OTL Extras logfile created on: 6/14/2010 10:44:01 AM - Run 1 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Joanne DeMartini\Desktop\Downloads Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 84.00% Memory free 2.00 Gb Paging File | 2.00 Gb Available in Paging File | 96.00% Paging File free Paging file location(s): C:\pagefile.sys 384 768 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 38.25 Gb Total Space | 22.82 Gb Free Space | 59.68% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: DHZ4G141 Current User Name: Joanne DeMartini Logged in as Administrator. Current Boot Mode: SafeMode with Networking Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "42000:UDP" = 42000:UDP:LocalSubNet:Enabled:allowagent "42001:UDP" = 42001:UDP:LocalSubNet:Enabled:allowagent "42002:UDP" = 42002:UDP:LocalSubNet:Enabled:allowagent "42003:UDP" = 42003:UDP:LocalSubNet:Enabled:allowagent "4999:TCP" = 4999:TCP:LocalSubNet,127.0.0.1/255.255.255.255:Enabled:allowagent "4998:TCP" = 4998:TCP:LocalSubNet,127.0.0.1/255.255.255.255:Enabled:allowagent "4997:TCP" = 4997:TCP:LocalSubNet,127.0.0.1/255.255.255.255:Enabled:allowagent [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger -- (Logitech Inc.) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\WINDOWS\SYSTEM32\fxsclnt.exe" = C:\WINDOWS\SYSTEM32\fxsclnt.exe:*:Disabled:Microsoft Fax Console -- (Microsoft Corporation) "C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe" = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe:*:Enabled:EasyShare -- (Eastman Kodak Company) "C:\Program Files\TurboTax\Deluxe 2007\32bit\ttax.exe" = C:\Program Files\TurboTax\Deluxe 2007\32bit\ttax.exe:LocalSubNet:Enabled:TurboTax -- (Intuit, Inc.) "C:\Program Files\TurboTax\Deluxe 2007\32bit\updatemgr.exe" = C:\Program Files\TurboTax\Deluxe 2007\32bit\updatemgr.exe:LocalSubNet:Enabled:TurboTax Update Manager -- (Intuit, Inc.) "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger -- (Logitech Inc.) "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{04410044-9149-45C6-A806-F2BF9CFCE762}" = Microsoft Encarta Encyclopedia Standard 2004 "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{073F22CE-9A5B-4A40-A604-C7270AC6BF34}" = ESSSONIC "{09DA4F91-2A09-4232-AB8C-6BC740096DE3}" = Sonic Update Manager "{11F1920A-56A2-4642-B6E0-3B31A12C9288}" = Dell Solution Center "{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}" = Sonic DLA "{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime "{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}" = ESSPCD "{1D643CD7-4DD6-11D7-A4E0-000874180BB3}" = Microsoft Money 2004 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Dell Media Experience "{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}" = essvatgt "{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}" = Logitech SetPoint "{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java(TM) 6 Update 2 "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{35BDEFF1-A610-4956-A00D-15453C116395}" = Internet Explorer Default Page "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = Logitech Registration "{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting "{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support "{42938595-0D83-404D-9F73-F8177FDD531A}" = ESScore "{4537EA4B-F603-4181-89FB-2953FC695AB1}" = netbrdg "{4B9F45E8-E3CE-40B4-9463-80A9B3481DEF}" = Banctec Service Agreement "{5316DFC9-CE99-4458-9AB3-E8726EDE0210}" = skin0001 "{54F90B55-BEB3-4F0D-8802-228822FA5921}" = WordPerfect Office 11 "{56918C0C-0D87-4CA6-92BF-4975A43AC719}" = KhalInstallWrapper "{605A4E39-613C-4A12-B56F-DEFBE6757237}" = SHASTA "{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}" = Windows Genuine Advantage v1.3.0254.0 "{643EAE81-920C-4931-9F0B-4B343B225CA6}" = ESSBrwr "{68D60342-7686-45C9-B8EB-40EF843D0460}" = Dell Networking Guide "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7DD9A065-2C86-4A9F-A5FF-796EC1B99DCA}" = AnswerWorks 4.0 Runtime - English "{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}" = DellSupport "{7F142D56-3326-11D5-B229-002078017FBF}" = Modem Helper "{81063354-9060-42B2-A000-1EBE96778AA9}" = iTunes "{81A34902-9D0B-4920-A25C-4CDC5D14B328}" = Jasc Paint Shop Pro 8 Dell Edition "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8943CE61-53BD-475E-90E1-A580869E98A2}" = staticcr "{89EE857B-8970-4F9F-AB58-A1C873AC72B3}" = Broadcom Management Programs "{8A502E38-29C9-49FA-BCFA-D727CA062589}" = ESSTOOLS "{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Extreme Graphics Driver "{8C64E145-54BA-11D6-91B1-00500462BE80}" = Microsoft Money 2004 System Pack "{8CC990CD-87C8-475C-AC32-8A7984E2FCFA}" = CDDRV_Installer "{8E92D746-CD9F-4B90-9668-42B74C14F765}" = ESSini "{8EF1122E-E90C-4EE9-AB0C-7FDE2BA42C26}" = Musicmatch® Jukebox "{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}" = Logitech Desktop Messenger "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90AF0409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office PowerPoint Viewer 2003 "{90D55A3F-1D99-4C94-A77E-46DC14F0BF08}" = Help and Support Customization "{91517631-A9F3-4B7C-B482-43E0068FD55A}" = ESSgui "{9541FED0-327F-4DF0-8B96-EF57EF622F19}" = Sonic RecordNow! "{999D43F4-9709-4887-9B1A-83EBB15A8370}" = VPRINTOL "{9B79DCB0-AAD7-456B-8D07-433C936FA24B}" = DS21Patch "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A3EAB67E-9B37-4B74-AFE6-D418D5F6F3D4}" = Hoyle Puzzle Games 2005 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support "{AC76BA86-7AD7-1033-7B44-A71000000002}" = Adobe Reader 7.1.0 "{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}" = ESSCDBK "{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}" = OfotoXMI "{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}" = CCScore "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C1E5DF32-8248-4347-908C-E030EDAE4368}" = DA920EN "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CC000127-5E5D-4A1C-90CB-EEAAAC1E3AC0}" = Jasc Paint Shop Photo Album "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D1696920-9794-4BBC-8A30-7A88763DE5A2}" = ABBYY FineReader 5.0 Sprint "{D32470A1-B10C-4059-BA53-CF0486F68EBC}" = Kodak EasyShare software "{DB02F716-6275-42E9-B8D2-83BA2BF5100B}" = SFR "{DBEA1034-5882-4A88-8033-81C4EF0CFA29}" = Google Toolbar for Internet Explorer "{E646DCF0-5A68-11D5-B229-002078017FBF}" = Digital Line Detect "{E79987F0-0E34-42CC-B8FF-6C860AEEB26A}" = tooltips "{EA2BEBD6-87B9-41E5-95AC-7E4C165A9475}" = WexTech AnswerWorks "{F22C222C-3CE2-4A4B-A83F-AF4681371ABE}" = kgcbase "{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}" = SKINXSDK "{F7B0939E-58DF-11DF-B3A6-005056806466}" = Google Earth "{F9593CFB-D836-49BC-BFF1-0E669A411D9F}" = WIRELESS "{FC4ED75D-916C-4A8C-BB67-3C6F6E06D62B}" = Banctec Service Agreement "{FCDB1C92-03C6-4C76-8625-371224256091}" = ESSPDock "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Audit Support Center" = Audit Support Center 1.0 "CNXT_MODEM_PCI_VEN_14F1&DEV_2702" = Conexant SmartHSFi V.9x 56K DF PCI Modem "Dell AIO Printer A920" = Dell AIO Printer A920 "Dell Digital Jukebox Driver" = Dell Digital Jukebox Driver "ERUNT_is1" = ERUNT 1.1j "Google Chrome" = Google Chrome "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "ie7" = Windows Internet Explorer 7 "ie8" = Windows Internet Explorer 8 "InstallShield_{89EE857B-8970-4F9F-AB58-A1C873AC72B3}" = Broadcom Management Programs "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3) "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "RealPlayer 6.0" = RealOne Player "Shockwave" = Shockwave "StreetPlugin" = Learn2 Player (Uninstall Only) "TurboTax Deluxe 2007" = TurboTax Deluxe 2007 "ViewpointMediaPlayer" = Viewpoint Media Player "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 "WIC" = Windows Imaging Component "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "Windows XP Service Pack" = Windows XP Service Pack 3 "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 "Yahoo! Companion" = Yahoo! Toolbar "Yahoo! Software Update" = Yahoo! Software Update "ZoneAlarm Security Suite" = ZoneAlarm Security Suite [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Move Media Player" = Move Media Player [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 6/9/2010 4:40:51 PM | Computer Name = DHZ4G141 | Source = Application Error | ID = 1000 Description = Faulting application netsh.exe, version 5.1.2600.5512, faulting module msvcrt.dll, version 7.0.2600.5512, fault address 0x00036b09. Error - 6/9/2010 4:42:05 PM | Computer Name = DHZ4G141 | Source = Google Update | ID = 20 Description = Error - 6/9/2010 4:47:21 PM | Computer Name = DHZ4G141 | Source = Application Error | ID = 1004 Description = Faulting application netsh.exe, version 5.1.2600.5512, faulting module msvcrt.dll, version 7.0.2600.5512, fault address 0x00036b09. Error - 6/9/2010 6:42:06 PM | Computer Name = DHZ4G141 | Source = Google Update | ID = 20 Description = Error - 6/9/2010 7:42:06 PM | Computer Name = DHZ4G141 | Source = Google Update | ID = 20 Description = Error - 6/11/2010 1:01:19 PM | Computer Name = DHZ4G141 | Source = Application Error | ID = 1000 Description = Faulting application idriver.exe, version 8.1.0.293, faulting module wininet.dll, version 8.0.6001.18904, fault address 0x0000603c. Error - 6/11/2010 1:07:35 PM | Computer Name = DHZ4G141 | Source = TrueVector Service | ID = 5011 Description = Error - 6/11/2010 1:08:21 PM | Computer Name = DHZ4G141 | Source = TrueVector Service | ID = 5011 Description = Error - 6/11/2010 1:08:32 PM | Computer Name = DHZ4G141 | Source = TrueVector Service | ID = 5011 Description = Error - 6/11/2010 1:08:34 PM | Computer Name = DHZ4G141 | Source = TrueVector Service | ID = 5011 Description = [ System Events ] Error - 6/14/2010 1:51:12 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:15 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:19 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:22 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:25 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:29 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:32 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:36 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:39 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. Error - 6/14/2010 1:51:43 PM | Computer Name = DHZ4G141 | Source = Disk | ID = 262151 Description = The device, \Device\Harddisk0\D, has a bad block. < End of report >