cannot change windows update and stuck on applying update 3 of 3 |
![]() ![]() |
cannot change windows update and stuck on applying update 3 of 3 |
Nov 3 2009, 11:20 PM
Post
#1
|
|
|
New Member ![]() Posts: 1 OS: Windows Vista |
A few weeks back the computer was in reboot loop - would display normal windows update screen sayig 3 of 3 0% completed. I put in resuce disc, booted to previous point. Started again and now will not boot without the resuce disc.
To prevent more windows updates, went to security center->Windows Update->change settings. It allows me to select something other then auto, bit Ok, select continue in popup, but windows never closes and hitting cancel and going back in, the value does not change from auto update (I know, never should have had auto selected). Malwarebytes shows no infections OTL.txt OTL logfile created on: 11/3/2009 10:49:03 PM - Run 1 OTL by OldTimer - Version 3.1.3.3 Folder = C:\Users\Dad\Desktop Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation Internet Explorer (Version = 7.0.6000.16809) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1.87 Gb Total Physical Memory | 0.96 Gb Available Physical Memory | 51.44% Memory free 3.98 Gb Paging File | 2.95 Gb Available in Paging File | 74.08% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 147.58 Gb Total Space | 7.93 Gb Free Space | 5.38% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: MOM-PC Current User Name: Dad Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 14 Days Output = Standard Quick Scan ========== Processes (SafeList) ========== PRC - [2009/11/03 22:46:48 | 00,528,384 | ---- | M] (OldTimer Tools) -- C:\Users\Dad\Desktop\OTL.exe PRC - [2009/11/03 22:46:48 | 00,528,384 | ---- | M] (OldTimer Tools) -- C:\Users\Dad\Desktop\OTL.exe PRC - [2009/07/18 04:01:10 | 00,301,568 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\ieuser.exe PRC - [2009/06/05 12:39:22 | 00,292,136 | ---- | M] (Apple Inc.) -- C:\Program Files\iTunes\iTunesHelper.exe PRC - [2009/06/05 12:39:14 | 00,541,992 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe PRC - [2009/06/05 10:48:14 | 00,144,712 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe PRC - [2009/03/31 15:06:26 | 00,050,456 | ---- | M] (Avanquest North America, Inc.) -- C:\Program Files\Avanquest\Fix-It\MXTask2.exe PRC - [2009/03/31 15:06:22 | 00,161,048 | ---- | M] (Avanquest North America, Inc.) -- C:\Program Files\Avanquest\Fix-It\mxtask.exe PRC - [2009/03/31 15:06:20 | 00,808,216 | ---- | M] (Avanquest North America, Inc.) -- C:\Program Files\Avanquest\Fix-It\Fix-It.exe PRC - [2008/12/12 11:17:38 | 00,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe PRC - [2008/10/29 00:20:29 | 02,923,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2008/10/28 16:28:10 | 00,886,056 | ---- | M] (Sunbelt Software) -- C:\Program Files\Common Files\AntiVirus\SBAMSvc.exe PRC - [2008/10/10 05:45:26 | 00,013,088 | ---- | M] (Intuit Inc.) -- C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe PRC - [2008/04/08 09:56:30 | 01,647,912 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe PRC - [2008/01/03 17:28:08 | 01,392,640 | R--- | M] (PalmSource, Inc) -- C:\Program Files\Palm\Hotsync.exe PRC - [2007/11/20 18:36:03 | 01,862,144 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe PRC - [2007/11/20 18:36:03 | 01,862,144 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe PRC - [2007/11/06 00:50:44 | 00,116,032 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe PRC - [2007/10/23 18:27:16 | 00,066,928 | ---- | M] () -- c:\Toshiba\IVP\swupdate\swupdtmr.exe PRC - [2007/10/14 20:17:32 | 00,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe PRC - [2007/08/15 19:03:32 | 01,021,224 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe PRC - [2007/08/15 17:31:50 | 00,102,400 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPStart.exe PRC - [2007/08/15 16:58:02 | 00,200,704 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynToshiba.exe PRC - [2007/08/09 21:26:42 | 04,702,208 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe PRC - [2007/08/01 16:39:18 | 00,077,824 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe PRC - [2007/07/28 01:24:46 | 00,610,304 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\System32\Ati2evxx.exe PRC - [2007/07/28 01:24:46 | 00,610,304 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\System32\Ati2evxx.exe PRC - [2007/07/20 22:45:16 | 01,372,160 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\NDSTray.exe PRC - [2007/06/19 17:28:32 | 00,405,504 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe PRC - [2007/06/15 23:01:58 | 00,448,080 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\SmoothView\SmoothView.exe PRC - [2007/06/01 12:52:34 | 00,049,152 | ---- | M] (ATI Technologies Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe PRC - [2007/06/01 12:52:10 | 00,049,152 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe PRC - [2007/05/18 05:43:00 | 00,430,080 | ---- | M] () -- C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe PRC - [2007/03/29 12:39:20 | 00,427,576 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe PRC - [2007/03/29 12:39:18 | 00,411,192 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TPwrMain.exe PRC - [2007/03/19 13:59:58 | 00,065,603 | ---- | M] (DataLode, Inc.) -- C:\Program Files\Toshiba Registration\Registration.exe PRC - [2007/02/25 23:55:18 | 00,125,048 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe PRC - [2007/01/25 20:47:50 | 00,136,816 | ---- | M] () -- C:\Toshiba\IVP\ISM\pinger.exe PRC - [2007/01/25 20:45:42 | 00,468,600 | ---- | M] (TOSHIBA Corporation) -- C:\Toshiba\IVP\ISM\Ivpsvmgr.exe PRC - [2006/12/19 10:30:26 | 00,081,920 | ---- | M] (Prolific Technology Inc.) -- C:\Windows\System32\IoctlSvc.exe PRC - [2006/11/14 22:33:10 | 00,040,960 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe PRC - [2006/11/02 