Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Documents Lost - Programs Malfunctioning - Hard Drive Warnings [Closed


  • This topic is locked This topic is locked

#1
Donegal

Donegal

    Member

  • Member
  • PipPip
  • 11 posts
I have an HP NOTEBOOK G60 -- My Internet Provider Fairpoint using their FAIRPOINT Security Suite for AntiVirus Protection. While a Scan was Running, I was also on the Internet -- and while on a free lyrics website which also had a free Audio of the Melody which I hit and/or downloaded. Then -- all of a Sudden My Computer went CRAZY -- I got all these WARNING WINDOWS Poping up saying Problems (I think smoe said CRITICAL Hard Drive Failure and things of that Nature) anyway, some came up so many times that it took forever to close and also all of a sudden some things were missing or looking very different on my Desk top. I then tried to close everything down and then Shut Down. When I turned the Computer Back Ob I somehow chose the "SAFE MODE". Anyway, the short of it is (just of the things "known") is 1) All My Documents, My Music, My Pictures -- were all gone, Although later I noticed somehow that a few of "Recently Changed" were Accesable somehow but not showing. Later (much later) I discoved that by a search of Computer and Checking of "Show hidden files" too that I could find most of them but they are all jumbled and not in all their separate folders. 2) A few times I did "Restore" to Earlier Points but did not put any of the Folders back and Then Fairpoint Security Would not Work and Then Had to download a "Uninstall" Norton which will not Uninstall on its own. 3) Fairpoint Security then got completely messed up -- tried to download anew but it got stuck half way and said old still on, Go to Uninstall Old and it will not allow. 4) The first Technician from Fairpoint tried many things Through Remote Access but same results and now it is Kicked Up to the full Techs to Call back on. 5) Also, Now all these Pop-up Windows (I guess from Firewall) many saying "Company: Microsoft" but all say "Not digitally Signed" and they say something about "Listening for Connection" (so because never had before then I "Blocked all these" and one had "Unknown" even for Company????) Anyway, need to have a working AntiVirus before doing to much on Internet which is Absolutely Necessary for me?

Okay, I do not know a lot of Technical Knowledge here - but, it seems like something cause this "Unindexing" and I thinks Necessary Files for Operation Might be Missing and/or Drives Corrupted (did not want to mention that to Fairpoint because then too quickly "Well then ... NOT Our Problem, Good-bye".
BOY I AM GLAD THIS IS CALLED "GEEKSTOGO" that you might actually READ all this :-)

Alright, ao "2 Notepads" came up from the OTL Log so here they are below (Somebody HEEEEELLLLLLLLPPPPPPPPPP!!!!!)
OTL logfile created on: 9/18/2012 11:03:30 PM - Run 1
OTL by OldTimer - Version 3.2.64.0 Folder = C:\Users\Bernard\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.93 Gb Total Physical Memory | 1.46 Gb Available Physical Memory | 49.75% Memory free
6.08 Gb Paging File | 4.66 Gb Available in Paging File | 76.56% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 287.21 Gb Total Space | 199.85 Gb Free Space | 69.58% Space Free | Partition Type: NTFS
Drive D: | 10.88 Gb Total Space | 1.78 Gb Free Space | 16.36% Space Free | Partition Type: NTFS

Computer Name: MB-PC | User Name: Bernard | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/09/18 23:01:20 | 000,600,064 | ---- | M] (OldTimer Tools) -- C:\Users\Bernard\Desktop\OTL.exe
PRC - [2012/08/14 19:29:36 | 000,686,792 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_11_3_300_271_ActiveX.exe
PRC - [2012/01/24 13:18:36 | 000,167,016 | ---- | M] (FairPoint) -- C:\Program Files\FairPoint\FairPoint Security Suite\RpsSecurityAwareR.exe
PRC - [2012/01/24 13:17:24 | 000,382,280 | ---- | M] (FairPoint) -- C:\Program Files\FairPoint\FairPoint Security Suite\Fws.exe
PRC - [2012/01/18 14:02:04 | 000,508,136 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
PRC - [2009/10/18 18:04:41 | 000,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2009/04/11 02:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/11/12 18:29:54 | 002,286,832 | ---- | M] (FairPoint) -- C:\Program Files\FairPoint\FairPoint Servicepoint Agent\FairPointServicepoint.exe
PRC - [2008/10/06 12:54:52 | 000,365,952 | ---- | M] () -- C:\Program Files\SMINST\BLService.exe
PRC - [2008/01/20 22:23:32 | 001,008,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe


========== Modules (No Company Name) ==========

MOD - [2012/06/14 10:05:36 | 012,433,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\f2691cfa7671cdc58179e56ba9227591\System.Windows.Forms.ni.dll
MOD - [2012/06/14 10:05:24 | 001,592,320 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\18f9789aa214c657113e676b3a9015aa\System.Drawing.ni.dll
MOD - [2012/06/14 10:04:58 | 014,329,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7343fbab1ba137db2f8b284047ef3f3c\PresentationFramework.ni.dll
MOD - [2012/06/14 10:03:34 | 012,219,392 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7b6293b0c23321c255c2530aea8e32bb\PresentationCore.ni.dll
MOD - [2012/05/11 09:44:36 | 000,998,400 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\f3d4d5fe5ab848fbfcf91a49960dc8ae\System.Management.ni.dll
MOD - [2012/05/11 09:42:43 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\846b9cf2756fdd15f704c9bab9c70b6f\System.Runtime.Remoting.ni.dll
MOD - [2012/05/11 09:42:41 | 000,627,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\b6d83a652c94b32fc8f99a6df0acd7f4\System.Transactions.ni.dll
MOD - [2012/05/11 09:42:40 | 000,627,712 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\4b5eaa70d2900b98ccf6fd9915f34d69\System.EnterpriseServices.ni.dll
MOD - [2012/05/11 09:42:40 | 000,280,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\4b5eaa70d2900b98ccf6fd9915f34d69\System.EnterpriseServices.Wrapper.dll
MOD - [2012/05/11 09:42:30 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\bd76aaaa03ddc15d1840207b5a480644\System.Configuration.ni.dll
MOD - [2012/05/11 09:41:03 | 005,450,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d2630342a066a7cb9056d9eb6157687a\System.Xml.ni.dll
MOD - [2012/05/11 09:40:08 | 006,621,696 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\bfdd10e0a0aacf46bac557ffc5d55ba5\System.Data.ni.dll
MOD - [2012/05/11 09:39:55 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\c8c3ab08933fef9fb6657da871395c46\PresentationFramework.Aero.ni.dll
MOD - [2012/05/11 09:39:22 | 003,325,952 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\54426ee1881b42af5b090e223f43823c\WindowsBase.ni.dll
MOD - [2012/05/11 09:39:18 | 007,953,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\28d633338fc8d29f8af31935ef7d001b\System.ni.dll
MOD - [2012/05/11 09:39:09 | 011,492,352 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\af9c9e9d7e0523cd444f8b551baa9cbf\mscorlib.ni.dll
MOD - [2011/10/05 04:52:30 | 000,756,048 | ---- | M] () -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSPTLS.DLL
MOD - [2009/04/11 02:28:21 | 000,368,640 | ---- | M] () -- C:\Windows\System32\msjetoledb40.dll
MOD - [2009/04/10 22:04:15 | 000,113,664 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
MOD - [2009/03/30 00:42:19 | 000,261,632 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
MOD - [2009/03/30 00:42:17 | 002,933,760 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2008/09/30 19:56:06 | 000,032,768 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Content.XmlSerializers.dll
MOD - [2008/09/30 19:52:02 | 000,007,168 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\RemotingClient.dll
MOD - [2008/09/30 19:52:00 | 000,057,344 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Pillars\PCAlerts\PCAlertsPillar.dll
MOD - [2008/09/30 19:51:52 | 000,118,784 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\ECLibrary.dll
MOD - [2008/09/30 19:51:52 | 000,010,240 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingClients.dll
MOD - [2008/09/30 19:51:36 | 000,040,960 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingServer.dll
MOD - [2008/09/30 19:51:36 | 000,028,672 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingMessages.dll
MOD - [2008/09/30 19:51:36 | 000,005,632 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingInterface.dll
MOD - [2008/09/23 21:21:22 | 000,066,856 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\common\MCEMediaStatus.dll
MOD - [2007/08/14 17:59:54 | 006,365,184 | ---- | M] () -- C:\Program Files\Common Files\LightScribe\QtGui4.dll
MOD - [2007/07/12 17:55:52 | 000,131,072 | ---- | M] () -- C:\Program Files\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
MOD - [2007/07/12 17:55:28 | 001,581,056 | ---- | M] () -- C:\Program Files\Common Files\LightScribe\QtCore4.dll


========== Services (SafeList) ==========

SRV - [2012/08/14 19:29:38 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/01/24 13:18:36 | 000,167,016 | ---- | M] (FairPoint) [Auto | Running] -- C:\Program Files\FairPoint\FairPoint Security Suite\RpsSecurityAwareR.exe -- (Radialpoint Security Services)
SRV - [2012/01/24 13:17:24 | 000,382,280 | ---- | M] (FairPoint) [Auto | Running] -- C:\Program Files\FairPoint\FairPoint Security Suite\Fws.exe -- (RP_FWS)
SRV - [2010/07/20 13:23:18 | 000,315,392 | ---- | M] (S.C. BitDefender S.R.L) [On_Demand | Stopped] -- C:\Program Files\FairPoint\FairPoint Security Suite\BitDefender\scan.dll -- (scan)
SRV - [2009/11/02 16:26:48 | 005,832,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\FairPoint\FairPoint Security Suite\AVG\Identity Protection\agent\Bin\AVGIDSAgent.exe -- (RadialpointIDSAgent)
SRV - [2009/06/08 13:07:50 | 001,033,480 | ---- | M] (Raxco Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe -- (PDEngine)
SRV - [2009/06/08 13:07:48 | 000,931,080 | ---- | M] (Raxco Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe -- (PDAgent)
SRV - [2008/10/06 12:54:52 | 000,365,952 | ---- | M] () [Auto | Running] -- C:\Program Files\SMINST\BLService.exe -- (Recovery Service for Windows)
SRV - [2008/01/20 22:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)


========== Driver Services (SafeList) ==========

DRV - File not found [File_System | System | Stopped] -- -- (StarOpen)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - [2012/03/05 13:39:15 | 000,053,192 | ---- | M] (Radialpoint Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rp_skt32.sys -- (RPSKT)
DRV - [2009/11/26 10:50:32 | 000,039,808 | ---- | M] (BitDefender S.R.L.) [Kernel | On_Demand | Running] -- C:\Program Files\FairPoint\FairPoint Security Suite\BitDefender\trufos.sys -- (Trufos)
DRV - [2009/11/26 10:50:32 | 000,014,720 | ---- | M] (BitDefender S.R.L.) [Kernel | On_Demand | Running] -- C:\Program Files\FairPoint\FairPoint Security Suite\BitDefender\profos.sys -- (Profos)
DRV - [2009/11/02 16:27:00 | 000,122,376 | ---- | M] (AVG Technologies ) [Kernel | On_Demand | Running] -- C:\Program Files\FairPoint\FairPoint Security Suite\AVG\Identity Protection\agent\drivers\AVGIDSDriver.sys -- (RadialpointIDSDriver)
DRV - [2009/11/02 16:27:00 | 000,030,216 | ---- | M] (AVG Technologies ) [Kernel | On_Demand | Running] -- C:\Program Files\FairPoint\FairPoint Security Suite\AVG\Identity Protection\agent\drivers\AVGIDSfilter.sys -- (RadialpointIDSFilter)
DRV - [2009/11/02 16:27:00 | 000,027,800 | ---- | M] (AVG Technologies ) [Kernel | On_Demand | Running] -- C:\Program Files\FairPoint\FairPoint Security Suite\AVG\Identity Protection\agent\drivers\AVGIDSShim.sys -- (RadialpointIDSShim)
DRV - [2009/11/02 16:27:00 | 000,025,608 | ---- | M] (AVG Technologies ) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\AVGIDSEH.sys -- (RadialpointIDSEH)
DRV - [2009/10/23 14:25:54 | 000,285,704 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) [File_System | Boot | Running] -- C:\Windows\System32\drivers\bdfsfltr.sys -- (bdfsfltr)
DRV - [2009/06/08 11:00:56 | 000,071,696 | ---- | M] (Raxco Software, Inc.) [File_System | Auto | Running] -- C:\Windows\System32\drivers\DefragFs.sys -- (DefragFS)
DRV - [2009/05/19 15:52:20 | 001,166,848 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2008/06/29 10:52:26 | 000,112,128 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\IntcHdmi.sys -- (IntcHdmiAddService)
DRV - [2008/06/10 14:54:36 | 000,123,904 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2008/06/05 12:58:42 | 000,222,208 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService)
DRV - [2008/01/20 22:23:20 | 002,225,664 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32)
DRV - [2007/10/17 19:36:54 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2007/06/18 20:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.h...avilion&pf=cnnb
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.h...avilion&pf=cnnb
IE - HKLM\..\SearchScopes,DefaultScope = {6A28AFCB-D7B6-4628-8EA2-D66964A22F01}
IE - HKLM\..\SearchScopes\{6A28AFCB-D7B6-4628-8EA2-D66964A22F01}: "URL" = http://search.live.c...ms}&FORM=HPNTDF
IE - HKLM\..\SearchScopes\{8214ADD5-AD05-4B67-BD93-C3BB6003BCCF}: "URL" = http://www.ask.com/w...}&l=dis&o=uscql

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.h...avilion&pf=cnnb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.myfairpoi...rtal/index.aspx
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\SearchScopes,DefaultScope = {6A28AFCB-D7B6-4628-8EA2-D66964A22F01}
IE - HKCU\..\SearchScopes\{6A28AFCB-D7B6-4628-8EA2-D66964A22F01}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\..\SearchScopes\{8214ADD5-AD05-4B67-BD93-C3BB6003BCCF}: "URL" = http://www.ask.com/w...}&l=dis&o=uscql
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.myfairpoi...tal/index.aspx"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}:6.0.31
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.449: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.448: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/06/01 22:23:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/09/17 03:43:59 | 000,000,000 | ---D | M]

[2010/06/01 22:23:57 | 000,000,000 | -H-D | M] (No name found) -- C:\Users\Bernard\AppData\Roaming\mozilla\Extensions
[2012/09/18 20:43:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bernard\AppData\Roaming\mozilla\Firefox\Profiles\nzdhfw2r.default\extensions
[2012/09/18 18:50:59 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Bernard\AppData\Roaming\mozilla\Firefox\Profiles\nzdhfw2r.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2012/03/20 22:49:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012/03/20 22:49:23 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
[2012/03/20 22:48:47 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll

O1 HOSTS File: ([2006/09/18 17:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll (Microsoft Corp.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [FairPointServicepoint.exe] C:\Program Files\FairPoint\FairPoint Servicepoint Agent\FairPointServicepoint.exe (FairPoint)
O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePDIRShortCut] C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePSTShortCut] C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Ranges: Range1 ([http] in Local intranet)
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.micros...n/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D292F473-5F90-47C7-9CC5-633DE56DF853}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D292F473-5F90-47C7-9CC5-633DE56DF853}: NameServer = 64.222.165.243,64.222.84.243
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\Skyline.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\Skyline.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (PDBoot.exe)
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2012/09/18 23:01:20 | 000,600,064 | ---- | C] (OldTimer Tools) -- C:\Users\Bernard\Desktop\OTL.exe
[2012/09/18 22:56:23 | 000,000,000 | ---D | C] -- C:\Users\Bernard\Documents\BERNIE
[2012/09/18 19:44:24 | 000,000,000 | ---D | C] -- C:\ProgramData\SimpleHelp
[2012/09/18 10:50:31 | 000,000,000 | ---D | C] -- C:\Users\Bernard\AppData\Roaming\SoftwareDetectionScripts
[2012/09/17 12:54:16 | 000,000,000 | ---D | C] -- C:\ProgramData\WindowsSearch
[2012/09/17 03:03:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Radialpoint

========== Files - Modified Within 30 Days ==========

[2012/09/18 23:01:20 | 000,600,064 | ---- | M] (OldTimer Tools) -- C:\Users\Bernard\Desktop\OTL.exe
[2012/09/18 22:45:29 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/09/18 22:45:29 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/09/18 22:29:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/09/18 21:55:03 | 000,000,330 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForBernard.job
[2012/09/18 20:45:50 | 000,000,284 | ---- | M] () -- C:\ProgramData\hpqp.ini
[2012/09/18 20:45:41 | 000,000,626 | ---- | M] () -- C:\ProgramData\SharedProperties.xml
[2012/09/18 20:45:27 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/09/18 20:45:24 | 3149,078,528 | -HS- | M] () -- C:\hiberfil.sys
[2012/09/18 20:44:13 | 000,000,518 | ---- | M] () -- C:\Users\Bernard\AppData\Roaming\EventStore.xml
[2012/09/18 20:44:13 | 000,000,475 | ---- | M] () -- C:\Users\Bernard\AppData\Roaming\CampaignStore.xml
[2012/09/18 20:44:13 | 000,000,471 | ---- | M] () -- C:\Users\Bernard\AppData\Roaming\UpdateStore.xml
[2012/09/18 20:44:13 | 000,000,376 | ---- | M] () -- C:\Users\Bernard\AppData\Roaming\SoftwarePackageStore.xml
[2012/09/18 20:44:13 | 000,000,376 | ---- | M] () -- C:\Users\Bernard\AppData\Roaming\ConfigurationStore.xml
[2012/09/18 20:31:24 | 000,604,502 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/09/18 20:31:24 | 000,104,170 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/09/18 20:19:44 | 000,866,592 | ---- | M] () -- C:\Users\Bernard\Desktop\Norton_Removal_Tool.exe
[2012/09/16 22:56:29 | 000,000,368 | -H-- | M] () -- C:\ProgramData\rxlRTnKiteeny9
[2012/09/05 23:24:01 | 000,002,684 | -H-- | M] () -- C:\Users\Bernard\Documents\ThePinesNewmarket-9-24-12.pdf
[2012/09/05 23:18:56 | 000,002,684 | -H-- | M] () -- C:\Users\Bernard\Documents\ThePinesNewmarket9-24-12.pdf

========== Files Created - No Company Name ==========

[2012/09/18 20:19:44 | 000,866,592 | ---- | C] () -- C:\Users\Bernard\Desktop\Norton_Removal_Tool.exe
[2012/09/18 10:52:53 | 000,000,518 | ---- | C] () -- C:\Users\Bernard\AppData\Roaming\EventStore.xml
[2012/09/18 10:52:53 | 000,000,475 | ---- | C] () -- C:\Users\Bernard\AppData\Roaming\CampaignStore.xml
[2012/09/18 10:52:53 | 000,000,471 | ---- | C] () -- C:\Users\Bernard\AppData\Roaming\UpdateStore.xml
[2012/09/18 10:49:31 | 000,000,626 | ---- | C] () -- C:\ProgramData\SharedProperties.xml
[2012/09/18 10:48:54 | 000,000,376 | ---- | C] () -- C:\Users\Bernard\AppData\Roaming\SoftwarePackageStore.xml
[2012/09/18 10:48:54 | 000,000,376 | ---- | C] () -- C:\Users\Bernard\AppData\Roaming\ConfigurationStore.xml
[2012/09/17 21:39:55 | 000,048,077 | -H-- | C] () -- C:\Users\Bernard\Documents\Maggie1[1].pdf
[2012/09/17 12:49:35 | 000,002,684 | -H-- | C] () -- C:\Users\Bernard\Documents\ThePinesNewmarket-9-24-12.pdf
[2012/09/17 12:49:35 | 000,002,684 | -H-- | C] () -- C:\Users\Bernard\Documents\ThePinesNewmarket9-24-12.pdf
[2012/09/17 02:53:50 | 3149,078,528 | -HS- | C] () -- C:\hiberfil.sys
[2012/09/16 22:56:26 | 000,000,368 | -H-- | C] () -- C:\ProgramData\rxlRTnKiteeny9
[2012/09/05 23:02:48 | 000,026,624 | -H-- | C] () -- C:\Users\Bernard\Desktop\01047889.dot
[2012/09/05 23:00:17 | 000,026,624 | -H-- | C] () -- C:\Users\Bernard\01047889.dot
[2012/09/05 22:57:36 | 000,021,504 | -H-- | C] () -- C:\Users\Bernard\10100130.XLT
[2011/02/18 02:00:28 | 000,000,016 | ---- | C] () -- C:\Windows\aebconfig.ini
[2009/12/21 11:46:54 | 000,004,608 | ---- | C] () -- C:\Users\Bernard\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/03/20 19:21:25 | 000,000,680 | -H-- | C] () -- C:\Users\Bernard\AppData\Local\d3d9caps.dat
[2009/03/05 21:00:57 | 000,000,474 | -H-- | C] () -- C:\Users\Bernard\AppData\Roaming\wklnhst.dat
[2009/02/13 14:31:28 | 000,000,284 | ---- | C] () -- C:\ProgramData\hpqp.ini

========== ZeroAccess Check ==========

[2006/11/02 08:54:22 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

< End of report >

OTL Extras logfile created on: 9/18/2012 11:03:30 PM - Run 1
OTL by OldTimer - Version 3.2.64.0 Folder = C:\Users\Bernard\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.93 Gb Total Physical Memory | 1.46 Gb Available Physical Memory | 49.75% Memory free
6.08 Gb Paging File | 4.66 Gb Available in Paging File | 76.56% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 287.21 Gb Total Space | 199.85 Gb Free Space | 69.58% Space Free | Partition Type: NTFS
Drive D: | 10.88 Gb Total Space | 1.78 Gb Free Space | 16.36% Space Free | Partition Type: NTFS

Computer Name: MB-PC | User Name: Bernard | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{07A4B5B9-8DC8-4979-A681-4135B0E23FFC}" = dir=in | app=c:\program files\hp\quickplay\qpservice.exe |
"{11BED684-7035-48FB-9FE9-39E7BB9E4873}" = dir=in | app=c:\program files\hp\quickplay\qp.exe |
"{3053D97C-241E-4AC5-9170-CB3FF8399023}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe |
"{6488101D-70EA-4629-8042-C5282E5D84F6}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{83766235-776A-44E7-A9D3-8B63EA8C4A18}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0054A0F6-00C9-4498-B821-B5C9578F433E}" = HP Help and Support
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{082702D5-5DD8-4600-BCE5-48B15174687F}" = HP Doc Viewer
"{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1
"{13A5E785-5197-4EAD-8EE3-D660271E49BC}" = Feedback Tool
"{154A4184-1A3D-4BF9-A5AE-4FA1660445F3}" = HP Total Care Advisor
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"{228C6B46-64E2-404E-898A-EF0830603EF4}" = HPNetworkAssistant
"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
"{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java™ 6 Update 31
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 H2
"{352310C3-E46B-42D3-8F32-54721FDD72D9}" = NetZero Preloader
"{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Vista
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{415B2719-AD3A-4944-B404-C472DB6085B3}" = Cisco EAP-FAST Module
"{45D707E9-F3C4-11D9-A373-0050BAE317E1}" = HP DVD Play 3.7
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{57A5AEC1-97FC-474D-92C4-908FCC2253D4}" = HP Customer Experience Enhancements
"{6423EF83-6E1D-4D22-A36F-689CD19FD4D2}" = Juno Preloader
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}" = Cisco PEAP Module
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
"{6882A0A0-6236-499F-B15B-A2481B8B0437}" = RPS CRT
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7B738CD9-D107-48C7-8E65-2E6639A39C8D}" = PerfectDisk 10 Professional
"{83770D14-21B9-44B3-8689-F7B523F94560}" = Cisco LEAP Module
"{846DDADA-0239-4B67-A6B1-33658863793B}" = HPTCSSetup
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{96384578-C6A2-4EC6-92CD-B62A60713040}" = Microsoft Live Search Toolbar
"{9808CFA2-A336-4AEA-8DF1-D6D6E5C5D24D}" = FairPoint Security Suite
"{9ADABDDE-9644-461B-9E73-83FA3EFCAB50}" = HP Wireless Assistant
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{AC76BA86-7AD7-1033-7B44-A94000000001}" = Adobe Reader 9.4.5
"{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}" = Adobe Shockwave Player
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B6D0B141-B2BE-4DD0-B08F-B9186F3E36B3}" = HP User Guides 0118
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CC18EAF6-FDA4-4748-ADF5-64B6AA64F15B}" = RPS RpsCore
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}" = HP Active Support Library
"{D9CBB222-4DE4-4D52-A908-5F3515614266}" = RPS PerfectDiskStub
"{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader
"{DD35C328-F115-BEDA-6EEE-E00C5AACCCBC}" = muvee Reveal
"{E7C97E98-4C2D-BEAF-5D2F-CC45A2F95D90}" = Acrobat.com
"{ECEE0279-785F-4CB3-9F28-E69813234BF8}" = SPORE Creature Creator Trial Edition
"{FD5DFE3C-4C94-41E6-81E5-820E7595B3E6}" = RPS CRT
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"CNXT_AUDIO_HDA" = Conexant HD Audio
"CNXT_MODEM_HDAUDIO_HERMOSA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"HDMI" = Intel® Graphics Media Accelerator Driver
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"RadialpointClientGateway_is1" = FairPoint Servicepoint Agent 1.5.23
"RealPlayer 12.0" = RealPlayer
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WildTangent hp Master Uninstall" = My HP Games

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 5/4/2011 9:36:59 AM | Computer Name = MB-PC | Source = WinMgmt | ID = 10
Description =

Error - 5/4/2011 11:32:37 AM | Computer Name = MB-PC | Source = EventSystem | ID = 4621
Description =

Error - 5/4/2011 8:04:10 PM | Computer Name = MB-PC | Source = WinMgmt | ID = 10
Description =

Error - 5/4/2011 8:18:05 PM | Computer Name = MB-PC | Source = WinMgmt | ID = 10
Description =

Error - 5/4/2011 8:33:58 PM | Computer Name = MB-PC | Source = WinMgmt | ID = 10
Description =

Error - 5/5/2011 10:20:43 PM | Computer Name = MB-PC | Source = WinMgmt | ID = 10
Description =

Error - 5/6/2011 12:23:09 AM | Computer Name = MB-PC | Source = EventSystem | ID = 4621
Description =

Error - 5/6/2011 12:25:02 AM | Computer Name = MB-PC | Source = WinMgmt | ID = 10
Description =

Error - 5/6/2011 12:31:37 AM | Computer Name = MB-PC | Source = EventSystem | ID = 4621
Description =

Error - 5/6/2011 10:31:54 PM | Computer Name = MB-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 9/18/2012 7:44:31 PM | Computer Name = MB-PC | Source = Service Control Manager | ID = 7030
Description =

Error - 9/18/2012 8:20:54 PM | Computer Name = MB-PC | Source = Service Control Manager | ID = 7031
Description =

Error - 9/18/2012 8:25:06 PM | Computer Name = MB-PC | Source = HTTP | ID = 15005
Description =

Error - 9/18/2012 8:25:44 PM | Computer Name = MB-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 9/18/2012 8:25:44 PM | Computer Name = MB-PC | Source = Service Control Manager | ID = 7023
Description =

Error - 9/18/2012 8:25:44 PM | Computer Name = MB-PC | Source = Service Control Manager | ID = 7026
Description =

Error - 9/18/2012 8:37:17 PM | Computer Name = MB-PC | Source = netbt | ID = 4307
Description = Initialization failed because the transport refused to open initial
addresses.

Error - 9/18/2012 8:37:17 PM | Computer Name = MB-PC | Source = netbt | ID = 4307
Description = Initialization failed because the transport refused to open initial
addresses.

Error - 9/18/2012 8:45:51 PM | Computer Name = MB-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 9/18/2012 8:45:51 PM | Computer Name = MB-PC | Source = Service Control Manager | ID = 7026
Description =


< End of report >
  • 0

Advertisements


#2
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,990 posts
Hello Donegal,

Welcome to Geekstogo.

Download Farbar Recovery Scan Tool and save it to a flash drive.

Plug the flashdrive into the infected PC.

Enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select English as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.

To enter System Recovery Options by using Windows installation disc:
  • Insert the installation disc.
  • Restart your computer.
  • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
  • Click Repair your computer.
  • Choose your language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.
On the System Recovery Options menu you will get the following options:

Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt

[*]Select Command Prompt
[*]In the command window type in notepad and press Enter.
[*]The notepad opens. Under File menu select Open.
[*]Select "Computer" and find your flash drive letter and close the notepad.
[*]In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
Note: Replace letter e with the drive letter of your flash drive.
[*]The tool will start to run.
[*]When the tool opens click Yes to disclaimer.
[*]Press Scan button.
[*]It will create a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.
[/list]
  • 0

#3
Donegal

Donegal

    Member

  • Topic Starter
  • Member
  • PipPip
  • 11 posts
Many Thanks Emeraldnzl:

I am so fully tied up the next few days so ... don't forget me, please, and just quickly for additional info -- 1) a "higher up techie" from Fairpoint did 2 hours of Remote Cleanup and then finally got the Fairpoint Security Reinstalled 2) As mentioned below some of my files I found "hidden" on the computer and started to "unhide" and send back to "Documents" and put in "Folders" (what a duplicate of past energies and time this is) 3) I do not know if any other Hard Drive Problems are there but with quick use all seems to be working (again, very tied up for a few days), and 4) Not sure if this is actual "Cause" of the original problem (but it perhaps could be)I have a "clicker" on the built-in mouse pad on Notebook (the Left Clicker) that is "sticking" -- and even today, after Techie fixed some things, when opening a Document, it must have stuck and suddenly opened like 4 Documents, very similar, when problem arose, if the cursor was arrowed at just the "wrong" spot - it happened similar and it was like 50 things tried to open at once and then (if this is possible) it seemed like this was too much and maybe wanted to crash Hard Drive or at least cause the problems I suffered - Is this possible????
5) I want to ask what is the least expensive, and easiest way for a "non-Techie" to backup, not only Documents, Music, Photos, etc -- but is there an easy way to back up all Programs and perhaps Operation System to, say, Flash Drives - and then, if a Major Problem just Reload, (by the way, when they sold me the Notebook at Best Buy 3 years ago -- they said they don't give out the "Start Up Disks" anymore -- so not sure how one can "reload these"

Many, many Thanks for your help and I will be back in a few days. Thanks Emeraldnzl
  • 0

#4
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,990 posts

I am so fully tied up the next few days so ... don't forget me, please


No I won't forget you... I will leave this topic open for at least 5 days and even after that you can ask for it to be re-opened. :)

Not sure if this is actual "Cause" of the original problem


There may be a hardware problem or some sort of software conflict but you description of how it first appeared suggests malware. The tool I asked you to run allows diagnostics and fixes where a machine cannot be booted up properly... you mentioned you were only able to boot into Safe Mode. If your computer does have one of the modern malware infections it is likely to still be on your machine. Some of the latest rootkit ones are not even removed on reformat.

Let's see what happens over the next few days and when you come back explain again where your machine is at and we can go from there.

they said they don't give out the "Start Up Disks" anymore -- so not sure how one can "reload these"


First off, let's see where you are when you come back. We may not need to go down the route I outlined above and might get away without a Recovery Disk. In fact you may find your computer has a hidden partition containing Recovery Tools that you can boot into anyway when you follow the steps outlined in my last post. It is useful to have a Recovery Disk though.

The link below takes you to a page with instructions on how to create a Recovery Disk for Vista

http://www.vistax64....overy-disc.html

I want to ask what is the least expensive, and easiest way for a "non-Techie" to backup, not only Documents, Music, Photos, etc -- but is there an easy way to back up all Programs and perhaps Operation System


Some thoughts on backing up your data/system.

There are various ways to backup your data; here are two links (the BC one also contains links for complete hard drive backup) that describe some ways to do this:

wikipedia Backup

how to backup tutorial using Corbian

For just your browser:

I use Firefox but my guess is that it is something similar in other browsers.

For Firefox go to History > Show all History > Import and Backup > Export HTML and click the Save button to save a backup copy of your bookmarks to your desktop or where you want it to be saved to. This can then be saved to whatever backup media you are using.

To reinstall just reverse the proces but this time use Import HTML a Wizard will pop up. Ensure the from an HTML file is checked. Then navigate to where you have the saved backup and reinstall.

This link on how to reformat by essexboy contains helpful information on how to backup your e-mail if you are using Outlook.

Go here for information on how to reformat and reinstall your Windows.

I don't back up my whole system... just use my Repair Disk if there is a problem and my Installation Disk if I want to reformat and reinstall. I have an external hard drive which I copy my documents, photos etc. etc. to on a regular basis. Some people prefer to backup to disk.

Other people use proprietory programs like Acronis or Norton Ghost. There are many out there.
  • 0

#5
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 19,990 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP