Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Home Desktop - Firefox - Server Not Found - Virus? [Closed]


  • Please log in to reply

#106
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
Oh I see.

I'm at work right now... so I will create a new user account at the end of day and get SINO on there.

Thanks again!
  • 0

Advertisements


#107
Artellos

Artellos

    Tech Secretary

  • Global Moderator
  • 3,915 posts
Looking forward to the log :thumbsup:

Regards,
Olrik
  • 0

#108
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
Here you go!

System Investigator by Olrik
Log Created On: 1435_17-07-2012
SINO Version: 3.1.0.0

Total RAM: 3063 MB | Free RAM: 2005 MB | Pagefile Size: 3063 MB
C: | 224906 MB out of 304445 MB Free | Local Fixed Disk
D: | None | CD-ROM Disc
E: | None | CD-ROM Disc
G: | None | CD-ROM Disc

<<<< System Information >>>>

Computer Name: DOLICA
Username: DLee2
Language Setting: ENU
Windows Directory: C:\Windows
Windows Version: Windows 7 Service Pack 1
UAC Status: Off
Windows Mode: Normal

<<<< Startup Items >>>>

[googletalk] - <HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run> - C:\Program Files\Google\Google Talk\googletalk.exe /autostart
[MSC] - <HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run> - "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
[SunJavaUpdateSched] - <HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run> - "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

