OTL Extras logfile created on: 09/12/2010 23:23:32 - Run 1 OTL by OldTimer - Version 3.2.17.3 Folder = C:\Windows\system32\config\systemprofile\Desktop Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18975) Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy 2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 81.00% Memory free 4.00 Gb Paging File | 4.00 Gb Available in Paging File | 94.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 176.99 Gb Total Space | 114.43 Gb Free Space | 64.65% Space Free | Partition Type: NTFS Drive D: | 9.32 Gb Total Space | 1.68 Gb Free Space | 18.07% Space Free | Partition Type: NTFS Drive F: | 5.46 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Drive G: | 3.81 Gb Total Space | 1.98 Gb Free Space | 52.08% Space Free | Partition Type: FAT32 Computer Name: RYAN-PC | User Name: Ryan | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: Current user | Quick Scan Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "UacDisableNotify" = 0 "InternetSettingsDisableNotify" = 0 "AutoUpdateDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0174CA68-2EA9-4372-BA86-695863B07412}" = protocol=17 | dir=in | app=c:\program files\bt broadband desktop help\btbb\bthelpbrowser.exe | "{0E2853DA-FC78-4AF2-A71F-724E60258D11}" = protocol=6 | dir=in | app=c:\program files\bt broadband desktop help\btbb\bthelpbrowser.exe | "{12865325-D162-4A27-BEFC-1585544D2C26}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | "{2405E4CC-799A-4B4C-A7A5-1C6A91554FC4}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yserver.exe | "{2F027587-83B6-45B1-BB62-3CA8EF66ABBA}" = dir=in | app=c:\program files\hp\quickplay\qpservice.exe | "{35A9AA75-16E4-4EAD-9277-71015D1776E6}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{5DDEF9C1-480A-4BEB-949F-2426162E634D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{63813843-52E9-42A5-A689-C8E6EADC2C54}" = protocol=17 | dir=in | app=c:\program files\bt broadband desktop help\btbb\bthelpnotifier.exe | "{66F96B85-CCDF-4C5E-9A78-D96F96E9B254}" = protocol=6 | dir=in | app=c:\program files\bt broadband desktop help\btbb\bthelpnotifier.exe | "{73DCAADE-7627-4A60-8086-FF24BB17F1EB}" = dir=in | app=c:\program files\hp\quickplay\qp.exe | "{75BF21BD-D5CD-46D2-9E18-0AF0F8D4565D}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{ABBBB5F5-0972-44DD-A5A4-9E177C98A6D2}" = protocol=17 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe | "{B6A2E135-1DFB-42C3-BA63-1BAF7B3A59CF}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{B82C0303-2824-404A-92EB-750BD1BDB2E1}" = protocol=6 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe | "{C352D84D-D2FA-4D2E-A5F9-BFBCAE6E1CC5}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe | "{C67E294C-8351-4ABA-BF28-7781EB9265AF}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe | "{D0C40AC4-6AEC-4CB1-8E4D-BB41A513DE82}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe | "{EEB3C74D-0524-4486-B616-1F6678A50F1C}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yserver.exe | "{FED7C27A-9850-4BB6-B5B3-743BEFC1AC7E}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{082702D5-5DD8-4600-BCE5-48B15174687F}" = HP Doc Viewer "{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime "{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1BDC9633-895B-4842-BCB6-8FA1EC2A3C5A}" = Adobe Shockwave Player "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite "{206FD69B-F9FE-4164-81BD-D52552BC9C23}" = GearDrvs "{228C6B46-64E2-404E-898A-EF0830603EF4}" = HPNetworkAssistant "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{24F3AB38-7491-4FB9-86C1-36C730C2B98C}" = SymNet "{254C37AA-6B72-4300-84F6-98A82419187E}" = Hewlett-Packard Active Check for Health Check "{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java(TM) 6 Update 15 "{2D617065-1C52-4240-B5BC-C0AE12157777}" = Norton 360 "{31216452-5540-4C96-B754-94890A63D5AB}" = HP Help and Support "{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5 "{340F521E-3576-4E1A-B75C-EB0ACF751379}" = HP Wireless Assistant "{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 D3 "{35F83303-C0C0-46B7-B8A8-ADA7C2AC5645}" = muvee autoProducer 6.1 "{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll "{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting "{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go "{40DA9A54-48CA-4A2C-AEAF-F67715BB046E}" = Norton 360 "{415B2719-AD3A-4944-B404-C472DB6085B3}" = Cisco EAP-FAST Module "{45690715-80A6-4445-B61D-ADEC5888E8CD}" = Symantec Technical Support Controls "{45D707E9-F3C4-11D9-A373-0050BAE317E1}" = HP DVD Play 3.7 "{48F22622-1CC2-4A83-9C1E-644DD96F832D}" = Epson Event Manager "{51E5C397-0AA0-48DD-9CB6-7259AFFDFB0A}" = HP Easy Setup - Frontend "{582287DA-0806-4AC0-BF19-C15E3A466034}" = LightScribe System Software 1.12.33.2 "{5DAA9C36-8F8B-462F-8CCA-E205BC3751F5}" = HP Active Support Library "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites "{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}" = Cisco PEAP Module "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = Hewlett-Packard Asset Agent for Health Check "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{83770D14-21B9-44B3-8689-F7B523F94560}" = Cisco LEAP Module "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English) "{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}" = iTunes "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support "{AC76BA86-7AD7-1033-7B44-A81300000003}" = Adobe Reader 8.1.5 "{AC76BA86-7AD7-1033-7B44-A81300000003}_814" = KB408682 "{AC76BA86-7AD7-5464-3428-800000000003}" = Spelling Dictionaries Support For Adobe Reader 8 "{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint "{B16DA0F8-26BC-4FFC-9363-1D9F3E6C3E21}" = HP Customer Experience Enhancements "{B24E05CC-46FF-4787-BBB8-5CD516AFB118}" = ccCommon "{B640E7CC-7091-4A24-AE76-2140065D2054}" = HP User Guides 0110 "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}" = HP Update "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "{CB84F0F2-927B-458D-9DC5-87832E3DC653}" = GearDrvs "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader "{DEDB47A3-C988-4A43-A645-E2CEA571E680}" = Epson Easy Photo Print 2 "{E80F62FF-5D3C-4A19-8409-9721F2928206}" = LiveUpdate (Symantec Corporation) "{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B}" = AppCore "{f32502b5-5b64-4882-bf61-77f23edcac4f}" = HP Total Care Advisor "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Shockwave Player" = Adobe Shockwave Player 11 "AIM_6" = AIM 6 "AOL Toolbar" = AOL Toolbar 5.0 "avast5" = avast! Internet Security "BT Broadband Desktop Help" = BT Broadband Desktop Help "BT Broadband Talk Softphone Frontier_is1" = BT Broadband Talk Softphone 3.1 "BT Wireless Connection Manager" = BT Wireless Connection Manager "BTHomeHub" = BTHomeHub "CCleaner" = CCleaner "CNXT_AUDIO_HDA" = Conexant HD Audio "CNXT_MODEM_HDAUDIO_HERMOSA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP "Disney's Princess Fashion Boutique" = Disney's Princess Fashion Boutique "EasyBits Magic Desktop" = Magic Desktop "EPSON Scanner" = EPSON Scan "EPSON Stylus Office BX600FW_Office TX600FW_SX600FW User’s Guide" = EPSON Stylus Office BX600FW_Office TX600FW_SX600FW Manual "EPSON SX600FW Series" = EPSON SX600FW Series Printer Uninstall "FI_Tool" = Kawasaki FI Calibration Tool "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "NVIDIA Drivers" = NVIDIA Drivers "PsuedoLiveUpdate" = LiveUpdate (Symantec Corporation) "SlingMedia.QPSlingPlayer_is1" = QuickPlay SlingPlayer 0.4.6 "SymSetup.{2D617065-1C52-4240-B5BC-C0AE12157777}" = Norton 360 (Symantec Corporation) "SynTPDeinstKey" = Synaptics Pointing Device Driver "ViewpointMediaPlayer" = Viewpoint Media Player "WildTangent hp Master Uninstall" = My HP Games "Yahoo! Applications" = BT Yahoo! Applications "Yahoo! Toolbar" = Yahoo! Toolbar [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 18/10/2010 13:36:20 | Computer Name = Ryan-PC | Source = WinMgmt | ID = 10 Description = Error - 18/10/2010 13:38:32 | Computer Name = Ryan-PC | Source = RasClient | ID = 20227 Description = Error - 18/10/2010 13:38:38 | Computer Name = Ryan-PC | Source = Application Error | ID = 1000 Description = Faulting application Explorer.EXE, version 6.0.6001.18164, time stamp 0x4907e242, faulting module ntdll.dll, version 6.0.6001.18000, time stamp 0x4791a7a6, exception code 0xc000071c, fault offset 0x00089825, process id 0xc78, application start time 0x01cb6eeaf54114fa. Error - 18/10/2010 14:01:25 | Computer Name = Ryan-PC | Source = RasClient | ID = 20227 Description = Error - 18/10/2010 14:02:11 | Computer Name = Ryan-PC | Source = RasClient | ID = 20227 Description = Error - 18/10/2010 14:04:04 | Computer Name = Ryan-PC | Source = RasClient | ID = 20227 Description = Error - 19/10/2010 02:45:10 | Computer Name = Ryan-PC | Source = WinMgmt | ID = 10 Description = Error - 19/10/2010 04:45:56 | Computer Name = Ryan-PC | Source = RasClient | ID = 20227 Description = Error - 19/10/2010 04:47:17 | Computer Name = Ryan-PC | Source = RasClient | ID = 20227 Description = Error - 19/10/2010 15:02:27 | Computer Name = Ryan-PC | Source = WinMgmt | ID = 10 Description = [ Media Center Events ] Error - 20/06/2010 16:47:32 | Computer Name = Ryan-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.TimerRecord failed; Win32 GetLastError returned 10000105 Process: DefaultDomain Object Name: Media Center Guide [color=#E56717]========== Last 10 Event Log Errors ==========[/color] Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt! < End of report >