OTL Extras logfile created on: 5/8/2012 4:25:33 PM - Run 2 OTL by OldTimer - Version 3.2.42.3 Folder = C:\Users\Michael\Desktop Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.19048) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1.75 Gb Total Physical Memory | 0.64 Gb Available Physical Memory | 36.37% Memory free 3.74 Gb Paging File | 2.46 Gb Available in Paging File | 65.78% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 143.20 Gb Total Space | 51.58 Gb Free Space | 36.02% Space Free | Partition Type: NTFS Drive D: | 144.89 Gb Total Space | 130.05 Gb Free Space | 89.76% Space Free | Partition Type: NTFS Computer Name: MICHAEL-PC | User Name: Michael | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3102646400-3203822736-730050933-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-3102646400-3203822736-730050933-1000] "EnableNotifications" = 0 "EnableNotificationsRef" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-3102646400-3203822736-730050933-1003] "EnableNotifications" = 0 "EnableNotificationsRef" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05493654-DB7D-4E54-A283-BED01ABC1EFC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2C489F27-69E8-47DB-B52A-5ABEC5CE30D1}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3B7D075C-8D9E-4522-9FE5-D971E42B6626}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{3C8DBFDB-E034-4235-9960-7FE6225FAB8A}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{40361424-ECEC-41F2-B139-94C50962EB6E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4CAEF5C4-6ED3-48AD-BC74-1FBB77E9E4F9}" = rport=445 | protocol=6 | dir=out | app=system | "{573F9B7C-9D74-4EA2-90C1-72DB3F77EEF9}" = lport=137 | protocol=17 | dir=in | app=system | "{5BE2C9F0-ADF5-4853-A719-D61BE6755834}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{7668CC10-E999-4CCC-9F43-9DFA2679AC63}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{7D3F3629-0A42-4F5A-9309-15E352558065}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7E871CB6-6D19-41F7-A4AA-0FA0D5B0B8C1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8592750D-FBCD-47B9-B2DC-9DF440DF1B2D}" = lport=138 | protocol=17 | dir=in | app=system | "{8DEA1B6C-097C-491C-B451-82ED7F111E2D}" = rport=138 | protocol=17 | dir=out | app=system | "{9274D3DC-1EFF-4FB9-9FD4-21368AD3B64A}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{96FB6451-3720-49D7-BD6B-74A3C398BDF4}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{97BED821-BE2F-4215-91F3-AB3B14EB07D4}" = lport=10243 | protocol=6 | dir=in | app=system | "{9B17E2F1-8A44-4602-A98A-585B9CB575AE}" = lport=2869 | protocol=6 | dir=in | app=system | "{9C5517A0-520C-4AB4-B0B6-F3E99057EBEB}" = lport=139 | protocol=6 | dir=in | app=system | "{B14D7306-7F82-4215-A92B-860FE64DFDC6}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B4A7BFC1-1914-40F5-A2B2-13632DF4EE9F}" = rport=10243 | protocol=6 | dir=out | app=system | "{B5844AA3-6853-4053-A9A8-79B458ED66B1}" = lport=445 | protocol=6 | dir=in | app=system | "{BA8EDE17-D1C1-4B50-A958-469144B45BD8}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CE18C7A1-6AE4-4565-88AD-A7C56D022BAE}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E23B4876-77CD-4C77-A589-B6C58A0275D1}" = rport=137 | protocol=17 | dir=out | app=system | "{EA9472D6-70BA-406B-9506-E520D342BA3C}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{F4B41A62-7C94-4875-BBD8-93BE09FB1E97}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{FB477616-4EE3-4B40-87A9-76F4E9E41C8C}" = rport=139 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{088DF52B-194A-4C65-B7A4-22E24F02AD10}" = protocol=17 | dir=in | app=c:\program files\tightvnc\tvnserver.exe | "{0CB8A06B-A914-409C-A939-E7A3FDCA3B6F}" = dir=in | app=c:\program files\dimdim\plugin\application\myscreen.exe | "{0DE6BB6D-B000-4163-974F-4DFA064FB761}" = protocol=6 | dir=in | app=c:\program files\gnucash\bin\gnucash.exe | "{0E748A42-7F37-417E-9CCA-C29DA731DB80}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{163CE58C-48D2-4C1D-8130-AA33AD3EDB0E}" = protocol=6 | dir=in | app=c:\program files\tightvnc\tvnserver.exe | "{17B1E6A2-F643-46D0-9497-C52F5DF2C541}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{1CED49D8-EE52-416C-936D-1DD4D32CD829}" = dir=in | app=c:\programdata\dimdim\updater\next.exe | "{26A4D177-E8B6-4E33-AB4D-D838D8A012D6}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{27599BCC-45B2-4BCD-B02B-D52F4B5715B3}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\client\agentsvc.exe | "{2A03E5F8-52F1-4F0E-85B1-C8C0BE071A8B}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifeenc2.exe | "{2EBB8276-1823-4621-BC34-52025B9D7BE5}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe | "{3372D50F-92CA-4CDB-82DF-B669025127AB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{33A7EBA4-F424-4A94-A4D2-C8CF385673DB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{35A55B48-4B23-4EEF-B560-807283803395}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{386C00B0-263B-4588-AA0F-9869D84E63F6}" = dir=in | app=c:\program files\dimdim\plugin\application\dimdim.exe | "{3935427A-F14A-4802-BDF8-BBB4FB218CD2}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifetray.exe | "{3C996F5F-2994-490B-A2DF-DB4CFC3E5FA9}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe | "{4178D82E-73A8-4EA7-AF6B-EE087654AE19}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{44C133B4-F663-4F2F-8102-77DBB932CF7A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{468FBC0F-AF12-44D1-909C-0658BA1B6E6F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4DCBD1F7-A2D9-401D-8C52-A08B860D1E46}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{5E83A1B2-0380-45D8-B6A4-8CE998513DBA}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\client\agentsvc.exe | "{5F8D11FA-BDD5-4733-87E9-531CD842C015}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | "{6F4DF88B-5052-47B8-A2D6-BEDEF68E3E50}" = protocol=6 | dir=out | app=system | "{7D07127C-6E08-4080-A37C-E6BCCBD40345}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe | "{82F770F5-A4D6-4D15-92E2-2B278F95FACD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{98FF4171-25E2-4E5A-8FE5-43549560D54B}" = protocol=6 | dir=in | app=c:\program files\gnucash\bin\gconfd-2.exe | "{A35A5E06-5EA8-4FA2-AB82-3F99591BBF11}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe | "{A41424B3-6F3C-4A17-8C1A-8FF57498727E}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifeenc2.exe | "{A538113C-9431-4618-A139-AC632E5233C0}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe | "{A6BBB41F-ECCD-4F66-8EDF-4A5BAA622ECA}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe | "{B3ABC114-85E0-4452-8D45-43113AA3603D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B83F76B4-FCB6-485F-AA19-702F178CB219}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{B9114336-932D-4911-846E-048E6F1F1064}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{C6A0326F-95A8-478A-B977-08C11445AD99}" = protocol=17 | dir=in | app=c:\program files\gnucash\bin\gnucash.exe | "{C7464236-6AFD-4F22-A019-8BAA426F037E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CCFB7924-8150-4F4A-86A9-E92A4864104C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CD6388D8-7314-446C-9424-4FB536CF72B9}" = protocol=17 | dir=in | app=c:\program files\gnucash\bin\gconfd-2.exe | "{CFB9AD64-C38F-4F23-A710-6E4D30DC2EC8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{D592A02C-C4D4-41BC-9DA4-D99C1A45A628}" = protocol=6 | dir=in | app=c:\program files\tightvnc\vncviewer.exe | "{E0CB59ED-B42B-4665-9B42-372A2B50DEF4}" = protocol=17 | dir=in | app=c:\program files\tightvnc\vncviewer.exe | "{E183FBCF-E24B-487D-97D9-D6A92C780A2C}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe | "{E5339BEB-90E1-4F5D-9EA4-8A6DC0994AE4}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe | "{E9AE51FF-B596-49D0-A4CF-C7675BD07EAB}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | "{EDCA22C7-C8E5-4547-962E-936FFC4013FF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{FA611D45-89F8-463F-8305-14760789E31B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FE762DDB-8100-4E9E-987F-F617E21B5B85}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifetray.exe | "TCP Query User{10623139-8EA1-4583-8685-67C7008A31AD}C:\program files\mywgu messenger\mywgu-messenger.exe" = protocol=6 | dir=in | app=c:\program files\mywgu messenger\mywgu-messenger.exe | "TCP Query User{6E6C1015-FAF7-4622-9663-A3F855DEAC13}C:\program