I have MBAM installed, but whenever this problem started, MBAM wouldn't work and gave me "error code 714 (0,9)". So I reinstalled it and ran the scan again, but it freezes up before it finishes. I also tried running SuperAntiSpyWare, but it also freezes up before finishing. Same thing happens whenever I run either in Safe Mode. The only virus scanner I've been able to run successfully is the "Malicious Software Removal Tool" from Microsoft which showed nothing.
I have been able to run TFC and Erunt.
GMER froze in normal mode and gave me the blue screen whenever I tried it in Safe Mode.
OTL Worked:
OTL logfile created on: 3/31/2010 10:33:52 AM - Run 1
OTL by OldTimer - Version 3.1.37.3 Folder = C:\Users\Denise\Desktop
Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 50.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 76.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 140.84 Gb Total Space | 58.20 Gb Free Space | 41.33% Space Free | Partition Type: NTFS
Drive D: | 8.21 Gb Total Space | 1.81 Gb Free Space | 21.98% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: DENISE-PC
Current User Name: Denise
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Processes (SafeList) ==========
PRC - [2010/03/31 10:17:35 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Denise\Desktop\OTL.exe
PRC - [2010/03/30 00:46:14 | 000,303,952 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2010/03/30 00:46:12 | 000,437,584 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2010/03/25 16:59:57 | 000,095,232 | ---- | M] () --
C:\Program Files\ViiKiiDesktopPlugin\ViiKiiDesktopPlugin.exe
PRC - [2009/12/23 15:57:18 | 000,093,320 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2009/12/21 15:15:04 | 000,818,288 | ---- | M] (The Weather Channel Interactive, Inc.) -- C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe
PRC - [2009/12/01 09:55:10 | 000,389,120 | ---- | M] (tzuk) --
C:\Program Files\Sandboxie\SbieCtrl.exe
PRC - [2009/12/01 09:55:10 | 000,066,560 | ---- | M] (tzuk) --
C:\Program Files\Sandboxie\SbieSvc.exe
PRC - [2009/11/12 00:49:49 | 000,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2009/05/24 22:01:42 | 002,927,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/05/19 11:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2008/04/22 14:14:20 | 000,802,816 | R--- | M] (Honeywell International Inc.) -- C:\Program Files\Common Files\Honeywell\SimStation\SimStation.exe
PRC - [2008/04/10 21:01:10 | 000,110,592 | ---- | M] (NinjaVideo) -- C:\Program Files\NinjaVideo\NinjaVideo Helper\NinjaVideo Helper.exe
PRC - [2007/03/12 14:54:24 | 000,050,696 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
PRC - [2007/02/12 10:38:04 | 000,355,096 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2007/02/12 10:37:58 | 000,174,872 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2007/01/04 17:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) -- C:\Program Files\Viewpoint\Common\ViewpointService.exe
========== Modules (SafeList) ==========
MOD - [2010/03/31 10:17:35 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Denise\Desktop\OTL.exe
MOD - [2010/02/23 14:45:10 | 000,015,056 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee\SiteAdvisor\sahook.dll
MOD - [2008/01/18 23:26:36 | 001,684,480 | ---- | M] (Microsoft Corporation) --
C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - [2010/03/30 00:46:14 | 000,303,952 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2009/12/23 15:57:18 | 000,093,320 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2009/12/01 09:55:10 | 000,066,560 | ---- | M] (tzuk) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV - [2009/08/05 22:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2009/05/26 14:23:58 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/05/19 11:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2009/03/03 14:53:32 | 000,033,176 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_HelperSvc.exe -- (getPlus® Helper) getPlus®
SRV - [2009/02/16 20:42:00 | 002,741,114 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] --
C:\Windows\System32\GameMon.des -- (npggsvc)
SRV - [2008/04/22 14:14:20 | 000,802,816 | R--- | M] (Honeywell International Inc.) [Auto | Running] -- C:\Program Files\Common Files\Honeywell\SimStation\SimStation.exe -- (SimStation)
SRV - [2008/04/10 21:01:10 | 000,110,592 | ---- | M] (NinjaVideo) [Auto | Running] -- C:\Program Files\NinjaVideo\NinjaVideo Helper\NinjaVideo Helper.exe -- (NinjaVideo Helper.exe)
SRV - [2008/01/18 23:38:26 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/04/23 21:11:44 | 000,106,593 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS)
SRV - [2007/04/23 21:11:42 | 000,262,243 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS)
SRV - [2007/02/12 10:38:04 | 000,355,096 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel®
SRV - [2007/01/09 17:55:34 | 000,110,592 | ---- | M] (Hewlett-Packard Development Company, L.P.) [On_Demand | Stopped] -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe -- (Com4Qlb)
SRV - [2007/01/04 17:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) [Auto | Running] -- C:\Program Files\Viewpoint\Common\ViewpointService.exe -- (Viewpoint Manager Service)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.h...a...n&pf=laptop
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.h...a...n&pf=laptop
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.h...a...n&pf=laptop
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 2
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "AIM Search"
FF - prefs.js..browser.search.defaulturl: "http://search.aol.co...ff50ie7&query="
FF - prefs.js..browser.search.selectedEngine: "AIM Search"
FF - prefs.js..browser.startup.homepage: "www.iswamp.net"
FF - prefs.js..extensions.enabledItems: {e001c731-5e37-4538-a5cb-8168736a2360}:0.9.9.15
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20090920.2
FF - prefs.js..extensions.enabledItems: [email protected]:3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}:5.0.16
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:1.6.5.200812101546
FF - prefs.js..extensions.enabledItems: {57407AE0-868F-11DC-AD21-49A755D89593}:3.0.0
FF - prefs.js..extensions.enabledItems: [email protected]:0.1.1
FF - prefs.js..keyword.URL: "http://search.aol.co...h=yesab&query="
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2010/03/27 04:36:35 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.18\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/03/14 13:36:50 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.18\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/03/14 13:36:50 | 000,000,000 | ---D | M]
[2008/09/13 02:34:26 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Mozilla\Extensions
[2008/05/01 01:03:13 | 000,000,000 | ---D | M] (No name found) --
C:\Users\Denise\AppData\Roaming\Mozilla\Extensions\{6334D996-EA3E-4a0e-AA8D-15BA56B37241}
[2010/03/31 02:11:07 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions
[2009/09/03 12:14:26 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2008/09/13 02:39:09 | 000,000,000 | ---D | M] (Foxkeh Theme) --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\{57407AE0-868F-11DC-AD21-49A755D89593}
[2009/02/07 15:29:40 | 000,000,000 | ---D | M] (Yahoo! Toolbar) --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2009/05/07 20:36:21 | 000,000,000 | ---D | M] (ImTranslator) --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}
[2009/05/25 00:00:37 | 000,000,000 | ---D | M] (Adobe DLM (powered by getPlus®)) --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}
[2010/03/31 01:56:44 | 000,000,000 | ---D | M] (No name found) --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}
[2009/10/11 00:37:49 | 000,000,000 | ---D | M] (Greasemonkey) --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2008/09/13 02:38:05 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\[email protected]
[2008/09/13 15:04:55 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\extensions\[email protected]
[2008/08/19 22:51:06 | 000,001,901 | ---- | M] () --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\searchplugins\aimsearch.xml
[2008/02/05 12:51:30 | 000,000,277 | ---- | M] () --
C:\Users\Denise\AppData\Roaming\Mozilla\Firefox\Profiles\65wnoebz.default\searchplugins\search.xml
[2010/03/21 13:53:21 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009/05/29 14:37:18 | 000,000,000 | ---D | M] (Java Console) --
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}
[2009/07/03 01:34:44 | 000,083,376 | ---- | M] (NHN USA Inc.) --
C:\Program Files\Mozilla Firefox\plugins\npijjiautoinstallpluginff.dll
[2009/08/17 07:42:14 | 000,073,728 | ---- | M] (NHN USA Inc. ) --
C:\Program Files\Mozilla Firefox\plugins\npijjiFFPlugin1.dll
[2007/04/16 13:07:12 | 000,180,293 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
O1 HOSTS File: ([2009/12/29 13:50:35 | 000,000,092 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: ::1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll File not found
O2 - BHO: (Yahoo! IE Services Button) - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll (Yahoo! Inc.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (The Weather Channel Toolbar) - {2E5E800E-6AC0-411E-940A-369530A35E43} - C:\Windows\System32\TwcToolbarIe7.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [AdobeBridge] File not found
O4 - HKCU..\Run: [Aim6] File not found
O4 - HKCU..\Run: [DW6] C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe (The Weather Channel Interactive, Inc.)
O4 - HKCU..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (tzuk)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe File not found
O4 - Startup: C:\Users\Denise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O4 - Startup: C:\Users\Denise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ViiKiiDesktopPlugin.lnk = C:\Program Files\ViiKiiDesktopPlugin\ViiKiiDesktopPlugin.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll (Yahoo! Inc.)
O9 - Extra 'Tools' menuitem : Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Ranges: Range1 ([http] in Local intranet)
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} http://cdn.scan.onec...S/wlscctrl2.cab (Windows Live OneCare safety scanner control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.5.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: ActiveGS.cab http://www.virtualap...rg/activegs.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 128.227.47.6 128.227.47.7
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O22 - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files\Stardock\Fences\FencesMenu.dll (Stardock)
O24 - Desktop WallPaper: C:\Users\Denise\Pictures\jenny\jenny2.jpg
O24 - Desktop BackupWallPaper: C:\Users\Denise\Pictures\jenny\jenny2.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/06/20 16:19:55 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2009/04/21 23:22:45 | 000,000,000 | ---D | M] - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2005/09/11 11:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ]
O32 - AutoRun File - [2009/04/21 23:22:45 | 000,000,000 | RHSD | M] - D:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{1bb2455c-3f2a-11dc-8dad-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{1bb2455c-3f2a-11dc-8dad-806e6f6e6963}\Shell\AutoRun\command - "" = E:\XpressConnect.exe -- File not found
O33 - MountPoints2\{1bb2455c-3f2a-11dc-8dad-806e6f6e6963}\Shell\NETCONFIG\command - "" = E:\XpressConnect.exe -- File not found
O33 - MountPoints2\{1bb2455c-3f2a-11dc-8dad-806e6f6e6963}\Shell\NETCONFIG_REVERT\command - "" = E:\XpressConnect.exe -- File not found
O33 - MountPoints2\{6574946e-55ce-11de-9acd-0016d39d3a92}\Shell - "" = AutoRun
O33 - MountPoints2\{6574946e-55ce-11de-9acd-0016d39d3a92}\Shell\AutoRun\command - "" = F:\automenu.exe -- File not found
O33 - MountPoints2\{b21d52e9-e677-11de-adb3-0016d39d3a92}\Shell\AutoRun\command - "" = G:\t2hjo0.exe -- File not found
O33 - MountPoints2\{b21d52e9-e677-11de-adb3-0016d39d3a92}\Shell\open\Command - "" = G:\t2hjo0.exe -- File not found
O33 - MountPoints2\{b996b1bc-3836-11de-a77c-0016d39d3a92}\Shell - "" = AutoRun
O33 - MountPoints2\{b996b1bc-3836-11de-a77c-0016d39d3a92}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -- File not found
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\wd_windows_tools\setup.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (Partizan) - C:\Windows\System32\Partizan.exe (Greatis Software)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias [2009/05/26 13:57:12 | 000,000,000 | ---D | M]
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
OTL cannot create restorepoints on Vista OSs!
========== Files/Folders - Created Within 14 Days ==========
[2010/03/31 10:17:33 | 000,555,520 | ---- | C] (OldTimer Tools) --
C:\Users\Denise\Desktop\OTL.exe
[2010/03/31 10:01:18 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2010/03/31 09:59:51 | 000,791,393 | ---- | C] (Lars Hederer ) --
C:\Users\Denise\Desktop\erunt_setup.exe
[2010/03/31 03:07:32 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/03/31 03:07:30 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/03/31 03:07:29 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/03/31 02:58:34 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010/03/31 02:57:44 | 005,918,768 | ---- | C] (Malwarebytes Corporation ) --
C:\Users\Denise\Desktop\abcd.exe
[2010/03/31 02:42:50 | 000,444,416 | ---- | C] (OldTimer Tools) --
C:\Users\Denise\Desktop\TFC.exe
[2010/03/31 01:56:59 | 000,000,000 | ---D | C] --
C:\Users\Denise\AppData\Roaming\QuickScan
[2010/03/31 01:36:03 | 000,000,000 | ---D | C] --
C:\ProgramData\Kaspersky Lab Setup Files
[2010/03/31 00:32:08 | 000,000,000 | ---D | C] --
C:\01ea836e9f8796b2502f
[2010/03/25 17:00:01 | 000,000,000 | ---D | C] -- C:\Program Files\ViiKiiDesktopPlugin
[2010/03/18 18:55:58 | 000,000,000 | ---D | C] --
C:\Users\Denise\AppData\Roaming\ViiKiiDesktopPlugin.5E22EA0FF243470AB5EDDF282C0A5B52E9909C36.1
[2009/03/31 18:45:54 | 001,654,869 | ---- | C] (Dynu Systems Inc.) -- C:\ProgramData\DynuEncrypt.dll
[1 C:\Users\Denise\Documents\*.tmp files -> C:\Users\Denise\Documents\*.tmp -> ]
========== Files - Modified Within 14 Days ==========
[2010/03/31 10:36:02 | 006,815,744 | -HS- | M] () --
C:\Users\Denise\ntuser.dat
[2010/03/31 10:32:17 | 000,000,898 | ---- | M] () --
C:\Users\Denise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ViiKiiDesktopPlugin.lnk
[2010/03/31 10:30:40 | 000,000,680 | ---- | M] () --
C:\Users\Denise\AppData\Local\d3d9caps.dat
[2010/03/31 10:30:40 | 000,000,149 | ---- | M] () --
C:\Users\Public\Documents\hpqp.ini
[2010/03/31 10:30:16 | 000,003,296 | -H-- | M] () --
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/03/31 10:30:16 | 000,003,296 | -H-- | M] () --
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/03/31 10:30:13 | 000,000,006 | -H-- | M] () --
C:\Windows\tasks\SA.DAT
[2010/03/31 10:30:10 | 000,067,584 | --S- | M] () --
C:\Windows\bootstat.dat
[2010/03/31 10:30:07 | 2137,382,912 | -HS- | M] () --
C:\hiberfil.sys
[2010/03/31 10:30:05 | 179,977,851 | ---- | M] () --
C:\Windows\MEMORY.DMP
[2010/03/31 10:18:59 | 000,524,288 | -HS- | M] () --
C:\Users\Denise\ntuser.dat{d3f42e39-3c5c-11df-8973-80838ce9fdd1}.TMContainer00000000000000000001.regtrans-ms
[2010/03/31 10:18:59 | 000,065,536 | -HS- | M] () --
C:\Users\Denise\ntuser.dat{d3f42e39-3c5c-11df-8973-80838ce9fdd1}.TM.blf
[2010/03/31 10:18:31 | 000,703,448 | ---- | M] () --
C:\Windows\System32\PerfStringBackup.INI
[2010/03/31 10:18:31 | 000,604,012 | ---- | M] () --
C:\Windows\System32\perfh009.dat
[2010/03/31 10:18:31 | 000,105,040 | ---- | M] () --
C:\Windows\System32\perfc009.dat
[2010/03/31 10:18:29 | 002,634,345 | -H-- | M] () --
C:\Users\Denise\AppData\Local\IconCache.db
[2010/03/31 10:17:35 | 000,555,520 | ---- | M] (OldTimer Tools) --
C:\Users\Denise\Desktop\OTL.exe
[2010/03/31 10:01:20 | 000,000,714 | ---- | M] () --
C:\Users\Denise\Desktop\ERUNT.lnk
[2010/03/31 10:00:10 | 000,791,393 | ---- | M] (Lars Hederer ) --
C:\Users\Denise\Desktop\erunt_setup.exe
[2010/03/31 03:42:26 | 045,942,928 | ---- | M] () --
C:\Users\Denise\Desktop\setup_av_free.exe
[2010/03/31 03:07:35 | 000,000,818 | ---- | M] () --
C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/03/31 02:57:57 | 005,918,768 | ---- | M] (Malwarebytes Corporation ) --
C:\Users\Denise\Desktop\abcd.exe
[2010/03/31 02:42:50 | 000,444,416 | ---- | M] (OldTimer Tools) --
C:\Users\Denise\Desktop\TFC.exe
[2010/03/30 20:43:33 | 000,524,288 | -HS- | M] () --
C:\Users\Denise\ntuser.dat{d3f42e39-3c5c-11df-8973-80838ce9fdd1}.TMContainer00000000000000000002.regtrans-ms
[2010/03/30 20:37:27 | 000,524,288 | -HS- | M] () --
C:\Users\Denise\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
[2010/03/30 20:37:27 | 000,065,536 | -HS- | M] () --
C:\Users\Denise\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
[2010/03/30 00:46:30 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/03/30 00:45:52 | 000,020,824 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/03/29 01:05:18 | 000,000,496 | ---- | M] () --
C:\Windows\tasks\Malwarebytes' Scheduled Scan for Denise.job
[2010/03/29 01:00:22 | 000,000,482 | ---- | M] () --
C:\Windows\tasks\Malwarebytes' Scheduled Update for Denise.job
[2010/03/26 20:44:14 | 000,002,585 | ---- | M] () --
C:\Users\Denise\Desktop\Microsoft Office Excel 2007.lnk
[2010/03/25 17:00:01 | 000,000,862 | ---- | M] () --
C:\Users\Public\Desktop\ViiKiiDesktopPlugin.lnk
[2010/03/25 16:59:00 | 000,004,586 | ---- | M] () --
C:\Windows\Sandboxie.ini
[2010/03/23 00:51:22 | 000,256,495 | ---- | M] () --
C:\Users\Denise\Desktop\tenant-improvement-restaurant-floor-plan1.jpg
[2010/03/22 21:42:04 | 000,010,905 | ---- | M] () --
C:\Users\Denise\Desktop\deepsix.docx
[2010/03/22 20:29:24 | 000,057,191 | ---- | M] () --
C:\Users\Denise\Desktop\phonee.JPG
[2010/03/22 11:34:00 | 000,001,765 | ---- | M] () --
C:\Users\Public\Desktop\Luminary - Rise of Goonzu.lnk
[1 C:\Users\Denise\Documents\*.tmp files -> C:\Users\Denise\Documents\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/03/31 10:30:07 | 2137,382,912 | -HS- | C] () --
C:\hiberfil.sys
[2010/03/31 10:15:54 | 000,293,376 | ---- | C] () --
C:\Users\Denise\Desktop\gmer.exe
[2010/03/31 10:01:20 | 000,000,714 | ---- | C] () --
C:\Users\Denise\Desktop\ERUNT.lnk
[2010/03/31 03:42:04 | 045,942,928 | ---- | C] () --
C:\Users\Denise\Desktop\setup_av_free.exe
[2010/03/31 03:07:35 | 000,000,818 | ---- | C] () --
C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/03/30 20:43:33 | 000,524,288 | -HS- | C] () --
C:\Users\Denise\ntuser.dat{d3f42e39-3c5c-11df-8973-80838ce9fdd1}.TMContainer00000000000000000002.regtrans-ms
[2010/03/30 20:43:33 | 000,524,288 | -HS- | C] () --
C:\Users\Denise\ntuser.dat{d3f42e39-3c5c-11df-8973-80838ce9fdd1}.TMContainer00000000000000000001.regtrans-ms
[2010/03/30 20:43:32 | 000,065,536 | -HS- | C] () --
C:\Users\Denise\ntuser.dat{d3f42e39-3c5c-11df-8973-80838ce9fdd1}.TM.blf
[2010/03/25 17:00:01 | 000,000,862 | ---- | C] () --
C:\Users\Public\Desktop\ViiKiiDesktopPlugin.lnk
[2010/03/23 00:51:20 | 000,256,495 | ---- | C] () --
C:\Users\Denise\Desktop\tenant-improvement-restaurant-floor-plan1.jpg
[2010/03/22 21:42:02 | 000,010,905 | ---- | C] () --
C:\Users\Denise\Desktop\deepsix.docx
[2010/03/22 20:29:20 | 000,057,191 | ---- | C] () --
C:\Users\Denise\Desktop\phonee.JPG
[2010/03/22 11:34:00 | 000,001,765 | ---- | C] () --
C:\Users\Public\Desktop\Luminary - Rise of Goonzu.lnk
[2010/03/21 04:33:52 | 179,977,851 | ---- | C] () --
C:\Windows\MEMORY.DMP
[2010/03/18 18:55:58 | 000,000,898 | ---- | C] () --
C:\Users\Denise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ViiKiiDesktopPlugin.lnk
[2010/02/28 19:48:04 | 000,000,088 | ---- | C] () --
C:\Users\Denise\AppData\Roaming\usb.inf
[2010/02/12 12:33:57 | 000,331,776 | ---- | C] () --
C:\Windows\System32\TwcToolbarIe7.dll
[2010/02/12 12:33:57 | 000,098,304 | ---- | C] () --
C:\Windows\System32\TwcToolbarBho.dll
[2010/01/19 19:53:25 | 000,000,056 | -H-- | C] () --
C:\ProgramData\ezsidmv.dat
[2009/06/05 17:06:29 | 000,721,904 | ---- | C] () --
C:\Windows\System32\drivers\sptd.sys
[2009/05/07 20:23:30 | 000,000,056 | RHS- | C] () --
C:\Windows\System32\5CB6C3F23E.sys
[2009/05/07 20:14:55 | 000,003,766 | -HS- | C] () --
C:\Windows\System32\KGyGaAvL.sys
[2009/05/07 16:10:41 | 000,000,008 | ---- | C] () --
C:\Users\Denise\AppData\Roaming\usb.dat.bin
[2009/04/04 23:27:55 | 000,004,586 | ---- | C] () --
C:\Windows\Sandboxie.ini
[2009/03/29 00:13:23 | 000,000,000 | ---- | C] () --
C:\Users\Denise\AppData\Local\FnF4.txt
[2009/03/11 20:37:06 | 000,000,032 | ---- | C] () --
C:\Windows\GunzLauncher.INI
[2008/12/17 13:03:09 | 000,003,335 | ---- | C] () --
C:\Users\Denise\AppData\Local\AutobahnAcceleratorInstall.txt
[2008/05/25 00:06:24 | 000,164,352 | ---- | C] () --
C:\Windows\System32\unrar.dll
[2008/01/02 17:57:36 | 000,147,456 | ---- | C] () --
C:\Windows\System32\igfxCoIn_v1409.dll
[2008/01/02 17:47:22 | 001,953,696 | ---- | C] () --
C:\Windows\System32\igklg400.dll
[2008/01/02 17:47:22 | 001,533,360 | ---- | C] () --
C:\Windows\System32\igklg450.dll
[2008/01/02 17:47:22 | 000,104,636 | ---- | C] () --
C:\Windows\System32\igmedcompkrn.dll
[2007/11/16 16:44:17 | 001,936,528 | ---- | C] () --
C:\Windows\System32\ltmm15.dll
[2007/10/14 17:31:25 | 000,000,021 | ---- | C] () --
C:\Windows\atid.ini
[2007/08/16 01:44:38 | 000,003,592 | ---- | C] () --
C:\Users\Denise\AppData\Roaming\wklnhst.dat
[2007/08/12 23:55:17 | 000,014,848 | ---- | C] () --
C:\Users\Denise\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/08/06 18:05:43 | 000,000,680 | ---- | C] () --
C:\Users\Denise\AppData\Local\d3d9caps.dat
[2007/07/31 16:08:21 | 000,000,100 | ---- | C] () --
C:\Windows\dinksmallwood.ini
[2007/07/30 23:10:08 | 000,000,000 | ---- | C] () --
C:\Users\Denise\AppData\Local\QSwitch.txt
[2007/07/30 23:10:08 | 000,000,000 | ---- | C] () --
C:\Users\Denise\AppData\Local\DSwitch.txt
[2007/07/30 23:10:08 | 000,000,000 | ---- | C] () --
C:\Users\Denise\AppData\Local\AtStart.txt
[2007/06/20 16:07:21 | 000,000,320 | ---- | C] () --
C:\ProgramData\hpzinstall.log
[2007/03/30 08:27:34 | 000,204,800 | ---- | C] () --
C:\Windows\System32\igfxCoIn_v1244.dll
[2007/03/30 07:55:46 | 000,910,304 | ---- | C] () --
C:\Windows\System32\igmedkrn.dll
[2007/02/27 16:43:02 | 000,000,000 | ---- | C] () --
C:\Windows\System32\px.ini
[2006/12/14 02:01:36 | 000,520,192 | ---- | C] () --
C:\Windows\System32\CddbPlaylist2Roxio.dll
[2006/12/14 02:01:36 | 000,204,800 | ---- | C] () --
C:\Windows\System32\CddbFileTaggerRoxio.dll
[2006/11/02 08:35:32 | 000,005,632 | ---- | C] () --
C:\Windows\System32\sysprepMCE.dll
[2006/11/02 03:40:29 | 000,013,750 | ---- | C] () --
C:\Windows\System32\pacerprf.ini
[2005/05/07 08:06:00 | 000,016,480 | ---- | C] () --
C:\Windows\System32\rixdicon.dll
========== LOP Check ==========
[2007/07/30 13:58:07 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\acccore
[2009/09/13 23:38:16 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Alawar
[2008/09/24 11:32:39 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\CB Model Pro
[2009/06/20 15:30:58 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Chicken Chase
[2009/06/10 12:07:36 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\DAEMON Tools Lite
[2009/12/27 21:10:45 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Geniesoft
[2009/06/27 20:20:28 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\GetRightToGo
[2009/05/14 14:53:08 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\gtk-2.0
[2009/04/16 14:39:53 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Honeywell
[2009/03/31 18:22:35 | 000,000,000 | -H-D | M] --
C:\Users\Denise\AppData\Roaming\ijjigame
[2007/08/13 01:27:34 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Jasc
[2008/05/08 11:54:22 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\LimeWire
[2009/06/09 19:52:03 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Magic Academy
[2010/03/07 02:08:52 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\MSNInstaller
[2007/08/13 00:06:52 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\muvee Technologies
[2007/10/23 01:11:30 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Nexon
[2008/05/01 01:03:06 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Participatory Culture Foundation
[2008/05/12 21:22:30 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\PCF-VLC
[2009/06/09 22:50:20 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Pi Eye Games
[2009/07/13 14:04:09 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\PlayFirst
[2007/12/26 01:47:51 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\QQ Games
[2007/10/23 11:15:35 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\QQ Games Plugin
[2010/03/31 01:57:05 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\QuickScan
[2009/12/02 01:02:15 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Stardock
[2007/08/16 01:50:18 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Template
[2008/01/22 17:57:46 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\Uniblue
[2009/08/21 22:24:50 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\uTorrent
[2010/03/18 18:55:58 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\ViiKiiDesktopPlugin.5E22EA0FF243470AB5EDDF282C0A5B52E9909C36.1
[2007/07/31 00:51:13 | 000,000,000 | ---D | M] --
C:\Users\Denise\AppData\Roaming\WildTangent
[2010/03/31 10:30:13 | 000,032,538 | ---- | M] () --
C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.exe >
< MD5 for: AGP440.SYS >
[2008/01/18 23:42:26 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 --
C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys
[2008/01/18 23:42:26 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 --
C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
[2008/01/18 23:42:26 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 --
C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys
[2007/06/20 16:28:31 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=313FF294978EA6AF715722D708FB249F --
C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.20494_none_b858f78adaed51b3\AGP440.sys
[2007/06/20 16:28:31 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C --
C:\Windows\System32\DriverStore\FileRepository\machine.inf_f2490cb0\AGP440.sys
[2007/06/20 16:28:31 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C --
C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.16399_none_b7d45c31c1cb309c\AGP440.sys
[2006/11/02 05:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 --
C:\Windows\System32\drivers\AGP440.sys
[2006/11/02 05:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 --
C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009/04/11 02:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 --
C:\Windows\SoftwareDistribution\Download\cd2b15b1a90e884578188440a1660b12\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
[2008/01/18 23:41:32 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 --
C:\Windows\System32\drivers\atapi.sys
[2008/01/18 23:41:32 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 --
C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008/01/18 23:41:32 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 --
C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2006/11/02 05:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F --
C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2009/05/24 22:03:13 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 --
C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys
[2009/05/24 22:03:13 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 --
C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys
[2009/05/24 22:03:12 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F --
C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys
< MD5 for: CNGAUDIT.DLL >
[2006/11/02 05:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D --
C:\Windows\System32\cngaudit.dll
[2006/11/02 05:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D --
C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll
< MD5 for: IASTOR.SYS >
[2007/02/12 10:37:22 | 000,537,368 | ---- | M] (Intel Corporation) MD5=2EE127D5407DA3957EE54711C9AED6EC -- C:\Program Files\Intel\Intel Matrix Storage Manager\driver64\IaStor.sys
[2007/02/12 10:37:22 | 000,537,368 | ---- | M] (Intel Corporation) MD5=2EE127D5407DA3957EE54711C9AED6EC --
C:\SwSetup\Robson\Winall\Driver64\IaStor.sys
[2007/02/12 10:36:54 | 000,277,784 | ---- | M] (Intel Corporation) MD5=FD7F9D74C2B35DBDA400804A3F5ED5D8 -- C:\Program Files\Intel\Intel Matrix Storage Manager\driver\iaStor.sys
[2007/02/12 10:36:54 | 000,277,784 | ---- | M] (Intel Corporation) MD5=FD7F9D74C2B35DBDA400804A3F5ED5D8 --
C:\SwSetup\Robson\Winall\Driver\iaStor.sys
[2007/02/12 10:36:54 | 000,277,784 | ---- | M] (Intel Corporation) MD5=FD7F9D74C2B35DBDA400804A3F5ED5D8 --
C:\Windows\System32\drivers\iaStor.sys
[2007/02/12 10:36:54 | 000,277,784 | ---- | M] (Intel Corporation) MD5=FD7F9D74C2B35DBDA400804A3F5ED5D8 --
C:\Windows\System32\DriverStore\FileRepository\iaahci.inf_1cb29a96\iaStor.sys
< MD5 for: IASTORV.SYS >
[2008/01/18 23:42:52 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 --
C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_c9df7691\iaStorV.sys
[2008/01/18 23:42:52 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 --
C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.0.6001.18000_none_af11527887c7fa8f\iaStorV.sys
[2006/11/02 05:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 --
C:\Windows\System32\drivers\iaStorV.sys
[2006/11/02 05:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 --
C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_37cdafa4\iaStorV.sys
< MD5 for: NETLOGON.DLL >
[2006/11/02 05:46:11 | 000,559,616 | ---- | M] (Microsoft Corporation) MD5=889A2C9F2AACCD8F64EF50AC0B3D553B --
C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6000.16386_none_fb80f5473b0ed783\netlogon.dll
[2009/04/11 02:28:23 | 000,592,896 | ---- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE --
C:\Windows\SoftwareDistribution\Download\cd2b15b1a90e884578188440a1660b12\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6002.18005_none_ffa3304f351bb3a3\netlogon.dll
[2008/01/18 23:35:38 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F --
C:\Windows\System32\netlogon.dll
[2008/01/18 23:35:38 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F --
C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll
< MD5 for: NVRAID.SYS >
[2008/01/18 23:43:02 | 000,102,968 | ---- | M] (NVIDIA Corporation) MD5=2EDF9E7751554B42CBB60116DE727101 --
C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_31c3d71d\nvraid.sys
[2008/01/18 23:43:02 | 000,102,968 | ---- | M] (NVIDIA Corporation) MD5=2EDF9E7751554B42CBB60116DE727101 --
C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvraid.sys
[2006/11/02 05:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) MD5=E69E946F80C1C31C53003BFBF50CBB7C --
C:\Windows\System32\drivers\nvraid.sys
[2006/11/02 05:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) MD5=E69E946F80C1C31C53003BFBF50CBB7C --
C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvraid.sys
< MD5 for: NVSTOR.SYS >
[2006/11/02 05:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC --
C:\Windows\System32\drivers\nvstor.sys
[2006/11/02 05:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC --
C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvstor.sys
[2008/01/18 23:42:10 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 --
C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_31c3d71d\nvstor.sys
[2008/01/18 23:42:10 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 --
C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvstor.sys
< MD5 for: SCECLI.DLL >
[2008/01/18 23:36:20 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 --
C:\Windows\System32\scecli.dll
[2008/01/18 23:36:20 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 --
C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
[2006/11/02 05:46:12 | 000,176,640 | ---- | M] (Microsoft Corporation) MD5=80E2839D05CA5970A86D7BE2A08BFF61 --
C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6000.16386_none_35d7205fdc305e3e\scecli.dll
[2009/04/11 02:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 --
C:\Windows\SoftwareDistribution\Download\cd2b15b1a90e884578188440a1660b12\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6002.18005_none_39f95b67d63d3a5e\scecli.dll
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles
[2008/01/18 23:34:10 | 000,347,136 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 --
C:\Windows\System32\dxtmsft.dll
[2008/01/18 23:34:10 | 000,214,528 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 --
C:\Windows\System32\dxtrans.dll
[2008/01/18 23:38:04 | 000,242,744 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 --
C:\Windows\System32\rsaenh.dll
[2008/01/18 23:36:12 | 000,225,792 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 --
C:\Windows\System32\SLC.dll
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles
[2009/06/05 17:06:29 | 000,721,904 | ---- | M] () Unable to obtain MD5 -- C:\Windows\System32\drivers\sptd.sys
< %systemroot%\System32\config\*.sav >
[2006/11/02 06:34:05 | 000,008,192 | ---- | M] () --
C:\Windows\System32\config\COMPONENTS.SAV
[2006/11/02 06:34:05 | 000,020,480 | ---- | M] () --
C:\Windows\System32\config\DEFAULT.SAV
[2006/11/02 06:34:05 | 000,008,192 | ---- | M] () --
C:\Windows\System32\config\SECURITY.SAV
[2006/11/02 06:34:08 | 010,133,504 | ---- | M] () --
C:\Windows\System32\config\SOFTWARE.SAV
[2006/11/02 06:34:08 | 001,826,816 | ---- | M] () --
C:\Windows\System32\config\SYSTEM.SAV
========== Alternate Data Streams ==========
@Alternate Data Stream - 165 bytes -> C:\ProgramData\TEMP:A6CD15C3
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:9ED07655
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:5C321E34
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:2F0007D6
< End of report >
OTL Extras logfile created on: 3/31/2010 10:33:52 AM - Run 1
OTL by OldTimer - Version 3.1.37.3 Folder = C:\Users\Denise\Desktop
Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 50.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 76.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 140.84 Gb Total Space | 58.20 Gb Free Space | 41.33% Space Free | Partition Type: NTFS
Drive D: | 8.21 Gb Total Space | 1.81 Gb Free Space | 21.98% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: DENISE-PC
Current User Name: Denise
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] --
C:\PROGRA~1\MICROS~3\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" = C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink --
(EarthLink, Inc.)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{3E470382-FFA2-463F-85CB-E6368756C110}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{65126A09-E57F-49D5-BA91-A6F00C93832B}" = lport=2869 | protocol=6 | dir=in | app=system |
"{C49B4D77-2465-4C2D-AEB4-219DF6B83846}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{057F2598-37D1-43D6-9270-C51D0D56B154}" = protocol=17 | dir=in | app=c:\program files\aim6\aim6.exe |
"{0C04798F-F63A-42B4-8606-0EFEF5E6B9D1}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{15F7CB74-368A-4CA8-99DB-F469259B29DB}" = protocol=6 | dir=in | app=c:\program files\common files\honeywell\simstation\simstation.exe |
"{1635BFF0-1E82-477F-843C-712B6D889300}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"{1748B68F-C09A-4BD6-9D6A-93680485EAE2}" = protocol=17 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{1E53A6D7-424C-4FEB-82C0-303C9248AAA1}" = protocol=6 | dir=in | app=c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe |
"{1E69908A-F7F2-482D-9734-42EE7BE185D5}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"{2D3ACCDA-2779-411F-AECD-9BAD0742DA2F}" = dir=in | app=c:\program files\hp\quickplay\qpservice.exe |
"{2DA9C3C4-D02D-4B7A-B3B6-C2DE8D6E061A}" = dir=in | app=c:\program files\hp\quickplay\qp.exe |
"{321FB0B7-B3E6-4361-9961-345BA09C0DC4}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{357D6D11-9222-4089-A94B-8B469D4CCAB2}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{40968742-A50B-43E6-95D0-CA427B44D209}" = protocol=17 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{46514291-A41A-455A-BC43-CDFB6B3E5F48}" = protocol=6 | dir=in | app=c:\users\denise\appdata\local\temp\purplebean.exe |
"{47B75248-B4DF-4E74-9C6D-43A4A6CFA556}" = protocol=6 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{4B15BBB5-0E56-4816-B152-801120D946A0}" = protocol=17 | dir=in | app=c:\users\denise\appdata\local\temp\purplebean.exe |
"{4D446252-D6C1-4861-AE07-B0C46345B9BF}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yserver.exe |
"{5B97547E-F0F4-400A-9716-52A4D15B459F}" = protocol=17 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{5EDCEEDB-FDC5-4E8A-8CD8-32F29B84315E}" = protocol=17 | dir=in | app=c:\program files\common files\honeywell\simstation\commutewizard.exe |
"{601D13AE-582C-4D11-A672-A8987D13829C}" = protocol=6 | dir=in | app=c:\program files\aim6\aim6.exe |
"{61955F40-6C70-46EF-9C29-1523CF1CB6C6}" = protocol=6 | dir=in | app=c:\program files\common files\honeywell\simstation\commutewizard.exe |
"{6676A9C9-0377-4914-BF5A-15000A4FBBA9}" = protocol=6 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{6880EB4F-382D-44B4-AE79-ED467B6B193D}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{7053EFB5-FC68-47DF-AA23-EB9339622C7F}" = protocol=17 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{74F38D3C-5305-48A1-B044-F4E2686F9419}" = protocol=6 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{763418F0-7E84-4DF5-BEFD-5A1D7CCBE77B}" = protocol=17 | dir=in | app=c:\program files\aim6\aim6.exe |
"{80948A01-FFCD-49A7-BA74-D80286AE9557}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{8129BCC6-6280-4AA7-95F8-323C3CF90C94}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yserver.exe |
"{85AC66B8-6ECD-4F71-ADFB-27F995AE2899}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{9A0D30F2-47F9-4602-9E44-CABE719D1729}" = protocol=17 | dir=in | app=c:\program files\common files\honeywell\simstation\simstation.exe |
"{9EB9C64B-0D57-4197-8B31-1DFB2FB352DF}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{A26B916B-B827-4C2F-A8CA-92D43208A41A}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{ADAE30A7-B529-4249-9E1A-25E5C5539E4D}" = protocol=17 | dir=in | app=c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe |
"{AEAE7AD8-07D1-4D26-B92E-65F079D792F6}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{BB91D92A-A5BB-450E-BDB9-9FFAF5A545B7}" = protocol=6 | dir=in | app=c:\program files\aim6\aim6.exe |
"{C48CD66B-F16A-404D-9503-981E14D12813}" = protocol=17 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{D02CB7B8-35FC-461F-9C26-2BBF458C5231}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{D3730B97-27D3-497C-A54B-E6142E823588}" = protocol=6 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{DBDDE2AC-7E61-4F8A-8204-96BA0B394E5A}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{E72E7D8A-E194-42C0-AD88-89BFF144C051}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe |
"{EF3E95B6-F164-4701-92AD-A907623E75EC}" = protocol=6 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{F2D68744-07E5-4DCC-846A-828AF3F00DAB}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{FF1624EF-7FFE-4C16-BE21-44A66F01D06A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"TCP Query User{023187ED-5FB6-416A-B556-93F6D9BC5B45}C:\ijji\english\u_gunz.exe" = protocol=6 | dir=in | app=c:\ijji\english\u_gunz.exe |
"TCP Query User{0BBD9C20-A390-45C8-8B04-46E9CCFFA693}C:\program files\tencent\qq games\qqgames.exe" = protocol=6 | dir=in | app=c:\program files\tencent\qq games\qqgames.exe |
"TCP Query User{0D0473B0-DC29-47EA-81EB-D02821E1757F}C:\ijji\english\gunbound revolution\gunbound.gme" = protocol=6 | dir=in | app=c:\ijji\english\gunbound revolution\gunbound.gme |
"TCP Query User{0E4CFEAE-2C6C-447D-AC60-438598689C36}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{2CA75A44-DBCE-4C70-900C-55926622A0C5}C:\ijji\english\u_goonzu.exe" = protocol=6 | dir=in | app=c:\ijji\english\u_goonzu.exe |
"TCP Query User{2E15E429-E866-4C08-8A8A-9063C4A1521F}C:\program files\myspace\im\myspaceim.exe" = protocol=6 | dir=in | app=c:\program files\myspace\im\myspaceim.exe |
"TCP Query User{4DADB01C-9073-4B48-816A-B267AF90585D}C:\program files\real\realplayer\realplay.exe" = protocol=6 | dir=in | app=c:\program files\real\realplayer\realplay.exe |
"TCP Query User{5B889B5D-B969-4E09-B7E9-0423EDF4B909}C:\program files\veoh networks\veoh\veohclient.exe" = protocol=6 | dir=in | app=c:\program files\veoh networks\veoh\veohclient.exe |
"TCP Query User{5DC1E300-D915-4900-87B2-28EAA02150AD}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{5E06D1F2-5509-4A38-BB5F-D92BEAE4BC38}C:\programdata\autobahn\autobahn.exe" = protocol=6 | dir=in | app=c:\programdata\autobahn\autobahn.exe |
"TCP Query User{6373FFF5-8B5E-4F08-BA2C-CEB312DAE72C}C:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe" = protocol=6 | dir=in | app=c:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe |
"TCP Query User{6B19265C-7D7F-449A-9F64-0F3BC6FE8797}C:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe" = protocol=6 | dir=in | app=c:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe |
"TCP Query User{8B4B2C6F-F14F-4DA9-A817-C403A61AF5E7}C:\program files\tencent\qq games\qqgames.exe" = protocol=6 | dir=in | app=c:\program files\tencent\qq games\qqgames.exe |
"TCP Query User{91A9A89B-E47D-4FFC-A3D5-E4C7C7C128AF}C:\programdata\autobahn\autobahn.exe" = protocol=6 | dir=in | app=c:\programdata\autobahn\autobahn.exe |
"TCP Query User{97E7B819-DC4C-468E-A915-DB51A1A76798}C:\program files\myspace\im\myspaceim.exe" = protocol=6 | dir=in | app=c:\program files\myspace\im\myspaceim.exe |
"TCP Query User{A119040F-1042-4F68-A927-5CA9001035C2}C:\program files\yahoo!\messenger\yahoomessenger.exe" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"TCP Query User{AE6AF5C5-7BD1-42E8-A451-515FBAF968DB}C:\ijji\english\gunz\gunz.exe" = protocol=6 | dir=in | app=c:\ijji\english\gunz\gunz.exe |
"TCP Query User{B37241A8-5BE7-42B4-BCC0-B84DBCEF4E28}C:\program files\hp\hp software update\hpwucli.exe" = protocol=6 | dir=in | app=c:\program files\hp\hp software update\hpwucli.exe |
"TCP Query User{B9650BD0-9FEB-4372-85FB-A7AEB0473C58}C:\nexon\maplestory\maplestory.exe" = protocol=6 | dir=in | app=c:\nexon\maplestory\maplestory.exe |
"TCP Query User{BCE84AD1-BF5E-44A1-81F4-5AC001FB7986}C:\program files\veoh networks\veoh\veohclient.exe" = protocol=6 | dir=in | app=c:\program files\veoh networks\veoh\veohclient.exe |
"TCP Query User{BD80D425-8CEA-420F-9A05-C96F8A7516A3}C:\programdata\ijjigame\plauncher.exe" = protocol=6 | dir=in | app=c:\programdata\ijjigame\plauncher.exe |
"TCP Query User{C34D8637-6519-4BF5-95AA-003C0607232E}C:\ijji\english\u_gbound.exe" = protocol=6 | dir=in | app=c:\ijji\english\u_gbound.exe |
"TCP Query User{C4978932-26D8-400A-A013-A669046E1876}C:\program files\limewire\limewire.exe" = protocol=6 | dir=in | app=c:\program files\limewire\limewire.exe |
"TCP Query User{C92454B1-BA62-4D60-9842-E48D57553E29}C:\nexon\maplestory\patcher.exe" = protocol=6 | dir=in | app=c:\nexon\maplestory\patcher.exe |
"TCP Query User{D2633EB6-F42C-461B-9211-A2F1E4FC931C}C:\users\denise\program files\dna\btdna.exe" = protocol=6 | dir=in | app=c:\users\denise\program files\dna\btdna.exe |
"TCP Query User{E428A44E-AD51-4974-87EB-1AD694FFAEED}C:\ijji\english\u_goonzu.exe" = protocol=6 | dir=in | app=c:\ijji\english\u_goonzu.exe |
"TCP Query User{F117CD51-77AE-4A39-B37C-54D60C3A846A}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{F178DFDB-D9B9-48EE-ABB4-A12A6C0E0920}C:\program files\ws_ftp\ws_ftp95.exe" = protocol=6 | dir=in | app=c:\program files\ws_ftp\ws_ftp95.exe |
"TCP Query User{FB28B6F3-06D1-421C-A1A3-F8C20A208426}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{255634A6-3697-4C65-A5DC-910BD275A2C2}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{33944715-B82D-447F-8C42-80EECA9F03F1}C:\programdata\autobahn\autobahn.exe" = protocol=17 | dir=in | app=c:\programdata\autobahn\autobahn.exe |
"UDP Query User{45CCF994-2D51-43E4-967A-6327153FC53E}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{465EA7AE-4BB0-48D0-9738-9BE4EBBBE602}C:\users\denise\program files\dna\btdna.exe" = protocol=17 | dir=in | app=c:\users\denise\program files\dna\btdna.exe |
"UDP Query User{479A63E1-5491-4CD6-9623-03E03E5D4F90}C:\nexon\maplestory\maplestory.exe" = protocol=17 | dir=in | app=c:\nexon\maplestory\maplestory.exe |
"UDP Query User{5302C473-A95F-4640-B67A-048D8B74486C}C:\program files\veoh networks\veoh\veohclient.exe" = protocol=17 | dir=in | app=c:\program files\veoh networks\veoh\veohclient.exe |
"UDP Query User{542BC9AC-E846-41C6-85B6-4E5AABD022A7}C:\ijji\english\gunz\gunz.exe" = protocol=17 | dir=in | app=c:\ijji\english\gunz\gunz.exe |
"UDP Query User{5B607009-E922-4EB0-BF92-94E362A0D05A}C:\programdata\ijjigame\plauncher.exe" = protocol=17 | dir=in | app=c:\programdata\ijjigame\plauncher.exe |
"UDP Query User{6447D883-5090-40C9-A48D-96E31F281DE7}C:\nexon\maplestory\patcher.exe" = protocol=17 | dir=in | app=c:\nexon\maplestory\patcher.exe |
"UDP Query User{746165DF-A778-4D26-BC7F-AA859889382C}C:\program files\real\realplayer\realplay.exe" = protocol=17 | dir=in | app=c:\program files\real\realplayer\realplay.exe |
"UDP Query User{7B7F6DEC-C284-474D-82E5-F79299A864F1}C:\program files\tencent\qq games\qqgames.exe" = protocol=17 | dir=in | app=c:\program files\tencent\qq games\qqgames.exe |
"UDP Query User{7F3097E7-087C-4E1E-A646-3D60062F80ED}C:\program files\myspace\im\myspaceim.exe" = protocol=17 | dir=in | app=c:\program files\myspace\im\myspaceim.exe |
"UDP Query User{7FFAEFDD-2DE5-424C-8C34-C50BCB03D0E9}C:\program files\tencent\qq games\qqgames.exe" = protocol=17 | dir=in | app=c:\program files\tencent\qq games\qqgames.exe |
"UDP Query User{8D8CDACB-5A11-4281-A6A0-1E1E641CE466}C:\program files\veoh networks\veoh\veohclient.exe" = protocol=17 | dir=in | app=c:\program files\veoh networks\veoh\veohclient.exe |
"UDP Query User{94B6CA4C-A582-466A-A36B-79BE5C8279E6}C:\ijji\english\u_goonzu.exe" = protocol=17 | dir=in | app=c:\ijji\english\u_goonzu.exe |
"UDP Query User{9593F5A2-DF1C-4B96-A6AE-683AD1E87520}C:\program files\hp\hp software update\hpwucli.exe" = protocol=17 | dir=in | app=c:\program files\hp\hp software update\hpwucli.exe |
"UDP Query User{A15765F1-9E90-40EA-B7AD-4D09C7D7FC04}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{A55329D9-0BCC-4357-B99D-378BAAE56E66}C:\ijji\english\u_gunz.exe" = protocol=17 | dir=in | app=c:\ijji\english\u_gunz.exe |
"UDP Query User{A8004EFD-4180-4FD3-9B95-F4FCF5570D8C}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{ACEC7581-FFBB-4668-B893-72728A521C8A}C:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe" = protocol=17 | dir=in | app=c:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe |
"UDP Query User{B1D1B114-3266-4761-9894-B15F986590C8}C:\program files\limewire\limewire.exe" = protocol=17 | dir=in | app=c:\program files\limewire\limewire.exe |
"UDP Query User{B6B79318-8F1D-4206-97D1-4F5342CD4DBE}C:\programdata\autobahn\autobahn.exe" = protocol=17 | dir=in | app=c:\programdata\autobahn\autobahn.exe |
"UDP Query User{B95C605A-ED21-4B1F-8580-4127DB50973C}C:\ijji\english\u_gbound.exe" = protocol=17 | dir=in | app=c:\ijji\english\u_gbound.exe |
"UDP Query User{B967CECF-2450-407F-B37E-42678C031E60}C:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe" = protocol=17 | dir=in | app=c:\program files\participatory culture foundation\miro\xulrunner\python\miro_downloader.exe |
"UDP Query User{BE1DDDB3-BCC0-429C-8827-BACE1904A55D}C:\program files\myspace\im\myspaceim.exe" = protocol=17 | dir=in | app=c:\program files\myspace\im\myspaceim.exe |
"UDP Query User{C78FC5EF-6CAC-49EE-A0E2-9B425774507D}C:\program files\ws_ftp\ws_ftp95.exe" = protocol=17 | dir=in | app=c:\program files\ws_ftp\ws_ftp95.exe |
"UDP Query User{CCDEDB8A-1003-4E00-9054-C2CD50EF604E}C:\program files\yahoo!\messenger\yahoomessenger.exe" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"UDP Query User{EA5F3AFE-A7BC-4C50-9745-7FE6FCA23F75}C:\ijji\english\gunbound revolution\gunbound.gme" = protocol=17 | dir=in | app=c:\ijji\english\gunbound revolution\gunbound.gme |
"UDP Query User{FAC0AE77-2F4F-4EB3-BC82-B032FC6C385E}C:\ijji\english\u_goonzu.exe" = protocol=17 | dir=in | app=c:\ijji\english\u_goonzu.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{0394CDC8-FABD-4ed8-B104-03393876DFDF}" = Roxio Creator Tools
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{082702D5-5DD8-4600-BCE5-48B15174687F}" = HP Doc Viewer
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}" = WD Diagnostics
"{0BFC200F-C45D-4271-AF34-4CA969225DEB}" = muvee autoProducer 6.0
"{0CFD3BAF-9F4D-4D70-BD0B-638EA2504C25}" = PSSWCORE
"{0D397393-9B50-4c52-84D5-77E344289F87}" = Roxio Creator Data
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{0FD95BFA-44E8-4AD5-954E-3407ADD55B06}" = Readon TV Movie Radio Player 5.5.5.0
"{10CD364B-FFCC-48BE-B469-B9622A033075}" = Fences
"{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}" = Roxio Creator EasyArchive
"{139E303E-1050-497F-98B1-9AE87B15C463}" = Windows Live Family Safety
"{1517A7CB-5F00-4A88-8F06-E89B6DB63784}" = ESU for Microsoft Vista
"{15BF7AAF-846C-4A6D-80E1-5D1FC7FB461B}" = Adobe SGM CS4
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{1838C5A2-AB32-4145-85C1-BB9B8DFA24CD}" = QuickTime
"{1DCA3EAA-6EB5-4563-A970-EA14D75037BA}" = Adobe InDesign CS4
"{1E04CB54-AF4E-4AC3-B4B7-C0A160BE57F1}" = Adobe InDesign CS4 Icon Handler
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{228C6B46-64E2-404E-898A-EF0830603EF4}" = HPNetworkAssistant
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{253CA9FD-36D9-4E02-8EC7-9F17478BF1FF}" = Black & White Creature Isle
"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java 6 Update 17
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{290B83AA-093A-45BF-A917-D1C4A1E8D917}" = HP Active Support Library
"{2BAF2B96-7560-48B4-87D4-10178DDBE217}" = Adobe InDesign CS4 Application Feature Set Files (Roman)
"{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}" = Rhapsody Player Engine
"{3248F0A8-6813-11D6-A77B-00B0D0150160}" = J2SE Runtime Environment 5.0 Update 16
"{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}" = Roxio MyDVD Basic v9
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.20 B1
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}" = Roxio Activation Module
"{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3D5044A5-97B8-45C0-B956-BB2376569188}" = Windows Live Movie Maker
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting
"{3FFB3B34-D639-4384-9AE9-DDE58430D86F}" = MSCU for Microsoft Vista
"{40F7AED3-0C7D-4582-99F6-484A515C73F2}" = HP Easy Setup - Frontend
"{44734179-8A79-4DEE-BB08-73037F065543}" = Apple Mobile Device Support
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{45D707E9-F3C4-11D9-A373-0050BAE317E1}" = HP QuickPlay 3.2
"{475CEB7F-F373-743A-AC19-7CE00D01A74A}" = ViiKii Desktop Plug-in
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A52555C-032A-4083-BDD9-6A85ABFB39A8}" = Adobe SING CS4
"{4B719A70-F14A-4f5c-90B5-346B24B7FFF1}" = Windows 7 Upgrade Advisor
"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
"{4E868D3D-6EEB-4273-926C-2287236B5B79}" = 3DVIA Player 4.1
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3
"{585776BC-4BD6-4BD2-A19A-1D6CB44A403B}" = iTunes
"{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}" = Roxio Creator Copy
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6D52C408-B09A-4520-9B18-475B81D393F1}" = Microsoft Works
"{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{767CC44C-9BBC-438D-BAD3-FD4595DD148B}" = VC80CRTRedist - 8.0.50727.762
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7CC7BDD5-6F10-4724-96A1-EAC7D9F2831C}" = Adobe InDesign CS4 Common Base Files
"{7E1B58AD-BB1F-4589-9BCC-8D8805497889}" = .NET Matrix Library 4.3
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{83FFCFC7-88C6-41c6-8752-958A45325C82}" = Roxio Creator Audio
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8CEA85DE-955B-4BF4-87F2-0BAA62821633}" = HP Photosmart Essential2.5
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_PUBLISHERR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_PUBLISHERR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_PUBLISHERR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_PUBLISHERR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_PUBLISHERR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{901DC58A-5C1B-4315-BA40-5AD3D3A463B9}" = ijji REACTOR
"{9061CEF2-51F5-42C9-8A70-9ED351C6597A}" = HP Help and Support
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel Matrix Storage Manager
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{93DA8968-092B-4E6F-B568-AB8471952143}" = Warlords Battlecry III
"{9477A80B-C891-4979-830D-BEE118CB04A8}" = Plants vs Zombies
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{995F1E2E-F542-4310-8E1D-9926F5A279B3}" = Windows Live Toolbar
"{9C9785F3-26E3-4731-AD37-65044AE0A129}" = NinjaVideo Helper
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Touch Pad Driver
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{A87B11AC-4344-4E5D-8B12-8F471A87DAD9}" = LightScribe 1.4.136.1
"{A8B94669-8654-4126-BD28-D0D2412CDED6}" = TI Connect 1.6
"{AB5E289E-76BF-4251-9F3F-9B763F681AE0}" = HP Customer Experience Enhancements
"{AC76BA86-7AD7-1033-7B44-A91000000001}" = Adobe Reader 9.1
"{AC76BA86-7AD7-5464-3428-800000000003}" = Spelling Dictionaries Support For Adobe Reader 8
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{C3498122-091E-4999-9EBE-7513FE904F6A}" = Microsoft Expression Design 2
"{C4124E95-5061-4776-8D5D-E3D931C778E1}" = Microsoft VC9 runtime libraries
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}" = Roxio Creator Basic v9
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{CA1CA5F8-7500-45C5-9D4C-47D13FBC92D2}" = Adobe Setup
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype??? 4.1
"{D32067CD-7409-4792-BFA0-1469BCD8F0C8}" = HP Wireless Assistant
"{D6C75F0B-3BC1-4FC9-B8C5-3F7E8ED059CA}" = Windows Live Photo Gallery
"{D6DE02C7-1F47-11D4-9515-00105AE4B89A}" = Paint Shop Pro 7
"{E21B4FFE-843B-49D4-81B1-E682ACAAD438}_is1" = Pokemon World Online 1.52
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E3B01D6C-DC51-4800-A83B-6AD2E7FD3276}" = Honeywell UniSim Design R380
"{E51B4CD9-A0A6-4324-B26A-31B3F2DE26CE}" = Black and White
"{E5FCED12-3E77-4C0E-A305-5AEB38A52A70}" = AdobeColorCommonSetCMYK
"{EF3164C1-4AE9-43CB-AD7A-F1A9AD2DC065}" = HP User Guides 0060
"{F07AE5AB-516C-4CEB-A0AA-AD083B9182C6}" = TI NoteFolio Creator
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F6B29003-A078-4491-AFBE-62EFB6CFFE19}" = HP Total Care Advisor
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FAB0C302-CB18-4A7A-BA03-C3DC23101A68}" = HP Active Support Library 32 bit components
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FE0646A7-19D0-41B4-A2BB-2C35D644270D}" = Windows Live OneCare safety scanner
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Adobe_1710d324011afc3e7658e969025f4ba" = Adobe InDesign CS4
"AIM_6" = AIM 6
"CCleaner" = CCleaner
"Chicken Chase" = Chicken Chase (remove only)
"CNXT_AUDIO_HDA" = Conexant HD Audio
"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_5045&SUBSYS_103C30B7" = HDAUDIO Soft Data Fax Modem with SmartCP
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Design_5.0.1379.0" = Microsoft Expression Design 2
"Diner Dash 2_is1" = Diner Dash 2
"ERUNT_is1" = ERUNT 1.1j
"Farm Frenzy Pizza Party1.0" = Farm Frenzy Pizza Party
"Fences" = Fences
"GenieSoft Overture_is1" = GenieSoft Overture v4.0.2
"Gundoff" = Gundoff
"HDMI" = Intel® Graphics Media Accelerator Driver
"HijackThis" = HijackThis 2.0.2
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"Hospital" = Theme Hospital
"HP Photosmart Essential" = HP Photosmart Essential 2.0
"Insaniquarium Deluxe_is1" = Insaniquarium Deluxe
"Kitten Sanctuary1.2" = Kitten Sanctuary
"KLiteCodecPack_is1" = K-Lite Codec Pack 3.9.0 Standard
"Luminary - Rise of Goonzu" = Luminary - Rise of Goonzu
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.0.18)" = Mozilla Firefox (3.0.18)
"MSNINST" = MSN
"NDSROM Player" = NDSROM Player
"PrintMaster 8.0" = PrintMaster?? Premier 8.0
"QQ Games" = QQ Games
"QQ Treasure Hunter" = QQ Treasure Hunter
"RealPlayer 12.0" = RealPlayer
"Sandboxie" = Sandboxie 3.42
"The Weather Channel Desktop 6" = The Weather Channel Desktop 6
"The Weather Channel Toolbar" = The Weather Channel Toolbar
"ViewpointMediaPlayer" = Viewpoint Media Player
"ViiKiiDesktopPlugin.5E22EA0FF243470AB5EDDF282C0A5B52E9909C36.1" = ViiKii Desktop Plug-in
"Virtual Villagers" = Virtual Villagers (remove only)
"VLC media player" = VideoLAN VLC media player 0.8.6f
"WebPost" = Microsoft Web Publishing Wizard 1.52
"WildTangent hp Master Uninstall" = My HP Games
"WildTangent hplaptop Master Uninstall" = My HP Games
"Windows Live OneCare safety scanner" = Windows Live OneCare safety scanner
"WinGimp-2.0_is1" = Gimp 2.6.2
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"Write-N-Cite" = Write-N-Cite
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Extras" = Yahoo! Browser Services
"Yahoo! Mail" = Yahoo! Internet Mail
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Toolbar" = Yahoo! Toolbar
"YInstHelper" = Yahoo! Install Manager
"Zuma Deluxe 1.0" = Zuma Deluxe 1.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"EMAGE DB" = EMAGE DB
"Move Networks Player - IE" = Move Networks Media Player for Internet Explorer
"Pokemon - Den of Ages" = Pokemon - Den of Ages
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 3/2/2009 4:57:23 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/3/2009 5:35:26 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/3/2009 5:36:52 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/4/2009 5:05:56 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/4/2009 5:07:51 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/5/2009 4:45:29 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/5/2009 4:46:49 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/6/2009 5:09:11 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/6/2009 5:11:07 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 3/7/2009 5:43:51 PM | Computer Name = Denise-PC | Source = MsiInstaller | ID = 11935
Description =
[ Media Center Events ]
Error - 11/30/2007 4:59:52 PM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule.
Error - 11/30/2007 6:58:05 PM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule.
Error - 12/8/2007 7:00:12 AM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule.
Error - 4/1/2008 11:31:43 PM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule.
Error - 4/17/2008 11:01:50 PM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package MCESpotlight.
Error - 5/25/2008 10:31:47 AM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package MCESpotlight.
Error - 6/1/2008 2:50:12 PM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package MCESpotlight.
Error - 6/3/2008 7:31:16 AM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package MCESpotlight.
Error - 6/7/2008 6:48:08 PM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package MCESpotlight.
Error - 10/7/2009 6:45:24 PM | Computer Name = Denise-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule.
[ System Events ]
Error - 3/31/2010 10:27:17 AM | Computer Name = Denise-PC | Source = DCOM | ID = 10005
Description =
Error - 3/31/2010 10:27:19 AM | Computer Name = Denise-PC | Source = DCOM | ID = 10005
Description =
Error - 3/31/2010 10:27:19 AM | Computer Name = Denise-PC | Source = DCOM | ID = 10005
Description =
Error - 3/31/2010 10:27:29 AM | Computer Name = Denise-PC | Source = Service Control Manager | ID = 7001
Description =
Error - 3/31/2010 10:27:29 AM | Computer Name = Denise-PC | Source = Service Control Manager | ID = 7026
Description =
Error - 3/31/2010 10:30:10 AM | Computer Name = Denise-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 10:28:46 AM on 3/31/2010 was unexpected.
Error - 3/31/2010 10:30:13 AM | Computer Name = Denise-PC | Source = HTTP | ID = 15016
Description =
Error - 3/31/2010 10:30:46 AM | Computer Name = Denise-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 3/31/2010 10:30:46 AM | Computer Name = Denise-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 3/31/2010 10:30:47 AM | Computer Name = Denise-PC | Source = Service Control Manager | ID = 7026
Description =
< End of report >