Jump to content

Free help from tech experts
Welcome to Geeks to Go forums. Create an account now to gain access to all our features. Once registered and logged in, you will be able to create topics, post replies to existing topics, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more. Best of all, registration and all assistance is 100% free! This message, and all ads will be removed once you have signed in.
Sign In Create Account

Firefox not responding, pages hanging,unable to start antivirus [Close


  • This topic is locked This topic is locked

#61
saltash

saltash

    Member

  • Member
  • PipPip
  • 55 posts
OTL Extras logfile created on: 28/02/2012 22:29:23 - Run 6
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\User.USER-BCBE98E29B\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

255.53 Mb Total Physical Memory | 63.38 Mb Available Physical Memory | 24.80% Memory free
618.91 Mb Paging File | 293.88 Mb Available in Paging File | 47.48% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.26 Gb Total Space | 15.98 Gb Free Space | 42.89% Space Free | Partition Type: NTFS

Computer Name: USER-BCBE98E29B | User Name: User | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = Opera.HTML] -- Reg Error: Key error. File not found
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
https [open] -- "C:\Program Files\Opera\Opera.exe" "%1"
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"UpdatesDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00170409-78E1-11D2-B60F-006097C998E7}" = Microsoft Word 2000 SR-1
"{02400202-5D65-445A-B3B4-3DCE72BA0C6C}" = Microsoft Encarta World Atlas 2001 - WE
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{15D9EB74-998E-4A04-B468-51C2E7B32182}" = Microsoft Picture It! Publishing 2001
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216026FF}" = Java™ 6 Update 26
"{343666E2-A059-48AC-AD67-230BF74E2DB2}" = Apple Application Support
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4D719053-5593-11D3-8F25-0060085C1758}" = Microsoft AutoRoute 2001
"{5F629FE8-5B4C-4863-937A-AFC2961F7DD3}" = Microsoft Works Suite Add-in for Microsoft Word
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{8153ED9A-C94A-426E-9880-5E6775C08B62}" = Apple Mobile Device Support
"{8D15E1B2-D2B7-4A17-B44B-D2DDE5981406}" = iLivid
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.2)
"{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.0) MUI
"{B7DBF6E8-0D17-4BE4-853B-ACD6EFBD4A1F}" = iTunes
"{BD3DCAB0-3FE5-44FB-90DA-EFB0A2CD1387}" = Works Synchronization
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C6579A65-9CAE-4B31-8B6B-3306E0630A66}" = Apple Software Update
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D085A1B6-90A4-11D3-82B7-00C04FA309DE}" = Microsoft Money 2001
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F5346614-B7C4-4E94-826A-E2363155233D}" = EasyCleaner
"{F8D0829C-9C6F-11D3-8080-00C04FA329AA}" = Microsoft Works 6.0
"{FAF7F1D7-C0E7-47EA-8AAA-84E4F9EA3C94}" = Works Suite OS Pack
"{FDB3B167-F4FA-461D-976F-286304A57B2A}" = Adobe AIR
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"avast" = avast! Free Antivirus
"ESET Online Scanner" = ESET Online Scanner v3
"FoneSync" = FoneSync
"Google Chrome" = Google Chrome
"hp deskjet 5550 series" = hp deskjet 5550 series (Remove only)
"ie8" = Windows Internet Explorer 8
"MAGIX @udio & video office OEM" = MAGIX @udio & video office OEM
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.60.1.1000
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Mozilla Firefox 10.0.2 (x86 en-US)" = Mozilla Firefox 10.0.2 (x86 en-US)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers
"NVIDIA Drivers" = NVIDIA Drivers
"PC Tools Firewall Plus" = PC Tools Firewall Plus 7.0
"Recuva" = Recuva
"SB_ClipboardPath" = ClipboardPath
"Shockwave" = Shockwave
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"WebSTAR Uninstall" = WebSTAR DPX USB Cable Modem Adapter
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Works2001Setup" = Microsoft Works 2001 Setup Launcher
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 02/11/2011 17:03:08 | Computer Name = USER-BCBE98E29B | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download....uthrootseq.txt>
with error: This operation returned because the timeout period expired.

Error - 02/11/2011 17:06:42 | Computer Name = USER-BCBE98E29B | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download....uthrootseq.txt>
with error: This operation returned because the timeout period expired.

Error - 23/11/2011 05:43:32 | Computer Name = USER-BCBE98E29B | Source = EventSystem | ID = 4614
Description = The COM+ Event System detected an inconsistency in its internal state.
The assertion "GetLastError() == 122L" failed at line 162 of d:\comxp_sp3\com\com1x\src\events\shared\sectools.cpp.
Please contact Microsoft Product Support Services to report this erro

Error - 05/12/2011 17:00:09 | Computer Name = USER-BCBE98E29B | Source = MsiInstaller | ID = 1023
Description = Product: Panda Cloud Antivirus - Update '{1C58D052-1739-48F5-BF3F-DB461BED6297}'
could not be installed. Error code 1642. Additional information is available in
the log file C:\WINDOWS\TEMP\PSLogs\Panda Cloud Antivirus_MSI_B.Log.

Error - 05/12/2011 17:00:10 | Computer Name = USER-BCBE98E29B | Source = MsiInstaller | ID = 1023
Description = Product: Panda Cloud Antivirus - Update '{B35E8B29-555F-4E2E-9DB2-D107A525F136}'
could not be installed. Error code 1642. Additional information is available in
the log file C:\WINDOWS\TEMP\PSLogs\Panda Cloud Antivirus_MSI_C.Log.

Error - 11/01/2012 14:53:15 | Computer Name = USER-BCBE98E29B | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

Error - 16/02/2012 15:34:46 | Computer Name = USER-BCBE98E29B | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

[ Application Events ]
Error - 02/11/2011 17:03:08 | Computer Name = USER-BCBE98E29B | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download....uthrootseq.txt>
with error: This operation returned because the timeout period expired.

Error - 02/11/2011 17:06:42 | Computer Name = USER-BCBE98E29B | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download....uthrootseq.txt>
with error: This operation returned because the timeout period expired.

Error - 23/11/2011 05:43:32 | Computer Name = USER-BCBE98E29B | Source = EventSystem | ID = 4614
Description = The COM+ Event System detected an inconsistency in its internal state.
The assertion "GetLastError() == 122L" failed at line 162 of d:\comxp_sp3\com\com1x\src\events\shared\sectools.cpp.
Please contact Microsoft Product Support Services to report this erro

Error - 05/12/2011 17:00:09 | Computer Name = USER-BCBE98E29B | Source = MsiInstaller | ID = 1023
Description = Product: Panda Cloud Antivirus - Update '{1C58D052-1739-48F5-BF3F-DB461BED6297}'
could not be installed. Error code 1642. Additional information is available in
the log file C:\WINDOWS\TEMP\PSLogs\Panda Cloud Antivirus_MSI_B.Log.

Error - 05/12/2011 17:00:10 | Computer Name = USER-BCBE98E29B | Source = MsiInstaller | ID = 1023
Description = Product: Panda Cloud Antivirus - Update '{B35E8B29-555F-4E2E-9DB2-D107A525F136}'
could not be installed. Error code 1642. Additional information is available in
the log file C:\WINDOWS\TEMP\PSLogs\Panda Cloud Antivirus_MSI_C.Log.

Error - 11/01/2012 14:53:15 | Computer Name = USER-BCBE98E29B | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

Error - 16/02/2012 15:34:46 | Computer Name = USER-BCBE98E29B | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

[ Application Events ]
Error - 02/11/2011 17:03:08 | Computer Name = USER-BCBE98E29B | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download....uthrootseq.txt>
with error: This operation returned because the timeout period expired.

Error - 02/11/2011 17:06:42 | Computer Name = USER-BCBE98E29B | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download....uthrootseq.txt>
with error: This operation returned because the timeout period expired.

Error - 23/11/2011 05:43:32 | Computer Name = USER-BCBE98E29B | Source = EventSystem | ID = 4614
Description = The COM+ Event System detected an inconsistency in its internal state.
The assertion "GetLastError() == 122L" failed at line 162 of d:\comxp_sp3\com\com1x\src\events\shared\sectools.cpp.
Please contact Microsoft Product Support Services to report this erro

Error - 05/12/2011 17:00:09 | Computer Name = USER-BCBE98E29B | Source = MsiInstaller | ID = 1023
Description = Product: Panda Cloud Antivirus - Update '{1C58D052-1739-48F5-BF3F-DB461BED6297}'
could not be installed. Error code 1642. Additional information is available in
the log file C:\WINDOWS\TEMP\PSLogs\Panda Cloud Antivirus_MSI_B.Log.

Error - 05/12/2011 17:00:10 | Computer Name = USER-BCBE98E29B | Source = MsiInstaller | ID = 1023
Description = Product: Panda Cloud Antivirus - Update '{B35E8B29-555F-4E2E-9DB2-D107A525F136}'
could not be installed. Error code 1642. Additional information is available in
the log file C:\WINDOWS\TEMP\PSLogs\Panda Cloud Antivirus_MSI_C.Log.

Error - 11/01/2012 14:53:15 | Computer Name = USER-BCBE98E29B | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

Error - 16/02/2012 15:34:46 | Computer Name = USER-BCBE98E29B | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

[ System Events ]
Error - 27/02/2012 18:11:20 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 27/02/2012 18:12:12 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the iPod Service service
to connect.

Error - 27/02/2012 18:12:12 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The iPod Service service failed to start due to the following error:
%%1053

Error - 27/02/2012 18:12:12 | Computer Name = USER-BCBE98E29B | Source = DCOM | ID = 10005
Description = DCOM got error "%1053" attempting to start the service iPod Service
with arguments "" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}

Error - 27/02/2012 18:19:34 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 27/02/2012 18:20:58 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7022
Description = The Automatic Updates service hung on starting.

Error - 28/02/2012 01:33:31 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 28/02/2012 16:06:21 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 28/02/2012 16:07:31 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Application Layer Gateway
Service service to connect.

Error - 28/02/2012 16:07:33 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The Application Layer Gateway Service service failed to start due
to the following error: %%1053

[ System Events ]
Error - 27/02/2012 18:11:20 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 27/02/2012 18:12:12 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the iPod Service service
to connect.

Error - 27/02/2012 18:12:12 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The iPod Service service failed to start due to the following error:
%%1053

Error - 27/02/2012 18:12:12 | Computer Name = USER-BCBE98E29B | Source = DCOM | ID = 10005
Description = DCOM got error "%1053" attempting to start the service iPod Service
with arguments "" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}

Error - 27/02/2012 18:19:34 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 27/02/2012 18:20:58 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7022
Description = The Automatic Updates service hung on starting.

Error - 28/02/2012 01:33:31 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 28/02/2012 16:06:21 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The helpsvc service failed to start due to the following error: %%2

Error - 28/02/2012 16:07:31 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Application Layer Gateway
Service service to connect.

Error - 28/02/2012 16:07:33 | Computer Name = USER-BCBE98E29B | Source = Service Control Manager | ID = 7000
Description = The Application Layer Gateway Service service failed to start due
to the following error: %%1053


< End of report >
OTL logfile created on: 28/02/2012 22:29:21 - Run 6
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\User.USER-BCBE98E29B\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

255.53 Mb Total Physical Memory | 63.38 Mb Available Physical Memory | 24.80% Memory free
618.91 Mb Paging File | 293.88 Mb Available in Paging File | 47.48% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.26 Gb Total Space | 15.98 Gb Free Space | 42.89% Space Free | Partition Type: NTFS

Computer Name: USER-BCBE98E29B | User Name: User | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/02/23 16:23:24 | 004,031,368 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012/02/23 16:23:21 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012/02/16 14:40:41 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012/02/05 16:28:01 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\OTL.exe
PRC - [2011/08/18 21:36:04 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
PRC - [2011/04/07 13:23:34 | 002,672,600 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
PRC - [2011/01/24 12:23:14 | 000,286,000 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FWService.exe
PRC - [2008/04/14 11:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2012/02/28 11:22:43 | 001,717,760 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\12022801\algo.dll
MOD - [2012/02/16 14:40:41 | 001,911,768 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2012/02/23 16:23:21 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011/08/18 21:36:04 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE -- (!SASCORE)
SRV - [2011/01/24 12:23:14 | 000,286,000 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\PC Tools Firewall Plus\FWService.exe -- (PCToolsFirewallPlus)


========== Driver Services (SafeList) ==========

DRV - [2012/02/28 20:33:52 | 000,040,776 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2012/02/23 16:12:28 | 000,610,648 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012/02/23 16:12:16 | 000,337,112 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012/02/23 16:10:46 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2012/02/23 16:10:39 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012/02/23 16:10:25 | 000,095,704 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2012/02/23 16:10:16 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2012/02/23 16:07:33 | 000,024,920 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011/07/22 16:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2011/07/12 21:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2011/03/02 11:40:54 | 000,160,576 | ---- | M] (PC Tools) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\PCTAppEvent.sys -- (PCTAppEvent)
DRV - [2011/01/17 08:10:26 | 000,251,560 | ---- | M] (PC Tools) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\pctgntdi.sys -- (pctgntdi)
DRV - [2011/01/17 07:11:12 | 000,125,248 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctplfw.sys -- (pctplfw)
DRV - [2011/01/12 09:36:22 | 000,089,472 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys -- (PCTFW-PacketFilter)
DRV - [2010/07/08 07:49:10 | 000,057,536 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis.sys -- (pctNdisMP)
DRV - [2010/07/08 07:49:10 | 000,057,536 | ---- | M] (PC Tools) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pctNdis.sys -- (pctNdis)
DRV - [2008/04/14 00:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2006/02/26 15:22:48 | 000,010,240 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvmpu401.sys -- (nvmpu401) Service for NVIDIA® nForce™
DRV - [2003/08/07 16:42:30 | 000,006,528 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gflmouhid.sys -- (genmcmnUSB)
DRV - [2001/12/17 11:25:58 | 000,015,417 | R--- | M] (Scientific Atlanta) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WebSTAR.sys -- (WebSTARNdis)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =


IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s

IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s

IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 94 10 75 6C C2 E8 CC 01 [binary data]
IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s
IE - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.selectedEngine: "Blekko"
FF - prefs.js..browser.startup.homepage: "http://www.google.co.uk/"
FF - prefs.js..network.proxy.type: 0

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012/02/26 09:32:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/02/26 08:08:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/02/09 19:59:51 | 000,000,000 | ---D | M]

[2012/01/03 21:23:51 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Mozilla\Extensions
[2012/02/28 20:11:00 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Mozilla\Firefox\Profiles\l34nq7fm.default\extensions
[2012/02/09 19:59:51 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Mozilla\Firefox\Profiles\l34nq7fm.default\extensions\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}
[2011/12/03 23:02:53 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Mozilla\Firefox\Profiles\l34nq7fm.default\extensions\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}\Setup\bin\PandaSecurityTb_2.0.0.9\$[56]\extensions
[2011/12/03 23:02:53 | 000,000,000 | ---D | M] (Panda Security Toolbar) -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Mozilla\Firefox\Profiles\l34nq7fm.default\extensions\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}\Setup\bin\PandaSecurityTb_2.0.0.9\$[56]\extensions\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}
[2012/02/26 08:08:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER.USER-BCBE98E29B\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\L34NQ7FM.DEFAULT\EXTENSIONS\{1CED4832-F06E-413F-AA14-9EB63AD40ACE}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER.USER-BCBE98E29B\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\L34NQ7FM.DEFAULT\EXTENSIONS\ADBLOCKPOPUPS@JESSEHAKANEN.NET.XPI
[2012/02/16 14:40:42 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012/02/16 10:42:53 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/02/26 12:11:23 | 000,002,119 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\blekkotb.xml
[2012/02/16 10:42:53 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\16.0.912.77\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\16.0.912.77\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\16.0.912.77\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Documents and Settings\User.USER-BCBE98E29B\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2_0\
CHR - Extension: Google Search = C:\Documents and Settings\User.USER-BCBE98E29B\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.14_0\
CHR - Extension: avast! WebRep = C:\Documents and Settings\User.USER-BCBE98E29B\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1374_0\
CHR - Extension: Gmail = C:\Documents and Settings\User.USER-BCBE98E29B\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.3_0\

O1 HOSTS File: ([2012/02/11 15:03:59 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (Google Inc.)
O2 - BHO: (SMTTB2009 Class) - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\DealBulldog Toolbar\tbcore3.dll File not found
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4 - HKLM..\Run: [00PCTFW] C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe (PC Tools)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [MSConfig] C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\msconfig.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 0
O7 - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1409082233-1417001333-1644491937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: Researcher - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\EROProj.dll ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{AD53D902-2763-4B83-B3C7-1EC5960E0516}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\msencarta {74D92DF3-6D9D-11D1-8B38-006097DBED7A} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\MSREF.DLL ()
O18 - Protocol\Handler\msero {B0D92A71-886B-453B-A649-1B91F93801E7} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\msero.dll ()
O18 - Protocol\Handler\msref {74D92DF3-6D9D-11D1-8B38-006097DBED7A} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\MSREF.DLL ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O24 - Desktop WallPaper: C:\Documents and Settings\User.USER-BCBE98E29B\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\User.USER-BCBE98E29B\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/11/22 11:38:07 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2012/02/28 22:07:18 | 004,730,880 | ---- | C] (AVAST Software) -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\aswMBR.exe
[2012/02/26 15:29:19 | 000,000,000 | ---D | C] -- C:\boot
[2012/02/26 15:28:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\boot
[2012/02/26 15:14:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google
[2012/02/26 15:09:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2012/02/26 14:21:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2012/02/26 14:02:22 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2012/02/26 13:05:09 | 000,040,776 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2012/02/26 12:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Toolbar4
[2012/02/26 09:27:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\boot old
[2012/02/21 06:09:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Auslogics
[2012/02/19 08:49:43 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2012/02/09 19:59:33 | 000,000,000 | ---D | C] -- C:\_OTL
[2012/02/08 19:50:25 | 000,000,000 | ---D | C] -- C:\SMCLpav
[2012/02/05 18:10:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Chrome
[2012/02/05 18:02:02 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2012/02/05 18:02:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User.USER-BCBE98E29B\Local Settings\Application Data\Google
[2012/02/05 18:00:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\avast! Free Antivirus
[2012/02/05 18:00:31 | 000,020,696 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2012/02/05 18:00:30 | 000,337,112 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2012/02/05 18:00:20 | 000,035,672 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2012/02/05 18:00:19 | 000,053,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2012/02/05 18:00:15 | 000,610,648 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2012/02/05 18:00:13 | 000,095,704 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2012/02/05 18:00:13 | 000,089,048 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2012/02/05 18:00:11 | 000,024,920 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2012/02/05 17:53:49 | 000,041,184 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2012/02/05 17:53:41 | 000,201,352 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2012/02/05 17:51:16 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2012/02/05 16:27:47 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\OTL.exe
[2012/02/04 19:46:39 | 000,000,000 | --SD | C] -- C:\ComboFix
[2012/02/03 16:27:44 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\User.USER-BCBE98E29B\Recent

========== Files - Modified Within 30 Days ==========

[2012/02/28 22:22:36 | 000,000,512 | ---- | M] () -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\MBR.dat
[2012/02/28 22:19:52 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012/02/28 22:08:28 | 004,730,880 | ---- | M] (AVAST Software) -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\aswMBR.exe
[2012/02/28 20:33:52 | 000,040,776 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2012/02/28 20:04:48 | 000,000,878 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012/02/28 20:04:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/02/28 20:04:02 | 268,013,568 | -HS- | M] () -- C:\hiberfil.sys
[2012/02/27 22:29:29 | 000,000,256 | -HS- | M] () -- C:\boot.ini
[2012/02/26 14:42:29 | 000,002,625 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012/02/26 09:17:48 | 000,000,380 | ---- | M] () -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\boot.zip
[2012/02/26 08:48:24 | 000,000,541 | ---- | M] () -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\Shortcut to boot.lnk
[2012/02/26 08:48:24 | 000,000,541 | ---- | M] () -- C:\boot old.lnk
[2012/02/26 08:08:59 | 000,000,742 | ---- | M] () -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2012/02/26 08:08:58 | 000,000,724 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2012/02/25 16:22:50 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/02/23 16:23:26 | 000,041,184 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2012/02/23 16:23:21 | 000,201,352 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2012/02/23 16:12:28 | 000,610,648 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2012/02/23 16:12:16 | 000,337,112 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2012/02/23 16:10:46 | 000,035,672 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2012/02/23 16:10:39 | 000,053,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2012/02/23 16:10:25 | 000,095,704 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2012/02/23 16:10:22 | 000,089,048 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2012/02/23 16:10:16 | 000,020,696 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2012/02/23 16:07:33 | 000,024,920 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2012/02/16 19:29:31 | 000,260,640 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/02/15 22:34:00 | 000,517,016 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/02/15 22:34:00 | 000,092,604 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/02/15 06:32:11 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012/02/11 15:03:59 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
[2012/02/09 20:27:42 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012/02/05 18:36:37 | 000,001,791 | ---- | M] () -- C:\Documents and Settings\User.USER-BCBE98E29B\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2012/02/05 18:10:40 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2012/02/05 18:00:52 | 000,001,689 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk
[2012/02/05 16:28:01 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\OTL.exe

========== Files Created - No Company Name ==========


aswMBR version 0.9.9.1649 Copyright© 2011 AVAST Software
Run date: 2012-02-28 22:09:55
-----------------------------
22:09:55.140 OS Version: Windows 5.1.2600 Service Pack 3
22:09:55.140 Number of processors: 1 586 0x204
22:09:55.140 ComputerName: USER-BCBE98E29B UserName: User
22:10:37.312 Initialize success
22:10:41.062 AVAST engine defs: 12022801
22:10:47.187 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
22:10:47.187 Disk 0 Vendor: ST340015A 3.01 Size: 38166MB BusType: 3
22:10:47.328 Disk 0 MBR read successfully
22:10:47.328 Disk 0 MBR scan
22:10:47.593 Disk 0 Windows XP default MBR code
22:10:47.640 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 38154 MB offset 63
22:10:48.031 Disk 0 scanning sectors +78140160
22:10:48.687 Disk 0 scanning C:\WINDOWS\system32\drivers
22:11:36.937 Service scanning
22:12:22.203 Modules scanning
22:12:54.500 Disk 0 trace - called modules:
22:12:54.515 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys intelide.sys
22:12:54.515 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x82784030]
22:12:55.062 3 CLASSPNP.SYS[f99f1fd7] -> nt!IofCallDriver -> \Device\0000005f[0x82786f18]
22:12:55.062 5 ACPI.sys[f9968620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x827d24e0]
22:12:57.468 AVAST engine scan C:\WINDOWS
22:13:04.750 AVAST engine scan C:\WINDOWS\system32
22:21:04.640 AVAST engine scan C:\WINDOWS\system32\drivers
22:21:36.078 AVAST engine scan C:\Documents and Settings\User.USER-BCBE98E29B
22:22:36.796 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\MBR.dat"
22:22:36.859 The log file has been saved successfully to "C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\aswMBR.txt"
  • 0

Similar Topics: Firefox not responding, pages hanging,unable to start antivirus [Close     x


#62
saltash

saltash

    Member

  • Member
  • PipPip
  • 55 posts
Device manager is all ok no yellow or red marks anywhere
  • 0

#63
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
Step 1.

iLivid still shows in your add remove program list in the Extras.txt . Please check one more time in Start >> Control Panel >> Add/remove Programs. Uninstall it if it is present

Step 2.

Is this the original keyboard that came with the computer?

Is your current keyboard a PS/2 (round plug) or a USB (flat plug) or is it connected by a bluetooth device wirelessly?

Do you have or can you borrow another keyboard to try on your computer with a PS/2 plug?


Step 3.

Follow these instructions to uninstall the blekko Spam Free Search Bar:

  • Click on the wrench icon located on the far right of the Search Bar.
  • A menu will open. Mouse over “Help” in that menu.
  • This will open a submenu. Click on “Uninstall” in the submenu.
  • The Search Bar will uninstall and you will be prompted to restart your browser.

Restart FireFox.

Step 4.

To change your address bar search:

  • Type about:config in the address bar and click “Enter
  • Type keyword.url in the filter. The keyword.url values should be displayed.
  • Double-click on keyword.url.
  • This should bring up a pop-up that says “Enter String Value”.
  • Enter the string value of the search engine you would like to use. For Google, enter http://www.google.com/search?&q=

Restart Firefox.



Step 5.

  • Please reopen Posted Image on your desktop.
  • Copy and Paste the following code into the Posted Image textbox.

    :OTL
    FF - prefs.js..browser.search.selectedEngine: "Blekko"
    [2012/02/26 12:11:23 | 000,002,119 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\blekkotb.xml
    O2 - BHO: (SMTTB2009 Class) - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\DealBulldog Toolbar\tbcore3.dll File not found
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    
    
    :Reg
    
    
    
    :Files
    ipconfig /flushdns /c
    
    
    
    :Commands
    [resethosts]
    [CreateRestorePoint]
    [emptytemp]

  • Push Posted Image
  • OTL may ask to reboot the machine. Please do so if asked.
  • Click the OK button.
  • A report will open. Copy and Paste that report in your next reply.
  • If the machine reboots, the log will be located at C:\_OTL\MovedFiles\mmddyyyy_hhmmss.log, where mmddyyyy_hhmmss is the date of the tool run.


Please post the OTL fix log

Give me an update on your issues.


Step 6.

Please answer keyboard questions

Post OTL log
  • 0

#64
saltash

saltash

    Member

  • Member
  • PipPip
  • 55 posts
Step 1. Checked in add and remove and there is no entry for iLivid.
Step 2. I have a wireless keyboard and no immediate access to a PS2 or USB one.Perhaps tomorrow or Friday.
Step 3. I dabbled with the Google search box and it gave me options to "manage search engines" which allowed me to remove Blekko from the list.
I am about to do steps 4 & 5 and will get back once completed.
  • 0

#65
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
We definitely need a PS/2 keyboard. With the PS/2 we can go into the bios and fix this issue!!!!!
  • 0

#66
saltash

saltash

    Member

  • Member
  • PipPip
  • 55 posts
PC is responding better but still very very slow sometimes, not getting the "not responding" messages half as much as I was. I will try and find my old plug in keyboard in the loft tomorrow and let you know how I get on.
OTL log.
All processes killed
========== OTL ==========
Prefs.js: "Blekko" removed from browser.search.selectedEngine
C:\Program Files\Mozilla Firefox\searchplugins\blekkotb.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
========== REGISTRY ==========
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point (0)

[EMPTYTEMP]

User: Administrator

User: Administrator.USER-BCBE98E29B

User: Administrator.USER-BCBE98E29B.000

User: Administrator.USER-BCBE98E29B.001
->FireFox cache emptied: 0 bytes

User: All Users

User: Default User

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: User
->FireFox cache emptied: 0 bytes
->Opera cache emptied: 0 bytes

User: User.USER-BCBE98E29B
->Temp folder emptied: 1742166 bytes
->Temporary Internet Files folder emptied: 50071 bytes
->FireFox cache emptied: 45808543 bytes
->Flash cache emptied: 470 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 632832 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 46.00 mb


OTL by OldTimer - Version 3.2.31.0 log created on 02292012_210132
  • 0

#67
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
Excellent work saltash :thumbsup:

Please post the following information for me so I can prepare to check your BIOS once you get a PS/2 keyboard.

Click Start >> Run >> Type msinfo32 >> Click OK

The system information window will open.

Click Edit >> Select All >> Edit >> Copy
Then come back here to your Topic and in the Fast Reply right click and select Paste

Then Post your reply with the system information in it!
  • 0

#68
saltash

saltash

    Member

  • Member
  • PipPip
  • 55 posts
The old keyboard is also wireless CompCav so I will see if any friends have one I can borrow.
I tried as you suggested with Click Start >> Run >> Type msinfo32 >> Click OK but I keep getting the message. Widows cannot find the file msinfo32. Make sure you typed Etc. It then says to search for a file click the start button and then click search.
The PC responding much better today, pages loading quickly again and the start up time seemed to take less.
  • 0

#69
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
OK well when you get the keyboard let me know! I will be here for you!!
  • 0

#70
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
What is the make and model number of your PC? I can get what I need from that at the manufacturers website.
  • 0

#71
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
When you get the PS/2 keyboard we can do step one.

We can do step 2 now to help your computer's performance.

Step 1.

Shutdown the computer and disconnect the USB bbluetooth for your wireless keyboard.

Connect the PS/2 keyboard.

Start the computer, the splash screen should show which key to enter the BIOS (F2, delete, etc.) Quickly hit that key to enter the BIOS.

Once in the BIOS there will be a series of screens and you will use the right and left cursor keys to move from screen to screen
or
Alt-P.

Go to a page where you see Legacy USB or USB emulation or similar and select that item. Change it to enabled.

Now follow the prompts to exit with saving, usually F10 and confirm.

The computer will reboot, start tapping F8 to enter advanced options menu to confirm you can enter safe mode.

Now shutdown the computer disconnect the PS/2 keyboard and reconnect your USB bluetooth for your wireless keyboard.

Start the computer and start tapping F8 at the splash screen and confirm you can get into safe mode.


Step 2.

Please download CCleaner from here.

  • Double click on the file to install CCleaner.
  • During the install it may ask you to install a toolbar, uncheck the toolbar install, we do not want it!
  • Once it is installed it will run.
  • When it gets to the main screen, click on the Tools button on the left.
  • Click on the Startup button.
  • The windows tab should be showing, click on the Save to text file... button.
  • Click on Desktop and save startup.txt.
  • Double click on startup.txt to open it with Notepad.
  • Click Edit >> Select all >> Edit >> Copy .
  • Right click in the reply box to post in your topic. Click Paste

Then post your reply.


Do not use the registry editor in CCleaner. Registry cleaners at best do nothing and at worst can render your computer unbootable.

Step 3.

Please confirm you can now enter safe mode

Post startup.txt
  • 0

#72
saltash

saltash

    Member

  • Member
  • PipPip
  • 55 posts
Hi CompCav I have been trying to get hold of a ps2 or usb keyboard but everyone seems to either have a laptop or cordless keyboards these days. I am asking around friends and friends of friends so hopefully may get one soon.
I have done as you suggested with CCleaner and here is the log.
No HKCU:Run ctfmon C:\WINDOWS\system32\ctfmon.exe
Yes HKCU:Run ctfmon.exe C:\WINDOWS\system32\ctfmon.exe
No HKCU:Run NVMCTRAY RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
No HKCU:Run SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Yes HKLM:Run 00PCTFW "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
Yes HKLM:Run Adobe ARM "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
No HKLM:Run AdobeARM "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
Yes HKLM:Run APSDaemon "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
Yes HKLM:Run avast "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
No HKLM:Run dumprep 0 -k %systemroot%\system32\dumprep 0 -k
No HKLM:Run hpztsb05 C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
No HKLM:Run iTunesHelper "C:\Program Files\iTunes\iTunesHelper.exe"
No HKLM:Run jusched "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
Yes HKLM:Run MSConfig C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\msconfig.exe /auto
Yes HKLM:Run NvMediaCenter RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
No HKLM:Run nwiz nwiz.exe /install
No HKLM:Run QTTask "C:\Program Files\QuickTime\QTTask.exe" -atboottime
No HKLM:Run Reader_sl "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
No HKLM:Run wkfud C:\Program Files\Microsoft Works\wkfud.exe
No HKLM:Run WksSb C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
No Startup Common McAfee Security Scan Plus.lnk C:\PROGRA~1\MCAFEE~1\30982A~1.207\SSSCHE~1.EXE
No Startup Common Microsoft Office.lnk C:\PROGRA~1\MICROS~4\Office\OSA9.EXE -b -l
No Startup Common Microsoft Works Calendar Reminders.lnk C:\PROGRA~1\COMMON~1\MICROS~1\WORKSS~1\wkcalrem.exe
No Startup Common Windows Search.lnk C:\PROGRA~1\WI459E~1\WINDOW~1.EXE /startup
No Startup User Clipboard Magic.lnk C:\Program Files\Clipboard Magic\ClipboardMagic.exe
  • 0

#73
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
Proposed Fix:


Step 1.

Please restart CCleaner and go to Tools >> Startup
1. Click on each line listed below in CCleaner, make sure you are on the right one..
2. Then click Disable.

Repeat these two steps for each line below.

No HKCU:Run ctfmon C:\WINDOWS\system32\ctfmon.exe
Yes HKCU:Run ctfmon.exe C:\WINDOWS\system32\ctfmon.exe
No HKCU:Run NVMCTRAY RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
No HKCU:Run SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Yes HKLM:Run 00PCTFW "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
Yes HKLM:Run Adobe ARM "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
No HKLM:Run AdobeARM "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
Yes HKLM:Run APSDaemon "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
Yes HKLM:Run avast "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
No HKLM:Run dumprep 0 -k %systemroot%\system32\dumprep 0 -k
No HKLM:Run hpztsb05 C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
No HKLM:Run iTunesHelper "C:\Program Files\iTunes\iTunesHelper.exe"
No HKLM:Run jusched "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
Yes HKLM:Run MSConfig C:\Documents and Settings\User.USER-BCBE98E29B\Desktop\msconfig.exe /auto
Yes HKLM:Run NvMediaCenter RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
No HKLM:Run nwiz nwiz.exe /install
No HKLM:Run QTTask "C:\Program Files\QuickTime\QTTask.exe" -atboottime
No HKLM:Run Reader_sl "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
No HKLM:Run wkfud C:\Program Files\Microsoft Works\wkfud.exe
No HKLM:Run WksSb C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
No Startup Common McAfee Security Scan Plus.lnk C:\PROGRA~1\MCAFEE~1\30982A~1.207\SSSCHE~1.EXE
No Startup Common Microsoft Office.lnk C:\PROGRA~1\MICROS~4\Office\OSA9.EXE -b -l
No Startup Common Microsoft Works Calendar Reminders.lnk C:\PROGRA~1\COMMON~1\MICROS~1\WORKSS~1\wkcalrem.exe
No Startup Common Windows Search.lnk C:\PROGRA~1\WI459E~1\WINDOW~1.EXE /startup
No Startup User Clipboard Magic.lnk C:\Program Files\Clipboard Magic\ClipboardMagic.exe


Once you are finished verify that all of the lines listed above are in faint grey.
Close CCleaner.

Reboot your computer and see how it performs.


Step 2.

Are you connected to the internet through a router

If you are we could consider uninstalling your PC Tools firewall and use the Windows Firewall to free up resources and improve performance.

Let me know and we can do an uninstall and clean to insure there are no lingering components of PC Tools to interfere with your computer performance.
  • 0

#74
saltash

saltash

    Member

  • Member
  • PipPip
  • 55 posts
Hi CompCav my PC is a Packard Bell Imedia 5050 I think. But I had the mother board changed a couple of years ago so that may cause a problem.
  • 0

#75
CompCav

CompCav

    GeekU Instructor

  • GeekU Moderator
  • 9,384 posts
Did the stopping of any of those programs on startup help???
  • 0




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

featured