OTL Extras logfile created on: 8/23/2009 2:52:15 PM - Run 1 OTL by OldTimer - Version 3.0.10.7 Folder = C:\Documents and Settings\TT\Desktop Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 510.92 Mb Total Physical Memory | 304.72 Mb Available Physical Memory | 59.64% Memory free 1.22 Gb Paging File | 0.84 Gb Available in Paging File | 68.81% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 149.05 Gb Total Space | 136.58 Gb Free Space | 91.63% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: TOMS-LAPTOP Current User Name: TT Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Minimal [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) "C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe" = C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe:*:Enabled:McAfee Network Agent -- (McAfee, Inc.) "C:\Program Files\Bonjour\mDNSResponder.exe" = C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour -- (Apple Inc.) "C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.) "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel "{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 14 "{2D6ED011-055B-4041-B198-BB903827EBFB}" = Safari "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{67D7BC74-E8DF-4811-9B41-6023A8C9BB3F}" = Intel(R) Sebring API "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{73568F76-7A37-9DB4-73B1-11DCF1A2FC52}" = FOX News Live "{7E4BEB77-BEA9-4544-AB74-06EDE6CE3D39}" = Comcast User Setup "{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{99ECF41F-5CCA-42BD-B8B8-A8333E2E2944}" = iTunes "{9FAC9E5C-0D20-4DBF-AFE5-2E09C52A95A2}" = ThinkPad Wireless LAN Adapters Software (11a/b, 11b/g, 11a/b/g) "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C337BDAF-CB4E-47E2-BE1A-CB31BB7DD0E3}" = Apple Mobile Device Support "{C78EAC6F-7A73-452E-8134-DBB2165C5A68}" = QuickTime "{CADBCBBA-6CDD-4119-B5ED-4AE075B153E7}" = MobileMe Control Panel "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware "{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729) "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01 "Ad-Aware" = Ad-Aware "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "All ATI Software" = ATI - Software Uninstall Utility "ATI Display Driver" = ATI Display Driver "CCleaner" = CCleaner (remove only) "CentraClient" = Centra Client "CNXT_MODEM_PCI_VEN_8086&DEV_24C6&SUBSYS_05591014" = ThinkPad Integrated 56K Modem "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "ie7" = Windows Internet Explorer 7 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "MSC" = McAfee SecurityCenter "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "OnScreenDisplay" = On Screen Display "Picasa 3" = Picasa 3 "Power Management Driver" = ThinkPad Power Management Driver "PROSet" = Intel(R) PRO Network Connections Drivers "SumatraPDF" = Sumatra PDF reader "SynTPDeinstKey" = IBM ThinkPad UltraNav Driver "ThinkPad FullScreen Magnifier" = ThinkPad FullScreen Magnifier "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "Windows XP Service Pack" = Windows XP Service Pack 3 "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 8/23/2009 12:29:11 PM | Computer Name = TOMS-LAPTOP | Source = crypt32 | ID = 131080 Description = Failed auto update retrieval of third-party root list sequence number from: with error: A connection with the server could not be established Error - 8/23/2009 12:29:11 PM | Computer Name = TOMS-LAPTOP | Source = crypt32 | ID = 131080 Description = Failed auto update retrieval of third-party root list sequence number from: with error: This network connection does not exist. Error - 8/23/2009 12:34:36 PM | Computer Name = TOMS-LAPTOP | Source = Application Error | ID = 1000 Description = Faulting application superantispyware.exe, version 3.6.0.1000, faulting module superantispyware.exe, version 3.6.0.1000, fault address 0x00056512. Error - 8/23/2009 12:34:42 PM | Computer Name = TOMS-LAPTOP | Source = Application Error | ID = 1001 Description = Fault bucket 1007769471. Error - 8/23/2009 12:34:49 PM | Computer Name = TOMS-LAPTOP | Source = Application Error | ID = 1000 Description = Faulting application superantispyware.exe, version 3.6.0.1000, faulting module superantispyware.exe, version 3.6.0.1000, fault address 0x00056512. Error - 8/23/2009 12:35:13 PM | Computer Name = TOMS-LAPTOP | Source = Application Error | ID = 1000 Description = Faulting application superantispyware.exe, version 3.6.0.1000, faulting module superantispyware.exe, version 3.6.0.1000, fault address 0x00056512. Error - 8/23/2009 12:35:17 PM | Computer Name = TOMS-LAPTOP | Source = Application Error | ID = 1001 Description = Fault bucket 1007769471. Error - 8/23/2009 12:35:36 PM | Computer Name = TOMS-LAPTOP | Source = Application Error | ID = 1000 Description = Faulting application superantispyware.exe, version 3.6.0.1000, faulting module superantispyware.exe, version 3.6.0.1000, fault address 0x00056512. Error - 8/23/2009 12:55:37 PM | Computer Name = TOMS-LAPTOP | Source = Lavasoft Ad-Aware Service | ID = 0 Description = Error - 8/23/2009 1:33:18 PM | Computer Name = TOMS-LAPTOP | Source = crypt32 | ID = 131080 Description = Failed auto update retrieval of third-party root list sequence number from: with error: A connection with the server could not be established [ System Events ] Error - 8/21/2009 6:53:13 PM | Computer Name = TOMS-LAPTOP | Source = MRxSmb | ID = 8003 Description = The master browser has received a server announcement from the computer WHITNEY that believes that it is the master browser for the domain on transport NetBT_Tcpip_{F0B3668A-2B13-44EF-9. The master browser is stopping or an election is being forced. Error - 8/22/2009 11:31:11 AM | Computer Name = TOMS-LAPTOP | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.1.100 on the Network Card with network address 000E35BEA860. Error - 8/22/2009 4:32:52 PM | Computer Name = TOMS-LAPTOP | Source = Service Control Manager | ID = 7034 Description = The Windows MSI service terminated unexpectedly. It has done this 1 time(s). Error - 8/22/2009 5:07:30 PM | Computer Name = TOMS-LAPTOP | Source = Service Control Manager | ID = 7034 Description = The Windows MSI service terminated unexpectedly. It has done this 1 time(s). Error - 8/22/2009 5:08:06 PM | Computer Name = TOMS-LAPTOP | Source = System Error | ID = 1003 Description = Error code 1000008e, parameter1 c0000005, parameter2 b6688b4b, parameter3 b82ac0f4, parameter4 00000000. Error - 8/22/2009 7:01:52 PM | Computer Name = TOMS-LAPTOP | Source = Service Control Manager | ID = 7034 Description = The Windows MSI service terminated unexpectedly. It has done this 1 time(s). Error - 8/22/2009 7:06:42 PM | Computer Name = TOMS-LAPTOP | Source = Service Control Manager | ID = 7034 Description = The Windows MSI service terminated unexpectedly. It has done this 1 time(s). Error - 8/22/2009 7:10:33 PM | Computer Name = TOMS-LAPTOP | Source = MRxSmb | ID = 8003 Description = The master browser has received a server announcement from the computer SPAGHETTI-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{F0B3668A-2B13-4. The master browser is stopping or an election is being forced. Error - 8/23/2009 5:32:28 AM | Computer Name = TOMS-LAPTOP | Source = Service Control Manager | ID = 7034 Description = The Windows MSI service terminated unexpectedly. It has done this 1 time(s). Error - 8/23/2009 12:59:12 PM | Computer Name = TOMS-LAPTOP | Source = Service Control Manager | ID = 7034 Description = The Windows MSI service terminated unexpectedly. It has done this 1 time(s). < End of report >