Thanks
OTL logfile created on: 5/13/2013 08:40:30 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Lori\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
990.48 Mb Total Physical Memory | 376.01 Mb Available Physical Memory | 37.96% Memory free
2.33 Gb Paging File | 1.29 Gb Available in Paging File | 55.32% Paging File free
Paging file location(s): C:\pagefile.sys 1488 2976 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WIN | %ProgramFiles% = C:\Program Files
Drive C: | 232.88 Gb Total Space | 103.55 Gb Free Space | 44.46% Space Free | Partition Type: NTFS
Drive I: | 3.73 Gb Total Space | 3.67 Gb Free Space | 98.36% Space Free | Partition Type: FAT32
Computer Name: DWAYNE-2DE6E15F | User Name: Lori | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013/05/13 08:39:28 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Lori\My Documents\Downloads\OTL.exe
PRC - [2013/04/09 02:57:09 | 001,312,720 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2013/04/04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/10/19 14:51:08 | 000,395,200 | ---- | M] (Eastman Kodak Company) -- C:\Program Files\Kodak\AiO\Center\EKAiOHostService.exe
PRC - [2012/10/15 11:58:24 | 002,844,608 | ---- | M] (Eastman Kodak Company) -- C:\Program Files\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe
PRC - [2012/10/15 11:58:22 | 000,779,200 | ---- | M] (Eastman Kodak Company) -- C:\Program Files\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe
PRC - [2012/05/15 04:18:00 | 001,262,400 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2012/02/02 15:09:20 | 000,035,840 | ---- | M] (Datacastle) -- C:\Program Files\Super Easy Backup\Endpoint\DCProtectService.exe
PRC - [2011/06/21 19:58:36 | 008,155,648 | ---- | M] () -- C:\Program Files\MySQL\MySQL Server 5.5\bin\mysqld.exe
PRC - [2011/01/12 16:41:42 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
PRC - [2011/01/12 16:41:24 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
PRC - [2010/07/28 17:34:02 | 000,569,752 | ---- | M] (Affinegy, Inc.) -- C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe
PRC - [2010/07/28 17:33:58 | 006,995,864 | ---- | M] (Affinegy, Inc.) -- C:\Program Files\Belkin\Router Setup and Monitor\BelkinSetup.exe
PRC - [2010/07/28 17:33:58 | 001,485,208 | ---- | M] (Affinegy, Inc.) -- C:\Program Files\Belkin\Router Setup and Monitor\BelkinRouterMonitor.exe
PRC - [2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WIN\explorer.exe
========== Modules (No Company Name) ==========
MOD - [2013/04/09 02:57:07 | 000,390,096 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\ppgooglenaclpluginchrome.dll
MOD - [2013/04/09 02:57:06 | 013,130,704 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\PepperFlash\pepflashplayer.dll
MOD - [2013/04/09 02:57:05 | 004,050,896 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\pdf.dll
MOD - [2013/04/09 02:56:13 | 001,606,096 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\ffmpegsumo.dll
MOD - [2013/03/03 11:38:15 | 000,298,496 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.Automation\8b01c45039261ef4150bb6b270d1c74f\Inkjet.Automation.ni.dll
MOD - [2013/03/03 11:38:12 | 000,095,744 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.DeviceSettin#\d4eee885eacc8998377fbdd51c5609a0\Inkjet.DeviceSettings.ni.dll
MOD - [2013/03/03 11:38:11 | 000,236,544 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.Localization\25656dffe9a855c247bb288f2d204d9f\Inkjet.Localization.ni.dll
MOD - [2013/03/03 11:38:05 | 000,762,368 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\569d22d5591f3d2d35bc64437011e919\System.Runtime.Remoting.ni.dll
MOD - [2013/03/03 11:37:53 | 000,302,592 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.Utilities\b7b3b0789757a620eda5338bef36c381\Inkjet.Utilities.ni.dll
MOD - [2013/03/03 11:37:52 | 000,890,880 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.Hardware\463e4575df85e896c197618b4c073def\Inkjet.Hardware.ni.dll
MOD - [2013/03/03 11:37:52 | 000,161,792 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Interop.EKAiO2SDKLib\9fe9ee3a09926aa88b59f266ddcc192f\Interop.EKAiO2SDKLib.ni.dll
MOD - [2013/03/03 11:37:51 | 000,179,712 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.Statistics\83d36c5c44a800ec1880ea8a9b7bd7db\Inkjet.Statistics.ni.dll
MOD - [2013/03/03 11:37:49 | 000,078,848 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.Configuration\f2554db13b4f250f3e005f6a1b0b9d06\Inkjet.Configuration.ni.dll
MOD - [2013/03/03 11:37:48 | 000,107,008 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\Inkjet.Diagnostics\decf9d95c3df2ef822e0c48d1efba8c8\Inkjet.Diagnostics.ni.dll
MOD - [2013/03/03 10:35:04 | 013,198,336 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\de3e6b59e3949f8086973d53518a9ecb\System.Windows.Forms.ni.dll
MOD - [2013/03/03 10:34:44 | 005,618,176 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\System.Xml\3d6d9da56c9f607615b55d6742d8427d\System.Xml.ni.dll
MOD - [2013/03/03 10:34:39 | 000,980,480 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\System.Configuration\197761bb3230bf9d4f540305dcf6717c\System.Configuration.ni.dll
MOD - [2013/03/03 10:34:31 | 001,667,584 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\System.Drawing\8ba0620535aa28d509b9397500b7d530\System.Drawing.ni.dll
MOD - [2013/03/03 10:33:26 | 009,093,120 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\System\c182d7a0bd88caf2cddccb7491a5fa6e\System.ni.dll
MOD - [2013/03/03 10:33:13 | 014,412,800 | ---- | M] () -- C:\WIN\assembly\NativeImages_v4.0.30319_32\mscorlib\3f95a6d480ed1ebe45cf27b770ba94ed\mscorlib.ni.dll
MOD - [2012/02/20 21:29:04 | 000,087,912 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012/02/20 21:28:42 | 001,242,472 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/06/21 19:58:36 | 008,155,648 | ---- | M] () -- C:\Program Files\MySQL\MySQL Server 5.5\bin\mysqld.exe
MOD - [2010/07/28 17:34:04 | 000,022,424 | ---- | M] () -- C:\Program Files\Belkin\Router Setup and Monitor\BelkinServicePS.dll
MOD - [2010/07/28 17:02:58 | 000,658,432 | ---- | M] () -- C:\Program Files\Belkin\Router Setup and Monitor\gateways\GenericBelkinGatewayLOC.dll
MOD - [2010/06/23 18:12:28 | 007,187,456 | ---- | M] () -- C:\Program Files\Belkin\Router Setup and Monitor\QtGui4.dll
MOD - [2010/06/23 18:11:52 | 000,325,632 | ---- | M] () -- C:\Program Files\Belkin\Router Setup and Monitor\QtXml4.dll
MOD - [2010/06/23 18:11:48 | 001,954,304 | ---- | M] () -- C:\Program Files\Belkin\Router Setup and Monitor\QtCore4.dll
MOD - [2010/06/23 18:11:48 | 000,847,360 | ---- | M] () -- C:\Program Files\Belkin\Router Setup and Monitor\QtNetwork4.dll
MOD - [2010/06/23 17:38:18 | 000,119,808 | ---- | M] () -- C:\Program Files\Belkin\Router Setup and Monitor\imageformats\qjpeg4.dll
MOD - [2008/04/14 05:42:00 | 000,014,336 | ---- | M] () -- C:\WIN\system32\msdmo.dll
MOD - [2008/04/14 05:41:52 | 000,059,904 | ---- | M] () -- C:\WIN\system32\devenum.dll
========== Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013/03/06 02:21:52 | 000,039,056 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2012/10/19 14:51:08 | 000,395,200 | ---- | M] (Eastman Kodak Company) [Auto | Running] -- C:\Program Files\Kodak\AiO\Center\EKAiOHostService.exe -- (Kodak AiO Network Discovery Service)
SRV - [2012/10/15 11:58:22 | 000,779,200 | ---- | M] (Eastman Kodak Company) [Auto | Running] -- C:\Program Files\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe -- (Kodak AiO Status Monitor Service)
SRV - [2012/09/02 19:00:30 | 000,250,568 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WIN\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/05/15 04:18:00 | 001,262,400 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012/02/02 15:09:20 | 000,035,840 | ---- | M] (Datacastle) [Auto | Running] -- C:\Program Files\Super Easy Backup\Endpoint\DCProtectService.exe -- (DCProtectService)
SRV - [2011/06/21 19:58:36 | 008,155,648 | ---- | M] () [Auto | Running] -- C:\Program Files\MySQL\MySQL Server 5.5\bin\mysqld.exe -- (MySQL)
SRV - [2011/01/12 16:44:02 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv)
SRV - [2011/01/12 16:41:42 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - [2010/07/28 17:34:02 | 000,569,752 | ---- | M] (Affinegy, Inc.) [Auto | Running] -- C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe -- (AffinegyService)
========== Driver Services (SafeList) ==========
DRV - [2013/04/05 14:09:12 | 000,013,024 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WIN\system32\drivers\SWDUMon.sys -- (SWDUMon)
DRV - [2013/04/04 14:50:32 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WIN\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012/06/29 15:22:52 | 000,021,520 | ---- | M] (Trusteer Ltd.) [Kernel | On_Demand | Stopped] -- c:\Documents and Settings\All Users.WIN\Application Data\Trusteer\Rapport\store\exts\RapportMS\baseline\RapportIaso.sys -- (RapportIaso)
DRV - [2010/12/21 15:04:06 | 000,141,264 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WIN\system32\drivers\eamon.sys -- (eamon)
DRV - [2010/12/21 15:04:06 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WIN\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2010/12/21 13:47:38 | 000,094,872 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WIN\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2010/06/23 18:12:50 | 000,027,072 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WIN\system32\drivers\AFGSp50.sys -- (AFGSp50)
DRV - [2009/03/29 09:32:12 | 000,145,920 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WIN\system32\drivers\HdAudio.sys -- (HdAudAddService)
DRV - [2008/08/01 11:36:26 | 000,022,016 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WIN\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2008/08/01 11:36:20 | 000,054,784 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WIN\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2008/04/13 18:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WIN\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2007/04/16 21:46:00 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WIN\system32\drivers\AmdPPM.sys -- (AmdPPM)
DRV - [2004/08/13 11:56:00 | 000,005,810 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WIN\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2001/08/17 08:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WIN\system32\drivers\msmpu401.sys -- (ms_mpu401)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {09823E70-188B-4D1D-B168-F054F050AF96}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.c...ferrer:source?}
IE - HKLM\..\SearchScopes\{09823E70-188B-4D1D-B168-F054F050AF96}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://xfinity.comcast.net
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 6A 58 19 24 05 45 CD 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\..\SearchScopes,DefaultScope = {09823E70-188B-4D1D-B168-F054F050AF96}
IE - HKCU\..\SearchScopes\{09823E70-188B-4D1D-B168-F054F050AF96}: "URL" = http://www.google.co...GGHP_en-GBUS487
IE - HKCU\..\SearchScopes\{112AD12A-6E26-4F0C-881D-1E0D650CC623}: "URL" = http://websearch.ask...59-5E69D05DDCF7
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WIN\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WIN\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_32: C:\WIN\system32\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WIN\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@MyFunCards_5m.com/Plugin: C:\Program Files\MyFunCards_5m\bar\1.bin\NP5mStub.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.1: C:\Documents and Settings\All Users.WIN\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.1: C:\Documents and Settings\All Users.WIN\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.1: C:\Documents and Settings\All Users.WIN\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\Documents and Settings\All Users.WIN\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\5mffxtbr@MyFunCards_5m.com: C:\Program Files\MyFunCards_5m\bar\1.bin
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{DAC3F861-B30D-40dd-9166-F4E75327FAC7}: C:\Documents and Settings\All Users.WIN\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2013/04/03 09:42:48 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2012/06/08 00:31:29 | 000,000,000 | ---D | M]
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\26.0.1410.64\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\26.0.1410.64\pdf.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Foxit Reader Plugin for Mozilla (Enabled) = C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
CHR - plugin: Picasa (Enabled) = C:\Program Files\Google\Picasa3\npPicasa3.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WIN\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WIN\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll
CHR - plugin: Java Deployment Toolkit 6.0.320.5 (Enabled) = C:\WIN\system32\npdeployJava1.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WIN\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: Google Drive = C:\Documents and Settings\Lori\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: Print this page with CleanPrint = C:\Documents and Settings\Lori\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\biafepndnnahkfldhobcjlclklffkibe\4.7.0_0\
CHR - Extension: YouTube = C:\Documents and Settings\Lori\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Documents and Settings\Lori\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: RealDownloader = C:\Documents and Settings\Lori\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji\1.3.1_0\
CHR - Extension: LogMeIn = C:\Documents and Settings\Lori\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmgnihglilniboicepgjclfiageofdfj\1.0.0.1007_0\
CHR - Extension: Gmail = C:\Documents and Settings\Lori\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2013/05/08 22:27:51 | 000,001,025 | ---- | M]) - C:\WIN\system32\drivers\etc\Hosts
O1 - Hosts: ?????????????????????????.???????????????????????>???????????>?????????????????????>?????????????????????>?????????>???????????????????????>???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [Conime] C:\WIN\system32\conime.exe (Microsoft Corporation)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [EKStatusMonitor] C:\Program Files\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe (Eastman Kodak Company)
O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] C:\WIN\System32\HDAShCut.exe (Windows ® Server 2003 DDK provider)
O4 - HKLM..\Run: [InstaLAN] C:\Program Files\Belkin\Router Setup and Monitor\BelkinRouterMonitor.exe (Affinegy, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoMSAppLogo5ChannelNotify = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoToolbarCustomize = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoBandCustomize = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WIN\System32\GPhotos.scr (Google Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} http://utilities.pcp...ols/pcmatic.cab (PCPitstop Utility)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate...b?1363126200062 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.mi...b?1341441543171 (MUWebControl Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{395D1A8E-4015-44DB-B1EA-A5495E4AB339}: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WIN\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WIN\system32\userinit.exe) - C:\WIN\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Lori\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Lori\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/10/11 16:24:26 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011/08/04 18:13:52 | 000,000,110 | -H-- | M] () - I:\autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2013/05/12 21:10:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lori\Application Data\Skinux
[2013/05/12 09:13:23 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2013/05/08 23:11:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lori\Application Data\ElevatedDiagnostics
[2013/05/08 23:08:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WIN\Start Menu\Programs\Windows PowerShell 1.0
[2013/05/08 21:44:26 | 000,289,144 | ---- | C] (S!Ri) -- C:\WIN\System32\VCCLSID.exe
[2013/05/08 21:44:26 | 000,288,417 | ---- | C] (S!Ri) -- C:\WIN\System32\SrchSTS.exe
[2013/05/08 21:44:26 | 000,135,168 | ---- | C] (SteelWerX) -- C:\WIN\System32\swreg.exe
[2013/05/08 21:44:26 | 000,087,552 | ---- | C] (S!Ri.URZ) -- C:\WIN\System32\VACFix.exe
[2013/05/08 21:44:26 | 000,082,944 | ---- | C] (S!Ri.URZ) -- C:\WIN\System32\IEDFix.exe
[2013/05/08 21:44:26 | 000,082,944 | ---- | C] (S!Ri.URZ) -- C:\WIN\System32\IEDFix.C.exe
[2013/05/08 21:44:26 | 000,082,432 | ---- | C] (S!Ri.URZ) -- C:\WIN\System32\404Fix.exe
[2013/05/08 21:44:26 | 000,080,384 | ---- | C] (S!Ri.URZ) -- C:\WIN\System32\o4Patch.exe
[2013/05/08 21:44:26 | 000,079,360 | ---- | C] (SteelWerX) -- C:\WIN\System32\swxcacls.exe
[2013/05/08 21:44:26 | 000,078,336 | ---- | C] (S!Ri.URZ) -- C:\WIN\System32\Agent.OMZ.Fix.exe
[2013/05/08 21:44:26 | 000,053,248 | ---- | C] (http://www.beyondlogic.org) -- C:\WIN\System32\Process.exe
[2013/05/08 19:35:41 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2013/05/08 19:35:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WIN\Application Data\Spybot - Search & Destroy
[2013/05/01 20:00:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lori\Desktop\Wage Claim
[2013/04/24 08:06:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WIN\Application Data\ClubSanDisk
[2 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013/05/13 07:20:12 | 000,013,646 | ---- | M] () -- C:\WIN\System32\wpa.dbl
[2013/05/13 07:15:12 | 000,002,048 | --S- | M] () -- C:\WIN\bootstat.dat
[2013/05/12 18:47:55 | 000,000,416 | -H-- | M] () -- C:\WIN\tasks\User_Feed_Synchronization-{A126B8E3-10B9-4048-81A0-7DC31E8A7EE1}.job
[2013/05/12 10:14:55 | 000,000,312 | -HS- | M] () -- C:\boot.ini
[2013/05/11 08:51:11 | 000,000,886 | ---- | M] () -- C:\WIN\tasks\GoogleUpdateTaskMachineUA.job
[2013/05/11 08:51:10 | 000,000,882 | ---- | M] () -- C:\WIN\tasks\GoogleUpdateTaskMachineCore.job
[2013/05/09 07:00:43 | 000,267,008 | ---- | M] () -- C:\WIN\System32\FNTCACHE.DAT
[2013/05/08 22:27:55 | 000,001,358 | ---- | M] () -- C:\WIN\System32\tmp.reg
[2013/05/08 22:27:51 | 000,001,025 | ---- | M] () -- C:\WIN\System32\drivers\etc\Hosts
[2013/05/05 10:36:14 | 000,001,891 | ---- | M] () -- C:\WIN\imsins.BAK
[2013/05/01 18:08:34 | 005,197,824 | R--- | M] () -- C:\Documents and Settings\All Users.WIN\Documents\ESBK.mbb
[2013/05/01 18:08:34 | 002,595,840 | R--- | M] () -- C:\Documents and Settings\All Users.WIN\Documents\ESBK.mb
[2013/04/19 13:08:28 | 000,001,153 | ---- | M] () -- C:\Documents and Settings\Lori\Desktop\Shortcut to Jesi and Andrew engagements_26.lnk
[2013/04/19 12:37:13 | 001,168,277 | ---- | M] () -- C:\Documents and Settings\Lori\My Documents\Jesi and Andrew engagements_26.jpg
[2 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013/05/08 21:45:34 | 000,001,358 | ---- | C] () -- C:\WIN\System32\tmp.reg
[2013/05/08 21:44:26 | 000,075,776 | ---- | C] () -- C:\WIN\System32\WS2Fix.exe
[2013/05/08 21:44:26 | 000,051,200 | ---- | C] () -- C:\WIN\System32\dumphive.exe
[2013/05/08 21:44:26 | 000,040,960 | ---- | C] () -- C:\WIN\System32\swsc.exe
[2013/04/19 13:08:34 | 001,168,277 | ---- | C] () -- C:\Documents and Settings\Lori\My Documents\Jesi and Andrew engagements_26.jpg
[2013/04/19 13:08:28 | 000,001,153 | ---- | C] () -- C:\Documents and Settings\Lori\Desktop\Shortcut to Jesi and Andrew engagements_26.lnk
[2013/04/02 07:46:47 | 000,013,024 | ---- | C] () -- C:\WIN\System32\drivers\SWDUMon.sys
[2013/03/23 09:13:59 | 000,056,312 | -H-- | C] () -- C:\WIN\System32\mlfcache.dat
[2012/12/31 23:56:34 | 000,710,504 | ---- | C] () -- C:\WIN\is-0HP3B.exe
[2012/09/24 13:31:08 | 000,001,119 | ---- | C] () -- C:\WIN\System32\EKaio2WiaCoInst.ini
[2012/09/10 16:19:33 | 000,711,240 | ---- | C] () -- C:\WIN\is-7N0PE.exe
[2012/07/20 23:00:23 | 000,000,019 | ---- | C] () -- C:\WIN\popcinfo.dat
[2012/06/17 14:46:29 | 000,000,664 | ---- | C] () -- C:\WIN\System32\d3d9caps.dat
[2012/06/06 14:21:24 | 000,003,072 | ---- | C] () -- C:\WIN\System32\iacenc.dll
[2012/06/06 11:59:17 | 001,072,544 | ---- | C] () -- C:\WIN\System32\nvdrsdb0.bin
[2012/06/06 11:59:16 | 001,072,544 | ---- | C] () -- C:\WIN\System32\nvdrsdb1.bin
[2012/06/06 11:59:16 | 000,000,001 | ---- | C] () -- C:\WIN\System32\nvdrssel.bin
[2012/06/06 11:58:46 | 002,816,504 | ---- | C] () -- C:\WIN\System32\nvdata.data
[2012/06/05 19:27:50 | 000,002,048 | --S- | C] () -- C:\WIN\bootstat.dat
[2012/06/05 19:22:12 | 000,021,640 | ---- | C] () -- C:\WIN\System32\emptyregdb.dat
[2012/06/05 13:14:11 | 000,003,985 | ---- | C] () -- C:\WIN\ODBCINST.INI
[2012/06/05 13:12:50 | 000,267,008 | ---- | C] () -- C:\WIN\System32\FNTCACHE.DAT
[2011/11/26 15:24:21 | 000,005,810 | ---- | C] () -- C:\WIN\System32\drivers\ASACPI.sys
========== ZeroAccess Check ==========
[2012/06/06 12:26:08 | 000,000,227 | RHS- | M] () -- C:\WIN\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2012/02/28 12:50:30 | 001,510,400 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WIN\system32\wbem\fastprox.dll -- [2009/02/09 06:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WIN\system32\wbem\wbemess.dll -- [2008/04/14 05:42:10 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2013/03/07 23:00:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
[2012/06/08 07:43:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\Affinegy
[2013/01/24 18:52:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\Big Fish Games
[2013/04/24 08:06:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\ClubSanDisk
[2012/11/03 10:03:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\Elephant Games
[2012/06/08 00:31:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\ESET
[2012/11/11 21:30:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\JollyBear
[2013/01/30 16:48:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\LogMeIn
[2012/07/30 22:36:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\MySQL
[2012/09/10 21:46:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\PCPitstop
[2012/06/19 16:39:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\PIXELA
[2012/07/26 10:01:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\SecTaskMan
[2013/04/12 19:52:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\SpeedMaxPc
[2012/07/17 18:05:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\SpeedyPC Software
[2013/03/07 18:31:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\TaxCut
[2013/01/09 18:34:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\TEMP
[2012/06/29 15:19:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\Trusteer
[2012/10/25 17:13:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\Visan
[2012/06/06 19:17:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WIN\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2012/07/12 15:04:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Ad-Aware Antivirus
[2012/10/29 21:06:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Big Fish Games
[2012/11/04 20:16:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Boomzap
[2012/06/07 18:04:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Downloaded Installations
[2012/07/17 17:41:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\DriverCure
[2012/11/03 10:03:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Elephant Games
[2013/05/09 09:12:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\ElevatedDiagnostics
[2012/11/13 19:54:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\ERS Game Studios
[2013/03/17 21:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Foxit Reader
[2012/10/06 22:01:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Foxit Software
[2013/03/02 09:10:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\PCCUStubInstaller
[2013/05/12 21:10:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Skinux
[2012/11/24 22:07:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Spark Plug Games
[2013/04/12 19:39:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\SpeedMaxPc
[2012/07/17 17:41:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\SpeedyPC Software
[2013/03/07 18:35:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\TaxCut
[2012/09/17 16:50:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\TeamViewer
[2012/06/08 07:47:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\Temp
[2013/05/09 07:05:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lori\Application Data\WinPatrol
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 251 bytes -> C:\Documents and Settings\All Users.WIN\Application Data\TEMP:363E775E
@Alternate Data Stream - 239 bytes -> C:\Documents and Settings\All Users.WIN\Application Data\TEMP:F1F936DF
@Alternate Data Stream - 218 bytes -> C:\Documents and Settings\All Users.WIN\Application Data\TEMP:C22674B6
@Alternate Data Stream - 218 bytes -> C:\Documents and Settings\All Users.WIN\Application Data\TEMP:206470A5
@Alternate Data Stream - 216 bytes -> C:\Documents and Settings\All Users.WIN\Application Data\TEMP:491270B8
@Alternate Data Stream - 214 bytes -> C:\Documents and Settings\All Users.WIN\Application Data\TEMP:D31BE97C
@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users.WIN\Application Data\TEMP:A02025CE
< End of report >
OTL Extras logfile created on: 5/13/2013 08:40:30 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Lori\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
990.48 Mb Total Physical Memory | 376.01 Mb Available Physical Memory | 37.96% Memory free
2.33 Gb Paging File | 1.29 Gb Available in Paging File | 55.32% Paging File free
Paging file location(s): C:\pagefile.sys 1488 2976 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WIN | %ProgramFiles% = C:\Program Files
Drive C: | 232.88 Gb Total Space | 103.55 Gb Free Space | 44.46% Space Free | Partition Type: NTFS
Drive I: | 3.73 Gb Total Space | 3.67 Gb Free Space | 98.36% Space Free | Partition Type: FAT32
Computer Name: DWAYNE-2DE6E15F | User Name: Lori | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"UpdatesDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"5353:UDP" = 5353:UDP:*:Enabled:Bonjour Port 5353
"9322:TCP" = 9322:TCP:*:Enabled:EKDiscovery
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Program Files\Belkin\Router Setup and Monitor\BelkinSetup.exe" = C:\Program Files\Belkin\Router Setup and Monitor\BelkinSetup.exe:LocalSubNet:Enabled:Belkin Setup -- (Affinegy, Inc.)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" = C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe -- (NVIDIA Corporation)
"C:\Program Files\TeamViewer\Version7\TeamViewer.exe" = C:\Program Files\TeamViewer\Version7\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application -- (TeamViewer GmbH)
"C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe" = C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service -- (TeamViewer GmbH)
"C:\Program Files\Belkin\Router Setup and Monitor\BelkinSetup.exe" = C:\Program Files\Belkin\Router Setup and Monitor\BelkinSetup.exe:LocalSubNet:Enabled:Belkin Setup -- (Affinegy, Inc.)
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe" = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe:*:Enabled:EasyShare -- (Eastman Kodak Company)
"C:\Program Files\Bonjour\mDNSResponder.exe" = C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service -- (Apple Inc.)
"C:\Program Files\Kodak\AiO\Center\AiOHomeCenter.exe" = C:\Program Files\Kodak\AiO\Center\AiOHomeCenter.exe:*:Enabled:Kodak.AiO.HomeCenter -- (Eastman Kodak Company)
"C:\Program Files\Kodak\AiO\Center\Kodak.Statistics.exe" = C:\Program Files\Kodak\AiO\Center\Kodak.Statistics.exe:*:Enabled:Kodak.AiO.Statistics -- (Eastman Kodak Company)
"C:\Program Files\Kodak\AiO\Center\NetworkPrinterDiscovery.exe" = C:\Program Files\Kodak\AiO\Center\NetworkPrinterDiscovery.exe:*:Enabled:Kodak.AiO.SetupUtility -- (Eastman Kodak Company)
"C:\Program Files\Kodak\AiO\Firmware\KodakAiOUpdater.exe" = C:\Program Files\Kodak\AiO\Firmware\KodakAiOUpdater.exe:*:Enabled:Kodak.AiO.FwUpdater -- (Eastman Kodak Company)
"C:\Documents and Settings\All Users.WIN\Application Data\Kodak\Installer\Setup.exe" = C:\Documents and Settings\All Users.WIN\Application Data\Kodak\Installer\Setup.exe:*:Enabled:Kodak.AiO.Installer -- (Eastman Kodak Company)
"C:\Program Files\Google\Chrome\Application\chrome.exe" = C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome -- (Google Inc.)
"C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}" = ESSPCD
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{19341392-BC07-48E8-AD4B-E56733C1027D}" = H&R Block Utah 2012
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{268278CF-FB69-4D98-B70E-BFEC1CDCA225}" = iTunes
"{27EF8E7F-88D1-4ec5-ADE2-7E447FDF114E}" = Kodak AIO Printer
"{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}" = essvatgt
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{42938595-0D83-404D-9F73-F8177FDD531A}" = ESScore
"{45C56AA7-ED1B-4800-A97F-EDDF3F3520B1}" = Apple Application Support
"{47FA2C44-D148-4DBC-AF60-B91934AA4842}" = Adobe AIR
"{48B41C3A-9A92-4B81-B653-C97FEB85C910}" = C4USelfUpdater
"{5316DFC9-CE99-4458-9AB3-E8726EDE0210}" = skin0001
"{53680898-90A2-4C54-968B-030A4CA8E33B}" = Super Easy Backup
"{56BA241F-580C-43D2-8403-947241AAE633}" = center
"{5CA03ECF-B4A6-464B-9F5D-64D8B61B083F}" = Everio MediaBrowser
"{5D64323C-288C-4BC4-9D07-D1E9B176D119}" = MySQL Server 5.5
"{605A4E39-613C-4A12-B56F-DEFBE6757237}" = SHASTA
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{643EAE81-920C-4931-9F0B-4B343B225CA6}" = ESSBrwr
"{693C08A7-9E76-43FF-B11E-9A58175474C4}" = kgckids
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{8943CE61-53BD-475E-90E1-A580869E98A2}" = staticcr
"{89D20029-0578-4D8D-979A-695C8D868868}" = H&R Block Deluxe + Efile + State 2012
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A502E38-29C9-49FA-BCFA-D727CA062589}" = ESSTOOLS
"{8A8664E1-84C8-4936-891C-BC1F07797549}" = kgcvday
"{8E92D746-CD9F-4B90-9668-42B74C14F765}" = ESSini
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUSR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROPLUSR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUSR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_PROPLUSR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_PROPLUSR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_PROPLUSR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{91120000-0011-0000-0000-0000000FF1CE}_PROPLUSR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{91517631-A9F3-4B7C-B482-43E0068FD55A}" = ESSgui
"{999D43F4-9709-4887-9B1A-83EBB15A8370}" = VPRINTOL
"{A1588373-1D86-4D44-86C9-78ABD190F9CC}" = kgcmove
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}" = MSXML 6.0 Parser
"{A62F9CD0-B2E0-4F2A-88F2-79254A3C8539}" = WinPatrol
"{A66242A1-9101-425D-9BE5-D19A50E1D0D8}" = ESET NOD32 Antivirus
"{a9264802-8a7a-40fe-a135-5c6d204aed7a}.sdb" = Internet Explorer (Enable DEP)
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}" = ESSCDBK
"{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}" = OfotoXMI
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 301.42
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView" = NVIDIA nView 136.27
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.8.15
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}" = CCScore
"{BE94C681-68E2-4561-8ABC-8D2E799168B4}" = essentials
"{BFBCF96F-7361-486A-965C-54B17AC35421}" = ocr
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CF9CD37C-E29A-11D5-AE3D-005004B8E30C}" = Digital Photo Navigator 1.5
"{D32470A1-B10C-4059-BA53-CF0486F68EBC}" = Kodak EasyShare software
"{DA5BDB2A-12F0-4343-8351-21AAEB293990}" = PreReq
"{DB02F716-6275-42E9-B8D2-83BA2BF5100B}" = SFR
"{E0F274B7-592B-4669-8FB8-8D9825A09858}" = KODAK AiO Software
"{E14ADE0E-75F3-4A46-87E5-26692DD626EC}" = Apple Mobile Device Support
"{EA1FAE0F-2354-4E32-B423-ABAE8E358F91}" = RealDownloader
"{EF53BFAB-4C10-40DB-A82D-9B07111715C6}" = aioscnnr
"{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}" = SKINXSDK
"{F9593CFB-D836-49BC-BFF1-0E669A411D9F}" = WIRELESS
"{FCDB1C92-03C6-4C76-8625-371224256091}" = ESSPDock
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Belkin Setup and Router Monitor_is1" = Belkin Setup and Router Monitor
"ERUNT_is1" = ERUNT 1.1j
"FileHippo.com" = FileHippo.com Update Checker
"Foxit Reader_is1" = Foxit Reader
"Google Chrome" = Google Chrome
"ie8" = Windows Internet Explorer 8
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Picasa 3" = Picasa 3
"PROPLUSR" = Microsoft Office Professional Plus 2007
"TeamViewer 7" = TeamViewer 7
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'events_waits_summary_by_instance'
has the wrong structure For more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'events_waits_summary_global_by_event_name'
has the wrong structure For more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'file_summary_by_event_name' has
the wrong structure For more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'file_summary_by_instance' has the
wrong structure For more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'mutex_instances' has the wrong
structure For more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'rwlock_instances' has the wrong
structure For more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'cond_instances' has the wrong structure
For
more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:15:50 | Computer Name = DWAYNE-2DE6E15F | Source = MySQL | ID = 100
Description = Native table 'performance_schema'.'file_instances' has the wrong structure
For
more information, see Help and Support Center at http://www.mysql.com.
Error - 5/13/2013 09:16:22 | Computer Name = DWAYNE-2DE6E15F | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Received from 192.168.2.5:5353 25 5.2.168.192.in-addr.arpa.
PTR dwayne-2de6e15f-2.local.
Error - 5/13/2013 09:16:22 | Computer Name = DWAYNE-2DE6E15F | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Unexpected conflict discarding 23 5.2.168.192.in-addr.arpa.
PTR dwayne-2de6e15f.local.
[ OSession Events ]
Error - 7/15/2012 15:39:49 | Computer Name = DWAYNE-2DE6E15F | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 14732
seconds with 2280 seconds of active time. This session ended with a crash.
Error - 9/24/2012 00:36:42 | Computer Name = DWAYNE-2DE6E15F | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 5522
seconds with 0 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 5/1/2013 09:20:24 | Computer Name = DWAYNE-2DE6E15F | Source = W32Time | ID = 39452701
Description = The time provider NtpClient is configured to acquire time from one
or more time sources, however none of the sources are currently accessible. No attempt
to contact a source will be made for 14 minutes. NtpClient has no source of accurate
time.
Error - 5/5/2013 12:18:16 | Computer Name = DWAYNE-2DE6E15F | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 5/6/2013 09:21:00 | Computer Name = DWAYNE-2DE6E15F | Source = DCOM | ID = 10010
Description = The server {4EB61BAC-A3B6-4760-9581-655041EF4D69} did not register
with DCOM within the required timeout.
Error - 5/6/2013 17:55:52 | Computer Name = DWAYNE-2DE6E15F | Source = Service Control Manager | ID = 7038
Description = The RemoteRegistry service was unable to log on as NT AUTHORITY\LocalService
with the currently configured password due to the following error: %%5 To ensure
that the service is configured properly, use the Services snap-in in Microsoft Management
Console
(MMC).
Error - 5/6/2013 17:55:52 | Computer Name = DWAYNE-2DE6E15F | Source = Service Control Manager | ID = 7000
Description = The Remote Registry service failed to start due to the following error:
%%1069
Error - 5/9/2013 00:44:31 | Computer Name = DWAYNE-2DE6E15F | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Application Layer Gateway
Service service to connect.
Error - 5/9/2013 00:44:31 | Computer Name = DWAYNE-2DE6E15F | Source = Service Control Manager | ID = 7000
Description = The Application Layer Gateway Service service failed to start due
to the following error: %%1053
Error - 5/9/2013 00:57:54 | Computer Name = DWAYNE-2DE6E15F | Source = Removable Storage Service | ID = 262159
Description = RSM cannot manage library CdRom0. The database is corrupt.
Error - 5/9/2013 15:59:06 | Computer Name = DWAYNE-2DE6E15F | Source = DCOM | ID = 10010
Description = The server {4EB61BAC-A3B6-4760-9581-655041EF4D69} did not register
with DCOM within the required timeout.
Error - 5/10/2013 08:36:44 | Computer Name = DWAYNE-2DE6E15F | Source = DCOM | ID = 10010
Description = The server {4EB61BAC-A3B6-4760-9581-655041EF4D69} did not register
with DCOM within the required timeout.
< End of report >