to take effect.

 

How to restore Internet Explorer in Windows XP, Vista or 7:

1.     Exit all programs, including Internet Explorer.

 

2.     If you use Windows XP, click Start, and then click Run. Type the following command in the Open box, and then press Enter: inetcpl.cpl

If you use Windows 7 or Windows Vista, click Start

Type the following command in the Search box, and then press Enter: inetcpl.cpl

The Internet Options dialog box appears.

 

3.     Click the Advanced tab.

 

4.     Under Reset Internet Explorer settings, click Reset. Then click Reset again.
Click to select the Delete personal settings check box if you also want to remove browsing history, search providers, Accelerators, home pages, Tracking Protection, and ActiveX Filtering data.

 

5.     When Internet Explorer finishes resetting the settings, click Close in the Reset Internet Explorer Settings dialog box.

 

6.     Start Internet Explorer again.

 

How to restore Firefox:

1. At the top of the Firefox window, click the Firefox button, go over to the Help sub-menu
and select Troubleshooting Information.

2. Click the Reset Firefox button in the upper-right corner of the Troubleshooting Information page.

3. To continue, click Reset Firefox in the confirmation window that opens.

4. Firefox will close and be reset. When it's done, a window will list the information that was imported. Click Finish and Firefox will open.

 

Please do the following :

§  Update Internet Explorer, Mozilla Firefox and Google Chrome

§  Update Java

§  Update Adobe Flash, Shockwave, Air and Reader

§  Update Windows

 

NOTE 1. Make sure all logs are pasted not attached.

NOTE 2. You must have only ONE antivirus on the computer. I recommend a paid antivirus like Norton 360, Kaspersky Pure or Malwarebytes Pro or a free antivirus like Avast, AVG or Microsoft Security Essentials



#8 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta

Posted 05 May 2013 - 09:53 PM

Ok, I have finished all the scans and have the reports here uploaded. Please note all of the scans were done in safe mode as I could not get windows to come up normally. It maybe alright now.

 

 

 Results of screen317's Security Check version 0.99.63  
 Windows XP Service Pack 3 x86   
 Internet Explorer 8  
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Security Center service is not running! This report may not be accurate! 
Please wait while WMIC compiles updated MOF files. 
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
 Malwarebytes Anti-Malware version 1.75.0.1300  
 Java 7 Update 9  
 Java version out of Date! 
 Adobe Reader 6 Adobe Reader out of Date! 
 Mozilla Firefox (3.6.10) Firefox out of Date!  
````````Process Check: objlist.exe by Laurent````````  
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:: 23% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log`````````````````````` 
 

_____________________________

 

 

Farbar Service Scanner Version: 14-04-2013
Ran by Administrator (administrator) on 05-05-2013 at 20:57:21
Running from "C:\Documents and Settings\Administrator\My Documents\Downloads"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Network
****************************************************************
 
Internet Services:
============
 
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Attempt to access Yahoo IP returned error. Yahoo IP is offline
Yahoo.com is accessible.
 
 
Windows Firewall:
=============
sharedaccess Service is not running. Checking service configuration:
The start type of sharedaccess service is OK.
The ImagePath of sharedaccess service is OK.
The ServiceDll of sharedaccess service is OK.
 
winmgmt Service is not running. Checking service configuration:
The start type of winmgmt service is set to Disabled. The default start type is Auto.
The ImagePath of winmgmt service is OK.
The ServiceDll of winmgmt service is OK.
 
 
Firewall Disabled Policy: 
==================
 
 
System Restore:
============
 
System Restore Disabled Policy: 
========================
 
 
Security Center:
============
wscsvc Service is not running. Checking service configuration:
The start type of wscsvc service is OK.
The ImagePath of wscsvc service is OK.
The ServiceDll of wscsvc service is OK.
 
winmgmt Service is not running. Checking service configuration:
The start type of winmgmt service is set to Disabled. The default start type is Auto.
The ImagePath of winmgmt service is OK.
The ServiceDll of winmgmt service is OK.
 
 
Windows Update:
============
wuauserv Service is not running. Checking service configuration:
The start type of wuauserv service is OK.
The ImagePath of wuauserv service is OK.
The ServiceDll of wuauserv: "C:\WINDOWS\system32\wuauserv.dll".
 
BITS Service is not running. Checking service configuration:
The start type of BITS service is OK.
The ImagePath of BITS service is OK.
The ServiceDll of BITS: "C:\WINDOWS\system32\qmgr.dll".
 
EventSystem Service is not running. Checking service configuration:
The start type of EventSystem service is OK.
The ImagePath of EventSystem: "C:\WINDOWS\system32\svchost.exe -k netsvcs".
The ServiceDll of EventSystem: "C:\WINDOWS\system32\es.dll".
 
 
Windows Autoupdate Disabled Policy: 
============================
 
 
File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
 
Extra List:
=======
aswTdi(8) Gpc(3) IPSec(5) NetBT(6) PSched(7) Tcpip(4) 
0x080000000500000001000000020000000300000004000000080000000600000007000000
IpSec Tag value is correct.
 
**** End of log ****

 

 

 

MiniToolBox by Farbar  Version:21-04-2013
Ran by Administrator (administrator) on 05-05-2013 at 20:58:38
Running from "C:\Documents and Settings\Administrator\My Documents\Downloads"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Network
***************************************************************************
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
========================= FF Proxy Settings: ============================== 
 
========================= Hosts content: =================================
127.0.0.1 localhost
127.0.0.1 localhost
 
========================= IP Configuration: ================================
 
 
WARNING: Could not obtain host information from machine: [SGGS1]. Some commands may not be available.
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
 
 
 
# ---------------------------------- 
# Interface IP Configuration         
# ---------------------------------- 
pushd interface ip
 
 
# Interface IP Configuration for "Local Area Connection"
 
set address name="Local Area Connection" source=dhcp 
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp
 
 
popd
# End of interface IP configuration
 
 
Windows IP Configuration        Host Name . . . . . . . . . . . . : SGGS1        Primary Dns Suffix  . . . . . . . :         Node Type . . . . . . . . . . . . : Unknown        IP Routing Enabled. . . . . . . . : No        WINS Proxy Enabled. . . . . . . . : No        DNS Suffix Search List. . . . . . : gateway.2wire.netEthernet adapter Local Area Connection:        Connection-specific DNS Suffix  . : gateway.2wire.net        Description . . . . . . . . . . . : Realtek PCIe GBE Family Controller        Physical Address. . . . . . . . . : 54-04-A6-CD-78-B3        Dhcp Enabled. . . . . . . . . . . : Yes        Autoconfiguration Enabled . . . . : Yes        IP Address. . . . . . . . . . . . : 192.168.1.78        Subnet Mask . . . . . . . . . . . : 255.255.255.0        Default Gateway . . . . . . . . . : 192.168.1.254        DHCP Server . . . . . . . . . . . : 192.168.1.254        DNS Servers . . . . . . . . . . . : 192.168.1.254        Lease Obtained. . . . . . . . . . : Sunday, May 05, 2013 8:42:20 PM        Lease Expires . . . . . . . . . . : Monday, May 06, 2013 8:42:20 PMServer:  homeportal
Address:  192.168.1.254
 
Name:    google.com
Addresses:  74.125.227.206, 74.125.227.192, 74.125.227.193, 74.125.227.194
 74.125.227.195, 74.125.227.196, 74.125.227.197, 74.125.227.198, 74.125.227.199
 74.125.227.200, 74.125.227.201
 
Pinging google.com [74.125.227.192] with 32 bytes of data:Reply from 74.125.227.192: bytes=32 time=51ms TTL=50Reply from 74.125.227.192: bytes=32 time=48ms TTL=50Ping statistics for 74.125.227.192:    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),Approximate round trip times in milli-seconds:    Minimum = 48ms, Maximum = 51ms, Average = 49msServer:  homeportal
Address:  192.168.1.254
 
Name:    yahoo.com
Addresses:  98.139.183.24, 206.190.36.45, 98.138.253.109
 
Pinging yahoo.com [98.138.253.109] with 32 bytes of data:Reply from 98.138.253.109: bytes=32 time=127ms TTL=43Reply from 98.138.253.109: bytes=32 time=106ms TTL=43Ping statistics for 98.138.253.109:    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),Approximate round trip times in milli-seconds:    Minimum = 106ms, Maximum = 127ms, Average = 116msPinging 127.0.0.1 with 32 bytes of data:Reply from 127.0.0.1: bytes=32 time<1ms TTL=128Reply from 127.0.0.1: bytes=32 time<1ms TTL=128Ping statistics for 127.0.0.1:    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),Approximate round trip times in milli-seconds:    Minimum = 0ms, Maximum = 0ms, Average = 0ms===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...54 04 a6 cd 78 b3 ...... Realtek PCIe GBE Family Controller - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0    192.168.1.254    192.168.1.78  20
        127.0.0.0        255.0.0.0        127.0.0.1       127.0.0.1  1
      192.168.1.0    255.255.255.0     192.168.1.78    192.168.1.78  20
     192.168.1.78  255.255.255.255        127.0.0.1       127.0.0.1  20
    192.168.1.255  255.255.255.255     192.168.1.78    192.168.1.78  20
        224.0.0.0        240.0.0.0     192.168.1.78    192.168.1.78  20
  255.255.255.255  255.255.255.255     192.168.1.78    192.168.1.78  1
Default Gateway:     192.168.1.254
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog5 02 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\system32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 04 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 01 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 14 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 15 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 16 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 17 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 18 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 19 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 20 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 21 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 22 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 23 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 24 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 25 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (05/05/2013 01:22:39 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9402.0, P5 fixed, P6 2 _ 2049+, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.
 
Error: (05/05/2013 01:22:37 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9402.0, P5 fixed, P6 2 _ 2049+, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.
 
Error: (05/02/2013 01:22:35 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9402.0, P5 fixed, P6 2 _ 2049+, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.
 
Error: (05/01/2013 02:33:34 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 2152759308, P2 unspecified, P3 scanfile, P4 4.2.223.0, P5 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P6 unspecified, P7 unspecified, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.
 
Error: (05/01/2013 02:33:32 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9402.0, P5 fixed, P6 2 _ 2049+, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.
 
Error: (04/29/2013 00:57:55 AM) (Source: Application Hang) (User: )
Description: Hanging application Forge100.exe, version 10.0.0.506, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
 
Error: (04/28/2013 07:41:32 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\CONFIG.MSI\166725.RBS> in the hash map cannot be updated.
 
Context:  Application, SystemIndex Catalog
 
 
Details:
A device attached to the system is not functioning.   (0x8007001f)
 
Error: (04/28/2013 07:41:32 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\CONFIG.MSI\166725.RBS> in the hash map cannot be updated.
 
Context:  Application, SystemIndex Catalog
 
 
Details:
A device attached to the system is not functioning.   (0x8007001f)
 
Error: (04/28/2013 07:40:52 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\CONFIG.MSI\166706.RBS> in the hash map cannot be updated.
 
Context:  Application, SystemIndex Catalog
 
 
Details:
A device attached to the system is not functioning.   (0x8007001f)
 
Error: (04/28/2013 07:40:52 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\CONFIG.MSI\166706.RBS> in the hash map cannot be updated.
 
Context:  Application, SystemIndex Catalog
 
 
Details:
A device attached to the system is not functioning.   (0x8007001f)
 
 
System errors:
=============
Error: (05/05/2013 08:58:39 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1058" attempting to start the service winmgmt with arguments ""
in order to run the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 
Error: (05/05/2013 08:58:39 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1058" attempting to start the service winmgmt with arguments ""
in order to run the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 
Error: (05/05/2013 08:57:34 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}
 
Error: (05/05/2013 08:56:41 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}
 
Error: (05/05/2013 08:56:37 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}
 
Error: (05/05/2013 08:56:01 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1058" attempting to start the service winmgmt with arguments ""
in order to run the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 
Error: (05/05/2013 08:56:01 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1058" attempting to start the service winmgmt with arguments ""
in order to run the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 
Error: (05/05/2013 08:56:01 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1058" attempting to start the service winmgmt with arguments ""
in order to run the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 
Error: (05/05/2013 08:56:01 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1058" attempting to start the service winmgmt with arguments ""
in order to run the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 
Error: (05/05/2013 08:56:00 PM) (Source: DCOM) (User: SGGS1)
Description: DCOM got error "%%1058" attempting to start the service winmgmt with arguments ""
in order to run the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 
 
Microsoft Office Sessions:
=========================
 
=========================== Installed Programs ============================
 
32 Bit HP CIO Components Installer (Version: 7.1.7)
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.2.443)
Adobe Acrobat 8 Professional - English, Français, Deutsch (Version: 8.0.0)
Adobe After Effects CS4 (Version: 9)
Adobe After Effects CS4 Presets (Version: 9)
Adobe After Effects CS4 Third Party Content (Version: 9)
Adobe AIR (Version: 1.5.3.9120)
Adobe Anchor Service CS4 (Version: 2.0)
Adobe Asset Services CS4 (Version: 4)
Adobe Bridge CS4 (Version: 3)
Adobe CMaps CS4 (Version: 2.0)
Adobe Color - Photoshop Specific CS4 (Version: 2.0)
Adobe Color EU Extra Settings CS4 (Version: 2.0)
Adobe Color JA Extra Settings CS4 (Version: 2.0)
Adobe Color NA Recommended Settings CS4 (Version: 2.0)
Adobe Color Video Profiles AE CS4 (Version: 2.0)
Adobe Color Video Profiles CS CS4 (Version: 2.0)
Adobe Community Help (Version: 3.0.0)
Adobe Community Help (Version: 3.0.0.400)
Adobe Contribute CS4 (Version: 5.0)
Adobe Creative Suite 4 Master Collection (Version: 4.0)
Adobe CS4 American English Speech Analysis Models (Version: 1)
Adobe CSI CS4 (Version: 1)
Adobe Default Language CS4 (Version: 2.0)
Adobe Device Central CS4 (Version: 2)
Adobe Dreamweaver CS4 (Version: 10.0)
Adobe Drive CS4 (Version: 1)
Adobe Dynamiclink Support (Version: 1)
Adobe Encore CS4 (Version: 4)
Adobe Encore CS4 Codecs (Version: 4)
Adobe ExtendScript Toolkit CS4 (Version: 3.0.0)
Adobe Extension Manager CS4 (Version: 2.0)
Adobe Fireworks CS5 (Version: 11.0)
Adobe Flash Player 11 ActiveX (Version: 11.6.602.180)
Adobe Fonts All (Version: 2.0)
Adobe Illustrator CS4 (Version: 14.0)
Adobe InDesign CS4 (Version: 6.0)
Adobe InDesign CS4 Application Feature Set Files (Roman) (Version: 6.0)
Adobe InDesign CS4 Common Base Files (Version: 6.0)
Adobe InDesign CS4 Icon Handler (Version: 6.0)
Adobe Linguistics CS4 (Version: 4.0.0)
Adobe Media Encoder CS4 (Version: 1.0)
Adobe Media Encoder CS4 Additional Exporter (Version: 1.0)
Adobe Media Encoder CS4 Dolby (Version: 1.0)
Adobe Media Encoder CS4 Exporter (Version: 1.0)
Adobe Media Encoder CS4 Importer (Version: 1.0)
Adobe Media Player (Version: 0.0.0)
Adobe Media Player (Version: 1.1)
Adobe MotionPicture Color Files CS4 (Version: 2.0)
Adobe OnLocation CS4 (Version: 4)
Adobe Output Module (Version: 2.0)
Adobe PDF Library Files CS4 (Version: 9.0)
Adobe Photoshop CS4 (Version: 11.0)
Adobe Photoshop CS4 Support (Version: 11.0)
Adobe Premiere Pro (Version: 7.0)
Adobe Premiere Pro CS4 (Version: 4)
Adobe Premiere Pro CS4 Functional Content (Version: 4)
Adobe Premiere Pro CS4 Third Party Content (Version: 4)
Adobe Reader 6.0.1 (Version: 006.000.001)
Adobe Search for Help (Version: 1.0)
Adobe Service Manager Extension (Version: 1.0)
Adobe Setup (Version: 2.0)
Adobe SGM CS4 (Version: 3.0)
Adobe SING CS4 (Version: 2.0)
Adobe Soundbooth CS4 (Version: 2)
Adobe Soundbooth CS4 Codecs (Version: 2)
Adobe Type Support CS4 (Version: 9.0)
Adobe Update Manager CS4 (Version: 6.0.0)
Adobe Version Cue CS4 Server (Version: 4.0)
Adobe WinSoft Linguistics Plugin (Version: 1.1)
Adobe XMP Panels CS4 (Version: 2.0)
AdobeColorCommonSetCMYK (Version: 2.0)
AdobeColorCommonSetRGB (Version: 2.0)
Apple Application Support (Version: 2.1.7)
Apple Mobile Device Support (Version: 5.1.1.4)
Apple Software Update (Version: 2.1.3.127)
ATI - Software Uninstall Utility (Version: 6.14.10.1022)
ATI Catalyst Control Center (Version: 2.010.0210.2338)
ATI Control Panel (Version: 6.14.10.5120)
ATI Display Driver (Version: 8.593.100-100210a-095952E-ATI)
Audacity 2.0.2 (Version: 2.0.2)
avast! Free Antivirus (Version: 7.0.1474.0)
Bee Icons v 4.0.3 (Version: 4.0.3)
Bhaktivedanta VedaBase 2003
Bias Sound Soap 2 DX RTAS VST v2.01
Bonjour (Version: 3.0.0.10)
BufferChm (Version: 60.0.155.000)
Canon MF4200 Series
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Core Implementation (Version: 2010.0210.2339.42455)
Catalyst Control Center Graphics Full Existing (Version: 2010.0210.2339.42455)
Catalyst Control Center Graphics Full New (Version: 2010.0210.2339.42455)
Catalyst Control Center Graphics Light (Version: 2010.0210.2339.42455)
Catalyst Control Center Graphics Previews Common (Version: 2010.0210.2339.42455)
Catalyst Control Center HydraVision Full (Version: 2010.0210.2339.42455)
Catalyst Control Center Localization All (Version: 2010.0210.2339.42455)
CCC Help Chinese Standard (Version: 2010.0210.2338.42455)
CCC Help Chinese Traditional (Version: 2010.0210.2338.42455)
CCC Help Czech (Version: 2010.0210.2338.42455)
CCC Help Danish (Version: 2010.0210.2338.42455)
CCC Help Dutch (Version: 2010.0210.2338.42455)
CCC Help English (Version: 2010.0210.2338.42455)
CCC Help Finnish (Version: 2010.0210.2338.42455)
CCC Help French (Version: 2010.0210.2338.42455)
CCC Help German (Version: 2010.0210.2338.42455)
CCC Help Greek (Version: 2010.0210.2338.42455)
CCC Help Hungarian (Version: 2010.0210.2338.42455)
CCC Help Italian (Version: 2010.0210.2338.42455)
CCC Help Japanese (Version: 2010.0210.2338.42455)
CCC Help Korean (Version: 2010.0210.2338.42455)
CCC Help Norwegian (Version: 2010.0210.2338.42455)
CCC Help Polish (Version: 2010.0210.2338.42455)
CCC Help Portuguese (Version: 2010.0210.2338.42455)
CCC Help Russian (Version: 2010.0210.2338.42455)
CCC Help Spanish (Version: 2010.0210.2338.42455)
CCC Help Swedish (Version: 2010.0210.2338.42455)
CCC Help Thai (Version: 2010.0210.2338.42455)
CCC Help Turkish (Version: 2010.0210.2338.42455)
ccc-core-preinstall (Version: 2010.0210.2339.42455)
ccc-core-static (Version: 2010.0210.2339.42455)
ccc-utility (Version: 2010.0210.2339.42455)
Connect (Version: 1.0.0.1)
CorePLS_Full_QFolder (Version: 1.00.0000)
CorePLS_Min_QFolder (Version: 1.00.0000)
Creative Audio Console (Version: 1.33)
Creative MediaSource
Creative Software AutoUpdate (Version: 1.40)
CustomerResearchQFolder (Version: 1.00.0000)
Data Lifeguard Diagnostic for Windows 1.24
Destinations (Version: 60.0.155.000)
DeviceManagementQFolder (Version: 1.00.0000)
Drobo Dashboard (Version: 2.2.3)
Dropbox (Version: 1.6.18)
DVD Audio Extractor 7.0.2
EPSON Copy Utility 3 (Version: 3.0.1.0)
EPSON Perf 4180 Guide
EPSON Print CD
EPSON Printer Software
EPSON Scan
eSupportQFolder (Version: 1.00.0000)
FileZilla Client 3.6.0.2 (Version: 3.6.0.2)
Folder Marker v 1.4 (Version: 1.4)
Foxit Reader (Version: 4.2.0.928)
Google Chrome (Version: 26.0.1410.64)
Google Drive (Version: 1.9.4536.8202)
Google Update Helper (Version: 1.3.21.145)
HP Color LaserJet 2605 Series 1.0 (Version: 1.0)
HP Extended Capabilities 6.0 (Version: 6.0)
HP Imaging Device Functions 6.0 (Version: 6.0)
HP Solution Center and Imaging Support Tools 6.0 (Version: 6.0)
HP Update (Version: 5.003.001.001)
hppCLJ2605 (Version: 000.203.00092)
hppFonts (Version: 000.106.00040)
hppIOFiles (Version: 000.201.00082)
hppManuals2605 (Version: 000.203.00100)
HPProductAssistant (Version: 60.0.155.000)
hppTLBXFX2605 (Version: 001.000.00056)
hppusg2605 (Version: 000.203.00093)
hppWebRegMM (Version: 000.001.00001)
hpzTLBXFX (Version: 001.000.00127)
Intel® 537EP V9x DF PCI Modem
Intel® Graphics Media Accelerator Driver
Intel® PRO Network Connections Drivers
iTunes (Version: 10.6.0.40)
Java 7 Update 9 (Version: 7.0.90)
Java Auto Updater (Version: 2.1.9.0)
kuler (Version: 2.0)
Lexicon Alpha ASIO (remove only)
Lexicon Alpha Driver (Version: 2.7)
Lexicon Pantheon VST Plug-in (remove only)
Macromedia Dreamweaver 8 (Version: 8.0.0.2734)
Macromedia Extension Manager (Version: 1.7.240)
Macromedia Flash 8 (Version: 8.00.0000)
Macromedia Flash 8 Video Encoder (Version: 1.00.0000)
Macromedia Flash Player 8 Plugin (Version: 8.0.22.0)
Malwarebytes Anti-Malware version 1.75.0.1300 (Version: 1.75.0.1300)
MarketResearch (Version: 60.0.155.000)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2742597)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Professional Plus 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Security Client (Version: 4.2.0223.1)
Microsoft Security Essentials (Version: 4.2.223.1)
Microsoft Silverlight (Version: 5.1.20125.0)
Microsoft Software Update for Web Folders  (English) 12 (Version: 12.0.6612.1000)
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR) (Version: 8.00.761)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft WinUsb 1.0
Microsoft_VC80_ATL_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86 (Version: 1.00.0000)
Microsoft_VC80_MFC_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (Version: 8.0.50727.4053)
Microsoft_VC90_ATL_x86 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86 (Version: 1.00.0000)
MobileMe Control Panel (Version: 3.1.8.0)
Mozilla Firefox (3.6.10) (Version: 3.6.10 (en-US))
Mp3tag v2.49 (Version: v2.49)
MSVCRT Redists (Version: 1.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Nero OEM
Noise Reduction Plug-In 2.0 (Version: 2.0.502)
Nuendo Surround Edition v1.5
PDF Settings CS4 (Version: 9.0)
Photoshop Camera Raw (Version: 5.0)
Pixel Bender Toolkit (Version: 1.0)
Product_SF_Full_QFolder (Version: 1.00.0000)
Product_SF_Min_QFolder (Version: 1.00.0000)
QuickTime (Version: 7.71.80.42)
REALTEK GbE & FE Ethernet PCI-E NIC Driver (Version: 1.30.0000)
Realtek High Definition Audio Driver (Version: 5.10.0.6151)
Roxio BackOnTrack (Version: 4.0)
Roxio BackOnTrackPE (Version: 4.0)
Roxio Burn - Secure (Version: 1.6)
Roxio CinePlayer (Version: 5.6)
Roxio CinePlayer Decoder Pack (Version: 4.3.0)
Roxio Creator 2011 Pro (Version: 1.3.166)
Roxio Creator 2011 Pro (Version: 13.0)
Roxio Creator 2011 Pro (Version: 6.0.0)
Roxio PhotoShow (Version: 6.0)
Roxio Video Capture USB (Version: 1.22.0000)
Safari (Version: 5.34.55.3)
ScanToWeb
SES Driver (Version: 1.0.0)
Skins (Version: 2010.0210.2339.42455)
SmartSound Common Data (Version: 1.1.0)
SmartSound Quicktracks 5 (Version: 5.1.7)
SolutionCenter (Version: 60.0.155.000)
Sonic Foundry 5.1 Surround Plug-In Pack 1.0 (Version: 1.0.38)
Sonic Foundry CD Architect 5.0 (Version: 5.0.93)
Sony ACID Music Studio 5.0 (Version: 5.0.128)
Sony ACID Pro 5.0 (Version: 5.0.265)
Sony DVD Architect 3.0 (Version: 3.0.106)
Sony Media Manager 2.0 (Version: 2.0.30)
Sony Sound Forge 7.0 (Version: 7.0.214)
Sony Sound Forge 8.0 (Version: 8.0.53)
Sony Sound Forge 9.0 (Version: 9.0.441)
Sony Vegas 6.0 (Version: 6.0.99)
Sound Blaster Audigy 2
Sound Forge Pro 10.0 (Version: 10.0.506)
Steinberg Cubase LE 4 (Version: 4.0.3.2233)
SugarSync Manager (Version: 1.9.96.111090)
Suite Shared Configuration CS4 (Version: 1.0)
Syncrosoft License Control
Unload (Version: 6.0.0)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2768021) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update for Windows Internet Explorer 8 (KB2598845) (Version: 1)
Update for Windows Internet Explorer 8 (KB2632503) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2467659) (Version: 1)
Update for Windows XP (KB2492386) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
Waves Native Power Pack v2.35
WebFldrs XP (Version: 9.50.7523)
WebReg (Version: 60.0.155.000)
Winamp3 (remove only)
Windows Genuine Advantage Notifications (KB905474) (Version: 1.9.0040.0)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Management Framework Core
Windows Media Format 11 runtime
Windows Media Player 11
WinRAR archiver
 
=========================
Windows Management Instrumentation service is not running. Could not scan devices
=========================
 
 
========================= Memory info: ===================================
 
Percentage of memory in use: 16%
Total physical RAM: 2815.04 MB
Available physical RAM: 2352.59 MB
Total Pagefile: 4706.28 MB
Available Pagefile: 4467.06 MB
Total Virtual: 2047.88 MB
Available Virtual: 1978.9 MB
 
========================= Partitions: =====================================
 
1 Drive c: () (Fixed) (Total:298.08 GB) (Free:180.63 GB) NTFS
4 Drive f: (SGGS Archives) (Fixed) (Total:1863.01 GB) (Free:455.73 GB) NTFS
6 Drive h: (Audio6) (Fixed) (Total:1863.01 GB) (Free:90.09 GB) NTFS
7 Drive l: (SGGS1) (Fixed) (Total:2048 GB) (Free:698.09 GB) NTFS
8 Drive m: (SGGS2) (Fixed) (Total:2048 GB) (Free:308.78 GB) NTFS
9 Drive n: (SGGS3) (Fixed) (Total:2048 GB) (Free:408.95 GB) NTFS
10 Drive o: (SGGS4) (Fixed) (Total:2048 GB) (Free:1447.94 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\SGGS1
 
Administrator            ASPNET                   Guest                    
HelpAssistant            SUPPORT_388945a0         
 
 
**** End of log ****
 

 

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.05.05.07
 
Windows XP Service Pack 3 x86 NTFS (Safe Mode/Networking)
Internet Explorer 8.0.6001.18702
Administrator :: SGGS1 [administrator]
 
5/5/2013 9:01:26 PM
mbam-log-2013-05-05 (21-01-26).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 230777
Time elapsed: 6 minute(s), 5 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)
 

 

Malwarebytes Anti-Rootkit BETA 1.05.0.1001
www.malwarebytes.org
 
Database version: v2013.03.22.01
 
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Administrator :: SGGS1 [administrator]
 
4/28/2013 8:34:39 PM
mbar-log-2013-04-28 (20-34-39).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM | P2P
Scan options disabled: 
Objects scanned: 30504
Time elapsed: 28 minute(s), 8 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)
 
 

Malwarebytes Anti-Rootkit BETA 1.05.0.1001
www.malwarebytes.org
 
Database version: v2013.03.22.01
 
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Administrator :: SGGS1 [administrator]
 
4/28/2013 8:34:39 PM
mbar-log-2013-04-28 (20-34-39).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM | P2P
Scan options disabled: 
Objects scanned: 30504
Time elapsed: 28 minute(s), 8 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)
 

 

 

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.05.0.1001
 
© Malwarebytes Corporation 2011-2012
 
OS version: 5.1.2600 Windows XP Service Pack 3 x86
 
Account is Administrative
 
Internet Explorer version: 8.0.6001.18702
 
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, F:\ DRIVE_FIXED, H:\ DRIVE_FIXED, L:\ DRIVE_FIXED, M:\ DRIVE_FIXED, N:\ DRIVE_FIXED, O:\ DRIVE_FIXED
CPU speed: 3.200000 GHz
Memory total: 2951786496, free: 1421283328
 
------------ Kernel report ------------
     04/28/2013 20:06:12
------------ Loaded modules -----------
\WINDOWS\system32\ntkrnlpa.exe
\WINDOWS\system32\hal.dll
\WINDOWS\system32\KDCOM.DLL
\WINDOWS\system32\BOOTVID.dll
ACPI.sys
\WINDOWS\system32\DRIVERS\WMILIB.SYS
pci.sys
isapnp.sys
ohci1394.sys
\WINDOWS\system32\DRIVERS\1394BUS.SYS
pciide.sys
\WINDOWS\system32\DRIVERS\PCIIDEX.SYS
intelide.sys
MountMgr.sys
ftdisk.sys
dmload.sys
dmio.sys
PartMgr.sys
VolSnap.sys
atapi.sys
disk.sys
\WINDOWS\system32\DRIVERS\CLASSPNP.SYS
fltMgr.sys
sr.sys
PxHelp20.sys
KSecDD.sys
Ntfs.sys
NDIS.sys
sbp2port.sys
SaibIa32.sys
SahdIa32.sys
Mup.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\ati2mtag.sys
\SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\system32\DRIVERS\Rtenicxp.sys
\SystemRoot\system32\DRIVERS\usbuhci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\drivers\ctaud2k.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\ks.sys
\SystemRoot\system32\drivers\ctoss2k.sys
\SystemRoot\System32\drivers\ctprxy2k.sys
\SystemRoot\system32\DRIVERS\parport.sys
\SystemRoot\system32\DRIVERS\ASACPI.sys
\SystemRoot\system32\DRIVERS\serial.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\imapi.sys
\SystemRoot\system32\drivers\pfc.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\DRIVERS\redbook.sys
\SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
\SystemRoot\system32\DRIVERS\audstub.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\DRIVERS\psched.sys
\SystemRoot\system32\DRIVERS\msgpc.sys
\SystemRoot\system32\DRIVERS\ptilink.sys
\SystemRoot\system32\DRIVERS\raspti.sys
\SystemRoot\system32\DRIVERS\rdpdr.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\update.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\drivers\RtkHDAud.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\System32\drivers\hap16v2k.sys
\SystemRoot\System32\drivers\ha10kx2k.sys
\SystemRoot\System32\drivers\emupia2k.sys
\SystemRoot\System32\drivers\ctsfm2k.sys
\SystemRoot\System32\drivers\ctac32k.sys
\SystemRoot\System32\drivers\COMMONFX.SYS
\SystemRoot\System32\drivers\CTAUDFX.SYS
\SystemRoot\System32\drivers\CTSBLFX.SYS
\SystemRoot\System32\Drivers\Fs_Rec.SYS
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\Drivers\mnmdd.SYS
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\rasacd.sys
\SystemRoot\system32\DRIVERS\ipsec.sys
\SystemRoot\system32\DRIVERS\tcpip.sys
\SystemRoot\System32\Drivers\aswTdi.SYS
\SystemRoot\system32\DRIVERS\ipnat.sys
\SystemRoot\system32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\System32\Drivers\AswRdr.SYS
\SystemRoot\System32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\System32\Drivers\SaibVd32.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\System32\Drivers\Fips.SYS
\SystemRoot\System32\Drivers\aswSP.SYS
\SystemRoot\System32\Drivers\aswSnx.SYS
\SystemRoot\System32\Drivers\Aavmker4.SYS
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\drivers\usbaudio.sys
\SystemRoot\system32\DRIVERS\WinUSB.sys
\SystemRoot\system32\DRIVERS\WDFLDR.SYS
\SystemRoot\System32\Drivers\wdf01000.sys
\SystemRoot\System32\Drivers\Cdfs.SYS
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_WMILIB.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\System32\watchdog.sys
\SystemRoot\System32\drivers\dxg.sys
\SystemRoot\System32\drivers\dxgthk.sys
\SystemRoot\System32\ati2dvag.dll
\SystemRoot\System32\ati2cqag.dll
\SystemRoot\System32\atikvmag.dll
\SystemRoot\System32\atiok3x2.dll
\SystemRoot\System32\ati3duag.dll
\SystemRoot\System32\ativvaxx.dll
\SystemRoot\System32\ATMFD.DLL
\??\C:\WINDOWS\system32\drivers\mbam.sys
\SystemRoot\System32\Drivers\aswFsBlk.SYS
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\System32\Drivers\aswMon2.SYS
\SystemRoot\system32\DRIVERS\mrxdav.sys
\SystemRoot\System32\Drivers\ParVdm.SYS
\SystemRoot\System32\Drivers\adfs.SYS
\SystemRoot\system32\drivers\wdmaud.sys
\SystemRoot\system32\drivers\sysaudio.sys
\SystemRoot\system32\DRIVERS\srv.sys
\SystemRoot\System32\Drivers\TDTCP.SYS
\SystemRoot\System32\Drivers\RDPWD.SYS
\SystemRoot\system32\DRIVERS\MpFilter.sys
\??\C:\WINDOWS\system32\drivers\mbamchameleon.sys
\??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys
\WINDOWS\system32\ntdll.dll
----------- End -----------
<<<1>>>
Upper Device Name: \Device\Harddisk7\DR14
Upper Device Object: 0xffffffff8933f030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\000000a3\
Lower Device Object: 0xffffffff89269908
Lower Device Driver Name: \Driver\USBSTOR\
Driver name found: USBSTOR
Initialization returned 0x0
Load Function returned 0x0
<<<1>>>
Upper Device Name: \Device\Harddisk6\DR8
Upper Device Object: 0xffffffff89df4ab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\000000a0\
Lower Device Object: 0xffffffff89dfaea0
Lower Device Driver Name: \Driver\USBSTOR\
Driver name found: USBSTOR
<<<1>>>
Upper Device Name: \Device\Harddisk5\DR7
Upper Device Object: 0xffffffff89df5ab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\0000009f\
Lower Device Object: 0xffffffff89dbd628
Lower Device Driver Name: \Driver\USBSTOR\
Driver name found: USBSTOR
<<<1>>>
Upper Device Name: \Device\Harddisk4\DR6
Upper Device Object: 0xffffffff89df6648
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\0000009e\
Lower Device Object: 0xffffffff89e1dc18
Lower Device Driver Name: \Driver\USBSTOR\
Driver name found: USBSTOR
<<<1>>>
Upper Device Name: \Device\Harddisk3\DR5
Upper Device Object: 0xffffffff89dd41c8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\0000009d\
Lower Device Object: 0xffffffff89df98d0
Lower Device Driver Name: \Driver\USBSTOR\
Driver name found: USBSTOR
<<<1>>>
Upper Device Name: \Device\Harddisk2\DR4
Upper Device Object: 0xffffffff89dd7ab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\0000009c\
Lower Device Object: 0xffffffff8ae00ea0
Lower Device Driver Name: \Driver\USBSTOR\
Driver name found: USBSTOR
<<<1>>>
Upper Device Name: \Device\Harddisk1\DR1
Upper Device Object: 0xffffffff8afbcab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP2T1L0-17\
Lower Device Object: 0xffffffff8b01db00
Lower Device Driver Name: \Driver\atapi\
Driver name found: atapi
Initialization returned 0x0
Load Function returned 0x0
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xffffffff8afbeab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP2T0L0-f\
Lower Device Object: 0xffffffff8b020940
Lower Device Driver Name: \Driver\atapi\
Driver name found: atapi
Initializing...
Done!
<<<2>>>
Device number: 0, partition: 1
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xffffffff8afbeab8, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff8b003a70, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff8afbeab8, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8afbfbb0, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff8b00c260, DeviceName: \Device\00000088\, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff8b020940, DeviceName: \Device\Ide\IdeDeviceP2T0L0-f\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe11a0110, 0xffffffff8afbeab8, 0xffffffff886bb148
Lower DeviceData: 0xffffffffe8b32c58, 0xffffffff8b020940, 0xffffffff89495d48
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning directory: C:\WINDOWS\system32\drivers...
<<<2>>>
Device number: 0, partition: 1
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Read File: File "C:\WINDOWS\system32\drivers\imagesrv.sys" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\rdpdr.sys" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\fltMgr.sys" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\CTMMFILT.SYS" is compressed (flags = 1)
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: DD2ADD2A
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is ACTIVE.
    Partition starts at LBA: 63  Numsec = 625121217
    Partition file system is NTFS
    Partition is bootable
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 320072933376 bytes
Sector size: 512 bytes
 
Scanning physical sectors of unpartitioned space on drive 0 (1-62-625122448-625142448)...
Physical Sector Size: 512
Drive: 1, DevicePointer: 0xffffffff8afbcab8, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff8b023778, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff8afbcab8, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8afbdbb0, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff8b027f18, DeviceName: \Device\00000089\, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff8b01db00, DeviceName: \Device\Ide\IdeDeviceP2T1L0-17\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe35403a8, 0xffffffff8afbcab8, 0xffffffff88694610
Lower DeviceData: 0xffffffffe52b2c40, 0xffffffff8b01db00, 0xffffffff89369d60
Drive 1
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 4809A450
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 63  Numsec = 3907024002
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 2000398934016 bytes
Sector size: 512 bytes
 
Physical Sector Size: 0
Drive: 2, DevicePointer: 0xffffffff89dd7ab8, DeviceName: \Device\Harddisk2\DR4\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff89dc5020, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff89dd7ab8, DeviceName: \Device\Harddisk2\DR4\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8ae133c0, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff8ae00ea0, DeviceName: \Device\0000009c\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 512
Drive: 3, DevicePointer: 0xffffffff89dd41c8, DeviceName: \Device\Harddisk3\DR5\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff89df6020, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff89dd41c8, DeviceName: \Device\Harddisk3\DR5\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff89dd4730, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff89df98d0, DeviceName: \Device\0000009d\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk3\DR5\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe3c7bc70, 0xffffffff89dd41c8, 0xffffffff8919cab8
Lower DeviceData: 0xffffffffea0a6408, 0xffffffff89df98d0, 0xffffffff88159dc0
Drive 3
Scanning MBR on drive 3...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 7CEA
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 63  Numsec = 4294961622
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 2199023185920 bytes
Sector size: 512 bytes
 
Physical Sector Size: 512
Drive: 4, DevicePointer: 0xffffffff89df6648, DeviceName: \Device\Harddisk4\DR6\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff89df6420, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff89df6648, DeviceName: \Device\Harddisk4\DR6\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff89df6bb0, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff89e1dc18, DeviceName: \Device\0000009e\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk4\DR6\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe4b71b38, 0xffffffff89df6648, 0xffffffff88d88258
Lower DeviceData: 0xffffffffe13d02f8, 0xffffffff89e1dc18, 0xffffffff88eb2db0
Drive 4
Scanning MBR on drive 4...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 7E10
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 63  Numsec = 4294961622
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 2199023185920 bytes
Sector size: 512 bytes
 
Physical Sector Size: 512
Drive: 5, DevicePointer: 0xffffffff89df5ab8, DeviceName: \Device\Harddisk5\DR7\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff89df5890, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff89df5ab8, DeviceName: \Device\Harddisk5\DR7\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff89df5020, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff89dbd628, DeviceName: \Device\0000009f\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk5\DR7\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe10d0c08, 0xffffffff89df5ab8, 0xffffffff8907c340
Lower DeviceData: 0xffffffffe4787518, 0xffffffff89dbd628, 0xffffffff88de8420
Drive 5
Scanning MBR on drive 5...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 4596
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 63  Numsec = 4294961622
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 2199023185920 bytes
Sector size: 512 bytes
 
Physical Sector Size: 512
Drive: 6, DevicePointer: 0xffffffff89df4ab8, DeviceName: \Device\Harddisk6\DR8\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff89df5678, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff89df4ab8, DeviceName: \Device\Harddisk6\DR8\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff89df4020, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff89dfaea0, DeviceName: \Device\000000a0\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk6\DR8\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffea195148, 0xffffffff89df4ab8, 0xffffffff88d976e0
Lower DeviceData: 0xffffffffe142bac0, 0xffffffff89dfaea0, 0xffffffff8875d7b8
Drive 6
Scanning MBR on drive 6...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 7A9
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 63  Numsec = 4294961622
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 2199023185920 bytes
Sector size: 512 bytes
 
Physical Sector Size: 512
Drive: 7, DevicePointer: 0xffffffff8933f030, DeviceName: \Device\Harddisk7\DR14\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff8937b020, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff8933f030, DeviceName: \Device\Harddisk7\DR14\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff893493c0, DeviceName: Unknown, DriverName: \Driver\SahdIa32\
DevicePointer: 0xffffffff89269908, DeviceName: \Device\000000a3\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk7\DR14\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe8673920, 0xffffffff8933f030, 0xffffffff88fa42c8
Lower DeviceData: 0xffffffffe4ba0130, 0xffffffff89269908, 0xffffffff89107610
Drive 7
Scanning MBR on drive 7...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 20FC3
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 2048  Numsec = 3907022848
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 2000396746752 bytes
Sector size: 512 bytes
 
Done!
Performing system, memory and registry scan...
Read File: File "c:\Documents and Settings\Administrator\Application Data\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\brndlog.bak" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Microsoft\Protect\CREDHIST" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Microsoft\UProof\CUSTOM.DIC" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Microsoft\UProof\excludedictionaryen0409.lex" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Microsoft\UProof\excludedictionaryfr040c.lex" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\filezilla\bookmarks.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\profiles.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Uniblue\Registry Booster2\f_1301768417.zip" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Uniblue\Registry Booster2\f_1301770813.zip" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Uniblue\Registry Booster2\ignorelist.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Uniblue\speed up my pc 4\optimizationmeter.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Windows Desktop Search\WindowsDesktopShortcuts.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\WinRAR\version.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Adobe\SLStore\554BD66A6F5F" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Adobe\Updater5\AdobeESDGlobalApps.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Driver Boost\DriverBoost\dd.lic" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\DriverCure\9B13A86D3456.plf" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.MSACCESS.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\Hx.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\Hx_1033_MValidator.Lck" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.EXCEL.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.EXCEL.DEV.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.GRAPH.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.INFOPATH.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.INFOPATHEDITOR.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.MSACCESS.DEV.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.MSE.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.MSPUB.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.MSPUB.DEV.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.MSTORE.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.OIS.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.OUTLOOK.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.OUTLOOK.DEV.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.POWERPNT.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.POWERPNT.DEV.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.RIBBON.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.SETLANG.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.WINWORD.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Microsoft Help\MS.WINWORD.DEV.12.1033.hxn" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\QuickTime\QuickTimeFavorites.qtr" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Sony\Media Manager\MediaManagerConfig_554.AllUsers.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Syncrosoft\SeLicenser.sel" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\{e51adf6a-7916-46b4-96c1-40d98d096077}\alphadriverinstaller.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\{e51adf6a-7916-46b4-96c1-40d98d096077}\instance.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Application Data\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\brndlog.bak" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\brndlog.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Application Data\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\Internet Explorer\brndlog.bak" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\Internet Explorer\brndlog.txt" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Desktop\Internet.lnk" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\browserconfig.properties" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\dependentlibs.list" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\freebl3.chk" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\nssdbm3.chk" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\platform.ini" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\README.txt" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\softokn3.chk" is compressed (flags = 1)
Read File: File "c:\Program Files\Mozilla Firefox\update.locale" is compressed (flags = 1)
Read File: File "c:\Program Files\Outlook Express\msoe.txt" is compressed (flags = 1)
Read File: File "c:\Program Files\Uninstall Information\odbc.dat" is compressed (flags = 1)
Read File: File "c:\Program Files\Windows Media Player\npdrmv2.zip" is compressed (flags = 1)
Read File: File "c:\RECYCLER\S-1-5-21-329068152-1659004503-842925246-500\Dc224\Desktop.ini" is compressed (flags = 1)
Read File: File "c:\RECYCLER\S-1-5-21-329068152-1659004503-842925246-500\Dc224\target.lnk" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Start Menu\Programs\Startup\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Start Menu\Programs\Startup\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Startup\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\PICSDK.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\DVCStateBkp-{00000003-00000000-00000001-00001102-00000004-10031102}.dat" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\EAL32.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\WindowsLogon.manifest" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\msiexec.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Application Data\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Startup\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\drivers\etc\hosts.ics" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\drivers\etc\networks" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\oobe\migip.dun" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\oobe\migrate.isp" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\oobe\msobe.isp" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\oobe\obeip.dun" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\oobe\reg.isp" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\wbem\WindowsSearchEngine_Uninst.mof" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\074D0988.TMP" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_PortMonitor.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\dpinst.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\VerChk.txt" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\MSIa3a3e.LOG" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\MsiExe000.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMT11.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Product_SF_Full_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Product_SF_Min_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_SolutionCenter.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Unload.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_WebReg.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_BufferChm.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_CorePLS_Full_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_CorePLS_Min_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_CustomerResearchQFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Destinations.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_DeviceManagementQFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_eSupportQFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppclj2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppFonts.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppIOFiles.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppmanuals2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hpproductassistant.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppTLBXFX2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppusg2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppWebRegMM.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_HPSoftwareUpdate.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hpzTLBXFX.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Mars.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMT132.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMT6D.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMTB7.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\install_log.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\Twain001.Mtx" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\Twunk001.MTX" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\dd_dotnetfx35error.txt" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\ah_download.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\ah_setup.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\VIES7DBF\source.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\{bebb4176-8cbf-4c5e-b3a7-3431a1933889}\updatecache\setup.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\{C537E239-0D58-4791-9B3F-D6AA8E76E756}\UpdateCache\setup.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\EH9Y9DGL\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\EKE3XBMR\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\FBG4JSLU\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\GVJET01J\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\WGAErrLog.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\setupadmin11ec.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\setupadmin1320.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\setupadmin169c.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\setupadmin990.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\setupadminef8.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\temporary internet files\Content.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\temporary internet files\Content.IE5\EOEID0LG\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\temporary internet files\Content.IE5\HBBPVLLI\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\temporary internet files\Content.IE5\VV6AF4PB\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Temp\temporary internet files\Content.IE5\YV1VBC9Z\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\ntuser.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\ntuser.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\fusioncache.dat" is compressed (flags = 1)
Read File: File "c:\WINDOWS\spupdsvc.log.1.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\hpbvspst.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\vb.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\vbaddin.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\wiadebug.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\wiaservc.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\WindowsUpdate.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\cmsetacl.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ESPR200.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\setuperr.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SBWIN.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\setup.iss" is compressed (flags = 1)
Read File: File "c:\WINDOWS\setup.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\AC3API.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\DtcInstall.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\EP4180.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Accessibility\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\cscompmgd\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\IIEHost\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Interop.hpqusg\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\mscorcfg\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\NullableTypes\1.2.1604.27693__2fe76717e05fac0e\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Configuration.Install\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.InfoPath.Permission\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.InfoPath.SemiTrust\11.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.VisualBasic.Vsa\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.VisualC\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Sony.MediaSoftware.clrshared\1.0.1756.25159__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Sony.MediaSoftware.clrshared\2.0.1930.12115__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Sony.MediaSoftware.clrshared.resources\1.0.1756.25159_ja-JP_3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Sony.MediaSoftware.MediaMgr\1.0.1756.25168__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Sony.MediaSoftware.MediaMgr\2.0.1930.12138__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Sony.MediaSoftware.MediaMgr.resources\1.0.1756.25168_ja-JP_3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Syncfusion.Grid\2.1.0.1005__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Syncfusion.Shared\2.1.0.1003__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Syncfusion.Tools\2.1.0.1005__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Syncfusion.Tools\2.1.0.1006__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Vsa\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft.Vsa.Vb.CodeDOMProcessor\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Microsoft_VsaVb\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\ipdmctrl\11.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\ISymWrapper\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\assembly\GAC\log4net\1.2.0.31001__3cda94b1926e6fbc\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Downloaded Program Files\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Downloaded Program Files\swflash.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Fonts\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\conf.cnt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\connect.cnt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\installutil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\regsvcs.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\regsvcs.exe.rtm.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet.mof.uninstall" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\caspol.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cvtres.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gacutil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ieexec.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ConfigWizards.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\jsc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\l_except.nlp" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\XPThemes.manifest" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\regasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\regsvcs.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\SetupENU1.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\SetupENU2.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ASP.NETClientFiles\SmartNav.htm" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Aspnet.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet.mof.uninstall" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Aspnet_regsql.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state_perf.h" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\jsc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\caspol.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\XPThemes.manifest" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\regsvcs.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\_DataOracleClientPerfCounters_shared12_neutral.h" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\_dataperfcounters_shared12_neutral.h" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\regasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ieexec.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ilasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\webAdminNoNavBar.master" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\AddInProcess.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\AddInProcess32.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\AddInUtil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\csc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\default.win32manifest" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\EdmGen.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v3.5\vbc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\AddInProcess.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\AddInUtil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\applaunch.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\Aspnet.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet.mof.uninstall" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state_perf.h" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\Microsoft.Workflow.Compiler.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\_DataOracleClientPerfCounters_shared12_neutral.h" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\csc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\cvtres.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\DataSvcUtil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\default.win32manifest" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\dfsvc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\ilasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\netmemorycache.h" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\regasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\regsvcs.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\caspol.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\jsc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\_dataperfcounters_shared12_neutral.h" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\vbc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\XPThemes.manifest" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\ASP.NETWebAdminFiles\webAdminNoNavBar.master" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Tasks\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Tasks\SA.DAT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Web\bullet.gif" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\fusioncache.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\074D0988.TMP" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_PortMonitor.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\dpinst.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\VerChk.txt" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\MSIa3a3e.LOG" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\MsiExe000.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMT11.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Product_SF_Full_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Product_SF_Min_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_SolutionCenter.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Unload.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_WebReg.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_BufferChm.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_CorePLS_Full_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_CorePLS_Min_QFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_CustomerResearchQFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Destinations.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_DeviceManagementQFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_eSupportQFolder.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppclj2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppFonts.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppIOFiles.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppmanuals2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hpproductassistant.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppTLBXFX2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppusg2605.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hppWebRegMM.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_HPSoftwareUpdate.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_hpzTLBXFX.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\hppMSI_Mars.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMT132.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMT6D.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\IMTB7.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\install_log.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\Twain001.Mtx" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\Twunk001.MTX" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\dd_dotnetfx35error.txt" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\ah_download.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\ah_setup.log" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Temp\VIES7DBF\source.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\fusioncache.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\Updater5\adobeupdaterprefs.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\Apple Computer\QuickTime\QuickTimeFavorites.qtr" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Feeds Cache\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Media Player\lastplayed.wpl" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Local Settings\Application Data\Western Digital\WD SmartWare\wd smartware(unlock).txt" is compressed (flags = 1)
Read File: File "c:\RECYCLER\S-1-5-21-329068152-1659004503-842925246-500\Dc224\Desktop.ini" is compressed (flags = 1)
Read File: File "c:\RECYCLER\S-1-5-21-329068152-1659004503-842925246-500\Dc224\target.lnk" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2479943$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2479943$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2570947$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2570947$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb950762$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb975467$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb961501$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb969059$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb971657$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb973507$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb973815$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb973869$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb973904$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb974112$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb974392$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb974571$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb975025$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb975713$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb977816$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb977816$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb978706$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb979309$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb979482$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb979687$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb981322$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb981322$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb981997$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb981997$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb982132$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb982132$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb982665$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb982665$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb950974$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb951376-v2$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb951978$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb952287$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb952954$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb954459$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb954459$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb956802$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb956844$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb958644$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb960803$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2481109$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2483185$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2483185$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2485663$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2485663$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2506212$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2506212$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2507618$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2507618$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2507938$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2507938$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2508429$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2508429$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2509553$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2535512$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2535512$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2536276-v2$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2544893-v2$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2566454$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2566454$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2584146$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2584146$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2585542$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2585542$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2592799$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2592799$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2598479$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2598479$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2603381$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2603381$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2618451$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2618451$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2619339$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2619339$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2620712$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2620712$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2621440$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2621440$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2624667$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2624667$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2631813$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2631813$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2646524$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2646524$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2653956$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2653956$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2079403$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2079403$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2115168$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2115168$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2229593$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2345886$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2347290$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2347290$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2360937$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2360937$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2387149$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2393802$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2419632$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2423089$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2423089$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2440591$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2440591$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2443105$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2443105$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2467659$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2467659$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2476490$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2476490$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2478960$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2478960$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2478971$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2478971$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2676562$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2686509$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2686509$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2695962$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$ntuninstallkb2695962$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Desktop\Internet.lnk" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Desktop\Database\Desktop.ini" is compressed (flags = 1)
Done!
Scan finished
=======================================
 
 

 

# AdwCleaner v2.300 - Logfile created 05/05/2013 at 20:12:26
# Updated 28/04/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Administrator - SGGS1
# Boot Mode : Safe mode with networking
# Running from : C:\Documents and Settings\Administrator\My Documents\Downloads\AdwCleaner.exe
# Option [Delete]
 
 
***** [Services] *****
 
 
***** [Files / Folders] *****
 
 
***** [Registry] *****
 
 
***** [Internet Browsers] *****
 
-\\ Internet Explorer v8.0.6001.18702
 
[OK] Registry is clean.
 
-\\ Mozilla Firefox v3.6.10 (en-US)
 
File : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\v76kigox.default\prefs.js
 
[OK] File is clean.
 
-\\ Google Chrome v26.0.1410.64
 
File : C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences
 
[OK] File is clean.
 
*************************
 
AdwCleaner[S1].txt - [12298 octets] - [15/11/2012 19:52:02]
AdwCleaner[S2].txt - [2973 octets] - [05/05/2013 20:04:47]
AdwCleaner[S3].txt - [1062 octets] - [05/05/2013 20:12:27]
 
########## EOF - C:\AdwCleaner[S3].txt - [1122 octets] ##########
 

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.9.3 (04.29.2013:2)
OS: Microsoft Windows XP x86
Ran by Administrator on Sun 05/05/2013 at 22:11:36.21
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\driverscanner
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
 
 
 
~~~ Registry Keys
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\Documents and Settings\All Users\application data\drivercure"
Successfully deleted: [Folder] "C:\Documents and Settings\Administrator\Application Data\drivercure"
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sun 05/05/2013 at 22:14:35.14
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

 

 



#9 Guest_Francis Houle_*

Guest_Francis Houle_*

  • Guests
  • OFFLINE
  •  

Posted 05 May 2013 - 10:25 PM

First, please install an antivirus (Microsoft Security Essentials)
 
Second, please update java an remove the older versions
 
Third, please update adobe reader and install the latest version of firefox
 
Fourth, please uninstall :
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.2.443)
avast! Free Antivirus (Version: 7.0.1474.0)
MarketResearch (Version: 60.0.155.000)
 
Fifth, please reset every browsers (if you did not make it)


#10 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta
  • Local time:11:29 PM

Posted 06 May 2013 - 10:33 PM

Ok, I have gone through this list as well but was unable to uninstall the adobe.com and market research. I had to go into safe mode as the add-change window would not populate in normal startup. I will try again.

 

I was able to update Java and install Microsoft security essentials. Uninstalled the Avast.

 

The browsers have been updated and reset to the new defaults.

 

The computer is very slow and just doing these small tasks takes a long time.

 

Windows XP software has been updated.



#11 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta

Posted 07 May 2013 - 10:38 AM

I have uninstalled the adobe.com but could not find the market research in the add and remove window. I did get it to populate in normal startup after waiting for sometime.

 

Microsoft sec. essentials found a trojan on an express scan so have deleted that.



#12 Guest_Francis Houle_*

Guest_Francis Houle_*

  • Guests
  • OFFLINE
  •  

Posted 07 May 2013 - 10:48 AM

We need to remove some items from Startup

 

Please look at : http://www.howtogeek.com/howto/windows/quickly-remove-items-from-windows-xp-startup/

 

Can you provide me some screenshots of the startup items?

 

Upload them here (https://mega.co.nz/) and give me the link!



#13 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta
  • Local time:11:29 PM

Posted 07 May 2013 - 11:36 AM

Just wanted to let you know I opened up chrome a few times and no iminent search come up as a second tab. Great news. Do I need to do these steps for the other computers in the house? I have a Mac laptop.

 

When you say startup items, do you mean the list of apps that is under task manager or the actual start button menu?

 

Thank you



#14 Guest_Francis Houle_*

Guest_Francis Houle_*

  • Guests
  • OFFLINE
  •  

Posted 07 May 2013 - 11:47 AM

The tools may not be compatible with Mac.

 

When you say startup items, do you mean the list of apps that is under task manager or the actual start button menu?

 

No!

 

 
Startup Programs are the programs that start automatically every time you turn on your computer.  Some of these 
startup programs will be visible in the System Tray (lower right hand corner of your computer). Many startup programs, particularly malicious Spyware 
and Adware will not be visible in the System Tray.

 

 

http://www.sevenforums.com/tutorials/1401-startup-programs-change.html



#15 creativegd

creativegd
  • Topic Starter

  • Members
  • 73 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Atlanta

Posted 09 May 2013 - 10:18 PM

I have made some jpeg screen shots of the startup window and uploaded them via your link. The window would open only a certain dimension so there are 4 files for the startup window.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users