<<<< MS Services >>>>

Application Experience (AeLookupSvc) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Windows Audio Endpoint Builder (AudioEndpointBuilder) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
Windows Audio (Audiosrv) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
Base Filtering Engine (BFE) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
Computer Browser (Browser) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Cryptographic Services (CryptSvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k NetworkService
Offline Files (CscService) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
DCOM Server Process Launcher (DcomLaunch) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k DcomLaunch
DHCP Client (Dhcp) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
DNS Client (Dnscache) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k NetworkService
Diagnostic Policy Service (DPS) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
Extensible Authentication Protocol (EapHost) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Encrypting File System (EFS) (EFS) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\System32\lsass.exe
Windows Event Log (eventlog) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
COM+ Event System (EventSystem) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Windows Font Cache Service (FontCache) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Group Policy Client (gpsvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Human Interface Device Access (hidserv) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
IKE and AuthIP IPsec Keying Modules (IKEEXT) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
IP Helper (iphlpsvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k NetSvcs
CNG Key Isolation (KeyIso) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\lsass.exe
Server (LanmanServer) - Running [Auto | Stoppable | Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Workstation (LanmanWorkstation) - Running [Auto | Stoppable | Pausable] - C:\Windows\System32\svchost.exe -k NetworkService
TCP/IP NetBIOS Helper (lmhosts) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
Multimedia Class Scheduler (MMCSS) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Windows Firewall (MpsSvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
Microsoft Antimalware Service (MsMpSvc) - Running [Auto | Stoppable | Not_Pausable] - "c:\Program Files\Microsoft Security Client\MsMpEng.exe"
Network Connections (Netman) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
Network List Service (netprofm) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalService
Network Location Awareness (NlaSvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k NetworkService
Network Store Interface Service (nsi) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Program Compatibility Assistant Service (PcaSvc) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
Plug and Play (PlugPlay) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k DcomLaunch
IPsec Policy Agent (PolicyAgent) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
Power (Power) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k DcomLaunch
User Profile Service (ProfSvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Protected Storage (ProtectedStorage) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\lsass.exe
Remote Access Connection Manager (RasMan) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
RPC Endpoint Mapper (RpcEptMapper) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k RPCSS
Remote Procedure Call (RPC) (RpcSs) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k rpcss
Security Accounts Manager (SamSs) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\system32\lsass.exe
Task Scheduler (Schedule) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Secondary Logon (seclogon) - Running [Auto | Stoppable | Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
System Event Notification Service (SENS) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Shell Hardware Detection (ShellHWDetection) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Print Spooler (Spooler) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\spoolsv.exe
Software Protection (sppsvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\sppsvc.exe
SQL Server VSS Writer (SQLWriter) - Running [Auto | Stoppable | Not_Pausable] - "c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
SSDP Discovery (SSDPSRV) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Secure Socket Tunneling Protocol Service (SstpSvc) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Windows Image Acquisition (WIA) (StiSvc) - Running [Auto | Stoppable | Pausable] - C:\Windows\system32\svchost.exe -k imgsvc
Superfetch (SysMain) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
Telephony (TapiSrv) - Running [Manual | Stoppable | Pausable] - C:\Windows\System32\svchost.exe -k NetworkService
Themes (Themes) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Distributed Link Tracking Client (TrkWks) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
Desktop Window Manager Session Manager (UxSms) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
Diagnostic Service Host (WdiServiceHost) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalService
Diagnostic System Host (WdiSystemHost) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
WinHTTP Web Proxy Auto-Discovery Service (WinHttpAutoProxySvc) - Running [Manual | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Windows Management Instrumentation (Winmgmt) - Running [Auto | Stoppable | Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
WLAN AutoConfig (Wlansvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
Windows Media Player Network Sharing Service (WMPNetworkSvc) - Running [Manual | Stoppable | Not_Pausable] - "C:\Program Files\Windows Media Player\wmpnetwk.exe"
Security Center (wscsvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
Windows Search (WSearch) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\SearchIndexer.exe /Embedding
Windows Update (wuauserv) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Windows Driver Foundation - User-mode Driver Framework (wudfsvc) - Running [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
Application Layer Gateway Service (ALG) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\alg.exe
Application Identity (AppIDSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Application Information (Appinfo) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Application Management (AppMgmt) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
ActiveX Installer (AxInstSV) (AxInstSV) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k AxInstSVGroup
BitLocker Drive Encryption Service (BDESVC) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Background Intelligent Transfer Service (BITS) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Bluetooth Support Service (bthserv) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k bthsvcs
Certificate Propagation (CertPropSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Microsoft .NET Framework NGEN v2.0.50727_X86 (clr_optimization_v2.0.50727_32) - Stopped [Disabled | Not_Stoppable | Not_Pausable] - C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
COM+ System Application (COMSysApp) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
Disk Defragmenter (defragsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k defragsvc
Wired AutoConfig (dot3svc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
Windows Media Center Receiver Service (ehRecvr) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\ehome\ehRecvr.exe
Windows Media Center Scheduler Service (ehSched) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\ehome\ehsched.exe
Fax (Fax) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\fxssvc.exe
Function Discovery Provider Host (fdPHost) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Function Discovery Resource Publication (FDResPub) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Windows Presentation Foundation Font Cache 3.0.0.0 (FontCache3.0.0.0) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
Health Key and Certificate Management (hkmsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
HomeGroup Listener (HomeGroupListener) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
HomeGroup Provider (HomeGroupProvider) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
Windows CardSpace (idsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"
PnP-X IP Bus Enumerator (IPBusEnum) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
KtmRm for Distributed Transaction Coordinator (KtmRm) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation
Link-Layer Topology Discovery Mapper (lltdsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalService
Media Center Extender Service (Mcx2Svc) - Stopped [Disabled | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Distributed Transaction Coordinator (MSDTC) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\msdtc.exe
Microsoft iSCSI Initiator Service (MSiSCSI) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Windows Installer (msiserver) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\msiexec.exe /V
Network Access Protection Agent (napagent) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k NetworkService
Netlogon (Netlogon) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\lsass.exe
Net.Tcp Port Sharing Service (NetTcpPortSharing) - Stopped [Disabled | Not_Stoppable | Not_Pausable] - "C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe"
Office Source Engine (ose) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
Peer Networking Identity Manager (p2pimsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServicePeerNet
Peer Networking Grouping (p2psvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServicePeerNet
BranchCache (PeerDistSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k PeerDist
Performance Logs & Alerts (pla) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
PNRP Machine Name Publication Service (PNRPAutoReg) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServicePeerNet
Peer Name Resolution Protocol (PNRPsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServicePeerNet
Quality Windows Audio Video Experience (QWAVE) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Remote Access Auto Connection Manager (RasAuto) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Routing and Remote Access (RemoteAccess) - Stopped [Disabled | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Remote Registry (RemoteRegistry) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k regsvc
Remote Procedure Call (RPC) Locator (RpcLocator) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\locator.exe
Smart Card (SCardSvr) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Smart Card Removal Policy (SCPolicySvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k netsvcs
Windows Backup (SDRSVC) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k SDRSVC
Adaptive Brightness (SensrSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Remote Desktop Configuration (SessionEnv) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Internet Connection Sharing (ICS) (SharedAccess) - Stopped [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
SNMP Trap (SNMPTRAP) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\snmptrap.exe
SPP Notification Service (sppuinotify) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
SQL Server Browser (SQLBrowser) - Stopped [Disabled | Not_Stoppable | Not_Pausable] - "c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
Storage Service (StorSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
Microsoft Software Shadow Copy Provider (swprv) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k swprv
Tablet PC Input Service (TabletInputService) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
TPM Base Services (TBS) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
Remote Desktop Services (TermService) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k NetworkService
Thread Ordering Server (THREADORDER) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Windows Modules Installer (TrustedInstaller) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\servicing\TrustedInstaller.exe
Interactive Services Detection (UI0Detect) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\UI0Detect.exe
Remote Desktop Services UserMode Port Redirector (UmRdpService) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
UPnP Device Host (upnphost) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
Credential Manager (VaultSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\lsass.exe
Virtual Disk (vds) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\vds.exe
Volume Shadow Copy (VSS) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\vssvc.exe
Windows Time (W32Time) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Block Level Backup Engine Service (wbengine) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Windows\system32\wbengine.exe"
Windows Biometric Service (WbioSrvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k WbioSvcGroup
Windows Connect Now - Config Registrar (wcncsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
Windows Color System (WcsPlugInService) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k wcssvc
WebClient (WebClient) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalService
Windows Event Collector (Wecsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k NetworkService
Problem Reports and Solutions Control Panel Support (wercplsupport) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k netsvcs
Windows Error Reporting Service (WerSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k WerSvcGroup
Windows Defender (WinDefend) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k secsvcs
Windows Remote Management (WS-Management) (WinRM) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\System32\svchost.exe -k NetworkService
WMI Performance Adapter (wmiApSrv) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\wbem\WmiApSrv.exe
Parental Controls (WPCSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
Portable Device Enumerator Service (WPDBusEnum) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
WWAN AutoConfig (WwanSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

<<<< Non-MS Services >>>>

SQL Server (ADCENTERDESKTOP) (MSSQL$ADCENTERDESKTOP) - Running [Auto | Stoppable | Pausable] - "c:\Program Files\Microsoft SQL Server\MSSQL10_50.ADCENTERDESKTOP\MSSQL\Binn\sqlservr.exe" -sADCENTERDESKTOP
NVIDIA Display Driver Service (nvsvc) - Running [Auto | Stoppable | Not_Pausable] - C:\Windows\system32\nvvsvc.exe
Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) - Stopped [Auto | Not_Stoppable | Not_Pausable] - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
ElephantDrive-MappedDrive (ElephantDrive-MappedDrive.exe) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Program Files\ElephantDrive\ElephantDrive\ElephantDrive-MappedDrive.exe"
ElephantDrive-Service (ElephantDrive-Service.exe) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Program Files\ElephantDrive\ElephantDrive\ElephantDrive-Service.exe"
Google Update Service (gupdate) (gupdate) - Stopped [Auto | Not_Stoppable | Not_Pausable] - "C:\Program Files\Google\Update\GoogleUpdate.exe" /svc
Google Update Service (gupdatem) (gupdatem) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc
Logitech Bluetooth Service (LBTServ) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
SQL Active Directory Helper Service (MSSQLServerADHelper100) - Stopped [Disabled | Not_Stoppable | Not_Pausable] - "c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE"
Microsoft Network Inspection (NisSrv) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "c:\Program Files\Microsoft Security Client\NisSrv.exe"
Office Software Protection Platform (osppsvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
SQL Server Agent (ADCENTERDESKTOP) (SQLAgent$ADCENTERDESKTOP) - Stopped [Disabled | Not_Stoppable | Not_Pausable] - "c:\Program Files\Microsoft SQL Server\MSSQL10_50.ADCENTERDESKTOP\MSSQL\Binn\SQLAGENT.EXE" -i ADCENTERDESKTOP
Adobe SwitchBoard (SwitchBoard) - Stopped [Manual | Not_Stoppable | Not_Pausable] - "C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
Windows Activation Technologies Service (WatAdminSvc) - Stopped [Manual | Not_Stoppable | Not_Pausable] - C:\Windows\system32\Wat\WatAdminSvc.exe

<<<< Last 5 Application Errors or Warnings >>>>

Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 17-7-12 14:31:14 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

15 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000:
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\My
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\CA
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Root
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\trust
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\SmartCardRoot



Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 12-7-12 15:38:23 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

6 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000:
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\Internet Explorer\Main
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software



Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 11-7-12 3:17:29 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

15 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000:
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\My
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\CA
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Root
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\trust
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 532 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\SmartCardRoot



Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 6-7-12 16:44:44 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

5 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000:
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Root
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\trust
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\SmartCardRoot



Computer Name: Dolica | ID: 1000 | Source: Application Error | Type: Error | Date: 3-7-12 14:4:59 | Log: Application
Message: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d6727a7

Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b60

Exception code: 0xc0000005

Fault offset: 0x0003224d

Faulting process id: 0x72c

Faulting application start time: 0x01cd592e27edddd1

Faulting application path: C:\Windows\Explorer.EXE

Faulting module path: C:\Windows\SYSTEM32\ntdll.dll

Report Id: bf542968-c552-11e1-8140-a4badbfe1b68


<<<< Last 5 System Errors or Warnings >>>>

Computer Name: Dolica | ID: 4001 | Source: Microsoft-Windows-WLAN-AutoConfig | Type: Warning | Date: 17-7-12 14:31:30 | Log: System
Message: WLAN AutoConfig service has successfully stopped.




Computer Name: Dolica | ID: 4001 | Source: Microsoft-Windows-WLAN-AutoConfig | Type: Warning | Date: 12-7-12 15:38:30 | Log: System
Message: WLAN AutoConfig service has successfully stopped.




Computer Name: Dolica | ID: 51 | Source: Disk | Type: Warning | Date: 12-7-12 11:18:44 | Log: System
Message: An error was detected on device \Device\Harddisk2\DR8 during a paging operation.


Computer Name: Dolica | ID: 4001 | Source: Microsoft-Windows-WLAN-AutoConfig | Type: Warning | Date: 11-7-12 15:22:26 | Log: System
Message: WLAN AutoConfig service has successfully stopped.




Computer Name: Dolica | ID: 7000 | Source: Service Control Manager | Type: Error | Date: 11-7-12 15:22:24 | Log: System
Message: The UPnP Device Host service failed to start due to the following error:

%%1069


<<<< Special Events >>>>

There were no special events found

<<<< Ipconfig >>>>

Windows IP Configuration

Host Name . . . . . . . . . . . . : Dolica
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : ASUS 802.11n Network Adapter
Physical Address. . . . . . . . . : 20-CF-30-A1-F4-66
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Local Area Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom NetLink ™ Gigabit Ethernet
Physical Address. . . . . . . . . : A4-BA-DB-FE-1B-68
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::d81c:bd8f:99ea:1ce4%10(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.6(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Tuesday, July 17, 2012 2:32:09 PM
Lease Expires . . . . . . . . . . : Wednesday, July 18, 2012 2:32:08 PM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 245676763
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-15-7A-DD-52-A4-BA-DB-FE-1B-68
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{8CFE3109-674F-420F-AF17-373785DBD5EF}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e76:28ba:13b1:3f57:fef9(Preferred)
Link-local IPv6 Address . . . . . : fe80::28ba:13b1:3f57:fef9%12(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter isatap.{E2C9A0A7-725E-47C3-BF0C-93259201E5BE}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes


<<<< Pinging >>>>

OpenDNS Domain Test
Pinging to www.opendns.com [67.215.92.210]:
Response - 21ms
Response - 23ms
Response - 21ms
Response - 22msPackets: Sent = 4, Received = 4, Lost = 0
Minimum = 21ms - Maximum = 23ms

OpenDNS IP Test
Pinging to 208.69.38.150 [208.69.38.150]:
Response - 19ms
Response - 19ms
Response - 19ms
Response - 20msPackets: Sent = 4, Received = 4, Lost = 0
Minimum = 19ms - Maximum = 20ms

Kaspersky Domain Test
Pinging to www.kaspersky.com [195.27.252.18]:
Response - 183ms
Response - 181ms
Response - 180ms
Response - 180msPackets: Sent = 4, Received = 4, Lost = 0
Minimum = 180ms - Maximum = 183ms

Kaspersky IP Test
Pinging to 195.27.181.10 [195.27.181.10]:
Response - 181ms
Response - 180ms
Response - 178ms
Response - 178msPackets: Sent = 4, Received = 4, Lost = 0
Minimum = 178ms - Maximum = 181ms

YouTube Domain Test
Pinging to www.youtube.com [74.125.224.96]:
Response - 22ms
Response - 23ms
Response - 21ms
Response - 19msPackets: Sent = 4, Received = 4, Lost = 0
Minimum = 19ms - Maximum = 23ms

YouTube IP Test
Pinging to 66.102.9.136 [66.102.9.136]:
Response - None
Response - None
Response - None
Response - NonePackets: Sent = 4, Received = 0, Lost = 4
Minimum = 0ms - Maximum = 0ms

localhost Test
Pinging to 127.0.0.1 [127.0.0.1]:
Response - 0ms
Response - 0ms
Response - 0ms
Response - 0msPackets: Sent = 4, Received = 4, Lost = 0
Minimum = 0ms - Maximum = 0ms


<<<< Routing Table >>>>

===========================================================================
Interface List
14...20 cf 30 a1 f4 66 ......ASUS 802.11n Network Adapter
10...a4 ba db fe 1b 68 ......Broadcom NetLink ™ Gigabit Ethernet
1...........................Software Loopback Interface 1
11...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.6 10
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.6 266
192.168.1.6 255.255.255.255 On-link 192.168.1.6 266
192.168.1.255 255.255.255.255 On-link 192.168.1.6 266
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.6 266
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.6 266
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
12 58 ::/0 On-link
1 306 ::1/128 On-link
12 58 2001::/32 On-link
12 306 2001:0:4137:9e76:28ba:13b1:3f57:fef9/128
On-link
10 266 fe80::/64 On-link
12 306 fe80::/64 On-link
12 306 fe80::28ba:13b1:3f57:fef9/128
On-link
10 266 fe80::d81c:bd8f:99ea:1ce4/128
On-link
1 306 ff00::/8 On-link
12 306 ff00::/8 On-link
10 266 ff00::/8 On-link
===========================================================================
Persistent Routes:
None

<<<< Hosts File >>>>

The HOSTS file is 442125 Bytes in size.

There were 0 lines which refer to an external IP address.



------ End of File ------
  • 0

#109
Artellos

Artellos

    Tech Secretary

  • Global Moderator
  • 3,915 posts
Hmm.. I'm a little stumped here. Going to call in some extra eyes with some more techs. Please hold tight :)

Regards,
Olrik
  • 0

#110
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
I really appreciate all the help I am getting... Thank you!
  • 0

#111
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
Just checking in for updates.
  • 0

#112
Artellos

Artellos

    Tech Secretary

  • Global Moderator
  • 3,915 posts
Hey Daniel,

Sorry I haven't gotten back to you yet. I've had a very busy weekend and I am still investigating/looking for possible solutions. I'm looking at the event viewer information you have given me and I have to say I haven't seen this before. Please hang in tight while I look for some more info! :thumbsup:

Regards,
Olrik
  • 0

#113
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
Should we begin transferring preferences from my old user account to my new user account?

I just routinely downloaded a video via FF and it hung up afterwards...

This is weird... why meee!?
  • 0

#114
Artellos

Artellos

    Tech Secretary

  • Global Moderator
  • 3,915 posts
Feel free to use your original (old) user account while I try to figure this thing out. :)

The user account was just a test and it appears that the new user account did not have the desired effect.

Regards,
Olrik
  • 0

#115
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
Oh darns, I was hoping that would have solved the problem! I'll stand by, thank you!
  • 0

Advertisements


#116
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
... you know one thing I haven't tried is running Windows Update on my Work computer.

I'm on my home computer now and I am trying to run Windows Update and it just hangs. I haven't updated since June 1st, 2012.

This worries me but we're on the subject of fixing my Work Computer. However, I emailed Godawgs to see if he can work with me on my Home computer while this thread is still up...

I appreciate all the support.

Please let me know if we can do both...

This Windows Update not working is stressing me out...
:(
  • 0

#117
Artellos

Artellos

    Tech Secretary

  • Global Moderator
  • 3,915 posts
I'm sure that if you make a second thread for your home computer that you can work on both. To avoid confusion ;)

(P.S. Still looking)

Regards,
Olrik
  • 0

#118
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
Thank you for being responsive, I have since fixed the windows update mishap by scouring the Internets.

However, a new problem arises (when will they stop!).

You know that "status icon" lower right of the screen, windows taskbar area? The icon for an Ethernet Internet connection? Well it shows an "X" but I'm connected to the internet, and also when I right click on it, and "open network and sharing center" it says I am connected... and the internet works fine ... just yeah that little icon shows as if I am not connected. This is on my home computer. I PMed Godawgs and he advised me to post a new thread etc.

Anyway, I'll keep each topic to its own specific thread.

Thanks again!
  • 0

#119
Artellos

Artellos

    Tech Secretary

  • Global Moderator
  • 3,915 posts
Hello Daniel,

While I am looking for some more information I would like to see what the event manager spits out after a few days. Can you run SINO again following the instructions below?

Please download SINO by Artellos.

  • Save SINO to a place you can remember and run SINO.exe. (If you downloaded the ZIP version you will need to extract it first)
  • Then please check the following checkboxes:
    System Info
    Event Log
  • Once checked, hit the Run Scan! button and wait for the program to finish the scan.
  • A notepad window will pop up. Please copy all of the content into your next reply.
Note: If you try to interact with the program once it’s started scanning it might appear to hang. The scan however will continue.

Please let me know how that went :)

Regards,
Olrik
  • 0

#120
Daniel Christmas Lee

Daniel Christmas Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 208 posts
System Investigator by Olrik
Log Created On: 1119_26-07-2012
SINO Version: 3.1.0.0

Total RAM: 3063 MB | Free RAM: 1494 MB | Pagefile Size: 3063 MB
C: | 222626 MB out of 304445 MB Free | Local Fixed Disk
D: | None | CD-ROM Disc
E: | None | CD-ROM Disc
G: | None | CD-ROM Disc

<<<< System Information >>>>

Computer Name: DOLICA
Username: DLee
Language Setting: ENU
Windows Directory: C:\Windows
Windows Version: Windows 7 Service Pack 1
UAC Status: Off
Windows Mode: Normal

<<<< Last 5 Application Errors or Warnings >>>>

Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 24-7-12 15:55:54 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

1 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000_Classes:
Process 2748 (\Device\HarddiskVolume3\Windows\System32\WUDFHost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000_CLASSES



Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 24-7-12 12:38:31 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

15 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000:
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\My
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\CA
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Root
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\trust
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\SmartCardRoot



Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 17-7-12 14:37:9 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

1 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1005:
Process 644 (\Device\HarddiskVolume3\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1005



Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 17-7-12 14:31:14 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

15 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000:
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\My
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\CA
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\Root
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\trust
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\SystemCertificates
Process 528 (\Device\HarddiskVolume3\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\SystemCertificates\SmartCardRoot



Computer Name: Dolica | ID: 1530 | Source: Microsoft-Windows-User Profiles Service | Type: Warning | Date: 12-7-12 15:38:23 | Log: Application
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.



DETAIL -

6 user registry handles leaked from \Registry\User\S-1-5-21-3568101592-3335626919-1504947496-1000:
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\Internet Explorer\Main
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software\Policies
Process 1152 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3568101592-3335626919-1504947496-1000\Software



<<<< Last 5 System Errors or Warnings >>>>

Computer Name: Dolica | ID: 4001 | Source: Microsoft-Windows-WLAN-AutoConfig | Type: Warning | Date: 25-7-12 16:8:27 | Log: System
Message: WLAN AutoConfig service has successfully stopped.




Computer Name: Dolica | ID: 4001 | Source: Microsoft-Windows-WLAN-AutoConfig | Type: Warning | Date: 24-7-12 15:55:57 | Log: System
Message: WLAN AutoConfig service has successfully stopped.




Computer Name: Dolica | ID: 4001 | Source: Microsoft-Windows-WLAN-AutoConfig | Type: Warning | Date: 24-7-12 12:38:35 | Log: System
Message: WLAN AutoConfig service has successfully stopped.




Computer Name: Dolica | ID: 51 | Source: Disk | Type: Warning | Date: 23-7-12 14:30:25 | Log: System
Message: An error was detected on device \Device\Harddisk2\DR6 during a paging operation.


Computer Name: Dolica | ID: 1014 | Source: Microsoft-Windows-DNS-Client | Type: Warning | Date: 23-7-12 11:7:37 | Log: System
Message: Name resolution for the name usera.imagecave.com timed out after none of the configured DNS servers responded.


<<<< Special Events >>>>

There were no special events found



------ End of File ------
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP