OTListIt Extras logfile created on: 5/7/2009 4:52:48 PM - Run 1 OTListIt2 by OldTimer - Version 2.0.15.3 Folder = C:\Documents and Settings\Comp\Desktop Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1023.23 Mb Total Physical Memory | 39.66 Mb Available Physical Memory | 3.88% Memory free 2.41 Gb Paging File | 1.57 Gb Available in Paging File | 65.34% Paging File free Paging file location(s): c:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 232.88 Gb Total Space | 39.95 Gb Free Space | 17.16% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: DESKTOP Current User Name: Comp Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Output = Minimal File Age = 30 Days Company Name Whitelist: On [color=orange]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .js [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found .txt [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found [HKEY_CURRENT_USER\SOFTWARE\Classes\] .bat [@ = batfile] -- Reg Error: Key error. File not found .com [@ = comfile] -- Reg Error: Key error. File not found .exe [@ = exefile] -- Reg Error: Key error. File not found .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=orange]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallOverride" = 0 "AntiVirusOverride" = 0 "UacDisableNotify" = 0 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 "139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002 "10243:TCP" = 10243:TCP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10280:UDP" = 10280:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10281:UDP" = 10281:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10282:UDP" = 10282:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10283:UDP" = 10283:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10284:UDP" = 10284:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile "EnableFirewall" = 0 "DisableNotifications" = 0 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List "139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002 "10243:TCP" = 10243:TCP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10280:UDP" = 10280:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10281:UDP" = 10281:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10282:UDP" = 10282:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10283:UDP" = 10283:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "10284:UDP" = 10284:UDP:LocalSubNet:Enabled:Windows Media Player Network Sharing Service "7808:TCP" = 7808:TCP:*:Enabled:BitComet 7808 TCP "7808:UDP" = 7808:UDP:*:Enabled:BitComet 7808 UDP "19000:TCP" = 19000:TCP:*:Enabled:BitComet 19000 TCP(ED2K) "19000:UDP" = 19000:UDP:*:Enabled:BitComet 19000 UDP(ED2K) "23114:TCP" = 23114:TCP:*:Enabled:BitComet 23114 TCP(ED2K) "23114:UDP" = 23114:UDP:*:Enabled:BitComet 23114 UDP(ED2K) "10589:TCP" = 10589:TCP:*:Enabled:BitComet 10589 TCP "10589:UDP" = 10589:UDP:*:Enabled:BitComet 10589 UDP "20225:TCP" = 20225:TCP:*:Enabled:BitComet 20225 TCP "20225:UDP" = 20225:UDP:*:Enabled:BitComet 20225 UDP "9655:TCP" = 9655:TCP:*:Enabled:BitComet 9655 TCP(ED2K) "9655:UDP" = 9655:UDP:*:Enabled:BitComet 9655 UDP(ED2K) "52580:TCP" = 52580:TCP:*:Enabled:BitComet 52580 TCP(ED2K) "52580:UDP" = 52580:UDP:*:Enabled:BitComet 52580 UDP(ED2K) [color=orange]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] C:\Program Files\CyberLink\PowerDVD8\PowerDVD8.exe:*:Enabled:CyberLink PowerDVD 8.0 (CyberLink Corp.) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] C:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger (America Online, Inc.) C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire (Lime Wire, LLC) C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client (www.BitComet.com) C:\Program Files\Yahoo!\Messenger\YPager.exe:*:Enabled:Yahoo! Messenger File not found C:\Program Files\InterVideo\DVD8\WinDVD.exe:*:Enabled:WinDVD (InterVideo Inc.) C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe:*:Enabled:CyberLink PowerDVD File not found C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour (Apple Computer, Inc.) C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader (AOL LLC) C:\Program Files\AIM6\aim6.exe:*:Enabled:AIM (AOL LLC) C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger (Yahoo! Inc.) C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server File not found C:\Program Files\Azureus\Azureus.exe:*:Enabled:Azureus (Vuze Inc.) C:\Program Files\CyberLink\PowerDVD8\PowerDVD8.exe:*:Enabled:CyberLink PowerDVD 8.0 (CyberLink Corp.) C:\Program Files\eMule\emule.exe:*:Enabled:eMuleMorphXT (http://emulemorph.sourceforge.net) [color=orange]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{004685F7-9FB6-4789-812F-59ABB34A55AF}" = Adobe Setup "{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3 "{02DFF6B1-1654-411C-8D7B-FD6052EF016F}" = Apple Software Update "{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3 "{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting "{0B7A06BF-E642-4D31-B524-49763C8492D1}" = Sorenson Squeeze 4.2 "{0CDCA5CD-C404-41FD-9216-9B4B3D24A7AA}" = "{171818BA-E0AD-313D-B45A-1BC9D77ADA86}" = YouTube Uploader "{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8 "{26A24AE4-039D-4CA4-87B4-2F83216012FF}" = Java(TM) 6 Update 12 "{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8 "{2DEC0493-C221-4E34-BC88-6334077DF72D}" = "{307BD415-B3E6-4E60-962A-FEF793237322}" = PowerDVD "{3248F0A8-6813-11D6-A77B-00B0D0150060}" = J2SE Runtime Environment 5.0 Update 6 "{3248F0A8-6813-11D6-A77B-00B0D0150110}" = J2SE Runtime Environment 5.0 Update 11 "{3248F0A8-6813-11D6-A77B-00B0D0160030}" = Java(TM) 6 Update 3 "{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5 "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup "{485ACF57-F364-440A-8496-E1E81C8FA1AA}" = Adobe Premiere Pro CS3 Third Party Content "{50F102CA-4BE2-41A9-9810-5BB05EB91B9A}" = Adobe Premiere Pro CS3 Functional Content "{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3 "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA}" = Adobe Premiere Pro CS3 "{593D4F8A-5F11-4901-A74A-6E7971E45790}" = Diskeeper 2009 Pro Premier "{5C1DA723-24FC-48AD-93BA-925695C3EF26}" = Logitech Gaming Software "{62369F2F77534556AEF4C58152E3BDE5}" = "{64635543-70E7-436D-8D6D-4A721595029E}" = Microsoft IntelliPoint 5.2 "{6A143FF0-BB9A-4A9C-A318-1688BA366BAE}" = Sorenson Squeeze 4.2 "{6A83DBE5-6822-459D-9D00-B39CD1F1342F}" = PowerDVD "{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All "{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3 "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{78D62D17-D970-42DA-B8CF-5E5576293B33}" = Final Draft 7 "{7ECEF10B-F1C2-4FD5-861F-A3FCB4653304}" = Adobe After Effects CS3 Third Party Content "{879EA19D-A327-43C4-AA59-9CE454A5A0DE}" = OKI B4100_4250 Status Monitor "{87FDB1C6-785F-3482-B30E-FF2F2A021F65}" = Google Gears "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A5F34E2-37CF-4AD4-808C-2D413786E31A}" = Microsoft Visual C Runtime "{8A7CAA24-7B23-410B-A7C3-F994B0944160}" = Microsoft Virtual PC 2007 "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player "{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3 "{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support "{8FFC924C-ED06-44CB-8867-3CA778ECE903}" = Adobe Help Center 2.0 "{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12 "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007 "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007 "{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007 "{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3 "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3 "{9EBEE288-20D8-44BB-8939-3A4E125465BE}" = Symantec Client Security "{A2A60894-E3ED-46FE-9A6A-7CF7A87572A0}" = Opera 9.64 "{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-1033-F400-7760-000000000003}" = Adobe Acrobat 8 Professional - English, Français, Deutsch "{B13A7C41581B411290FBC0395694E2A9}" = "{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0 "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{B508B3F1-A24A-32C0-B310-85786919EF28}" = Microsoft .NET Framework 2.0 Service Pack 1 "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player "{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3 "{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.2.3.258 "{BB81360F-041C-4CF7-B15E-71380D154244}" = Adobe Setup "{BCE72AED-3332-4863-9567-C5DCB9052CA2}" = Netflix Movie Viewer "{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2 "{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver "{CD95F661-A5C4-44F5-A6AA-ECDD91C240B7}" = WinZip 12.0 "{CDEB0E46-1FCA-4398-875C-93410209937D}" = ScanSoft OmniPage 16 "{CF097717-F174-4144-954A-FBC4BF301033}" = Nero 7 Ultra Edition "{D050D7362D214723AD585B541FFB6C11}" = DivX Content Uploader "{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client "{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files "{D5A31AB1-345D-47C7-A87B-036A669F6DF1}" = Adobe XMP Panels CS3 "{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings "{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3 "{E9F81423-211E-46B6-9AE0-38568BC5CF6F}" = "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "3554AA4B-9B0B-451a-A269-2B5F53982209_is1" = ThreatFire "AddressBook" = "Adobe Acrobat 8 Professional - English, Français, Deutsch" = Adobe Acrobat 8.1.0 Professional "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11 "Adobe_32fdd767b4383606e8168e834af5d90" = Adobe Premiere Pro CS3 "Adobe_3675c95c239b992d5d0ee8fce969b9e" = Adobe After Effects CS3 Third Party Content "AIM_6" = AIM 6 "AOL Instant Messenger" = AOL Instant Messenger "Ares" = Ares 2.0.9 "Audio Converter" = Audio Converter "AVS Audio Converter 5.1_is1" = AVS Audio Converter version 5.1 "AVS Update Manager_is1" = AVS Update Manager 1.0 "AVS4YOU Software Navigator_is1" = AVS4YOU Software Navigator 1.3 "Azureus" = Azureus "BitComet" = BitComet 1.00 "blahblahPATCH" = "BlindWrite Suite_is1" = BlindWrite suite "Branding" = "CCleaner" = CCleaner (remove only) "CDRWIN" = CDRWIN "Connection Manager" = "Descent3 Mercenary" = "Devil May Cry 4 *Full-Rip* [Team JPN]_is1" = Devil May Cry 4 "DirectAnimation" = "DirectDrawEx" = "DVD Decrypter" = DVD Decrypter (Remove Only) "DVD Shrink_is1" = DVD Shrink 3.2 "DVDFab Platinum 4_is1" = DVDFab Platinum 4.1.2.0 "DXM_Runtime" = "eMule_is1" = morphemuleversion "ENTERPRISE" = Microsoft Office Enterprise 2007 "Filetopia Client v3.04d" = Filetopia Client v3.04d "Fontcore" = "FreeSpace" = "GlidewrapZbag" = zeckensack's Glide wrapper (remove only) "GrabIt_is1" = GrabIt 1.7.2 Beta 3 (build 996) "Hidden and Dangerous Deluxe" = "HijackThis" = HijackThis 2.0.2 "HTMLExecutableIERuntimeSetup44" = HTML Executable IERuntime "ICW" = "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "IE4Data" = "IE5BAKEX" = "ie7" = Windows Internet Explorer 7 "ie8" = Windows Internet Explorer 8 "IEData" = "InstallShield Uninstall Information" = "InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8 "InstallShield_{307BD415-B3E6-4E60-962A-FEF793237322}" = CyberLink PowerDVD 8 "LimeWire" = LimeWire PRO 5.1.2 "LiveUpdate" = LiveUpdate 3.3 (Symantec Corporation) "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "MobileOptionPack" = "Mozilla Firefox (3.0.10)" = Mozilla Firefox (3.0.10) "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "MSI30a-KB884016" = "MSI30-Beta1" = "MSI30-Beta2" = "MSI30-KB884016" = "MSI30-RC1" = "MSI30-RC2" = "MSI31-Beta" = "MSI31-RC1" = "Nero - Burning Rom!UninstallKey" = "NeroBackItUp!UninstallKey" = "NeroMediaHome!UninstallKey" = "NeroRecode!UninstallKey" = "NeroShowTime!UninstallKey" = "NeroVision!UninstallKey" = "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "NVIDIA Drivers" = NVIDIA Drivers "PCHealth" = "PureVoice" = PureVoice 1.3.2 "qt7lite_is1" = QT Lite 2.6.0 "QuickPar" = QuickPar 0.9 "RealAlt_is1" = Real Alternative 1.8.0 "SchedulingAgent" = "ScummVM_is1" = ScummVM 0.10.0 "SeriousSam2" = "Shareaza_is1" = Shareaza 2.3.1.0 "Shockwave" = Shockwave "SimpleDivX_is1" = SimpleDivX "Soldier of Fortune Environment Libraries DM1" = Soldier of Fortune Environment Libraries DM1 "Soldier of Fortune Platinum" = Soldier of Fortune Platinum "ST6UNST #1" = Backup To DVD/CD 5.1 "The KMPlayer" = The KMPlayer (remove only) "UltraISO_is1" = UltraISO Premium V9.2 "VDMSound" = VDMSound "VLC media player" = VLC media player 0.9.8a "Vuze" = Vuze "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "WinISO_is1" = WinISO 5.3 "WinRAR archiver" = WinRAR archiver "WMCSetup" = "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "XP Codec Pack" = XP Codec Pack "Xvid_is1" = Xvid 1.1.3 final uninstall "Yahoo! Messenger" = Yahoo! Messenger [color=orange]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{DBFF7A38-F460-419A-A2E7-2D55BD2D9AD4}" = Dynasty Warriors 4 Hyper [color=orange]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 5/7/2009 4:41:32 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:32 PM Error - 5/7/2009 4:41:32 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec Client Firewall\SymSPort.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:32 PM Error - 5/7/2009 4:41:32 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec Client Firewall\SymSPort.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:32 PM Error - 5/7/2009 4:41:33 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:33 PM Error - 5/7/2009 4:41:33 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Common Files\Symantec Shared\ccApp.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:33 PM Error - 5/7/2009 4:41:33 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Common Files\Symantec Shared\ccApp.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:33 PM Error - 5/7/2009 4:41:33 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec AntiVirus\VPTray.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:33 PM Error - 5/7/2009 4:41:33 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec AntiVirus\VPTray.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:33 PM Error - 5/7/2009 4:41:33 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec AntiVirus\DoScan.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:33 PM Error - 5/7/2009 4:41:33 PM | Computer Name = DESKTOP | Source = Symantec AntiVirus | ID = 16711725 Description = SYMANTEC TAMPER PROTECTION ALERT Target: C:\Program Files\Symantec Client Security\Symantec AntiVirus\DoScan.exe Event Info: Allocation Memory Action Taken: Blocked Actor Process: C:\Program Files\ThreatFire\TFService.exe (PID 2776) Time: Thursday, May 07, 2009 4:41:33 PM [ System Events ] Error - 5/7/2009 4:55:11 PM | Computer Name = DESKTOP | Source = Rasman | ID = 20035 Description = Remote Access Connection Manager failed to start because it could not create buffers. Restart the computer. Access is denied. Error - 5/7/2009 4:55:11 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023 Description = The Remote Access Connection Manager service terminated with the following error: %%5 Error - 5/7/2009 4:55:11 PM | Computer Name = DESKTOP | Source = Rasman | ID = 20035 Description = Remote Access Connection Manager failed to start because it could not create buffers. Restart the computer. Access is denied. Error - 5/7/2009 4:55:11 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023 Description = The Remote Access Connection Manager service terminated with the following error: %%5 Error - 5/7/2009 4:55:12 PM | Computer Name = DESKTOP | Source = Rasman | ID = 20035 Description = Remote Access Connection Manager failed to start because it could not create buffers. Restart the computer. Access is denied. Error - 5/7/2009 4:55:12 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023 Description = The Remote Access Connection Manager service terminated with the following error: %%5 Error - 5/7/2009 4:55:13 PM | Computer Name = DESKTOP | Source = Rasman | ID = 20035 Description = Remote Access Connection Manager failed to start because it could not create buffers. Restart the computer. Access is denied. Error - 5/7/2009 4:55:13 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023 Description = The Remote Access Connection Manager service terminated with the following error: %%5 Error - 5/7/2009 4:55:26 PM | Computer Name = DESKTOP | Source = Rasman | ID = 20035 Description = Remote Access Connection Manager failed to start because it could not create buffers. Restart the computer. Access is denied. Error - 5/7/2009 4:55:26 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023 Description = The Remote Access Connection Manager service terminated with the following error: %%5 < End of report >