Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

WIN XP PRO SP2; PLEASE HELP!


  • Please log in to reply

#1
JoKeR

JoKeR

    Member

  • Member
  • PipPip
  • 60 posts
Things going wrong, Iím very frustrated. PLEASE HELP!

Problem 1: When I try to run some applications such as System Restore and Norton Internet Security, the windows open up with no contents. System Restore, Norton Internet Security and TurboLister (eBay auction listing software). All of them start up, but the only thing that shows up is the window with just a blank white page.
Note: Screenshot of problem is attached.

Problem 2: All WebPages and links that are JavaScript enabled are not showing up. I have the latest Sun Java installed and enabled in both browsers (Firefox and IE). But links in WebPages like this one do not load http://v5.windowsupd...t.aspx?ln=en-us the only thing that shows up after clicking those links is java script:parent.fnExpressScan();

I did a spyware scan and it turned out with zero results. I have Ad-aware, Spyware Doctor and Microsoft AntiSpyWare Beta 1, all installed on my computer so Iím protected there. A virus scan came back zero as well. Checked for Trojans, nothing there. I have no idea whatís wrong. I wanted to use System Restore to fix all this, but itís not working. Thatís why Iím asking you guys to help, so please do.

Iím guessing that all this is happening, because of somethingís wrong in the registry. What do you think?

Here is log:

Logfile of HijackThis v1.99.1
Scan saved at 2:57:59 PM, on 3/20/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\CTSvcCDA.EXE
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program Files\Grisoft\AVG Free\avgcc.exe
C:\Documents and Settings\Artem\My Documents\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://comcast.net/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
O1 - Hosts: 64.91.255.87 www.dcsresearch.com
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} - http://www.comcastsu...oad/tgctlcm.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.syma...bin/AvSniff.cab
O16 - DPF: {E93A6FCA-C052-45DF-AC9B-B729066092F8} (Util Class) - https://isupport4.hp...her/MotUtil.cab
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTSvcCDA.EXE
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe



;) :tazz:
  • 0

Advertisements


#2
JoKeR

JoKeR

    Member

  • Topic Starter
  • Member
  • PipPip
  • 60 posts
:tazz:
  • 0

#3
gerryf

gerryf

    Retired Staff

  • Retired Staff
  • 11,365 posts
patience grasshopper

download and reinstall the MS scripting engine.
http://www.microsoft...&displaylang=en

If that fails, try to reregister these dynamic link libraries

Start > Run > cmd
type each line, then hit enter
regsvr32 srclient.dll /s
regsvr32 srrstr.dll /s
regsvr32 srsvc.dll /s

reboot.

See if that fixes it
  • 0

#4
JoKeR

JoKeR

    Member

  • Topic Starter
  • Member
  • PipPip
  • 60 posts
:tazz: Thank you for replying.

Neither of your procedures worked. System Restore still shows a blank window.

BTW, I've tried starting this thing up in Safe Mode it didn't work. But after pressing F8 and selecting safe mode, a screen popped up. I managed to take a picture of it. Can anyone tell me what it is? (Picture is attached)
  • 0

#5
gerryf

gerryf

    Retired Staff

  • Retired Staff
  • 11,365 posts
those are your hardware drivers loading....nothing to do with your problem

What are the contents of your C:\WINDOWS\system32\Restore directory?
  • 0

#6
JoKeR

JoKeR

    Member

  • Topic Starter
  • Member
  • PipPip
  • 60 posts
it's attached. Thank you for helping me out! :tazz:
  • 0

#7
gerryf

gerryf

    Retired Staff

  • Retired Staff
  • 11,365 posts
interesting...you have three text files that begin with sr-*****

Those are not normal. I'd open those up in notepad and see what they say.

Also, you are missing an important file that is hidden by default. Do you have windows set up to show hidden files and folders and system files and folders. It is called filelist.xml
  • 0

#8
JoKeR

JoKeR

    Member

  • Topic Starter
  • Member
  • PipPip
  • 60 posts
Yes. My computer is set to view hidden files, so I guess I'm missing filelist.xml
Here are those SR files.
:tazz:
<br>
Here is SR-Reg.txt


<br>


[Software\Microsoft\Windows NT\CurrentVersion]
"SubVersionNumber"=REG_SZ:
"CurrentBuild"=REG_SZ:1.511.1 () (Obsolete data - do not use)
"InstallDate"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1098315463
"ProductName"=REG_SZ:Microsoft Windows XP
"RegDone"=REG_SZ:1
"RegisteredOrganization"=REG_SZ:
"RegisteredOwner"=REG_SZ:Artem Nikulkov
"SoftwareType"=REG_SZ:SYSTEM
"CurrentVersion"=REG_SZ:5.1
"CurrentBuildNumber"=REG_SZ:2600
"BuildLab"=REG_SZ:2600.xpsp_sp2_rtm.040803-2158
"CurrentType"=REG_SZ:Multiprocessor Free
"CSDVersion"=REG_SZ:Service Pack 2
"SystemRoot"=REG_SZ:C:\WINDOWS
"SourcePath"=REG_SZ:F:\I386
"PathName"=REG_SZ:C:\WINDOWS
"ProductId"=REG_SZ:55274-007-9898161-22689
"DigitalProductId"=REG_BINARY:§
"LicenseInfo"=REG_BINARY:

[Software\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0
"CreateFirstRunRp"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1
"DSMin"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:200
"DSMax"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:400
"RPSessionInterval"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0
"RPGlobalInterval"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:86400
"RPLifeInterval"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:7776000
"CompressionBurst"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:60
"TimerInterval"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:120
"DiskPercent"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:12
"ThawInterval"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:900
"RestoreDiskSpaceError"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0
"RestoreStatus"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1
"RestoreSafeModeStatus"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0

[Software\Microsoft\Windows NT\CurrentVersion\SystemRestore\Cfg]
"DiskPercent"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:12
"MachineGuid"=REG_SZ:{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}

[Software\Microsoft\Windows NT\CurrentVersion\SystemRestore\SnapshotCallbacks]
""=REG_SZ:

[System\CurrentControlSet\Services\SR]
"Type"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:2
"Start"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0
"ErrorControl"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1
"Tag"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:4
"ImagePath"=REG_EXPAND_SZ:System32\DRIVERS\sr.sys
"DisplayName"=REG_SZ:System Restore Filter Driver
"Group"=REG_SZ:FSFilter System Recovery

[System\CurrentControlSet\Services\SR\Parameters]
"FirstRun"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0
"DontBackup"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0
"MachineGuid"=REG_SZ:{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}

[System\CurrentControlSet\Services\SR\Security]
"Security"=REG_BINARY:

[System\CurrentControlSet\Services\SR\Enum]
"0"=REG_SZ:Root\LEGACY_SR\0000
"Count"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1
"NextInstance"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1

[System\CurrentControlSet\Services\SRService]
"Type"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:32
"Start"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:2
"ErrorControl"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1
"ImagePath"=REG_EXPAND_SZ:%SystemRoot%\System32\svchost.exe -k netsvcs
"DisplayName"=REG_SZ:System Restore Service
"DependOnService"=REG_MULTI_SZ:RpcSs
"DependOnGroup"=REG_MULTI_SZ:
"ObjectName"=REG_SZ:LocalSystem

[System\CurrentControlSet\Services\SRService\Parameters]
"ServiceDll"=REG_EXPAND_SZ:C:\WINDOWS\System32\srsvc.dll

[System\CurrentControlSet\Services\SRService\Security]
"Security"=REG_BINARY:

[System\CurrentControlSet\Services\SRService\Enum]
"0"=REG_SZ:Root\LEGACY_SRSERVICE\0000
"Count"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1
"NextInstance"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1

[Software\Policies\Microsoft\Windows NT\SystemRestore]

<br>
Here is SR-RP.log
<br>



Processing Mount Point [C:\]
DirectoryName=RP81, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=81l, Date=Wednesday December 22, 2004 1:52:14
DirectoryName=RP82, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=82l, Date=Thursday December 23, 2004 18:7:31
DirectoryName=RP83, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=83l, Date=Thursday December 23, 2004 18:46:44
DirectoryName=RP84, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=84l, Date=Thursday December 23, 2004 18:50:46
DirectoryName=RP85, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=85l, Date=Friday December 24, 2004 20:43:15
DirectoryName=RP86, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=86l, Date=Saturday December 25, 2004 22:45:54
DirectoryName=RP87, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=87l, Date=Monday December 27, 2004 0:0:22
DirectoryName=RP88, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=88l, Date=Tuesday December 28, 2004 0:35:51
DirectoryName=RP89, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=89l, Date=Wednesday December 29, 2004 2:18:35
DirectoryName=RP90, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=90l, Date=Friday January 7, 2005 22:48:3
DirectoryName=RP91, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=91l, Date=Sunday January 9, 2005 2:42:34
DirectoryName=RP92, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=92l, Date=Monday January 10, 2005 23:54:22
DirectoryName=RP93, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=93l, Date=Wednesday January 12, 2005 0:21:6
DirectoryName=RP94, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=94l, Date=Thursday January 13, 2005 22:45:9
DirectoryName=RP95, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=95l, Date=Saturday January 15, 2005 2:30:41
DirectoryName=RP96, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=96l, Date=Sunday January 16, 2005 17:49:7
DirectoryName=RP97, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=97l, Date=Monday January 17, 2005 18:20:30
DirectoryName=RP98, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=98l, Date=Tuesday January 18, 2005 22:52:48
DirectoryName=RP99, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=99l, Date=Thursday January 20, 2005 1:5:52
DirectoryName=RP100, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=100l, Date=Friday January 21, 2005 16:49:38
DirectoryName=RP101, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=101l, Date=Saturday January 22, 2005 17:41:1
DirectoryName=RP102, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=102l, Date=Sunday January 23, 2005 6:3:0
DirectoryName=RP103, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=103l, Date=Sunday January 23, 2005 14:37:44
DirectoryName=RP104, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=104l, Date=Monday January 24, 2005 19:24:4
DirectoryName=RP105, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=105l, Date=Wednesday January 26, 2005 0:20:28
DirectoryName=RP106, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=106l, Date=Thursday January 27, 2005 3:17:14
DirectoryName=RP107, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=107l, Date=Friday January 28, 2005 23:8:34
DirectoryName=RP108, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed 4200, RestorePointStatus=[VALID], Number=108l, Date=Saturday January 29, 2005 23:40:51
DirectoryName=RP109, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed 4200Tour, RestorePointStatus=[VALID], Number=109l, Date=Saturday January 29, 2005 23:40:59
DirectoryName=RP110, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed 4200_Help, RestorePointStatus=[VALID], Number=110l, Date=Saturday January 29, 2005 23:41:6
DirectoryName=RP111, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed 4200Trb, RestorePointStatus=[VALID], Number=111l, Date=Saturday January 29, 2005 23:41:12
DirectoryName=RP112, Size=0, Type=10[DEVICE_DRIVER_CHANGE], RestorePointName=Printer Driver hp officejet 4200 series fax Installed, RestorePointStatus=[VALID], Number=112l, Date=Saturday January 29, 2005 23:41:21
DirectoryName=RP113, Size=0, Type=1[APPLICATION_UNINSTALL], RestorePointName=Removed HP Software Update, RestorePointStatus=[VALID], Number=113l, Date=Saturday January 29, 2005 23:56:32
DirectoryName=RP114, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=, RestorePointStatus=[VALID], Number=114l, Date=Saturday January 29, 2005 23:56:40
DirectoryName=RP115, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=115l, Date=Sunday January 30, 2005 23:57:44
DirectoryName=RP116, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=116l, Date=Monday January 31, 2005 4:54:50
DirectoryName=RP117, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=117l, Date=Monday January 31, 2005 14:8:38
DirectoryName=RP118, Size=0, Type=6[RESTORE], RestorePointName=Restore Operation, RestorePointStatus=[VALID], Number=118l, Date=Monday January 31, 2005 17:11:8
DirectoryName=RP119, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=119l, Date=Tuesday Feburary 1, 2005 22:27:43
DirectoryName=RP120, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Kazaa 3.0, RestorePointStatus=[VALID], Number=120l, Date=Wednesday Feburary 2, 2005 5:24:51
DirectoryName=RP121, Size=0, Type=6[RESTORE], RestorePointName=Restore Operation, RestorePointStatus=[VALID], Number=121l, Date=Wednesday Feburary 2, 2005 5:33:12
DirectoryName=RP122, Size=0, Type=6[RESTORE], RestorePointName=Restore Operation, RestorePointStatus=[VALID], Number=122l, Date=Wednesday Feburary 2, 2005 22:13:16
DirectoryName=RP123, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=123l, Date=Wednesday Feburary 2, 2005 23:22:19
DirectoryName=RP124, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=124l, Date=Thursday Feburary 3, 2005 23:37:38
DirectoryName=RP125, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=125l, Date=Saturday Feburary 5, 2005 4:55:28
DirectoryName=RP126, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=126l, Date=Sunday Feburary 6, 2005 16:46:34
DirectoryName=RP127, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=127l, Date=Sunday Feburary 6, 2005 22:11:14
DirectoryName=RP128, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Kaspersky Anti-Virus Personal Pro, RestorePointStatus=[VALID], Number=128l, Date=Sunday Feburary 6, 2005 22:26:21
DirectoryName=RP129, Size=0, Type=12[MODIFY_SETTINGS], RestorePointName=Configured Kaspersky Anti-Virus Personal Pro, RestorePointStatus=[VALID], Number=129l, Date=Sunday Feburary 6, 2005 23:48:1
DirectoryName=RP130, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Prevx Home, RestorePointStatus=[VALID], Number=130l, Date=Monday Feburary 7, 2005 0:1:8
DirectoryName=RP131, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=131l, Date=Tuesday Feburary 8, 2005 3:3:40
DirectoryName=RP132, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Nomad Jukebox Zen NX, RestorePointStatus=[VALID], Number=132l, Date=Tuesday Feburary 8, 2005 22:44:52
DirectoryName=RP133, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed NOMAD Explorer, RestorePointStatus=[VALID], Number=133l, Date=Tuesday Feburary 8, 2005 22:45:5
DirectoryName=RP134, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=134l, Date=Tuesday Feburary 8, 2005 22:46:21
DirectoryName=RP135, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed E-Center, RestorePointStatus=[VALID], Number=135l, Date=Tuesday Feburary 8, 2005 22:52:38
DirectoryName=RP136, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=136l, Date=Tuesday Feburary 8, 2005 22:52:46
DirectoryName=RP137, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=137l, Date=Tuesday Feburary 8, 2005 22:55:59
DirectoryName=RP138, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=138l, Date=Tuesday Feburary 8, 2005 22:56:57
DirectoryName=RP139, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=139l, Date=Tuesday Feburary 8, 2005 22:57:9
DirectoryName=RP140, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=140l, Date=Tuesday Feburary 8, 2005 22:57:23
DirectoryName=RP141, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=141l, Date=Tuesday Feburary 8, 2005 22:57:34
DirectoryName=RP142, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=142l, Date=Tuesday Feburary 8, 2005 22:58:0
DirectoryName=RP143, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=143l, Date=Tuesday Feburary 8, 2005 22:58:12
DirectoryName=RP144, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=144l, Date=Tuesday Feburary 8, 2005 22:58:23
DirectoryName=RP145, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Your Application Name, RestorePointStatus=[VALID], Number=145l, Date=Tuesday Feburary 8, 2005 22:58:35
DirectoryName=RP146, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=146l, Date=Friday Feburary 11, 2005 3:11:43
DirectoryName=RP147, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=147l, Date=Saturday Feburary 12, 2005 17:10:28
DirectoryName=RP148, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=148l, Date=Sunday Feburary 13, 2005 19:42:53
DirectoryName=RP149, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=149l, Date=Sunday Feburary 13, 2005 22:53:23
DirectoryName=RP150, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=150l, Date=Sunday Feburary 13, 2005 23:39:36
DirectoryName=RP151, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=151l, Date=Tuesday Feburary 15, 2005 0:49:25
DirectoryName=RP152, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=152l, Date=Wednesday Feburary 16, 2005 3:50:33
DirectoryName=RP153, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=153l, Date=Thursday Feburary 17, 2005 15:48:0
DirectoryName=RP154, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=154l, Date=Friday Feburary 18, 2005 16:18:8
DirectoryName=RP155, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Grand Theft Auto Vice City, RestorePointStatus=[VALID], Number=155l, Date=Friday Feburary 18, 2005 16:45:37
DirectoryName=RP156, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=156l, Date=Saturday Feburary 19, 2005 3:24:36
DirectoryName=RP157, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=157l, Date=Saturday Feburary 19, 2005 15:45:54
DirectoryName=RP158, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Fireworks, RestorePointStatus=[VALID], Number=158l, Date=Saturday Feburary 19, 2005 17:48:41
DirectoryName=RP159, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Dreamweaver MX 2004, RestorePointStatus=[VALID], Number=159l, Date=Saturday Feburary 19, 2005 17:51:59
DirectoryName=RP160, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Extension Manager, RestorePointStatus=[VALID], Number=160l, Date=Saturday Feburary 19, 2005 17:53:45
DirectoryName=RP161, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Dreamweaver MX 2004 7.0.1 Updater, RestorePointStatus=[VALID], Number=161l, Date=Saturday Feburary 19, 2005 17:54:51
DirectoryName=RP162, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=162l, Date=Sunday Feburary 20, 2005 21:19:30
DirectoryName=RP163, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=163l, Date=Tuesday Feburary 22, 2005 3:16:26
DirectoryName=RP164, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=164l, Date=Wednesday Feburary 23, 2005 19:35:37
DirectoryName=RP165, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Software Distribution Service 2.0, RestorePointStatus=[VALID], Number=165l, Date=Wednesday Feburary 23, 2005 23:17:20
DirectoryName=RP166, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=166l, Date=Friday Feburary 25, 2005 2:16:36
DirectoryName=RP167, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=167l, Date=Friday Feburary 25, 2005 4:36:27
DirectoryName=RP168, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=168l, Date=Saturday Feburary 26, 2005 16:13:53
DirectoryName=RP169, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Shockwave Player, RestorePointStatus=[VALID], Number=169l, Date=Sunday Feburary 27, 2005 4:21:35
DirectoryName=RP170, Size=0, Type=13[CANCELLED_OPERATION], RestorePointName=Shockwave Player, RestorePointStatus=[Cancelled], Number=170l, Date=Sunday Feburary 27, 2005 4:23:23
DirectoryName=RP171, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed USPS Shipping Assistant, RestorePointStatus=[VALID], Number=171l, Date=Monday Feburary 28, 2005 5:21:43
DirectoryName=RP172, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=172l, Date=Tuesday March 1, 2005 22:24:26
DirectoryName=RP173, Size=0, Type=7[CHECKPOINT], RestorePointName=System Checkpoint, RestorePointStatus=[VALID], Number=173l, Date=Wednesday March 2, 2005 22:47:26
DirectoryName=RP174, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Installed Kazaa 3.0, RestorePointStatus=[VALID], Number=174l, Date=Thursday March 3, 2005 3:38:37
DirectoryName=RP175, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=175l, Date=Thursday March 3, 2005 5:38:27
DirectoryName=RP176, Size=0, Type=0[APPLICATION_INSTALL], RestorePointName=Spybot-S&D Spyware removal, RestorePointStatus=[VALID], Number=176l, Date=Thursday March 3, 2005 5:38:39
<br>

Here is SR-RstrLog.txt

<br>


Flags, <none>
Restore Point, 118
New Restore RP, 122
# of Drives, 1
00000001, \\?\Volume{e39764a8-22bb-11d9-8e97-806d6172696f}\, C:,
0, 0,86010, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings\Application Data, ,
1, 1,86009, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings, ,
2, 2,86008, Modify, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022216.ini,
3, 3,86008, SetACL, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, ,
4, 4,86008, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, ,
5, 5,86007, Attrib, OK, 0, C:\Documents and Settings\Artem\ntuser.ini, ,
6, 6,86006, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_symlcui_4.0_english, ,
7, 7,86006, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_symlcui_4.0_english, ,
8, 8,86006, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_symlcui_4.0_english, ,
9, 9,86005, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_symlcui_4.0_english, ,
10, 10,86004, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_spam$20def_1.0_english, ,
11, 11,86004, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_spam$20def_1.0_english, ,
12, 12,86004, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_spam$20def_1.0_english, ,
13, 13,86003, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_spam$20def_1.0_english, ,
14, 14,86002, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20user$20interface_1.2_english, ,
15, 15,86002, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20user$20interface_1.2_english, ,
16, 16,86002, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20user$20interface_1.2_english, ,
17, 17,86001, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20user$20interface_1.2_english, ,
18, 18,86000, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20shared_1.2_english, ,
19, 19,86000, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20shared_1.2_english, ,
20, 20,86000, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20shared_1.2_english, ,
21, 21,85999, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20shared_1.2_english, ,
22, 22,85998, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20master$20patch_0.1_english, ,
23, 23,85998, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20master$20patch_0.1_english, ,
24, 24,85998, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20master$20patch_0.1_english, ,
25, 25,85997, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20master$20patch_0.1_english, ,
26, 26,85996, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20core_1.2_english, ,
27, 27,85996, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20core_1.2_english, ,
28, 28,85996, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20core_1.2_english, ,
29, 29,85995, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20core_1.2_english, ,
30, 30,85994, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security_7.0.6.1_english, ,
31, 31,85994, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security_7.0.6.1_english, ,
32, 32,85994, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security_7.0.6.1_english, ,
33, 33,85993, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security_7.0.6.1_english, ,
34, 34,85992, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20url_1.0_english, ,
35, 35,85992, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20url_1.0_english, ,
36, 36,85992, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20url_1.0_english, ,
37, 37,85991, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20url_1.0_english, ,
38, 38,85990, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20other_1.0_english, ,
39, 39,85990, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20other_1.0_english, ,
40, 40,85990, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20other_1.0_english, ,
41, 41,85989, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20other_1.0_english, ,
42, 42,85988, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20ids$20signatures_2.0_english, ,
43, 43,85988, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20ids$20signatures_2.0_english, ,
44, 44,85988, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20ids$20signatures_2.0_english, ,
45, 45,85987, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20ids$20signatures_2.0_english, ,
46, 46,85986, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_navnt_10.00.10_english, ,
47, 47,85986, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_navnt_10.00.10_english, ,
48, 48,85986, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_navnt_10.00.10_english, ,
49, 49,85985, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_navnt_10.00.10_english, ,
50, 50,85984, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.nov_symalllanguages, ,
51, 51,85984, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.nov_symalllanguages, ,
52, 52,85984, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.nov_symalllanguages, ,
53, 53,85983, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.nov_symalllanguages, ,
54, 54,85982, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.curdefs_symalllanguages, ,
55, 55,85982, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.curdefs_symalllanguages, ,
56, 56,85982, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.curdefs_symalllanguages, ,
57, 57,85981, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.curdefs_symalllanguages, ,
58, 58,85980, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fintegratorcategoryhook_4.0_english, ,
59, 59,85980, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fintegratorcategoryhook_4.0_english, ,
60, 60,85980, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fintegratorcategoryhook_4.0_english, ,
61, 61,85979, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fintegratorcategoryhook_4.0_english, ,
62, 62,85978, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fcom$5fmodules_4.0_english, ,
63, 63,85978, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fcom$5fmodules_4.0_english, ,
64, 64,85978, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fcom$5fmodules_4.0_english, ,
65, 65,85977, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fcom$5fmodules_4.0_english, ,
66, 66,85976, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_djsalert_4.0_english, ,
67, 67,85976, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_djsalert_4.0_english, ,
68, 68,85976, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_djsalert_4.0_english, ,
69, 69,85975, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_djsalert_4.0_english, ,
70, 70,85974, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_cfgwiz_4.0_english, ,
71, 71,85974, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_cfgwiz_4.0_english, ,
72, 72,85974, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_cfgwiz_4.0_english, ,
73, 73,85973, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_cfgwiz_4.0_english, ,
74, 74,85972, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ccpd$5fretail$5flicensing$5ftechnology_4.0_english, ,
75, 75,85972, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ccpd$5fretail$5flicensing$5ftechnology_4.0_english, ,
76, 76,85972, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ccpd$5fretail$5flicensing$5ftechnology_4.0_english, ,
77, 77,85971, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ccpd$5fretail$5flicensing$5ftechnology_4.0_english, ,
78, 78,85970, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.jan_symalllanguages, ,
79, 79,85970, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.jan_symalllanguages, ,
80, 80,85970, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.jan_symalllanguages, ,
81, 81,85969, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.jan_symalllanguages, ,
82, 82,85968, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
83, 83,85968, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
84, 84,85968, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
85, 85,85967, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
86, 86,85966, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_automatic$20liveupdate_2.5.55_english, ,
87, 87,85966, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_automatic$20liveupdate_2.5.55_english, ,
88, 88,85966, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_automatic$20liveupdate_2.5.55_english, ,
89, 89,85965, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_automatic$20liveupdate_2.5.55_english, ,
90, 90,85964, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_antispam$20feature_2004.1.04_english, ,
91, 91,85964, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_antispam$20feature_2004.1.04_english, ,
92, 92,85964, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_antispam$20feature_2004.1.04_english, ,
93, 93,85963, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_antispam$20feature_2004.1.04_english, ,
94, 94,85962, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_actres_4.0_english, ,
95, 95,85962, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_actres_4.0_english, ,
96, 96,85962, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_actres_4.0_english, ,
97, 97,85961, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_actres_4.0_english, ,
98, 98,85960, DirAdd, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp46e8.tmp, ,
99, 99,85960, SetACL, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp46e8.tmp, ,
100, 100,85960, Attrib, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp46e8.tmp, ,
101, 101,85959, DirAdd, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp53f1.tmp, ,
102, 102,85959, SetACL, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp53f1.tmp, ,
103, 103,85959, Attrib, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp53f1.tmp, ,
104, 104,85958, DirAdd, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\Item2112_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
105, 105,85958, SetACL, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\Item2112_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
106, 106,85958, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\Item2112_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
107, 107,85957, Attrib, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\Item2112_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
108, 108,85956, Create, Optimized, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\Item2112_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages\CUR.SCR, ,
109, 109,85955, Delete, Not Found, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\Item2112_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages\CUR.SCR, ,
110, 110,85954, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\Item2112_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
111, 111,85953, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.curdefs_symalllanguages, ,
112, 112,85952, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ids$20defs$202004$20microdefs25_microdefsb.nov_symalllanguages, ,
113, 113,85951, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20core_1.2_english, ,
114, 114,85950, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20user$20interface_1.2_english, ,
115, 115,85949, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20shared_1.2_english, ,
116, 116,85948, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_automatic$20liveupdate_2.5.55_english, ,
117, 117,85947, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20wmi$20master$20patch_0.1_english, ,
118, 118,85946, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.curdefs_symalllanguages, ,
119, 119,85945, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_navnt_10.00.10_english, ,
120, 120,85944, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_avenge$201.5$20microdefs2$20nav2004_microdefsb.jan_symalllanguages, ,
121, 121,85943, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20url_1.0_english, ,
122, 122,85942, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20ids$20signatures_2.0_english, ,
123, 123,85941, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security$20other_1.0_english, ,
124, 124,85940, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_norton$20internet$20security_7.0.6.1_english, ,
125, 125,85939, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_spam$20def_1.0_english, ,
126, 126,85938, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_antispam$20feature_2004.1.04_english, ,
127, 127,85937, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_ccpd$5fretail$5flicensing$5ftechnology_4.0_english, ,
128, 128,85936, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_symlcui_4.0_english, ,
129, 129,85935, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fcom$5fmodules_4.0_english, ,
130, 130,85934, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_djsalert_4.0_english, ,
131, 131,85933, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_actres_4.0_english, ,
132, 132,85932, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_cfgwiz_4.0_english, ,
133, 133,85931, DirDel, OK, 0, C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\TriFile_drm$5fintegratorcategoryhook_4.0_english, ,
134, 134,85930, DirDel, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp46e8.tmp, ,
135, 135,85929, DirDel, OK, 0, C:\Program Files\Common Files\Symantec Shared\SymcData\idsdefs\tmp53f1.tmp, ,
136, 136,85928, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\Application Data, ,
137, 137,85927, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings, ,
138, 138,85926, Modify, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022215.ini,
139, 139,85926, SetACL, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
140, 140,85926, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
141, 141,85925, Attrib, OK, 0, C:\Documents and Settings\Mama\ntuser.ini, ,
142, 142,85924, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\Application Data, ,
143, 143,85923, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings, ,
144, 144,85922, Modify, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022214.ini,
145, 145,85922, SetACL, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
146, 146,85922, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
147, 147,85921, Attrib, OK, 0, C:\Documents and Settings\LocalService\ntuser.ini, ,
148, 148,85920, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\Application Data, ,
149, 149,85919, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings, ,
150, 150,85918, Modify, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022213.ini,
151, 151,85918, SetACL, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
152, 152,85918, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
153, 153,85917, Attrib, OK, 0, C:\Documents and Settings\NetworkService\ntuser.ini, ,
154, 154,85916, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\Application Data, ,
155, 155,85915, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings, ,
156, 156,85914, Modify, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022212.ini,
157, 157,85914, SetACL, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
158, 158,85914, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
159, 159,85913, Attrib, OK, 0, C:\Documents and Settings\Mama\ntuser.ini, ,
160, 160,85912, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\Application Data, ,
161, 161,85911, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings, ,
162, 162,85910, Modify, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022211.ini,
163, 163,85910, SetACL, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
164, 164,85910, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
165, 165,85909, Attrib, OK, 0, C:\Documents and Settings\LocalService\ntuser.ini, ,
166, 166,85908, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\Application Data, ,
167, 167,85907, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings, ,
168, 168,85906, Modify, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022210.ini,
169, 169,85906, SetACL, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
170, 170,85906, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
171, 171,85905, Attrib, OK, 0, C:\Documents and Settings\NetworkService\ntuser.ini, ,
172, 172,85904, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings\Application Data, ,
173, 173,85903, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings, ,
174, 174,85902, Modify, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022209.ini,
175, 175,85902, SetACL, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, ,
176, 176,85902, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, ,
177, 177,85901, Attrib, OK, 0, C:\Documents and Settings\Artem\ntuser.ini, ,
178, 178,85900, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\Application Data, ,
179, 179,85899, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings, ,
180, 180,85898, Modify, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022208.ini,
181, 181,85898, SetACL, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
182, 182,85898, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
183, 183,85897, Attrib, OK, 0, C:\Documents and Settings\Mama\ntuser.ini, ,
184, 184,85896, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\Application Data, ,
185, 185,85895, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings, ,
186, 186,85894, Modify, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022207.ini,
187, 187,85894, SetACL, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
188, 188,85894, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
189, 189,85893, Attrib, OK, 0, C:\Documents and Settings\LocalService\ntuser.ini, ,
190, 190,85892, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\Application Data, ,
191, 191,85891, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings, ,
192, 192,85890, Modify, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022206.ini,
193, 193,85890, SetACL, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
194, 194,85890, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
195, 195,85889, Attrib, OK, 0, C:\Documents and Settings\NetworkService\ntuser.ini, ,
196, 196,85888, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\Application Data, ,
197, 197,85887, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings, ,
198, 198,85886, Modify, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022205.ini,
199, 199,85886, SetACL, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
200, 200,85886, Attrib, OK, 0, C:\Documents and Settings\Mama\Local Settings\desktop.ini, ,
201, 201,85885, Attrib, OK, 0, C:\Documents and Settings\Mama\ntuser.ini, ,
202, 202,85884, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\Application Data, ,
203, 203,85883, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings, ,
204, 204,85882, Modify, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022204.ini,
205, 205,85882, SetACL, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
206, 206,85882, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, ,
207, 207,85881, Attrib, OK, 0, C:\Documents and Settings\LocalService\ntuser.ini, ,
208, 208,85880, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\Application Data, ,
209, 209,85879, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings, ,
210, 210,85878, Modify, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022203.ini,
211, 211,85878, SetACL, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
212, 212,85878, Attrib, OK, 0, C:\Documents and Settings\NetworkService\Local Settings\desktop.ini, ,
213, 213,85877, Attrib, OK, 0, C:\Documents and Settings\NetworkService\ntuser.ini, ,
214, 214,85876, DirAdd, OK, 0, C:\Program Files\NewDotNet, ,
215, 215,85876, SetACL, OK, 0, C:\Program Files\NewDotNet, ,
216, 216,85876, Attrib, OK, 0, C:\Program Files\NewDotNet, ,
217, 217,85875, Create, OK, 0, C:\Program Files\NewDotNet\newdotnet6_38.dll, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022202.dll,
218, 218,85875, SetACL, OK, 0, C:\Program Files\NewDotNet\newdotnet6_38.dll, ,
219, 219,85875, Attrib, OK, 0, C:\Program Files\NewDotNet\newdotnet6_38.dll, ,
220, 220,85874, Create, OK, 0, C:\Program Files\NewDotNet\uninstall6_38.exe, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022201.exe,
221, 221,85874, SetACL, OK, 0, C:\Program Files\NewDotNet\uninstall6_38.exe, ,
222, 222,85874, Attrib, OK, 0, C:\Program Files\NewDotNet\uninstall6_38.exe, ,
223, 223,85873, Attrib, OK, 0, C:\Program Files\NewDotNet, ,
224, 224,85872, DirRen, OK, 0, C:\Documents and Settings\Artem\Start Menu\Programs\Kazaa, C:\RECYCLER\S-1-5-21-1454471165-57989841-725345543-1003\Dc2,
225, 225,85871, DirRen, OK, 0, C:\Documents and Settings\All Users\Start Menu\Programs\GAIN Publishing, C:\RECYCLER\S-1-5-21-1454471165-57989841-725345543-1003\Dc1,
226, 226,85870, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings\Application Data, ,
227, 227,85869, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings, ,
228, 228,85868, Modify, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022200.ini,
229, 229,85868, SetACL, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, ,
230, 230,85868, Attrib, OK, 0, C:\Documents and Settings\Artem\Local Settings\desktop.ini, ,
231, 231,85867, Attrib, OK, 0, C:\Documents and Settings\Artem\ntuser.ini, ,
232, 232,85866, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings\Application Data, ,
233, 233,85865, Attrib, OK, 0, C:\Documents and Settings\LocalService\Local Settings, ,
234, 234,85864, Modify, OK, 0, C:\Documents and Settings\LocalService\Local Settings\desktop.ini, C:\System Volume Information\_restore{3A6470E1-8FD5-4C86-A59E-CA6A70C76E9C}\RP121\A0022199.
  • 0

#9
JoKeR

JoKeR

    Member

  • Topic Starter
  • Member
  • PipPip
  • 60 posts
Here is an update. Turns out I do have the filelist file!
  • 0

#10
gerryf

gerryf

    Retired Staff

  • Retired Staff
  • 11,365 posts
yoikes...didn't expect you to post them...just thought you would look at them!

There is some personal info in their you might not want to be sharing...

well....anyway...they seem to be mostly benign logs of activity, that oddly, I don't have on either of the machines I have...and yes, system restore is functioning on my computer. I am unsure why your system is logging these things in this nature.

That said.

What happened March 3? Your last system restore point occured then.

What happened to that missing file? Did you run some sort of harddrive cleaner around then?

You have two settings in your registry that I do not, they are curious

"RestoreStatus"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:1
This seems to indicate the service is off
"RestoreSafeModeStatus"=REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0
This seems to indicate the safemodestatus is on....meaning you can look at restore points from within safemode?

I'll be honest, I am not sure.

Have you disabled any services? specifically
system restore or remote procedure calls? Are they running?

Mostly, the March 3 date jumps out at me...and the missing file.
  • 0

Advertisements


#11
gerryf

gerryf

    Retired Staff

  • Retired Staff
  • 11,365 posts
well scratch missing file, what happened March 3?
  • 0

#12
JoKeR

JoKeR

    Member

  • Topic Starter
  • Member
  • PipPip
  • 60 posts
Ok. I have no idea what you are talking about with the "REG_DWORD or REG_DWORD_LITTLE_ENDIAN:0". As for March 3rd, I was messing around with Kazaa trying to remove all of it's nasty bundled software. Right now I have Kazaa removed with KazaaBeGone. I will never be using that crap again.
Thats all the info I got.
  • 0

#13
gerryf

gerryf

    Retired Staff

  • Retired Staff
  • 11,365 posts
Don't worry about that part....Reg DWORD..they are registry settings and while curious, I don't think they are the problem.

I suspect that when Kazaa deeply wrapped itself around Windows innards, somehow its removal screwed something up.

And what about the services...did you disable any?
Start > run type
services.msc

are these running?
system restore
remote procedure calls

What are their start up states?
  • 0

#14
JoKeR

JoKeR

    Member

  • Topic Starter
  • Member
  • PipPip
  • 60 posts
System Restore- Automatic
RPC- Automatic
RPC Locator- Manual

So you are thinking it's Kazaa sh@t, thats messing this up? If so, how can I fix this? Is wiping my HD clean the only way out now? :tazz:
  • 0

#15
gerryf

gerryf

    Retired Staff

  • Retired Staff
  • 11,365 posts
Have you tried a repair installation?

http://www.geekstogo...ws_XP-t138.html
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP