Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Windows XP in a different language needing to be upgrade to sp3


  • Please log in to reply

#1
Urbanmate

Urbanmate

    New Member

  • Member
  • Pip
  • 2 posts

G'Day

 

I find myself in the following situation and was wonder what the best course of action would be.

 

Im a new expat to China for a few months, the local company has provided me with a Sony Vaio (full details Below). Firstly it is still running the old XP - and I see its still Service Pack 2 - all there computers still using XP and its in Chinese. However I have managed to get my word/excel/ppt documents and Firefox and my other programs I need to open and function in English, just the OS is in Chinese. Second the PC is very very slow, there are many pop up programs opening that I have no idea what they are for.

 

My questions are.

 

1. Is it possible to change the xp to English - so that I can install English SP3.

2. If not,  How would I go about installing SP3 in Chinese

3. How would I go about cleaning out the pc to make it operate quicker

 

If you could suggest a course of action, I would really appreciate it. (someone at the office has offered me an English windows xp disk - however Im concerned that it may not be a "legal" English version, so I am a little concerned in following that course.

 

Thank you for your advice

 

PC details  Sony VAIO

XP home edition SP2 (2002)

Intel R , Pentium R

Processor 1.73 GHZ

                 2 GB (512 MB DDR2)

 

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-11-2016
Ran by hehe008 (administrator) on HEHE (08-11-2016 16:25:07)
Running from C:\Documents and Settings\hehe008\桌面
Loaded Profiles: hehe008 (Available Profiles: hehe008 & ks)
Platform: Microsoft Windows XP Home Edition Service Pack 2 (X86) Language: 中文(中国)
Internet Explorer Version 6 (Default browser: "C:\Documents and Settings\hehe008\Application Data\360se6\Application\360se.exe" -- "%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Beijing Rising Information Technology Co., Ltd.) C:\Program Files\Rising\RSD\RsMgrSvc.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files\Rising\RAV\RavMonD.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
(Intel Corporation ) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(Intel Corporation) C:\WINDOWS\system32\igfxext.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Sony Corporation) C:\Program Files\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Camera Utility\VCUServe.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApntEx.exe
() C:\PROGRA~1\Sony\SONICS~1\SSAAD.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files\Rising\RAV\RsTray.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files\Rising\RFW\rstray.exe
(Microsoft Corporation) C:\WINDOWS\system32\conime.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files\Rising\RFW\ravmond.exe
(Microsoft Corporation) C:\WINDOWS\system32\taskmgr.exe
(Zhuhai Kingsoft Office Software Co.,Ltd) C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\ktpcntr.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IMJPMIG8.1] => C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [208952 2004-08-17] (Microsoft Corporation)
HKLM\...\Run: [PHIME2002ASync] => C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [455168 2004-08-17] (Microsoft Corporation)
HKLM\...\Run: [PHIME2002A] => C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [455168 2004-08-17] (Microsoft Corporation)
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint\Apoint.exe [118784 2004-11-17] (Alps Electric Co., Ltd.)
HKLM\...\Run: [igfxhkcmd] => C:\WINDOWS\system32\hkcmd.exe [77824 2005-08-05] (Intel Corporation)
HKLM\...\Run: [igfxpers] => C:\WINDOWS\system32\igfxpers.exe [114688 2005-08-05] (Intel Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [14743552 2005-08-09] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AzMixerSel] => C:\Program Files\Realtek\InstallShield\AzMixerSel.exe [53248 2005-06-11] (Realtek Semiconductor Corp.)
HKLM\...\Run: [SonyPowerCfg] => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [184320 2005-10-19] (Sony Corporation)
HKLM\...\Run: [ISBMgr.exe] => C:\Program Files\Sony\ISB Utility\ISBMgr.exe [32768 2004-02-20] (Sony Corporation)
HKLM\...\Run: [MSPY2002] => C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [59392 2004-08-17] ()
HKLM\...\Run: [IMEKRMIG6.1] => C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE [44032 2004-08-17] (Microsoft Corporation)
HKLM\...\Run: [VAIOCameraUtility] => C:\Program Files\Sony\VAIO Camera Utility\VCUServe.exe [69632 2005-12-27] (Sony Corporation)
HKLM\...\Run: [VAIO Update 2] => C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe [151552 2005-10-11] (Sony Corporation)
HKLM\...\Run: [SsAAD.exe] => C:\Program Files\Sony\SonicStage\SSAAD.exe [81920 2005-09-27] ()
HKLM\...\Run: [RSDTRAY] => C:\Program Files\Rising\RSD\popwndexe.exe [126656 2015-08-03] (Beijing Rising Information Technology Co., Ltd.)
HKLM\...\Run: [RavTRAY] => C:\Program Files\Rising\RAV\RSTRAY.EXE [178840 2011-09-08] (Beijing Rising Information Technology Co., Ltd.)
HKLM\...\Run: [RFWTRAY] => C:\Program Files\Rising\RFW\RSTRAY.EXE [86808 2013-08-05] (Beijing Rising Information Technology Co., Ltd.)
HKLM\...\Run: [Grid Service] => C:\Program Files\GridService\peer.exe [4993024 2013-10-10] (FS2YOU)
Winlogon\Notify\VESWinlogon: C:\WINDOWS\system32\VESWinlogon.dll [2005-05-20] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\cameravj.scr [368640 2005-11-25] (Sony Corporation)
ShellExecuteHooks: URL 执行挂钩 - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\system32\shell32.dll [8308224 2005-09-23] (Microsoft Corporation)
BootExecute: autocheck autochk *  bsmain

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{A38368A0-EF67-4AB6-BC55-AEBC53E13AEC}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://vaio-online.sony.com/cn/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vaio-online.sony.com/cn/
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vaio-online.sony.com/cn/
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vaio-online.sony.com/cn/
HKU\S-1-5-21-2198740228-4002248672-2879504143-1006\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2198740228-4002248672-2879504143-1006\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2198740228-4002248672-2879504143-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.hao123.com/?src=skycn_xzq
URLSearchHook: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006 - Microsoft Url 搜索挂接 - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing
BHO: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14] (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006 -> No Name - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} -  No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

FireFox:
========
FF ProfilePath: C:\Documents and Settings\hehe008\Application Data\Mozilla\Firefox\Profiles\9vernof0.default [2016-11-08]
FF Extension: (Firefox Hotfix) - C:\Documents and Settings\hehe008\Application Data\Mozilla\Firefox\Profiles\9vernof0.default\Extensions\[email protected] [2016-10-12]
FF Plugin: @alipay.com/NPComBrg701,version=1.0.2011.701 -> C:\WINDOWS\system32\itruscert\NPComBrg701.dll [2011-07-25] (iTrusChina)
FF Plugin: @mozilla.com.cn/npskycn -> C:\Program Files\Skycn\npskycn.dll [No File]
FF Plugin HKU\S-1-5-21-2198740228-4002248672-2879504143-1006: @alipay.com/npalicert -> C:\Documents and Settings\hehe008\Application Data\alipay\cf\npalicdo.dll [2013-08-26] (alipay.com)

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2015-08-03] (Adobe Systems) [File not signed]
R2 EvtEng; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [86016 2005-07-22] (Intel Corporation) [File not signed]
S3 Image Converter video recording monitor for VAIO Entertainment; C:\Program Files\Sony\Image Converter 2\IcVzMon.exe [32768 2005-07-14] (Sony Corporation) [File not signed]
S3 MozillaMaintenance; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [146888 2016-11-03] (Mozilla Foundation) [File not signed]
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [53337 2005-08-30] (Sony Corporation) [File not signed]
S3 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [53337 2005-08-30] (Sony Corporation) [File not signed]
R2 RegSrvc; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [139264 2005-07-22] (Intel Corporation) [File not signed]
R2 RsMgrSvc; C:\Program Files\Rising\RSD\RsMgrSvc.exe [220952 2016-09-06] (Beijing Rising Information Technology Co., Ltd.)
R2 RsRavMon; C:\Program Files\Rising\RAV\RavMonD.exe [167832 2013-03-30] (Beijing Rising Information Technology Co., Ltd.)
R2 RsRFWMon; C:\Program Files\Rising\RFW\ravmond.exe [277424 2015-08-03] (Beijing Rising Information Technology Co., Ltd.)
R2 S24EventMonitor; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [372809 2005-07-22] (Intel Corporation ) [File not signed]
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69718 2005-08-30] (Sony Corporation) [File not signed]
S3 SSScsiSV; C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe [69632 2005-09-27] (Sony Corporation) [File not signed]
R3 VAIO Entertainment Aggregation and Control Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe [143360 2005-02-09] (Sony Corporation) [File not signed]
S3 VAIO Entertainment Task Scheduler; C:\Program Files\Sony\VAIO Entertainment\VzTaskScheduler.exe [397312 2005-02-10] (Sony Corporation) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2005-10-06] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [153600 2005-05-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [1982464 2005-10-11] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [57344 2005-10-11] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [770048 2005-10-11] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [188416 2005-10-11] (Sony Corporation) [File not signed]
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [270336 2005-09-01] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [131072 2005-09-01] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [118784 2005-09-01] (Sony Corporation) [File not signed]
S3 wpscloudsvr; C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\wpscloudsvr.exe [173824 2016-10-19] (Zhuhai Kingsoft Office Software Co.,Ltd)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [17801 2005-12-16] (Meetinghouse Data Communications) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2004-08-03] (Microsoft Corporation)
R1 FsVga; C:\WINDOWS\System32\DRIVERS\fsvga.sys [12160 2004-08-17] (Microsoft Corporation)
R1 hooksys; C:\WINDOWS\system32\drivers\Hooksys.sys [176088 2012-04-05] (Beijing Rising Information Technology Co., Ltd.)
R1 HookTdi; C:\WINDOWS\system32\drivers\HookTdi.sys [24280 2012-04-05] (Beijing Rising Information Technology Co., Ltd.)
R3 HSFHWAZL; C:\WINDOWS\System32\DRIVERS\HSFHWAZL.sys [202112 2005-10-18] (Conexant Systems, Inc.)
R3 HSF_DPV; C:\WINDOWS\System32\DRIVERS\HSF_DPV.sys [998656 2005-10-18] (Conexant Systems, Inc.)
R1 HyperVM; C:\WINDOWS\system32\drivers\hvm.sys [32568 2012-04-05] (Beijing Rising Information Technology Co., Ltd.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2004-08-03] (Microsoft Corporation)
R0 PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [46080 2005-10-28] (Sonic Solutions) [File not signed]
R0 RavSpoon; C:\WINDOWS\System32\drivers\spoon.sys [23320 2012-04-14] (Beijing Rising Information Technology Co., Ltd.)
R1 RFWARP; C:\WINDOWS\System32\DRIVERS\rfwarp.sys [27672 2013-04-11] (Beijing Rising Information Technology Co., Ltd.)
R1 RFWNDIS; C:\WINDOWS\System32\DRIVERS\rfwndis.sys [21272 2013-08-05] (Beijing Rising Information Technology Co., Ltd.)
R0 RfwSelfMon; C:\WINDOWS\System32\DRIVERS\rfwmon.sys [114920 2015-08-03] (Beijing Rising Information Technology Co., Ltd.)
R1 rfwtdi; C:\Program Files\Rising\RFW\rfwtdi.sys [27416 2013-04-11] (Beijing Rising Information Technology Co., Ltd.)
R2 rsdsys; C:\WINDOWS\system32\drivers\protreg.sys [24120 2015-08-03] (Beijing Rising Information Technology Co., Ltd.)
R1 rsfwdrv; C:\Program Files\Rising\RFW\rsfwdrv.sys [73496 2013-09-03] (Beijing Rising Information Technology Co., Ltd.)
R3 RTL8023xp; C:\WINDOWS\System32\DRIVERS\Rtlnicxp.sys [74496 2005-03-04] (Realtek Semiconductor Corporation                           )
R2 s24trans; C:\WINDOWS\System32\DRIVERS\s24trans.sys [11354 2005-07-22] (Intel Corporation) [File not signed]
S3 Secdrv; C:\WINDOWS\System32\DRIVERS\secdrv.sys [27440 2004-08-17] ()
R3 SonyImgF; C:\WINDOWS\System32\DRIVERS\SonyImgF.sys [28800 2005-11-30] (Sony Corporation) [File not signed]
R3 tifmsony; C:\WINDOWS\System32\drivers\tifmsony.sys [77824 2005-08-29] (Texas Instruments)
R3 usbvm321; C:\WINDOWS\System32\Drivers\usbvm321.sys [232448 2005-11-30] (Vimicro Corporation)
R3 w29n51; C:\WINDOWS\System32\DRIVERS\w29n51.sys [3289088 2005-07-19] (Intel® Corporation)
S3 SYMIDSCO; \??\C:\PROGRA~1\COMMON~1\SYMANT~1\SymcData\idsdefs\20050901.036\symidsco.sys [X]
U1 WS2IFSL; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-08 16:25 - 2016-11-08 16:26 - 00016357 _____ C:\Documents and Settings\hehe008\桌面\FRST.txt
2016-11-08 16:24 - 2016-11-08 16:25 - 00000000 ____D C:\FRST
2016-11-08 16:21 - 2016-11-08 16:23 - 01759744 _____ (Farbar) C:\Documents and Settings\hehe008\桌面\FRST.exe
2016-11-05 18:56 - 2014-10-17 21:06 - 03327000 _____ C:\Documents and Settings\hehe008\桌面\WindowsXP-KB942288-v3-x86.exe
2016-11-05 18:44 - 2016-06-02 20:51 - 02869264 _____ (Microsoft Corporation) C:\Documents and Settings\hehe008\桌面\dotNetFx35setup.exe
2016-11-05 18:12 - 2016-11-05 18:12 - 00000000 ____D C:\WINDOWS\system32\CatRoot_bak
2016-11-05 18:10 - 2016-04-03 21:21 - 331805736 _____ (Microsoft Corporation) C:\Documents and Settings\hehe008\桌面\windowsxp-kb936929-sp3-x86-enu.exe
2016-11-05 18:10 - 2014-10-17 20:52 - 43000680 _____ (Microsoft Corporation) C:\Documents and Settings\hehe008\桌面\dotNetFx40_Client_x86_x64.exe
2016-11-05 17:46 - 2016-11-05 17:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB942288-v3$
2016-11-05 17:45 - 2016-11-05 17:39 - 01551592 _____ (Microsoft Corporation) C:\Documents and Settings\hehe008\桌面\WindowsXP-KB891711-x86-CHS.exe
2016-11-05 15:07 - 2016-05-08 18:07 - 48475704 _____ (DigiDNA ) C:\Documents and Settings\hehe008\桌面\iMazingforWindows.exe
2016-11-05 15:02 - 2004-08-16 16:39 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpusd.dll
2016-11-05 15:02 - 2004-08-03 22:58 - 00015104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbscan.sys
2016-11-05 15:02 - 2004-08-03 22:58 - 00015104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbscan.sys
2016-11-05 15:02 - 2001-08-31 16:03 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpusb.dll
2016-11-03 15:28 - 2016-11-08 15:29 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-10-19 12:41 - 2016-11-08 14:52 - 00000662 _____ C:\WINDOWS\Tasks\WpsExternal_hehe008_20161019124103.job
2016-10-19 12:40 - 2016-11-08 15:53 - 00000468 _____ C:\WINDOWS\Tasks\WpsUpdateTask_hehe008.job
2016-10-19 12:40 - 2016-10-19 12:40 - 00000000 ____D C:\Documents and Settings\hehe008\「开始」菜单\程序\WPS Office
2016-10-12 15:05 - 2016-10-19 12:40 - 00002347 _____ C:\Documents and Settings\hehe008\桌面\WPS Writer.lnk
2016-10-12 15:05 - 2016-10-19 12:40 - 00002345 _____ C:\Documents and Settings\hehe008\桌面\WPS Presentation.lnk
2016-10-12 15:05 - 2016-10-19 12:40 - 00002329 _____ C:\Documents and Settings\hehe008\桌面\WPS Spreadsheets.lnk
2016-10-12 15:05 - 2016-10-12 15:05 - 00000000 ____D C:\Documents and Settings\hehe008\Application Data\wps
2016-10-12 15:05 - 2016-10-12 15:05 - 00000000 ____D C:\Documents and Settings\hehe008\Application Data\office6
2016-10-12 15:04 - 2016-11-08 16:08 - 00000784 _____ C:\WINDOWS\Tasks\WpsKtpcntrQingTask_hehe008.job
2016-10-12 15:04 - 2016-10-12 15:04 - 00000000 ____D C:\Program Files\Microsoft Office
2016-10-12 15:01 - 2016-10-12 15:32 - 00000000 ____D C:\Documents and Settings\hehe008\Application Data\kingsoft
2016-10-12 15:01 - 2016-10-12 15:01 - 00000000 ____D C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft
2016-10-12 15:00 - 2016-10-12 15:05 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\kingsoft

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-08 16:26 - 2012-03-31 15:51 - 00000000 ____D C:\Documents and Settings\hehe008\Local Settings\Temp
2016-11-08 16:25 - 2012-03-31 15:51 - 00000000 ____D C:\Documents and Settings\hehe008\桌面
2016-11-08 16:08 - 2005-12-16 16:18 - 00032650 _____ C:\WINDOWS\SchedLgU.Txt
2016-11-05 18:58 - 2005-12-16 17:53 - 00000000 ____D C:\WINDOWS\system32\Lang
2016-11-05 18:57 - 2005-12-16 16:18 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-11-05 18:56 - 2005-12-17 00:04 - 00000000 RSHDC C:\WINDOWS\system32\dllcache
2016-11-05 18:56 - 2005-12-17 00:04 - 00000000 ___HD C:\WINDOWS\inf
2016-11-05 17:46 - 2005-12-17 00:04 - 00000000 ____D C:\WINDOWS\system32\mui
2016-11-05 16:39 - 2012-03-31 15:51 - 00000178 ___SH C:\Documents and Settings\hehe008\ntuser.ini
2016-11-05 16:39 - 2012-03-31 15:51 - 00000000 ____D C:\Documents and Settings\hehe008
2016-11-05 14:51 - 2015-08-03 18:02 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-10-25 14:43 - 2005-12-16 15:02 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl
2016-10-19 12:40 - 2012-03-31 15:51 - 00000000 ___RD C:\Documents and Settings\hehe008\「开始」菜单\程序
2016-10-13 13:07 - 2012-03-31 16:06 - 00021384 _____ C:\Documents and Settings\hehe008\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2016-10-13 09:50 - 2005-12-16 16:08 - 00100640 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-12 14:24 - 2016-09-06 20:33 - 00000000 ____D C:\Documents and Settings\ks\Local Settings\Temp

==================== Files in the root of some directories =======

2012-03-31 15:51 - 2005-12-16 16:53 - 0000128 _____ () C:\Documents and Settings\hehe008\Local Settings\Application Data\fusioncache.dat

Files to move or delete:
====================
C:\Documents and Settings\downloads\Firefox-Setup-47-0.exe


Some files in TEMP:
====================
C:\Documents and Settings\hehe008\Local Settings\Temp\360safe.exe
C:\Documents and Settings\hehe008\Local Settings\Temp\360sd_min_1204C.exe


==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End of FRST.txt ============================

 

 

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 06-11-2016
Ran by hehe008 (08-11-2016 16:26:36)
Running from C:\Documents and Settings\hehe008\桌面
Microsoft Windows XP Home Edition Service Pack 2 (X86) (2012-03-31 07:51:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2198740228-4002248672-2879504143-500 - Administrator - Enabled)
ASPNET (S-1-5-21-2198740228-4002248672-2879504143-1004 - Limited - Enabled)
Guest (S-1-5-21-2198740228-4002248672-2879504143-501 - Limited - Disabled)
hehe008 (S-1-5-21-2198740228-4002248672-2879504143-1006 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\hehe008
HelpAssistant (S-1-5-21-2198740228-4002248672-2879504143-1005 - Limited - Disabled)
ks (S-1-5-21-2198740228-4002248672-2879504143-1007 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\ks
SUPPORT_388945a0 (S-1-5-21-2198740228-4002248672-2879504143-1002 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: 瑞星杀毒软件 (Enabled - Up to date) {234E4A88-48FA-4220-A994-5323706FF524}
FW: Norton Internet Worm Protection (Disabled) {990F9400-4CEE-43EA-A83A-D013ADD8EA6E}
FW: 瑞星个人防火墙 (Disabled) {B1516B00-2675-4616-9F85-DB53FEB62645}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

360安全浏览器6 (HKU\S-1-5-21-2198740228-4002248672-2879504143-1006\...\360se6) (Version: 6.3.1.142 - 360安全中心)
Adobe Acrobat 7.0.2 and Reader 7.0.2 Update (HKLM\...\{AC76BA86-0000-7EC8-7489-000000000703}) (Version: 7.0.3 - Adobe Systems)
Adobe Acrobat 7.0.3 and Reader 7.0.3 Update (HKLM\...\{AC76BA86-0000-7EC8-7489-000000000704}) (Version: 7.0.4 - Adobe Systems)
Adobe Reader 7.0 - Chinese Simplified (HKLM\...\{AC76BA86-7AD7-2052-7B44-A70000000000}) (Version: 007.000.000 - Adobe Systems Incorporated)
ByteFence Anti-Malware (HKLM\...\ByteFence) (Version: 2.5.0.0 - Byte Technologies LLC) <==== ATTENTION
DVgate Plus (HKLM\...\{685BCC47-B8EC-45EC-BBCE-77DF2451502C}) (Version:  - )
Free Flash Player 2.6 (HKLM\...\{58530882-1634-45DB-B64E-F895C1C3371D}}_is1) (Version: 2.6 - DVDVideoMedia, Inc.)
HDAUDIO SoftV92 Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_20030003) (Version:  - )
High Definition Audio Driver Package - KB835221 (HKLM\...\KB835221WXP) (Version: 20040219.000000 - Microsoft Corporation)
Image Converter 2 Plus (HKLM\...\{63B8FB69-A1B6-425D-B67D-5257B7A1F663}) (Version: 2.2.01 - Sony Corporation)
Intel® Graphics Media Accelerator Driver for Mobile (HKLM\...\{8A708DD8-A5E6-11D4-A706-000629E95E20}) (Version: 6.14.10.4363 - )
Intel® PROSet/Wireless Software (HKLM\...\ProInst) (Version:  - Intel Corporation)
InterVideo WinDVD for VAIO (HKLM\...\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}) (Version: 5.0-B11.739 - InterVideo Inc.)
InterVideo WinDVDX (HKLM\...\{1A91D1FA-B9B3-4556-9878-5C61059A19B2}) (Version:  - InterVideo Inc.)
Kingsoft PDF to Word SDK (2.0.1) (HKLM\...\{113B2748-4AD7-425A-AD99-4F618E235550}) (Version: 2.0.1 - Zhuhai Kingsoft Office Software Co.,Ltd)
LAN-Express AS IEEE 802.11 Wireless LAN (HKLM\...\{FCCB0B43-7A6D-49A4-A5B3-B10F592F4EB6}) (Version:  - )
Macromedia Flash Player 8 (HKLM\...\ShockwaveFlash) (Version: 8 - Macromedia)
mCore (Version: 1.31.0000 - Intel Corporation) Hidden
mDriver (Version: 1.31.0000 - Intel) Hidden
Memory Stick Formatter (HKLM\...\{27337663-2619-11D4-99DC-0000F49094C7}) (Version:  - )
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 Chinese (Simplified) Language Pack (HKLM\...\{D573D013-98B8-4DA4-B4B7-F75039B3BE19}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Hotfix (KB886903) (HKLM\...\M886903) (Version:  - )
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft GB18030 Support Package (HKLM\...\{DEBACE7E-5DD1-42DB-AFE7-2B60E7CC80A8}) (Version: 1.0.1 - Microsoft)
mMHouse (Version: 1.31.0000 - Intel Corporation) Hidden
Mozilla Firefox 47.0.2 (x86 en-US) (HKLM\...\Mozilla Firefox 47.0.2 (x86 en-US)) (Version: 47.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 47.0.2.6148 - Mozilla)
mPfMgr (Version: 1.31.0000 - Intel Corporation) Hidden
mProSafe (Version: 9.00.0000 - Intel) Hidden
mWlsSafe (Version: 9.00.0000 - Intel) Hidden
mXML (Version: 1.31.0000 - Intel Corporation) Hidden
MyPC Backup  (HKLM\...\OLBPre) (Version:  - MyPC Backup) <==== ATTENTION
OpenMG Limited Patch 4.3-05-10-05-01 (HKLM\...\OpenMG HotFix4.3-05-09-14-01) (Version:  - )
OpenMG Secure Module 4.3.00 (HKLM\...\InstallShield_{F5E4C38C-73BC-4D44-8BFC-969C2B4DABCA}) (Version: 4.3.00.08302 - Sony Corporation)
OpenMG Secure Module 4.3.00 (Version: 4.3.00.08302 - Sony Corporation) Hidden
PictureGear Studio 2.0 (HKLM\...\{88DA0A52-3372-4803-971A-ADFB961707E8}) (Version:  - )
RaySource 2.5.0.1 (HKLM\...\RaySource) (Version: 2.5.0.1 - RaySource Group)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 1.92 - Realtek Semiconductor Corp.)
Roxio DigitalMedia Audio (HKLM\...\{AB708C9B-97C8-4AC9-899B-DBF226AC9382}) (Version: 2.0.4 - Roxio)
Roxio DigitalMedia Copy (HKLM\...\{B12665F4-4E93-4AB4-B7FC-37053B524629}) (Version: 2.0.4 - Roxio)
Roxio DigitalMedia Data (HKLM\...\{075473F5-846A-448B-BCB3-104AA1760205}) (Version: 2.0.4 - Roxio)
Setting Utility Series (HKLM\...\{59452470-A902-477F-9338-9B88101681BD}) (Version:  - )
SonicStage 3.3 (HKLM\...\{A0EB195B-5876-48E6-879D-33D4B2102610}) (Version: 3.3 - Sony Corporation)
SonicStage Mastering Studio 2.1 (HKLM\...\{BF3B304B-8A18-452D-A19F-6012CA8418D7}) (Version:  - )
SonicStage Mastering Studio Audio Filter (HKLM\...\{AB467B85-4F52-48C2-AEED-0673D00417B0}) (Version:  - )
SonicStage Mastering Studio Audio Filter Custom Preset (HKLM\...\{013E1BA8-C815-4E27-BCB9-D6B1B2E24094}) (Version:  - )
SonicStage Mastering Studio Plugins (HKLM\...\{EE7EB179-5AA2-4B28-AC92-5CBAAF82BA7F}) (Version:  - )
Sony MP4 Shared Library (HKLM\...\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}) (Version: 2.0 - Sony Corporation)
Sony Utilities DLL (HKLM\...\{EF3D45BB-2260-4008-88EA-492E7744A9DF}) (Version:  - )
Sony Video Shared Library (HKLM\...\{BE56FEF0-1A0F-4719-B3AD-34B5087AFA6D}) (Version: 2.0.01 - Sony Corporation)
Step by Step Interactive Training 安全更新程序 (KB898458) (HKLM\...\KB898458) (Version: 20050502.101010 - Microsoft Corporation)
VAIO Anime Wallpaper (HKLM\...\{4E4995F7-182E-4885-A723-729584A4BF79}) (Version:  - )
VAIO Bamboo_1 Wallpaper (HKLM\...\{16DAF316-FB16-472C-8771-CEF37513F7FB}) (Version:  - )
VAIO Camera Utility (HKLM\...\{1417F599-1DBD-4499-9375-B2813E9F890C}) (Version:  - )
VAIO CameraVJ Screen Saver (HKLM\...\{582C5C46-399D-4A9D-AB9F-C36F6FEC85EA}) (Version:  - )
VAIO Control Center (HKLM\...\{FC37C108-821D-4EDE-8F40-D5B497586805}) (Version:  - )
VAIO Entertainment Platform (HKLM\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 1.2.20.10060 - Sony Corporation)
VAIO Event Service (HKLM\...\{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}) (Version: 2.2.00.06130 - Sony Corporation)
VAIO Launcher (Version:  - ) Hidden
VAIO Long Battery Life Wallpaper (HKLM\...\{BBFFB027-7D53-4E1B-95BC-35A2216D1D60}) (Version:  - )
VAIO Manual (HKLM\...\{AA171A69-F942-40DA-AE3A-EA91026A1CAE}) (Version:  - )
VAIO Media 5.0 (HKLM\...\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}) (Version: 5.0.00 - Sony Corporation)
VAIO Media AC3 Decoder 1.0 (HKLM\...\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}) (Version:  - )
VAIO Media Integrated Server 5.0 (HKLM\...\{785EB1D4-ECEC-4195-99B4-73C47E187721}) (Version:  - Sony Corporation)
VAIO Media Redistribution 5.0 (HKLM\...\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}) (Version: 5.0.00 - Sony Corporation)
VAIO Media Registration Tool 5.0 (HKLM\...\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}) (Version: 5.0.00 - Sony Corporation)
VAIO Original Screen Saver (HKLM\...\{1BEF9285-5530-426B-A5F1-5836B95C7EB1}) (Version:  - )
VAIO Original Screen Saver VAIO Cozy Screen SD Wide Contents (HKLM\...\{FB714F13-10C9-48DB-91C9-DDBCCCBF9370}) (Version:  - )
VAIO Update 2 (HKLM\...\{48820099-ED7D-424B-890C-9A82EF00656D}) (Version:  - )
VAIO Zone (HKLM\...\{ED8D39F2-7FFA-45EC-B148-EF2472955BB4}) (Version:  - )
VAIO电源管理 (HKLM\...\{9E319E96-ED8E-4B01-9775-C521A1869A25}) (Version: 1.7.01.10190 - Sony Corporation)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Media Format Runtime (HKLM\...\Windows Media Format Runtime) (Version:  - )
Windows Media Player 10 (HKLM\...\Windows Media Player) (Version:  - )
Windows XP 修补程序 (KB942288-v3) (HKLM\...\KB942288-v3) (Version: 3 - Microsoft Corporation)
Windows XP 修补程序包 - KB307154 (HKLM\...\KB307154) (Version: 20040813.160158 - Microsoft Corporation)
Windows XP 修补程序包 - KB873339 (HKLM\...\KB873339) (Version: 20041117.092459 - Microsoft Corporation)
Windows XP 修补程序包 - KB884018 (HKLM\...\KB884018) (Version: 20040812.132033 - Microsoft Corporation)
Windows XP 修补程序包 - KB884575 (HKLM\...\KB884575) (Version: 20040827.145237 - Microsoft Corporation)
Windows XP 修补程序包 - KB885250 (HKLM\...\KB885250) (Version: 20050118.202711 - Microsoft Corporation)
Windows XP 修补程序包 - KB885835 (HKLM\...\KB885835) (Version: 20041027.181713 - Microsoft Corporation)
Windows XP 修补程序包 - KB885836 (HKLM\...\KB885836) (Version: 20041028.173203 - Microsoft Corporation)
Windows XP 修补程序包 - KB886185 (HKLM\...\KB886185) (Version: 20041021.090540 - Microsoft Corporation)
Windows XP 修补程序包 - KB887472 (HKLM\...\KB887472) (Version: 20041014.162858 - Microsoft Corporation)
Windows XP 修补程序包 - KB887742 (HKLM\...\KB887742) (Version: 20041103.095002 - Microsoft Corporation)
Windows XP 修补程序包 - KB888113 (HKLM\...\KB888113) (Version: 20041116.131036 - Microsoft Corporation)
Windows XP 修补程序包 - KB888239 (HKLM\...\KB888239) (Version: 20041124.162528 - Microsoft Corporation)
Windows XP 修补程序包 - KB888302 (HKLM\...\KB888302) (Version: 20041207.111426 - Microsoft Corporation)
Windows XP 修补程序包 - KB890859 (HKLM\...\KB890859) (Version: 1 - Microsoft Corporation)
Windows XP 修补程序包 - KB891781 (HKLM\...\KB891781) (Version: 20050110.165439 - Microsoft Corporation)
Windows XP 修补程序包 - KB893056 (HKLM\...\KB893056) (Version: 20050126.164313 - Microsoft Corporation)
Windows XP 安全更新 (KB890046) (HKLM\...\KB890046) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB893066) (HKLM\...\KB893066) (Version: 2 - Microsoft Corporation)
Windows XP 安全更新 (KB893756) (HKLM\...\KB893756) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB896358) (HKLM\...\KB896358) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB896422) (HKLM\...\KB896422) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB896423) (HKLM\...\KB896423) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB896428) (HKLM\...\KB896428) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB896688) (HKLM\...\KB896688) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB899587) (HKLM\...\KB899587) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB899589) (HKLM\...\KB899589) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB899591) (HKLM\...\KB899591) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB900725) (HKLM\...\KB900725) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB901017) (HKLM\...\KB901017) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB901214) (HKLM\...\KB901214) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB902400) (HKLM\...\KB902400) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB904706) (HKLM\...\KB904706) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB905414) (HKLM\...\KB905414) (Version: 1 - Microsoft Corporation)
Windows XP 安全更新 (KB905749) (HKLM\...\KB905749) (Version: 1 - Microsoft Corporation)
Windows XP 更新 (KB894391) (HKLM\...\KB894391) (Version: 1 - Microsoft Corporation)
Wireless LAN Starter (HKLM\...\{61D6E4FB-1A62-4EB1-BE56-929B00C155CF}) (Version:  - )
WPS Office (10.1.0.5785) (HKU\S-1-5-21-2198740228-4002248672-2879504143-1006\...\Kingsoft Office) (Version: 10.1.0.5785 - Kingsoft Corp.)
支付宝数字证书组件 2.1.0.0 (HKU\S-1-5-21-2198740228-4002248672-2879504143-1006\...\AlipayCert) (Version: 2.1.0.0 - Alipay.com Co., Ltd.)
瑞星个人防火墙 (HKLM\...\RFW) (Version: 24.00.47.87 - Beijing Rising Information Technology, Inc.)
瑞星杀毒软件 (HKLM\...\RAV) (Version: 23.01.47.14 - Beijing Rising Information Technology, Inc.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020812-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020820-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020821-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020830-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020832-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020900-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020906-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020906-0000-4b30-A977-D214852036FF}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00020907-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{000209F0-0000-4b30-A977-D214852036FF}\InprocServer32 ->  => No File
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{000209FE-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{000209FF-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{000209FF-0000-4b30-A977-D214852036FF}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00024500-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{00024512-0000-0000-C000-000000000046}\InprocServer32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\refedit.dll ()
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{0002CE21-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\mui\default\resource\ksee\EqnEdit.exe (Design Science, Inc.)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\localserver32 -> C:\Documents and Settings\hehe008\Application Data\360se6\Application\360se.exe (360.cn)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{048EB43E-2059-422F-95E0-557DA96038AF}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{08D512D2-7D97-4E22-B7DB-82791106C086}\InprocServer32 -> C:\Documents and Settings\hehe008\Application Data\alipay\cf\alicdo.dll (Alipay)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{17327124-44DF-4166-9735-16583CC4D9F9}\localserver32 -> C:\Documents and Settings\hehe008\Application Data\alipay\cf\alicnotify.exe (Alipay.com)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{18A06B6B-2F3F-4E2B-A611-52BE631B2D22}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{3C18EAE4-BC25-4134-B7DF-1ECA1337DDDC}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{44720441-94BF-4940-926D-4F38FECF2A48}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{44720444-94BF-4940-926D-4F38FECF2A48}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{45540001-5750-5300-4B49-4E47534F4655}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{45540003-5750-5300-4B49-4E47534F4655}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{45540086-5750-5300-4B49-4E47534F4655}\InprocServer32 ->  => No File
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{45540086-5750-5300-4B49-4E47534F4655}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\et.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{4D4E0078-1386-4536-BD05-3E1013F17116}\InprocServer32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\oledefaulthandler.dll (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{64818D10-4F9B-11CF-86EA-00AA00B929E8}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{64818D11-4F9B-11CF-86EA-00AA00B929E8}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{68F33BAF-8D3B-42C1-A36A-32CC190AFFA9}\localserver32 -> C:\Documents and Settings\hehe008\Application Data\alipay\cf\aliccom.exe (alipay.com)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{75D01070-1234-44E9-82F6-DB5B39A47C13}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{76F1F61C-B1BE-43F6-8698-87A13DE1F1B6}\localserver32 -> C:\Documents and Settings\hehe008\Application Data\alipay\cf\alicsrv.exe (alipay.com)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{8A624388-AA27-43E0-89F8-2A12BFF7BCCD}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{912ABC52-36E2-4714-8E62-A8B73CA5E390}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{91493441-5A91-11CF-8700-00AA0060263B}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{91493443-94BF-4940-926D-4F38FECF2A48}\InprocServer32 ->  => No File
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{AA14F9C9-62B5-4637-8AC4-8F25BF29D5A7}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{B722BCCD-4E68-101B-A2BC-00AA00404770}\InprocServer32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\ksoapi.dll (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{CF4F55F4-8F87-4D47-80BB-5808164BB3F8}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{DC020317-E6E2-4A62-B9FA-B3EFE16626F4}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wpp.exe (Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{EB665B3B-10C0-418F-B1AA-8AB5A47DA204}\localserver32 -> C:\Documents and Settings\hehe008\Application Data\alipay\cf\alicupsrv.exe (alipay.com)
CustomCLSID: HKU\S-1-5-21-2198740228-4002248672-2879504143-1006_Classes\CLSID\{F4754C9B-64F5-4B40-8AF4-679732AC0607}\localserver32 -> C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\WpsExternal_hehe008_20161019124103.job => C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\ksolaunch.exe~/wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll
Task: C:\WINDOWS\Tasks\WpsKtpcntrQingTask_hehe008.job => C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\office6\ktpcntr.exeÃqing 10.1.0.5785 xxx server_url=hxxp:/kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html ic_server_url=hxxp:/info.kingsoftstore.com/wpsv6internet/infos.ads
Task: C:\WINDOWS\Tasks\WpsUpdateTask_hehe008.job => C:\Documents and Settings\hehe008\Local Settings\Application Data\Kingsoft\WPS Office\10.1.0.5785\wtoolex\wpsupdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2005-12-19 12:13 - 2005-05-20 17:42 - 00010752 _____ () C:\Program Files\Sony\VAIO Event Service\VESBasePS.dll
2012-03-31 15:54 - 2005-11-28 16:45 - 00040960 _____ () C:\Program Files\Sony\VAIO Camera Utility\VCULib.dll
2005-12-19 12:16 - 2005-09-27 06:59 - 00081920 _____ () C:\Program Files\Sony\SonicStage\SSAAD.exe
2013-03-30 08:45 - 2013-03-30 08:43 - 00104728 ____N () C:\Program Files\Rising\RAV\CMPB.DLL

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2005-12-16 15:02 - 2004-08-17 20:00 - 00000734 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1       localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2198740228-4002248672-2879504143-1006\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\VAIO Anime Wallpaper TrueColor 1280x800.bmp
DNS Servers: 192.168.1.1
Windows Firewall is disabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

StandardProfile\AuthorizedApplications: [C:\Program Files\Yahoo!\Messenger\YPager.exe] => Enabled:Yahoo! Messenger
StandardProfile\AuthorizedApplications: [C:\Program Files\Yahoo!\Messenger\YServer.exe] => Enabled:Yahoo! FT Server
StandardProfile\AuthorizedApplications: [C:\Program Files\Rising\RAV\RavMonD.exe] => Enabled:RAV Service
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\hehe008\Application Data\360se6\Application\360se.exe] => Enabled:360se.exe
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\hehe008\Application Data\360se6\Application\6.3.1.142\360play.exe] => Enabled:360play.exe
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\hehe008\Application Data\360se6\Application\6.3.1.142\download\MiniThunderPlatform.exe] => Enabled:MiniThunderPlatform.exe
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\hehe008\Application Data\360se6\Application\6.3.1.142\installer\seup.exe] => Enabled:seup.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Rising\RFW\ravmond.exe] => Enabled:RFW Service
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)

==================== Restore Points =========================

12-10-2016 15:31:35 系统检查点
13-10-2016 16:09:54 系统检查点
14-10-2016 16:14:17 系统检查点
15-10-2016 19:00:59 系统检查点
16-10-2016 19:23:46 系统检查点
17-10-2016 20:11:03 系统检查点
19-10-2016 13:12:43 系统检查点
20-10-2016 15:52:26 系统检查点
25-10-2016 15:31:01 系统检查点
01-11-2016 18:08:25 系统检查点
02-11-2016 18:59:00 系统检查点
03-11-2016 19:47:22 系统检查点
04-11-2016 20:45:55 系统检查点
05-11-2016 17:46:43 安装了 Windows XP KB942288-v3。
05-11-2016 18:56:22 安装了 Windows XP KB942288-v3。
08-11-2016 14:42:22 系统检查点

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (09/22/2016 11:35:06 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: System, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x800706be

Error: (09/06/2016 08:41:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: 错误应用程序 in_un.exe,版本 0.0.0.0,错误模块 in_un.exe,版本 0.0.0.0,错误地址 0x000042d2。
正在处理 [in_un.exe!ws!] 的特定媒体事件

Error: (08/03/2015 06:19:49 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。

Error: (08/03/2015 06:19:49 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。

Error: (08/03/2015 06:19:49 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。

Error: (08/03/2015 06:19:48 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。

Error: (08/03/2015 06:19:48 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。

Error: (08/03/2015 06:19:48 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。

Error: (08/03/2015 06:19:48 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。

Error: (08/03/2015 06:19:48 PM) (Source: crypt32) (EventID: 11) (User: )
Description: 在 <http://www.download....uthrootstl.cab>从自动更新 cab 提取第三方的根目录列表失败,错误为: 根据当前系统时钟或签署文件中的时间戳验证时要求的证明不在有效期内。


System errors:
=============
Error: (11/08/2016 02:22:46 PM) (Source: Windows Update Agent) (EventID: 16) (User: )
Description: 不能连接: Windows 不能连接到自动更新服务,因此不能按照设置的计划下载并安装更新。Windows 将继续尝试建立连接。

Error: (11/08/2016 02:22:46 PM) (Source: Dhcp) (EventID: 1002) (User: )
Description: 网络地址是 00166F1270BD 的网卡的 IP 地址租约 192.168.1.8 被 DHCP 服务器 0.0.0.0
拒绝(DHCP 服务器发出了 DHCPNACK 消息)。

Error: (11/06/2016 01:24:45 PM) (Source: ipnathlp) (EventID: 32003) (User: )
Description: 网络地址转换器 (NAT) 未能请求内核
模式转换模块的操作。
这可能意味配置不正确、资源不足
或有一个内部错误。
数据是错误代码。

Error: (11/06/2016 12:12:44 PM) (Source: Dhcp) (EventID: 1001) (User: )
Description: 没有为网络地址是 00166F1270BD 的网卡从网络给计算机指派地址
(由 DHCP 服务器指派)。出现了以下错误:
操作已被用户取消。

计算机将继续试图从网络地址(DHCP)服务器获取地址。

Error: (11/06/2016 12:00:13 PM) (Source: Dhcp) (EventID: 1000) (User: )
Description: 计算机丢失了其 IP 地址 192.168.1.103 的租约,该地址
在网络地址为 00166F1270BD 的网卡上。

Error: (11/05/2016 07:11:30 PM) (Source: Dhcp) (EventID: 1001) (User: )
Description: 没有为网络地址是 00166F1270BD 的网卡从网络给计算机指派地址
(由 DHCP 服务器指派)。出现了以下错误:
操作已被用户取消。

计算机将继续试图从网络地址(DHCP)服务器获取地址。

Error: (11/05/2016 07:08:24 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Generate Activation Context 为 C:\Program Files\Rising\RSD\RstoreDll.dll 失败。
参考错误消息: 操作成功完成。
.

Error: (11/05/2016 07:08:24 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Resolve Partial Assembly 为 Microsoft.VC90.CRT 失败。
参考错误消息: 参照的汇编没有安装在系统上。
.

Error: (11/05/2016 07:08:24 PM) (Source: SideBySide) (EventID: 32) (User: )
Description: 找不到附属汇编 Microsoft.VC90.CRT,上一个错误是 参照的汇编没有安装在系统上。

Error: (11/05/2016 07:08:24 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Generate Activation Context 为 C:\Program Files\Rising\RSD\RstoreDll.dll 失败。
参考错误消息: 操作成功完成。
.


==================== Memory info ===========================

Processor:  Intel® Pentium® M processor 1.73GHz
Percentage of memory in use: 41%
Total physical RAM: 2038.11 MB
Available physical RAM: 1191.66 MB
Total Virtual: 3931 MB
Available Virtual: 3059.89 MB

==================== Drives ================================

Drive c: (VAIO) (Fixed) (Total:18.63 GB) (Free:7.37 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive d: (VAIO) (Fixed) (Total:13.96 GB) (Free:9.86 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 37.3 GB) (Disk ID: 9BEB98C8)
Partition 1: (Not Active) - (Size=4.7 GB) - (Type=12)
Partition 2: (Active) - (Size=18.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=14 GB) - (Type=OF Extended)

==================== End of Addition.txt ============================

 

 


  • 0

Advertisements


#2
paws

paws

    WTT Tech Teacher

  • Tech Academy Moderator
  • 612 posts

Hi Urbanmate and welcome to our forums

:welcome:

 

I have read your post carefully and have some bad news for you.

 

1 It is unsafe to run this computer and its Windows XP operating system without taking extra ordinary precautions.

 

2 These extra ordinary precautions would involve never ever connecting it to the Internet, never using it for email, and never ever connecting any data source to it, flash drives. CD/DVD external hard drives etc.

 

3 XP does not have the facility to change the Operating system from Chinese to English ,although there is some limited ability to use English accessed via Control Panel>Regional settings

 

4 Most updates now for Win XP are no longer available there may be copies around but then if you installed it you would need to break the "isolation" of your computer and it is this isolation that is an essential requirement for safe use.

 

The best advice that we can provide is to take the machine out of service and decommission it. Often the extra ordinary precautions necessary reduce the uses to such an extent that it becomes not worthwhile. installing an alternative operating system would be another avenue open to you and one of the many distributions of Linux might be suitable for you. They do have the advantage of being free, safe and reliable, but might take a little while to become familiar with them.

 

Unfortunately there are many Win XP systems in use that are not totally isolated and these are so vulnerable to infection and exploitation and so  themselves become vectors of infection for other folks' computers.

Regards

paws


  • 0

#3
Urbanmate

Urbanmate

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts

Hi Paws

 

Thank you so much for your explanation, and I totally agree, I was little shocked that it was still running XP - but as I mentioned its a laptop supplied for my temporary stay - I did mention some of the factors you said - about it being unsafe since I know that windows stopped all support for XP - but afraid things apparently work a little different here - especially with the language barrier - so im left with this machine - I just thought maybe I could clean it up and speed it up just for my use the next few months, i did consider buying windows 7 or 8 but that would be out of my own pocket and im not sure its worth it and if I would be able to download a English version - as when i go on to some sites they automatically provide the download version, i.e firefox or wps ( i had an old English version on my portable so I could install that and then upgrade to their, hence my word doc and firefox is in English).

 

Many thanks again


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP