main.txtDeckard's System Scanner v20071014.68
Run by SYSTEM on 2008-08-08 20:15:07
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
103: 2008-08-08 19:15:51 UTC - RP748 - Deckard's System Scanner Restore Point
102: 2008-07-28 01:52:10 UTC - RP747 - System Checkpoint
101: 2008-07-26 22:27:52 UTC - RP746 - Last known good configuration
100: 2008-07-26 22:27:30 UTC - RP745 - Software Distribution Service 3.0
99: 2008-07-26 22:27:30 UTC - RP744 - Software Distribution Service 3.0
-- First Restore Point --
1: 2008-07-26 22:25:50 UTC - RP646 - Software Distribution Service 3.0
Backed up registry hives.
Performed disk cleanup.
Percentage of Memory in Use: 85% (more than 75%).Total Physical Memory: 479 MiB (512 MiB recommended).-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-08-08 20:20:55
Platform: Windows XP Service Pack 2 (5.01.2600)
MSIE: Internet Explorer (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\QW1lbGlhIFJlZWRz\command.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kontiki\KService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Network Monitor\netmon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\alg.exe
C:\WINDOWS\explorer.exe
C:\Program Files\HPQ\Quick Launch Buttons\eabservr.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft ActiveSync\rapimgr.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\mrofinu.exe
C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\rundll32.exe
C:\Documents and Settings\LocalService\Desktop\dss.exe
C:\Program Files\AV9\av2009.exe
C:\WINDOWS\system32\rundll32.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.h...a...o&pf=laptopR1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://as.starware.c...NWLobUOZUBItbg=R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {16EC00C6-90B4-4956-BE82-96A007727458} - C:\WINDOWS\system32\tuvSljkK.dll
O2 - BHO: (no name) - {3203C641-8301-4513-9A5A-C815EE3437C3} - C:\WINDOWS\system32\pmnnOEwW.dll
O2 - BHO: (no name) - {514A5C49-0C7D-42c3-A71B-38864A269B7A} - C:\WINDOWS\system32\lljvpeos.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: targetedbanner browser optimizer - {a16acb9e-ecbb-fcf6-850e-265e702ac1fa} - C:\WINDOWS\system32\vlpnbeebokph.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O2 - BHO: {e827cb59-e9a7-8569-17b4-dd4a88be655e} - {e556eb88-a4dd-4b71-9658-7a9e95bc728e} - C:\WINDOWS\system32\ycbirp.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [LSA Shellu] C:\Documents and Settings\Greg\lsass.exe
O4 - HKLM\..\Run: [runner1] C:\WINDOWS\mrofinu1188.exe 61A847B5BBF72813339330466188719AB689201522886B092CBD44BD8689220221DD325762EA4EBF
968951185EFC412806867680AEDE604D64C2661373F819EBDCD66A47
O4 - HKLM\..\Run: [{525161ae-1c3a-77c1-2561-1ea790ee1deb}] C:\WINDOWS\System32\Rundll32.exe "C:\WINDOWS\system32\vlpnbeebokph.dll" DllStart
O4 - HKLM\..\Run: [4289727e] rundll32.exe "C:\WINDOWS\system32\ysjvomtx.dll",b
O4 - HKLM\..\Run: [BM41ba41e2] Rundll32.exe "C:\WINDOWS\system32\slvevmbd.dll",s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE
O4 - HKCU\..\Run: [39855845889158728651099187833999] C:\Program Files\AV9\av2009.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [39855845889158728651099187833999] C:\Program Files\AV9\av2009.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [39855845889158728651099187833999] C:\Program Files\AV9\av2009.exe (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} () -
http://www.ysbweb.co...ysb_regular.cabO16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) -
http://upload.facebo...toUploader3.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn...pDownloader.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macr...ash/swflash.cabO16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} () -
http://download.reds.../113/rssoft.cabO18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL
O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O20 - Winlogon Notify: tuvSljkK - C:\WINDOWS\system32\tuvSljkK.dll
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\QW1lbGlhIFJlZWRz\command.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\shared\hpqwmi.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\system32\TuneUpDefragService.exe
--
End of file - 8289 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
All drivers whitelisted.
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 cmdService (Command Service) - c:\windows\qw1lbglhifjlzwrz\command.exe
R2 Network Monitor - c:\program files\network monitor\netmon.exe service
S3 hpqwmi (HP WMI Interface) - c:\program files\hpq\shared\hpqwmi.exe <Not Verified; Hewlett-Packard Development Company, L.P.; hpqwmi Module>
-- Device Manager: Disabled ----------------------------------------------------
Class GUID: {6BDD1FC6-810F-11D0-BEC7-08002BE2092F}
Description: Photosmart C4380 series
Device ID: ROOT\IMAGE\0000
Manufacturer: HP
Name: HP Photosmart C4380
PNP Device ID: ROOT\IMAGE\0000
Service: StillCam
Class GUID: {4D36E971-E325-11CE-BFC1-08002BE10318}
Description: Photosmart C4380 series
Device ID: ROOT\MULTIFUNCTION\0000
Manufacturer: HP
Name: Photosmart C4380 series
PNP Device ID: ROOT\MULTIFUNCTION\0000
Service:
-- Scheduled Tasks -------------------------------------------------------------
2008-07-22 17:46:10 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2008-07-18 19:18:32 374 --a------ C:\WINDOWS\Tasks\1-Click Maintenance.job
-- Files created between 2008-07-08 and 2008-08-08 -----------------------------
2008-08-08 20:23:27 75776 --a------ C:\WINDOWS\system32\ieupdates.exe <IEUPDA~1.EXE>
2008-08-08 20:18:48 83456 --a------ C:\WINDOWS\system32\ysjvomtx.dll
2008-08-08 20:17:26 0 d-------- C:\Program Files\AV9
2008-08-08 20:15:15 2048 --a------ C:\WINDOWS\system32\gagiuwbb.exe
2008-08-08 20:14:52 0 d-------- \Deckard
2008-08-08 20:14:30 0 d-------- C:\Documents and Settings\LocalService\Desktop
2008-08-08 20:12:16 101888 --a------ C:\WINDOWS\system32\ycbirp.dll
2008-08-08 20:12:15 101888 --a------ C:\WINDOWS\system32\qlrdwieq.dll
2008-08-08 20:09:34 93696 --a------ C:\WINDOWS\system32\slvevmbd.dll
2008-08-08 20:08:52 92160 --a------ C:\WINDOWS\system32\lljvpeos.dll
2008-08-04 18:13:02 2048 --a------ C:\WINDOWS\system32\jexvcnvp.exe
2008-08-04 18:10:02 102400 --a------ C:\WINDOWS\system32\mjlieb.dll
2008-08-04 18:10:02 102400 --a------ C:\WINDOWS\system32\gdmdvvwi.dll
2008-08-04 18:07:02 82944 --a------ C:\WINDOWS\system32\xwhuagvl.dll
2008-08-04 18:04:02 92672 --a------ C:\WINDOWS\system32\hvsfssos.dll
2008-08-04 18:03:09 92160 --a------ C:\WINDOWS\system32\jnlaylqg.dll
2008-08-02 09:32:27 0 d-------- C:\Documents and Settings\LocalService\Application Data\Macromedia
2008-08-02 09:32:27 0 d-------- C:\Documents and Settings\LocalService\Application Data\Adobe
2008-08-02 09:26:56 83456 --a------ C:\WINDOWS\system32\iblwoapx.dll
2008-08-02 09:23:58 110080 --a------ C:\WINDOWS\system32\wtmgte.dll
2008-08-02 09:23:58 110080 --a------ C:\WINDOWS\system32\ebwqlkpq.dll
2008-08-02 09:20:56 93184 --a------ C:\WINDOWS\system32\xeyhefoi.dll
2008-08-02 09:19:42 92160 --a------ C:\WINDOWS\system32\itibnqtj.dll
2008-08-01 21:19:00 0 dr------- C:\Documents and Settings\LocalService\Favorites
2008-08-01 21:18:56 0 d-------- C:\Documents and Settings\LocalService\Application Data\Talkback
2008-08-01 21:18:23 0 d-------- C:\Documents and Settings\LocalService\Application Data\Mozilla
2008-08-01 20:43:05 0 d-------- C:\Program Files\mjc
2008-08-01 20:43:02 0 d-------- C:\Program Files\InetGet2
2008-08-01 10:48:24 160768 --a------ C:\WINDOWS\system32\vlpnbeebokph.dll <VLPNBE~1.DLL>
2008-07-28 15:23:13 102912 --a------ C:\WINDOWS\system32\yoxzab.dll
2008-07-28 15:23:12 102912 --a------ C:\WINDOWS\system32\mfutmlrf.dll
2008-07-28 15:20:14 92160 --a------ C:\WINDOWS\system32\wneombry.dll
2008-07-28 15:17:57 93184 --a------ C:\WINDOWS\system32\cvparxsm.dll
2008-07-28 15:17:12 597973 --ahs---- C:\WINDOWS\system32\klloonpo.ini2 <KLLOON~1.INI>
2008-07-28 15:16:58 282624 --a------ C:\WINDOWS\system32\opnoollk.dll
2008-07-28 13:21:33 83968 --a------ C:\WINDOWS\system32\nisximby.dll
2008-07-28 13:18:34 102400 --a------ C:\WINDOWS\system32\fqcwzw.dll
2008-07-28 13:18:33 102400 --a------ C:\WINDOWS\system32\fcgcawws.dll
2008-07-28 13:15:33 92160 --a------ C:\WINDOWS\system32\sfnnskwm.dll
2008-07-28 13:12:34 93184 --a------ C:\WINDOWS\system32\esgvemto.dll
2008-07-27 13:48:54 32768 --a------ C:\WINDOWS\system32\geBUnoLf.dll
2008-07-27 13:48:53 32768 --a------ C:\WINDOWS\system32\yayaASLE.dll
2008-07-27 13:18:42 102400 --a------ C:\WINDOWS\system32\jedrok.dll
2008-07-27 13:18:37 102400 --a------ C:\WINDOWS\system32\rsogwrft.dll
2008-07-27 13:15:37 83968 --a------ C:\WINDOWS\system32\plsfnwog.dll
2008-07-27 13:12:37 93696 --a------ C:\WINDOWS\system32\ijgrnbqf.dll
2008-07-27 13:10:22 92160 --a------ C:\WINDOWS\system32\rgqrxacc.dll
2008-07-26 23:39:28 0 d-------- C:\Program Files\iCheck
2008-07-26 23:39:28 0 d-------- C:\Program Files\GetPack
2008-07-26 23:25:35 626494 --ahs---- C:\WINDOWS\system32\WwEOnnmp.ini2 <WWEONN~1.INI>
2008-07-26 23:25:26 283136 --a------ C:\WINDOWS\system32\pmnnOEwW.dll
2008-07-26 23:21:57 687592 --a------ C:\WINDOWS\system32\atmtd.dll
2008-07-26 23:21:48 0 d-------- C:\Documents and Settings\LocalService\Application Data\NetMon
2008-07-26 23:21:30 1989 --a------ C:\WINDOWS\uninstall_nmon.vbs
2008-07-26 23:21:30 0 d-------- C:\Program Files\Network Monitor
2008-07-26 23:21:29 0 d--hs---- C:\WINDOWS\QW1lbGlhIFJlZWRz
2008-07-26 23:21:12 64864 --a------ C:\WINDOWS\system32\xhkgjlzisujpnp.exe <XHKGJL~1.EXE>
2008-07-26 23:20:49 0 d-------- C:\WINDOWS\system32\tebg4
2008-07-26 23:20:49 0 d-------- C:\WINDOWS\system32\cur2
2008-07-26 23:20:24 0 d-------- C:\WINDOWS\system32\kBin02
2008-07-26 23:20:24 0 d-------- \Temp
2008-07-26 23:20:07 32768 --a------ C:\WINDOWS\system32\urqQgddD.dll
2008-07-26 23:20:05 32768 --a------ C:\WINDOWS\system32\tuvSljkK.dll
2008-07-25 15:50:06 355840 --a------ C:\WINDOWS\b148.exe
2008-07-24 16:02:24 91136 --a------ C:\WINDOWS\b152.exe
2008-07-23 22:13:46 85504 ---hs---- C:\Documents and Settings\Greg\lsass.exe
2008-07-23 20:54:18 44544 -ra------ C:\WINDOWS\mrofinu1188.exe
2008-07-23 20:54:18 44544 -ra------ C:\WINDOWS\mrofinu1000106.exe
2008-07-15 14:28:38 0 d-------- C:\Program Files\uTorrent
2008-07-15 14:28:27 0 d-------- C:\Documents and Settings\Greg\Application Data\uTorrent
2008-07-15 01:19:13 0 d-------- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-07-15 01:15:50 1334 --a------ C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
-- Find3M Report ---------------------------------------------------------------
2008-08-08 20:04:59 501731328 --ahs---- \hiberfil.sys
2008-08-08 20:04:52 754974720 --ahs---- \pagefile.sys
2008-07-23 21:44:58 0 d-------- C:\Program Files\mIRC
2008-06-02 14:37:57 148003 --a------ C:\WINDOWS\hpoins21.dat
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{16EC00C6-90B4-4956-BE82-96A007727458}]
26/07/2008 23:20 32768 --a------ C:\WINDOWS\system32\tuvSljkK.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3203C641-8301-4513-9A5A-C815EE3437C3}]
26/07/2008 23:25 283136 --a------ C:\WINDOWS\system32\pmnnOEwW.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{514A5C49-0C7D-42c3-A71B-38864A269B7A}]
08/08/2008 20:08 92160 --a------ C:\WINDOWS\system32\lljvpeos.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{a16acb9e-ecbb-fcf6-850e-265e702ac1fa}]
01/08/2008 10:48 160768 --a------ C:\WINDOWS\system32\vlpnbeebokph.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{e556eb88-a4dd-4b71-9658-7a9e95bc728e}]
08/08/2008 20:12 101888 --a------ C:\WINDOWS\system32\ycbirp.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"eabconfg.cpl"="C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe" [17/09/2004 17:19]
"igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [07/02/2006 08:39]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [07/02/2006 08:36]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [07/02/2006 08:40]
"LSA Shellu"="C:\Documents and Settings\Greg\lsass.exe" [28/04/2008 14:51]
"runner1"="C:\WINDOWS\mrofinu1188.exe" [23/07/2008 20:54]
"{525161ae-1c3a-77c1-2561-1ea790ee1deb}"="C:\WINDOWS\system32\vlpnbeebokph.dll" [01/08/2008 10:48]
"4289727e"="C:\WINDOWS\system32\ysjvomtx.dll" [08/08/2008 20:18]
"BM41ba41e2"="C:\WINDOWS\system32\slvevmbd.dll" [08/08/2008 20:09]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [04/08/2004 09:00]
"39855845889158728651099187833999"="C:\Program Files\AV9\av2009.exe" [08/08/2008 20:17]
"ieupdate"="C:\WINDOWS\system32\ieupdates.exe" [08/08/2008 20:23]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"39855845889158728651099187833999"=C:\Program Files\AV9\av2009.exe
"ieupdate"="C:\WINDOWS\system32\ieupdates.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{16EC00C6-90B4-4956-BE82-96A007727458}"= C:\WINDOWS\system32\tuvSljkK.dll [26/07/2008 23:20 32768]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\tuvSljkK]
tuvSljkK.dll 26/07/2008 23:20 32768 C:\WINDOWS\system32\tuvSljkK.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Authentication Packages"= msv1_0 C:\WINDOWS\system32\pmnnOEwW
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" -atboottime
"Cpqset"=C:\Program Files\HPQ\Default Settings\cpqset.exe
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe"
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
"4oD"="C:\Program Files\Kontiki\KHost.exe" -all
"PCSuiteTrayApplication"=C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
"Symantec NetDriver Monitor"=C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
"SynTPLpr"=C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt hpqcxs08 hpqddsvc
HPService HPSLPSVC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
-- End of Deckard's System Scanner: finished at 2008-08-08 20:26:04 ------------
extra.txt
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: English
CPU 0: Intel® Pentium® M processor 1.50GHz
Percentage of Memory in Use: 88%
Physical Memory (total/avail): 478.42 MiB / 53.17 MiB
Pagefile Memory (total/avail): 1121.01 MiB / 621.46 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1927.82 MiB
C: is Fixed (NTFS) - 55.88 GiB total, 34.75 GiB free.
D: is CDROM (No Media)
\\.\PHYSICALDRIVE0 - TOSHIBA MK6025GAS - 55.89 GiB - 1 partition
\PARTITION0 (bootable) - Installable File System - 55.88 GiB - C:
-- Security Center -------------------------------------------------------------
AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.
FirstRunDisabled is set.
AntiVirusDisableNotify is set.
FirewallDisableNotify is set.
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\StubInstaller.exe"="C:\\StubInstaller.exe:*:Enabled:LimeWire swarmed installer"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\\Documents and Settings\\Greg\\My Documents\\My Downlads\\SPStudio\\SPStudio.exe"="C:\\Documents and Settings\\Greg\\My Documents\\My Downlads\\SPStudio\\SPStudio.exe:*:Enabled:SmartPhone Studio"
"C:\\Program Files\\burst\\core-new1.1.3\\btdownloadheadless.exe"="C:\\Program Files\\burst\\core-new1.1.3\\btdownloadheadless.exe:*:Enabled:burst! download engine"
"C:\\Program Files\\mIRC\\mirc.exe"="C:\\Program Files\\mIRC\\mirc.exe:*:Enabled:mIRC"
"C:\\Program Files\\Steam\\SteamApps\\
[email protected]\\counter-strike\\hl.exe"="C:\\Program Files\\Steam\\SteamApps\\
[email protected]\\counter-strike\\hl.exe:*:Enabled:Half-Life Launcher"
"C:\\Program Files\\RSSoft\\RSEDNClient.exe"="C:\\Program Files\\RSSoft\\RSEDNClient.exe:*:Enabled:RSEDNClient"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Program Files\\Kontiki\\KService.exe"="C:\\Program Files\\Kontiki\\KService.exe:*:Enabled:Delivery Manager Service"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:Firefox"
"C:\\Program Files\\Real\\RealPlayer\\realplay.exe"="C:\\Program Files\\Real\\RealPlayer\\realplay.exe:*:Enabled:RealPlayer"
"C:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"="C:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"="C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"D:\\setup\\HPZNUI01.EXE"="D:\\setup\\HPZNUI01.EXE:*:Enabled:hpznui01.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe:*:Enabled:hposid01.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"="C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"C:\\Documents and Settings\\Greg\\Local Settings\\Temp\\WZSE0.TMP\\SymNRT.exe"="C:\\Documents and Settings\\Greg\\Local Settings\\Temp\\WZSE0.TMP\\SymNRT.exe:*:Enabled:Symantec Removal Utility"
"C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:µTorrent"
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\Documents and Settings\All Users
CLASSPATH=.;C:\Program Files\Java\jre1.5.0_03\lib\ext\QTJava.zip
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=WORK
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Program Files\QuickTime\QTSystem\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 6 Model 13 Stepping 8, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=0d08
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.5.0_03\lib\ext\QTJava.zip
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\WINDOWS\TEMP
TMP=C:\WINDOWS\TEMP
USERPROFILE=C:\Documents and Settings\LocalService
windir=C:\WINDOWS
-- User Profiles ---------------------------------------------------------------
Amelia Reeds
(admin)Kevin Reeds
(admin)Greg
(admin)Erin
(admin)-- Add/Remove Programs ---------------------------------------------------------
--> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
--> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
--> C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu
--> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9D5DFD1A-5B25-48B7-B4D5-E04778BDC676}\Setup.exe" -l0x9
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
32 Bit HP CIO Components Installer --> MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
4oD --> MsiExec.exe /I {8B7443F5-E141-42A0-AB61-ED2331AAD606}
Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 7.0 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
Apple Software Update --> MsiExec.exe /I{A50C25D7-62E9-4511-AD70-8E2DA5E79B7D}
ArcSoft PhotoImpression --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E142615E-5ED8-4511-9BF0-0284BFA25766}\Setup.exe" -l0x9 -uninst
ArcSoft VideoImpression 1.6 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ED10343F-D30A-4200-9B00-665FC45F52B4}\Setup.exe" -l0x9 -uninst
CIF USB Camera (2110A) --> C:\WINDOWS\CleanDev.exe C:\WINDOWS\DC2110a.ini
Command --> wscript "C:\WINDOWS\QW1lbGlhIFJlZWRz\kqY5v351KIL5tqlW.vbs"
Conexant AC-Link Audio --> CIAunwdm.exe
DivX Codec --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Content Uploader --> C:\Program Files\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
DivX Converter --> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player --> C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
EndItAll 2.0 --> "C:\Program Files\EndItAll\unins000.exe"
Enhancement Browser Tools Targetedbanner --> C:\WINDOWS\system32\xhkgjlzisujpnp.exe
Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Imaging Device Functions 9.0 --> C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP OCR Software 9.0 --> C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
HP Photosmart All-In-One Software 9.0 --> C:\Program Files\HP\Digital Imaging\{D64BC2CF-0F12-47d7-B412-B4F3FD684253}\setup\hpzscr01.exe -datfile hposcr21.dat
HP Photosmart Essential 2.01 --> C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
Intel® Extreme Graphics 2 Driver --> RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_3582
Internet Speed Monitor --> C:\Program Files\iCheck\Uninstall.exe
InterVideo WinDVD --> "C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
iTunes --> MsiExec.exe /I{446DBFFA-4088-48E3-8932-74316BA4CAE4}
J2SE Runtime Environment 5.0 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150030}
Java 2 Runtime Environment, SE v1.4.2_05 --> MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142050}
LimeWire 4.10.9 --> "C:\Program Files\LimeWire\uninstall.exe"
Macromedia Flash Player 8 --> RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\swflash.inf,DefaultUninstall,5
Microsoft ActiveSync 4.0 --> MsiExec.exe /I{B208806F-A231-4FA0-AB3F-5C1B8979223E}
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Office Standard Edition 2003 --> MsiExec.exe /I{91120409-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Works --> MsiExec.exe /I{416D80BA-6F6D-4672-B7CF-F54DA2F80B44}
mIRC --> C:\Program Files\mIRC\uninstall.exe _?=C:\Program Files\mIRC
Mozilla Firefox (2.0.0.16) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN --> C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSN Toolbar --> C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\mtbs.exe c
Network Monitor --> wscript "C:\WINDOWS\uninstall_nmon.vbs"
Nokia Connectivity Cable Driver --> MsiExec.exe /X{E4DD8B33-6F9B-41C5-96FF-5DBF27ED23E7}
Nokia Lifeblog 2.1 --> MsiExec.exe /I{EE565795-2776-415A-B31C-EB3A8D7C6FA4}
Nokia MTP driver --> MsiExec.exe /I{59359B3D-ABE7-46BF-AB55-43B67A64DC68}
Nokia N73 highlights --> MsiExec.exe /I{02B71D92-A84B-4DFB-9A10-D12BB01AC1F2}
Nokia PC Connectivity Solution --> MsiExec.exe /I{588AA47B-9115-44D3-B2E5-4F10BC659D6C}
Nokia PC Suite --> MsiExec.exe /I{508FA22B-AFFC-46CD-9441-2567976574A4}
Nokia Software Updater --> MsiExec.exe /X{3741689E-584D-40C9-B011-373A0371846D}
Nokia themes for your device --> MsiExec.exe /I{77F5816C-64A6-4FBE-BBE5-52EFE5EB84E8}
Quick Launch Buttons 5.00 C2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEB326EC-8F40-47B2-BA22-BB092565D66F}\setup.exe" -l0x9 -uninst
QuickTime --> MsiExec.exe /I{50D8FFDD-90CD-4859-841F-AA1961C7767A}
RealPlayer --> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Security Update for Step By Step Interactive Training (KB898458) --> "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
Security Update for Step By Step Interactive Training (KB923723) --> "C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
SoftV92 Data Fax Modem with SmartCP --> C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_8086&DEV_24C6&SUBSYS_3080103C\HXFSETUP.EXE -U -Ihpm30805.inf
Steam --> C:\PROGRA~1\Steam\UNWISE.EXE C:\PROGRA~1\Steam\INSTALL.LOG
Synaptics Pointing Device Driver --> rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Texas Instruments PCIxx21/x515 drivers. --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{C569D686-A444-4AF0-A437-15CBB2816E34}
TuneUp Utilities 2008 --> MsiExec.exe /I{5888428E-699C-4E71-BF71-94EE06B497DA}
Ventrilo Client --> MsiExec.exe /I{789289CA-F73A-4A16-A331-54D498CE069F}
VeohTV BETA --> C:\Program Files\InstallShield Installation Information\{D1B11537-EA51-4DD8-BF1E-098BEE48868D}\setup.exe -runfromtemp -l0x0409
VideoLAN VLC media player 0.8.4a --> C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Driver Package - Nokia Modem (04/06/2006 6.8.0.17) --> C:\PROGRA~1\DIFX\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_7F91C37896B530901B0665F9EF32E19FF06F5687\nokbtmdm.inf
Windows Live Messenger --> MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}
Windows Live Sign-in Assistant --> MsiExec.exe /I{49672EC2-171B-47B4-8CE7-50D7806360D7}
Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Format SDK Hotfix - KB891122 --> "C:\WINDOWS\$NtUninstallKB891122$\spuninst\spuninst.exe"
-- Application Event Log -------------------------------------------------------
Event Record #/Type23612 / Success
Event Submitted/Written: 08/04/2008 06:28:03 PM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.
Event Record #/Type23600 / Success
Event Submitted/Written: 08/04/2008 06:03:00 PM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.
Event Record #/Type23567 / Success
Event Submitted/Written: 08/02/2008 09:19:50 AM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.
Event Record #/Type23559 / Success
Event Submitted/Written: 08/01/2008 08:39:09 PM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.
Event Record #/Type23526 / Error
Event Submitted/Written: 07/28/2008 03:09:02 PM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application hpqtra08.exe, version 90.0.146.0, faulting module hpqtra08.exe, version 90.0.146.0, fault address 0x0000bf08.
Processing media-specific event for [hpqtra08.exe!ws!]
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
Event Record #/Type82839 / Warning
Event Submitted/Written: 08/08/2008 08:09:45 PM / 08/08/2008 08:09:46 PM
Event ID/Source: 4226 / Tcpip
Event Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Event Record #/Type82814 / Warning
Event Submitted/Written: 08/07/2008 07:53:20 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 0012F06B7FCD. The following
error occurred:
%%1223.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Event Record #/Type82771 / Warning
Event Submitted/Written: 08/06/2008 06:30:01 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 0012F06B7FCD. The following
error occurred:
%%1223.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Event Record #/Type82769 / Error
Event Submitted/Written: 08/06/2008 06:28:40 PM
Event ID/Source: 32003 / ipnathlp
Event Description:
The Network Address Translator (NAT) was unable to request an operation
of the kernel-mode translation module.
This may indicate misconfiguration, insufficient resources, or
an internal error.
The data is the error code.
Event Record #/Type82768 / Warning
Event Submitted/Written: 08/06/2008 06:28:36 PM
Event ID/Source: 2504 / Server
Event Description:
The server could not bind to the transport \Device\NetBT_Tcpip_{54B963F2-726C-4C52-92DD-7E0159D4DE61}.
-- End of Deckard's System Scanner: finished at 2008-08-08 20:26:04 ------------