OTL Extras logfile created on: 6/23/2010 5:58:42 PM - Run 1 OTL by OldTimer - Version 3.2.7.0 Folder = C:\Documents and Settings\Barbara\My Documents\Download Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 446.00 Mb Total Physical Memory | 69.00 Mb Available Physical Memory | 16.00% Memory free 1.00 Gb Paging File | 1.00 Gb Available in Paging File | 49.00% Paging File free Paging file location(s): C:\pagefile.sys 672 1344 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 74.52 Gb Total Space | 63.44 Gb Free Space | 85.13% Space Free | Partition Type: NTFS D: Drive not present or media not loaded Drive E: | 37.26 Gb Total Space | 35.24 Gb Free Space | 94.57% Space Free | Partition Type: FAT32 F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: HL1000 Current User Name: Barbara Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 90 Days Output = Standard Quick Scan [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = htmlfile] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 "139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\BellSouth\BellSouth Messenger\BstMessenger.exe" = C:\Program Files\BellSouth\BellSouth Messenger\BstMessenger.exe:*:Enabled:BellSouth Messenger -- File not found [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0345520E-2A04-4A36-BC31-353AE87A6092}" = RPS Diagnostic Utility "{0818687F-F41F-496D-9D6D-DB98F147FC62}" = RPS Firewall "{1746EA69-DCB6-4408-B5A5-E75F55439CDF}" = Scan "{179C56A4-F57F-4561-8BBF-F911D26EB435}" = WebReg "{1E164156-3FA1-4389-9B0B-28E88B879639}" = RPS AsRealtime "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform "{212F5777-1190-4DEF-8E4D-6B2F313B45E7}" = PerfectDisk "{295F5142-A223-4164-9A6D-6683C08409FC}" = RPS RpsCore "{2F4BFC9D-17D7-447A-AEA2-467892D876B3}" = RPS App Detector "{310F26F3-C769-48E5-BD0D-53D4366C34CD}" = RPS PopupBlocker "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3DE72179-FEF4-4846-BF82-62CBFC61F8D7}" = RPS Performance Tool "{415CDA53-9100-476F-A7B2-476691E117C7}" = HP Smart Web Printing "{428102E6-8A39-48B9-8389-847F5A44A600}" = MSXML 4.0 "{49F2B650-2D7B-4F59-B33D-346F63776BD3}" = DocProc "{4AA73DA8-8D69-44ED-B5D7-CB815C81F83E}" = RPS Zip "{4D04C9A1-F28C-4F6F-9D66-81BB000693D9}" = BPDSoftware_Ini "{537654FC-556A-4992-BF3D-ADC05E7009DC}" = RPS AntiFraud "{54BB0384-1C33-488F-A95B-877E480D3EDC}" = MSXML 4.0 "{58A2663B-56DC-488F-8E29-D44C6DE053B5}" = RPS Security Cleanup "{5DFDEAAA-E050-482E-A5B6-138CAE53F7BF}" = Radialpoint Security Services "{5E06C076-E4E7-4239-A886-B3D8AC84C166}" = HP Print Diagnostic Utility "{635E5FD4-5AF3-4EFD-8060-FE5113A1ECC1}" = ShowInfo "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder "{67D3F1A0-A1F2-49b7-B9EE-011277B170CD}" = HPProductAssistant "{6F60CD17-EE34-4f77-83B7-F8ADBDC31D46}" = ProductContext "{7A7DC702-DEDE-42A8-8722-B3BA724D546F}" = Fax "{7D11FED9-4214-40A6-A6CA-3CFBAC20DA36}" = RPS Burn "{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder "{88FBDCF4-8ACF-46e6-9C33-231FBA6378D8}" = J3600 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8CE4CB34-8187-42A1-B597-517760BEE8EC}" = BPD_Scan "{904847DA-FBC0-4726-BE73-830FCB9D4E8A}" = RPS Backup "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{978C25EE-5777-46e4-8988-732C297CBDBD}" = Status "{98CB24AD-52FB-DB5F-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 CRT (x86) WinSXS MSM "{99E6E9E1-BBCD-4294-93C6-08537A9E92CB}" = RPS AntiSpyware "{9B1FD9CE-0776-4f0b-A6F5-C6AB7B650CDF}" = Destinations "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A36CD345-625C-4d6c-B3E2-76E1248CB451}" = SolutionCenter "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder "{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.2 "{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9 "{AC82BF06-223B-42AA-A89F-2D3BCD247366}" = RPS Privacy Manager "{B97CF5C3-0487-11D8-A36E-0050BAE317E1}" = DVD Solution "{BAF99E78-879B-4811-BFEF-3CC7057BC00D}" = RPS Ad Blocker "{BE77A81F-B315-4666-9BF3-AE70C0ADB057}" = BufferChm "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C70EF769-8296-4ED0-966F-D624BC6D4927}" = Authentium AntiVirus SDK - 2 "{C716522C-3731-4667-8579-40B098294500}" = Toolbox "{C869F4FF-E5FF-4FBB-9A31-33C23605E170}" = PPSDKRedistributables "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D27F8BF7-61A4-4F0D-A190-9E2CE8C0773B}" = 3600_Help "{D7DF917E-C963-42B4-AD48-837ACA6D8859}" = AT&T Internet Security Suite "{DBEA1034-5882-4A88-8033-81C4EF0CFA29}" = Google Toolbar for Internet Explorer "{E0828692-FD9D-459F-9312-C645C3CA6650}" = HP Photo and Imaging 2.0 - Deskjet Series "{E13A66A4-8A37-451E-B4C5-E60BA0A777E3}" = Preclick PhotoBack Plug-in for HP "{E590FD1C-E8C6-4D2E-8CA9-77B403F7EE01}" = Microsoft Antimalware "{E5E7B0D0-20E1-4B1A-B8C9-B9E2B93DE1DE}" = RPS ParentalControl "{E85A45C2-290F-4C4A-9363-B6399EE648A9}" = RPS AntiVirus "{EB21A812-671B-4D08-B974-2A347F0D8F70}" = HP Photosmart Essential "{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}" = HPSSupply "{ECAD4F6A-0BF3-4028-9C81-E5D9F9606CBA}" = BPDSoftware "{EF98A02A-1748-4762-9B7D-5ED1600520D5}" = Microsoft Security Essentials "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio "{FF075778-6E50-47ed-991D-3B07FD4E3250}" = TrayApp "7-Zip" = 7-Zip 4.65 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "AT&T Yahoo! Browser Configuration" = AT&T Yahoo! Browser Configuration "CCleaner" = CCleaner "ERUNT_is1" = ERUNT 1.1j "HP Imaging Device Functions" = HP Imaging Device Functions 8.0 "hp print screen utility" = hp print screen utility "HP Solution Center & Imaging Support Tools" = HP Solution Center 8.0 "HPOCR" = HP OCR Software 8.0 "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft Security Essentials" = Microsoft Security Essentials "Mozilla Firefox (3.6.4)" = Mozilla Firefox (3.6.4) "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "Pretty Good Solitaire_is1" = Pretty Good Solitaire version 11.0.1 "RadialpointClientGateway_is1" = AT&T Internet Security Wizard 1.5.11 "RealPlayer 6.0" = RealPlayer "Revo Uninstaller" = Revo Uninstaller 1.85 "Second Nature - Home for the Holidays" = Second Nature - Home for the Holidays "SystemRequirementsLab" = System Requirements Lab "VIA/S3G Display Driver" = VIA/S3G Display Driver "VIA/S3G UniChrome Family Win2K/XP/Server2003 Display" = VIA/S3G Display Driver "VN_VUIns_Rhine_VIA" = VIA Rhine-Family Fast Ethernet Adapter "Windows Media Format Runtime" = Windows Media Format Runtime "Windows Media Player" = Windows Media Player 10 "Windows XP Service Pack" = Windows XP Service Pack 3 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 6/22/2010 9:39:08 PM | Computer Name = HL1000 | Source = HotFixInstaller | ID = 5000 Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb982168, P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.40215.0, P7 install, P8 x86, P9 xp, P10 0. Error - 6/22/2010 9:39:14 PM | Computer Name = HL1000 | Source = HotFixInstaller | ID = 5000 Description = EventType visualstudio8setup, P1 microsoft .net framework 2.0-kb976576, P2 1033, P3 1618, P4 msi, P5 f, P6 9.0.40302.0, P7 install, P8 x86, P9 xp, P10 0. Error - 6/22/2010 9:39:25 PM | Computer Name = HL1000 | Source = HotFixInstaller | ID = 5000 Description = EventType visualstudio8setup, P1 microsoft .net framework 2.0-kb958481, P2 1033, P3 1618, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10 0. Error - 6/22/2010 9:39:36 PM | Computer Name = HL1000 | Source = HotFixInstaller | ID = 5000 Description = EventType visualstudio8setup, P1 microsoft .net framework 2.0-kb974417, P2 1033, P3 1618, P4 msi, P5 f, P6 9.0.40302.0, P7 install, P8 x86, P9 xp, P10 0. Error - 6/22/2010 9:44:03 PM | Computer Name = HL1000 | Source = MsiInstaller | ID = 11921 Description = Product: Authentium AntiVirus SDK - 2 -- Error 1921. Service 'dvpapi' (DvpApi) could not be stopped. Verify that you have sufficient privileges to stop system services. Error - 6/22/2010 9:57:29 PM | Computer Name = HL1000 | Source = ESENT | ID = 623 Description = wuaueng.dll (3056) SUS20ClientDataStore: The version store for this instance (0) has reached its maximum size of 8Mb. It is likely that a long-running transaction is preventing cleanup of the version store and causing it to build up in size. Updates will be rejected until the long-running transaction has been completely committed or rolled back. Possible long-running transaction: SessionId: 0x02540320 Session-context: 0x00000000 Session-context ThreadId: 0x00000BFC Error - 6/22/2010 10:24:40 PM | Computer Name = HL1000 | Source = MsiInstaller | ID = 11719 Description = Product: ProductContext -- Error 1719. The Windows Installer Service could not be accessed. This can occur if you are running Windows in safe mode, or if the Windows Installer is not correctly installed. Contact your support personnel for assistance. Error - 6/22/2010 10:32:02 PM | Computer Name = HL1000 | Source = MsiInstaller | ID = 11921 Description = Product: Authentium AntiVirus SDK - 2 -- Error 1921. Service 'dvpapi' (DvpApi) could not be stopped. Verify that you have sufficient privileges to stop system services. Error - 6/22/2010 10:40:18 PM | Computer Name = HL1000 | Source = MsiInstaller | ID = 11921 Description = Product: Authentium AntiVirus SDK - 2 -- Error 1921. Service 'dvpapi' (DvpApi) could not be stopped. Verify that you have sufficient privileges to stop system services. Error - 6/23/2010 4:34:50 PM | Computer Name = HL1000 | Source = MSSecurityEssentials | ID = 5000 Description = [ System Events ] Error - 6/22/2010 10:27:32 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7022 Description = The dvpapi service hung on starting. Error - 6/22/2010 10:40:18 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7023 Description = The dvpapi service terminated with the following error: %%2147500053 Error - 6/23/2010 2:05:43 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7000 Description = The npkcrypt service failed to start due to the following error: %%2 Error - 6/23/2010 2:07:05 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7022 Description = The dvpapi service hung on starting. Error - 6/23/2010 2:08:09 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7034 Description = The AT&T Internet Security Suite AT&T Firewall service terminated unexpectedly. It has done this 1 time(s). Error - 6/23/2010 2:08:09 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7034 Description = The dvpapi service terminated unexpectedly. It has done this 1 time(s). Error - 6/23/2010 2:08:09 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7034 Description = The CA Pest Patrol Realtime Protection Service service terminated unexpectedly. It has done this 1 time(s). Error - 6/23/2010 2:08:09 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7034 Description = The PDAgent service terminated unexpectedly. It has done this 1 time(s). Error - 6/23/2010 2:08:09 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7034 Description = The PDEngine service terminated unexpectedly. It has done this 1 time(s). Error - 6/23/2010 2:10:58 PM | Computer Name = HL1000 | Source = Service Control Manager | ID = 7000 Description = The npkcrypt service failed to start due to the following error: %%2 < End of report >