Deckard's System Scanner v20071014.68
Run by Value User on 2008-03-23 01:18:05
Computer is in Normal Mode.
--------------------------------------------------------------------------------
Backed up registry hives.
Performed disk cleanup.
Percentage of Memory in Use: 84% (more than 75%).Total Physical Memory: 126 MiB (256 MiB recommended).-- HijackThis (run as Value User.exe) ------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:18:43 AM, on 3/23/2008
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINNT\SOUNDMAN.EXE
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Comodo\Firewall\CPF.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
C:\Documents and Settings\Value User\Desktop\New Folder\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Value User.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapp.../search/ie.htmlR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://red.clientapp...//www.yahoo.comR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://att.my.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://red.clientapp...//www.yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapp.../search/ie.htmlR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://red.clientapp...//www.yahoo.comR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://red.clientapp...//www.yahoo.comR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by America Online
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\common\YIeTagBm.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINNT\system32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe" -quiet
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: SBC Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINNT\system32\Shdocvw.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.aol.com
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.micros...b?1205461605373O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
--
End of file - 5532 bytes
-- HijackThis Fixed Entries (C:\PROGRA~1\TRENDM~1\HIJACK~1\backups\) -----------
backup-20080323-010901-515 O4 - HKCU\..\Run: [IESet] IExplorer.dll .dbt
backup-20080323-010901-660 O4 - HKUS\.DEFAULT\..\Run: [IESet] IExplorer.dll .dbt (User 'Default user')
backup-20080323-010901-694 O2 - BHO: (no name) - {C6B748A8-8437-4BCC-9280-D1E40746511A} - C:\Program Files\NetMeeting\merox555077.dll (file missing)
backup-20080323-010901-700 O4 - HKLM\..\RunServices: [IESet] IExplorer.dll .dbt
backup-20080323-010901-894 O4 - HKLM\..\Run: [IESet] IExplorer.dll .dbt
backup-20080323-010901-927 O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
backup-20080323-010901-955 O2 - BHO: 0 - {40F6A3F8-4300-412D-90B4-31D979E05356} - C:\Program Files\Internet Explorer\qudarud.dll (file missing)
-- File Associations -----------------------------------------------------------
.bat - batfile - shell\edit\command - jky7u64thng5thb.exe %1.ini - inifile - shell\open\command - jky7u64thng5thb.exe %1.reg - regfile - shell\edit\command - jky7u64thng5thb.exe %1.scr - scrfile - shell\open\command - "%1" %*-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R2 ASCTRM - c:\winnt\system32\drivers\asctrm.sys <Not Verified; Windows ® 2000 DDK provider; Windows ® 2000 DDK driver>
R2 MDC8021X (AEGIS Protocol (IEEE 802.1x) v2.3.1.9) - c:\winnt\system32\drivers\mdc8021x.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 2.3.1.9>
R3 catchme - c:\docume~1\valueu~1\locals~1\temp\catchme.sys (file missing)
S3 Intels51 (Intel® 536EP Modem) - c:\winnt\system32\drivers\intels51.sys <Not Verified; Intel Corporation; Intel® 536EP Modem Driver>
S3 wanatw (WAN Miniport (ATW)) - c:\winnt\system32\drivers\wanatw4.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
All services whitelisted.
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Files created between 2008-02-23 and 2008-03-23 -----------------------------
2008-03-22 01:21:18 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_5e4.dat
2008-03-21 09:02:10 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_200.dat
2008-03-21 08:34:07 0 d-------- C:\Documents and Settings\Value User\Application Data\Malwarebytes
2008-03-21 08:33:55 0 d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-03-21 08:33:52 0 d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-03-21 08:27:16 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_550.dat
2008-03-21 00:02:56 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_204.dat
2008-03-20 23:20:53 0 d-------- C:\Program Files\Alwil Software
2008-03-20 23:14:57 0 d-------- C:\Documents and Settings\Value User\Application Data\Comodo
2008-03-20 23:14:45 0 d-------- C:\Documents and Settings\All Users\Application Data\Comodo
2008-03-20 23:11:03 0 d-------- C:\Program Files\Comodo
2008-03-20 22:44:40 0 d-------- C:\WINNT\ERUNT
2008-03-20 21:05:28 2000 --a------ C:\WINNT\system32\tmp.reg
2008-03-20 20:56:39 25600 --a------ C:\WINNT\system32\WS2Fix.exe
2008-03-20 20:56:39 289144 --a------ C:\WINNT\system32\VCCLSID.exe <Not Verified; S!Ri; >
2008-03-20 20:56:39 86528 --a------ C:\WINNT\system32\VACFix.exe <Not Verified; S!Ri.URZ; VACFix>
2008-03-20 20:56:39 82432 --a------ C:\WINNT\system32\IEDFix.exe <Not Verified; S!Ri.URZ; IEDFix>
2008-03-20 20:56:38 288417 --a------ C:\WINNT\system32\SrchSTS.exe <Not Verified; S!Ri; SrchSTS>
2008-03-20 20:56:38 53248 --a------ C:\WINNT\system32\Process.exe <Not Verified;
http://www.beyondlogic.org; Command Line Process Utility>
2008-03-20 20:56:38 51200 --a------ C:\WINNT\system32\dumphive.exe
2008-03-20 00:41:48 0 d---s---- C:\Documents and Settings\Default User\UserData
2008-03-19 06:19:59 0 d-------- C:\Documents and Settings\Default User\Application Data\Macromedia
2008-03-19 06:19:56 0 d-------- C:\Documents and Settings\Default User\Application Data\Adobe
2008-03-19 06:13:50 206 --a------ C:\WINNT\MicroSoft.vbs
2008-03-19 06:13:50 59392 --a------ C:\WINNT\MicroSoft.pif
2008-03-17 17:15:09 20480 --a------ C:\WINNT\quit.exe <Not Verified; rd uy ikyui rytwe fds; r fghf drsf sdfs fgh d>
2008-03-16 23:35:07 0 d-------- C:\Program Files\Trend Micro
2008-03-16 21:10:55 0 d-------- C:\WINNT\??crosoft
2008-03-16 21:10:08 136627 --a------ C:\WINNT\POTA777444.exe
2008-03-16 21:09:15 0 d-------- C:\WINNT\?ystem32
2008-03-14 15:14:30 0 d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-03-13 21:37:40 0 d-------- C:\Documents and Settings\Value User\Application Data\Adobe
2008-03-13 21:34:13 57344 --a------ C:\WINNT\uneng.exe <Not Verified; Roxio; Roxio Update Wizard>
2008-03-13 21:34:13 0 d-------- C:\Program Files\Common Files\Adaptec Shared
2008-03-13 21:33:57 225280 --a------ C:\WINNT\system32\wmpdxm.dll <Not Verified; Microsoft Corporation; Microsoft® Windows Media Player>
2008-03-13 21:33:57 106496 --a------ C:\WINNT\system32\wmpasf.dll <Not Verified; Microsoft Corporation; Microsoft® Windows Media Player>
2008-03-13 21:33:42 52224 --a------ C:\WINNT\system32\mspmsnsv.dll <Not Verified; Microsoft Corporation; Windows Media Device Manager>
2008-03-13 21:33:36 997888 --a------ C:\WINNT\system32\wmvdmoe2.dll <Not Verified; Microsoft Corporation; Microsoft® Windows Media Services>
2008-03-13 21:33:35 892416 --a------ C:\WINNT\system32\wmspdmoe.dll <Not Verified; Microsoft Corporation; Microsoft® Windows Media Services>
2008-03-13 21:33:35 1111040 --a------ C:\WINNT\system32\wmsdmoe2.dll <Not Verified; Microsoft Corporation; Microsoft® Windows Media Services>
2008-03-13 21:26:52 0 d-------- C:\WINNT\SoftwareDistribution
2008-03-13 20:48:14 0 d-------- C:\Documents and Settings\Value User\Application Data\Macromedia
2008-03-13 20:47:02 0 d-------- C:\Documents and Settings\Value User\Application Data\Yahoo!
2008-03-13 20:41:35 0 d-------- C:\Documents and Settings\All Users\Application Data\yahoo!
2008-03-13 20:41:17 65536 --a------ C:\WINNT\system32\YCRWin32.dll <Not Verified; ; YCRWin32 Module>
2008-03-13 20:18:40 0 d-------- C:\Program Files\Yahoo!
2008-03-13 20:18:23 929792 -ra------ C:\WINNT\system32\PRISME5.dll <Not Verified; Meetinghouse Data Communications; AEGIS Client API>
2008-03-13 20:18:23 15781 -ra------ C:\WINNT\system32\drivers\mdc8021x.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 2.3.1.9>
2008-03-13 20:17:39 0 d-------- C:\Program Files\2Wire
-- Find3M Report ---------------------------------------------------------------
2008-03-21 21:58:14 1284330 ---h----- C:\WINNT\ShellIconCache
2008-03-21 21:48:52 0 d-a------ C:\Program Files\Common Files
2008-03-13 21:27:33 0 d-ah----- C:\Program Files\WindowsUpdate
2008-03-13 20:18:23 0 d--h----- C:\Program Files\InstallShield Installation Information
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [06/19/03 02:05p C:\WINNT\system32\mobsync.exe]
"SoundMan"="SOUNDMAN.EXE" [02/09/04 03:54a C:\WINNT\SOUNDMAN.EXE]
"VTTimer"="VTTimer.exe" []
"PRISMSVR.EXE"="C:\WINNT\system32\PRISMSVR.exe" []
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [12/09/03 02:02p]
"COMODO Firewall Pro"="C:\Program Files\Comodo\Firewall\CPF.exe" [03/20/08 11:11p]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [12/04/07 08:00a]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe" [08/15/05 03:24p]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Microsoft Works Calendar Reminders.lnk - C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe [9/4/1999 5:23:00 PM]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"
-- End of Deckard's System Scanner: finished at 2008-03-23 01:19:52 ------------
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows 2000 Professional (build 2195) SP 4.0
Architecture: X86; Language: English
CPU 0: Intel Pentium III processor
Percentage of Memory in Use: 92%
Physical Memory (total/avail): 125.52 MiB / 9.62 MiB
Pagefile Memory (total/avail): 319.99 MiB / 83.72 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1967.55 MiB
A: is Removable (No Media)
C: is Fixed (NTFS) - 18.64 GiB total, 16.46 GiB free.
D: is CDROM (No Media)
\\.\PHYSICALDRIVE0 - ST320413A - 18.65 GiB - 1 partition
\PARTITION0 (bootable) - Installable File System - 18.64 GiB - C:
-- Security Center -------------------------------------------------------------
AUOptions is disabled.
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Value User\Application Data
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=VALUE-X5GUHQA71
ComSpec=C:\WINNT\system32\cmd.exe
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Value User
LOGONSERVER=\\VALUE-X5GUHQA71
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Os2LibPath=C:\WINNT\system32\os2\dll;
Path=C:\WINNT\system32;C:\WINNT;C:\WINNT\System32\Wbem
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 6 Model 8 Stepping 10, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=080a
ProgramFiles=C:\Program Files
PROMPT=$P$G
SystemDrive=C:
SystemRoot=C:\WINNT
TEMP=C:\DOCUME~1\VALUEU~1\LOCALS~1\Temp
TMP=C:\DOCUME~1\VALUEU~1\LOCALS~1\Temp
USERDOMAIN=VALUE-X5GUHQA71
USERNAME=Value User
USERPROFILE=C:\Documents and Settings\Value User
windir=C:\WINNT
-- User Profiles ---------------------------------------------------------------
Value User
(admin)Administrator
(new local, admin)-- Add/Remove Programs ---------------------------------------------------------
2Wire Wireless Client --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A3BC5D37-30F9-4CF7-BD5C-0DFF063E4B6D}\Setup.exe" -l0x9 -L0x9
Adobe Acrobat 4.0 --> C:\WINNT\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.dll"
Adobe Flash Player ActiveX --> C:\WINNT\system32\Macromed\Flash\uninstall_activeX.exe
avast! Antivirus --> rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
COMODO Firewall Pro --> C:\Program Files\Comodo\Firewall\fwconfig.exe -uninstalln
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Learn2 Player (Uninstall Only) --> C:\Program Files\Learn2.com\StRunner\stuninst.exe
Malwarebytes' Anti-Malware --> "C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft Data Access Components KB870669 --> C:\WINNT\muninst.exe C:\WINNT\INF\KB870669.inf
Microsoft Internet Explorer 6 SP1 --> rundll32 C:\WINNT\system32\setupwbv.dll,IE6Maintenance C:\Program Files\Internet Explorer\IE Uninstall\W2KEXCP.EXE /u
Microsoft Office Professional Edition 2003 --> MsiExec.exe /I{91110409-6000-11D3-8CFE-0150048383C9}
Microsoft Works 2000 --> MsiExec.exe /I{56364334-9530-11D2-BFFC-00C04FA329AA}
Outlook Express Q823353 --> C:\WINNT\oeuninst.exe C:\WINNT\INF\Q823353.inf
RealPlayer Basic --> C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
SBC Yahoo! Applications --> C:\PROGRA~1\Yahoo!\common\uninstall.exe
SoundMAX --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe"
Spybot - Search & Destroy 1.3 --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Viewpoint Media Player --> C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Windows Media Player system update (9 Series) --> C:\PROGRA~1\WINDOW~2\setup_wm.exe /Uninstall
WinZip --> "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
-- Application Event Log -------------------------------------------------------
Event Record #/Type704 / Error
Event Submitted/Written: 03/23/2008 01:07:46 AM
Event ID/Source: 8222 / Fax Service
Event Description:
No fax devices were found.
Event Record #/Type702 / Warning
Event Submitted/Written: 03/21/2008 10:33:36 PM
Event ID/Source: 256 / PlugPlayManager
Event Description:
Timed out sending notification of device interface change to window of ""
Event Record #/Type701 / Warning
Event Submitted/Written: 03/21/2008 10:33:36 PM
Event ID/Source: 256 / PlugPlayManager
Event Description:
Timed out sending notification of device interface change to window of ""
Event Record #/Type700 / Warning
Event Submitted/Written: 03/21/2008 10:33:36 PM
Event ID/Source: 256 / PlugPlayManager
Event Description:
Timed out sending notification of device interface change to window of ""
Event Record #/Type699 / Warning
Event Submitted/Written: 03/21/2008 10:33:36 PM
Event ID/Source: 256 / PlugPlayManager
Event Description:
Timed out sending notification of device interface change to window of ""
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
Event Record #/Type875 / Error
Event Submitted/Written: 03/22/2008 10:35:43 PM
Event ID/Source: 1000 / Dhcp
Event Description:
Your computer has lost the lease to its IP address 192.168.1.65 on the
Network Card with network address 00065B414BAE.
Event Record #/Type874 / Warning
Event Submitted/Written: 03/22/2008 10:35:43 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 00065B414BAE. The following
error occured:
%%121.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Event Record #/Type873 / Warning
Event Submitted/Written: 03/22/2008 10:30:17 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 00065B414BAE. The following
error occured:
%%121.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Event Record #/Type872 / Warning
Event Submitted/Written: 03/22/2008 10:18:30 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 00065B414BAE. The following
error occured:
%%121.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Event Record #/Type871 / Warning
Event Submitted/Written: 03/22/2008 09:54:59 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 00065B414BAE. The following
error occured:
%%121.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
-- End of Deckard's System Scanner: finished at 2008-03-23 01:19:52 ------------
File/Folder C:\WINNT\system32\mgmrwmrv.exe not found.
File/Folder C:\Program Files\Common Files\wecojem777444.dll not found.
File/Folder C:\Program Files\Internet Explorer\qudarud.dll not found.
File/Folder C:\Program Files\NetMeeting\merox555077.dll not found.
File/Folder C:\WINNT\mrofinu72.exe not found.
File/Folder C:\WINDOWS\system32\iexplorer.dll .dbt not found.
OTMoveIt2 by OldTimer - Version 1.0.21 log created on 03232008_011447