OTL Extras logfile created on: 11/16/2012 2:58:07 AM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\User\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy 3.75 Gb Total Physical Memory | 2.05 Gb Available Physical Memory | 54.84% Memory free 7.49 Gb Paging File | 5.59 Gb Available in Paging File | 74.68% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 580.42 Gb Total Space | 278.90 Gb Free Space | 48.05% Space Free | Partition Type: NTFS Drive D: | 15.46 Gb Total Space | 1.91 Gb Free Space | 12.37% Space Free | Partition Type: NTFS Drive F: | 99.34 Mb Total Space | 89.21 Mb Free Space | 89.81% Space Free | Partition Type: FAT32 Computer Name: USER-HP | User Name: User | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system | "{045FDC39-ACDF-44DF-9E1E-A1CD878ACF8B}" = rport=10243 | protocol=6 | dir=out | app=system | "{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system | "{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system | "{0D66EC65-CBE6-4EA8-AA88-75A7CFD34070}" = rport=138 | protocol=17 | dir=out | app=system | "{144067B3-0CCA-4EEA-B35D-05B1B858C51D}" = lport=138 | protocol=17 | dir=in | app=system | "{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{236CC874-3433-4C1A-A42B-881EAE2DE8D6}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system | "{2CE60F33-459F-4A90-8810-BCB614C59F77}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{358862C7-F000-405D-AF33-F55246AD6FCD}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{397338AE-75AB-47A9-A822-CAEEAF9FCAA0}" = lport=139 | protocol=6 | dir=in | app=system | "{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system | "{548F06EB-64FD-49AE-AC40-55E1B5C6739E}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{54C1BC28-8B72-4C43-8A58-9093E1666306}" = lport=10243 | protocol=6 | dir=in | app=system | "{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system | "{66B09597-A994-429A-82B3-A9FD433DA800}" = lport=137 | protocol=17 | dir=in | app=system | "{6C410E9E-15FD-484D-96BD-B18B131CDADD}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system | "{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8FD69C73-80EB-43B0-8FE2-1BD19145227D}" = rport=139 | protocol=6 | dir=out | app=system | "{A19EE9CB-1833-486A-99B9-4A79A6CA3795}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{ADF62BCF-C7E9-4221-9BF4-6A90DA4EB3EC}" = lport=445 | protocol=6 | dir=in | app=system | "{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system | "{B5090A98-B267-4605-A356-03B8A26C65D9}" = rport=445 | protocol=6 | dir=out | app=system | "{B69763F5-B33B-4FA1-AB8F-937BC89073FD}" = rport=137 | protocol=17 | dir=out | app=system | "{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system | "{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system | "{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CBF492B7-A0DC-4FF5-B9E7-6F02849EF68C}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D01F4EC0-E2E3-486F-A968-E3D274973E3A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{DD336C75-1A64-4517-A300-37D817664B56}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DE98299D-F2A7-4753-AD1E-93A36453CD2B}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{E08BCD54-B3BC-41D2-863C-AA980145A2A6}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{EC890813-B317-4056-8446-4E9B44CFB21E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{EDEF5112-37D3-48A0-963A-DA3F49BAEC35}" = lport=2869 | protocol=6 | dir=in | app=system | "{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system | "{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0000D66D-C6B2-4D01-B58B-B7BE54ED78A2}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{015104D4-2284-44D7-998C-6EF028314FD4}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{02A26113-D647-4BF3-ACF6-7E30EAD979F2}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{0624368D-A3D4-44B7-AAF2-16193CFA3D00}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{0EAF431F-04A9-4279-BE88-2B855E22F36A}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{144DA875-A6D1-4D58-9747-F03F2ADD016A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{174E7A76-8349-451A-900C-F9CFF4C45B88}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1AA18AC9-BF81-45DE-892F-829C96AB4B7B}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{3BA213FB-82FA-4A3F-A740-D2B6214B1165}" = protocol=58 | dir=in | app=system | "{3C73CC2B-C534-4815-AF41-DE7DF72DC49F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{3CFBB195-0C8C-4FEA-94F9-839D009B9C89}" = protocol=6 | dir=out | app=system | "{42767E27-1D7D-4DCB-9E2B-321A262BC4D5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4847CA28-3F76-46B5-A548-9E6E6AE440B6}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{56257CE6-A7C8-4404-9E06-64AACBDE5BC2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{6973A030-A15F-4028-A64C-27DA5525A449}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{7BFD54D5-2C37-4280-9F00-4AA977F2D8A1}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{91FFFE0A-F4AC-4A35-9C92-DE3BD7B0CA47}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | "{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B298EB85-6383-4F58-BED4-E12F56D6AECE}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B35BB18F-80AA-496F-B710-E87C82B4E059}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B3A70D0D-9239-417B-A059-E4AAE0E0EB82}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system | "{C35D793A-6770-4004-BC6B-85E3B91F3139}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CDDDDD05-5238-4093-8F11-3EAF2D83862B}" = dir=out | app=c:\program files (x86)\hewlett-packard\hp clouddrive\zumodrive.exe | "{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CFA84851-B4D5-4077-B698-E503295D5E84}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp clouddrive\zumodrive.exe | "{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D9AFB142-2998-4943-AD80-862EFC008D19}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DAE401CE-7DEB-4B2C-8B32-41C9A374FAA6}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{DE6C8E3C-0669-43A7-85B4-B10680CF41E5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{E99FC510-1E34-4764-B8C7-C7BC100860E2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{FFBDA6B0-CBE7-4290-B387-DC9891B4A45A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FFE76690-F628-44FA-9036-01C8EE5C2CA4}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "TCP Query User{6453F3CA-22A1-44C9-88FB-8E05535F0CD3}C:\users\user\appdata\roaming\boyhn\ogka.exe" = protocol=6 | dir=in | app=c:\users\user\appdata\roaming\boyhn\ogka.exe | "TCP Query User{C4ACE4B9-5F41-40DD-B1C6-7115589C4ABE}C:\program files (x86)\bitlord 1.2\bitlord files\bitlord.exe" = protocol=6 | dir=in | app=c:\program files (x86)\bitlord 1.2\bitlord files\bitlord.exe | "UDP Query User{279088D5-5A5C-4296-ACF2-1C9F2355751E}C:\users\user\appdata\roaming\boyhn\ogka.exe" = protocol=17 | dir=in | app=c:\users\user\appdata\roaming\boyhn\ogka.exe | "UDP Query User{3F9116E2-D071-45B0-85BA-86003FCCF333}C:\program files (x86)\bitlord 1.2\bitlord files\bitlord.exe" = protocol=17 | dir=in | app=c:\program files (x86)\bitlord 1.2\bitlord files\bitlord.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector "{0886900B-B2F3-452C-B580-60F1253F7F80}" = Native Instruments Controller Editor "{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}" = Native Instruments Service Center "{0E543634-7E25-4B8F-8D5B-97880E5E5088}" = Bonjour "{13DCC2C7-454D-42F0-A892-E0E9A5DE4E67}" = HP Wireless Assistant "{16563676-2243-041A-DC00-5F0A34FA17F2}" = ATI Catalyst Install Manager "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant "{26A24AE4-039D-4CA4-87B4-2F86416022FF}" = Java(TM) 6 Update 22 (64-bit) "{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}" = HP Client Services "{2930FB47-6452-4476-BF16-D77F748646DB}" = Native Instruments GuitarRig Mobile IO Driver "{3577A723-187B-DA30-C03B-F6474BE36276}" = AMD Fuel "{439760BC-7737-4386-9B1D-A90A3E8A22EA}" = Apple Mobile Device Support "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5E2CD4FB-4538-4831-8176-05D653C3E6D4}" = Windows Live Remote Service Resources "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources "{6B881BA4-D154-140F-C254-9EA29D8273E6}" = WMV9/VC-1 Video Playback "{73089240-023C-11E0-9AE3-2BA1DFD72085}" = M-Audio FastTrackPro Driver 6.0.7 (x64) "{7930FB47-6452-4476-BF16-D77F748646DB}" = Native Instruments Session IO Driver "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources "{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010 "{903EC921-5A77-91BC-5434-9C0C1DDB87A9}" = ccc-utility64 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}" = Windows Live Remote Client Resources "{BCF07271-A853-4D3A-B668-4B752174CAA8}" = iTunes "{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client "{C7FAFC98-5ECC-40FC-B440-A5D5FE3A6A6E}" = Native Instruments Guitar Rig 4 "{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "1DF1F719-D43A-46E8-950F-65A8D96C678A.MBT_is1" = Ralink Motorola BC8 Bluetooth 3.0+HS Adapter "CCleaner" = CCleaner "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft Security Client" = Microsoft Security Essentials "SynTPDeinstKey" = Synaptics TouchPad Driver "WinRAR archiver" = WinRAR 4.01 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00A42832-B21A-4296-B5F4-D296D0BC4A3E}" = HP Quick Launch "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{05CF6404-C152-FD9B-B290-AA677BE01204}" = CCC Help Chinese Standard "{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{0A9A553D-A324-4C3C-B6E9-2464480BAE50}" = Catalyst Control Center - Branding "{0A9BB2E7-FF9C-35C2-D630-DDC0FE2D5995}" = CCC Help Norwegian "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0E3CFB6A-79FB-B665-09F2-87A4F9361D95}" = CCC Help Greek "{10B39DCD-0325-49FE-BFBC-8EC011CB7CA8}" = ACID Pro 7.0 "{12E0A071-8D3D-B0C8-2893-1DD2762E8F19}" = CCC Help English "{14A487F2-1259-4E6C-AE3C-3C888DDBCB60}_is1" = Guitar Pro 6 "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{264FE20A-757B-492a-B0C3-4009E2997D8A}" = PictureMover "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{28FE073B-1230-4BF6-830C-7434FD0C0069}" = HP Software Framework "{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections "{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger "{2AA17358-AC80-F09D-CDEF-49AC7D64590B}" = CCC Help Danish "{2F286EEA-8631-C666-19AC-AD4C816DBF1A}" = CCC Help Chinese Traditional "{307EF55F-858E-14BA-29AD-E507DB90BCB9}" = CCC Help Spanish "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery "{3508D7B3-BDEF-A61E-5E60-1D6DB87365CE}" = Catalyst Control Center InstallProxy "{37283968-8BAA-1773-AB81-BD6EE752750E}" = CCC Help Polish "{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Windows 7 "{3B834B54-EC4B-48E2-BFC6-03FF5DA06F62}" = Adobe Shockwave Player 11.5 "{3B9A92DA-6374-4872-B646-253F18624D5F}" = Windows Live Writer "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go "{42B689F7-0C05-2BE0-7D41-E5A0DF5A99F8}" = CCC Help German "{488F0347-C4A7-4374-91A7-30818BEDA710}" = Galerie de photos Windows Live "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{504CC891-B140-4E1B-860B-5E4C1DFBA9E3}" = Blio "{50816F92-1652-4A7C-B9BC-48F682742C4B}" = Messenger Companion "{53CD60C7-12F9-420D-A9BF-EC8D815475A9}" = HP Documentation "{554B2ABC-9EA1-F6A7-3105-39309917FD06}" = CCC Help Italian "{55D003F4-9599-44BF-BA9E-95D060730DD3}" = Contrôle ActiveX Windows Live Mesh pour connexions à distance "{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack "{6057E21C-ABE9-4059-AE3E-3BEB9925E660}" = Windows Live Messenger "{62687B11-58B5-4A18-9BC3-9DF4CE03F194}" = Windows Live Writer Resources "{628D1C9F-996C-77ED-E1DE-651C94FC26ED}" = CCC Help Russian "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6A41468B-C711-3096-B245-25D3C1E99105}" = CCC Help French "{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}" = Windows Live Movie Maker "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.1.2.0 "{6F44AF95-3CDE-4513-AD3F-6D45F17BF324}" = HP Support Assistant "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core "{7EF92B4F-D492-B5BD-401E-D7B3F8D347DA}" = Catalyst Control Center Localization All "{802C068E-0576-4F25-8137-D54B7DB0FC5E}" = HP Setup "{8320860E-7D68-3A9F-BB98-16548AB43565}" = Catalyst Control Center Graphics Previews Common "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}" = Windows Live Mesh "{872B1C80-38EC-4A31-A25C-980820593900}" = HP Power Manager "{87C96E3F-9901-5BC4-663A-5FAD794EEFE9}" = CCC Help Portuguese "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}" = Ralink RT5390 802.11b/g/n WiFi Adapter "{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 "{95140000-00AF-0409-0000-0000000FF1CE}" = Microsoft PowerPoint Viewer "{97DD49B4-0163-3EAF-DF47-E33E0EAA99F2}" = CCC Help Korean "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9FAE6E8D-E686-49F5-A574-0A58DFD9580C}" = Windows Live Mail "{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh "{A1D025FD-8163-67CE-A19A-6771813B6EC3}" = CCC Help Japanese "{A58444A6-8C4B-D633-964E-95345A944E7D}" = CCC Help Swedish "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer "{AE69B8C2-00C7-44F8-D47E-AE4D88B9582E}" = CCC Help Thai "{AE856388-AFAD-4753-81DF-D96B19D0A17C}" = HP Setup Manager "{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support "{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo "{C10E6E2B-0D2F-8859-EF9D-6E21962A1BAB}" = CCC Help Czech "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "{C6579A65-9CAE-4B31-8B6B-3306E0630A66}" = Apple Software Update "{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail "{C7231F7C-6530-4E65-ADA6-5B392CF5BEB1}" = Recovery Manager "{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D88B4441-9C69-C30A-5E68-C5ED41BCA106}" = CCC Help Dutch "{DA07DA6D-8446-1CA9-B748-F63514412E8E}" = ccc-core-static "{DDBE0CF0-2F51-6094-3FBA-9A1DE5ADAAEA}" = CCC Help Hungarian "{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger "{ED1BD69A-07E3-418C-91F1-D856582581BF}" = HP On Screen Display "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F9A6B9F3-0948-8FD9-123C-D15FFB449EA0}" = CCC Help Finnish "{FD7F0DB8-0E96-4D64-AD4D-9B5A936AF2A8}" = LightScribe System Software "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.13 (Unicode) "DebugMode Wax 2.0" = DebugMode Wax 2.0 "Foxit Reader_is1" = Foxit Reader "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "LAME_is1" = LAME v3.99.3 (for Windows) "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.65.0.1400 "Mozilla Firefox 16.0.2 (x86 en-US)" = Mozilla Firefox 16.0.2 (x86 en-US) "MozillaMaintenanceService" = Mozilla Maintenance Service "My HP Game Console" = HP Game Console "Native Instruments Controller Editor" = Native Instruments Controller Editor "Native Instruments Guitar Rig 4" = Native Instruments Guitar Rig 4 "Native Instruments GuitarRig Mobile IO Driver" = Native Instruments GuitarRig Mobile IO Driver "Native Instruments Service Center" = Native Instruments Service Center "Native Instruments Session IO Driver" = Native Instruments Session IO Driver "Office14.Click2Run" = Microsoft Office Click-to-Run 2010 "Reason5_is1" = Reason 5.0 "Revo Uninstaller" = Revo Uninstaller 1.94 "VLC media player" = VLC media player 1.1.10 "WildTangent hp Master Uninstall" = HP Games "WinLiveSuite" = Windows Live Essentials "WT087328" = Blackhawk Striker 2 "WT087330" = Bounce Symphony "WT087343" = Dora's World Adventure "WT087361" = FATE "WT087362" = Final Drive Nitro "WT087394" = Penguins! "WT087395" = Poker Superstars III "WT087396" = Polar Bowler "WT087397" = Polar Golfer "WT087428" = Bejeweled 2 Deluxe "WT087453" = Chuzzle Deluxe "WT087501" = Plants vs. Zombies "WT087533" = Zuma Deluxe "WT089299" = Mystery P.I. - The London Caper "WT089300" = World Cup Cricket 20-20 "WT089307" = Virtual Villagers 4 - The Tree of Life "WT089308" = Blasterball 3 "WT089328" = Farm Frenzy "WT089359" = Cake Mania "WT089362" = Agatha Christie - Peril at End House "ZumoDrive" = HP CloudDrive [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 6/13/2012 2:02:33 PM | Computer Name = User-HP | Source = Microsoft-Windows-CAPI2 | ID = 4107 Description = Failed extract of third-party root list from auto update cab at: with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. . Error - 6/16/2012 5:57:02 AM | Computer Name = User-HP | Source = CVHSVC | ID = 100 Description = Information only. Error: There are currently no active network connections. Background Intelligent Transfer Service (BITS) will try again when an adapter is connected. ErrorCode: 14007(0x36b7). Error - 6/18/2012 11:25:38 PM | Computer Name = User-HP | Source = Application Error | ID = 1000 Description = Faulting application name: acid70.exe, version: 7.0.0.653, time stamp: 0x49dbb5ce Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b8f Exception code: 0xc0000005 Fault offset: 0x0002e3be Faulting process id: 0x1660 Faulting application start time: 0x01cd4dcb1b0261d3 Faulting application path: C:\Program Files (x86)\Sony\ACID Pro 7.0\acid70.exe Faulting module path: C:\Windows\SysWOW64\ntdll.dll Report Id: 700f36fb-b9be-11e1-a715-78e3b5500702 Error - 6/26/2012 1:59:55 AM | Computer Name = User-HP | Source = Application Error | ID = 1000 Description = Faulting application name: YouCam.exe, version: 3.2.3609.13981, time stamp: 0x4d0093ae Faulting module name: CLWebCameraSource.ax, version: 3.1.12997.3316, time stamp: 0x4c91c7b6 Exception code: 0xc0000005 Fault offset: 0x00027e90 Faulting process id: 0x1ae0 Faulting application start time: 0x01cd5360d28a3dc2 Faulting application path: C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe Faulting module path: C:\Program Files (x86)\CyberLink\YouCam\subsys\YouCam\CLWebCameraSource.ax Report Id: 268502a8-bf54-11e1-ad21-78e3b5500702 Error - 6/26/2012 2:27:39 PM | Computer Name = User-HP | Source = CVHSVC | ID = 100 Description = Information only. (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: There are currently no active network connections. Background Intelligent Transfer Service (BITS) will try again when an adapter is connected. Error - 7/1/2012 1:57:04 PM | Computer Name = User-HP | Source = CVHSVC | ID = 100 Description = Information only. Error: Initialization failed 0x80070424 Type: 88::UnexpectedError. Error - 7/1/2012 5:03:07 PM | Computer Name = User-HP | Source = CVHSVC | ID = 100 Description = Information only. (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: The server name or address could not be resolved Error - 7/3/2012 10:48:54 AM | Computer Name = User-HP | Source = Winlogon | ID = 4005 Description = The Windows logon process has unexpectedly terminated. Error - 7/11/2012 11:08:32 AM | Computer Name = User-HP | Source = CVHSVC | ID = 100 Description = Information only. (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: There are currently no active network connections. Background Intelligent Transfer Service (BITS) will try again when an adapter is connected. Error - 7/15/2012 9:12:36 PM | Computer Name = User-HP | Source = Application Error | ID = 1000 Description = Faulting application name: FlashPlayerPlugin_11_3_300_265.exe, version: 11.3.300.265, time stamp: 0x4febd5ac Faulting module name: NPSWF32_11_3_300_265.dll, version: 11.3.300.265, time stamp: 0x4febd798 Exception code: 0xc0000005 Fault offset: 0x004923d1 Faulting process id: 0x1018 Faulting application start time: 0x01cd62bcc3310388 Faulting application path: C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_265.exe Faulting module path: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_265.dll Report Id: 5374d325-cee3-11e1-af0c-78e3b5500702 [ Hewlett-Packard Events ] Error - 6/28/2011 4:06:17 PM | Computer Name = User-HP | Source = Hewlett-Packard | ID = 0 Description = Error - 9/12/2011 2:23:28 PM | Computer Name = User-HP | Source = Hewlett-Packard | ID = 0 Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\091112112324.xml File not created by asset agent Error - 1/2/2012 3:57:31 PM | Computer Name = User-HP | Source = Hewlett-Packard | ID = 0 Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\011202025659.xml File not created by asset agent Error - 7/9/2012 2:50:13 PM | Computer Name = User-HP | Source = HPSF.exe | ID = 4000 Description = [ HP Software Framework Events ] Error - 8/27/2012 12:33:54 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/08/27 12:33:54.019|000008F0|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 9/3/2012 1:25:41 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/09/03 13:25:41.263|00001510|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 9/10/2012 1:17:30 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/09/10 13:17:30.762|0000161C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 9/10/2012 1:19:12 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/09/10 13:19:12.602|00000D40|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 9/17/2012 2:14:19 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/09/17 14:14:19.379|0000141C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 9/24/2012 1:30:18 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/09/24 13:30:18.380|0000140C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 10/1/2012 1:39:12 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/10/01 13:39:12.680|00001588|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 10/8/2012 2:20:41 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/10/08 14:20:41.684|0000188C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 10/15/2012 11:11:46 AM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/10/15 11:11:46.658|00001018|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state Error - 11/12/2012 2:19:14 PM | Computer Name = User-HP | Source = CaslWmi | ID = 5 Description = 2012/11/12 13:19:14.245|000016C0|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error 0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state [ HP Wireless Assistant Events ] Error - 6/26/2011 6:48:58 PM | Computer Name = User-HP | Source = HP WA Service | ID = 0 Description = System.Runtime.InteropServices.COMException The RPC server is unavailable. (Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String propertyName) at HPPA_Service.CurrentConfiguration.b__c() Error - 6/26/2011 6:49:04 PM | Computer Name = User-HP | Source = HP WA Service | ID = 0 Description = System.Runtime.InteropServices.COMException The RPC server is unavailable. (Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String propertyName) at HPPA_Service.CurrentConfiguration.b__c() Error - 6/26/2011 6:50:09 PM | Computer Name = User-HP | Source = HP WA Service | ID = 0 Description = System.Runtime.InteropServices.COMException The RPC server is unavailable. (Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String propertyName) at HPPA_Service.CurrentConfiguration.b__c() Error - 6/26/2011 6:50:14 PM | Computer Name = User-HP | Source = HP WA Service | ID = 0 Description = System.Runtime.InteropServices.COMException The RPC server is unavailable. (Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String propertyName) at HPPA_Service.CurrentConfiguration.b__c() Error - 6/26/2011 6:51:20 PM | Computer Name = User-HP | Source = HP WA Service | ID = 0 Description = System.Runtime.InteropServices.COMException The RPC server is unavailable. (Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String propertyName) at HPPA_Service.CurrentConfiguration.b__c() Error - 6/26/2011 6:51:25 PM | Computer Name = User-HP | Source = HP WA Service | ID = 0 Description = System.Runtime.InteropServices.COMException The RPC server is unavailable. (Exception from HRESULT: 0x800706BA) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObject.Initialize(Boolean getObject) at System.Management.ManagementBaseObject.get_Properties() at System.Management.ManagementBaseObject.GetPropertyValue(String propertyName) at HPPA_Service.CurrentConfiguration.b__c() Error - 7/18/2011 2:38:43 AM | Computer Name = User-HP | Source = HP WA Service | ID = 0 Description = System.Runtime.InteropServices.COMException Call was canceled by the message filter. (Exception from HRESULT: 0x80010002 (RPC_E_CALL_CANCELED)) at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo) at System.Management.ManagementScope.InitializeGuts(Object o) at System.Management.ManagementScope.Initialize() at System.Management.ManagementObjectSearcher.Initialize() at System.Management.ManagementObjectSearcher.Get() at HPPA_Service.CurrentConfiguration.FindDevice(String hostPath, String portName) at HPPA_Service.CurrentConfiguration.b__9(RadioHardware radio) at System.Linq.Enumerable.WhereSelectListIterator`2.MoveNext() at System.Linq.Enumerable.WhereSelectEnumerableIterator`2.MoveNext() at HPPA_Service.CurrentConfiguration.ReloadRadioList() Error - 12/23/2011 1:30:31 PM | Computer Name = User-HP | Source = HP WA Application | ID = 0 Description = System.Exception HardwareAccess hasn't been instantiated properly. at PAProgramAccess.Impl.UpdatePowerSchemeInformation(PowerScheme powerScheme) Error - 3/22/2012 2:10:12 PM | Computer Name = User-HP | Source = HP WA Application | ID = 0 Description = System.Exception HardwareAccess hasn't been instantiated properly. at PAProgramAccess.Impl.UpdatePowerSchemeInformation(PowerScheme powerScheme) Error - 9/23/2012 1:29:46 PM | Computer Name = User-HP | Source = HP WA Application | ID = 0 Description = System.Exception HardwareAccess hasn't been instantiated properly. at PAProgramAccess.Impl.UpdatePowerSchemeInformation(PowerScheme powerScheme) [ System Events ] Error - 11/7/2012 5:43:07 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/8/2012 5:10:18 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/9/2012 5:48:07 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/10/2012 6:26:31 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/10/2012 9:15:03 PM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/12/2012 4:54:05 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/13/2012 6:30:15 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/14/2012 6:41:34 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/15/2012 5:46:35 AM | Computer Name = User-HP | Source = DCOM | ID = 10010 Description = Error - 11/15/2012 3:46:47 PM | Computer Name = User-HP | Source = Microsoft Antimalware | ID = 2001 Description = %%860 has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.139.1999.0 Update Source: %%859 Update Stage: %%852 Source Path: http://www.microsoft.com Signature Type: %%800 Update Type: %%803 User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.8904.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support. < End of report >