OTL Extras logfile created on: 30/10/2011 13:26:37 - Run 2 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Fiona\Desktop Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy 894.48 Mb Total Physical Memory | 501.71 Mb Available Physical Memory | 56.09% Memory free 2.12 Gb Paging File | 1.89 Gb Available in Paging File | 89.33% Paging File free Paging file location(s): C:\pagefile.sys 1344 2688 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 232.88 Gb Total Space | 141.11 Gb Free Space | 60.59% Space Free | Partition Type: NTFS Computer Name: MAINFAMILYPC | User Name: Fiona | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (All) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .bat [@ = batfile] -- "%1" %* .chm [@ = chm.file] -- C:\WINDOWS\hh.exe (Microsoft Corporation) .cmd [@ = cmdfile] -- "%1" %* .com [@ = ComFile] -- "%1" %* .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .exe [@ = exefile] -- "%1" %* .hlp [@ = hlpfile] -- C:\WINDOWS\System32\winhlp32.exe (Microsoft Corporation) .hta [@ = htafile] -- C:\WINDOWS\System32\mshta.exe (Microsoft Corporation) .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) .inf [@ = inffile] -- C:\WINDOWS\System32\NOTEPAD.EXE (Microsoft Corporation) .ini [@ = inifile] -- C:\WINDOWS\System32\NOTEPAD.EXE (Microsoft Corporation) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l .js [@ = JSFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation) .jse [@ = JSEFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation) .pif [@ = piffile] -- "%1" %* .reg [@ = regfile] -- C:\WINDOWS\regedit.exe (Microsoft Corporation) .scr [@ = scrfile] -- "%1" /S .txt [@ = txtfile] -- C:\WINDOWS\System32\NOTEPAD.EXE (Microsoft Corporation) .vbe [@ = VBEFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation) .vbs [@ = VBSFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation) .wsf [@ = WSFFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation) .wsh [@ = WSHFile] -- C:\WINDOWS\System32\WScript.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) batfile [open] -- "%1" %* batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) chm.file [open] -- "%SYSTEMROOT%\hh.exe" %1 (Microsoft Corporation) cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) cmdfile [open] -- "%1" %* cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* helpfile [open] -- winhlp32.exe %1 (Microsoft Corporation) hlpfile [open] -- %SystemRoot%\System32\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- C:\WINDOWS\system32\mshta.exe "%1" %* (Microsoft Corporation) htmlfile [edit] -- C:\PROGRA~1\MICROS~2\Office10\FRONTPG.EXE (Microsoft Corporation) htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) inffile [open] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) inffile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) inifile [open] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) inifile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l InternetShortcut [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) jsfile [edit] -- %SystemRoot%\System32\Notepad.exe %1 (Microsoft Corporation) jsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation) jsfile [print] -- %SystemRoot%\System32\Notepad.exe /p %1 (Microsoft Corporation) jsefile [edit] -- %SystemRoot%\System32\Notepad.exe %1 (Microsoft Corporation) jsefile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation) jsefile [print] -- %SystemRoot%\System32\Notepad.exe /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [edit] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) regfile [open] -- regedit.exe "%1" (Microsoft Corporation) regfile [merge] -- Reg Error: Key error. regfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation) vbefile [edit] -- %SystemRoot%\System32\Notepad.exe %1 (Microsoft Corporation) vbefile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation) vbefile [print] -- %SystemRoot%\System32\Notepad.exe /p %1 (Microsoft Corporation) vbsfile [edit] -- %SystemRoot%\System32\Notepad.exe %1 (Microsoft Corporation) vbsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation) vbsfile [print] -- %SystemRoot%\System32\Notepad.exe /p %1 (Microsoft Corporation) wsffile [edit] -- %SystemRoot%\System32\Notepad.exe %1 (Microsoft