Yesterday, I tried to use my puter using firefox as usual. Google page came up and was usable. When I tried to go to yahoo mail or hotmail, i get a white screen that says something is out of date or something like that. It seems like I cannot go to any page that is secure. I opened chrome and it seems to work fine. On the bottom right hand of my screen in the bar, it has a red shield.
I downloaded FRST using chrome and ran it. Here are the two txt files that were generated.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:06-01-2015
Ran by Todd (administrator) on TODD-DXK8MBK1O8 (06-01-2016 16:49:35)
Running from C:\Documents and Settings\Todd\Desktop
Loaded Profiles: Todd (Available Profiles: Todd & Tammy & Brooke)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(TODO: <Company name>) C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
(Hewlett-Packard Company) C:\Program Files\HP\StatusAlerts\bin\HPStatusAlerts.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard Company) C:\Program Files\HP\HPBDSService\HPBDSService.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.5.15\n360.exe
() C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
() C:\Program Files\Analog Devices\SoundMAX\spkrmon.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.5.15\n360.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Garmin Ltd or its subsidiaries) C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.29.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [mmtask] => c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe [53248 2003-10-06] (TODO: <Company name>)
HKLM\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM\...\Run: [diagent] => C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe [135264 2002-04-03] (Creative Technology Ltd)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-02-13] (Apple Inc.)
HKLM\...\Run: [StatusAlerts] => C:\Program Files\HP\StatusAlerts\bin\HPStatusAlerts.exe [313248 2012-07-18] (Hewlett-Packard Company)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-12-03] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311616 2014-02-07] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [157480 2015-02-13] (Apple Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [335232 2015-02-10] (Oracle Corporation)
HKLM\...\Run: [TkBellExe] => C:\program files\real\realone player\update\realsched.exe [295512 2015-11-27] (RealNetworks, Inc.)
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\UpdateChecker.exe [307712 2012-11-23] (FileHippo.com)
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\Run: [KiesPreload] => C:\Program Files\Samsung\Kies\Kies.exe [1564992 2014-02-07] (Samsung)
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\Run: [GarminExpressTrayApp] => C:\Program Files\Garmin\Express Tray\ExpressTray.exe [688984 2014-10-21] (Garmin Ltd or its subsidiaries)
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\Run: [Portable SSD] => C:\Documents and Settings\All Users\Application Data\Samsung Apps\Portable SSD\Samsung Portable SSD Daemon.exe [2320288 2014-12-03] (Samsung Electronics)
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\Run: [HP ENVY 7640 series (NET)] => C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe [2424840 2014-08-22] (Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\Run: [4F3B637A591EB4DF3BF9F95468C44BA397569B8D._service_run] => C:\Program Files\Google\Chrome\Application\chrome.exe [741704 2015-12-10] (Google Inc.)
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\RunOnce: [Adobe Speed Launcher] => 1453777627
HKU\S-1-5-21-861567501-308236825-839522115-1004\...\MountPoints2: {f1a1371d-9441-11e3-91f0-000cf1b69362} - F:\LaunchU3.exe -a
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton 360\Engine\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton 360\Engine\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton 360\Engine\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Event Planner Reminder.lnk [2012-09-13]
ShortcutTarget: Event Planner Reminder.lnk -> C:\Program Files\Creative Home\Hallmark Card Studio 2012 Deluxe\Planner\PLNRnote.exe (Creative Home)
Startup: C:\Documents and Settings\Todd\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk [2014-06-03]
ShortcutTarget: ERUNT AutoBackup.lnk -> C:\Program Files\ERUNT\AUTOBACK.EXE ()
Startup: C:\Documents and Settings\Todd\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk [2013-10-17]
ShortcutTarget: OneNote 2007 Screen Clipper and Launcher.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{7722E195-1173-497E-B325-4C8635A89E81}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{7722E195-1173-497E-B325-4C8635A89E81}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page =
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page =
HKU\S-1-5-21-861567501-308236825-839522115-1004\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "hxxp://speedial.com/?f=2&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1QzutDtDtD0C0FtC0ByCzytAyCtBzy0B0C0FtN0D0Tzu0SzzzztAtN1L2XzutBtFtBtDtFtCzytFtAtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0BtBzzyDzyyEyCtGtAtDtCyEtGyB0B0DyDtGtCyE0DtDtGyEyByEtD0DtB0AyEtC0CtCtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDzyyD0Bzy0CtC0FtG0BzzzyyEtGyE0D0FyCtGtByDtB0EtGtD0DzytDyDyCyC0D0AyB0AyE2Q&cr=811558261&ir=" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKU\.DEFAULT -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL =
SearchScopes: HKU\S-1-5-19 -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL =
SearchScopes: HKU\S-1-5-20 -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL =
SearchScopes: HKU\S-1-5-21-861567501-308236825-839522115-1004 -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL =
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2014-08-12] (RealDownloader)
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton 360\Engine\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL => No File
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-03] (Oracle Corporation)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-03] (Oracle Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
Toolbar: HKU\S-1-5-21-861567501-308236825-839522115-1004 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab
DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} hxxp://support.dell.com/systemprofiler/DellSystemLite.CAB
DPF: {CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Todd\Application Data\Mozilla\Firefox\Profiles\m0xxmefr.default-1375845840406
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF Homepage: hxxps://www.google.com/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-29] ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-03] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=16.0.4.19 -> c:\program files\real\realone player\Netscape6\nppl3260.dll [2015-11-27] (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.4 -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2014-08-12] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=16.0.4.19 -> c:\program files\real\realone player\Netscape6\nprpplugin.dll [2015-11-27] (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2014-08-12] (RealDownloader)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-03] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-03] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\Todd\Application Data\Mozilla\Firefox\Profiles\m0xxmefr.default-1375845840406\searchplugins\norton-safe-search.xml [2015-12-03]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2012-03-24] [not signed]
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.0.124\coFFAddon
FF Extension: Norton Identity Safe - C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.0.124\coFFAddon [2015-12-22]
FF HKLM\...\Firefox\Extensions: [{1B12EF76-2B5E-4DA1-B587-4762D49BFE03}] - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2015-11-27] [not signed]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-02-09]
Chrome:
=======
CHR HomePage: Default -> hxxp://speedial.com/?f=1&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1QzutDtDtD0C0FtC0ByCzytAyCtBzy0B0C0FtN0D0Tzu0SzzzztAtN1L2XzutBtFtBtDtFtCzytFtAtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0BtBzzyDzyyEyCtGtAtDtCyEtGyB0B0DyDtGtCyE0DtDtGyEyByEtD0DtB0AyEtC0CtCtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDzyyD0Bzy0CtC0FtG0BzzzyyEtGyE0D0FyCtGtByDtB0EtGtD0DzytDyDyCyC0D0AyB0AyE2Q&cr=811558261&ir=
CHR StartupUrls: Default -> "hxxp://speedial.com/?f=1&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1QzutDtDtD0C0FtC0ByCzytAyCtBzy0B0C0FtN0D0Tzu0SzzzztAtN1L2XzutBtFtBtDtFtCzytFtAtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0BtBzzyDzyyEyCtGtAtDtCyEtGyB0B0DyDtGtCyE0DtDtGyEyByEtD0DtB0AyEtC0CtCtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDzyyD0Bzy0CtC0FtG0BzzzyyEtGyE0D0FyCtGtByDtB0EtGtD0DzytDyDyCyC0D0AyB0AyE2Q&cr=811558261&ir=","hxxp://www.google.com/"
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\47.0.2526.106\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\47.0.2526.106\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\47.0.2526.106\pdf.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => No File
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll => No File
CHR Plugin: (Java Platform SE 7 U25) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (RealPlayer G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Real\RealOne Player\Netscape6\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files\Real\RealOne Player\Netscape6\nprjplug.dll => No File
CHR Plugin: (RealOne Player Version Plugin) - C:\Program Files\Real\RealOne Player\Netscape6\nprpjplug.dll => No File
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll => No File
CHR Plugin: (Java Deployment Toolkit 7.0.250.16) - C:\WINDOWS\system32\npDeployJava1.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll => No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Profile: C:\Documents and Settings\Todd\Local Settings\Application Data\Google\Chrome\User Data\Default
CHR Extension: (Speedial) - C:\Documents and Settings\Todd\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bakijjialdiiboeaknfpmflphhmljfkd [2014-09-26]
CHR Extension: (Norton Identity Safe) - C:\Documents and Settings\Todd\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2014-09-26]
CHR Extension: (Chrome Web Store Payments) - C:\Documents and Settings\Todd\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-04]
CHR HKLM\...\Chrome\Extension: [bakijjialdiiboeaknfpmflphhmljfkd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton 360\Engine\22.5.5.15\Exts\Chrome.crx [2015-11-05]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-861567501-308236825-839522115-1004\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bakijjialdiiboeaknfpmflphhmljfkd] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 Agent; C:\WINDOWS\VPDAgent.exe [192512 2013-06-25] (Two Pilots) [File not signed]
R2 Garmin Core Update Service; C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [451416 2014-10-21] (Garmin Ltd or its subsidiaries)
R2 HP DS Service; C:\Program Files\HP\HPBDSService\HPBDSService.exe [13824 2011-10-17] (Hewlett-Packard Company) [File not signed]
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [164864 2012-05-02] (HP) [File not signed]
S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-03-12] (Hewlett-Packard Co.) [File not signed]
S2 HPSupportSolutionsFrameworkService; C:\Program Files\Hp\Common\HPSupportSolutionsFrameworkService.exe [78088 2014-08-26] (Hewlett-Packard Company)
S2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-07-25] (Oracle Corporation)
R2 N360; C:\Program Files\Norton 360\Engine\22.5.5.15\N360.exe [282016 2015-11-20] (Symantec Corporation)
S2 Neat Startup Service; C:\Program Files\Neat\exec\NeatStartupService.exe [5632 2013-06-26] (The Neat Company) [File not signed]
R2 Net Driver HPZ12; C:\WINDOWS\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [File not signed]
S3 NetSvc; C:\Program Files\Intel\NCS\Sync\NetSvc.exe [143360 2003-03-03] (Intel® Corporation) [File not signed]
R2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2014-08-12] ()
R2 spkrmon; C:\Program Files\Analog Devices\SoundMAX\spkrmon.exe [61440 2003-06-16] () [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 BHDrvx86; C:\Program Files\Norton 360\NortonData\22.5.0.124\Definitions\BASHDefs\20160104.001\BHDrvx86.sys [1193032 2015-10-08] (Symantec Corporation)
R1 ccSet_N360; C:\WINDOWS\system32\drivers\N360\1605050.00F\ccSetx86.sys [137456 2015-07-10] (Symantec Corporation)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [389968 2015-11-17] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [125264 2015-11-17] (Symantec Corporation)
R3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-13] (Microsoft Corporation)
R3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49920 2007-03-08] (HP)
R3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2007-03-08] (HP)
R3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2007-03-08] (HP)
R3 IDSxpx86; C:\Program Files\Norton 360\NortonData\22.5.0.124\Definitions\IPSDefs\20160105.003\IDSxpx86.sys [548536 2015-12-04] (Symantec Corporation)
R3 MxlW2k; C:\WINDOWS\system32\Drivers\MxlW2k.sys [28256 2012-03-20] (MusicMatch, Inc.) [File not signed]
R3 NAVENG; C:\Program Files\Norton 360\NortonData\22.5.0.124\Definitions\VirusDefs\20160106.004\NAVENG.SYS [104440 2015-10-26] (Symantec Corporation)
R3 NAVEX15; C:\Program Files\Norton 360\NortonData\22.5.0.124\Definitions\VirusDefs\20160106.004\NAVEX15.SYS [1647216 2015-10-26] (Symantec Corporation)
R1 OMCI; C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS [13632 2001-08-22] (Dell Computer Corporation) [File not signed]
R3 P16X; C:\WINDOWS\System32\drivers\P16X.sys [1330048 2003-09-22] (Creative Technology Ltd.)
R2 PfModNT; C:\WINDOWS\system32\drivers\PfModNT.sys [15840 2003-03-05] (Creative Technology Ltd.) [File not signed]
R3 SRTSP; C:\WINDOWS\System32\Drivers\N360\1605050.00F\SRTSP.SYS [712944 2015-11-11] (Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\system32\drivers\N360\1605050.00F\SRTSPX.SYS [44792 2015-07-10] (Symantec Corporation)
R0 SymEFASI; C:\WINDOWS\System32\drivers\N360\1605050.00F\SYMEFASI.SYS [1287408 2015-11-11] (Symantec Corporation)
R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [103152 2015-07-26] (Symantec Corporation)
R1 SymIRON; C:\WINDOWS\system32\drivers\N360\1605050.00F\Ironx86.SYS [234744 2015-07-10] (Symantec Corporation)
R1 SYMTDI; C:\WINDOWS\System32\Drivers\N360\1605050.00F\SYMTDI.SYS [388440 2015-11-11] (Symantec Corporation)
S3 USBAAPL; C:\WINDOWS\System32\Drivers\usbaapl.sys [44032 2012-07-09] (Apple, Inc.) [File not signed]
S4 IntelIde; no ImagePath
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Three Months Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-06 16:49 - 2016-01-06 16:50 - 00023124 _____ C:\Documents and Settings\Todd\Desktop\FRST.txt
2016-01-06 16:49 - 2016-01-06 16:49 - 00000000 ____D C:\FRST
2016-01-06 16:48 - 2016-01-06 16:49 - 01721856 _____ (Farbar) C:\Documents and Settings\Todd\Desktop\FRST.exe
2015-12-24 18:19 - 2015-12-24 18:19 - 00122867 _____ C:\Documents and Settings\Todd\Desktop\NICS Appeal Brochure September 30 2013.pdf
2015-12-21 09:26 - 2016-01-25 21:03 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-12-10 08:55 - 2015-12-10 08:55 - 00129812 ____R C:\Documents and Settings\Todd\Desktop\PDFBLASTER_INVOICE_398276.pdf
2015-11-27 11:58 - 2015-11-27 11:58 - 00000552 _____ C:\WINDOWS\system32\d3d8caps.dat
2015-11-27 11:54 - 2016-01-25 21:04 - 00000276 _____ C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-861567501-308236825-839522115-1004.job
2015-11-27 11:54 - 2016-01-01 11:57 - 00000284 _____ C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-861567501-308236825-839522115-1004.job
2015-11-27 11:54 - 2015-11-27 11:54 - 00000000 ____D C:\Documents and Settings\Todd\Application Data\RealNetworks
2015-11-27 11:53 - 2015-11-27 11:53 - 00000767 _____ C:\Documents and Settings\All Users\Desktop\RealPlayer.lnk
2015-11-27 11:52 - 2015-11-27 11:52 - 00000000 ____D C:\Program Files\RealNetworks
2015-11-27 11:52 - 2015-11-27 11:52 - 00000000 ____D C:\Program Files\Common Files\xing shared
2015-11-27 11:52 - 2015-11-27 11:52 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\RealNetworks
2015-11-27 11:51 - 2015-11-27 11:51 - 00201872 _____ (RealNetworks, Inc.) C:\WINDOWS\system32\rmoc3260.dll
2015-11-27 11:50 - 2015-11-27 11:52 - 00000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\RealNetworks
2015-11-27 11:50 - 2015-11-27 11:50 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp71.dll
2015-11-27 11:50 - 2015-11-27 11:50 - 00006656 _____ (RealNetworks, Inc.) C:\WINDOWS\system32\pndx5016.dll
2015-11-27 11:50 - 2015-11-27 11:50 - 00005632 _____ (RealNetworks, Inc.) C:\WINDOWS\system32\pndx5032.dll
2015-11-27 11:49 - 2015-11-27 11:52 - 00000000 ____D C:\Program Files\real
2015-11-27 11:47 - 2015-11-27 11:54 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Real
2015-11-27 11:38 - 2015-11-27 11:43 - 00000000 ____D C:\Documents and Settings\Todd\Desktop\New Folder
2015-11-11 12:47 - 2015-11-11 12:47 - 00000000 ____D C:\Documents and Settings\Todd\Desktop\Odin3_v3.10.7
2015-11-11 03:04 - 2015-11-11 12:45 - 00000000 ____D C:\594b84640da28e518277
==================== Three Months Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-26 10:10 - 2015-09-22 14:13 - 00000450 _____ C:\WINDOWS\Tasks\At1.job
2016-01-25 21:06 - 2013-07-28 03:36 - 00000664 _____ C:\WINDOWS\system32\d3d9caps.dat
2016-01-25 21:04 - 2014-04-06 19:25 - 00000220 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job
2016-01-25 21:04 - 2012-03-19 19:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-01-25 21:03 - 2012-04-02 09:41 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-01-25 21:03 - 2003-07-16 14:53 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
2016-01-25 21:02 - 2012-03-19 19:46 - 00000178 ___SH C:\Documents and Settings\Todd\ntuser.ini
2016-01-25 21:02 - 2012-03-19 19:46 - 00000000 ____D C:\Documents and Settings\Todd
2016-01-25 21:01 - 2012-03-19 19:45 - 00032634 _____ C:\WINDOWS\SchedLgU.Txt
2016-01-06 16:50 - 2012-03-19 19:46 - 00000000 ____D C:\Documents and Settings\Todd\Local Settings\Temp
2016-01-06 16:49 - 2012-03-19 13:29 - 00000000 ____D C:\WINDOWS
2016-01-06 16:21 - 2012-03-19 22:18 - 00000886 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-06 16:18 - 2015-03-03 17:43 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-01-06 15:13 - 2015-09-22 14:13 - 00000450 _____ C:\WINDOWS\Tasks\At3.job
2016-01-06 14:21 - 2012-03-19 22:18 - 00000882 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-06 14:00 - 2015-09-22 14:13 - 00000450 _____ C:\WINDOWS\Tasks\At4.job
2016-01-05 20:40 - 2015-09-22 14:13 - 00000450 _____ C:\WINDOWS\Tasks\At2.job
2016-01-05 20:10 - 2012-03-19 22:18 - 00000000 ____D C:\Documents and Settings\Todd\Local Settings\Application Data\Google
2016-01-04 11:30 - 2012-08-02 10:48 - 00000000 ____D C:\Documents and Settings\Todd\Desktop\tams ebay pics
2015-12-31 23:33 - 2012-03-21 13:37 - 00000284 _____ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2015-12-29 09:18 - 2015-03-03 17:43 - 00796864 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-12-29 09:18 - 2015-03-03 17:43 - 00142528 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-12-22 21:51 - 2014-08-18 10:55 - 00000000 ____D C:\Documents and Settings\Todd\Desktop\3310.4
2015-12-16 14:23 - 2012-03-19 23:19 - 00001813 _____ C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
2015-12-11 10:27 - 2014-04-23 03:49 - 00266894 _____ C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
2015-12-09 08:48 - 2013-06-26 23:12 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Microsoft Help
2015-12-09 08:44 - 2013-08-13 18:57 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-12-09 08:27 - 2012-03-19 23:25 - 137798368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-12-08 15:00 - 2014-04-06 19:25 - 00000214 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job
==================== Files in the root of some directories =======
2013-06-26 07:11 - 2013-07-28 01:26 - 0000664 _____ () C:\Documents and Settings\Todd\Local Settings\Application Data\d3d9caps.dat
2015-09-22 14:12 - 2015-09-22 14:12 - 0000057 _____ () C:\Documents and Settings\All Users\Application Data\Ament.ini
2012-03-21 15:39 - 2012-03-21 15:41 - 0000339 _____ () C:\Documents and Settings\All Users\Application Data\hpzinstall.log
Files to move or delete:
====================
C:\Windows\Tasks\At1.job
C:\Windows\Tasks\At2.job
C:\Windows\Tasks\At3.job
C:\Windows\Tasks\At4.job
Some files in TEMP:
====================
C:\Documents and Settings\Todd\Local Settings\Temp\Setup.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
and
Additional scan result of Farbar Recovery Scan Tool (x86) Version:06-01-2015
Ran by Todd (2016-01-06 16:50:54)
Running from C:\Documents and Settings\Todd\Desktop
Microsoft Windows XP Home Edition Service Pack 3 (X86) (2012-03-20 01:44:43)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-861567501-308236825-839522115-500 - Administrator - Enabled)
ASPNET (S-1-5-21-861567501-308236825-839522115-1007 - Limited - Enabled)
Brooke (S-1-5-21-861567501-308236825-839522115-1006 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Brooke
Guest (S-1-5-21-861567501-308236825-839522115-501 - Limited - Enabled)
HelpAssistant (S-1-5-21-861567501-308236825-839522115-1000 - Limited - Disabled)
SUPPORT_388945a0 (S-1-5-21-861567501-308236825-839522115-1002 - Limited - Disabled)
Tammy (S-1-5-21-861567501-308236825-839522115-1005 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Tammy
Todd (S-1-5-21-861567501-308236825-839522115-1004 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Todd
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Norton 360 (Enabled - Up to date) {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton 360 (Disabled) {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
Adobe Flash Player 20 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
AIO_Scan (Version: 90.0.222.000 - Hewlett-Packard) Hidden
AMD Catalyst Install Manager (HKLM\...\{08ED1CD1-1CB1-B7CE-677E-110D0A118590}) (Version: 3.0.868.0 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x86 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Application Support (32-bit) (HKLM\...\{447CDCE5-F555-429B-BFA6-642C3C6D684F}) (Version: 3.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{E1DB0812-2D60-43DB-AE09-6C7027D93B28}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
B57Inst (Version: 3.40 - Broadcom) Hidden
BACS (Version: 3.36.0000 - Broadcom) Hidden
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom Advanced Control Suite (HKLM\...\InstallShield_{468190DA-FB4C-45BA-8E40-4B165FF1A939}) (Version: 3.36.0000 - Broadcom)
Broadcom Driver Installer (HKLM\...\InstallShield_{BE6890C7-31EF-478C-812E-1E2899ABFCA9}) (Version: 3.40 - Broadcom)
CCleaner (HKLM\...\CCleaner) (Version: 4.12 - Piriform)
Dell Digital Jukebox Driver (HKLM\...\Dell Digital Jukebox Driver) (Version: - )
Dell Driver Download Manager (HKU\S-1-5-21-861567501-308236825-839522115-1004\...\bd4d3a0508d364f5) (Version: 3.0.0.0 - Dell Inc)
Dell ResourceCD (HKLM\...\{D78653C3-A8FF-415F-92E6-D774E634FF2D}) (Version: - )
DJ_AIO_Software_min (Version: 90.0.222.000 - Hewlett-Packard) Hidden
Elevated Installer (Version: 3.2.21.0 - Garmin Ltd or its subsidiaries) Hidden
ERUNT 1.1j (HKLM\...\ERUNT_is1) (Version: - Lars Hederer)
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - )
File Type Assistant (HKLM\...\Trusted Software Assistant_is1) (Version: 2014.5.21.0 - ) <==== ATTENTION
FileHippo.com Update Checker (HKLM\...\FileHippo.com) (Version: - )
FlvPlayer (HKU\S-1-5-21-861567501-308236825-839522115-1004\...\FlvPlayer) (Version: ${VERSION} - ) <==== ATTENTION
Garmin Express (HKLM\...\{045320b6-c340-4960-aefd-57bf08a9b425}) (Version: 3.2.21.0 - Garmin Ltd or its subsidiaries)
Garmin Express (Version: 3.2.21.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (Version: 3.2.21.0 - Garmin Ltd or its subsidiaries) Hidden
Google Chrome (HKLM\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.)
Google Earth (HKLM\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.29.1 - Google Inc.) Hidden
Hallmark Card Studio 2012 Deluxe (HKLM\...\{8777089A-4CF4-44BA-910B-9A4580669DED}) (Version: 13.0.3.1 - Creative Home)
HP Deskjet All-In-One Software 9.0 (HKLM\...\{B2C61EBB-F47C-48ba-B375-27A40F8F48F7}) (Version: 9.0 - HP)
HP ENVY 7640 series Basic Device Software (HKLM\...\{85FF0AA2-49C8-4FEB-8F0F-F9A9303C0B38}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)
HP ENVY 7640 series Help (HKLM\...\{5845A5C9-AA03-4D91-9793-1A2563CE0129}) (Version: 34.0.0 - Hewlett Packard)
HP LaserJet 200 color M251 (HKLM\...\{6682B5C4-530A-4FB8-ACAC-80DB5CCC68DD}) (Version: 5.0.12200.1036 - Hewlett-Packard)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Support Solutions Framework (HKLM\...\{348A1F5B-07B3-4436-9A47-FFE44EFE856E}) (Version: 11.51.0004 - Hewlett-Packard Company)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
hpbDSService (Version: 002.002.07399 - Hewlett-Packard) Hidden
hpbM251DSService (Version: 001.001.05874 - Hewlett-Packard) Hidden
HPDiagnosticAlert (Version: 1.00.0001 - Microsoft) Hidden
HPLaserJet200color-M251_HelpLearnCenter_SI (HKLM\...\{DDEBEA89-2B5A-4E5B-8702-369882BB3F52}) (Version: 1.01.0000 - Hewlett-Packard)
hppLaserJetService (Version: 009.027.00856 - Hewlett-Packard) Hidden
hppM251LaserJetService (Version: 001.019.00639 - Hewlett-Packard) Hidden
hpStatusAlerts (Version: 050.037.00142 - Hewlett Packard) Hidden
hpStatusAlertsM251 (Version: 050.034.00131 - Hewlett-Packard) Hidden
Intel® PRO Network Adapters and Drivers (HKLM\...\PROSet) (Version: - )
Intel® PROSet (HKLM\...\{A790BEB1-BCCF-4EC6-807B-5708B36E8A79}) (Version: 6.05.2001 - Intel)
iTunes (HKLM\...\{3A9FE6B1-EE7F-40AC-B831-AC7C9ABB58A0}) (Version: 12.1.1.4 - Apple Inc.)
Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Media Player Packages (HKU\S-1-5-21-861567501-308236825-839522115-1004\...\Media Player Packages) (Version: - ) <==== ATTENTION
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft User-Mode Driver Framework Feature Pack 1.0 (HKLM\...\Wudf01000) (Version: - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft WinUsb 1.0 (HKLM\...\winusb0100) (Version: - Microsoft Corporation)
Mozilla Firefox 43.0.2 (x86 en-US) (HKLM\...\Mozilla Firefox 43.0.2 (x86 en-US)) (Version: 43.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 43.0.2.5833 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 6 Service Pack 2 (KB973686) (HKLM\...\{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}) (Version: 6.20.2003.0 - Microsoft Corporation)
MUSICMATCH® Jukebox (HKLM\...\{45EBDA59-D33B-433A-956E-B2F236468B56}) (Version: - )
MyFreeCodec (HKU\S-1-5-21-861567501-308236825-839522115-1004\...\MyFreeCodec) (Version: - )
Neat (HKLM\...\Neat) (Version: 5.2.2.3 - The Neat Company)
Neat ADF Scanner 2008 Driver (HKLM\...\{A4A42670-82B9-4A58-8955-20271DBBF29F}) (Version: 2.0.1.5 - The Neat Company)
Neat ADF Scanner Driver (HKLM\...\{58155B30-6BE9-4268-A059-149629149C63}) (Version: 2.0.2.1 - The Neat Company)
Neat Core Files (Version: 5.2.2.3 - The Neat Company) Hidden
Neat Mobile Scanner (Silver) Driver (HKLM\...\{6EDB3FC5-8B7C-422A-B4FB-1D919F44F2C0}) (Version: 2.0.1.5 - The Neat Company)
Neat Mobile Scanner 2008 Driver (HKLM\...\{57F5920A-9897-4830-BD4A-BE85DA9734FF}) (Version: 2.0.1.4 - The Neat Company)
Neat Mobile Scanner Driver (HKLM\...\{11A53AF3-CAA5-4C29-887E-CCA7CEE2689B}) (Version: 2.0.1.2 - The Neat Company)
Norton 360 (HKLM\...\N360) (Version: 22.5.5.15 - Symantec Corporation)
OpenOffice 4.1.1 (HKLM\...\{9395F41D-0F80-432E-9A59-B8E477E7E163}) (Version: 4.11.9775 - Apache Software Foundation)
OpenOffice Beta 4.1.0 (HKLM\...\{1F752D02-F576-4DD6-8DA7-E478283F455A}) (Version: 4.10.9760 - Apache Software Foundation)
Product Improvement Study for HP ENVY 7640 series (HKLM\...\{FA283DED-2C15-4E48-93A2-EF3474FBE8F3}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)
RealDownloader (Version: 1.3.4 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM\...\RealPlayer 16.0) (Version: 16.0.4 - RealNetworks)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.)
Samsung Kies (Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.33.0 - SAMSUNG Electronics Co., Ltd.)
Scan (Version: 9.0.0.0 - Hewlett-Packard) Hidden
Send To Neat (HKLM\...\{F9C52512-F5AB-4CA8-8E35-6396797DD72A}) (Version: 1.1.0.0 - The Neat Company)
Sound Blaster Live! (HKLM\...\{96E16100-A77F-4B31-B9AD-FFBA040EE1BD}) (Version: - )
SoundMAX (HKLM\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 5.12.01.3650 - Analog Devices)
TFTP Client (HKLM\...\TFTP Client) (Version: 4.2 - Weird Solutions, Inc.)
Toolbox (Version: 90.0.146.000 - Hewlett-Packard) Hidden
Update 4.0.3 for Microsoft .NET Framework 4 Client Profile (KB2600211) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2600211) (Version: 1 - Microsoft Corporation)
Update 4.0.3 for Microsoft .NET Framework 4 Extended (KB2600211) (HKLM\...\{0A0CADCF-78DA-33C4-A350-CD51849B9702}.KB2600211) (Version: 1 - Microsoft Corporation)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
WebFldrs XP (Version: 9.50.6513 - Microsoft Corporation) Hidden
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\KB892130) (Version: - Microsoft Corporation)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\WGA) (Version: 1.7.0069.2 - Microsoft Corporation)
Windows Imaging Component (HKLM\...\WIC) (Version: 3.0.0.0 - Microsoft Corporation)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
Windows Media Player 11 (HKLM\...\Windows Media Player) (Version: - )
Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031525 - Microsoft Corporation)
WinRAR 4.11 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
WinZip 17.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240D8}) (Version: 17.0.10381 - WinZip Computing, S.L. )
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-861567501-308236825-839522115-1004_Classes\CLSID\{53B5243F-8302-4DAD-BE8F-1D0665E8225E}\InprocServer32 -> C:\Program Files\HP\Common\FWUpdateEDO3.dll (Hewlett-Packard Company)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\AppleSoftwareUpdate.job => C:\Program Files\Apple Software Update\SoftwareUpdate.exe
Task: C:\WINDOWS\Tasks\At1.job => C:\Program Files\HP\HP ENVY 7640 series\Bin\HPCustPartic.exe
Task: C:\WINDOWS\Tasks\At2.job => C:\Program Files\HP\HP ENVY 7640 series\Bin\HPCustPartic.exe
Task: C:\WINDOWS\Tasks\At3.job => C:\Program Files\HP\HP ENVY 7640 series\Bin\HPCustPartic.exe
Task: C:\WINDOWS\Tasks\At4.job => C:\Program Files\HP\HP ENVY 7640 series\Bin\HPCustPartic.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-861567501-308236825-839522115-1004.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-861567501-308236825-839522115-1004.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2013-09-29 11:47 - 2013-06-25 10:08 - 00048640 _____ () C:\WINDOWS\system32\sdtnpm.dll
2014-08-12 11:34 - 2014-08-12 11:34 - 00039056 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
2012-03-19 19:59 - 2003-06-16 18:02 - 00061440 ____N () C:\Program Files\Analog Devices\SoundMAX\spkrmon.exe
2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-02-13 03:20 - 2015-02-13 03:20 - 01044776 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2012-03-19 20:15 - 2008-04-13 18:11 - 00059904 _____ () C:\WINDOWS\System32\devenum.dll
2012-03-19 20:15 - 2008-04-13 18:11 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2015-05-28 13:23 - 2014-02-10 12:44 - 04592128 _____ () C:\Documents and Settings\Todd\Local Settings\Application Data\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll
2015-05-28 13:23 - 2014-02-10 12:44 - 00112128 _____ () C:\Documents and Settings\Todd\Local Settings\Application Data\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll
2016-01-05 20:16 - 2015-12-24 07:46 - 16792256 _____ () C:\Documents and Settings\Todd\Local Settings\Application Data\Google\Chrome\User Data\PepperFlash\20.0.0.267\pepflashplayer.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UploadMgr => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2003-07-16 14:29 - 2003-07-16 14:29 - 00000734 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-861567501-308236825-839522115-1004\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Bliss.bmp
DNS Servers: 8.8.8.8 - 8.8.4.4
Windows Firewall is disabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
StandardProfile\AuthorizedApplications: [C:\Program Files\Bonjour\mDNSResponder.exe] => Enabled:Bonjour Service
StandardProfile\AuthorizedApplications: [C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE] => Enabled:Microsoft Office OneNote
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\HP LaserJet 200 color M251\bin\HPNetworkCommunicator.exe] => :LocalSubNet:Enabled:HP Network Communicator (HP LaserJet 200 color M251)
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\HP LaserJet 200 color M251\bin\EWSProxy.exe] => :LocalSubNet:Enabled:HP LaserJet 200 color M251 EWSProxy
StandardProfile\AuthorizedApplications: [C:\Program Files\Google\Chrome\Application\chrome.exe] => Enabled:Google Chrome
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Todd\Local Settings\Temp\7zS34AA\HPDiagnosticCoreUI.exe] => Enabled:HPSAPS
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Todd\Local Settings\Temp\7zS3BF6\HPDiagnosticCoreUI.exe] => Enabled:HPSAPS
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\csiInstaller\6682B5C4-530A-4FB8-ACAC-80DB5CCC68DD\Installer\hpbcsiInstaller.exe] => Enabled:HP Networked Printer Installer
StandardProfile\AuthorizedApplications: [C:\Program Files\iTunes\iTunes.exe] => Enabled:iTunes
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\HP ENVY 7640 series\Bin\FaxApplications.exe] => :LocalSubNet:Enabled:HP ENVY 7640 series FaxApplications
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\HP ENVY 7640 series\Bin\DigitalWizards.exe] => :LocalSubNet:Enabled:HP ENVY 7640 series DigitalWizards
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\HP ENVY 7640 series\Bin\SendAFax.exe] => :LocalSubNet:Enabled:HP ENVY 7640 series SendFaxAppExe
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\HP ENVY 7640 series\Bin\DeviceSetup.exe] => :LocalSubNet:Enabled:HP Device Setup (HP ENVY 7640 series)
StandardProfile\AuthorizedApplications: [C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe] => :LocalSubNet:Enabled:HP Network Communicator COM (HP ENVY 7640 series)
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Todd\Local Settings\Temp\7zS3418\HPDiagnosticCoreUI.exe] => Enabled:HPSAPS
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Todd\Local Settings\Temp\7zS3470\HPDiagnosticCoreUI.exe] => Enabled:HPSAPS
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Todd\Local Settings\Temp\7zS6562\HPDiagnosticCoreUI.exe] => Enabled:HPSAPS
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)
DomainProfile\GloballyOpenPorts: [139:TCP] => Enabled:@xpsp2res.dll,-22004
DomainProfile\GloballyOpenPorts: [445:TCP] => Enabled:@xpsp2res.dll,-22005
DomainProfile\GloballyOpenPorts: [137:UDP] => Enabled:@xpsp2res.dll,-22001
DomainProfile\GloballyOpenPorts: [138:UDP] => Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22007
StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22008
StandardProfile\GloballyOpenPorts: [139:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22004
StandardProfile\GloballyOpenPorts: [445:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22005
StandardProfile\GloballyOpenPorts: [137:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22001
StandardProfile\GloballyOpenPorts: [138:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [5357:TCP] => Enabled:WS-Eventing TCP Port 5357
==================== Restore Points =========================
29-10-2015 05:30:07 System Checkpoint
30-10-2015 05:59:46 System Checkpoint
31-10-2015 06:24:28 System Checkpoint
01-11-2015 07:18:52 System Checkpoint
02-11-2015 08:14:21 System Checkpoint
03-11-2015 09:10:08 System Checkpoint
04-11-2015 10:06:55 System Checkpoint
05-11-2015 11:01:36 System Checkpoint
06-11-2015 11:54:50 System Checkpoint
07-11-2015 12:48:55 System Checkpoint
08-11-2015 13:42:26 System Checkpoint
09-11-2015 13:46:03 System Checkpoint
10-11-2015 14:37:49 System Checkpoint
11-11-2015 03:00:26 Software Distribution Service 3.0
12-11-2015 03:52:24 System Checkpoint
13-11-2015 04:14:33 System Checkpoint
14-11-2015 05:16:34 System Checkpoint
15-11-2015 06:18:25 System Checkpoint
16-11-2015 07:10:07 System Checkpoint
17-11-2015 07:30:52 System Checkpoint
18-11-2015 08:53:23 System Checkpoint
19-11-2015 11:12:19 System Checkpoint
20-11-2015 12:38:22 System Checkpoint
21-11-2015 13:13:23 System Checkpoint
22-11-2015 14:08:51 System Checkpoint
03-12-2015 08:42:47 System Checkpoint
04-12-2015 09:36:51 System Checkpoint
05-12-2015 10:31:27 System Checkpoint
06-12-2015 11:26:13 System Checkpoint
07-12-2015 12:22:03 System Checkpoint
08-12-2015 13:18:24 System Checkpoint
09-12-2015 08:27:05 Software Distribution Service 3.0
10-12-2015 09:29:33 System Checkpoint
13-12-2015 21:05:28 System Checkpoint
14-12-2015 22:17:56 System Checkpoint
15-12-2015 22:57:10 System Checkpoint
16-12-2015 23:51:46 System Checkpoint
18-12-2015 06:13:19 System Checkpoint
19-12-2015 06:39:05 System Checkpoint
20-12-2015 07:29:50 System Checkpoint
21-12-2015 08:21:59 System Checkpoint
22-12-2015 10:40:20 System Checkpoint
23-12-2015 10:49:49 System Checkpoint
24-12-2015 11:43:23 System Checkpoint
25-12-2015 13:28:38 System Checkpoint
26-12-2015 14:27:22 System Checkpoint
27-12-2015 15:21:51 System Checkpoint
28-12-2015 16:13:00 System Checkpoint
29-12-2015 16:40:02 System Checkpoint
30-12-2015 17:04:41 System Checkpoint
31-12-2015 17:56:22 System Checkpoint
01-01-2016 18:50:35 System Checkpoint
02-01-2016 19:44:52 System Checkpoint
03-01-2016 20:38:34 System Checkpoint
04-01-2016 20:45:11 System Checkpoint
25-01-2016 21:49:50 System Checkpoint
06-01-2016 11:55:18 System Checkpoint
==================== Faulty Device Manager Devices =============
Name: NVIDIA GeForce FX 5200 (Microsoft Corporation)
Description: NVIDIA GeForce FX 5200 (Microsoft Corporation)
Class Guid: {4D36E968-E325-11CE-BFC1-08002BE10318}
Manufacturer: NVIDIA
Service: nv
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/04/2016 01:55:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application plugin-container.exe, version 43.0.1.5828, faulting module xul.dll, version 43.0.1.5828, fault address 0x012b2f46.
Processing media-specific event for [plugin-container.exe!ws!]
Error: (08/11/2015 11:28:41 AM) (Source: MsiInstaller) (EventID: 11722) (User: TODD-DXK8MBK1O8)
Description: Product: Java 8 Update 51 -- Error 1722. There is a problem with this Windows Installer package. A program run as part of the setup did not finish as expected. Contact your support personnel or package vendor. Action installexe, location: C:\Program Files\Java\jre1.8.0_51\installer.exe, command: /s INSTALLDIR="C:\Program Files\Java\jre1.8.0_51\\" REPAIRMODE=0
Error: (06/25/2015 06:06:50 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: GarminMapUpdater.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: Garmin.Cartography.DeviceInteraction.Md5ValidationException
Stack:
at Garmin.Cartography.DeviceInteraction.GarminDevice.Completed(System.Object, System.ComponentModel.AsyncCompletedEventArgs)
at System.Net.WebClient.OnDownloadFileCompleted(System.ComponentModel.AsyncCompletedEventArgs)
at System.Net.WebClient.DownloadFileOperationCompleted(System.Object)
at System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
at System.Threading.ExecutionContext.runTryCode(System.Object)
at System.Runtime.CompilerServices.RuntimeHelpers.ExecuteCodeWithGuaranteedCleanup(TryCode, CleanupCode, System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
at System.Threading.ThreadPoolWorkQueue.Dispatch()
at System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()
Error: (06/25/2015 06:06:48 PM) (Source: .NET Runtime 4.0 Error Reporting) (EventID: 5000) (User: )
Description: EventType clr20r3, P1 garminmapupdater.exe, P2 3.3.4.0, P3 543436f5, P4 garmin.cartography.deviceinteraction, P5 3.3.0.12, P6 51fc1c25, P7 6b, P8 33, P9 clr20r30, P10 clr20r31.
Error: (06/25/2015 06:02:51 PM) (Source: .NET Runtime 4.0 Error Reporting) (EventID: 5000) (User: )
Description: EventType clr20r3, P1 garminmapupdater.exe, P2 3.3.4.0, P3 543436f5, P4 garmin.cartography.deviceinteraction, P5 3.3.0.12, P6 51fc1c25, P7 6b, P8 33, P9 clr20r30, P10 clr20r31.
Error: (06/07/2015 11:46:59 PM) (Source: .NET Runtime 2.0 Error Reporting) (EventID: 5000) (User: )
Description: EventType clr20r3, P1 hplaserjetservice.exe, P2 9.27.856.0, P3 4fa1f537, P4 mscorlib, P5 2.0.0.0, P6 5266e591, P7 41cc, P8 27, P9 clr20r30, P10 clr20r31.
System errors:
=============
Error: (01/25/2016 09:08:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Garmin Core Update Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
Error: (01/25/2016 09:08:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The VPDAgent service terminated unexpectedly. It has done this 1 time(s).
Error: (01/25/2016 09:08:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
Error: (01/25/2016 09:08:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Bonjour Service service terminated unexpectedly. It has done this 1 time(s).
Error: (01/25/2016 09:07:30 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The iPod Service service terminated unexpectedly. It has done this 1 time(s).
Error: (01/25/2016 09:07:26 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Java Quick Starter service terminated unexpectedly. It has done this 1 time(s).
Error: (01/25/2016 09:07:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Image Acquisition (WIA) service terminated unexpectedly. It has done this 1 time(s).
Error: (01/25/2016 09:07:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Neat Startup Service service terminated unexpectedly. It has done this 1 time(s).
Error: (01/25/2016 09:05:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The HP Support Solutions Framework Service service failed to start due to the following error:
%%1053
Error: (01/25/2016 09:05:35 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Timeout (30000 milliseconds) waiting for the HP Support Solutions Framework Service service to connect.
==================== Memory info ===========================
Processor: Intel® Pentium® 4 CPU 3.00GHz
Percentage of memory in use: 48%
Total physical RAM: 2559 MB
Available physical RAM: 1323.92 MB
Total Virtual: 4451.49 MB
Available Virtual: 3174.03 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:233.75 GB) (Free:188.14 GB) NTFS ==>[drive with boot components (Windows XP)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 233.8 GB) (Disk ID: 9CD34BCA)
Partition 1: (Active) - (Size=233.7 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================