files\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | "TCP Query User{C11EE2DD-6AE5-497C-9AEA-2D648964221C}C:\program files\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | "TCP Query User{EFB2B3F7-CD11-4676-83F1-2664B6BA1BAD}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{5AF41F41-666A-4BE1-AE1A-0963191407EC}C:\program files\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | "UDP Query User{A57CCA99-1363-47FB-B138-26D3F1F9058D}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{AF9135D9-58BD-4229-BEAF-3EE35C7A5CA7}C:\program files\mywgu messenger\mywgu-messenger.exe" = protocol=17 | dir=in | app=c:\program files\mywgu messenger\mywgu-messenger.exe | "UDP Query User{FCB882B5-14AD-4ED6-B510-565151C99CE7}C:\program files\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1034BE34-1569-4889-831D-C2C3F2CB2F73}" = Photo Explosion Deluxe 3.0 "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP620_series" = Canon MP620 series MP Drivers "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard "{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD YouTube Downloader & Converter 3.6 "{1E8EB086-AE5F-45F6-887C-E5178868290F}" = Living Cookbook 2011 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{20aa4150-b5f4-11de-8a39-0800200c9a66}_is1" = KompoZer 0.8b3 "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java(TM) 6 Update 22 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth "{2F4C24E6-CBD4-4AAC-B56F-C9FD44DE5668}" = Roxio Drag-to-Disc "{31492759-0E89-46B5-9770-F6E5808E3017}" = xImage "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{32C747FB-2576-4503-B75D-DEE95161C60E}" = ActivInspire Core Resources (ENU) v1 "{3A760498-F3A7-4354-9614-25C83B90D762}" = REA's TESTware for Praxis Biology "{3AB65E95-37D6-4DD7-8862-29AED3AFD54B}" = Google SketchUp Pro 8 "{3E171899-0175-47CC-84C4-562ACDD4C021}" = OpenOffice.org 3.3 "{414A373B-59DF-4102-94CA-9FE9A74CBDDA}" = Garmin Trip and Waypoint Manager v5 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{58B42F3F-EC8D-4A53-9813-5EA43C4E9350}" = Garmin City Navigator North America NT 2009 "{59716973-C123-4B46-B44B-36FCD9CEB8A3}" = Print Artist Silver 22 "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{6599091B-D42D-4765-ABC3-8B25E844C746}" = Roxio Easy CD and DVD Burning "{669595F6-17BE-482D-8143-8C01C2ECA2CF}" = Alibre Design "{68A35043-C55A-4237-88C9-37EE1C63ED71}" = Microsoft Visual J# 2.0 Redistributable Package "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6D52C408-B09A-4520-9B18-475B81D393F1}" = Microsoft Works "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}" = Acer ScreenSaver "{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager "{7F57E0DE-D0F7-47CC-A4AB-D21EB8E4BE48}" = ActivInspire v1 "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{87441A59-5E64-4096-A170-14EFE67200C3}" = Picture Control Utility "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8DC42D05-680B-41B0-8878-6C14D24602DB}" = QuickTime "{8F1B6239-FEA0-450A-A950-B05276CE177C}" = Acer Empowering Technology "{936E2131-D9DB-42F9-96E7-52D2050ACB09}" = ActivDriver x86 v5.7 "{94CAC2F1-C856-47F4-AF24-65A1E75AEDB9}" = MotoHelper MergeModules "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A5633652-3795-4829-BB0B-644F0279E279}" = Acer eDataSecurity Management "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.3) "{AFD9E698-03C2-4E88-80A6-1496562D4304}" = Google SketchUp 7.1 "{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{BD71B413-9FEE-49BB-A6D1-2C0BFB99BDFE}" = Microsoft LifeCam "{C35CCBEB-5A54-4DD8-9EC8-110F2A8154B3}" = Motorola Mobile Drivers Installation 5.1.0 "{C9C641B6-DB5C-4C84-B6C9-9540388DA0DA}" = WebMeeting Plug-in "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CD95F661-A5C4-44F5-A6AA-ECDD91C240CA}" = WinZip 16.0 "{CDEACF5E-2BC9-4095-840A-B85F1655D8E6}" = ActivInspire Help (USA) v1 "{CE2121C6-C94D-4A73-8EA4-6943F33EE335}" = Picture Package Music Transfer "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CE386A4E-D0DA-4208-8235-BCE43275C694}" = LightScribe 1.4.142.1 "{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}" = Nikon Message Center "{D5068583-D569-468B-9755-5FBF5848F46F}" = Sony Picture Utility "{DB078F4F-FC74-4A07-9E07-A6623A18A667}" = ActivInspire HWR Resources (ENU) v1 "{E623BB3F-F7ED-4148-BEB5-A0D1DB28B4DE}" = Media Converter for Philips "{E9757890-7EC5-46C8-99AB-B00F07B6525C}" = Nikon Transfer "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8 "{F007CBCE-D714-4C0B-8CE9-9B0D78116468}" = ViewNX "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F429ED71-4A8B-457A-85E4-F6398CE73E58}" = AV Input Selection "{F54AC413-D2C6-4A24-B324-370C223C6250}" = Adobe Photoshop Elements 6.0 "{F6970FBD-809A-4C51-BAB3-D94A04C6C8E7}" = Garmin Communicator Plugin "{FB98D390-54A4-4CD1-93D3-FBC96A6F07A3}" = DesignPro 5 "{FD8E178D-8B4E-42DA-B434-EFF270329B1C}" = COMODO Internet Security "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "7-Zip" = 7-Zip 9.20 "ACDSee" = ACDSee "Acer Assist" = Acer Assist "Acer Registration" = Acer Registration "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Photoshop Elements 6" = Adobe Photoshop Elements 6.0 "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "Amazon MP3 Downloader" = Amazon MP3 Downloader 1.0.10 "Applian FLV Player2.0.24" = Applian FLV Player "Audacity_is1" = Audacity 2.0 "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "BFGC" = Big Fish Games: Game Manager "BFG-Mahjong Towers Eternity" = Mahjong Towers Eternity "Canon MP620 series User Registration" = Canon MP620 series User Registration "Canon_IJ_Network_Scan_UTILITY" = Canon IJ Network Scan Utility "Canon_IJ_Network_UTILITY" = Canon IJ Network Tool "CanonMyPrinter" = Canon Utilities My Printer "CanonSolutionMenu" = Canon Utilities Solution Menu "Cook'n" = Cook'n "CutePDF Writer Installation" = CutePDF Writer 2.8 "Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX "ERUNT_is1" = ERUNT 1.1j "Exact Audio Copy" = Exact Audio Copy 1.0beta3 "FileZilla Client" = FileZilla Client 3.5.3 "GnuCash_is1" = GnuCash 2.4.8 "Google Updater" = Google Updater "GrammarPro" = GrammarPro "HP Photo Imaging Software" = HP Photo Imaging Software "HP Photo Printing Software" = HP Photo Printing Software "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5 "InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager "InstallShield_{BC8032F1-0D5E-43C6-B14A-77AC8F9690B5}" = DesignPro 5.0 Media Edition "InstallShield_{FB98D390-54A4-4CD1-93D3-FBC96A6F07A3}" = DesignPro 5 "Living Cookbook 2011" = Living Cookbook 2011 "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.61.0.1400 "MasterClips Browser" = MasterClips Browser "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft Visual J# 2.0 Redistributable Package" = Microsoft Visual J# 2.0 Redistributable Package "MotoHelper" = MotoHelper 2.0.51 Driver 5.1.0 "Mozilla Firefox (3.6.28)" = Mozilla Firefox (3.6.28) "Mozilla Sunbird (0.9)" = Mozilla Sunbird (0.9) "Mozilla Thunderbird 10.0.2 (x86 en-US)" = Mozilla Thunderbird 10.0.2 (x86 en-US) "MP Navigator EX 2.0" = Canon MP Navigator EX 2.0 "MyWGU Messenger 2.5.8" = MyWGU Messenger 2.5.8 "NVIDIA Drivers" = NVIDIA Drivers "POSTER_is1" = 7.9 "RealPlayer 15.0" = RealPlayer "RegCure" = RegCure "Replay Media Catcher 3.02" = Replay Media Catcher 3.02 "Rhapsody" = Rhapsody "Shockwave" = Shockwave "ShockwaveFlash" = Adobe Flash Player 9 ActiveX "Sibelius Scorch Plugin" = Sibelius Scorch Plugin "TightVNC" = TightVNC 2.0.3 "Unitype Applications" = Unitype Applications "WebMeeting Plug-in" = WebMeeting Plug-in "WebPost" = Microsoft Web Publishing Wizard 1.52 "Winamp" = Winamp "WinGimp-2.0_is1" = GIMP 2.6.12-2 "Yahoo! Messenger" = Yahoo! Messenger [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3102646400-3203822736-730050933-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Adobe Connect Add-in" = Adobe Connect Add-in "Winamp Detect" = Winamp Detector Plug-in [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 5/7/2012 5:57:03 PM | Computer Name = Michael-PC | Source = WinMgmt | ID = 10 Description = Error - 5/7/2012 6:28:42 PM | Computer Name = Michael-PC | Source = Application Hang | ID = 1002 Description = The program firefox.exe version 1.9.2.4448 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: 15e8 Start Time: 01cd2c9cf641f4d1 Termination Time: 24 Error - 5/7/2012 6:51:08 PM | Computer Name = Michael-PC | Source = Application Hang | ID = 1002 Description = The program iexplore.exe version 8.0.6001.19048 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: f10 Start Time: 01cd2ca3cbb218b1 Termination Time: 11 Error - 5/7/2012 6:55:14 PM | Computer Name = Michael-PC | Source = WinMgmt | ID = 10 Description = Error - 5/8/2012 8:24:35 AM | Computer Name = Michael-PC | Source = WinMgmt | ID = 10 Description = Error - 5/8/2012 8:53:51 AM | Computer Name = Michael-PC | Source = WinMgmt | ID = 10 Description = Error - 5/8/2012 9:00:18 AM | Computer Name = Michael-PC | Source = Application Hang | ID = 1002 Description = The program firefox.exe version 1.9.2.4448 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: e58 Start Time: 01cd2d19a5a00ccf Termination Time: 23 Error - 5/8/2012 9:30:38 AM | Computer Name = Michael-PC | Source = WinMgmt | ID = 10 Description = Error - 5/8/2012 9:37:29 AM | Computer Name = Michael-PC | Source = Application Hang | ID = 1002 Description = The program firefox.exe version 1.9.2.4448 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: 1524 Start Time: 01cd2d1eefd831ec Termination Time: 12 Error - 5/8/2012 9:44:46 AM | Computer Name = Michael-PC | Source = WinMgmt | ID = 10 Description = [ Media Center Events ] Error - 6/4/2009 5:37:35 PM | Computer Name = Michael-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. Error - 6/9/2009 8:23:47 AM | Computer Name = Michael-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. Error - 11/4/2009 2:30:38 PM | Computer Name = Michael-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. [ System Events ] Error - 4/11/2012 1:21:42 PM | Computer Name = Michael-PC | Source = DCOM | ID = 10005 Description = Error - 4/11/2012 1:21:43 PM | Computer Name = Michael-PC | Source = Service Control Manager | ID = 7009 Description = Error - 4/11/2012 1:21:43 PM | Computer Name = Michael-PC | Source = Service Control Manager | ID = 7000 Description = Error - 4/16/2012 1:13:24 PM | Computer Name = Michael-PC | Source = Print | ID = 19 Description = The print spooler failed to share printer Canon MP620 series Printer with shared resource name Canon MP620 series Printer. Error 2114. The printer cannot be used by others on the network. Error - 4/27/2012 3:16:02 PM | Computer Name = Michael-PC | Source = Print | ID = 19 Description = The print spooler failed to share printer Canon MP620 series Printer with shared resource name Canon MP620 series Printer. Error 2114. The printer cannot be used by others on the network. Error - 4/28/2012 3:56:54 PM | Computer Name = Michael-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 10:45:38 AM on 4/28/2012 was unexpected. Error - 4/28/2012 3:56:56 PM | Computer Name = Michael-PC | Source = Dhcp | ID = 1002 Description = The IP address lease 192.168.1.102 for the Network Card with network address 001D72A6A7E4 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). Error - 5/5/2012 7:05:45 PM | Computer Name = Michael-PC | Source = Print | ID = 6161 Description = The document http://www.gardeners.com/on/demandware.store/Sites-Gardeners-Site/default/Page-KGPPreplanned, owned by Michael, failed to print on printer Canon MP620 series Printer. Try to print the document again, or restart the print spooler. Data type: NT EMF 1.008. Size of the spool file in bytes: 8650752. Number of bytes printed: 6962784. Total number of pages in the document: 1. Number of pages printed: 0. Client computer: \\MICHAEL-PC. Win32 error code returned by the print processor: 0. The operation completed successfully. Error - 5/5/2012 7:06:56 PM | Computer Name = Michael-PC | Source = Print | ID = 6161 Description = The document http://www.gardeners.com/on/demandware.store/Sites-Gardeners-Site/default/Page-KGPPreplanned, owned by Michael, failed to print on printer Canon MP620 series Printer. Try to print the document again, or restart the print spooler. Data type: NT EMF 1.008. Size of the spool file in bytes: 10566864. Number of bytes printed: 7601116. Total number of pages in the document: 2. Number of pages printed: 0. Client computer: \\MICHAEL-PC. Win32 error code returned by the print processor: 259. No more data is available. Error - 5/7/2012 5:41:27 PM | Computer Name = Michael-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 5:40:16 PM on 5/7/2012 was unexpected. < End of report >