Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Possible infection - computer slow and lots of pop-ups


  • This topic is locked This topic is locked

#1
LizzyLC

LizzyLC

    New Member

  • Member
  • Pip
  • 2 posts
Hi! Lately my computer has been acting very strange. It's been abnormally slow: programs are slow to open and load, internet is slow. Programs, mostly the internet (I use Firefox by the way), often crash or close without my instruction and often become nonresponsive easily, especially if there is more than one program open at the same time. Also, pop-ups leading to random sites appear using Internet Explorer (in fact, it literally just happened as soon as I typed this). I believe it has something to do with rundll32.exe. I've looked at my processes and I see that there are anywhere from 3-7 rundll32.exe happening at the same time and everytime I go to shut down my computer, multiple error messages saying that rundll is closing or is nonresponsive appear, significantly slowing down the shut down process. I really don't know what to do. I've used programs like SpyBot, Ad-Aware, Microsoft Support Emergency Response Tool, and McAfee. I've scanned my computer many times with these programs and all of them say they can't find anything, but I know something is wrong and it's very frustrating!

Here is my OTL log:
OTL logfile created on: 12/19/2011 9:16:01 AM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Liz\My Documents\Downloads
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

500.73 Mb Total Physical Memory | 14.80 Mb Available Physical Memory | 2.96% Memory free
1.91 Gb Paging File | 0.02 Gb Available in Paging File | 0.91% Paging File free
Paging file location(s): C:\pagefile.sys 744 1488 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 19.52 Gb Total Space | 7.36 Gb Free Space | 37.68% Space Free | Partition Type: FAT32
Drive E: | 14.63 Gb Total Space | 5.31 Gb Free Space | 36.26% Space Free | Partition Type: FAT32
Drive H: | 19.52 Gb Total Space | 13.09 Gb Free Space | 67.03% Space Free | Partition Type: FAT32

Computer Name: MAE | User Name: Liz | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/12/19 09:15:16 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Liz\My Documents\Downloads\OTL.com
PRC - [2011/11/08 21:53:46 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/07/04 03:16:30 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2011/05/10 22:28:30 | 003,769,048 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
PRC - [2011/05/10 22:27:38 | 005,607,080 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
PRC - [2011/05/10 22:21:12 | 003,834,456 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDMonSvc.exe
PRC - [2011/05/10 22:18:34 | 003,585,696 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFWSvc.exe
PRC - [2011/05/10 22:18:08 | 003,515,656 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
PRC - [2011/04/08 12:59:52 | 000,507,624 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
PRC - [2010/01/15 08:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe


========== Modules (No Company Name) ==========

MOD - [2011/12/19 08:33:54 | 000,396,288 | ---- | M] () -- C:\Documents and Settings\Liz\Local Settings\Application Data\Microsoft\MicrosoftData\Microsoftdata.dll
MOD - [2011/12/19 08:33:54 | 000,267,264 | ---- | M] () -- C:\Documents and Settings\Liz\Local Settings\Application Data\Microsoft\MicrosoftUpdate\Microsoftupdt32.dll
MOD - [2011/12/19 08:33:54 | 000,218,624 | ---- | M] () -- C:\Documents and Settings\Liz\Local Settings\Temp\nsk4A1.tmp\qhzrtly.hzd
MOD - [2011/12/13 12:49:56 | 005,971,408 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MOD - [2011/11/08 21:53:44 | 001,989,592 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011/07/04 03:18:48 | 001,712,128 | R--- | M] () -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\GdiPlus.dll
MOD - [2011/07/04 03:15:28 | 000,015,360 | ---- | M] () -- C:\WINDOWS\system32\tsd32.dll
MOD - [2011/05/26 13:42:00 | 000,067,872 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/05/26 13:41:38 | 014,021,920 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\icudt40.dll
MOD - [2010/11/29 17:38:12 | 012,115,968 | ---- | M] () -- C:\Program Files\QuickTime\QTSystem\QuickTime.qts
MOD - [2010/03/15 11:28:24 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2011/05/11 15:10:44 | 000,167,040 | ---- | M] (Safer-Networking Ltd.) [Auto | Stopped] -- C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe -- (SDWSCService)
SRV - [2011/05/10 22:28:30 | 003,769,048 | ---- | M] (Safer-Networking Ltd.) [Auto | Running] -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe -- (SDUpdateService)
SRV - [2011/05/10 22:21:12 | 003,834,456 | ---- | M] (Safer-Networking Ltd.) [Auto | Running] -- C:\Program Files\Spybot - Search & Destroy 2\SDMonSvc.exe -- (SDMonitorService)
SRV - [2011/05/10 22:18:34 | 003,585,696 | ---- | M] (Safer-Networking Ltd.) [Auto | Running] -- C:\Program Files\Spybot - Search & Destroy 2\SDFWSvc.exe -- (SDFirewallService)
SRV - [2011/05/10 22:18:08 | 003,515,656 | ---- | M] (Safer-Networking Ltd.) [Auto | Running] -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe -- (SDScannerService)
SRV - [2010/01/15 08:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)


========== Driver Services (SafeList) ==========

DRV - [2011/01/19 10:46:56 | 000,010,936 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\ampa.sys -- (ampa)
DRV - [2005/10/27 14:36:52 | 000,393,088 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?...l_date=20110901
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://search.condui...&ctid=CT2790392
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Bing"
FF - prefs.js..browser.search.defaultthis.engineName: "IncrediMail MediaBar 4 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "Bing"
FF - prefs.js..browser.search.order.1: "Bing"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..keyword.URL: "http://www.bing.com/...te=20110901&q="

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/07/03 18:52:08 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/08/25 15:41:14 | 000,000,000 | ---D | M]

[2011/07/03 18:52:16 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Liz\Application Data\Mozilla\Extensions
[2011/08/25 15:50:52 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\extensions
[2011/12/10 08:48:12 | 000,000,000 | ---D | M] (XUL Cache) -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\extensions\{52578b5e-36c2-4eb6-ac49-55e25d9ba2f6}
[2011/12/06 17:38:00 | 000,000,000 | ---D | M] (BitTorrentBar Community Toolbar) -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
[2011/11/10 08:20:38 | 000,000,000 | ---D | M] (IncrediMail MediaBar 4 Community Toolbar) -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\extensions\{90eee664-34b1-422a-a782-779af65cdf6d}
[2011/08/31 09:05:04 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\extensions\[email protected]
[2011/08/26 18:31:00 | 000,000,000 | ---D | M] (BetterLinks) -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\extensions\[email protected]
[2011/08/31 09:03:32 | 000,002,207 | ---- | M] () -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\searchplugins\MyStart Search.xml
[2011/08/29 17:51:44 | 000,000,947 | ---- | M] () -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\searchplugins\conduit.xml
[2011/09/01 10:05:20 | 000,001,945 | ---- | M] () -- C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\wwtqsstl.default\searchplugins\bing-zugo.xml
[2011/07/03 18:52:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/11/08 21:53:46 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/08/18 16:19:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml.old
[2011/10/01 09:44:24 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/11/08 21:53:46 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - Extension: BitTorrentBar = C:\Documents and Settings\Liz\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mhfdcmehmjcclgopdodkjdicohagipid\2.0.1.4_0\

O1 HOSTS File: ([2011/07/04 03:14:20 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [SDTray] C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
O4 - HKLM..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u File not found
O4 - HKCU..\Run: [AppleNotifierBackup] C:\Documents and Settings\All Users\Application Data\AppleNotifierBackup.dll (CyberLink)
O4 - HKCU..\Run: [IMData] C:\Documents and Settings\Liz\Local Settings\Application Data\IM\IMData\IMdata.dll (CyberLink)
O4 - HKCU..\Run: [IncrediMail_MediaBar_4 Update] C:\Documents and Settings\Liz\Local Settings\Application Data\IM\IMUpdate\IMupdt32.dll (CyberLink)
O4 - HKCU..\Run: [JavaSoft Update] C:\Documents and Settings\Liz\Local Settings\Application Data\Microsoft\MicrosoftUpdate\Microsoftupdt32.dll ()
O4 - HKCU..\Run: [MicrosoftData] C:\Documents and Settings\Liz\Local Settings\Application Data\Microsoft\MicrosoftData\Microsoftdata.dll ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.)
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 207.69.188.185 207.69.188.186 207.69.188.187
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{77E4DE6E-C6DF-44AA-B012-55AA9EE3D079}: DhcpNameServer = 207.69.188.185 207.69.188.186 207.69.188.187
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/07/03 03:33:24 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005/10/22 19:43:30 | 000,000,000 | ---- | M] () - E:\AUTOEXEC.BAT -- [ FAT32 ]
O32 - AutoRun File - [2011/01/23 13:35:04 | 000,000,000 | ---- | M] () - H:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/12/18 20:52:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011/12/18 19:22:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2011/12/18 19:22:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Spybot - Search & Destroy 2
[2011/12/18 19:22:31 | 000,015,224 | ---- | C] (Safer Networking Limited) -- C:\WINDOWS\System32\sdnclean.exe
[2011/12/18 19:22:15 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2
[2011/12/18 19:20:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
[2011/12/18 19:19:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2011/12/18 19:06:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liz\Local Settings\Application Data\PackageAware
[2011/12/17 18:23:14 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/12/17 18:23:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Lavasoft
[2011/12/17 08:13:02 | 000,102,400 | ---- | C] (CyberLink) -- C:\Documents and Settings\All Users\Application Data\AppleNotifierBackup.dll
[2011/12/15 12:03:23 | 000,000,000 | ---D | C] -- C:\Program Files\DivX
[2011/12/15 07:09:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple
[2011/12/12 19:55:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MpEngineStore
[2011/12/06 11:52:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVS4YOU
[2011/12/06 11:52:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liz\Application Data\AVS4YOU
[2011/12/06 11:51:12 | 000,000,000 | ---D | C] -- C:\Program Files\AVS4YOU
[2011/12/06 11:50:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AVSMedia
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\Liz\Desktop\*.tmp files -> C:\Documents and Settings\Liz\Desktop\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/12/19 09:26:42 | 000,000,004 | ---- | M] () -- C:\Documents and Settings\Liz\Application Data\8fe6a4c3
[2011/12/19 08:50:30 | 000,000,004 | ---- | M] () -- C:\Documents and Settings\Liz\Application Data\6f3b5b3c
[2011/12/19 08:48:54 | 000,010,566 | ---- | M] () -- C:\Documents and Settings\Liz\Application Data\789ed339
[2011/12/19 08:03:02 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/12/19 08:02:18 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2011/12/18 19:52:06 | 000,010,240 | ---- | M] () -- C:\Documents and Settings\Liz\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/12/18 19:22:34 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Spybot-S&D Start Center.lnk
[2011/12/18 18:52:40 | 000,000,486 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011/12/18 18:06:38 | 000,000,064 | ---- | M] () -- C:\WINDOWS\System32\rp_stats.dat
[2011/12/18 18:06:38 | 000,000,044 | ---- | M] () -- C:\WINDOWS\System32\rp_rules.dat
[2011/12/17 18:09:12 | 000,000,688 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/12/17 08:13:00 | 000,102,400 | ---- | M] (CyberLink) -- C:\Documents and Settings\All Users\Application Data\AppleNotifierBackup.dll
[2011/12/17 08:02:44 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/12/16 10:33:32 | 000,088,497 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Artist Profile.ods
[2011/12/15 13:58:54 | 000,027,014 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\LC x Jpop VII.odt
[2011/12/15 10:16:36 | 000,010,206 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\FMA plan.odt
[2011/12/15 07:09:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/12/14 12:07:48 | 000,013,728 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\CLASSICALLYRICS.odt
[2011/12/12 19:55:34 | 000,002,946 | ---- | M] () -- C:\WINDOWS\System32\drivers\hbwbypqx.dat
[2011/12/12 12:59:56 | 000,011,625 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\history IDs.odt
[2011/12/12 12:47:38 | 000,011,139 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Dates.odt
[2011/12/10 16:43:02 | 000,000,004 | ---- | M] () -- C:\Documents and Settings\Liz\Application Data\079eabc3
[2011/12/10 10:33:56 | 000,000,331 | ---- | M] () -- C:\WINDOWS\System\Shortcut to system.lnk
[2011/12/08 15:26:32 | 000,034,869 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Interlude.ods
[2011/12/08 14:47:30 | 000,019,584 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Research Prospectus.odt
[2011/12/06 10:53:58 | 000,021,492 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\spellnames.ods
[2011/12/06 10:53:24 | 000,065,358 | ---- | M] () -- C:\Documents and Settings\Liz\.recently-used.xbel
[2011/12/05 18:58:44 | 000,021,403 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\title pages.odt
[2011/12/03 14:23:32 | 000,016,263 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\LCxNamie.odt
[2011/12/02 08:53:14 | 000,058,631 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\The Rebellion of Atsushi.odt
[2011/12/01 17:59:16 | 000,026,728 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\a cappella corner lyrics.odt
[2011/12/01 10:02:32 | 000,020,702 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Spanish response.odt
[2011/11/30 17:48:24 | 000,022,713 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Revolution.odt
[2011/11/28 13:48:58 | 000,022,214 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\character profile.odt
[2011/11/25 15:46:20 | 000,011,937 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Spellcaster colors.odt
[2011/11/23 13:08:24 | 000,013,136 | ---- | M] () -- C:\Documents and Settings\Liz\My Documents\Winter Album.odt
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\Liz\Desktop\*.tmp files -> C:\Documents and Settings\Liz\Desktop\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/12/19 08:02:17 | 000,001,611 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2011/12/18 19:22:32 | 000,001,746 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Spybot-S&D Start Center.lnk
[2011/12/18 19:22:32 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Spybot-S&D Start Center.lnk
[2011/12/18 18:06:37 | 000,000,064 | ---- | C] () -- C:\WINDOWS\System32\rp_stats.dat
[2011/12/18 18:06:37 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\rp_rules.dat
[2011/12/17 18:25:11 | 000,000,486 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011/12/14 18:01:47 | 000,027,014 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\LC x Jpop VII.odt
[2011/12/12 19:55:32 | 000,002,946 | ---- | C] () -- C:\WINDOWS\System32\drivers\hbwbypqx.dat
[2011/12/12 12:59:54 | 000,011,625 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\history IDs.odt
[2011/12/12 12:47:23 | 000,011,139 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\Dates.odt
[2011/12/10 16:43:00 | 000,000,004 | ---- | C] () -- C:\Documents and Settings\Liz\Application Data\079eabc3
[2011/12/10 10:33:53 | 000,000,331 | ---- | C] () -- C:\WINDOWS\System\Shortcut to system.lnk
[2011/12/10 09:13:49 | 000,010,566 | ---- | C] () -- C:\Documents and Settings\Liz\Application Data\789ed339
[2011/12/10 09:13:41 | 000,000,004 | ---- | C] () -- C:\Documents and Settings\Liz\Application Data\6f3b5b3c
[2011/12/10 08:48:17 | 000,000,004 | ---- | C] () -- C:\Documents and Settings\Liz\Application Data\8fe6a4c3
[2011/12/07 15:32:06 | 000,019,584 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\Research Prospectus.odt
[2011/12/06 10:53:23 | 000,065,358 | ---- | C] () -- C:\Documents and Settings\Liz\.recently-used.xbel
[2011/12/05 11:36:19 | 000,021,403 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\title pages.odt
[2011/12/03 14:23:29 | 000,016,263 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\LCxNamie.odt
[2011/12/01 10:02:31 | 000,020,702 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\Spanish response.odt
[2011/11/30 18:52:11 | 000,026,728 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\a cappella corner lyrics.odt
[2011/11/30 17:47:11 | 000,022,713 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\Revolution.odt
[2011/11/27 16:54:25 | 000,022,214 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\character profile.odt
[2011/11/27 12:34:30 | 000,021,492 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\spellnames.ods
[2011/11/25 15:46:17 | 000,011,937 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\Spellcaster colors.odt
[2011/11/23 13:08:22 | 000,013,136 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\Winter Album.odt
[2011/11/21 20:42:36 | 000,010,206 | ---- | C] () -- C:\Documents and Settings\Liz\My Documents\FMA plan.odt
[2011/08/28 18:04:32 | 000,000,162 | ---- | C] () -- C:\WINDOWS\System32\AddPort.ini
[2011/08/28 18:04:10 | 000,000,685 | ---- | C] () -- C:\WINDOWS\hpntwksetup.ini
[2011/08/28 18:02:40 | 000,148,453 | ---- | C] () -- C:\WINDOWS\hppins08.dat
[2011/08/28 18:02:40 | 000,001,116 | ---- | C] () -- C:\WINDOWS\hppmdl08.dat
[2011/08/25 15:54:42 | 000,010,240 | ---- | C] () -- C:\Documents and Settings\Liz\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/04 03:19:41 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011/07/04 03:18:40 | 000,473,216 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/07/04 03:16:04 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll
[2011/07/04 03:16:04 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2011/07/04 03:16:04 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2011/07/04 03:15:01 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2011/07/04 03:15:01 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2011/07/04 03:15:01 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2011/07/04 03:15:01 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2011/07/04 03:15:01 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2011/07/04 03:15:01 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2011/07/04 03:15:01 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys
[2011/07/04 03:15:01 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2011/07/04 03:15:01 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2011/07/04 03:14:13 | 000,311,934 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2011/07/04 03:14:13 | 000,040,196 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2011/07/03 19:32:31 | 001,098,680 | ---- | C] () -- C:\WINDOWS\ampa.exe
[2011/07/03 19:32:31 | 000,010,936 | ---- | C] () -- C:\WINDOWS\System32\ampa.sys
[2011/07/03 18:52:10 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011/07/03 03:36:42 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011/07/03 03:30:51 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2007/03/16 17:00:00 | 000,003,403 | ---- | C] () -- C:\WINDOWS\System32\hptcpmon.ini
[2007/01/13 10:46:36 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4764.dll
[2006/12/05 07:57:04 | 000,000,685 | ---- | C] () -- C:\WINDOWS\System32\hppapr08.dat

========== LOP Check ==========

[2011/07/25 17:00:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/08/31 09:04:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IM
[2011/08/31 09:04:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IncrediMail
[2011/12/18 19:20:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
[2011/07/04 12:24:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Liz\Application Data\LibreOffice
[2011/07/13 13:34:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Liz\Application Data\Amazon
[2011/07/19 09:07:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Liz\Application Data\gtk-2.0
[2011/08/31 09:03:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Liz\Application Data\FLV.com FLV PLayer
[2011/12/18 18:52:40 | 000,000,486 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

========== Purity Check ==========



< End of report >

And here's some more under "Extras"

OTL Extras logfile created on: 12/19/2011 9:16:01 AM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Liz\My Documents\Downloads
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

500.73 Mb Total Physical Memory | 14.80 Mb Available Physical Memory | 2.96% Memory free
1.91 Gb Paging File | 0.02 Gb Available in Paging File | 0.91% Paging File free
Paging file location(s): C:\pagefile.sys 744 1488 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 19.52 Gb Total Space | 7.36 Gb Free Space | 37.68% Space Free | Partition Type: FAT32
Drive E: | 14.63 Gb Total Space | 5.31 Gb Free Space | 36.26% Space Free | Partition Type: FAT32
Drive H: | 19.52 Gb Total Space | 13.09 Gb Free Space | 67.03% Space Free | Partition Type: FAT32

Computer Name: MAE | User Name: Liz | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\IncrediMail\Bin\IncMail.exe" = C:\Program Files\IncrediMail\Bin\IncMail.exe:*:Enabled:IncrediMail
"C:\Program Files\IncrediMail\Bin\ImApp.exe" = C:\Program Files\IncrediMail\Bin\ImApp.exe:*:Enabled:IncrediMail
"C:\Program Files\IncrediMail\Bin\ImpCnt.exe" = C:\Program Files\IncrediMail\Bin\ImpCnt.exe:*:Enabled:IncrediMail
"C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Disabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files\Spybot - Search & Destroy 2\SDFWSvc.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDFWSvc.exe:*:Enabled:Spybot-S&D 2 Firewall service -- (Safer-Networking Ltd.)
"C:\Program Files\Spybot - Search & Destroy 2\SDMonSvc.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDMonSvc.exe:*:Enabled:Spybot-S&D 2 On-Access monitor service -- (Safer-Networking Ltd.)
"C:\Program Files\Spybot - Search & Destroy 2\SDSODSvc.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDSODSvc.exe:*:Enabled:Spybot-S&D 2 Scan On Demand service
"C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0360D8F0-626A-4E87-8A16-938BD0BEBCC5}" = 32 Bit HP CIO Components Installer
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83216026FF}" = Java™ 6 Update 26
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{528882DF-7239-436F-811B-F48F4179D017}" = LibreOffice 3.4
"{54DAAD16-A57A-4524-9C4F-391500945D14}" = Adobe Flash Player 10 ActiveX
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.0)
"{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support
"{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy 2
"{C23CD6DA-1958-43A5-ADD0-59396572E02E}" = Apple Mobile Device Support
"{C73CA646-73B3-4AEF-A136-C37505745174}" = iTunes
"{C8A37F1F-E13B-48ae-93F8-4669264969F9}" = HP LaserJet M1522 MFP Series 6.0
"{D03482C5-9AD8-496D-B388-692AE04C93AF}" = Bonjour
"{FDB3B167-F4FA-461D-976F-286304A57B2A}" = Adobe AIR
"{FF1C72E2-203C-4E95-8D24-735196D29E04}" = HP Install Network Printer Wizard
"Adobe AIR" = Adobe AIR
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Amazon MP3 Downloader" = Amazon MP3 Downloader 1.0.12
"Audacity_is1" = Audacity 1.2.6
"GIMP" = GIMP
"GTK2-Runtime" = GTK2-Runtime
"HDMI" = Intel® Graphics Media Accelerator Driver
"JAIELangPack" = Japanese Language Support
"KOIELangPack" = Korean Language Support
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.2.1300
"McAfee Security Scan" = McAfee Security Scan Plus
"Mozilla Firefox 8.0 (x86 en-US)" = Mozilla Firefox 8.0 (x86 en-US)
"Partition Assistant Home Edition_is1" = Aomei Partition Assistant 3.0 Home Edition
"PROSet" = Intel® PRO Network Connections Drivers
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"WinGimp-2.0_is1" = GIMP 2.4.7
"WinRAR archiver" = WinRAR archiver
"ZHCIELangPack" = Chinese (Simplified) Language Support

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 12/17/2011 10:10:39 PM | Computer Name = MAE | Source = Application Error | ID = 1000
Description = Faulting application spoolsv.exe, version 5.1.2600.2180, faulting
module hpzjcd01.dll, version 5.1.17.0, fault address 0x0001856a.

Error - 12/17/2011 10:32:30 PM | Computer Name = MAE | Source = Application Error | ID = 1000
Description = Faulting application spoolsv.exe, version 5.1.2600.2180, faulting
module unknown, version 0.0.0.0, fault address 0x012972fb.

Error - 12/18/2011 10:42:07 AM | Computer Name = MAE | Source = Application Error | ID = 1000
Description = Faulting application spoolsv.exe, version 5.1.2600.2180, faulting
module hpzjcd01.dll, version 5.1.17.0, fault address 0x0001856a.

Error - 12/18/2011 7:09:36 PM | Computer Name = MAE | Source = Application Hang | ID = 1002
Description = Hanging application Ad-Aware.exe, version 9.0.0.0, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.

Error - 12/18/2011 8:51:20 PM | Computer Name = MAE | Source = Application Hang | ID = 1002
Description = Hanging application SDFiles.exe, version 2.0.3.123, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.

Error - 12/18/2011 9:57:56 PM | Computer Name = MAE | Source = Application Error | ID = 1000
Description = Faulting application spoolsv.exe, version 5.1.2600.2180, faulting
module hpzjcd01.dll, version 5.1.17.0, fault address 0x0001856a.

Error - 12/19/2011 9:07:35 AM | Computer Name = MAE | Source = Application Error | ID = 1000
Description = Faulting application iexplore.exe, version 6.0.2900.2180, faulting
module imdata.dll, version 0.0.0.0, fault address 0x0002d4e7.

Error - 12/19/2011 9:45:37 AM | Computer Name = MAE | Source = Application Error | ID = 1000
Description = Faulting application spoolsv.exe, version 5.1.2600.2180, faulting
module hpzjcd01.dll, version 5.1.17.0, fault address 0x0001856a.

Error - 12/19/2011 10:14:50 AM | Computer Name = MAE | Source = Application Error | ID = 1000
Description = Faulting application itunes.exe, version 10.4.0.80, faulting module
ntdll.dll, version 5.1.2600.2180, fault address 0x000105f8.

Error - 12/19/2011 10:15:35 AM | Computer Name = MAE | Source = Application Hang | ID = 1002
Description = Hanging application OTL.exe, version 3.2.31.0, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.

[ System Events ]
Error - 12/18/2011 8:23:05 PM | Computer Name = MAE | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Spybot-S&D 2 Security
Center Service service to connect.

Error - 12/18/2011 8:23:05 PM | Computer Name = MAE | Source = Service Control Manager | ID = 7000
Description = The Spybot-S&D 2 Security Center Service service failed to start due
to the following error: %%1053

Error - 12/18/2011 8:25:18 PM | Computer Name = MAE | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Spybot-S&D 2 Security
Center Service service to connect.

Error - 12/18/2011 8:25:18 PM | Computer Name = MAE | Source = Service Control Manager | ID = 7000
Description = The Spybot-S&D 2 Security Center Service service failed to start due
to the following error: %%1053

Error - 12/18/2011 9:58:08 PM | Computer Name = MAE | Source = Service Control Manager | ID = 7031
Description = The Print Spooler service terminated unexpectedly. It has done this
1 time(s). The following corrective action will be taken in 60000 milliseconds:
Restart the service.

Error - 12/19/2011 9:01:17 AM | Computer Name = MAE | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Spybot-S&D 2 Security
Center Service service to connect.

Error - 12/19/2011 9:01:17 AM | Computer Name = MAE | Source = Service Control Manager | ID = 7000
Description = The Spybot-S&D 2 Security Center Service service failed to start due
to the following error: %%1053

Error - 12/19/2011 9:03:35 AM | Computer Name = MAE | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Spybot-S&D 2 Security
Center Service service to connect.

Error - 12/19/2011 9:03:35 AM | Computer Name = MAE | Source = Service Control Manager | ID = 7000
Description = The Spybot-S&D 2 Security Center Service service failed to start due
to the following error: %%1053

Error - 12/19/2011 9:45:56 AM | Computer Name = MAE | Source = Service Control Manager | ID = 7031
Description = The Print Spooler service terminated unexpectedly. It has done this
1 time(s). The following corrective action will be taken in 60000 milliseconds:
Restart the service.


< End of report >


Please, help as soon as possible.
  • 0

Advertisements


#2
LizzyLC

LizzyLC

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts
I think I figured out the problem and it's fixed. But thanks anyway!!!
  • 0

#3
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,665 posts
Thank you for the courtesy of informing us. :)

--------------

Since this issue appears to be resolved ... this Topic has been closed.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP