OTL Extras logfile created on: 7/24/2013 9:51:06 AM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = E:\ Enterprise Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.16 Gb Total Physical Memory | 2.20 Gb Available Physical Memory | 69.67% Memory free 6.33 Gb Paging File | 5.37 Gb Available in Paging File | 84.91% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 297.80 Gb Total Space | 259.41 Gb Free Space | 87.11% Space Free | Partition Type: NTFS Drive E: | 7.47 Gb Total Space | 7.33 Gb Free Space | 98.20% Space Free | Partition Type: NTFS Computer Name: SCALAP0084 | User Name: TurnerAdmin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\WINDOWS\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\WINDOWS\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .scr [@ = DWGTrueViewScriptFile] -- "" "%1" [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications] "AllowUserPrefMerge" = 1 "Enabled" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications\List] "%programfiles%\Altiris\Aclient\AClntusr.exe" = %programfiles%\Altiris\Aclient\AClntusr.exe "%programfiles%\Microsoft ActiveSync\WCESCOMM.EXE:*:enabled:Connection Manager" = %programfiles%\Microsoft ActiveSync\WCESCOMM.EXE:*:enabled:Connection Manager "%programfiles%\Microsoft Office\Office11\OUTLOOK.EXE:*:enabled:Outlook" = %programfiles%\Microsoft Office\Office11\OUTLOOK.EXE:*:enabled:Outlook "%programfiles%\neoteris\secure application manager\gapsvc.exe:*:enabled:ASM Proxy" = %programfiles%\neoteris\secure application manager\gapsvc.exe:*:enabled:ASM Proxy [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\GloballyOpenPorts] "AllowUserPrefMerge" = 1 "Enabled" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\GloballyOpenPorts\List] "2000:TCP:*:enabled:DA Remote Management" = 2000:TCP:*:enabled:DA Remote Management "2701:TCP:*:enabled:SCCM Remote Control" = 2701:TCP:*:enabled:SCCM Remote Control "2702:TCP:*:enabled:SCCM Remote Control" = 2702:TCP:*:enabled:SCCM Remote Control "2967:TCP:*:enabled:SAV" = 2967:TCP:*:enabled:SAV "33345:UDP:*:Symantec AntiVirus Corporate Edition" = 33345:UDP:*:Symantec AntiVirus Corporate Edition [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\IcmpSettings] "AllowOutboundDestinationUnreachable" = 0 "AllowOutboundSourceQuench" = 0 "AllowRedirect" = 0 "AllowInboundEchoRequest" = 1 "AllowInboundRouterRequest" = 0 "AllowOutboundTimeExceeded" = 0 "AllowOutboundParameterProblem" = 0 "AllowInboundTimestampRequest" = 0 "AllowInboundMaskRequest" = 0 "AllowOutboundPacketTooBig" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\RemoteAdminSettings] "Enabled" = 1 "RemoteAddresses" = [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\Services\FileAndPrint] "Enabled" = 1 "RemoteAddresses" = [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\Services\RemoteDesktop] "Enabled" = 1 "RemoteAddresses" = [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\AuthorizedApplications] "AllowUserPrefMerge" = 1 "Enabled" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\AuthorizedApplications\List] "%programfiles%\Altiris\Aclient\AClntusr.exe" = %programfiles%\Altiris\Aclient\AClntusr.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\GloballyOpenPorts] "AllowUserPrefMerge" = 1 "Enabled" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\GloballyOpenPorts\List] "2000:TCP:*:enabled:DA Remote Management" = 2000:TCP:*:enabled:DA Remote Management "2967:TCP:*:enabled:SAV" = 2967:TCP:*:enabled:SAV [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\RemoteAdminSettings] "Enabled" = 1 "RemoteAddresses" = [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\Services\FileAndPrint] "Enabled" = 1 "RemoteAddresses" = [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01137F58-5AC8-494E-9D43-54736832C9CA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{13FE0A68-84E7-4EEA-B04C-EEAC5D352A3F}" = lport=445 | protocol=6 | dir=in | app=system | "{15FCA4AF-0C99-4E84-A373-531EB885B040}" = rport=138 | protocol=17 | dir=out | app=system | "{221991BE-45A9-48D2-95A5-C3CAC722F643}" = rport=139 | protocol=6 | dir=out | app=system | "{320AF268-9A43-4E25-BCAC-3A7E203004AB}" = lport=139 | protocol=6 | dir=in | app=system | "{56C72116-1FEC-4769-9ED2-592EA5330668}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5D7EBC5F-1A1E-4425-B031-31C2BFA1155D}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | "{68E835D5-6571-4C2F-B1AF-B20C4B1096EF}" = rport=445 | protocol=6 | dir=out | app=system | "{7A0715A4-6BC1-455D-B414-9C322A4C50FA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{82BBBE09-FF2D-41E4-8741-2ACADD0DA599}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{8357D91B-3212-4B26-BBCE-47A7101034ED}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{88D9F294-8ACF-4874-9036-ABB71134AE2B}" = lport=3389 | protocol=6 | dir=in | svc=termservice | app=%systemroot%\system32\svchost.exe | "{8C456D36-FBB3-4219-A3DF-113F82630954}" = rport=137 | protocol=17 | dir=out | app=system | "{9931DE46-2C74-44BF-B142-8D536FAFD0EA}" = lport=137 | protocol=17 | dir=in | app=system | "{CA18EEB0-75F2-4F68-9851-EF8E8C813AFF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{EA3AFD99-E172-4548-AE42-09E02B0E79FD}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe | "{F682C3E4-27C6-428A-BDC1-3E7F254F08C3}" = lport=3389 | protocol=6 | dir=in | app=system | "{FEF4926E-5A90-409E-B878-E2D6BDF588E3}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0173A1C8-6D1C-46B0-B62C-E8ADB6674617}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{232C416F-88F3-4C0C-8BC2-9B4DCD77999F}" = protocol=17 | dir=in | app=c:\program files\common files\symantec shared\ccapp.exe | "{435AEE7D-C735-4821-A67F-A3F09A100A8E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{5315CF10-C53C-4E79-80F6-04D16B4C29CA}" = protocol=17 | dir=in | app=c:\program files\symantec\symantec endpoint protection\smc.exe | "{5D00A13C-9E15-442C-BB79-F9753660CAE4}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version6\teamviewer_service.exe | "{647F6A93-0AAE-4109-8CC4-5B99E5784A0A}" = protocol=6 | dir=in | app=c:\program files\common files\symantec shared\ccapp.exe | "{6F581221-EE01-4281-B810-7E953E7B2373}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version6\teamviewer.exe | "{7218F8E8-B93D-4077-808C-6C7D3330D7DE}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{753CFBB0-ED71-479C-82F0-B4C6C05AF06C}" = protocol=6 | dir=in | app=c:\program files\symantec\symantec endpoint protection\smc.exe | "{7A7F5BD2-BE30-46AE-8714-3753832AA9FF}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version6\teamviewer_service.exe | "{95F79922-AE17-45CB-82C6-8CECFBCBEA8F}" = protocol=6 | dir=in | app=c:\program files\symantec\symantec endpoint protection\snac.exe | "{964EDFF8-46D9-40AF-90B3-8BFDBF635584}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{A1B1AA9E-6F87-48CB-97DE-3E83BFBE837E}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{C7803702-67E6-4CFE-9F24-FA444944F773}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{DA1D4871-22CF-4C2C-8DEF-50BA75018EB7}" = protocol=17 | dir=in | app=c:\program files\symantec\symantec endpoint protection\snac.exe | "{DB782EA6-1823-47EE-91FC-BE843C65D751}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version6\teamviewer.exe | "{F8805FF2-650E-440E-93B4-808C018B723B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{FFF8D729-EE44-41A0-AD34-9E4F08E8DFBF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{0B713FB6-CB84-48C0-88B9-3C839F4AF967}" = GoToMeeting 5.5.1132 IT Installer "{21E247D4-5E27-4BEA-AA4D-19A81203FE2A}" = Turner VPN Client June 2010 "{2609EDF1-34C4-4B03-B634-55F3B3BC4931}" = Configuration Manager Client "{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 14 "{27EFA494-3C6A-4DC1-A3C0-B2A4A9B6B6ED}" = BPC "{2EA870FA-585F-4187-903D-CB9FFD21E2E0}" = DHTML Editing Component "{2EFCC193-D915-4CCB-9201-31773A27BC06}" = Symantec Endpoint Protection "{3544DED1-07DB-40C0-98F3-435A6DA195C7}" = Google SketchUp 8 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3EFE837C-A05E-49EA-81D7-3A167FA8858F}" = Cisco WebEx Meeting Center for Internet Explorer "{41A01180-D9FD-3428-9FD6-749F4C637CBF}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86) "{41E8192A-115B-473E-8FAA-336F8BC85874}" = RxFilters3D "{44D66AD9-AE19-4AFD-BE7E-A1B44C856697}" = MSXML4.0 redistributable "{4E2FDB44-2840-4B09-BAD4-827C465B8226}" = Swiss Fonts "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{6BF1A952-17D0-4C3A-910D-03C7E13ACEDF}" = Meridian Systems Prolog WebSite 2007 R2 Client "{728CFAAF-FBB9-4303-B204-DAB9C92C8DA5}" = CHSTprep V1.0 "{73A98F4D-0234-4897-A9AE-5AF58950A5C1}" = SAP "{7BD3DC6D-A2BE-4345-B6EE-D146193DB18F}" = Online Plug-in "{82965C3C-43ED-4A69-B1D2-FC118197195B}" = Planning and Consolidation Client version for SAP Netweaver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{9CC6F291-506D-450F-9895-93C05142DD27}" = "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0015-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0016-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0018-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-0019-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001A-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001B-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.PROPLUS_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-002C-0409-0000-0000000FF1CE}_Office14.PROPLUS_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010 "{90140000-0044-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-006E-0409-0000-0000000FF1CE}_Office14.PROPLUS_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010 "{90140000-00BA-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}_Office14.PROPLUS_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2010 Primary Interop Assemblies "{90140000-1146-0000-0000-0000000FF1CE}" = Microsoft Office 2010 Primary Interop Assemblies "{92083A9A-549D-4057-88E8-223EA08563FA}" = Cisco AnyConnect VPN Client "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Dell Touchpad "{A47A9101-6EB5-4314-BDA1-297880FBB908}" = Microsoft redistributable runtime DLLs VS2008 SP1(x86) "{AC76BA86-7AD7-1033-7B44-A92000000001}" = Adobe Reader 9.2 "{B4157DE8-01D8-485E-9EE0-FFB021CA76BA}" = Meridian Systems Prolog Website 2007 R2 File Management Control "{B85C9AAB-3F14-4012-82D5-D58E31C3B022}" = Turner Application Updates Dec 2010 "{BEF5B614-5652-49B5-90A0-7F47DABA0E9F}" = LEGATO EmailXtender Shortcut Addin 4.81 "{C78EAC6F-7A73-452E-8134-DBB2165C5A68}" = QuickTime "{CAFECAFE-0013-0001-0126-ABCDEFABCDEF}" = Oracle JInitiator 1.3.1.26 "{CD95F661-A5C4-44F5-A6AA-ECDD91C240B8}" = WinZip 12.1 "{CDAA8E70-36AB-451E-9A6C-23118B5185BD}" = SAPLogon.ini 3_14_12 "{CEC7A786-A9C8-4EF7-BB59-6518E3B3C878}" = vcredist_x86 "{E293D740-690F-4451-A536-F09AEB78B7D1}" = Prolog Submittal Registers "{E30E7561-A466-4393-B8BF-FD93E733EF3C}" = Microsoft Office Live Meeting 2007 "{E42BDBF9-6466-41F5-BD88-E1401DE992C5}" = Turner DeepLinks "{E9459BCF-0982-498B-ABA7-26C34323493F}" = Citrix Presentation Server Client - Web Only "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "CutePDF Writer Installation" = CutePDF Writer 3.0 "InstallShield_{82965C3C-43ED-4A69-B1D2-FC118197195B}" = Planning and Consolidation Client version for SAP Netweaver "LiveUpdate" = LiveUpdate 3.3 (Symantec Corporation) "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Visual Studio 2010 Tools for Office Runtime (x86)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86) "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "RWD Info Pak - Help Launchpad ActiveX" = RWD Info Pak - Help Launchpad ActiveX "SAP_ECL" = ECL Viewer "SAP_JNet" = SAP JNet "SAP_WUS" = SAPSetup Automatic Workstation Update Service "SAPBI" = SAP Business Explorer "SAPGUI710" = SAP GUI for Windows 7.20 "TeamViewer 6 Host" = TeamViewer 6 Host "Turner Screen Saver 2009" = Turner Screen Saver 2009 [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 7/24/2013 12:38:00 PM | Computer Name = SCALAP0084.tcco.org | Source = Application Error | ID = 1000 Description = Faulting application name: RogueKiller.exe, version: 8.6.3.0, time stamp: 0x51e640b7 Faulting module name: ntdll.dll, version: 6.1.7601.17514, time stamp: 0x4ce7b96e Exception code: 0xc0000374 Fault offset: 0x000c37b7 Faulting process id: 0xe24 Faulting application start time: 0x01ce888bc889bd31 Faulting application path: E:\RogueKiller.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: 66cd05a5-f47f-11e2-849c-c01885d9d7ad [ Cisco AnyConnect VPN Client Events ] Error - 6/13/2013 10:16:20 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectMgr::processIfcData File: .\ConnectMgr.cpp Line: 1213 Invoked Function: ConnectMgr :: processIfcData Return Code: -33554423 (0xFE000009) Description: GLOBAL_ERROR_UNEXPECTED Unrecognized content type (Unknown) received. Error - 6/13/2013 10:16:20 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectMgr::processIfcData File: .\ConnectMgr.cpp Line: 1239 Invoked Function: ConnectMgr :: processIfcData Return Code: -33554423 (0xFE000009) Description: GLOBAL_ERROR_UNEXPECTED Unable to process response from access.tcco.com. Error - 6/13/2013 10:16:20 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectMgr::processIfcData File: .\ConnectMgr.cpp Line: 1320 Invoked Function: ConnectMgr::processIfcData Return Code: -33554423 (0xFE000009) Description: GLOBAL_ERROR_UNEXPECTED Unable to contact access.tcco.com. Error - 7/1/2013 8:43:38 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: CTransportWinInet::SendRequest File: .\CTransportWinInet.cpp Line: 1198 Invoked Function: CTransportWinInet::SendRequest Return Code: 12002 (0x00002EE2) Description: The operation timed out Error - 7/1/2013 8:43:38 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectIfc::connect File: .\ConnectIfc.cpp Line: 349 Invoked Function: CTransport::SendRequest Return Code: -29949906 (0xFE37002E) Description: CTRANSPORT_ERROR_TIMEOUT Error - 7/1/2013 8:43:38 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectIfc::TranslateStatusCode File: .\ConnectIfc.cpp Line: 2689 Invoked Function: ConnectIfc::TranslateStatusCode Return Code: -29949906 (0xFE37002E) Description: timeout Error - 7/1/2013 8:43:38 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectMgr::connect File: .\ConnectMgr.cpp Line: 994 Invoked Function: ConnectIfc::connect Return Code: -29949906 (0xFE37002E) Description: CTRANSPORT_ERROR_TIMEOUT Error - 7/1/2013 8:43:38 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectMgr::processIfcData File: .\ConnectMgr.cpp Line: 1213 Invoked Function: ConnectMgr :: processIfcData Return Code: -33554423 (0xFE000009) Description: GLOBAL_ERROR_UNEXPECTED Unrecognized content type (Unknown) received. Error - 7/1/2013 8:43:38 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectMgr::processIfcData File: .\ConnectMgr.cpp Line: 1239 Invoked Function: ConnectMgr :: processIfcData Return Code: -33554423 (0xFE000009) Description: GLOBAL_ERROR_UNEXPECTED Unable to process response from access.tcco.com. Error - 7/1/2013 8:43:38 AM | Computer Name = SCALAP0084.tcco.org | Source = vpnui | ID = 67108866 Description = Function: ConnectMgr::processIfcData File: .\ConnectMgr.cpp Line: 1320 Invoked Function: ConnectMgr::processIfcData Return Code: -33554423 (0xFE000009) Description: GLOBAL_ERROR_UNEXPECTED Unable to contact access.tcco.com. [ System Events ] Error - 7/24/2013 12:31:53 PM | Computer Name = SCALAP0084.tcco.org | Source = Service Control Manager | ID = 7030 Description = The IRQKMACGCZ service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Error - 7/24/2013 12:32:24 PM | Computer Name = SCALAP0084.tcco.org | Source = Service Control Manager | ID = 7009 Description = A timeout was reached (30000 milliseconds) while waiting for the IRQKMACGCZ service to connect. Error - 7/24/2013 12:32:24 PM | Computer Name = SCALAP0084.tcco.org | Source = Service Control Manager | ID = 7000 Description = The IRQKMACGCZ service failed to start due to the following error: %%1053 Error - 7/24/2013 12:32:42 PM | Computer Name = SCALAP0084.tcco.org | Source = Service Control Manager | ID = 7030 Description = The ZGNVZTMP service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Error - 7/24/2013 12:32:46 PM | Computer Name = SCALAP0084.tcco.org | Source = DCOM | ID = 10010 Description = Error - 7/24/2013 12:35:22 PM | Computer Name = SCALAP0084.tcco.org | Source = Service Control Manager | ID = 7034 Description = The ZGNVZTMP service terminated unexpectedly. It has done this 1 time(s). < End of report >