I was being helped by Bio-Hazard but missed the response deadline by a few hours (the computer is not accessible to me daily). He asked for MBAM and the RSIT info file of 10-04-09, which I am also including here. I have the RSIT log file for the same date, but it will not fit in this post.
Thanks for any help you can give.
-Ralph
Here is the HijackThis log file:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:21:19 PM, on 3/27/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\PROGRA~1\MUSICM~1\MUSICM~3\MMDiag.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
C:\WINDOWS\system32\LVComsX.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\MalwareRemovalBot\MalwareRemovalBot.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\SpyCatcher\Protector.exe
C:\Program Files\Linksys\WUSB600N\WUSB600N.exe
C:\Program Files\SpyCatcher\Scheduler daemon.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\ThreatFire\TFTray.exe
C:\Program Files\ThreatFire\TFService.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;*.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ThreatFire] C:\Program Files\ThreatFire\TFTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MalwareRemovalBot] C:\Program Files\MalwareRemovalBot\MalwareRemovalBot.exe -boot
O4 - Startup: Scheduler.lnk = C:\Program Files\SpyCatcher\Scheduler daemon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: SpyCatcher Protector.lnk = C:\Program Files\SpyCatcher\Protector.exe
O4 - Global Startup: Wireless Network Monitor.lnk = C:\Program Files\Linksys\WUSB600N\WUSB600N.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Yahoo! NFL GameChannel StatTracker - http://aud7.sports.sc5.yahoo.com/java/y ... 1010_x.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/viewers/ipixx.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {3DCEC959-378A-4922-AD7E-FD5C925D927F} (Disney Online Games ActiveX Control) - http://disney.go.com/pirates/online/tes ... eGames.cab
O16 - DPF: {556EEC63-31E2-47C3-BF29-DFF799D2FE04} - https://secure.logmein.com/activex/RACtrl.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - http://zone.msn.com/binFramework/v10/ZI ... b32846.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/5m/ ... taller.exe
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O20 - AppInit_DLLs: secuload.dll
O22 - SharedTaskScheduler: IPC Configuration Utility - IPC Configuration Utility - (no file)
O22 - SharedTaskScheduler: Windows Installer Class - {020487CC-FC04-4B1E-863F-D9801796230B} - C:\DOCUME~1\JUDDFA~1\LOCALS~1\Temp\wndutl32.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: ThreatFire - PC Tools - C:\Program Files\ThreatFire\TFService.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
--
End of file - 11703 bytes
Malware Byte's Anti-Malware log:
Microsoft Windows XP Media Center Edition Service Pack 2
5.01 build 2600 Service Pack 2
Username: Judd Fasold
In groups: LOCAL Administrators Everyone Users None INTERACTIVE Authenticated Users
2009/04/10 13:17:03:687: Application Version: 1.9.3337.776
2009/04/10 13:17:03:890: Module Version: 1.0.3330.820
2009/04/10 13:17:03:906: Service Version: 1.9.3337.776
2009/04/10 13:17:03:906: ===============================================================
2009/04/10 13:17:03:906: Switching to PIEInProc.
2009/04/10 13:17:04:015: Checking for bad run key.
2009/04/10 13:17:04:015: Windows directory: C:\WINDOWS
2009/04/10 13:17:04:015: System directory: C:\WINDOWS\system32
2009/04/10 13:17:04:015: Program Files directory: C:\Program Files
2009/04/10 13:17:04:015: Application Data: C:\Documents and Settings\Judd Fasold\Application Data
2009/04/10 13:17:04:015: User Profile: C:\Documents and Settings\Judd Fasold
2009/04/10 13:17:04:015: User Temp: C:\DOCUME~1\JUDDFA~1\LOCALS~1\Temp\
2009/04/10 13:17:04:015: Start Menu: C:\Documents and Settings\Judd Fasold\Start Menu
2009/04/10 13:17:04:015: User Desktop: C:\Documents and Settings\Judd Fasold\Desktop
2009/04/10 13:17:04:015: Common Desktop: C:\Documents and Settings\All Users\Desktop
2009/04/10 13:17:04:015: Common Profile: C:\Documents and Settings\All Users
2009/04/10 13:17:04:015: SID set to: S-1-5-21-1230981282-2714042204-929013444-1005
2009/04/10 13:17:12:546: version was called, but is not defined in this dll version.
2009/04/10 13:17:12:546: Database Version:
2009/04/10 13:17:12:546: version was called, but is not defined in this dll version.
2009/04/10 13:17:12:546: Database Version:
2009/04/10 13:17:24:453: Driver check:
2009/04/10 13:17:24:453: SC manager open.
2009/04/10 13:17:24:453: MalwareRemovalBot not found. Attemping install.
2009/04/10 13:17:24:453: Checking for C:\Program Files\MalwareRemovalBot\FilterDrv\MalwareRemovalBot.inf
2009/04/10 13:17:24:453: StartDriver:
2009/04/10 13:17:24:453: This is a driver version.
2009/04/10 13:17:24:453: Channel: \AntiSpyFilter
2009/04/10 13:17:24:484: SC manager open.
2009/04/10 13:17:24:484: Driver is not connected.
2009/04/10 13:17:24:484: Component check complete.
2009/04/10 13:17:26:656: Parsing command line:
2009/04/10 13:17:26:656: boot
2009/04/10 13:17:26:656: OnitDialog...
2009/04/10 13:17:26:656: Skipping splash screen.
2009/04/10 13:17:29:421: Checking for database update...
2009/04/10 13:18:37:781: Updating Security Center Info: MalwareRemovalBot, C:\Program Files\MalwareRemovalBot\MalwareRemovalBot.exe, 1, 1
2009/04/10 13:18:38:046: ConnectServer: service
2009/04/10 13:18:38:062: Database Version: 11.4.0 1239214911
2009/04/10 13:18:38:859: Database Version: 11.4.0 1239214911
2009/04/10 13:20:01:515: Start Scan
2009/04/10 13:20:01:515: Scan options:
2009/04/10 13:20:01:515: Scan Active Processes
2009/04/10 13:20:01:515: Scan Windows Registry
2009/04/10 13:20:01:515: Scan Cookies
2009/04/10 13:20:01:515: Scan Files
2009/04/10 13:20:01:515: Clearing Volatile Lists.
2009/04/10 13:20:01:593: 32-bit Winsock LSP Map:
2009/04/10 13:20:01:593: No LSPs are installed
2009/04/10 13:20:06:656: Entering Process Scan
2009/04/10 13:20:06:906: \systemroot\system32\smss.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/10 13:20:07:109: \??\c:\windows\system32\csrss.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/10 13:20:08:390: \??\c:\windows\system32\winlogon.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/10 13:21:22:437: Completed Process Scan
2009/04/10 13:21:22:437: PreDbScan
2009/04/10 13:21:22:578: ResultAdded[39583]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:593: ResultAdded[17]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:625: ResultAdded[582163]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:687: ResultAdded[66]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:750: ResultAdded[538634]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:765: ResultAdded[25147]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:781: ResultAdded[82]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:859: ResultAdded[110]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:22:968: ResultAdded[154]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:23:187: ResultAdded[527874]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:23:421: ResultAdded[550076]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:23:437: ResultAdded[319]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:23:750: ResultAdded[432]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:23:890: ResultAdded[464]: Tracking Cookie, Tracking Cookie
2009/04/10 13:21:36:609: 32-bit Winsock LSP Map:
2009/04/10 13:21:36:609: No LSPs are installed
2009/04/10 13:21:36:609: 32-bit Winsock LSP Map:
2009/04/10 13:21:36:609: No LSPs are installed
2009/04/10 13:21:36:609: 32-bit Winsock LSP Map:
2009/04/10 13:21:36:609: No LSPs are installed
2009/04/10 13:21:46:640: DeepScan
2009/04/10 13:21:46:640: IsBadEnough calculation:
2009/04/10 13:21:46:640: IsBadEnough: 0
2009/04/10 13:21:46:640: OptDeepScan: 0
2009/04/10 13:21:46:640: OptDeepScanScheduleScan: 1
2009/04/10 13:21:46:640: OptScheduleScan: 0
2009/04/10 13:21:46:640: PostScan
2009/04/10 13:21:46:750: Saving scan results...
2009/04/10 13:21:46:765: Building result tree.
2009/04/10 13:21:59:328: Quarantining items: debug version 1.0
2009/04/10 13:21:59:328: Selecting quarantine folder: C:\Documents and Settings\Judd Fasold\Application Data\MalwareRemovalBot\Quarantine\10-04-2009-13-21-59
2009/04/10 13:21:59:328: Component check complete.
2009/04/10 13:21:59:328: Posting rs.dat...
2009/04/10 13:21:59:671: Thread created.
2009/04/10 13:21:59:687: PreQuarantine
2009/04/10 13:21:59:718: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@ad.yieldmanager[2].txt
2009/04/10 13:21:59:718: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@iacas.adbureau[1].txt
2009/04/10 13:21:59:718: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@ads.pointroll[1].txt
2009/04/10 13:21:59:734: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@advertising[2].txt
2009/04/10 13:21:59:734: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@apmebf[2].txt
2009/04/10 13:21:59:734: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@ask[2].txt
2009/04/10 13:21:59:734: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@atdmt[1].txt
2009/04/10 13:21:59:734: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@ads.bridgetrack[2].txt
2009/04/10 13:21:59:750: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@doubleclick[1].txt
2009/04/10 13:21:59:750: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@insightexpressai[1].txt
2009/04/10 13:21:59:765: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@quantserve[2].txt
2009/04/10 13:21:59:765: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@questionmarket[1].txt
2009/04/10 13:21:59:765: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@webtrends.clubspaces[1].txt
2009/04/10 13:21:59:765: Cookie item: Path: C:\Documents and Settings\Judd Fasold\Cookies\judd_fasold@zedo[1].txt
2009/04/10 13:21:59:765: PostQuarantine
2009/04/10 13:21:59:765: Entering Permission Fix
2009/04/10 13:21:59:828: LSPFix v1.7: Running FixAll
2009/04/10 13:22:00:093: Database Version: 11.4.0 1239214911
2009/04/10 13:22:06:718: Database Version: 11.4.0 1239214911
2009/04/10 13:22:25:625: Component check complete.
2009/04/10 13:23:26:531: Start Scan
2009/04/10 13:23:26:531: Scan options:
2009/04/10 13:23:26:531: Scan Active Processes
2009/04/10 13:23:26:531: Scan Windows Registry
2009/04/10 13:23:26:531: Scan Cookies
2009/04/10 13:23:26:531: Scan Files
2009/04/10 13:23:26:531: Deep Scan
2009/04/10 13:23:26:531: Scan All Drives
2009/04/10 13:23:26:531: Clearing Volatile Lists.
2009/04/10 13:23:26:593: 32-bit Winsock LSP Map:
2009/04/10 13:23:26:593: No LSPs are installed
2009/04/10 13:23:27:468: Entering Process Scan
2009/04/10 13:23:27:718: \systemroot\system32\smss.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/10 13:23:27:890: \??\c:\windows\system32\csrss.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/10 13:23:29:000: \??\c:\windows\system32\winlogon.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/10 13:24:27:000: Completed Process Scan
2009/04/10 13:24:27:000: PreDbScan
2009/04/10 13:24:39:187: 32-bit Winsock LSP Map:
2009/04/10 13:24:39:187: No LSPs are installed
2009/04/10 13:24:39:187: 32-bit Winsock LSP Map:
2009/04/10 13:24:39:187: No LSPs are installed
2009/04/10 13:24:39:187: 32-bit Winsock LSP Map:
2009/04/10 13:24:39:187: No LSPs are installed
2009/04/10 13:24:48:171: DeepScan
2009/04/10 13:24:48:171: IsBadEnough calculation:
2009/04/10 13:24:48:171: IsBadEnough: 0
2009/04/10 13:24:48:171: OptDeepScan: 1
2009/04/10 13:24:48:171: OptDeepScanScheduleScan: 1
2009/04/10 13:24:48:171: OptScheduleScan: 0
2009/04/10 13:24:48:171: Start Deep Scanning - c:
2009/04/10 16:14:35:609: PostScan
2009/04/11 03:00:04:535: Start Scheduled Scan
2009/04/11 03:00:04:675: Start Scan
2009/04/11 03:00:04:675: Scan options:
2009/04/11 03:00:04:675: Scan Active Processes
2009/04/11 03:00:04:675: Scan Windows Registry
2009/04/11 03:00:04:675: Scan Cookies
2009/04/11 03:00:04:675: Scan Files
2009/04/11 03:00:04:675: Deep Scan
2009/04/11 03:00:04:675: Scan All Drives
2009/04/11 03:00:04:675: Clearing Volatile Lists.
2009/04/11 03:00:04:816: 32-bit Winsock LSP Map:
2009/04/11 03:00:04:816: No LSPs are installed
2009/04/11 03:00:10:050: Entering Process Scan
2009/04/11 03:00:10:441: \systemroot\system32\smss.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/11 03:00:10:660: \??\c:\windows\system32\csrss.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/11 03:00:12:003: \??\c:\windows\system32\winlogon.exe scan aborted ... Reason: unable to open or create the file specified
2009/04/11 03:01:52:082: Completed Process Scan
2009/04/11 03:01:52:082: PreDbScan
2009/04/11 03:01:52:160: ResultAdded[39583]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:52:222: ResultAdded[582163]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:52:285: ResultAdded[66]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:52:363: ResultAdded[82]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:52:566: ResultAdded[154]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:52:785: ResultAdded[527874]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:53:050: ResultAdded[550076]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:53:050: ResultAdded[319]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:53:253: ResultAdded[526442]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:53:378: ResultAdded[432]: Tracking Cookie, Tracking Cookie
2009/04/11 03:01:53:519: ResultAdded[464]: Tracking Cookie, Tracking Cookie
2009/04/11 03:02:05:472: ResultAdded[44354]: Browser Helper Object, My Web Search
2009/04/11 03:02:05:597: 32-bit Winsock LSP Map:
2009/04/11 03:02:05:597: No LSPs are installed
2009/04/11 03:02:05:597: 32-bit Winsock LSP Map:
2009/04/11 03:02:05:597: No LSPs are installed
2009/04/11 03:02:05:597: 32-bit Winsock LSP Map:
2009/04/11 03:02:05:597: No LSPs are installed
2009/04/11 03:02:16:003: DeepScan
2009/04/11 03:02:16:003: IsBadEnough calculation:
2009/04/11 03:02:16:003: IsBadEnough: 1
2009/04/11 03:02:16:003: OptDeepScan: 1
2009/04/11 03:02:16:003: OptDeepScanScheduleScan: 1
2009/04/11 03:02:16:003: OptScheduleScan: 1
2009/04/11 03:02:16:003: Start Deep Scanning - c:
2009/04/11 06:02:38:707: PostScan
2009/04/11 06:02:38:738: Contacting AntispywareNet...
2009/04/11 06:02:38:769: Checking Startup in HKEY_LOCAL_MACHINE
2009/04/11 06:02:38:847: Saving scan results...
2009/04/11 06:02:39:066: Building result tree.
2009/04/11 06:02:39:816: Checking Startup in HKEY_CURRENT_USER
2009/04/11 06:02:40:566: Checking Services
2009/04/11 06:02:50:457: Checking Shared Task Scheduler
2009/04/11 06:02:50:550: Checking Shell Service Object Delay Load
2009/04/11 06:02:51:378: Checking Browser Helper Objects
2009/04/11 06:02:51:800: Checking IE Toolbars
2009/04/11 06:02:51:800: Checking Auto Loading Programs
2009/04/11 06:02:51:800: Checking WinLogon
2009/04/11 06:02:52:785: Saving Md5 list
2009/04/11 09:35:59:097: Saving scan results...
2009/04/11 09:35:59:191: Building result tree.
2009/04/11 09:36:02:863: Component check complete.
RSIT info file:
info.txt logfile of random's system information tool 1.06 2009-04-10 17:19:45
======Uninstall list======
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205}
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {AB708C9B-97C8-4AC9-899B-DBF226AC9382}
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {B12665F4-4E93-4AB4-B7FC-37053B524629}
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->MsiExec.exe /I{95D9B4D8-B091-4fab-80EA-313EB4B82FD6}
-->MsiExec.exe /I{EB997E90-5EB0-4eb5-90D0-90B1D2F0CA03}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
3DVIA player 4.1-->MsiExec.exe /X{4E868D3D-6EEB-4273-926C-2287236B5B79}
Acrobat.com-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe -uninstall com.adobe.mauby 4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
Acrobat.com-->MsiExec.exe /I{77DCDCE3-2DED-62F3-8154-05E745472D07}
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{00203668-8170-44A0-BE44-B632FA4D780F}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 7.0.7-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
AnswerWorks 4.0 Runtime - English-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7DD9A065-2C86-4A9F-A5FF-796EC1B99DCA}\setup.exe" -l0x9 -removeonly
AnswerWorks 5.0 English Runtime-->MsiExec.exe /I{9E5A03E3-6246-4920-9630-0527D5DA9B07}
AOLIcon-->MsiExec.exe /I{62BD0AE0-4EB1-4BBB-8F43-B6400C8FEB2C}
Apple Mobile Device Support-->MsiExec.exe /I{EC4455AB-F155-4CC1-A4C5-88F3777F9886}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Arthur's Kindergarten-->C:\Program Files\The Learning Company\Arthur's Kindergarten\uninstall.exe
Ask Toolbar-->"C:\Program Files\AskBarDis\unins000.exe"
Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}
Caillou Ready To Read-->C:\PROGRA~1\BRIGHT~1\CAILLO~1\UNWISE.EXE C:\PROGRA~1\BRIGHT~1\CAILLO~1\INSTALL.LOG
Citrix ICA Client-->C:\WINDOWS\ISUNINST.EXE -fC:\PROGRA~1\Citrix\ICACLI~1\Uninst.isu -cC:\PROGRA~1\Citrix\ICACLI~1\uninstpn.dll
Citrix Presentation Server Client-->MsiExec.exe /I{2624B680-02BC-4CBC-839C-DA20DF6EF6EC}
Corel Photo Album 6-->MsiExec.exe /X{8A9B8148-DDD7-448F-BD6C-358386D32354}
Dell Digital Jukebox Driver-->C:\Program Files\Dell\Digital Jukebox Drivers\DrvUnins.exe /s
Dell Driver Reset Tool-->MsiExec.exe /I{5905F42D-3F5F-4916-ADA6-94A3646AEE76}
DellSupport-->MsiExec.exe /X{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}
Disney Pirates of the Caribbean Online-->C:\Program Files\Disney\Disney Online\PiratesOnline\uninst.exe
EducateU-->MsiExec.exe /I{A683A2C0-821C-486F-858C-FA634DB5E864}
Fisher-Price® - Toddler-->E:\setup.exe -funinst.ins
Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
HP Customer Participation Program 10.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Imaging Device Functions 10.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
hp instant support-->C:\PROGRA~1\HEWLET~1\hpis\UNINST~1.EXE t /s CeS
hp officejet 6100 series-->MsiExec.exe /X{12BB7942-1E1F-43D9-B441-4668C1629425}
hp officejet 6100 series-->rundll32 hpzcon07.dll,VendorJettison hp officejet 6100 series
HP Photo and Imaging 2.0 - All-in-One Drivers-->MsiExec.exe /X{6ECB39BD-73C2-44DD-B1A0-898207C58D8B}
HP Photo and Imaging 2.0 - All-in-One-->MsiExec.exe /X{9867A917-5D17-40DE-83BA-BEA5293194B1}
HP Photo and Imaging 2.0 - hp officejet 6100 series-->C:\Program Files\Hewlett-Packard\Digital Imaging\{7C8BB31C-E09E-4c7d-BBF1-45E33B467FE1}\Setup\hpzscr01.exe -datfile hposcr02.dat -forcereboot
HP Photosmart C4400 All-In-One Driver Software 10.0 Rel .3-->C:\Program Files\Hewlett-Packard\Digital Imaging\{FF1F4E8E-A833-4c4b-A14A-45D5B841B5D8}\setup\hpzscr01.exe -datfile hposcr29.dat -onestop
HP Photosmart Essential 2.5-->C:\Program Files\Hewlett-Packard\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Smart Web Printing-->C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpzscr01.exe -datfile hpqbud15.dat
HP Solution Center 10.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{FE57DE70-95DE-4B64-9266-84DA811053DB}
Intel(R) 537EP V9x DF PCI Modem-->rundll32 IntelCci.dll,iSMUninstallation "Intel(R) 537EP V9x DF PCI Modem"
Intel(R) Graphics Media Accelerator Driver-->RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_2782 PCI\VEN_8086&DEV_2582
Intel(R) PRO Network Connections Drivers-->Prounstl.exe
Intel(R) PROSet for Wired Connections-->MsiExec.exe /I{83F793B5-8BBF-42FD-A8A6-868CB3E2AAEA}
iPod for Windows 2005-03-23-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{44A537A5-859C-43A6-8285-C0668142A090} /l1033
iPod for Windows 2005-09-23-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{D4936AAF-FFD0-44A1-A7EA-A2DB41CEB5BC}
iPod for Windows 2005-10-12-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{D9F4A9F8-92C5-4289-9D04-F0F8F02D580A} /l1033
iTunes-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{501BADCD-F8F7-44CB-AC3F-6ED25C1A28B5} /l1033
iTunes-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{78F4DFCE-1336-4027-BCB2-1A00C24A8653} /l1033
iTunes-->MsiExec.exe /I{318AB667-3230-41B5-A617-CB3BF748D371}
Java 2 Runtime Environment, SE v1.4.2_03-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142030}
Java 2 Runtime Environment, SE v1.4.2-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142000}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Kid Pix Deluxe 3-->C:\Program Files\Broderbund\Kid Pix Deluxe 3\uninstal.exe
Learn2 Player (Uninstall Only)-->C:\Program Files\Learn2.com\StRunner\stuninst.exe
Lernout & Hauspie TruVoice American English TTS Engine-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\tv_enua.inf, Uninstall
Linksys Dual-Band Wireless-N USB Network Adapter-->C:\Program Files\InstallShield Installation Information\{90EC11E4-854E-4C0F-9B4C-76D6C7CF7C68}\setup.exe -runfromtemp -l0x0409
Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\Setup.exe" -l0x9 UNINSTALL
Logitech Print Service-->C:\PROGRA~1\Logitech\PRINTS~1\UNWISE.EXE C:\PROGRA~1\Logitech\PRINTS~1\INSTALL.LOG
Logitech QuickCam Software-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C43048A9-742C-4DAD-90D2-E3B53C9DB825}\setup.exe" -l0x9
Logitech® Camera Driver-->"C:\Program Files\Common Files\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
MalwareRemovalBot-->MsiExec.exe /X{D99E0D81-11B1-4926-A705-A467850E1843}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office 2000 SR-1 Disc 2-->MsiExec.exe /I{00040409-78E1-11D2-B60F-006097C998E7}
Microsoft Office XP Professional-->MsiExec.exe /I{91110409-6000-11D3-8CFE-0050048383C9}
Microsoft Plus! Digital Media Edition Installer-->MsiExec.exe /X{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}
Microsoft Plus! Photo Story 2 LE-->MsiExec.exe /X{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}
Microsoft Silverlight-->MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft VGX Q833989-->C:\WINDOWS\vgxuninst.exe C:\WINDOWS\INF\Q833989.inf
Modem Event Monitor-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7A0EFAFB-AC4B-4B88-8C6B-6731BE88DB68}\setup.exe" -l0x9
Modem Helper-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F142D56-3326-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
Modem On Hold-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanelAnyText
MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
Musicmatch for Windows Media Player-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E93E5EF6-D361-481E-849D-F16EF5C78EBC}\setup.exe" -l0x9 remove
Musicmatch® Jukebox-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85D3CC30-8859-481A-9654-FD9B74310BEF}\setup.exe" -l0x9 -uninst
Napster Burn Engine-->MsiExec.exe /I{8DCE550C-CA43-4E82-92DF-FFC4A48F5BE1}
netMarket-->E:\netmarkt\netmarkt\setup.exe -fNETMKTUN.ins
Norton Security Scan-->MsiExec.exe /I{48B82226-75E3-4E90-92CC-D30F79EA6380}
OCR Software by I.R.I.S. 10.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
PowerDVD 5.5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
Quicken 2005-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{2DBE41DD-2129-4C65-A3D3-5647236A60F3} anything
QuickTime-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{929408E6-D265-4174-805F-81D1D914E2A4} /l1033
QuickTime-->MsiExec.exe /I{F958CA02-BB40-4007-894B-258729456EE4}
Reader Rabbit 1st Grade-->C:\WINDOWS\TLCUninstall.exe -f "C:\Program Files\The Learning Company\Reader Rabbit 1st Grade\Uninstall.xml"
RealPlayer Basic-->C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Security Update for Windows Internet Explorer 7 (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB933566)-->"C:\WINDOWS\ie7updates\KB933566-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB937143)-->"C:\WINDOWS\ie7updates\KB937143-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
Security Update for Windows XP (KB921503)-->"C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923810)-->"C:\WINDOWS\$NtUninstallKB923810$\spuninst\spuninst.exe"
Security Update for Windows XP (KB933729)-->"C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
Security Update for Windows XP (KB936021)-->"C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
Security Update for Windows XP (KB937894)-->"C:\WINDOWS\$NtUninstallKB937894$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938829)-->"C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941202)-->"C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941568)-->"C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941644)-->"C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941693)-->"C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"
Security Update for Windows XP (KB943055)-->"C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"
Security Update for Windows XP (KB943460)-->"C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
Security Update for Windows XP (KB943485)-->"C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
Security Update for Windows XP (KB944653)-->"C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
Security Update for Windows XP (KB945553)-->"C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946026)-->"C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB948590)-->"C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"
Security Update for Windows XP (KB948881)-->"C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950749)-->"C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Shockwave-->C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
Shop for HP Supplies-->C:\Program Files\Hewlett-Packard\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
Sonic DLA-->MsiExec.exe /I{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
Sonic Encoders-->MsiExec.exe /I{9941F0AA-B903-4AF4-A055-83A9815CC011}
Sonic MyDVD LE-->MsiExec.exe /I{21657574-BD54-48A2-9450-EB03B2C7FC29}
Sonic RecordNow Audio-->MsiExec.exe /I{AB708C9B-97C8-4AC9-899B-DBF226AC9382}
Sonic RecordNow Copy-->MsiExec.exe /I{B12665F4-4E93-4AB4-B7FC-37053B524629}
Sonic RecordNow Data-->MsiExec.exe /I{075473F5-846A-448B-BCB3-104AA1760205}
Sonic Update Manager-->MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
SpyCatcher 2007-->"C:\Program Files\SpyCatcher\unins000.exe"
ThreatFire-->"C:\Program Files\ThreatFire\unins000.exe"
TurboTax 2008 WinPerFedFormset-->MsiExec.exe /I{7570F1CA-016D-46AC-B586-CD74645EFB52}
TurboTax 2008 WinPerProgramHelp-->MsiExec.exe /I{E6D9BC25-0DBC-4368-8E4A-7DEE80661CD9}
TurboTax 2008 WinPerReleaseEngine-->MsiExec.exe /I{88214092-836F-4E22-A5AC-569AC9EE6A0F}
TurboTax 2008 WinPerTaxSupport-->MsiExec.exe /I{B23726CF-68BF-41A6-A4EB-72F12F87FE05}
TurboTax 2008 WinPerUserEducation-->MsiExec.exe /I{29521505-F489-4822-ADFA-32C6DEE4F114}
TurboTax 2008 wrapper-->MsiExec.exe /I{B1DB1AD8-C07E-4052-81A1-D2930232BA70}
TurboTax 2008 wvaiper-->MsiExec.exe /I{20CFBF87-73BD-4EC5-80B4-9C894126BD14}
TurboTax 2008-->C:\Program Files\TurboTax\Deluxe 2008\Installer\TurboTax 2008 Installer.exe /u /t /a
TurboTax Deluxe 2007-->C:\Program Files\TurboTax\Deluxe 2007\TaxUnst.EXE "C:\Program Files\TurboTax\Deluxe 2007\Uninstall.log" -NoGui
Update for Windows XP (KB932823-v3)-->"C:\WINDOWS\$NtUninstallKB932823-v3$\spuninst\spuninst.exe"
Update for Windows XP (KB933360)-->"C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"
Update for Windows XP (KB938828)-->"C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
Update for Windows XP (KB942763)-->"C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
VeohTV BETA-->C:\Program Files\InstallShield Installation Information\{0405E51E-9582-4207-8F38-AC44201D3808}\setup.exe -runfromtemp -l0x0409
WebCyberCoach 3.2 Dell-->"C:\Program Files\WebCyberCoach\b_Dell\WCC_Wipe.exe" "WebCyberCoach ext\wtrb" /inf "engine.inf,RealUninstallSection,,4" /infcfg "enginecf.inf,RealUninstallSection,,4"
Windows Genuine Advantage v1.3.0254.0-->MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
Windows Internet Explorer 7-->"C:\WINDOWS\ie7\spuninst\spuninst.exe"
Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Player 10 Hotfix - KB895316-->"C:\WINDOWS\$NtUninstallKB895316$\spuninst\spuninst.exe"
Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]-->C:\WINDOWS\$NtUninstallEmeraldQFE2$\spuninst\spuninst.exe
Windows Media Player 10-->MsiExec.exe /I{33BB4982-DC52-4886-A03B-F4C5C80BEE89}
WinZip-->"C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
WordPerfect Office 12-->MsiExec.exe /I{AF19F291-F22F-4798-9662-525305AE9E48}
=====HijackThis Backups=====
O18 - Protocol: bw10 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: offline-8876480 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwf0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw-0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwm0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwu0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwy0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwv0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwx0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwh0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwb0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw50s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwo0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwf0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwz0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw60s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwc0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwa0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw10s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwq0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwn0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwt0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw70 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwc0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwq0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwr0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwn0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwg0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwl0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bws0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw40 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw90 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwd0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw30s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwz0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw60 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwi0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw50 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwk0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwl0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwd0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwp0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw80s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bww0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwv0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bww0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw80 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw-0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwj0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw40s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwi0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwb0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwj0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bws0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwr0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwo0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw30 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwg0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwx0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw00s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwk0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw90s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwa0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwe0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwe0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwh0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw70s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw+0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwu0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwp0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwt0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwy0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bwm0s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw00 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw20s - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw20 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
O18 - Protocol: bw+0 - {E7699644-FC81-403B-A926-5CADFDC71696} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll [2009-01-10]
======Security center information======
AV: Trend Micro Internet Security (disabled) (outdated)
FW: Trend Micro PC-cillin Internet Security (Firewall)
======System event log======
Computer Name: JUDD
Event Code: 256
Message: Timed out sending notification of device interface change to window of "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe"
Record Number: 8369
Source Name: PlugPlayManager
Time Written: 20090102115633.000000-300
Event Type: warning
User:
Computer Name: JUDD
Event Code: 256
Message: Timed out sending notification of device interface change to window of "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe"
Record Number: 8368
Source Name: PlugPlayManager
Time Written: 20090102115631.000000-300
Event Type: warning
User:
Computer Name: JUDD
Event Code: 256
Message: Timed out sending notification of device interface change to window of "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe"
Record Number: 8367
Source Name: PlugPlayManager
Time Written: 20090102115624.000000-300
Event Type: warning
User:
Computer Name: JUDD
Event Code: 256
Message: Timed out sending notification of device interface change to window of "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe"
Record Number: 8366
Source Name: PlugPlayManager
Time Written: 20090102115623.000000-300
Event Type: warning
User:
Computer Name: JUDD
Event Code: 257
Message: Timed out sending notification of target device change to window of "C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe"
Record Number: 8365
Source Name: PlugPlayManager
Time Written: 20090102115623.000000-300
Event Type: warning
User:
=====Application event log=====
Computer Name: JUDD
Event Code: 1004
Message: Detection of product '{8A9B8148-DDD7-448F-BD6C-358386D32354}', feature 'PaintShopPhotoAlbum', component '{25F669D8-9DC1-44D1-A06B-28E42E930387}' failed. The resource 'HKEY_CURRENT_USER\Software\Corel\Auto Update\{8A9B8148-DDD7-448F-BD6C-358386D32354}\Interval' does not exist.
Record Number: 7
Source Name: MsiInstaller
Time Written: 20090322232936.000000-240
Event Type: warning
User: JUDD\Judd Fasold
Computer Name: JUDD
Event Code: 1001
Message: Detection of product '{8A9B8148-DDD7-448F-BD6C-358386D32354}', feature 'PaintShopPhotoAlbum' failed during request for component '{D2D7B4BF-6CCA-11D5-8B3F-00105A9846E9}'
Record Number: 6
Source Name: MsiInstaller
Time Written: 20090322232936.000000-240
Event Type: warning
User: NT AUTHORITY\NETWORK SERVICE
Computer Name: JUDD
Event Code: 1004
Message: Detection of product '{8A9B8148-DDD7-448F-BD6C-358386D32354}', feature 'PaintShopPhotoAlbum', component '{25F669D8-9DC1-44D1-A06B-28E42E930387}' failed. The resource 'HKEY_CURRENT_USER\Software\Corel\Auto Update\{8A9B8148-DDD7-448F-BD6C-358386D32354}\Interval' does not exist.
Record Number: 5
Source Name: MsiInstaller
Time Written: 20090322232936.000000-240
Event Type: warning
User: NT AUTHORITY\NETWORK SERVICE
Computer Name: JUDD
Event Code: 1000
Message: An error occurred while the wizard was checking the current Windows product license. Error Code: 4 0x80070005
Record Number: 4
Source Name: Windows Product Activation
Time Written: 20090322232918.000000-240
Event Type: error
User:
Computer Name: JUDD
Event Code: 32036
Message: Fax Service failed initializing the routing module 'Microsoft Routing Extension'. Please contact your routing extension vendor. If the vendor's solution does not solve the problem, please contact PSS.
Location: C:\WINDOWS\system32\fxsroute.dll.
Record Number: 2
Source Name: Microsoft Fax
Time Written: 20090322232906.000000-240
Event Type: error
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 9, GenuineIntel
"PROCESSOR_REVISION"=0409
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"SonicCentral"=C:\Program Files\Common Files\Sonic Shared\Sonic Central\
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip
-----------------EOF-----------------