06:36:16 | 01,192,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sdclt.exe PRC - [2006/11/02 06:36:16 | 01,192,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sdclt.exe PRC - [2006/11/02 06:35:35 | 00,176,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wpcumi.exe PRC - [2006/10/05 14:10:12 | 00,009,216 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe PRC - [2006/08/23 18:39:48 | 00,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe PRC - [2006/05/25 20:30:16 | 00,114,688 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\TODDSrv.exe PRC - [1997/07/10 23:00:00 | 00,333,824 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office\MSOFFICE.EXE PRC - [1997/07/10 23:00:00 | 00,111,376 | ---- | M] () -- C:\Program Files\Microsoft Office\Office\FINDFAST.EXE PRC - [1997/07/10 23:00:00 | 00,051,984 | ---- | M] () -- C:\Program Files\Microsoft Office\Office\OSA.EXE ========== Modules (SafeList) ========== MOD - [2009/11/03 22:46:48 | 00,528,384 | ---- | M] (OldTimer Tools) -- C:\Users\Dad\Desktop\OTL.exe MOD - [2008/09/24 15:05:30 | 00,053,248 | ---- | M] (Avanquest North America, Inc.) -- C:\Program Files\Avanquest\Fix-It\errhook.dll MOD - [2008/09/24 14:58:46 | 00,028,672 | ---- | M] (Avanquest North America, Inc.) -- C:\Program Files\Avanquest\Fix-It\WinHook.dll MOD - [2007/11/20 17:01:46 | 01,648,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.20533_none_4634c4a0218d65c1\comctl32.dll MOD - [2006/11/02 03:46:10 | 00,408,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcp60.dll ========== Win32 Services (SafeList) ========== SRV - File not found -- -- (ose) SRV - File not found -- -- (odserv) SRV - [2009/06/05 12:39:14 | 00,541,992 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service) SRV - [2009/06/05 10:48:14 | 00,144,712 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device) SRV - [2009/04/22 06:45:07 | 00,182,768 | ---- | M] (Google) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc) SRV - [2009/03/31 15:06:22 | 00,161,048 | ---- | M] (Avanquest North America, Inc.) -- C:\Program Files\Avanquest\Fix-It\mxtask.exe -- (Fix-It Task Manager) SRV - [2008/12/12 11:17:38 | 00,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service) SRV - [2008/10/28 16:28:10 | 00,886,056 | ---- | M] (Sunbelt Software) -- C:\Program Files\Common Files\AntiVirus\SBAMSvc.exe -- (SBAMSvc) SRV - [2008/10/16 19:12:28 | 00,217,088 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll -- (hpqcxs08) SRV - [2008/10/10 05:45:26 | 00,013,088 | ---- | M] (Intuit Inc.) -- C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe -- (IntuitUpdateService) SRV - [2008/07/27 12:00:25 | 00,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2008/06/19 19:18:04 | 00,046,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0) SRV - [2008/06/19 19:17:50 | 00,132,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing) SRV - [2008/06/19 19:17:49 | 00,881,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc) SRV - [2008/04/08 09:56:30 | 00,800,040 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService) SRV - [2008/03/25 20:25:50 | 00,630,784 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL -- (HPSLPSVC) SRV - [2008/01/22 11:13:26 | 00,275,752 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService) SRV - [2007/11/20 18:36:03 | 01,862,144 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe -- (GoogleDesktopManager) SRV - [2007/11/20 16:51:13 | 00,265,912 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2007/10/23 18:27:16 | 00,066,928 | ---- | M] () -- c:\Toshiba\IVP\swupdate\swupdtmr.exe -- (Swupdtmr) SRV - [2007/09/24 19:38:00 | 00,181,784 | ---- | M] (WildTangent, Inc.) -- C:\Program Files\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe -- (GameConsoleService) SRV - [2007/08/01 16:39:18 | 00,077,824 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe -- (TNaviSrv) SRV - [2007/07/28 01:24:46 | 00,610,304 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\System32\Ati2evxx.exe -- (Ati External Event Utility) SRV - [2007/03/29 12:39:20 | 00,427,576 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv) SRV - [2007/02/25 23:55:18 | 00,125,048 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- (TOSHIBA Bluetooth Service) SRV - [2007/01/25 20:47:50 | 00,136,816 | ---- | M] () -- C:\Toshiba\IVP\ISM\pinger.exe -- (pinger) SRV - [2006/12/19 10:30:26 | 00,081,920 | ---- | M] (Prolific Technology Inc.) -- C:\Windows\System32\IoctlSvc.exe -- (PLFlash DeviceIoControl Service) SRV - [2006/11/14 22:33:10 | 00,040,960 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe -- (CFSvcs) SRV - [2006/11/08 15:35:38 | 00,053,248 | ---- | M] (Hewlett-Packard) -- C:\Windows\System32\HPZipm12.dll -- (Pml Driver HPZ12) SRV - [2006/11/08 15:35:36 | 00,043,520 | ---- | M] (Hewlett-Packard) -- C:\Windows\System32\HPZinw12.dll -- (Net Driver HPZ12) SRV - [2006/11/02 06:36:04 | 00,895,488 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe -- (WMPNetworkSvc) SRV - [2006/11/02 06:35:29 | 00,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehsched.exe -- (ehSched) SRV - [2006/11/02 06:35:29 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehstart.dll -- (ehstart) SRV - [2006/11/02 06:35:28 | 00,291,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehrecvr.exe -- (ehRecvr) SRV - [2006/10/05 14:10:12 | 00,009,216 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe -- (AgereModemAudio) SRV - [2006/08/23 18:39:48 | 00,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) SRV - [2006/05/25 20:30:16 | 00,114,688 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\TODDSrv.exe -- (TODDSrv) SRV - [2005/04/03 23:41:10 | 00,069,632 | ---- | M] (Macrovision Corporation) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe -- (IDriverT) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://webmail.juno.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\software\mozilla\eMusic Download Manager\Extensions\\Components: C:\Program Files\eMusic Download Manager\xulrunner\components [2009/07/11 19:51:01 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\eMusic Download Manager\Extensions\\Plugins: C:\Program Files\eMusic Download Manager\xulrunner\plugins [2009/07/11 19:51:01 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 2.0.0.14\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/07/11 19:51:01 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 2.0.0.14\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/07/11 19:51:01 | 00,000,000 | ---D | M] [2008/05/27 09:03:28 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2008/05/27 09:02:55 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2009/01/21 21:44:35 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org [2008/04/07 00:59:01 | 00,067,696 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\jar50.dll [2008/04/07 00:59:02 | 00,054,376 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\jsd3250.dll [2008/04/07 00:59:03 | 00,034,952 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\myspell.dll [2008/04/07 00:59:03 | 00,046,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\spellchk.dll [2008/04/07 00:59:04 | 00,172,144 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\xpinstal.dll [2008/06/17 15:12:42 | 00,114,688 | ---- | M] (Adobe Systems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll [2008/04/07 00:59:05 | 00,022,664 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll [2009/02/27 11:13:42 | 00,103,792 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll [2009/07/11 19:51:00 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll [2009/07/11 19:51:00 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll [2009/07/11 19:51:00 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll [2009/07/11 19:51:00 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll [2009/07/11 19:51:00 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll [2009/07/11 19:51:00 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll [2009/07/11 19:51:00 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll [2008/04/04 16:04:29 | 00,001,514 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml [2008/04/04 16:04:29 | 00,002,193 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\answers.xml [2008/04/04 16:04:29 | 00,001,038 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml [2008/04/04 16:04:29 | 00,001,046 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml [2008/04/04 16:04:29 | 00,002,351 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml [2008/04/04 16:04:29 | 00,000,792 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo.xml O1 HOSTS File: (761 bytes) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll File not found O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll File not found O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll File not found O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) O3 - HKLM\..\Toolbar: (&Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll File not found O3 - HKCU\..\Toolbar\WebBrowser: (&Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll File not found O4 - HKLM..\Run: [00TCrdMain] C:\Program Files\Toshiba\FlashCards\TCrdMain.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.) O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\hpwuSchd2.exe (Hewlett-Packard) O4 - HKLM..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe File not found O4 - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.) O4 - HKLM..\Run: [NBKeyScan] C:\Program Files\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe (Nero AG) O4 - HKLM..\Run: [NDSTray.exe] File not found O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.) O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) O4 - HKLM..\Run: [SmoothView] C:\Program Files\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe () O4 - HKLM..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.) O4 - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4 - HKLM..\Run: [WPCUMI] C:\Windows\System32\wpcumi.exe (Microsoft Corporation) O4 - HKCU..\Run: [1040749826] C:\Program Files\Toshiba Registration\Registration.exe (DataLode, Inc.) O4 - HKCU..\Run: [TOSCDSPD] C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe () O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - Startup: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1 O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll (Sun Microsystems, Inc.) O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll File not found O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll File not found O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL File not found O9 - Extra Button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\wpclsp.dll (Microsoft Corporation) O13 - gopher Prefix: missing O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet) O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} http://photo.walgreens.com/WalgreensActivia.cab (Snapfish Activia) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_02) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash...r/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_02) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_02) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 205.171.3.25 O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll File not found O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL File not found O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006/09/18 15:43:36 | 00,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\Windows\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - File not found O35 - comfile [open] -- "%1" %* File not found O35 - exefile [open] -- "%1" %* File not found NetSvcs: FastUserSwitchingCompatibility - File not found NetSvcs: Ias - C:\Windows\System32\ias [2006/11/02 05:18:47 | 00,000,000 | ---D | M] NetSvcs: Irmon - C:\Windows\System32\irmon.dll (Microsoft Corporation) NetSvcs: Nla - File not found NetSvcs: Ntmssvc - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: SRService - File not found NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found NetSvcs: LogonHours - File not found NetSvcs: PCAudit - File not found NetSvcs: helpsvc - File not found NetSvcs: uploadmgr - File not found ========== Files/Folders - Created Within 14 Days ========== [2009/11/03 22:46:45 | 00,528,384 | ---- | C] (OldTimer Tools) -- C:\Users\Dad\Desktop\OTL.exe [2009/11/03 22:42:40 | 00,472,064 | ---- | C] ( ) -- C:\Users\Dad\Desktop\RootRepeal.exe [2009/11/03 22:12:04 | 00,000,000 | ---D | C] -- C:\Users\Dad\AppData\Local\Apple [2009/11/03 21:49:03 | 00,000,000 | ---D | C] -- C:\Users\Dad\AppData\Roaming\Malwarebytes [2009/11/03 21:47:57 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2009/11/03 21:47:56 | 00,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2009/11/03 21:47:56 | 00,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2009/11/03 21:47:55 | 00,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2009/11/03 21:47:55 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2009/11/03 21:46:17 | 00,000,000 | ---D | C] -- C:\Windows\ERDNT [2009/11/03 21:45:29 | 00,000,000 | ---D | C] -- C:\Program Files\ERUNT [2009/11/03 19:26:35 | 00,271,872 | ---- | C] (OldTimer Tools) -- C:\Users\Dad\Desktop\TFC.exe [2009/11/03 19:20:07 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro [2009/11/03 19:11:55 | 00,000,000 | ---D | C] -- C:\Users\Dad\AppData\Roaming\Avanquest [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files - Modified Within 14 Days ========== [2009/11/03 23:56:37 | 00,438,840 | RHS- | M] () -- C:\bootmgr [2009/11/03 22:49:08 | 01,310,720 | -HS- | M] () -- C:\Users\Dad\NTUSER.DAT [2009/11/03 22:46:48 | 00,528,384 | ---- | M] (OldTimer Tools) -- C:\Users\Dad\Desktop\OTL.exe [2009/11/03 22:43:11 | 00,000,000 | ---- | M] () -- C:\Users\Dad\Desktop\settings.dat [2009/11/03 22:42:41 | 00,472,064 | ---- | M] ( ) -- C:\Users\Dad\Desktop\RootRepeal.exe [2009/11/03 22:38:35 | 00,000,000 | ---- | M] () -- C:\Users\Dad\settings.dat [2009/11/03 22:07:04 | 00,618,648 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2009/11/03 22:07:04 | 00,104,024 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2009/11/03 22:07:03 | 00,716,948 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2009/11/03 22:06:46 | 00,000,829 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2009/11/03 21:45:32 | 00,000,924 | ---- | M] () -- C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk [2009/11/03 21:45:30 | 00,000,744 | ---- | M] () -- C:\Users\Dad\Desktop\NTREGOPT.lnk [2009/11/03 21:45:30 | 00,000,725 | ---- | M] () -- C:\Users\Dad\Desktop\ERUNT.lnk [2009/11/03 21:03:24 | 00,117,928 | ---- | M] () -- C:\Users\Dad\AppData\Local\GDIPFONTCACHEV1.DAT [2009/11/03 21:01:51 | 00,003,456 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2009/11/03 21:01:50 | 00,003,456 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2009/11/03 21:01:42 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2009/11/03 21:01:12 | 00,384,272 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2009/11/03 21:01:00 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2009/11/03 21:00:41 | 20,112,17920 | -HS- | M] () -- C:\hiberfil.sys [2009/11/03 19:26:45 | 00,271,872 | ---- | M] (OldTimer Tools) -- C:\Users\Dad\Desktop\TFC.exe [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files Created - No Company Name ========== [2009/11/03 22:43:11 | 00,000,000 | ---- | C] () -- C:\Users\Dad\Desktop\settings.dat [2009/11/03 22:38:35 | 00,000,000 | ---- | C] () -- C:\Users\Dad\settings.dat [2009/11/03 21:48:00 | 00,000,829 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2009/11/03 21:45:32 | 00,000,924 | ---- | C] () -- C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk [2009/11/03 21:45:30 | 00,000,744 | ---- | C] () -- C:\Users\Dad\Desktop\NTREGOPT.lnk [2009/11/03 21:45:30 | 00,000,725 | ---- | C] () -- C:\Users\Dad\Desktop\ERUNT.lnk [2009/10/28 18:33:35 | 20,112,17920 | -HS- | C] () -- C:\hiberfil.sys [2009/10/03 10:45:47 | 00,001,396 | ---- | C] () -- C:\Windows\disney.ini [2009/10/01 16:27:27 | 00,172,032 | ---- | C] () -- C:\Windows\System32\TTSServer.dll [2009/10/01 16:07:16 | 00,000,000 | ---- | C] () -- C:\Windows\SETUP32.INI [2008/09/04 17:20:33 | 00,000,022 | ---- | C] () -- C:\Windows\exchng.ini [2008/09/04 17:20:32 | 00,000,611 | ---- | C] () -- C:\Windows\ODBC.INI [2008/06/17 12:26:21 | 00,000,094 | ---- | C] () -- C:\Windows\family.ini [2008/06/04 15:07:49 | 00,004,571 | ---- | C] () -- C:\ProgramData\hpzinstall.log [2008/02/25 16:36:07 | 02,332,778 | -H-- | C] () -- C:\Users\Dad\AppData\Local\IconCache.db [2008/02/25 09:13:31 | 00,117,928 | ---- | C] () -- C:\Users\Dad\AppData\Local\GDIPFONTCACHEV1.DAT [2007/12/13 12:03:11 | 00,000,005 | RHS- | C] () -- C:\Windows\System32\drivers\taishop.sys [2007/11/20 18:51:56 | 00,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll [2007/11/20 18:51:56 | 00,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll [2007/11/20 18:51:56 | 00,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll [2007/11/20 18:51:56 | 00,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll [2007/11/20 18:51:56 | 00,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll [2007/11/20 18:51:56 | 00,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll [2007/11/20 18:22:44 | 00,128,113 | ---- | C] () -- C:\Windows\System32\csellang.ini [2007/11/20 18:22:44 | 00,045,056 | ---- | C] () -- C:\Windows\System32\csellang.dll [2007/11/20 18:22:44 | 00,010,150 | ---- | C] () -- C:\Windows\System32\tosmreg.ini [2007/11/20 18:22:44 | 00,007,671 | ---- | C] () -- C:\Windows\System32\cseltbl.ini [2007/11/20 18:18:06 | 00,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll [2007/07/28 01:26:30 | 00,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll [2006/12/05 15:05:04 | 00,114,688 | ---- | C] () -- C:\Windows\System32\TosBtAcc.dll [2006/11/02 06:50:50 | 00,000,174 | -HS- | C] () -- C:\Program Files\desktop.ini [2006/11/02 06:37:35 | 00,030,808 | ---- | C] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont [2006/11/02 06:37:35 | 00,029,779 | ---- | C] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont [2006/11/02 06:37:35 | 00,026,489 | ---- | C] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont [2006/11/02 06:37:35 | 00,026,040 | ---- | C] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont [2006/11/02 06:35:32 | 00,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006/11/02 04:23:31 | 00,000,275 | ---- | C] () -- C:\Windows\win.ini [2006/11/02 04:23:31 | 00,000,219 | ---- | C] () -- C:\Windows\system.ini [2006/11/02 01:40:29 | 00,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006/03/09 12:58:00 | 01,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2005/07/22 23:30:18 | 00,065,536 | ---- | C] () -- C:\Windows\System32\TosCommAPI.dll [1997/08/05 23:00:00 | 00,022,016 | ---- | C] () -- C:\Windows\System32\DOCOBJ.DLL [1997/08/05 23:00:00 | 00,012,288 | ---- | C] () -- C:\Windows\System32\HLINKPRX.DLL [1997/07/10 23:00:00 | 00,031,232 | ---- | C] () -- C:\Windows\System32\XLREC.DLL [1997/07/10 23:00:00 | 00,025,600 | ---- | C] () -- C:\Windows\System32\RECNCL.DLL [1997/07/10 23:00:00 | 00,022,016 | ---- | C] () -- C:\Windows\System32\ODBCSTF.DLL ========== LOP Check ========== [2009/04/20 14:21:36 | 00,000,000 | ---D | M] -- C:\Users\Dad\AppData\Roaming\ATI [2009/11/03 22:35:55 | 00,000,000 | ---D | M] -- C:\Users\Dad\AppData\Roaming\Avanquest [2009/04/20 14:21:44 | 00,000,000 | ---D | M] -- C:\Users\Dad\AppData\Roaming\HotSync [2008/07/27 16:07:22 | 00,000,000 | ---D | M] -- C:\Users\Dad\AppData\Roaming\Toshiba [2009/11/03 21:01:42 | 00,000,006 | -H-- | M] () -- C:\Windows\Tasks\SA.DAT [2009/11/03 21:54:26 | 00,032,540 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT ========== Purity Check ========== ========== Custom Scans ========== < %SYSTEMDRIVE%\*.exe > < %SYSTEMDRIVE%\eventlog.dll /s /md5 > < %SYSTEMDRIVE%\scecli.dll /s /md5 > [2008/01/19 01:36:19 | 00,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll [2006/11/02 03:46:12 | 00,176,640 | ---- | M] (Microsoft Corporation) MD5=80E2839D05CA5970A86D7BE2A08BFF61 -- C:\Windows\System32\scecli.dll [2006/11/02 03:46:12 | 00,176,640 | ---- | M] (Microsoft Corporation) MD5=80E2839D05CA5970A86D7BE2A08BFF61 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6000.16386_none_35d7205fdc305e3e\scecli.dll < %SYSTEMDRIVE%\netlogon.dll /s /md5 > [2008/01/19 01:35:36 | 00,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll [2006/11/02 03:46:11 | 00,559,616 | ---- | M] (Microsoft Corporation) MD5=889A2C9F2AACCD8F64EF50AC0B3D553B -- C:\Windows\System32\netlogon.dll [2006/11/02 03:46:11 | 00,559,616 | ---- | M] (Microsoft Corporation) MD5=889A2C9F2AACCD8F64EF50AC0B3D553B -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6000.16386_none_fb80f5473b0ed783\netlogon.dll < %SYSTEMDRIVE%\cngaudit.dll /s /md5 > [2006/11/02 03:46:03 | 00,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\System32\cngaudit.dll [2006/11/02 03:46:03 | 00,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll < %SYSTEMDRIVE%\sceclt.dll /s /md5 > < %SYSTEMDRIVE%\ntelogon.dll /s /md5 > < %SYSTEMDRIVE%\logevent.dll /s /md5 > < %SYSTEMDRIVE%\iaStor.sys /s /md5 > < %SYSTEMDRIVE%\nvstor.sys /s /md5 > [2008/01/19 01:42:09 | 00,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvstor.sys [2006/11/02 03:50:13 | 00,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\drivers\nvstor.sys [2006/11/02 03:50:13 | 00,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvstor.sys < %SYSTEMDRIVE%\atapi.sys /s /md5 > [2008/01/19 01:41:30 | 00,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys [2008/02/25 10:06:54 | 00,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\drivers\atapi.sys [2008/02/25 10:06:54 | 00,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys [2006/11/02 03:49:36 | 00,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys [2008/02/25 10:06:54 | 00,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys [2008/02/25 10:06:53 | 00,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys < %SYSTEMDRIVE%\IdeChnDr.sys /s /md5 > < %SYSTEMDRIVE%\viasraid.sys /s /md5 > < %SYSTEMDRIVE%\AGP440.sys /s /md5 > [2008/01/19 01:42:25 | 00,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys [2006/11/02 03:49:52 | 00,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\drivers\AGP440.sys [2006/11/02 03:49:52 | 00,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys < %SYSTEMDRIVE%\vaxscsi.sys /s /md5 > < End of report > Extres.txt OTL Extras logfile created on: 11/3/2009 10:49:03 PM - Run 1 OTL by OldTimer - Version 3.1.3.3 Folder = C:\Users\Dad\Desktop Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation Internet Explorer (Version = 7.0.6000.16809) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1.87 Gb Total Physical Memory | 0.96 Gb Available Physical Memory | 51.44% Memory free 3.98 Gb Paging File | 2.95 Gb Available in Paging File | 74.08% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 147.58 Gb Total Space | 7.93 Gb Free Space | 5.38% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: MOM-PC Current User Name: Dad Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 14 Days Output = Standard Quick Scan ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .chm [@ = chm.file] -- "%SystemRoot%\hh.exe" %1 .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* File not found chm.file [open] -- "%SystemRoot%\hh.exe" %1 File not found cmdfile [open] -- "%1" %* File not found comfile [open] -- "%1" %* File not found cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* File not found helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 File not found htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 File not found http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* File not found regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" File not found scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S File not found txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~3\Office12\ONENOTE.EXE "%L" File not found Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "UacDisableNotify" = 0 "InternetSettingsDisableNotify" = 0 "AutoUpdateDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\TOSHIBA\ivp\NetInt\Netint.exe" = C:\TOSHIBA\ivp\NetInt\Netint.exe:*:Enabled:NIE - Toshiba Software Upgrades Engine -- (TOSHIBA Corporation) "C:\TOSHIBA\Ivp\ISM\pinger.exe" = C:\TOSHIBA\Ivp\ISM\pinger.exe:*:Enabled:Toshiba Software Upgrades Pinger -- () ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{119CDEE4-C5BF-4888-B1F9-2404B1C47906}" = lport=6331 | protocol=6 | dir=in | name=windows live onecare | "{44891EDC-C5E0-4651-AF5C-FBB913A2F93B}" = lport=63331 | protocol=6 | dir=in | name=windows live onecare | "{55819D09-A6D8-4E54-86A0-7A4FFE623612}" = lport=445 | protocol=6 | dir=in | app=system | "{636DA25E-A818-44F3-A405-AAA5089FF252}" = lport=80 | protocol=6 | dir=out | app=c:\program files\common files\intuit\update service\intuitupdater.exe | "{6F9873BA-0CF4-4CAD-9CCD-D5ACCFD0D1F1}" = rport=138 | protocol=17 | dir=out | app=system | "{6FC692E1-91D8-4A93-AD1C-C6535E9DFDD4}" = rport=139 | protocol=6 | dir=out | app=system | "{7337C3B9-A060-46D7-B874-7CDF6C5DB20E}" = lport=137 | protocol=17 | dir=in | app=system | "{795EF792-2A34-45CE-B1FE-C2ADFE38D2A0}" = rport=445 | protocol=6 | dir=out | app=system | "{AD5E5AA0-9EF2-4A1F-B26D-557A742F786E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{B8FDBA6D-FF5F-4DD7-9FFA-6BA0885AE971}" = rport=137 | protocol=17 | dir=out | app=system | "{BB840494-7242-46A7-8C19-6439FB3E8E7E}" = lport=6331 | protocol=6 | dir=in | name=windows live onecare | "{C3C1873A-1CFC-49BB-8BA9-35E028F81315}" = lport=139 | protocol=6 | dir=in | app=system | "{CF9DF5C5-7AF6-401E-84B8-4148D365738B}" = lport=6331 | protocol=6 | dir=in | name=windows live onecare | "{CFB54361-9BE1-40C3-8516-D47BC6E2D573}" = lport=80 | protocol=6 | dir=out | app=c:\program files\common files\intuit\update service\intuitupdateservice.exe | "{E0A8A949-B4B4-491F-9166-0783937FA8A7}" = lport=138 | protocol=17 | dir=in | app=system | "{E9FDA3C9-B5F0-4A23-9CBC-F069F63C9F69}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0E7A16B2-061E-421E-8D68-0C9EF4083D93}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{15FE2C9D-D88A-44DB-97C8-40A83820E43B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{1C10E516-E186-44AD-961F-C0E858E8024D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{1DC8D722-0029-4B91-A1E6-F155DC8A773E}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe | "{2EF0F3E5-971C-4106-B094-7E6B4314ECCC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{6D0A9F01-EED2-456B-863D-B6DCCBB91718}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe | "{71A1F10D-9078-4BF0-8809-FECEBECA445E}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe | "{7F91999F-3D52-4C97-9DF4-43251D77BA33}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{8F11FBF2-8CCB-4833-A7CE-8B4B6A502541}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A83A691B-FF5C-460C-B719-A3462270801C}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe | "{A83C4553-50C4-434F-9AEA-DF3EE699AFA2}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{AD037893-7D59-4674-83E5-249485C11845}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{B5251F70-A9D5-4956-BE95-579BE8434043}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{C8043CFC-1C47-4EF1-90B4-D17D404D9BBE}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{D59BEDB1-C361-47B9-BE81-BF033759A691}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{DAB7A8DB-BB6D-4102-9990-004EC290E79B}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{E3500E04-C4F1-4DB9-8D70-6E271A18F21B}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{E9203F1F-E186-44FD-8EC2-3E465281B2AB}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{F1FA1927-0003-4376-8337-374C66427E5F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{FDE2E515-F2A6-4113-AC8B-325103664DD1}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{008D69EB-70FF-46AB-9C75-924620DF191A}" = TOSHIBA Speech System SR Engine(U.S.) Version1.0 "{0221A397-962E-6D84-F786-64E445617999}" = CCC Help English "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{08CB1B3E-D42C-3ED5-7896-F8BC31839315}" = Catalyst Control Center Localization Czech "{0C9B3E29-3B8B-295E-773B-82F3516F17DD}" = CCC Help Thai "{0D99E1E9-D28C-6806-0820-13E10082CE7B}" = CCC Help Italian "{0DC5B855-1CE2-9EA3-AA12-78C8939F68EF}" = Catalyst Control Center Core Implementation "{0E2C948E-44D6-9A1C-54E7-05217E7DCC13}" = CCC Help Dutch "{0F7C2E47-089E-4d23-B9F7-39BE00100776}" = Toolbox "{11B83AD3-7A46-4C2E-A568-9505981D4C6F}" = HP Update "{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist "{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works "{18669FF9-C8FE-407a-9F70-E674896B1DB4}" = GPBaseService "{195F2C6C-A343-4b10-B1A4-3F00AB9E9DD9}" = Fax "{1B5AB0D6-4F7C-9B93-5323-9037F1E61142}" = CCC Help Chinese Standard "{21EA2A28-3146-E63D-16EE-0BF9FA3D6F5E}" = Catalyst Control Center Localization German "{22543949-70E8-45D0-A938-F38143EB8BF8}" = Catalyst Control Center - Branding "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{279D3818-7287-4ab4-A927-542EBEA9E365}" = ProductContext "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Driver Installation Program "{29521505-F489-4822-ADFA-32C6DEE4F114}" = TurboTax 2008 WinPerUserEducation "{2BDF38E0-1A7F-4220-B4B7-118DD45E5E13}" = TOSHIBA Supervisor Password "{2E520590-7E0F-450F-A11B-CC2C02E550B1}" = TurboTax 2008 wiaiper "{318AB667-3230-41B5-A617-CB3BF748D371}" = iTunes "{31C97472-E522-A760-F46D-FC0648F77E9C}" = CCC Help French "{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java 6 Update 2 "{34BFB099-07B2-4E95-A673-7362D60866A2}" = PSSWCORE "{36FDBE6E-6684-462b-AE98-9A39A1B200CC}" = HPProductAssistant "{380CC749-8C28-4C74-BE01-45921D062302}" = BPDSoftware_Ini "{3FBF6F99-8EC6-41B4-8527-0A32241B5496}" = TOSHIBA Speech System TTS Engine(U.S.) Version1.0 "{40E3BE50-51A6-F8A0-DB5F-7C2698FA5E1F}" = CCC Help Spanish "{4160DC5B-4C56-D0C3-C5FD-F5BDAD3C882B}" = ATI Catalyst Install Manager "{41853D20-40CC-4266-978D-F128BB97CA96}" = 6400_Help "{425A2BC2-AA64-4107-9C29-484245BBEA05}" = TOSHIBA Software Upgrades "{432DC370-01EF-F2D8-34C3-27DCC9B13083}" = CCC Help Norwegian "{44151656-ECAC-99DC-1AC5-1F06A1A62939}" = Catalyst Control Center Graphics Light "{454AB369-FABF-EB84-FBC1-CA4E8FBD3926}" = Catalyst Control Center Localization Hungarian "{497268C1-AE62-4A1D-1129-1D03183538B0}" = Catalyst Control Center Localization Portuguese "{4CE6623E-C867-81B3-8B94-A4FE021782BF}" = CCC Help Portuguese "{5109C064-813E-4e87-B0DE-C8AF7B5BC02B}" = SmartWebPrintingOC "{5158974E-2D28-4018-9335-7694C2974746}" = Fix-It Utilities 9 Professional "{55FE1E6B-4E8A-0F2B-5B36-8F4363A0AEBC}" = Catalyst Control Center Localization Chinese Traditional "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{582D2A53-F426-4C5E-A2E6-43C1AB36B907}" = Safari "{59716973-C123-4B46-B44B-36FCD9CEB8A3}" = Print Artist 22 Platinum "{59DC42FB-13A7-45E1-BCC3-37CE5977951E}" = CCC Help Japanese "{59DF97C6-3144-FA5A-4380-6B891BB44812}" = CCC Help German "{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01 "{5BB4D7C1-52F2-4BFD-9E40-0D419E2E3021}" = bpd_scan "{5BBE3EAB-D749-0560-2C39-53DC8531CB01}" = Catalyst Control Center Localization Korean "{5D934326-165A-413b-B056-26BE1EC082AF}" = J6400 "{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator "{608738F2-51B4-CD53-C1CC-220363513ED7}" = CCC Help Czech "{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center "{649C3B52-AA90-1F36-3D36-CE7F2BB1CB8C}" = Catalyst Control Center Localization Chinese Standard "{654CABFA-4289-9EC0-F088-34BFCC84A798}" = Catalyst Control Center Localization Turkish "{65CC9CE1-AAF1-866B-B07E-FECC0B53277E}" = Catalyst Control Center Localization Danish "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder "{679EC478-3FF9-4987-B2FF-C2C2B27532A2}" = DocProc "{687FEF8A-8597-40b4-832C-297EA3F35817}" = BufferChm "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{6A9DF7EE-E7B9-E4F1-204A-FE72F47231CB}" = CCC Help Finnish "{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER "{7163A2F1-2DED-9EF4-24FC-06D607D2A9C9}" = Catalyst Control Center Graphics Full New "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{731341F3-55AA-8488-A3F1-3D4C43412C87}" = CCC Help Russian "{755F77D1-717E-4D7D-BF21-D3EB63906365}" = Winbond CIR Device Drivers "{7570F1CA-016D-46AC-B586-CD74645EFB52}" = TurboTax 2008 WinPerFedFormset "{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update "{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com "{78C6A78A-8B03-48C8-A47C-78BA1FCA2307}" = TOSHIBA ConfigFree "{7A929336-7D2E-C4E3-2AC9-CA80FBEB5701}" = Catalyst Control Center Localization Spanish "{7DCF7BBA-39A9-4e27-9154-F57BCED90CBF}" = HP Officejet J6400 Series "{84C7D852-CDF6-7006-91C7-E6A54519E5D5}" = Catalyst Control Center Graphics Full Existing "{85C8D391-0EAE-4492-8A0A-2EE8B0B6DA03}" = BPDSoftware "{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder "{88214092-836F-4E22-A5AC-569AC9EE6A0F}" = TurboTax 2008 WinPerReleaseEngine "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista "{890EF3F8-742F-46BD-9E8E-084B3A1F4364}" = QuickBooks Financial Center "{8A85DEAD-7C1F-4368-881C-72AC74CB2E91}" = UnloadSupport "{8DCE550C-CA43-4E82-92DF-FFC4A48F5BE1}" = Napster Burn Engine "{8E850D2A-F5E9-C322-ABFF-683C69686C13}" = Catalyst Control Center Localization Russian "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{430971B1-C31E-45DA-81E0-72C095BAB72C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{93FE0FBE-23F5-7BF4-9085-6E046D609F22}" = CCC Help Chinese Traditional "{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English) "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{98F2555F-6749-49BA-949F-FC887831A524}" = Palm Desktop by ACCESS "{9E5A03E3-6246-4920-9630-0527D5DA9B07}" = AnswerWorks 5.0 English Runtime "{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}" = CD/DVD Drive Acoustic Silencer "{A11409F1-CD33-4076-85CB-4EE4A8439BFE}" = Scan "{A5AB9D5E-52E2-440e-A3ED-9512E253C81A}" = SolutionCenter "{A689A425-4255-11D6-9E0F-00A0244BD83C}" = Gamesville "{A74BE9F1-1129-FB71-DA7B-96F5D99CA330}" = Catalyst Control Center Localization Finnish "{A762A897-3E65-E264-5188-CBAD303064C2}" = Skins "{AB79C30D-A920-D219-B4FD-C9552A0419D3}" = CCC Help Polish "{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9 "{ACDE260A-602B-4cfb-A650-D0DBA6FFAD85}" = NetDeviceManager "{AD6A78C4-AD77-448D-4F9D-43AD80C8D8FF}" = Catalyst Control Center Localization French "{AEE482BA-1731-499C-346D-B5F498B7DBF8}" = CCC Help Turkish "{B1DB1AD8-C07E-4052-81A1-D2930232BA70}" = TurboTax 2008 wrapper "{B23726CF-68BF-41A6-A4EB-72F12F87FE05}" = TurboTax 2008 WinPerTaxSupport "{B3E356C8-CEB3-467C-EA92-8FC2CA15AD51}" = Catalyst Control Center Localization Polish "{B5FDA445-CAC4-4BA6-A8FB-A7212BD439DE}" = Microsoft XML Parser "{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}" = HP Photosmart Essential 2.5 "{BBBCAE4B-B416-4182-A6F2-438180894A81}" = Napster "{BBD408BC-486B-9857-C805-945F8F083877}" = CCC Help Swedish "{BCE72AED-3332-4863-9567-C5DCB9052CA2}" = Netflix Movie Viewer "{BE044C42-908B-4952-5140-E2B8FD67F267}" = CCC Help Danish "{BFC85CDC-BD7C-4FDD-9507-8D74B5A79404}" = TOSHIBA Hardware Setup "{C29D1033-0247-FFC6-7895-204ABABA0F20}" = ccc-utility "{C2B676E6-FA49-48B9-A616-5FC5DD488006}" = W Photo Studio "{C53D16CC-E56F-47B8-906E-70AAF8EABB4F}" = Toshiba Registration "{C643EEE3-A55A-58D1-D543-ED46726288CB}" = CCC Help Greek "{C7EEC93A-2A61-4B1E-B696-A264680A889D}" = MobileMe Control Panel "{CCB9B81A-167F-4832-B305-D2A0430840B3}" = WebReg "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba "{D0B87CB2-8599-4975-0E50-DB2F8E6B9AE6}" = Catalyst Control Center Localization Thai "{D9B5CB4C-ACA5-483F-900F-5A5B5F511033}" = Nero BackItUp 2 Essentials "{DA401137-8791-F77A-591C-F0BC3E7ED04E}" = Catalyst Control Center Localization Greek "{DC9B7572-50C6-180D-916D-3E2CBD00C0C7}" = Catalyst Control Center Localization Japanese "{DFCFF0F1-005D-E317-733D-8D19D54FBF08}" = Catalyst Control Center Localization Swedish "{E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC}" = VideoToolkit01 "{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series "{E6D9BC25-0DBC-4368-8E4A-7DEE80661CD9}" = TurboTax 2008 WinPerProgramHelp "{E748D6A5-D03D-BDE1-C094-DAE3F5BCEEF6}" = Catalyst Control Center Graphics Previews Vista "{E8316038-8C38-52A8-9014-FD35536567E8}" = Catalyst Control Center Localization Dutch "{E96A0335-C6EA-D11A-3A49-8586A8FED544}" = ccc-core-static "{E9E6642B-0714-37B4-0248-D036B60F8F12}" = CCC Help Korean "{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7}" = TOSHIBA SD Memory Utilities "{EC4455AB-F155-4CC1-A4C5-88F3777F9886}" = Apple Mobile Device Support "{EE033C1F-443E-41EC-A0E2-559B539A4E4D}" = TOSHIBA Speech System Applications "{F05E0039-D2A7-198B-B79E-285395EBB5BB}" = Catalyst Control Center Localization Italian "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F214EAA4-A069-4BAF-9DA4-4DB8BEEDE485}" = DVD MovieFactory for TOSHIBA "{F734CA55-0939-1F1A-A8B5-19B91B3D4B1F}" = Catalyst Control Center Localization Norwegian "{F958CA02-BB40-4007-894B-258729456EE4}" = QuickTime "{FE4C0830-A0F3-B67E-93BC-21C4B0BB0267}" = CCC Help Hungarian "{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Shockwave Player" = Adobe Shockwave Player 11 "com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com "eMusic Download Manager" = eMusic Download Manager 4.0.0.5 "FreeCommander_is1" = FreeCommander 2009.02 "Google Desktop" = Google Desktop "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "HP Photosmart Essential" = HP Photosmart Essential 2.5 "HP Smart Web Printing" = HP Smart Web Printing "HP Solution Center & Imaging Support Tools" = HP Solution Center 10.0 "HPOCR" = OCR Software by I.R.I.S. 10.0 "InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center "InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Mozilla Firefox (2.0.0.14)" = Mozilla Firefox (2.0.0.14) "Office8.0" = Microsoft Office 97, Standard Edition "Photo Viewer" = Photo Viewer 2.3 "Picasa2" = Picasa 2 "SynTPDeinstKey" = Synaptics Pointing Device Driver "TOSHIBA Software Modem" = TOSHIBA Software Modem "TurboTax 2008" = TurboTax 2008 "WildTangent toshiba Master Uninstall" = TOSHIBA Games "Windows Media Encoder 9" = Windows Media Encoder 9 Series ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 11/3/2009 9:26:36 PM | Computer Name = Mom-PC | Source = Windows Search Service | ID = 3083 Description = Error - 11/3/2009 8:37:49 PM | Computer Name = Mom-PC | Source = WerSvc | ID = 5007 Description = Error - 11/3/2009 11:01:50 PM | Computer Name = Mom-PC | Source = WerSvc | ID = 5007 Description = Error - 11/3/2009 11:03:24 PM | Computer Name = Mom-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll". Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.1830" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 11/4/2009 12:06:15 AM | Computer Name = Mom-PC | Source = Windows Search Service | ID = 3083 Description = Error - 11/4/2009 12:12:08 AM | Computer Name = Mom-PC | Source = Windows Search Service | ID = 3083 Description = Error - 11/4/2009 12:13:43 AM | Computer Name = Mom-PC | Source = Windows Backup | ID = 4103 Description = Error - 11/4/2009 12:35:57 AM | Computer Name = Mom-PC | Source = Windows Search Service | ID = 3083 Description = Error - 11/4/2009 12:42:41 AM | Computer Name = Mom-PC | Source = Windows Search Service | ID = 3083 Description = Error - 11/4/2009 12:46:47 AM | Computer Name = Mom-PC | Source = Windows Search Service | ID = 3083 Description = [ Media Center Events ] Error - 6/11/2009 7:35:28 PM | Computer Name = Mom-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. Error - 9/26/2009 7:32:00 PM | Computer Name = Mom-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. Error - 10/11/2009 11:36:32 PM | Computer Name = Mom-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. [ System Events ] Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/3/2009 11:01:42 PM | Computer Name = Mom-PC | Source = HTTP | ID = 15021 Description = Error - 11/4/2009 12:14:19 AM | Computer Name = Mom-PC | Source = cdrom | ID = 262151 Description = The device, \Device\CdRom0, has a bad block. < End of report > This post has been edited by dobroski5: Nov 4 2009, 07:13 AM |
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies / Views | Topic Information | |||||
|---|---|---|---|---|---|---|---|
![]() |
2 / 1,425 | 13th April 2005 - 07:44 PM Pollyanna started - last by don77 |
|||||
![]() |
3 / 13,693 | 15th November 2005 - 08:04 AM Froklsnt started - last by brianmil0923 |
|||||
![]() |
0 / 330 | 11th January 2008 - 10:06 AM bedesg started - last by bedesg |
|||||
![]() |
1 / 515 | 7th December 2008 - 05:19 AM MiKE LuV started - last by MiKE LuV |
|||||
|
Time is now: 21st November 2009 - 07:05 AM |
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks mentioned on this page are the property of their respective owners.
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy | Advertising