Corporation) wsffile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation) wsffile [print] -- %SystemRoot%\System32\Notepad.exe /p %1 (Microsoft Corporation) wshfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation) Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "%programfiles%\internet explorer\iexplore.exe" (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] "139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 "139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Program Files\MSN Messenger\livecall.exe" = C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\StubInstaller.exe" = C:\StubInstaller.exe:*:Enabled:LimeWire swarmed installer -- (LimeWire) "C:\Program Files\Lionhead Studios Ltd\Black & White\runblack.exe" = C:\Program Files\Lionhead Studios Ltd\Black & White\runblack.exe:*:Enabled:lh -- (LionHead Studios Ltd.) "C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox -- (Mozilla Corporation) "C:\Program Files\iCatcher\iCatcherTools.exe" = C:\Program Files\iCatcher\iCatcherTools.exe:*:Enabled:i-Catcher helper library -- (iCode Systems Limited) "C:\Program Files\Real\RealPlayer\realplay.exe" = C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer -- (RealNetworks, Inc.) "C:\Program Files\Kontiki\KService.exe" = C:\Program Files\Kontiki\KService.exe:*:Enabled:Delivery Manager Service -- (Kontiki Inc.) "C:\Program Files\O2\bin\wificfg.exe" = C:\Program Files\O2\bin\wificfg.exe:*:Enabled:sprtcmd.exe -- (SupportSoft, Inc.) "C:\Program Files\O2\agent\bin\bcont.exe" = C:\Program Files\O2\agent\bin\bcont.exe:*:Enabled:bcont.exe -- (SupportSoft, Inc.) "C:\Program Files\Common Files\SupportSoft\bin\ssrc.exe" = C:\Program Files\Common Files\SupportSoft\bin\ssrc.exe:*:Enabled:ssrc.exe -- (SupportSoft, Inc.) "C:\Program Files\O2\agent\bin\bcont_nm.exe" = C:\Program Files\O2\agent\bin\bcont_nm.exe:*:Enabled:bcont_nm.exe -- (SupportSoft, Inc.) "C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0228e555-4f9c-4e35-a3ec-b109a192b4c2}" = Google Gmail Notifier "{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant "{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter "{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate "{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}" = Rapport "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{26A24AE4-039D-4CA4-87B4-2F83216013FB}" = "{26A24AE4-039D-4CA4-87B4-2F83216015FB}" = "{26A24AE4-039D-4CA4-87B4-2F83216017FB}" = "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 27 "{26A24AE4-039D-4CA4-87B4-2F83216024FB}" = "{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}" = Microsoft SQL Server 2005 Tools Express Edition "{2A4F281E-2161-405B-B090-4487F505BDDE}" = AOEMView 2009 "{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (AUTODESKVAULT) "{2BC2781A-F7F6-452E-95EB-018A522F1B2C}" = PaperPort Image Printer "{2CCBABCB-6427-4A55-B091-49864623C43F}" = "{31E1050B-F69F-4A16-8F5A-E44D31901250}" = Ulead DVD DiskRecorder 2.1.1 "{3248F0A8-6813-11D6-A77B-00B0D0150030}" = J2SE Runtime Environment 5.0 Update 3 "{3248F0A8-6813-11D6-A77B-00B0D0150050}" = J2SE Runtime Environment 5.0 Update 5 "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3A08B59E-A9F0-4F4D-B7E5-6875D7F13327}" = Brother MFL-Pro Suite MFC-250C "{3D5E5C0A-5B36-4F98-99A7-287F7DBDCE03}" = Skype Plugin Manager "{3E31400D-274E-4647-916C-2CACC3741799}" = EpsonNet Print "{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker "{43DCF766-6838-4F9A-8C91-D92DA586DFA8}" = Microsoft Windows Journal Viewer "{4507868A-A9CD-4ECC-BD54-0EAB6EE81D42}" = O2 Broadband Assistant "{494367EC-82A9-4C0D-A788-74A967998E8C}" = FXCM Trading Station "{49672EC2-171B-47B4-8CE7-50D7806360D7}" = Windows Live Sign-in Assistant "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A52630B-2CF2-47A5-937F-9E3378FD21E9}" = PhotoArtMaster Classic "{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{4D612FB2-1AE7-4E46-9377-35BB2F06A787}" = Roxio Media Manager "{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English) "{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01) "{56B4002F-671C-49F4-984C-C760FE3806B5}" = Microsoft SQL Server VSS Writer "{5783F2D6-7028-0409-0000-0060B0CE6BBA}" = DWG TrueView 2009 "{57FA4E0F-82C9-417D-87BC-0186D6CB7A44}" = "{590D4F8F-98FE-47FA-AC2B-3F22FDCF7C09}" = ShareIns "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053 "{5F9662B9-ED3F-4F02-9DEE-EFA1F95F629F}" = Paragon Drive Backup 8.5 Special Edition "{619B8475-0F48-41B7-A370-5147F7092989}" = Virtual Earth 3D (Beta) "{62369F2F77534556AEF4C58152E3BDE5}" = "{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}" = Windows Genuine Advantage v1.3.0254.0 "{63A317D0-60A6-43FC-848A-9FE4A53B29CE}" = "{6537E911-1C36-43D6-B6A1-FE92F0E9205C}" = PhotoArtMaster Silver "{689E0AB3-50B2-4E5A-9DCE-6DA9F5BE1314}" = BlackBerry® Media Sync "{68A35043-C55A-4237-88C9-37EE1C63ED71}" = Microsoft Visual J# 2.0 Redistributable Package "{69640730-B830-4C24-BB5C-222DA1260548}" = Turbo Lister 2 "{69995C7A-062A-4A90-A4DF-8C22895DF522}" = iTunes "{6A3F9D74-BB80-4451-8CA1-4B3A857F1359}" = Apple Application Support "{6FFC6A05-F8E7-4551-B1E2-6F2A237C8856}" = "{7094F190-8784-4230-9ACB-B91BFF595C7E}" = TurboCAD Deluxe 16 "{70C4EFA5-F8B8-4015-9378-FCAA9000DF19}" = MotionBased Agent "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{735619D4-B42A-437A-958C-199BFCAEDB38}" = Safari "{735EAB64-9F32-5A85-F902-665E387AC7EB}" = "{7585478E9D9B42108671C12F8714CEFE}" = "{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}" = Microsoft SQL Server Native Client "{76EFFC7C-17A6-479D-9E47-8E658C1695AE}" = Windows Backup Utility "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{779DECD7-E072-4B56-9B6B-BEB5973EEEB5}" = MobileMe Control Panel "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7A8FF745-BBC5-482B-88E4-18D3178249A9}" = ScanSoft PaperPort 11 "{7A9DC8F6-2466-4E04-BF51-BE499C5D02BD}" = "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec "{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}" = EPSON Web-To-Page "{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player "{8B2DB7C0-6315-499A-9479-D7C6F50AF319}" = ArtMasterPro "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90280409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional with FrontPage "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{998DB4BB-8C4D-4DDC-9AC6-D44063D4D59D}" = Euresys MultiCam for Picolo "{9A80ED72-EB90-4EB8-B6FD-BB5C7DF452B5}" = NetObjects Fusion 9.0 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D29159F-227D-45B9-BD70-94564CE259BD}" = O2InstV2Win7UpdateV1 "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB300003" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB958483" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB960043" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB975195" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB976570" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB976578" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB976578v2" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB976769" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB976769v2" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB977354" = "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.KB977354v2" = "{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}" = MSXML 6.0 Parser "{A4D7B764-4140-11D4-88EB-0050DA3579C0}" = Nero - Burning Rom "{A5BA14E0-7384-11D4-BAE7-00409631A2C8}" = Macromedia Extension Manager "{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger "{A96E97134CA649888820BCDE5E300BBD}" = H.264 Decoder "{AAC389499AEF40428987B3D30CFC76C9}" = MKV Splitter "{AB67580-257C-45FF-B8F4-C8C30682091A}_is1" = SIW version 2009-09-09 "{ABDA9912-5D00-11D4-BAE7-9367CA097955}" = Macromedia Dreamweaver 4 "{AC76BA86-7AD7-1033-7B44-A71000000002}" = Adobe Reader 7.1.0 "{AEF9DC35ADDF4825B049ACBFD1C6EB37}" = AAC Decoder "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter "{BAF78226-3200-4DB4-BE33-4D922A799840}" = Windows Presentation Foundation "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C23CD6DA-1958-43A5-ADD0-59396572E02E}" = Apple Mobile Device Support "{C9E14402-3631-4182-B377-6B0DFB1C0339}" = QuickTime "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB350003" = "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB960043" = "{CF3A3816-7E48-4556-8614-654377EDE1B5}" = BlackBerry App World Browser Plugin "{D03482C5-9AD8-496D-B388-692AE04C93AF}" = Bonjour "{D466F3D9-510C-4729-B7D4-2E70490E4CDF}" = BBC iPlayer Download Manager "{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{E51B4CD9-A0A6-4324-B26A-31B3F2DE26CE}" = Black and White "{E6696A8C-C55A-405C-AFEB-F3880A8BAA45}" = iPod Update 2004-04-28 "{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform "{EE59E3BD-6B7D-4BBB-B9CD-20EA7AEF1E10}" = BlackBerry Desktop Software 5.0 "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729) "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01 "{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call "{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio "ActiveScan 2.0" = Panda ActiveScan 2.0 "AddressBook" = "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Photoshop 7.0" = Adobe Photoshop 7.0 "ADS Tech Master Installer V3.8" = "ADS Tech V3.8 DVD Xpress DX2 CapWiz" = "All ATI Software" = ATI - Software Uninstall Utility "Amazon MP3 Downloader" = Amazon MP3 Downloader 1.0.9 "Anfy" = "AOEMView 2009" = AOEMView 2009 "ATI Display Driver" = ATI Display Driver "AudibleManager" = AudibleManager "AutoCAD Mechanical 2009" = "Autodesk Design Review 2009" = "Autodesk Inventor Professional 2009" = "avast" = avast! Free Antivirus "Avery PLP9100" = Avery PLP9100 "BBC iPlayer Download Manager" = BBC iPlayer Download Manager "Belarc Advisor" = Belarc Advisor 8.1 "BitZipper_is1" = BitZipper 2010 "BlackBerry_{EE59E3BD-6B7D-4BBB-B9CD-20EA7AEF1E10}" = BlackBerry Desktop Software 5.0 "Branding" = "CADI" = "CCleaner" = CCleaner "Connection Manager" = "Coupon Printer2.0" = Coupon Printer "Creative MediaSource CD-ROM Burner Plugin Unicode" = "Creative MediaSource Net Content Plugin Unicode" = "Creative MediaSource Online Store Plugin" = "Creative MediaSource Player Skin Pack Unicode" = "Creative MediaSource Plugin for PlaysForSure Unicode" = "Creative MediaSource Unicode" = "Creative Removable Disk Manager" = Creative Removable Disk Manager "DECCHECK" = Microsoft Windows XP Video Decoder Checkup Utility "DirectAnimation" = "DirectDrawEx" = "DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters "DriverGuide Toolkit" = DriverGuide Toolkit "DWG TrueView 2009" = DWG TrueView 2009 "DXM_Runtime" = "DYMO Label v.8" = DYMO Label v.8 "EPSON Stylus Office BX600FW_Office TX600FW_SX600FW User’s Guide" = EPSON Stylus Office BX600FW_Office TX600FW_SX600FW Manual "EPSON SX600FW Series" = EPSON SX600FW Series Printer Uninstall "FilmLoopPlayer" = FilmLoop Player "Fontcore" = "FXCM Trading Station" = FXCM Trading Station "GameSpy Arcade" = "iCatcher_is1" = i-Catcher 2.3 "ICW" = "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "IE40" = "IE4Data" = "IE5BAKEX" = "ie7" = Windows Internet Explorer 7 "ie8" = Windows Internet Explorer 8 "IEData" = "InstallShield Uninstall Information" = "InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin "InstallShield_{69640730-B830-4C24-BB5C-222DA1260548}" = Turbo Lister 2 "InstallShield_{998DB4BB-8C4D-4DDC-9AC6-D44063D4D59D}" = Euresys MultiCam for Picolo 3.8.3 "InstallShield_{E6696A8C-C55A-405C-AFEB-F3880A8BAA45}" = iPod Update 2004-04-28 "LP Recorder" = "Macromedia Shockwave Player" = Macromedia Shockwave Player "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "MediaNavigation.CDLabelPrint" = "Microsoft .NET Framework 3.0" = "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft SQL Server 2005" = Microsoft SQL Server 2005 "Microsoft Visual J# 2.0 Redistributable Package" = Microsoft Visual J# 2.0 Redistributable Package "MobileOptionPack" = "Mozilla Firefox 7.0.1 (x86 en-US)" = Mozilla Firefox 7.0.1 (x86 en-US) "MPlayer2" = "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "MSI30a-KB884016" = "MSI30-Beta1" = "MSI30-Beta2" = "MSI30-KB884016" = "MSI30-RC1" = "MSI30-RC2" = "MSI31-Beta" = "MSI31-RC1" = "MSNINST" = MSN "NetMeeting" = "Network Play System (Patching)" = Network Play System (Patching) "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "OutlookExpress" = "PC Pitstop Optimize_is1" = PC Pitstop Optimize 1.5 "PCHealth" = "PhotoRecord" = "PropFix" = "Rapport_msi" = Rapport "RealJukebox 1.0" = "RealPlayer 6.0" = RealPlayer "SchedulingAgent" = "Shockwave" = "Skype_is1" = Skype 3.0 "SysInfo" = Creative System Information "WGA" = Windows Genuine Advantage Validation Tool "WIC" = Windows Imaging Component "Windows Media Encoder 9" = Windows Media Encoder 9 Series "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "Windows XP Service Pack" = Windows XP Service Pack 3 "WinLiveSuite_Wave3" = Windows Live Essentials "WinZip" = WinZip "WMCSetup" = "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 "XpsEPSC" = XML Paper Specification Shared Components Pack 1.0 "Yahoo! Messenger" = [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "AI RoboForm" = AI RoboForm "Google Chrome" = Google Chrome [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 24/10/2011 12:17:16 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application DesktopMgr.exe, version 5.0.0.11, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 24/10/2011 12:17:16 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application DesktopMgr.exe, version 5.0.0.11, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 25/10/2011 04:23:49 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application ccsvchst.exe, version 10.1.1.16, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 25/10/2011 08:00:09 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application ccsvchst.exe, version 10.1.1.16, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 25/10/2011 10:15:03 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application chrome.exe, version 14.0.835.202, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 27/10/2011 06:49:38 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application firefox.exe, version 7.0.1.4288, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 28/10/2011 15:11:33 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application AvastUI.exe, version 6.0.1289.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 28/10/2011 18:25:14 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application AvastUI.exe, version 6.0.1289.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 28/10/2011 18:32:17 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application AvastUI.exe, version 6.0.1289.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Error - 28/10/2011 18:33:28 | Computer Name = MAINFAMILYPC | Source = Application Hang | ID = 1002 Description = Hanging application firefox.exe, version 7.0.1.4288, hang module hungapp, version 0.0.0.0, hang address 0x00000000. [ System Events ] Error - 30/10/2011 08:46:41 | Computer Name = MAINFAMILYPC | Source = Service Control Manager | ID = 7000 Description = The PfModNT service failed to start due to the following error: %%2 Error - 30/10/2011 08:46:43 | Computer Name = MAINFAMILYPC | Source = Service Control Manager | ID = 7026 Description = The following boot-start or system-start driver(s) failed to load: nvport Error - 30/10/2011 09:12:21 | Computer Name = MAINFAMILYPC | Source = DCOM | ID = 10005 Description = DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF} Error - 30/10/2011 09:12:59 | Computer Name = MAINFAMILYPC | Source = Service Control Manager | ID = 7026 Description = The following boot-start or system-start driver(s) failed to load: Aavmker4 aswSnx aswSP aswTdi BANTExt Fips MultiCam nvport pavboot Processor SASDIFSV SASKUTIL UimBus Uim_IM Error - 30/10/2011 09:13:58 | Computer Name = MAINFAMILYPC | Source = DCOM | ID = 10005 Description = DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811} Error - 30/10/2011 09:14:22 | Computer Name = MAINFAMILYPC | Source = DCOM | ID = 10005 Description = DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF} Error - 30/10/2011 09:15:45 | Computer Name = MAINFAMILYPC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (adildr.sys) service failed to start due to the following error: %%2 Error - 30/10/2011 09:15:45 | Computer Name = MAINFAMILYPC | Source = Service Control Manager | ID = 7000 Description = The PfModNT service failed to start due to the following error: %%2 Error - 30/10/2011 09:15:48 | Computer Name = MAINFAMILYPC | Source = Print | ID = 19 Description = Sharing printer failed + 1722, Printer Microsoft XPS Document Writer share name Printer2. Error - 30/10/2011 09:15:48 | Computer Name = MAINFAMILYPC | Source = Service Control Manager | ID = 7026 Description = The following boot-start or system-start driver(s) failed to load: nvport < End of report >