Also I can't run Norton360 on it so I can't find it if has any viruses. I believe I have a virus that will prevent me from running any .exe programs.
With exception to downloading/running/scanning with eTrust TestPatrol Anti-Spyware which I found and quarentined 34 pests and 117 Items.
Ugh, I'm making so many edits. But the uTorrent I unistall and it pops back up after restart. and also when i restarted in safemode with networking, I was given the option to sign on as Administrator or Steph. But it hides Admin in normal mode, as in i can't switch to admin. with that being said, when I try to Cntrl Alt Delete as "Steph" it says Task Manager is restricted, contact system admin. Any ideas?
I don't care if I have to remove everything in Add/Remove Programs panel for it to work, not my computer, please help!
The Desktop allowed me to run DSS though!!
Deckard's System Scanner v20071014.68
Run by Steph on 2008-07-06 20:05:35
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Failed to create restore point; System Restore is disabled (service is not running).
-- Last 5 Restore Point(s) --
32: 2008-07-06 23:29:36 UTC - RP375 - Restore Operation
31: 2008-06-20 08:00:18 UTC - RP374 - Software Distribution Service 3.0
30: 2008-06-19 17:54:01 UTC - RP373 - System Checkpoint
29: 2008-06-18 16:38:14 UTC - RP372 - System Checkpoint
28: 2008-06-17 14:01:33 UTC - RP371 - System Checkpoint
-- First Restore Point --
1: 2008-05-10 05:42:30 UTC - RP344 - System Checkpoint
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 503 MiB (512 MiB recommended).
-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-07-06 20:06:16
Platform: Windows XP Service Pack 2 (5.01.2600)
MSIE: Internet Explorer (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\444.471
C:\WINDOWS\portsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Real\RealPlayer\realplay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\Program Files\SBC Self Support Tool\SmartBridge\MotiveSB.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\MMDiag.exe
C:\Program Files\Common Files\AOL\1136335297\ee\aolsoftware.exe
C:\WINDOWS\system32\cssrss.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Yahoo!\browser\ycommon.exe
C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe
C:\Program Files\?ymantec\spoolsv.exe
C:\Documents and Settings\Steph\Application Data\??crosoft.NET\?poolsv.exe
C:\Program Files\GetPack\GetPack19.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
C:\Program Files\GetModule\GetModule19.exe
C:\Program Files\mjc\mjc.exe
C:\Program Files\Sacor\Sacor.exe
C:\Program Files\America Online 9.0\aoltray.exe
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
C:\WINDOWS\system32\osk.exe
C:\WINDOWS\system32\msswchx.exe
E:\dss.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://internetsearchservice.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://internetsearchservice.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.mywa...idebar.jsp?p=DE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://internetsearchservice.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aimtoday.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://internetsearchservice.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapp...//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL = http://internetsearchservice.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://yahoo.sbc.com/dsl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://internetsearchservice.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://internetsearc...ce.com/ie6.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://internetsearchservice.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.sbc.com/dsl
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://internetsearchservice.com
R3 - URLSearchHook: (no name) - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - (no file)
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
F0 - win.ini: run=C:\WINDOWS\system32\winupdate.exe
F3 - REG:win.ini: Run=C:\WINDOWS\system32\userinit.exe,
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\common\ycomp5_1_6_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: BSM - {141FDC3C-15FB-11DD-B723-9EF855D89593} - C:\WINDOWS\system32\bsm.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBHO.dll
O2 - BHO: (no name) - {467faeb2-5f5b-4c81-bae0-2a4752ca7f4e} - (no file)
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: (no name) - {bc97b254-b2b9-4d40-971d-78e0978f5f26} - (no file)
O2 - BHO: 441465 helper - {D311C486-7D5F-4D73-B791-EE56C47D3B2E} - (no file)
O2 - BHO: (no name) - {e3eebbe8-9cab-4c76-b26a-747e25ebb4c6} - (no file)
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\common\ycomp5_1_6_0.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~3\mimboot.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [YBrowser] C:\Program Files\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1136335297\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [runner1] C:\WINDOWS\mrofinu72.exe 61A847B5BBF72815308B2B27128065E9C084320161C4661227A755E9C2933154389A28452DA545E9
B1894E754BE54C29159A7DBE80DC744B6CDE3F546CAC59B6
O4 - HKCU\..\Run: [Yahoo! Pager] 1
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [Microsoft Windows Installer] C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe
O4 - HKCU\..\Run: [Sen] "C:\PROGRA~1\YMANTE~1\spoolsv.exe" -vt yazb
O4 - HKCU\..\Run: [Pitvgz] "C:\Documents and Settings\Steph\Application Data\??crosoft.NET\?poolsv.exe"
O4 - HKCU\..\Run: [GetPack19] "C:\Program Files\GetPack\GetPack19.exe"
O4 - HKCU\..\Run: [GetModule19] "C:\Program Files\GetModule\GetModule19.exe"
O4 - HKCU\..\Run: [mjc] C:\Program Files\mjc\mjc.exe
O4 - HKCU\..\Run: [Sacor] C:\Program Files\Sacor\Sacor.exe
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O4 - Global Startup: WinZip Quick Pick.lnk = ?
