I got google redirect and it won't go away.
Regards,
Mike
OTL logfile created on: 2011-04-15 13:31:14 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\adesautels\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000C0C | Country: Canada | Language: FRC | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 75,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 288,07 Gb Free Space | 96,64% Space Free | Partition Type: NTFS
Computer Name: SOCIETE-F79548F | User Name: adesautels | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011-04-15 11:52:03 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\adesautels\Desktop\OTL.exe
PRC - [2011-02-16 18:09:56 | 000,389,960 | ---- | M] (CA) -- C:\Program Files\CA\eTrustITM\InoTask.exe
PRC - [2010-03-22 11:38:02 | 000,703,080 | ---- | M] (Fortinet Inc.) -- C:\WINDOWS\system32\FortiSSLVPNdaemon.exe
PRC - [2009-07-08 13:56:31 | 000,208,896 | ---- | M] (CA) -- C:\Program Files\CA\eTrustITM\InoRT.exe
PRC - [2009-07-08 13:56:31 | 000,192,512 | ---- | M] (CA) -- C:\Program Files\CA\eTrustITM\InoRPC.exe
PRC - [2008-04-14 08:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-02-08 17:58:44 | 000,407,368 | ---- | M] (CA) -- C:\Program Files\CA\eTrustITM\Realmon.exe
PRC - [2007-07-05 22:55:06 | 002,521,624 | R--- | M] (Intel) -- C:\Program Files\Intel\AMT\UNS.exe
PRC - [2007-07-05 22:55:04 | 000,182,808 | R--- | M] (Intel Corporation) -- C:\Program Files\Intel\AMT\atchksrv.exe
PRC - [2007-07-05 22:54:58 | 000,109,080 | R--- | M] (Intel) -- C:\Program Files\Intel\AMT\LMS.exe
PRC - [2007-02-05 07:57:24 | 000,106,496 | ---- | M] (CA, Inc.) -- C:\Program Files\CA\SharedComponents\iTechnology\igateway.exe
PRC - [2004-03-11 11:55:20 | 000,376,832 | ---- | M] (Philips Speech Processing) -- C:\WINDOWS\system32\pspcontr.exe
========== Modules (SafeList) ==========
MOD - [2011-04-15 11:52:03 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\adesautels\Desktop\OTL.exe
MOD - [2010-08-23 12:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - [2011-02-16 18:09:56 | 000,389,960 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\eTrustITM\InoTask.exe -- (InoTask)
SRV - [2010-03-22 11:38:02 | 000,703,080 | ---- | M] (Fortinet Inc.) [Auto | Running] -- C:\WINDOWS\system32\FortiSSLVPNdaemon.exe -- (FortiSslvpnDaemon)
SRV - [2009-07-08 13:56:31 | 000,208,896 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\eTrustITM\InoRT.exe -- (InoRT)
SRV - [2009-07-08 13:56:31 | 000,192,512 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\eTrustITM\InoRpc.exe -- (InoRPC)
SRV - [2007-08-09 03:27:52 | 000,073,728 | ---- | M] (HP) [Auto | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
SRV - [2007-07-05 22:55:06 | 002,521,624 | R--- | M] (Intel) [Auto | Running] -- C:\Program Files\Intel\AMT\UNS.exe -- (UNS) Intel®
SRV - [2007-07-05 22:55:04 | 000,182,808 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\AMT\atchksrv.exe -- (atchksrv) Intel®
SRV - [2007-07-05 22:54:58 | 000,109,080 | R--- | M] (Intel) [Auto | Running] -- C:\Program Files\Intel\AMT\LMS.exe -- (LMS) Intel®
SRV - [2007-02-05 07:57:24 | 000,106,496 | ---- | M] (CA, Inc.) [Auto | Running] -- C:\Program Files\CA\SharedComponents\iTechnology\igateway.exe -- (iGateway)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme)
DRV - [2009-07-21 18:53:06 | 000,036,384 | ---- | M] (Fortinet Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pppop.sys -- (pppop)
DRV - [2007-10-18 21:14:32 | 000,184,080 | ---- | M] (Computer Associates) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\ino_fltr.sys -- (INO_FLTR)
DRV - [2007-08-06 22:07:02 | 000,027,536 | ---- | M] (Computer Associates) [File_System | Boot | Running] -- C:\WINDOWS\system32\Drivers\ino_flpy.sys -- (INO_FLPY)
DRV - [2007-07-09 21:56:00 | 004,449,280 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-05-11 07:00:14 | 000,045,056 | R--- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HECI.sys -- (HECI) Intel®
DRV - [2004-08-13 06:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
O1 HOSTS File: ([2011-04-15 13:23:05 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.)
O4 - HKLM..\Run: [atchk] C:\Program Files\Intel\AMT\atchk.exe (Intel Corporation)
O4 - HKLM..\Run: [PspContr] C:\WINDOWS\System32\pspcontr.exe (Philips Speech Processing)
O4 - HKLM..\Run: [PspUsbCf] C:\WINDOWS\System32\pspusbcf.exe (Philips Speech Processing)
O4 - HKLM..\Run: [QuickFinder Scheduler] C:\Program Files\Corel\WordPerfect Office 2002\Programs\QFSCHD100.EXE (Novell, Inc., c/o Corel Corporation Limited)
O4 - HKLM..\Run: [Realtime Monitor] C:\Program Files\CA\eTrustITM\realmon.exe (CA)
O4 - Startup: C:\Documents and Settings\adesautels\Start Menu\Programs\Startup\Jacquie Lawson Advent Calendar.lnk = File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll (Google Inc.)
O9 - Extra Button: Net2Phone - {4B30061A-5B39-11D3-80F8-0090276F843F} - C:\Program Files\Net2Phone\Net2fone.exe (Net2Phone)
O9 - Extra 'Tools' menuitem : Net2Phone - {4B30061A-5B39-11D3-80F8-0090276F843F} - C:\Program Files\Net2Phone\Net2fone.exe (Net2Phone)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.appl...ex/qtplugin.cab (QuickTime Plugin Control)
O16 - DPF: {91C045A0-A2A0-4FBC-9F04-01BD4E090301} https://portal.socie...tihostcheck.cab (FortiHostCheck Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://terminotix.w...bex/ieatgpc.cab (GpcContainer Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\adesautels\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\adesautels\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {0cab0400-7395-11d0-a5e5-0020afe2fdd9} - C:\WINDOWS\qvphook.dll ()
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-07-03 09:11:40 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011-04-15 13:26:55 | 001,377,112 | ---- | C] (Kaspersky Lab ZAO) -- C:\Documents and Settings\adesautels\Desktop\tdsskiller.exe
[2011-04-15 13:19:45 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011-04-15 13:19:14 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011-04-15 13:19:14 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011-04-15 13:19:14 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011-04-15 13:19:14 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011-04-15 13:19:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011-04-15 13:19:06 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011-04-15 11:52:51 | 000,000,000 | ---D | C] -- C:\_OTL
[2011-04-15 11:52:02 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\adesautels\Desktop\OTL.exe
[2011-04-15 11:43:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adesautels\Desktop\tdsskiller
[2011-04-15 11:43:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adesautels\Desktop\GooredFix Backups
[2011-04-15 11:42:30 | 000,071,398 | ---- | C] (jpshortstuff) -- C:\Documents and Settings\adesautels\Desktop\GooredFix.exe
[2011-04-15 11:39:01 | 000,000,000 | ---D | C] -- C:\_OTM
[2011-04-15 11:38:12 | 000,519,680 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\adesautels\Desktop\OTM.exe
========== Files - Modified Within 30 Days ==========
[2011-04-15 13:32:00 | 000,000,894 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011-04-15 13:27:21 | 000,080,384 | ---- | M] () -- C:\Documents and Settings\adesautels\Desktop\MBRCheck.exe
[2011-04-15 13:26:57 | 001,377,112 | ---- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\adesautels\Desktop\tdsskiller.exe
[2011-04-15 13:23:05 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011-04-15 13:23:03 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-04-15 13:23:02 | 000,000,890 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011-04-15 13:22:46 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-04-15 13:19:49 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2011-04-15 13:18:44 | 004,321,723 | R--- | M] () -- C:\Documents and Settings\adesautels\Desktop\george.exe
[2011-04-15 13:16:24 | 004,321,723 | ---- | M] () -- C:\Documents and Settings\adesautels\Desktop\ComboFix.exe
[2011-04-15 11:52:03 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\adesautels\Desktop\OTL.exe
[2011-04-15 11:42:47 | 001,263,721 | ---- | M] () -- C:\Documents and Settings\adesautels\Desktop\tdsskiller.zip
[2011-04-15 11:42:31 | 000,071,398 | ---- | M] (jpshortstuff) -- C:\Documents and Settings\adesautels\Desktop\GooredFix.exe
[2011-04-15 11:38:13 | 000,519,680 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\adesautels\Desktop\OTM.exe
[2011-04-15 08:44:07 | 000,001,772 | -H-- | M] () -- C:\Documents and Settings\adesautels\My Documents\Default.rdp
[2011-04-15 08:25:10 | 000,182,632 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-04-14 22:22:32 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011-04-14 22:21:59 | 000,432,686 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-04-14 22:21:59 | 000,067,516 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-03-26 06:32:50 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2011-03-25 09:41:25 | 000,002,473 | ---- | M] () -- C:\Documents and Settings\adesautels\Desktop\Microsoft Word.lnk
========== Files Created - No Company Name ==========
[2011-04-15 13:27:21 | 000,080,384 | ---- | C] () -- C:\Documents and Settings\adesautels\Desktop\MBRCheck.exe
[2011-04-15 13:19:49 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2011-04-15 13:19:46 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2011-04-15 13:19:14 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011-04-15 13:19:14 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011-04-15 13:19:14 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011-04-15 13:19:14 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011-04-15 13:19:14 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011-04-15 13:18:37 | 004,321,723 | R--- | C] () -- C:\Documents and Settings\adesautels\Desktop\george.exe
[2011-04-15 13:16:17 | 004,321,723 | ---- | C] () -- C:\Documents and Settings\adesautels\Desktop\ComboFix.exe
[2011-04-15 11:42:45 | 001,263,721 | ---- | C] () -- C:\Documents and Settings\adesautels\Desktop\tdsskiller.zip
[2011-01-20 11:56:46 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\adesautels\Local Settings\Application Data\housecall.guid.cache
[2011-01-12 21:25:21 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011-01-12 19:51:58 | 000,122,880 | RHS- | C] () -- C:\WINDOWS\System32\stdftfrr.dll
[2010-04-13 18:49:35 | 000,707,466 | ---- | C] () -- C:\WINDOWS\unins001.exe
[2010-04-13 18:49:35 | 000,028,530 | ---- | C] () -- C:\WINDOWS\unins001.dat
[2010-03-09 17:13:18 | 000,002,109 | ---- | C] () -- C:\WINDOWS\ACROREAD.INI
[2010-03-09 15:07:44 | 000,061,678 | ---- | C] () -- C:\Documents and Settings\adesautels\Application Data\PFP100JPR.{PB
[2010-03-09 15:07:44 | 000,012,358 | ---- | C] () -- C:\Documents and Settings\adesautels\Application Data\PFP100JCM.{PB
[2010-03-09 15:05:57 | 000,707,466 | ---- | C] () -- C:\WINDOWS\unins000.exe
[2010-03-09 15:05:57 | 000,030,275 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2009-11-11 23:16:17 | 000,000,127 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009-08-13 22:00:05 | 000,000,508 | ---- | C] () -- C:\Program Files\Shortcut to Outlook Express.lnk
[2009-07-15 11:53:56 | 000,000,227 | ---- | C] () -- C:\WINDOWS\HP_CounterReport_Update_HPSU.ini
[2009-07-15 11:53:51 | 000,000,214 | ---- | C] () -- C:\WINDOWS\HP_48BitScanUpdatePatch.ini
[2009-07-15 11:41:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\HP_RedboxHprblog_HPSU.ini
[2009-07-11 19:23:32 | 000,112,924 | ---- | C] () -- C:\WINDOWS\hpoins07.dat
[2009-07-11 19:23:32 | 000,021,124 | ---- | C] () -- C:\WINDOWS\hpomdl07.dat
[2009-07-08 14:51:21 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspusblb.ini
[2009-07-08 14:51:21 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspusbct.ini
[2009-07-08 14:51:19 | 000,000,040 | ---- | C] () -- C:\WINDOWS\System32\Sx7396.ini
[2009-07-08 14:51:16 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspsbext.ini
[2009-07-08 14:51:16 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspfidrv.ini
[2009-07-08 14:51:16 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspfbase.ini
[2009-07-08 14:51:16 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspaudrv.ini
[2009-07-08 14:51:16 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspapdrv.ini
[2009-07-08 14:51:16 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\mcipspwa.ini
[2009-07-08 14:51:16 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\mcipspct.ini
[2009-07-08 14:51:16 | 000,000,220 | ---- | C] () -- C:\WINDOWS\System32\pspwave.ini
[2009-07-08 14:51:16 | 000,000,219 | ---- | C] () -- C:\WINDOWS\System32\pspdss.ini
[2009-07-08 14:51:16 | 000,000,219 | ---- | C] () -- C:\WINDOWS\System32\pspddi.ini
[2009-07-08 14:51:08 | 000,000,219 | ---- | C] () -- C:\WINDOWS\System32\PSPPREFQ.INI
[2009-07-08 12:10:33 | 000,102,400 | ---- | C] () -- C:\WINDOWS\System32\N2PUtil.dll
[2009-07-08 12:10:33 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\N2PAuto.exe
[2009-07-08 12:10:15 | 000,041,472 | ---- | C] () -- C:\WINDOWS\qvphook.dll
[2009-07-08 12:01:43 | 000,000,063 | ---- | C] () -- C:\WINDOWS\mdm.ini
[2009-07-08 12:01:39 | 000,000,000 | ---- | C] () -- C:\WINDOWS\NSREX.INI
[2009-07-08 11:55:16 | 000,000,737 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009-07-03 09:33:41 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2009-07-03 09:31:01 | 000,147,456 | R--- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4864.dll
[2009-07-03 09:22:43 | 000,029,428 | ---- | C] () -- C:\WINDOWS\Ascd_log.ini
[2009-07-03 09:22:26 | 000,028,962 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2009-07-03 09:22:24 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2009-07-03 09:22:16 | 000,010,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2009-07-03 09:13:10 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009-07-03 09:09:09 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009-07-02 07:59:27 | 000,004,346 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009-07-02 07:58:23 | 000,182,632 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008-04-14 08:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008-04-14 08:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008-04-14 08:00:00 | 000,432,686 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2008-04-14 08:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008-04-14 08:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008-04-14 08:00:00 | 000,067,516 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2008-04-14 08:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008-04-14 08:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008-04-14 08:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008-04-14 08:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008-04-14 08:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2008-04-14 08:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2001-07-06 15:30:00 | 000,003,399 | ---- | C] () -- C:\WINDOWS\System32\hptcpmon.ini
[2001-06-08 16:08:58 | 000,000,292 | ---- | C] () -- C:\WINDOWS\NET2FONE.INI
[1997-07-11 00:00:00 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\WRKGADM.EXE
[1997-07-11 00:00:00 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\ODBCSTF.DLL
[1997-07-11 00:00:00 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\DOCOBJ.DLL
[1997-07-11 00:00:00 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\HLINKPRX.DLL
========== LOP Check ==========
[2011-01-15 10:29:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adesautels\Application Data\ICAClient
[2010-10-15 09:38:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adesautels\Application Data\Image Zone Express
[2010-12-04 13:32:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adesautels\Application Data\JacquieLawsonAdventCalendar
[2011-01-06 09:21:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adesautels\Application Data\TeamViewer
[2009-07-14 08:43:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adesautels\Application Data\webex
[2010-10-04 09:59:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CB0AACC9
< End of report >
OTL Extras logfile created on: 2011-04-15 13:31:14 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\adesautels\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000C0C | Country: Canada | Language: FRC | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 75,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 288,07 Gb Free Space | 96,64% Space Free | Partition Type: NTFS
Computer Name: SOCIETE-F79548F | User Name: adesautels | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" =
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Corel\WordPerfect Office 2002\Register\NAVBrowser.exe" = C:\Program Files\Corel\WordPerfect Office 2002\Register\NAVBrowser.exe:*:Enabled:NAVBrowser -- (Naviant, Inc.)
"C:\Program Files\CA\eTrustITM\InoRpc.exe" = C:\Program Files\CA\eTrustITM\InoRpc.exe:*:Enabled:eTrust ITM - RPC Service -- (CA)
"C:\Program Files\CA\eTrustITM\Realmon.exe" = C:\Program Files\CA\eTrustITM\Realmon.exe:*:Enabled:eTrust ITM - Realtime monitor -- (CA)
"C:\Program Files\CA\eTrustITM\Shellscn.exe" = C:\Program Files\CA\eTrustITM\Shellscn.exe:*:Enabled:eTrust ITM - Shell Scanner -- (CA)
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe" = C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" = C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe -- (Hewlett-Packard)
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe -- ()
"C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe -- ( )
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe -- (Hewlett-Packard Co.)
"C:\WINDOWS\system32\mmc.exe" = C:\WINDOWS\system32\mmc.exe:*:Disabled:Microsoft Management Console -- (Microsoft Corporation)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00020409-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 SR-1 Standard
"{0611BD4E-4FE4-4a62-B0C0-18A4CC463428}" = CP_Package_Variety1
"{09984AEC-6B9F-4ca7-B78D-CB44D4771DA3}" = Destinations
"{0B33B738-AD79-4E32-90C5-E67BFB10BBFF}" = AiO_Scan
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1C139D7D-9FEA-468d-A9C8-2A6E3BDE564A}" = CP_Package_Variety3
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{2466E904-7E48-4597-9321-722CF02930EB}" = 5600
"{2CADCEAB-D5DA-44D6-B5FC-7DEE87AB3C0C}" = Unload
"{30C19FF2-7FBA-4d09-B9DE-1659977F64F6}" = TrayApp
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{36FDBE6E-6684-462B-AE98-9A39A1B200CC}" = HP Product Assistant
"{42ACCB45-3363-47E0-94E9-F0074CC8BC56}" = Citrix Presentation Server Client
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{54E3707F-808E-4fd4-95C9-15D1AB077E5D}" = NewCopy
"{56F8AFC3-FA98-4ff1-9673-8A026CBF85BE}" = WebReg
"{5B622B7A-60FB-4630-B11D-F121D20BCCD6}" = MarketResearch
"{5B79CFD1-6845-4158-9D7D-6BE89DF2C135}" = HP PSC & OfficeJet 5.3.B
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{6BB6627C-694F-4FDC-A3E5-C7F4BED4C724}" = DocProc
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{7850A6D2-CBEA-4728-9877-F1BEDEA9F619}" = AiOSoftware
"{7C9B95B7-B598-4398-B30F-7F6827192E6C}" = ProductContext
"{818ABC3C-635C-4651-8183-D0E9640B7DD1}" = HP Update
"{847501DF-07C0-4691-B04A-893929F108AE}" = CA iTechnology iGateway
"{85F88F9C-6EB2-426B-88AB-28DA4A3526B9}" = CA eTrustITM Agent
"{86A803A1-4D71-11D5-A770-00A0C9E895EB}" = WordPerfect Office 2002
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{923A7F5A-1E8C-4FBE-8DF6-85940A60A79F}" = Readme
"{A195B13E-A5E3-4BAF-A995-7F70F445CD06}" = ScannerCopy
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A34DCE59-0004-0000-2082-3F8A9926B752}" = FortiClient SSL VPN v4.0.2082
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AC76BA86-7AD7-1036-7B44-A94000000001}" = Adobe Reader 9.4.3 - Français
"{B824B5C9-849F-4b9e-9EA7-6FD8CD8116DA}" = CP_Package_Variety2
"{B996AE66-10DB-4ac5-B151-E8B4BFBC42FC}" = BufferChm
"{BC847ECA-5D10-4550-98DA-D5611813C76E}" = VBA (3821h.2)
"{BDE813B0-BF65-11D2-92B4-0060B0686AFB}" = SpeechMike Executive
"{BFD5AC8A-5884-4da8-9873-3DF8E3DCCE18}" = 5600Trb
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C506A18C-1469-4678-B094-F4EC9DAE6DB7}" = Scan
"{CC7984C5-020D-4944-85A0-58D09D4A8BFB}" = 5600_Help
"{CE24344F-DFD8-40C8-8FD8-C9740B5F25AC}" = Fax
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{E3F90083-80D4-4b5a-87C7-E97E12F5516D}" = HPProductAssistant
"{EA103B64-C0E4-4C0E-A506-751590E1653D}" = SolutionCenter
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F4C2E5F5-2970-45f4-ABD3-C180C4D961C4}" = Status
"{FE64AE29-0883-4C70-8388-DC026019C900}" = HP Image Zone Express
"ActiveTouchMeetingClient" = WebEx
"Adobe Acrobat Reader 3.02" = Adobe Acrobat Reader 3.02
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Barre LogiTermWeb 4_is1" = Barre LogiTermWeb 4.0
"Barre LogiTermWeb 5_is1" = Barre LogiTermWeb 5.0
"HDMI" = Intel® Graphics Media Accelerator Driver
"HECI" = Intel® Management Engine Interface
"Heroes of Might and Magic® III" = Heroes of Might and Magic® III
"HP Imaging Device Functions" = HP Imaging Device Functions 5.3
"HP Solution Center & Imaging Support Tools" = HP Solution Center & Imaging Support Tools 5.3
"HPExtendedCapabilities" = HP Extended Capabilities 5.3
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MESOL" = Intel® Active Management Technology
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"Net2Phone_10_0" = Net2Phone/Net2Fax
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Office8.0" = Microsoft Office 97, Professional Edition
"PROSet" = Intel® PRO Network Connections Drivers
"QVP" = Quick View Plus
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"WordPerfect Office 2002" = WordPerfect Office 2002
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 2011-04-11 07:51:37 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-11 19:55:42 | Computer Name = SOCIETE-F79548F | Source = Application Error | ID = 1000
Description = Faulting application mstsc.exe, version 6.0.6001.18589, faulting module
hpzpm312.dll, version 2.335.5.0, fault address 0x000585f3.
Error - 2011-04-12 06:27:38 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-13 07:01:36 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-14 06:10:53 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-15 08:25:25 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-15 11:18:51 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-15 11:40:36 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-15 11:53:58 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
Error - 2011-04-15 13:22:59 | Computer Name = SOCIETE-F79548F | Source = Intel® AMT | ID = 2002
Description = [UNS] Failed to subscribe to local Intel® AMT.
[ System Events ]
Error - 2011-04-15 11:39:01 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The eTrust ITM Job Service service terminated unexpectedly. It has
done this 1 time(s).
Error - 2011-04-15 11:39:01 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The Intel® Active Management Technology Local Management Service
service terminated unexpectedly. It has done this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The Intel® Active Management Technology System Status Service service
terminated unexpectedly. It has done this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The eTrust Antivirus Realtime Service service terminated unexpectedly.
It has done this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The FortiClient SSL VPN service terminated unexpectedly. It has done
this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The iTechnology iGateway 4.2 service terminated unexpectedly. It
has done this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The eTrust ITM RPC Service service terminated unexpectedly. It has
done this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The Intel® Active Management Technology User Notification Service
service terminated unexpectedly. It has done this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The eTrust ITM Job Service service terminated unexpectedly. It has
done this 1 time(s).
Error - 2011-04-15 11:52:52 | Computer Name = SOCIETE-F79548F | Source = Service Control Manager | ID = 7034
Description = The Intel® Active Management Technology Local Management Service
service terminated unexpectedly. It has done this 1 time(s).
< End of report >