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableTaskMgr=1
O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableTaskMgr=1
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
O8 - Extra context menu item: Yahoo! Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\common\ylogin.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: https://online.musicmatch.com (HKLM)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macr...ash/swflash.cab
O20 - Winlogon Notify: fdabadbbdccbfaed - C:\WINDOWS\system32\fdabadbbdccbfaed.dll
O21 - SSODL: nupstals - {426ed8fe-34a6-4e2c-ac92-c11364a11415} - C:\Documents and Settings\All Users\Application Data\nupstals.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_2.EXE
O23 - Service: MsSecurity Updated (MsSecurity1.209.4) - Unknown owner - C:\WINDOWS\444.471
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Unknown owner - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Plug and Play (RPC) (PlugPlayRPC) - Unknown owner - C:\WINDOWS\portsv.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
--
End of file - 12173 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R2 ASCTRM - c:\windows\system32\drivers\asctrm.sys <Not Verified; Windows ® 2000 DDK provider; Windows ® 2000 DDK driver>
S1 ini910uu - c:\windows\system32\drivers\ini910uu.sys (file missing)
S3 {DEF85C80-216A-43ab-AF70-1665EDBE2780} - c:\windows\temp\112.tmp (file missing)
S3 wanatw (WAN Miniport (ATW)) - c:\windows\system32\drivers\wanatw4.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 MsSecurity1.209.4 (MsSecurity Updated) - c:\windows\444.471 service
R2 PlugPlayRPC (Plug and Play (RPC)) - c:\windows\portsv.exe service
S2 PcCtlCom (Trend Micro Central Control Component) - c:\progra~1\trendm~1\intern~1\pcctlcom.exe (file missing)
-- Device Manager: Disabled ----------------------------------------------------
Class GUID:
Description: PCI Simple Communications Controller
Device ID: PCI\VEN_14F1&DEV_2F20&SUBSYS_200F14F1&REV_00\4&10BD256C&0&10F0
Manufacturer:
Name: PCI Simple Communications Controller
PNP Device ID: PCI\VEN_14F1&DEV_2F20&SUBSYS_200F14F1&REV_00\4&10BD256C&0&10F0
Service:
-- Files created between 2008-06-06 and 2008-07-06 -----------------------------
2008-07-06 18:47:24 0 d-------- C:\Documents and Settings\All Users\Application Data\CA
2008-07-06 18:47:19 0 d-------- C:\Program Files\Common Files\Scanner
2008-07-06 18:47:17 0 d-------- C:\Program Files\CA
2008-07-06 17:44:20 0 d-------- C:\Program Files\Symantec
2008-07-06 17:35:50 0 d-------- C:\Program Files\Support
2008-07-06 17:35:49 0 d-------- C:\Program Files\Supp64
2008-07-06 17:35:37 0 d-------- C:\Program Files\N360
2008-07-06 17:35:37 0 d-------- C:\Program Files\Manual
2008-07-06 17:35:37 0 d-------- C:\Program Files\EDGE
2008-07-06 16:47:38 0 d-------- C:\Documents and Settings\Steph\Application Data\uTorrent
2008-06-28 14:06:17 0 d-------- C:\Documents and Settings\Administrator\Application Data\Identities
2008-06-28 14:06:17 0 d-------- C:\Documents and Settings\Administrator\Application Data\Gtek
2008-06-28 14:06:16 0 d--h----- C:\Documents and Settings\Administrator\Templates
2008-06-28 14:06:16 0 dr------- C:\Documents and Settings\Administrator\Start Menu
2008-06-28 14:06:16 0 dr-h----- C:\Documents and Settings\Administrator\SendTo
2008-06-28 14:06:16 0 dr-h----- C:\Documents and Settings\Administrator\Recent
2008-06-28 14:06:16 0 d--h----- C:\Documents and Settings\Administrator\PrintHood
2008-06-28 14:06:16 786432 --ah----- C:\Documents and Settings\Administrator\NTUSER.DAT
2008-06-28 14:06:16 0 d--h----- C:\Documents and Settings\Administrator\NetHood
2008-06-28 14:06:16 0 dr------- C:\Documents and Settings\Administrator\My Documents
2008-06-28 14:06:16 0 d--h----- C:\Documents and Settings\Administrator\Local Settings
2008-06-28 14:06:16 0 dr------- C:\Documents and Settings\Administrator\Favorites
2008-06-28 14:06:16 0 d-------- C:\Documents and Settings\Administrator\Desktop
2008-06-28 14:06:16 0 d---s---- C:\Documents and Settings\Administrator\Cookies
2008-06-28 14:06:16 0 dr-h----- C:\Documents and Settings\Administrator\Application Data
2008-06-28 14:06:16 0 d-------- C:\Documents and Settings\Administrator\Application Data\Sun
2008-06-28 14:06:16 0 d---s---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2008-06-28 13:50:29 0 d-------- C:\Documents and Settings\Steph\Application Data\Symantec
2008-06-28 13:23:04 0 d-------- C:\Program Files\Norton 360
2008-06-28 13:19:17 0 d-------- C:\Documents and Settings\All Users\Application Data\Symantec
2008-06-28 13:15:49 0 d-------- C:\Program Files\Common Files\Symantec Shared
2008-06-28 13:10:11 0 d-------- C:\WINDOWS\system32\8581
2008-06-28 13:10:08 55808 --a------ C:\WINDOWS\portsv.exe
2008-06-28 13:06:38 0 d-------- C:\Program Files\MagicISO
2008-06-24 01:34:47 0 d-------- C:\WINDOWS\system32\441465
2008-06-22 16:35:19 0 d-------- C:\Program Files\Sacor
2008-06-22 01:34:27 88537 --a------ C:\WINDOWS\lfn.exe <Not Verified; Microsoft; XML Media>
2008-06-21 01:07:34 210123 --a------ C:\WINDOWS\system32\000080.exe
2008-06-20 07:18:48 47616 --a------ C:\WINDOWS\b156.exe
2008-06-20 03:23:37 242176 --a------ C:\WINDOWS\system32\wscmp.dll
2008-06-18 11:21:44 215040 --a------ C:\WINDOWS\b148.exe
2008-06-15 12:43:46 0 d-------- C:\Program Files\Spcron
2008-06-15 12:43:42 0 d-------- C:\Program Files\Temporary
2008-06-15 12:38:35 0 d-------- C:\Program Files\mjc
2008-06-15 12:38:35 0 d-------- C:\Program Files\InetGet2
2008-06-14 12:46:39 18944 --a------ C:\WINDOWS\y.exe
2008-06-14 12:46:39 13824 --a------ C:\WINDOWS\xplugin.dll
2008-06-14 12:46:39 18432 --a------ C:\WINDOWS\x.exe
2008-06-14 12:46:39 13312 --a------ C:\WINDOWS\winmgnt.exe
2008-06-14 12:46:39 20224 --a------ C:\WINDOWS\window.exe
2008-06-14 12:46:39 22016 --a------ C:\WINDOWS\winajbm.dll
2008-06-14 12:46:38 15360 --a------ C:\WINDOWS\win64.exe
2008-06-14 12:46:38 19200 --a------ C:\WINDOWS\win32e.exe
2008-06-14 12:46:38 16640 --a------ C:\WINDOWS\users32.exe
2008-06-14 12:46:38 8448 --a------ C:\WINDOWS\time.exe
2008-06-14 12:46:38 17664 --a------ C:\WINDOWS\systemcritical.exe
2008-06-14 12:46:38 11264 --a------ C:\WINDOWS\systeem.exe
2008-06-14 12:46:37 25088 --a------ C:\WINDOWS\svcinit.exe
2008-06-14 12:46:37 22272 --a------ C:\WINDOWS\svchost32.exe
2008-06-14 12:46:37 30720 --a------ C:\WINDOWS\searchword.dll
2008-06-14 12:46:35 15360 --a------ C:\WINDOWS\notepad32.exe
2008-06-14 12:46:35 15616 --a------ C:\WINDOWS\mtwirl32.dll
2008-06-14 12:46:35 11520 --a------ C:\WINDOWS\mswsc20.dll
2008-06-14 12:46:35 14592 --a------ C:\WINDOWS\mswsc10.dll
2008-06-14 12:46:35 32256 --a------ C:\WINDOWS\msupdate.exe
2008-06-14 12:46:34 18432 --a------ C:\WINDOWS\msspi.dll
2008-06-14 12:46:33 29184 --a------ C:\WINDOWS\internet.exe
2008-06-14 12:46:33 30464 --a------ C:\WINDOWS\inetinf.exe
2008-06-14 12:46:32 21248 --a------ C:\WINDOWS\helpcvs.exe
2008-06-14 12:46:32 32256 --a------ C:\WINDOWS\gfmnaaa.dll
2008-06-14 12:46:31 23808 --a------ C:\WINDOWS\funny.exe
2008-06-14 12:46:31 28160 --a------ C:\WINDOWS\funniest.exe
2008-06-14 12:46:31 16128 --a------ C:\WINDOWS\explorer32.exe
2008-06-14 12:46:30 25344 --a------ C:\WINDOWS\dnsrelay.dll
2008-06-14 12:46:30 12800 --a------ C:\WINDOWS\directx32.exe
2008-06-14 12:46:30 8448 --a------ C:\WINDOWS\ctfmon32.exe
2008-06-14 12:46:30 16640 --a------ C:\WINDOWS\cpan.dll
2008-06-14 12:46:30 15872 --a------ C:\WINDOWS\clrssn.exe
2008-06-14 12:46:28 20992 --a------ C:\WINDOWS\accesss.exe
2008-06-14 12:32:27 41984 -ra------ C:\WINDOWS\mrofinu72.exe
2008-06-14 12:32:22 0 d-------- C:\Program Files\Outerinfo
2008-06-14 12:32:22 0 d-------- C:\Program Files\GetPack
2008-06-14 12:32:20 0 d-------- C:\Documents and Settings\Steph\Application Data\??crosoft.NET
2008-06-14 12:32:18 0 d-------- C:\Program Files\QdrPack
2008-06-14 12:32:18 0 d-------- C:\Program Files\ISM
2008-06-14 12:32:13 0 d-------- C:\Program Files\iCheck
2008-06-14 12:32:13 0 d-------- C:\Program Files\GetModule
2008-06-14 12:32:10 41724 ---hs---- C:\Program Files\Common Files\Yazzle1552OinUninstaller.exe
2008-06-14 12:32:09 0 d-------- C:\Program Files\?ymantec
2008-06-14 12:31:56 41984 --a------ C:\WINDOWS\mrofinu1000106.exe
2008-06-14 12:31:50 0 d-------- C:\WINDOWS\system32\stk
2008-06-14 12:31:50 0 d-------- C:\WINDOWS\system32\mgi
2008-06-14 12:31:49 0 d-------- C:\WINDOWS\system32\1039a
2008-06-14 12:31:48 0 d-------- C:\WINDOWS\system32\netrax06
2008-06-14 12:31:48 0 d-------- C:\Temp
2008-06-14 12:31:47 135168 --a------ C:\Documents and Settings\All Users\Application Data\nupstals.dll
2008-06-14 12:31:30 0 d-------- C:\Program Files\uTorrent
2008-06-14 12:31:24 4 --a------ C:\WINDOWS\system32\hljwugsf.bin
2008-06-13 22:44:23 229516 --a------ C:\WINDOWS\system32\000070.exe
2008-06-13 15:12:54 187904 ---hs---- C:\Program Files\Common Files\Yazzle1552OinAdmin.exe
2008-06-13 09:05:04 95232 --a------ C:\WINDOWS\b152.exe
2008-06-06 19:12:34 56 -r-hs---- C:\WINDOWS\system32\08894058B6.sys
-- Find3M Report ---------------------------------------------------------------
2008-07-06 19:43:47 0 d-------- C:\Program Files\Common Files
2008-07-06 15:49:29 0 d-------- C:\Program Files\Dell
2008-06-30 11:05:22 113169 --a------ C:\WINDOWS\system32\fdabadbbdccbfaed.dll
2008-06-28 14:09:09 0 d-------- C:\Program Files\Common Files\AOL
2008-06-21 12:55:45 0 d-------- C:\Program Files\PokerStars
2008-06-14 12:32:20 0 d-------- C:\Documents and Settings\Steph\Application Data\??crosoft.NET
2008-06-14 12:32:09 0 d-------- C:\Program Files\?ymantec
2008-06-11 21:16:29 0 d-------- C:\Documents and Settings\Steph\Application Data\Adobe
2008-06-06 19:12:35 4548 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys
2008-05-30 17:59:05 56 -r-hs---- C:\WINDOWS\system32\F8FA12BE0D.sys
2008-05-30 06:40:01 542208 --a------ C:\WINDOWS\b159.exe
2008-05-22 03:01:33 0 d-------- C:\Program Files\MSXML 4.0
2008-05-12 05:43:37 68096 --a------ C:\WINDOWS\b155.exe
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{141FDC3C-15FB-11DD-B723-9EF855D89593}]
05/06/2005 01:24 AM 65041 --a------ C:\WINDOWS\system32\bsm.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{467faeb2-5f5b-4c81-bae0-2a4752ca7f4e}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{bc97b254-b2b9-4d40-971d-78e0978f5f26}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D311C486-7D5F-4D73-B791-EE56C47D3B2E}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{e3eebbe8-9cab-4c76-b26a-747e25ebb4c6}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [04/05/2005 07:22 AM]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [04/05/2005 07:19 AM]
"Persistence"="C:\WINDOWS\system32\igfxpers.exe" [04/05/2005 07:23 AM]
"SunJavaUpdateSched"="C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe" [11/19/2003 06:48 PM]
"IntelMeM"="C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe" [09/03/2003 09:12 PM]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [02/23/2005 05:19 PM]
"RealTray"="C:\Program Files\Real\RealPlayer\RealPlay.exe" [11/14/2005 03:07 PM]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [11/14/2005 03:08 PM]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [12/06/2004 02:05 AM]
"ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [06/10/2005 11:44 AM]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [06/10/2005 11:44 AM]
"DMXLauncher"="C:\Program Files\Dell\Media Experience\DMXLauncher.exe" [01/27/2005 02:02 AM]
"MimBoot"="C:\PROGRA~1\MUSICM~1\MUSICM~3\mimboot.exe" [09/08/2005 08:20 PM]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [05/12/2005 12:12 AM]
"BJCFD"="C:\Program Files\BroadJump\Client Foundation\CFD.exe" [09/10/2002 10:26 PM]
"YBrowser"="C:\Program Files\Yahoo!\browser\ybrwicon.exe" [07/11/2003 02:51 PM]
"Motive SmartBridge"="C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [12/10/2003 05:52 AM]
"HostManager"="C:\Program Files\Common Files\AOL\1136335297\ee\AOLSoftware.exe" [11/02/2005 10:01 PM]
"runner1"="C:\WINDOWS\mrofinu72.exe" [06/05/2008 04:57 PM]
"runner1"="C:\WINDOWS\mrofinu72.exe" [06/05/2008 04:57 PM]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [01/09/2007 04:59 PM]
"TP CfgWiz"="C:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF}\SymCuw.exe" [02/08/2007 09:30 AM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="1" []
"Aim6"="C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" [11/02/2005 10:01 PM]
"Microsoft Windows Installer"="C:\Documents and Settings\Steph\Application Data\Microsoft\dtsc\29464.exe" [06/14/2008 12:31 PM]
"Sen"="C:\PROGRA~1\YMANTE~1\spoolsv.exe" [06/14/2008 12:32 PM]
"Pitvgz"="C:\Documents and Settings\Steph\Application Data\??crosoft.NET\?poolsv.exe" [05/29/2008 01:35 PM]
"GetPack19"="C:\Program Files\GetPack\GetPack19.exe" [06/17/2008 04:56 AM]
"GetModule19"="C:\Program Files\GetModule\GetModule19.exe" [06/17/2008 04:58 AM]
"mjc"="C:\Program Files\mjc\mjc.exe" [06/22/2008 04:30 PM]
"Sacor"="C:\Program Files\Sacor\Sacor.exe" [06/22/2008 04:35 PM]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
America Online 9.0 Tray Icon.lnk - C:\Program Files\America Online 9.0\aoltray.exe [11/14/2005 3:07:29 PM]
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [5/12/2005 12:23:26 AM]
HP Image Zone Fast Start.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe [5/12/2005 1:49:24 AM]
SBC Self Support Tool.lnk - C:\Program Files\SBC Self Support Tool\bin\matcli.exe [1/3/2006 7:23:15 PM]
WinZip Quick Pick.lnk - E:\Programs\WinZip\WZQKPICK.EXE [2/11/2006 10:27:13 PM]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=1 (0x1)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"nupstals"= {426ed8fe-34a6-4e2c-ac92-c11364a11415} - C:\Documents and Settings\All Users\Application Data\nupstals.dll [06/14/2008 12:31 PM 135168]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\fdabadbbdccbfaed]
C:\WINDOWS\system32\fdabadbbdccbfaed.dll 06/30/2008 11:05 AM 113169 C:\WINDOWS\system32\fdabadbbdccbfaed.dll
*Newly Created Service* - COMHOST
-- End of Deckard's System Scanner: finished at 2008-07-06 20:07:02 ------------
Extra!!
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: English
CPU 0: Intel® Pentium® 4 CPU 2.80GHz
CPU 1: Intel® Pentium® 4 CPU 2.80GHz
Percentage of Memory in Use: 60%
Physical Memory (total/avail): 502.07 MiB / 197.1 MiB
Pagefile Memory (total/avail): 1227.39 MiB / 899.8 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1935.82 MiB
C: is Fixed (NTFS) - 145.96 GiB total, 134.44 GiB free.
D: is CDROM (No Media)
E: is Fixed (FAT32) - 465.64 GiB total, 335.97 GiB free.
\\.\PHYSICALDRIVE0 - WDC WD1600JS-75NCB1 - 149.01 GiB - 3 partitions
\PARTITION0 - Unknown - 39.19 MiB
\PARTITION1 (bootable) - Installable File System - 145.96 GiB - C:
\PARTITION2 - Unknown - 3 GiB
\\.\PHYSICALDRIVE1 - WDC WD50 00AAJB-00UHA0 USB Device - 465.76 GiB - 1 partition
\PARTITION0 - Unknown - 465.75 GiB - E:
-- Security Center -------------------------------------------------------------
AUOptions is scheduled to auto-install.
Windows Internal Firewall is disabled.
FirstRunDisabled is set.
FW: Norton 360 v2007 (SYMANTEC Corporation)
AV: Norton 360 v2007 (SYMANTEC Corperation)
AV: Trend Micro PC-cillin Internet Security v12.7.1019 (Trend Micro, Inc.) Disabled Outdated
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:America Online 9.0"
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:America Online 9.0"
"c:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="c:\\Program Files\\Yahoo!\\Messenger\\YPager.exe:*:Enabled:Yahoo! Messenger"
"c:\\Program Files\\Yahoo!\\Messenger\\yserver.exe"="c:\\Program Files\\Yahoo!\\Messenger\\yserver.exe:*:Enabled:Yahoo! FT Server"
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe:*:Enabled:AOL Loader"
"C:\\Program Files\\Common Files\\AOL\\1136335297\\ee\\aolsoftware.exe"="C:\\Program Files\\Common Files\\AOL\\1136335297\\ee\\aolsoftware.exe:*:Enabled:AOL Services"
"C:\\Program Files\\Common Files\\AOL\\1136335297\\ee\\aim6.exe"="C:\\Program Files\\Common Files\\AOL\\1136335297\\ee\\aim6.exe:*:Enabled:AIM"
"C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:µTorrent"
"C:\\DOCUME~1\\Steph\\LOCALS~1\\Temp\\grws.exe"="C:\\DOCUME~1\\Steph\\LOCALS~1\\Temp\\grws.exe:*:Enabled:DHCP Client"
"C:\\WINDOWS\\system32\\cssrss.exe"="C:\\WINDOWS\\system32\\cssrss.exe:*:Enabled:DHCP Client"
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Steph\Application Data
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=STEPHANIE
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Steph
LOGONSERVER=\\STEPHANIE
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 1, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0401
ProgramFiles=C:\Program Files
PROMPT=$P$G
SESSIONNAME=Console
SonicCentral=C:\Program Files\Common Files\Sonic Shared\Sonic Central\
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Steph\LOCALS~1\Temp
TMP=C:\DOCUME~1\Steph\LOCALS~1\Temp
USERDOMAIN=STEPHANIE
USERNAME=Steph
USERPROFILE=C:\Documents and Settings\Steph
windir=C:\WINDOWS
-- User Profiles ---------------------------------------------------------------
Steph (admin)
Administrator (new local, admin)
-- Add/Remove Programs ---------------------------------------------------------
--> "C:\Program Files\SBC Yahoo!\umuninst.exe" /S
--> C:\PROGRA~1\SBCSEL~1\CustomUninstall.exe SBC
--> C:\PROGRA~1\Yahoo!\browser\unyb.exe
--> C:\PROGRA~1\Yahoo!\common\unwise.exe /S C:\PROGRA~1\Yahoo!\common\install.log
--> C:\PROGRA~1\Yahoo!\common\unybase.exe
--> C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
--> C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu
--> C:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205}
--> C:\WINDOWS\system32\\MSIEXEC.EXE /x {1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
--> C:\WINDOWS\system32\\MSIEXEC.EXE /x {AB708C9B-97C8-4AC9-899B-DBF226AC9382}
--> C:\WINDOWS\system32\\MSIEXEC.EXE /x {B12665F4-4E93-4AB4-B7FC-37053B524629}
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\common\yaddbook.dll
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\common\ylogin.dll
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\common\ymmapi.dll
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\MESSEN~1\yhexbmes.dll
--> MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
--> regsvr32 /s /u C:\PROGRA~1\Yahoo!\common\YCOMP5~1.DLL
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
µTorrent --> "C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe Acrobat - Reader 6.0.2 Update --> MsiExec.exe /I{AC76BA86-0000-0000-0000-6028747ADE01}
Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 6.0.1 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A00000000001}
AOL Uninstaller (Choose which Products to Remove) --> C:\Program Files\Common Files\AOL\uninstaller.exe
AOLIcon --> MsiExec.exe /I{62BD0AE0-4EB1-4BBB-8F43-B6400C8FEB2C}
AppCore --> MsiExec.exe /I{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B}
AV --> MsiExec.exe /I{F4DB525F-A986-4249-B98B-42A8066251CA}
Bejeweled 2 Deluxe --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\989E4C3B-B2C9-4486-9A09-D5A8F953837C\Uninstall.exe"
Bejeweled 2 Deluxe 1.0 --> C:\Program Files\Yahoo! Games\Bejeweled 2 Deluxe\PopUninstall.exe "C:\Program Files\Yahoo! Games\Bejeweled 2 Deluxe\Install.log"
Blasterball 2 --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\D1A6F3FD-7B40-443F-8767-BADB25A0D222\Uninstall.exe"
BroadJump Client Foundation --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\BroadJump\Client Foundation\Uninst.isu" -c"C:\Program Files\BroadJump\Client Foundation\RmvBJCFD.dll" -b"CFD" -h"CFD" -a
ccCommon --> MsiExec.exe /I{3CCAD2EF-CFF2-4637-82AA-AABF370282D3}
Dell Digital Jukebox Driver --> C:\Program Files\Dell\Digital Jukebox Drivers\DrvUnins.exe /s
Dell Driver Reset Tool --> MsiExec.exe /I{5905F42D-3F5F-4916-ADA6-94A3646AEE76}
Dell Game Console --> "C:\Program Files\WildTangent\Apps\Dell Game Console\Uninstall.exe"
Dell Media Experience --> MsiExec.exe /I{AC0EE5B0-A8FB-4D0A-AF03-2EDC518F841B}
Dell Support 3.1 --> MsiExec.exe /X{548EEA8E-8299-497F-8057-811D2D7097DC}
Digital Content Portal --> MsiExec.exe /I{6D5FCA42-1486-4E32-AFE8-1B7E2AA59D33}
EarthLink setup files --> MsiExec.exe /X{728278A1-0BB7-45E4-AC5E-91D7C0FD1EDE}
GearDrvs --> MsiExec.exe /I{228F6876-A313-40A3-91C0-C3CBE6997D09}
High Definition Audio Driver Package - KB835221 --> C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
HP Deskjet 5400 series --> C:\Program Files\HP\Digital Imaging\{EB57A16E-500D-43d7-85B9-FBE279EBBA6E}\setup\hpzscr01.exe -datfile hpfscr05.dat
HP Extended Capabilities 5.0 --> C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Image Zone 5.0 --> C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP Imaging Device Functions 5.0 --> C:\Program Files\HP\Digital Imaging\DigitalImagingMonitor\hpzscr01.exe -datfile hpqbud01.dat
HP Software Update --> MsiExec.exe /X{15EE79F4-4ED1-4267-9B0F-351009325D7D}
HP Solution Center & Imaging Support Tools 5.0 --> C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
Intel® 537EP V9x DF PCI Modem --> rundll32 IntelCci.dll,iSMUninstallation "Intel® 537EP V9x DF PCI Modem"
Intel® Graphics Media Accelerator Driver --> RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_2782 PCI\VEN_8086&DEV_2582
Intel® PRO Network Connections Drivers --> Prounstl.exe
Intel® PROSet for Wired Connections --> MsiExec.exe /I{83F793B5-8BBF-42FD-A8A6-868CB3E2AAEA}
Internet Explorer Default Page --> MsiExec.exe /I{35BDEFF1-A610-4956-A00D-15453C116395}
Internet Speed Monitor --> C:\Program Files\iCheck\Uninstall.exe
Internet Speed Monitor --> C:\Program Files\ISM\Uninstall.exe
Java 2 Runtime Environment, SE v1.4.2_03 --> MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142030}
LiveUpdate 3.2 (Symantec Corporation) --> "C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U
Macromedia Flash Player 8 --> C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe
Magic ISO Maker v5.5 (build 0261) --> C:\PROGRA~1\MagicISO\UNWISE.EXE C:\PROGRA~1\MagicISO\INSTALL.LOG
Microsoft Plus! Digital Media Edition Installer --> MsiExec.exe /X{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}
Microsoft Plus! Photo Story 2 LE --> MsiExec.exe /X{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}
Modem Event Monitor --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7A0EFAFB-AC4B-4B88-8C6B-6731BE88DB68}\setup.exe" -l0x9
Modem Helper --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F142D56-3326-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
Modem On Hold --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanelAnyText
Musicmatch® Jukebox --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85D3CC30-8859-481A-9654-FD9B74310BEF}\setup.exe" -l0x9 -uninst
MyWay Search Assistant --> MsiExec.exe /X{E7559288-223B-453C-9F06-340E3BE21E39}
Norton 360 --> MsiExec.exe /I{21829177-4DED-4209-AD08-490B3AC9C01A}
Norton 360 --> MsiExec.exe /I{2D617065-1C52-4240-B5BC-C0AE12157777}
Norton 360 --> MsiExec.exe /I{63A6E9A9-A190-46D4-9430-2DB28654AFD8}
Norton 360 (Symantec Corporation) --> "C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_0_0_184\{2D617065-1C52-4240-B5BC-C0AE12157777}.exe" /X
Norton 360 Help --> MsiExec.exe /I{1CA941F1-5006-487E-9FD4-09F812A7D6B8}
Norton Confidential Browser Component --> MsiExec.exe /I{4843B611-8FCB-4428-8C23-31D0A5EAE164}
Norton Confidential Web Authentification Component --> MsiExec.exe /I{3074EB89-1BCA-4AEF-AFF4-EFB4634C1923}
Norton Confidential Web Protection Component --> MsiExec.exe /I{D353CC51-430D-4C6F-9B7E-52003DA1E05A}
Outerinfo --> "C:\Program Files\Common Files\Yazzle1552OinUninstaller.exe"
PestPatrolv5 --> MsiExec.exe /X{39586F4F-758D-4A92-A5DF-33E9DB9C09D9}
Photo Click --> MsiExec.exe /I{6E179C77-7335-458D-9537-4F4EAC0181ED}
PokerStars --> "C:\Program Files\PokerStars\PokerStarsUninstall.exe" /u:PokerStars
Polar Bowler --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\26D2C2C3-CF14-4ED7-B1FC-0BE64AFBA3B3\Uninstall.exe"
PowerDVD 5.5 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
QuickTime --> C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log
RealPlayer Basic --> C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Sacor --> "C:\Program Files\Sacor\Sacor.exe" -uninstall
SBC Self Support Tool --> C:\WINDOWS\Motive\SBC\MCCUninst.exe
SBC Yahoo! Applications --> C:\Program Files\SBC Yahoo!\UninstallManager.exe
SCRABBLE --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\6B6A7665-DB48-4762-AB5D-BEEB9E1CD7FA\Uninstall.exe"
Security Update for Step By Step Interactive Training (KB898458) --> "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
Security Update for Step By Step Interactive Training (KB923723) --> "C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
Sonic DLA --> MsiExec.exe /I{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
Sonic RecordNow Audio --> MsiExec.exe /I{AB708C9B-97C8-4AC9-899B-DBF226AC9382}
Sonic RecordNow Copy --> MsiExec.exe /I{B12665F4-4E93-4AB4-B7FC-37053B524629}
Sonic RecordNow Data --> MsiExec.exe /I{075473F5-846A-448B-BCB3-104AA1760205}
Sonic Update Manager --> MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
SPBBC 32bit --> MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56}
SuppSoft --> MsiExec.exe /I{022DA2C3-81C7-4003-A6BC-1BB147B20097}
Symantec Real Time Storage Protection Component --> MsiExec.exe /I{D6E6FA4A-5445-4850-8365-CF216C1CBB7A}
Symantec Technical Support Controls --> MsiExec.exe /I{92B1B3CC-EC78-45B8-96D0-8B3F11495864}
SymNet --> MsiExec.exe /I{2DA85B02-13C0-4E6D-9A76-22E6B3DD0CB2}
Viewpoint Media Player --> C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
WebCyberCoach 3.2 Dell --> "C:\Program Files\WebCyberCoach\b_Dell\WCC_Wipe.exe" "WebCyberCoach ext\wtrb" /inf "engine.inf,RealUninstallSection,,4" /infcfg "enginecf.inf,RealUninstallSection,,4"
WildTangent Web Driver --> C:\Program Files\WildTangent\Apps\CDA\CDAUninstall.exe
-- Application Event Log -------------------------------------------------------
Event Record #/Type6343 / Error
Event Submitted/Written: 07/06/2008 07:50:41 PM
Event ID/Source: 11706 / MsiInstaller
Event Description:
Product: Sonic Update Manager -- Error 1706. An installation package for the product Sonic Update Manager cannot be found. Try the installation again using a valid copy of the installation package 'UM.MSI'.
Event Record #/Type6339 / Warning
Event Submitted/Written: 07/06/2008 07:48:41 PM
Event ID/Source: 1001 / MsiInstaller
Event Description:
Detection of product '{30465B6C-B53F-49A1-9EBA-A3F187AD502E}', feature 'SoleFeature' failed during request for component '{D2D7B4BF-6CCA-11D5-8B3F-00105A9846E9}'
Event Record #/Type6338 / Warning
Event Submitted/Written: 07/06/2008 07:48:41 PM
Event ID/Source: 1004 / MsiInstaller
Event Description:
Detection of product '{30465B6C-B53F-49A1-9EBA-A3F187AD502E}', feature 'SoleFeature', component '{B7195B4D-220F-4055-B216-675DFB956538}' failed. The resource 'C:\Program Files\Common Files\InstallShield\UpdateService\_ispmres.dll' does not exist.
Event Record #/Type6336 / Error
Event Submitted/Written: 07/06/2008 07:48:41 PM
Event ID/Source: 11706 / MsiInstaller
Event Description:
Product: Sonic Update Manager -- Error 1706. An installation package for the product Sonic Update Manager cannot be found. Try the installation again using a valid copy of the installation package 'UM.MSI'.
Event Record #/Type6334 / Warning
Event Submitted/Written: 07/06/2008 07:48:27 PM
Event ID/Source: 1001 / MsiInstaller
Event Description:
Detection of product '{30465B6C-B53F-49A1-9EBA-A3F187AD502E}', feature 'SoleFeature' failed during request for component '{D2D7B4BF-6CCA-11D5-8B3F-00105A9846E9}'
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
Event Record #/Type583939 / Error
Event Submitted/Written: 07/06/2008 07:50:41 PM
Event ID/Source: 10010 / DCOM
Event Description:
The server {FFF2D28F-E4EE-44D9-8104-8E71556757F6} did not register with DCOM within the required timeout.
Event Record #/Type583897 / Error
Event Submitted/Written: 07/06/2008 07:47:58 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The Trend Micro Central Control Component service failed to start due to the following error:
%%2
Event Record #/Type583891 / Error
Event Submitted/Written: 07/06/2008 07:44:25 PM
Event ID/Source: 7023 / Service Control Manager
Event Description:
The Application Management service terminated with the following error:
%%126
Event Record #/Type583888 / Error
Event Submitted/Written: 07/06/2008 07:44:25 PM
Event ID/Source: 7023 / Service Control Manager
Event Description:
The Application Management service terminated with the following error:
%%126
Event Record #/Type583885 / Error
Event Submitted/Written: 07/06/2008 07:44:25 PM
Event ID/Source: 7023 / Service Control Manager
Event Description:
The Application Management service terminated with the following error:
%%126
-- End of Deckard's System Scanner: finished at 2008-07-06 20:07:02 ------------
Edited by lutyk7, 06 July 2008 - 07:21 PM.