hi deltalima,
these are the log files from otl
otl.txt
----------
OTL logfile created on: 7/17/2010 9:45:28 AM - Run 1
OTL by OldTimer - Version 3.2.9.0 Folder = E:\Downloads\Mozilla
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.00 Gb Total Physical Memory | 0.00 Gb Available Physical Memory | 30.00% Memory free
3.00 Gb Paging File | 2.00 Gb Available in Paging File | 80.00% Paging File free
Paging file location(s): C:\pagefile.sys 1908 3816 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 24.01 Gb Total Space | 3.47 Gb Free Space | 14.43% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 50.33 Gb Total Space | 43.58 Gb Free Space | 86.58% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: XQSMEQT
Current User Name: geo
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - E:\Downloads\Mozilla\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe (Autodesk)
PRC - C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
PRC - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
PRC - C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (Nokia)
PRC - C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (Nokia)
PRC - C:\Program Files\PC Connectivity Solution\Transports\NclToBTSrv.exe (Nokia)
PRC - C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
PRC - C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
PRC - C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Symantec AntiVirus\VPTray.exe (Symantec Corporation)
PRC - C:\Program Files\Symantec AntiVirus\Rtvscan.exe (Symantec Corporation)
PRC - C:\Program Files\Symantec AntiVirus\DefWatch.exe (Symantec Corporation)
PRC - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe (Symantec Corporation)
PRC - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe (Symantec Corporation)
PRC - C:\Program Files\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
PRC - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (Symantec Corporation)
PRC - C:\WINDOWS\system32\TDispVol.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\TouchPad\TPTray.exe (COMPAL ELECTRONIC INC.)
PRC - C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosBtHSP.exe (TOSHIBA CORPORATION.)
PRC - C:\WINDOWS\system32\TCtrlIOHook.exe (TOSHIBA)
PRC - C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosBtProc.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Intel\Wireless\Bin\ZCfgSvc.exe (Intel Corporation)
PRC - C:\Program Files\TOSHIBA\Tvs\TvsTray.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosAVRC.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosA2dp.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Intel\Wireless\Bin\iFrmewrk.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe (Intel Corporation )
PRC - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)
PRC - C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
PRC - C:\WINDOWS\system32\DLA\DLACTRLW.EXE (Sonic Solutions)
PRC - C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosOBEX.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy.exe (TOSHIBA Corporation)
PRC - C:\WINDOWS\system32\TPSMain.exe (TOSHIBA Corporation)
PRC - C:\WINDOWS\system32\TPSBattM.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe (TOSHIBA)
PRC - C:\WINDOWS\system32\RAMASST.exe (Matsushita Electric Industrial Co., Ltd.)
PRC - C:\WINDOWS\system32\DVDRAMSV.exe (Matsushita Electric Industrial Co., Ltd.)
========== Modules (SafeList) ========== MOD - E:\Downloads\Mozilla\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)
MOD - C:\WINDOWS\system32\TDispVol.dll ()
========== Win32 Services (SafeList) ========== SRV - (HidServ) -- C:\windows\System32\hidserv.dll File not found
SRV - (AppMgmt) -- C:\windows\System32\appmgmts.dll File not found
SRV - (Autodesk Licensing Service) -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe (Autodesk)
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (MSSQL$SQLEXPRESS) SQL Server (SQLEXPRESS) -- C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (spupdsvc) -- C:\WINDOWS\system32\spupdsvc.exe (Microsoft Corporation)
SRV - (SQLWriter) -- C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
SRV - (SQLBrowser) -- C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
SRV - (MSSQLServerADHelper) -- C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe (Microsoft Corporation)
SRV - (msvsmon90) -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe (Microsoft Corporation)
SRV - (SavRoam) -- C:\Program Files\Symantec AntiVirus\SavRoam.exe (symantec)
SRV - (Symantec AntiVirus) -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe (Symantec Corporation)
SRV - (DefWatch) -- C:\Program Files\Symantec AntiVirus\DefWatch.exe (Symantec Corporation)
SRV - (LiveUpdate) -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_1.EXE (Symantec Corporation)
SRV - (SNDSrvc) -- C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe (Symantec Corporation)
SRV - (ccSetMgr) -- C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe (Symantec Corporation)
SRV - (ccEvtMgr) -- C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe (Symantec Corporation)
SRV - (SPBBCSvc) -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (Symantec Corporation)
SRV - (S24EventMonitor) Intel(R) -- C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe (Intel Corporation )
SRV - (EvtEng) Intel(R) -- C:\Program Files\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)
SRV - (RegSrvc) Intel(R) -- C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)
SRV - (IDriverT) -- C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (CFSvcs) -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
SRV - (DVD-RAM_Service) -- C:\WINDOWS\system32\DVDRAMSV.exe (Matsushita Electric Industrial Co., Ltd.)
========== Driver Services (SafeList) ========== DRV - (NAVEX15) -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20100715.003\NAVEX15.SYS (Symantec Corporation)
DRV - (NAVENG) -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20100715.003\NAVENG.SYS (Symantec Corporation)
DRV - (eeCtrl) -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (UsbserFilt) -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys (Nokia)
DRV - (nmwcdc) -- C:\WINDOWS\system32\drivers\ccdcmbo.sys (Nokia)
DRV - (nmwcd) -- C:\WINDOWS\system32\drivers\ccdcmb.sys (Nokia)
DRV - (upperdev) -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys (Nokia)
DRV - (hwdatacard) -- C:\WINDOWS\system32\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.)
DRV - (pccsmcfd) -- C:\WINDOWS\system32\drivers\pccsmcfd.sys (Nokia)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (PalmUSBD) -- C:\WINDOWS\system32\drivers\PalmUSBD.sys (PalmSource, Inc.)
DRV - (SymEvent) -- C:\Program Files\Symantec\SYMEVENT.SYS (Symantec Corporation)
DRV - (SAVRT) -- C:\Program Files\Symantec AntiVirus\savrt.sys (Symantec Corporation)
DRV - (SAVRTPEL) -- C:\Program Files\Symantec AntiVirus\Savrtpel.sys (Symantec Corporation)
DRV - (SYMTDI) -- C:\windows\System32\Drivers\SYMTDI.SYS (Symantec Corporation)
DRV - (SYMREDRV) -- C:\windows\System32\Drivers\SYMREDRV.SYS (Symantec Corporation)
DRV - (SPBBCDrv) -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys (Symantec Corporation)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\WINDOWS\system32\drivers\RtkHDAud.Sys (Realtek Semiconductor Corp.)
DRV - (w39n51) Intel(R) -- C:\WINDOWS\system32\drivers\w39n51.sys (Intel® Corporation)
DRV - (TPwSav) -- C:\WINDOWS\system32\drivers\TPwSav.sys (TOSHIBA )
DRV - (Tosrfhid) -- C:\WINDOWS\system32\drivers\tosrfhid.sys (TOSHIBA Corporation.)
DRV - (Tvs) -- C:\WINDOWS\system32\drivers\Tvs.sys (TOSHIBA Corporation)
DRV - (tifm21) -- C:\WINDOWS\system32\drivers\tifm21.sys (Texas Instruments)
DRV - (s24trans) -- C:\WINDOWS\system32\drivers\s24trans.sys (Intel Corporation)
DRV - (tosporte) -- C:\WINDOWS\system32\drivers\tosporte.sys (TOSHIBA Corporation)
DRV - (Tosrfbd) -- C:\WINDOWS\system32\drivers\tosrfbd.sys (TOSHIBA CORPORATION)
DRV - (Tosrfusb) -- C:\WINDOWS\system32\drivers\tosrfusb.sys (TOSHIBA CORPORATION)
DRV - (AgereSoftModem) -- C:\WINDOWS\system32\drivers\AGRSM.sys (Agere Systems)
DRV - (TosRfSnd) Bluetooth Audio Device (WDM) -- C:\WINDOWS\system32\drivers\tosrfsnd.sys (TOSHIBA Corporation)
DRV - (DLAUDFAM) -- C:\WINDOWS\system32\DLA\DLAUDFAM.SYS (Sonic Solutions)
DRV - (DLAUDF_M) -- C:\WINDOWS\system32\DLA\DLAUDF_M.SYS (Sonic Solutions)
DRV - (DLAIFS_M) -- C:\WINDOWS\system32\DLA\DLAIFS_M.SYS (Sonic Solutions)
DRV - (DLABOIOM) -- C:\WINDOWS\system32\DLA\DLABOIOM.SYS (Sonic Solutions)
DRV - (DLAOPIOM) -- C:\WINDOWS\system32\DLA\DLAOPIOM.SYS (Sonic Solutions)
DRV - (DLAPoolM) -- C:\WINDOWS\system32\DLA\DLAPoolM.SYS (Sonic Solutions)
DRV - (DLADResN) -- C:\WINDOWS\system32\DLA\DLADResN.SYS (Sonic Solutions)
DRV - (Tosrfbnp) -- C:\WINDOWS\system32\drivers\tosrfbnp.sys (TOSHIBA Corporation)
DRV - (DRVMCDB) -- C:\windows\System32\Drivers\DRVMCDB.SYS (Sonic Solutions)
DRV - (tosrfec) -- C:\WINDOWS\system32\drivers\tosrfec.sys (TOSHIBA Corporation)
DRV - (DLACDBHM) -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS (Sonic Solutions)
DRV - (DLARTL_N) -- C:\WINDOWS\system32\drivers\DLARTL_N.SYS (Sonic Solutions)
DRV - (DRVNDDM) -- C:\WINDOWS\system32\drivers\DRVNDDM.SYS (Sonic Solutions)
DRV - (Tosrfcom) -- C:\WINDOWS\system32\drivers\tosrfcom.sys (TOSHIBA Corporation)
DRV - (toshidpt) -- C:\WINDOWS\system32\drivers\toshidpt.sys (TOSHIBA Corporation.)
DRV - (meiudf) -- C:\WINDOWS\system32\drivers\meiudf.sys (Matsushita Electric Industrial Co.,Ltd.)
DRV - (tosrfnds) -- C:\WINDOWS\system32\drivers\tosrfnds.sys (TOSHIBA Corporation.)
DRV - (ApfiltrService) -- C:\WINDOWS\system32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (Pfc) -- C:\WINDOWS\system32\drivers\pfc.sys (Padus, Inc.)
DRV - (Iviaspi) -- C:\WINDOWS\system32\drivers\iviaspi.sys (InterVideo, Inc.)
DRV - (Netdevio) -- C:\WINDOWS\system32\drivers\Netdevio.sys (TOSHIBA Corporation.)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Search"
FF - prefs.js..browser.search.defaulturl: "http://gb.iamwired.net/websearch.php?src=tops&search="
FF - prefs.js..browser.search.selectedEngine: "Search"
FF - prefs.js..browser.startup.homepage: "http://www.malwareremoval.com/forum/index.php"
FF - prefs.js..extensions.enabledItems: {195A3098-0BD5-4e90-AE22-BA1C540AFD1E}:2.9.1.0
FF - prefs.js..extensions.enabledItems:
smartwebprinting@hp.com:4.5
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
bkmrksync@nokia.com:1.0.0.723
FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20100503
FF - prefs.js..keyword.URL: "http://gb.iamwired.net/websearch.php?src=tops&search="
FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2010/01/14 10:02:25 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/06/01 08:56:44 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.10\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/06/26 21:30:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.10\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/06/26 21:30:24 | 000,000,000 | ---D | M]
[2009/11/24 00:26:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\geo\Application Data\Mozilla\Extensions
[2010/07/15 11:53:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\geo\Application Data\Mozilla\Firefox\Profiles\6ok01w72.default\extensions
[2010/01/26 13:34:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\geo\Application Data\Mozilla\Firefox\Profiles\6ok01w72.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
[2010/04/27 21:39:29 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\geo\Application Data\Mozilla\Firefox\Profiles\6ok01w72.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/05/29 16:53:35 | 000,000,000 | ---D | M] (WOT) -- C:\Documents and Settings\geo\Application Data\Mozilla\Firefox\Profiles\6ok01w72.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2010/07/11 04:43:06 | 000,000,259 | ---- | M] () -- C:\Documents and Settings\geo\Application Data\Mozilla\Firefox\Profiles\6ok01w72.default\searchplugins\Search.xml
[2010/07/16 22:03:02 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/05/19 08:53:33 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/05/19 08:53:07 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
O1 HOSTS File: ([2004/08/04 20:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions)
O2 - BHO: (WOT Helper) - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files\WOT\WOT.dll ()
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O3 - HKLM\..\Toolbar: (WOT) - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll ()
O3 - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006\..\Toolbar\WebBrowser: (WOT) - {71576546-354D-41C9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll ()
O4 - HKLM..\Run: [Alcmtr] C:\windows\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
O4 - HKLM..\Run: [DLA] C:\WINDOWS\system32\DLA\DLACTRLW.EXE (Sonic Solutions)
O4 - HKLM..\Run: [HKLM] C:\windows\install\Windows defender.exe File not found
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe (TOSHIBA CO.,LTD.)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe (Intel Corporation)
O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe (Intel Corporation)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [NDSTray.exe] File not found
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [TCtryIOHook] C:\windows\System32\TCtrlIOHook.exe (TOSHIBA)
O4 - HKLM..\Run: [TDispVol] C:\windows\System32\TDispVol.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TFncKy] File not found
O4 - HKLM..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe (COMPAL ELECTRONIC INC.)
O4 - HKLM..\Run: [TPSMain] C:\windows\System32\TPSMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Tvs] C:\Program Files\TOSHIBA\Tvs\TvsTray.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [vptray] C:\Program Files\Symantec AntiVirus\VPTray.exe (Symantec Corporation)
O4 - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006..\Run: [HKCU] C:\windows\install\Windows defender.exe File not found
O4 - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe (TOSHIBA)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Bluetooth Manager.lnk = C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe (Matsushita Electric Industrial Co., Ltd.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\windows\install\Windows defender.exe File not found
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\S-1-5-21-3821735628-3510263295-1164204225-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\windows\install\Windows defender.exe File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://www.update.microsoft.com/microso ... 8785187812 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 172.16.1.1
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\wot {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files\WOT\WOT.dll ()
O18 - Protocol\Filter\application/x-microsoft-rpmsg-message {DFF82902-0B96-3B98-6F62-D655E146A23A} - Reg Error: Key error. File not found
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\windows\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\windows\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\NavLogon: DllName - C:\windows\system32\NavLogon.dll - C:\WINDOWS\system32\NavLogon.dll (Symantec Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\geo\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\geo\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005/12/22 07:02:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{0793ea60-7a17-11df-8305-00037af7c721}\Shell\AutoRun\command - "" = Z:\StartPortableApps.exe -- File not found
O33 - MountPoints2\{2047dc29-6d85-11df-82fd-00037af7c721}\Shell - "" = AutoRun
O33 - MountPoints2\{2047dc29-6d85-11df-82fd-00037af7c721}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{2047dc29-6d85-11df-82fd-00037af7c721}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- File not found
O33 - MountPoints2\{375cb98a-4040-11df-82a9-00037af7c721}\Shell\AutoRun\command - "" = F:\var\var32.exe -- File not found
O33 - MountPoints2\{375cb98a-4040-11df-82a9-00037af7c721}\Shell\exPLore\comMand - "" = F:\var\\\\\var32.exe -- File not found
O33 - MountPoints2\{375cb98a-4040-11df-82a9-00037af7c721}\Shell\oPEn\commaNd - "" = F:\var\\\\\\var32.exe -- File not found
O33 - MountPoints2\{60a6097a-598f-11df-82ce-00037af7c721}\Shell - "" = AutoRun
O33 - MountPoints2\{60a6097a-598f-11df-82ce-00037af7c721}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{60a6097a-598f-11df-82ce-00037af7c721}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -- File not found
O33 - MountPoints2\{b9ace618-36f6-11df-829d-001302b7538d}\Shell\AutoRun\command - "" = F:\novir\novir32.exe -- File not found
O33 - MountPoints2\{b9ace618-36f6-11df-829d-001302b7538d}\Shell\explore\command - "" = F:\novir\novir32.exe -- File not found
O33 - MountPoints2\{b9ace618-36f6-11df-829d-001302b7538d}\Shell\open\command - "" = F:\.\novir\novir32.exe -- File not found
O33 - MountPoints2\{c521b27f-7c85-11df-830e-00037af7c721}\Shell - "" = AutoRun
O33 - MountPoints2\{c521b27f-7c85-11df-830e-00037af7c721}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{c521b27f-7c85-11df-830e-00037af7c721}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- File not found
O33 - MountPoints2\{cd78eeac-0ede-11df-822c-00037af7c721}\Shell\AutoRun\command - "" = ucure/ucure32.exe
O33 - MountPoints2\{cd78eeac-0ede-11df-822c-00037af7c721}\Shell\explore\command - "" = ucure/ucure32.exe
O33 - MountPoints2\{cd78eeac-0ede-11df-822c-00037af7c721}\Shell\open\command - "" = ucure/ucure32.exe
O33 - MountPoints2\{d27b761f-109a-11df-8235-00037af7c721}\Shell\AutoRun\command - "" = 1hqup.exe
O33 - MountPoints2\{d27b761f-109a-11df-8235-00037af7c721}\Shell\open\Command - "" = 1hqup.exe
O33 - MountPoints2\{d27b7620-109a-11df-8235-00037af7c721}\Shell\AutoRun\command - "" = F:\1hqup.exe -- File not found
O33 - MountPoints2\{d27b7620-109a-11df-8235-00037af7c721}\Shell\open\Command - "" = F:\1hqup.exe -- File not found
O33 - MountPoints2\{e9ca93da-d82e-11de-8165-001302b7538d}\Shell - "" = AutoRun
O33 - MountPoints2\{e9ca93da-d82e-11de-8165-001302b7538d}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{e9ca93da-d82e-11de-8165-001302b7538d}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- File not found
O33 - MountPoints2\{e9ca93dd-d82e-11de-8165-001302b7538d}\Shell - "" = AutoRun
O33 - MountPoints2\{e9ca93dd-d82e-11de-8165-001302b7538d}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{e9ca93dd-d82e-11de-8165-001302b7538d}\Shell\AutoRun\command - "" = G:\AutoRun.exe -- File not found
O33 - MountPoints2\Z\Shell\AutoRun\command - "" = Z:\StartPortableApps.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/07/17 08:09:17 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\Malware Removal Logs
[2010/07/16 22:01:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\geo\Application Data\Malwarebytes
[2010/07/16 22:01:38 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamswissarmy.sys
[2010/07/16 22:01:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/07/16 22:01:36 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2010/07/16 22:01:36 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/07/14 08:55:22 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\helpsvc.exe
[2010/07/13 21:00:39 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\encoding
[2010/07/12 20:54:50 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\Simply Super Software
[2010/07/12 11:41:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\Visual Studio 2008
[2010/07/12 07:43:10 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010/07/11 21:42:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\geo\Local Settings\Application Data\Symantec
[2010/07/11 21:41:55 | 000,109,744 | ---- | C] (Symantec Corporation) -- C:\windows\System32\drivers\SYMEVENT.SYS
[2010/07/11 21:41:55 | 000,048,816 | ---- | C] (Symantec Corporation) -- C:\windows\System32\S32EVNT1.DLL
[2010/07/11 21:41:18 | 000,466,944 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\capicom.dll
[2010/07/11 21:41:17 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec
[2010/07/11 21:41:06 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2010/07/11 21:41:06 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec AntiVirus
[2010/07/11 21:41:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Symantec
[2010/07/11 21:37:20 | 000,000,000 | ---D | C] -- C:\Program Files\WOT
[2010/07/11 20:37:55 | 000,000,000 | -H-D | C] -- C:\windows\ie8
[2010/07/11 19:14:55 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\geo\Recent
[2010/07/11 17:38:20 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\Bluetooth
[2010/07/11 04:49:56 | 000,000,000 | ---D | C] -- C:\Program Files\PopCap Games
[2010/07/08 22:48:42 | 000,000,000 | ---D | C] -- C:\Temp
[2010/07/06 21:15:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2010/07/04 08:11:33 | 000,000,000 | ---D | C] -- C:\windows\SQLTools9_KB970892_ENU
[2010/07/04 08:09:32 | 000,000,000 | ---D | C] -- C:\windows\SQL9_KB970892_ENU
[2010/06/30 20:23:19 | 000,000,000 | ---D | C] -- C:\windows\System32\js
[2010/06/30 20:23:19 | 000,000,000 | ---D | C] -- C:\windows\System32\images
[2010/06/30 20:23:19 | 000,000,000 | ---D | C] -- C:\windows\System32\html
[2010/06/30 20:23:19 | 000,000,000 | ---D | C] -- C:\windows\System32\css
[2010/06/30 20:23:19 | 000,000,000 | ---D | C] -- C:\Program Files\Business Objects
[2010/06/30 20:17:16 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 6.0
[2010/06/30 20:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
[2010/06/30 20:08:45 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2010/06/30 20:08:44 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2010/06/30 20:05:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PreEmptive Solutions
[2010/06/30 20:01:15 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SDKs
[2010/06/30 20:01:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 9.0
[2010/06/30 20:00:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Web Designer Tools
[2010/06/30 19:57:46 | 000,000,000 | ---D | C] -- C:\windows\System32\Visual Studio 2008Templates
[2010/06/30 19:57:46 | 000,000,000 | ---D | C] -- C:\windows\System32\Visual Studio 2008
[2010/06/29 11:20:52 | 000,298,496 | ---- | C] (InstallShield Corporation, Inc.) -- C:\windows\uninst.exe
[2010/06/29 10:58:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SPSS
[2010/06/29 06:30:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\geo\.spss
[2010/06/29 06:27:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SafeNet Sentinel
[2010/06/28 00:48:02 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\OFF Trackers
[2010/06/26 21:22:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\PSP Save Games
[2010/06/20 21:55:11 | 000,000,000 | ---D | C] -- C:\windows\Downloaded Installations
[2010/06/19 09:34:23 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\Samsung Documentation
[2010/06/18 22:59:56 | 000,000,000 | ---D | C] -- E:\Documents and Settings\geo\My Documents\ARB MTR
[2010/06/18 21:57:44 | 000,000,000 | ---D | C] -- C:\windows\System32\NtmsData
[2010/06/18 16:03:37 | 000,000,000 | ---D | C] -- C:\Log
[2010/06/18 16:03:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Clarus
[2010/06/18 15:44:50 | 000,000,000 | ---D | C] -- C:\Program Files\Clarus
[1 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/07/17 09:34:00 | 000,000,880 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/07/17 08:10:17 | 008,650,752 | -H-- | M] () -- C:\Documents and Settings\geo\NTUSER.DAT
[2010/07/17 08:01:53 | 000,000,876 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/07/17 08:01:47 | 000,000,006 | -H-- | M] () -- C:\windows\tasks\SA.DAT
[2010/07/17 08:01:24 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2010/07/17 08:01:15 | 1331,810,304 | -HS- | M] () -- C:\hiberfil.sys
[2010/07/16 22:13:45 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\geo\ntuser.ini
[2010/07/16 09:48:03 | 000,021,504 | ---- | M] () -- C:\Documents and Settings\geo\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/15 19:23:01 | 000,001,876 | ---- | M] () -- C:\bar.emf
[2010/07/15 19:22:56 | 000,088,064 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\media database.vsd
[2010/07/15 15:55:52 | 000,000,616 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\How to show and hide HTML elements using Javascript Useful and interesting web sites.mht
[2010/07/15 15:37:12 | 000,286,720 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\Database1.accdb
[2010/07/13 18:57:00 | 000,265,972 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\AiBprototype1.zip
[2010/07/13 06:20:36 | 000,000,689 | ---- | M] () -- C:\windows\win.ini
[2010/07/13 06:20:36 | 000,000,227 | ---- | M] () -- C:\windows\system.ini
[2010/07/12 21:56:08 | 000,004,161 | ---- | M] () -- C:\windows\ODBCINST.INI
[2010/07/12 17:45:36 | 000,136,284 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\New Project 20100712 1745.sql
[2010/07/12 06:47:03 | 000,000,036 | ---- | M] () -- C:\Documents and Settings\geo\Local Settings\Application Data\housecall.guid.cache
[2010/07/12 06:40:09 | 000,002,206 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2010/07/12 06:25:28 | 000,000,000 | ---- | M] () -- C:\windows\vpc32.INI
[2010/07/12 06:09:52 | 000,004,566 | ---- | M] () -- C:\windows\imsins.BAK
[2010/07/12 06:09:34 | 000,591,554 | ---- | M] () -- C:\windows\System32\PerfStringBackup.INI
[2010/07/12 06:09:34 | 000,491,304 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2010/07/12 06:09:34 | 000,089,948 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2010/07/12 06:09:27 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\geo\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/07/11 20:40:59 | 000,000,991 | ---- | M] () -- C:\windows\System32\spupdsvc.inf
[2010/07/11 18:04:39 | 006,852,657 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\New Project 20100711 1803.sql
[2010/07/11 17:23:42 | 000,025,548 | ---- | M] () -- C:\Documents and Settings\geo\Application Data\SQLite3.dll
[2010/07/11 04:49:56 | 000,000,000 | ---- | M] () -- C:\windows\popcreg.dat
[2010/07/11 04:49:56 | 000,000,000 | ---- | M] () -- C:\windows\popcinfot.dat
[2010/07/10 23:33:26 | 000,000,512 | ---- | M] () -- C:\windows\randseed.rnd
[2010/07/08 16:30:38 | 000,391,683 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\MTR Input - Data Mgt.pptx
[2010/07/06 15:30:38 | 000,014,501 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\roles.xls
[2010/07/05 21:51:32 | 000,603,615 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\Dulcelin CH.jpg
[2010/07/05 10:48:01 | 000,099,116 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-July 5.pdf
[2010/07/05 10:46:00 | 000,038,912 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-July 5.doc
[2010/07/03 08:17:45 | 000,035,840 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-June 28_Letter on Lease Contract.doc
[2010/07/02 16:04:22 | 000,114,458 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-June 28_Letter on Lease Contract.pdf
[2010/06/30 20:24:11 | 000,000,654 | ---- | M] () -- C:\windows\ODBC.INI
[2010/06/29 22:44:23 | 000,072,608 | ---- | M] () -- C:\Documents and Settings\geo\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/06/29 15:23:11 | 000,282,128 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2010/06/29 12:26:24 | 000,000,038 | ---- | M] () -- C:\windows\avisplitter.INI
[2010/06/29 11:07:32 | 000,000,114 | ---- | M] () -- C:\windows\System32\prsgrc.tgz
[2010/06/29 11:07:31 | 000,000,100 | ---- | M] () -- C:\windows\System32\prsgrc.dll
[2010/06/29 10:58:10 | 000,000,219 | ---- | M] () -- C:\windows\System32\lsprst7.tgz
[2010/06/29 10:58:10 | 000,000,205 | ---- | M] () -- C:\windows\System32\lsprst7.dll
[2010/06/29 10:58:10 | 000,000,016 | -H-- | M] () -- C:\windows\System32\servdat.slm
[2010/06/29 07:12:42 | 000,000,000 | ---- | M] () -- C:\law.sp
[2010/06/29 06:56:04 | 000,499,128 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\hi-torque_mba_201008.air
[2010/06/29 06:28:31 | 000,001,024 | ---- | M] () -- C:\windows\System32\grcauth2.dll
[2010/06/29 06:28:31 | 000,001,024 | ---- | M] () -- C:\windows\System32\grcauth1.dll
[2010/06/29 06:18:33 | 000,001,025 | ---- | M] () -- C:\windows\System32\sysprs7.tgz
[2010/06/29 06:18:33 | 000,001,025 | ---- | M] () -- C:\windows\System32\sysprs7.dll
[2010/06/28 13:26:07 | 000,221,184 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\Hungry Juan Application Form.doc
[2010/06/28 13:22:16 | 000,200,704 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\N-05 Geo.Lazaro (recast).doc
[2010/06/25 07:40:16 | 000,309,248 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\Smokey's Flyers.vsd
[2010/06/22 14:04:34 | 000,018,944 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\faspo.vsd
[2010/06/22 11:43:34 | 000,059,392 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\FASPO Flow.vsd
[2010/06/22 03:42:16 | 002,393,430 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\6866_b-wp_a_practical_approach_to_information_management.pdf
[2010/06/22 03:32:03 | 000,032,256 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\smokeys odl fab foods AR.XLS
[2010/06/21 10:25:04 | 000,140,823 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\PSGC 20100621 1024.sql
[2010/06/21 00:04:39 | 000,094,508 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\DepOrderReclass.pdf
[2010/06/19 23:48:47 | 005,439,135 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\New Project 20100619 2345.sql
[2010/06/17 22:28:24 | 000,061,623 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\COA JAHLazaro.pdf
[2010/06/17 22:28:12 | 000,074,240 | ---- | M] () -- E:\Documents and Settings\geo\My Documents\COA.doc
[1 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/07/15 19:22:55 | 000,088,064 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\media database.vsd
[2010/07/15 15:55:52 | 000,000,616 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\How to show and hide HTML elements using Javascript Useful and interesting web sites.mht
[2010/07/15 15:36:49 | 000,286,720 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\Database1.accdb
[2010/07/13 18:57:00 | 000,265,972 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\AiBprototype1.zip
[2010/07/12 17:45:22 | 000,136,284 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\New Project 20100712 1745.sql
[2010/07/12 06:47:03 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\geo\Local Settings\Application Data\housecall.guid.cache
[2010/07/12 06:25:28 | 000,000,000 | ---- | C] () -- C:\windows\vpc32.INI
[2010/07/12 06:09:27 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\geo\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/07/11 19:39:38 | 000,004,566 | ---- | C] () -- C:\windows\imsins.BAK
[2010/07/11 18:03:54 | 006,852,657 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\New Project 20100711 1803.sql
[2010/07/11 17:23:42 | 000,025,548 | ---- | C] () -- C:\Documents and Settings\geo\Application Data\SQLite3.dll
[2010/07/11 04:49:56 | 000,000,000 | ---- | C] () -- C:\windows\popcreg.dat
[2010/07/11 04:49:56 | 000,000,000 | ---- | C] () -- C:\windows\popcinfot.dat
[2010/07/07 22:32:13 | 000,391,683 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\MTR Input - Data Mgt.pptx
[2010/07/06 15:23:39 | 000,014,501 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\roles.xls
[2010/07/05 21:51:23 | 000,603,615 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\Dulcelin CH.jpg
[2010/07/05 10:48:00 | 000,099,116 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-July 5.pdf
[2010/07/05 10:46:00 | 000,038,912 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-July 5.doc
[2010/07/03 08:01:00 | 000,035,840 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-June 28_Letter on Lease Contract.doc
[2010/07/02 16:04:20 | 000,114,458 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\GreenStreet_2010-June 28_Letter on Lease Contract.pdf
[2010/06/29 07:12:42 | 000,000,000 | ---- | C] () -- C:\law.sp
[2010/06/29 06:52:58 | 000,499,128 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\hi-torque_mba_201008.air
[2010/06/29 06:28:31 | 000,001,024 | ---- | C] () -- C:\windows\System32\grcauth2.dll
[2010/06/29 06:28:31 | 000,001,024 | ---- | C] () -- C:\windows\System32\grcauth1.dll
[2010/06/29 06:28:31 | 000,000,114 | ---- | C] () -- C:\windows\System32\prsgrc.tgz
[2010/06/29 06:28:31 | 000,000,100 | ---- | C] () -- C:\windows\System32\prsgrc.dll
[2010/06/29 06:18:33 | 000,001,025 | ---- | C] () -- C:\windows\System32\sysprs7.tgz
[2010/06/29 06:18:33 | 000,001,025 | ---- | C] () -- C:\windows\System32\sysprs7.dll
[2010/06/29 06:18:33 | 000,000,219 | ---- | C] () -- C:\windows\System32\lsprst7.tgz
[2010/06/29 06:18:33 | 000,000,205 | ---- | C] () -- C:\windows\System32\lsprst7.dll
[2010/06/29 06:18:33 | 000,000,016 | -H-- | C] () -- C:\windows\System32\servdat.slm
[2010/06/28 13:26:03 | 000,221,184 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\Hungry Juan Application Form.doc
[2010/06/28 12:46:00 | 000,200,704 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\N-05 Geo.Lazaro (recast).doc
[2010/06/23 11:07:19 | 001,540,218 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\Orion Dev 20100419 2232.sql
[2010/06/23 11:05:57 | 000,007,112 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\Update codes.sql
[2010/06/22 14:04:34 | 000,018,944 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\faspo.vsd
[2010/06/22 11:43:34 | 000,059,392 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\FASPO Flow.vsd
[2010/06/22 03:42:13 | 002,393,430 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\6866_b-wp_a_practical_approach_to_information_management.pdf
[2010/06/22 03:15:00 | 000,032,256 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\smokeys odl fab foods AR.XLS
[2010/06/21 10:24:35 | 000,140,823 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\PSGC 20100621 1024.sql
[2010/06/21 00:04:39 | 000,094,508 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\DepOrderReclass.pdf
[2010/06/19 23:45:47 | 005,439,135 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\New Project 20100619 2345.sql
[2010/06/17 22:28:23 | 000,061,623 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\COA JAHLazaro.pdf
[2010/06/17 22:26:00 | 000,074,240 | ---- | C] () -- E:\Documents and Settings\geo\My Documents\COA.doc
[2010/05/12 22:47:03 | 000,000,118 | ---- | C] () -- C:\windows\System32\MRT.INI
[2010/01/14 13:13:22 | 000,000,000 | ---- | C] () -- C:\windows\tosOBEX.INI
[2010/01/13 00:28:24 | 000,000,231 | ---- | C] () -- C:\windows\System32\3dsviz.ini
[2010/01/13 00:28:24 | 000,000,043 | ---- | C] () -- C:\windows\System32\InstallSettings.ini
[2009/12/21 14:43:05 | 000,000,038 | ---- | C] () -- C:\windows\avisplitter.INI
[2009/11/22 11:21:52 | 000,164,352 | ---- | C] () -- C:\windows\System32\unrar.dll
[2009/11/22 11:21:49 | 000,755,027 | ---- | C] () -- C:\windows\System32\xvidcore.dll
[2009/11/22 11:21:48 | 003,596,288 | ---- | C] () -- C:\windows\System32\qt-dx331.dll
[2009/11/22 11:21:48 | 000,159,839 | ---- | C] () -- C:\windows\System32\xvidvfw.dll
[2009/11/22 11:21:47 | 000,007,680 | ---- | C] () -- C:\windows\System32\ff_vfw.dll
[2009/11/22 11:21:47 | 000,000,547 | ---- | C] () -- C:\windows\System32\ff_vfw.dll.manifest
[2009/11/22 00:46:19 | 000,000,000 | ---- | C] () -- C:\windows\CeEKey.INI
[2009/11/21 14:19:03 | 000,128,113 | ---- | C] () -- C:\windows\System32\csellang.ini
[2009/11/21 14:19:03 | 000,045,056 | ---- | C] () -- C:\windows\System32\csellang.dll
[2009/11/21 14:19:03 | 000,010,165 | ---- | C] () -- C:\windows\System32\tosmreg.ini
[2009/11/21 14:19:03 | 000,007,671 | ---- | C] () -- C:\windows\System32\cseltbl.ini
[2007/05/04 15:37:54 | 002,461,756 | ---- | C] () -- C:\windows\System32\bifgen32.dll
[2007/02/06 12:52:56 | 001,470,523 | ---- | C] () -- C:\windows\System32\Repgen32.dll
[2005/12/22 13:06:37 | 000,000,061 | ---- | C] () -- C:\windows\smscfg.ini
[2005/12/22 11:57:57 | 000,000,654 | ---- | C] () -- C:\windows\ODBC.INI
[2005/12/22 11:53:13 | 000,045,056 | ---- | C] () -- C:\windows\System32\TDispVol.dll
[2005/12/22 11:50:41 | 000,000,000 | ---- | C] () -- C:\windows\NDSTray.INI
[2005/12/22 11:34:13 | 000,036,736 | ---- | C] () -- C:\windows\System32\drivers\CSIIDecoder_kern_i386.sys
[2005/12/22 11:34:13 | 000,029,184 | ---- | C] () -- C:\windows\System32\drivers\TSXT_kern_i386.sys
[2005/12/22 11:14:02 | 000,000,216 | ---- | C] () -- C:\windows\wininit.ini
[2005/12/22 11:12:55 | 000,204,800 | ---- | C] () -- C:\windows\System32\IVIresizeW7.dll
[2005/12/22 11:12:54 | 000,200,704 | ---- | C] () -- C:\windows\System32\IVIresizeA6.dll
[2005/12/22 11:12:54 | 000,192,512 | ---- | C] () -- C:\windows\System32\IVIresizeP6.dll
[2005/12/22 11:12:54 | 000,192,512 | ---- | C] () -- C:\windows\System32\IVIresizeM6.dll
[2005/12/22 11:12:54 | 000,188,416 | ---- | C] () -- C:\windows\System32\IVIresizePX.dll
[2005/12/22 11:12:54 | 000,020,480 | ---- | C] () -- C:\windows\System32\IVIresize.dll
[2005/12/22 09:56:19 | 000,032,768 | ---- | C] () -- C:\windows\System32\EBLib.DLL
[2005/12/22 09:47:45 | 000,135,168 | ---- | C] () -- C:\windows\System32\RtlCPAPI.dll
[2005/12/22 07:06:15 | 000,000,780 | ---- | C] () -- C:\windows\orun32.ini
[2005/12/22 05:45:35 | 000,002,392 | ---- | C] () -- C:\windows\System32\oeminfo.ini
[2005/12/10 06:36:30 | 000,028,672 | ---- | C] () -- C:\windows\System32\TPeculiarity.dll
[2005/11/28 20:33:56 | 000,000,000 | ---- | C] () -- C:\windows\System32\px.ini
[2005/11/24 05:55:42 | 000,024,576 | ---- | C] () -- C:\windows\System32\SPCtl.dll
[2005/11/24 05:41:28 | 000,036,864 | ---- | C] () -- C:\windows\System32\HWS_Ctrl.dll
[2005/11/24 03:42:16 | 000,028,672 | ---- | C] () -- C:\windows\System32\TCtrlIO.dll
[2005/09/02 14:44:08 | 000,110,592 | ---- | C] () -- C:\windows\System32\TosBtAcc.dll
[2005/07/22 21:30:20 | 000,065,536 | ---- | C] () -- C:\windows\System32\TosCommAPI.dll
[2004/07/20 17:04:02 | 000,094,208 | ---- | C] () -- C:\windows\System32\TosBtHcrpAPI.dll
[2004/01/15 14:43:28 | 000,114,688 | ---- | C] () -- C:\windows\System32\TBTMonUI.dll
[2001/07/06 16:30:00 | 000,003,399 | ---- | C] () -- C:\windows\System32\hptcpmon.ini
[1999/05/26 12:36:54 | 000,036,864 | ---- | C] () -- C:\windows\System32\xnmhn500.dll
[1999/05/26 12:36:50 | 000,102,400 | ---- | C] () -- C:\windows\System32\xnmhb500.dll
[1999/05/26 12:33:58 | 000,077,824 | ---- | C] () -- C:\windows\System32\xnmte500.dll
[1999/05/26 12:33:30 | 000,401,408 | ---- | C] () -- C:\windows\System32\xnmba500.dll
========== Alternate Data Streams ========== @Alternate Data Stream - 102 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C8B8CEBD
< End of report >
extras.txt
--------------
OTL Extras logfile created on: 7/17/2010 9:45:28 AM - Run 1
OTL by OldTimer - Version 3.2.9.0 Folder = E:\Downloads\Mozilla
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.00 Gb Total Physical Memory | 0.00 Gb Available Physical Memory | 30.00% Memory free
3.00 Gb Paging File | 2.00 Gb Available in Paging File | 80.00% Paging File free
Paging file location(s): C:\pagefile.sys 1908 3816 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 24.01 Gb Total Space | 3.47 Gb Free Space | 14.43% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 50.33 Gb Total Space | 43.58 Gb Free Space | 86.58% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: XQSMEQT
Current User Name: geo
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"110:TCP" = 110:TCP:*:Enabled:Mercury Mail
"25:TCP" = 25:TCP:*:Enabled:Mercury Mail
========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe" = C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" = C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe -- (Hewlett-Packard)
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe" = C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe:*:Enabled:hpofxs08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\HP Software Update\HPWUCli.exe" = C:\Program Files\HP\HP Software Update\HPWUCli.exe:*:Enabled:hpwucli.exe -- (Hewlett-Packard)
"C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe" = C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe -- (Hewlett-Packard Co.)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\xampp\tomcat\jre\bin\javaw.exe" = C:\xampp\tomcat\jre\bin\javaw.exe:*:Enabled:Java(TM) 2 Platform Standard Edition binary -- (Sun Microsystems, Inc.)
"C:\xampp\MercuryMail\mercury.exe" = C:\xampp\MercuryMail\mercury.exe:*:Enabled:Mercury/32 Core Processing Module v4.62 -- (David Harris)
"C:\xampp\FileZillaFTP\FileZilla Server.exe" = C:\xampp\FileZillaFTP\FileZilla Server.exe:*:Enabled:FileZilla Server -- (FileZilla Project)
"C:\xampp\mysql\bin\mysqld.exe" = C:\xampp\mysql\bin\mysqld.exe:*:Enabled:mysqld -- (MySQL AB)
"C:\xampp\apache\bin\httpd.exe" = C:\xampp\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server -- (Apache Software Foundation)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"F:\xampplite\mysql\bin\mysqld.exe" = F:\xampplite\mysql\bin\mysqld.exe:*:Enabled:mysqld -- File not found
"F:\xampplite\apache\bin\httpd.exe" = F:\xampplite\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server -- File not found
"F:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe" = F:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- File not found
"H:\xampplite\apache\bin\httpd.exe" = H:\xampplite\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server -- File not found
"H:\xampplite\mysql\bin\mysqld.exe" = H:\xampplite\mysql\bin\mysqld.exe:*:Enabled:mysqld -- File not found
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe -- ()
"C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe -- ( )
"G:\xampplite\mysql\bin\mysqld.exe" = G:\xampplite\mysql\bin\mysqld.exe:*:Enabled:The MySQL Server -- File not found
"G:\xampplite\apache\bin\httpd.exe" = G:\xampplite\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server -- File not found
"G:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe" = G:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- File not found
"H:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe" = H:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- File not found
"C:\Documents and Settings\geo\Local Settings\Temp\pylA0.tmp\pyrun.exe" = C:\Documents and Settings\geo\Local Settings\Temp\pylA0.tmp\pyrun.exe:*:Disabled:pyrun -- File not found
"C:\Program Files\Java\jre6\bin\javaw.exe" = C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
"C:\Documents and Settings\geo\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe" = C:\Documents and Settings\geo\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe:*:Enabled:Octoshape add-in for Adobe Flash Player -- (Octoshape ApS)
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe" = C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" = C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe -- (Hewlett-Packard)
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe" = C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe:*:Enabled:hpofxs08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\HP Software Update\HPWUCli.exe" = C:\Program Files\HP\HP Software Update\HPWUCli.exe:*:Enabled:hpwucli.exe -- (Hewlett-Packard)
"C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe" = C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe -- (Hewlett-Packard Co.)
"I:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe" = I:\PortableApps\uTorrentPortable\App\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- File not found
"Z:\xampp\mysql\bin\mysqld.exe" = Z:\xampp\mysql\bin\mysqld.exe:*:Enabled:The MySQL Server -- File not found
"Z:\xampp\MercuryMail\mercury.exe" = Z:\xampp\MercuryMail\mercury.exe:*:Enabled:Mercury/32 Core Processing Module v4.72 -- File not found
"Z:\xampp\FileZillaFTP\FileZilla Server.exe" = Z:\xampp\FileZillaFTP\FileZilla Server.exe:*:Enabled:FileZilla Server -- File not found
"Z:\xampp\tomcat\jre\bin\javaw.exe" = Z:\xampp\tomcat\jre\bin\javaw.exe:*:Enabled:Java(TM) 2 Platform Standard Edition binary -- File not found
"Z:\xampp\apache\bin\httpd.exe" = Z:\xampp\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server -- File not found
"Z:\xampplite\apache\bin\httpd.exe" = Z:\xampplite\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server -- File not found
"Z:\xampplite\mysql\bin\mysqld.exe" = Z:\xampplite\mysql\bin\mysqld.exe:*:Enabled:The MySQL Server -- File not found
"C:\Program Files\SPSSInc\SPSS16\spss.exe" = C:\Program Files\SPSSInc\SPSS16\spss.exe:*:Disabled:SPSS 16.0 for Windows (1033:exe) -- File not found
"C:\Program Files\SPSSInc\SPSS16\SPSSWinWrapIDE.exe" = C:\Program Files\SPSSInc\SPSS16\SPSSWinWrapIDE.exe:*:Disabled:SPSS Basic Script Editor (1033) -- File not found
"C:\Program Files\SPSSInc\SPSS16\spss.com" = C:\Program Files\SPSSInc\SPSS16\spss.com:*:Disabled:SPSS 16.0 for Windows (1033:com) -- File not found
"C:\Program Files\SPSSInc\Statistics17\statistics.com" = C:\Program Files\SPSSInc\Statistics17\statistics.com:*:Disabled:Statistics17:com -- File not found
"C:\Program Files\SPSSInc\Statistics17\statistics.exe" = C:\Program Files\SPSSInc\Statistics17\statistics.exe:*:Disabled:Statistics17:exe -- File not found
"C:\Program Files\SPSSInc\Statistics17\SPSSWinWrapIDE.exe" = C:\Program Files\SPSSInc\Statistics17\SPSSWinWrapIDE.exe:*:Disabled:SPSS Basic Script Editor -- File not found
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{05EC21B8-4593-3037-A781-A6B5AFFCB19D}" = Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{07FB17D8-7DB6-4F06-80C4-8BE1719CB6A1}" = hpWLPGInstaller
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0E2B0B41-7E08-4F9F-B21F-41C4133F43B7}" = mLogView
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}" = Sonic DLA
"{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}" = Utility Common Driver
"{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{175F0111-2968-4935-8F70-33108C6A4DE3}" = MarketResearch
"{1AA14082-9C81-4FEB-AED0-2C6A7FA73827}" = K109a-z
"{21A2F5EE-1DC5-488A-BE7E-E526F8C61488}" = DeviceDiscovery
"{23B35809-5E4A-4F14-8332-1CDEDDFAC089}" = CP_Package_Variety2
"{23FB368F-1399-4EAC-817C-4B83ECBE3D83}" = mProSafe
"{24BEBF2E-73F3-4599-840B-EDC612CCDD0D}" = Destinations
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
"{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}" = Microsoft SQL Server 2005 Tools Express Edition
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (SQLEXPRESS)
"{2E5C075E-11AB-4BDD-918C-7B9A68953FF8}" = Microsoft SQL Server Compact 3.5 Design Tools ENU
"{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}" = BufferChm
"{2FCE4FC5-6930-40E7-A4F1-F862207424EF}" = InterVideo WinDVD Creator 2
"{31263605-FC84-4787-B847-BA445B147E24}" = ScannerCopy
"{3248F0A8-6813-11D6-A77B-00B0D0150040}" = J2SE Runtime Environment 5.0 Update 4
"{33CFCF98-F8D6-4549-B469-6F4295676D83}" = Symantec AntiVirus
"{34F3FCF1-817B-4D61-B6AF-19D9486AFEA0}" = Unload
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3E9D596A-61D4-4239-BD19-2DB984D2A16F}" = mIWA
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{414A373B-59DF-4102-94CA-9FE9A74CBDDA}" = Garmin Trip and Waypoint Manager v5
"{43CDF946-F5D9-4292-B006-BA0D92013021}" = WebReg
"{4497AFF6-98C4-4F49-B073-F48F42BCBF9E}" = TIPCI
"{48CF9A66-5F03-4025-ABD0-B3A3FA095A59}" = TOSHIBA SD Memory Card Format
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter
"{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Supervisor Password
"{522D1D79-9C0A-4361-91F8-2AFF8EC6C2E1}" = CP_Package_Variety1
"{5279374D-87FE-4879-9385-F17278EBB9D3}" = TOSHIBA Hardware Setup
"{539A5092-B44C-4661-A153-401AD197717A}" = HP Deskjet Ink Advant K109a-z Printer Driver Software 13.0 Rel .6
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01)
"{56B4002F-671C-49F4-984C-C760FE3806B5}" = Microsoft SQL Server VSS Writer
"{5BCA8D15-BCB6-421E-9654-238B43456A4F}" = TOSHIBA Controls
"{616A66CD-D36D-4E24-8B67-33AFDFF48061}" = Palm Outlook Conduits Updater
"{61B1A9C8-B2AD-4F54-B916-388FFD07BDE7}" = 4300
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2
"{64212898-097F-4F3F-AECA-6D34A7EF82DF}" = TOSHIBA Zooming Utility
"{64c5b887-b5ee-42b8-8596-78905a6b5f1f}" = Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and IntelliSense
"{65F9E1F3-A2C1-4AA9-9F33-A3AEB0255F0E}" = Garmin USB Drivers
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{6753B40C-0FBD-3BED-8A9D-0ACAC2DCD85D}" = Microsoft Document Explorer 2008
"{6869591A-7DD8-46D2-837F-57CBF7358955}" = Nokia Connectivity Cable Driver
"{68763C27-235D-4165-A961-FDEA228CE504}" = AiOSoftwareNPI
"{68A10D12-0D0F-4212-BDE6-D87FAD32A8FA}" = SmartWebPrinting
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6BBA26E9-AB03-4FE7-831A-3535584CA002}" = Toolbox
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6E0352EE-6F0D-4FBC-B1B8-4FF032C78BE0}" = PC Connectivity Solution
"{6E9EF98E-259E-416D-B5F8-0ABDB99942CE}" = Adobe Flash Player 10 ActiveX
"{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{736C803C-DD3B-4015-BC51-AFB9E67B9076}" = Readme
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7E75882E-B40E-FA9F-4D12-9990FEEBB449}" = Mountain Bike Action - July 2010
"{7E7B7865-6C80-4373-8BC1-C2EB9431F9DE}" = ProductContextNPI
"{80977342-27E8-4FF7-8B6A-D8D89461DA7F}" = TouchPad On/Off Utility
"{80C06CCD-7D07-3DB6-86CD-B57B3F0614D8}" = Microsoft Visual Studio Team System 2008 Team Suite - ENU
"{821D6F49-1B20-4809-8C73-286CFC52B1B1}" = Samsung Auto Backup
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Graphics Media Accelerator Driver
"{8B12BA86-ADAC-4BA6-B441-FFC591087252}" = TOSHIBA Virtual Sound
"{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}" = mPfMgr
"{8C6BB412-D3A8-4AAE-A01B-35B681789D68}" = mHelp
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_PRJPRO_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_VISPRO_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_PRJPRO_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_VISPRO_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_PRJPRO_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_VISPRO_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0021-0000-0000-0000000FF1CE}" = Microsoft Office Visual Web Developer 2007
"{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0021-0409-0000-0000000FF1CE}" = Microsoft Office Visual Web Developer MUI (English) 2007
"{90120000-0021-0409-0000-0000000FF1CE}_VisualWebDeveloper_{E1044ED2-E4AD-4B39-B500-31109750F6B4}" = Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-003B-0000-0000-0000000FF1CE}" = Microsoft Office Project Professional 2007
"{90120000-003B-0000-0000-0000000FF1CE}_PRJPRO_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-003B-0000-0000-0000000FF1CE}_PRJPRO_{9E73617F-2F38-4864-BD61-BB2DDFE43323}" = Microsoft Office Project 2007 Service Pack 2 (SP2)
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0051-0000-0000-0000000FF1CE}" = Microsoft Office Visio Professional 2007
"{90120000-0051-0000-0000-0000000FF1CE}_VISPRO_{0FD405D3-CAF8-4CA6-8BFD-911D2F8A6585}" = Microsoft Office Visio 2007 Service Pack 2 (SP2)
"{90120000-0051-0000-0000-0000000FF1CE}_VISPRO_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0054-0409-0000-0000000FF1CE}" = Microsoft Office Visio MUI (English) 2007
"{90120000-0054-0409-0000-0000000FF1CE}_VISPRO_{519D9F45-CBF4-4E57-B419-11F196CCA8AE}" = Microsoft Office Visio 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_PRJPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_VISPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00B4-0409-0000-0000000FF1CE}" = Microsoft Office Project MUI (English) 2007
"{90120000-00B4-0409-0000-0000000FF1CE}_PRJPRO_{27A9D316-D332-433B-8EB1-1D93EE49F26D}" = Microsoft Office Project 2007 Service Pack 2 (SP2)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_PRJPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_VISPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90B0D222-8C21-4B35-9262-53B042F18AF9}" = mPfWiz
"{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}" = InterVideo WinDVD for TOSHIBA
"{92127AF5-FDD8-4ADF-BC40-C356C9EE0B7D}" = 32 Bit HP CIO Components Installer
"{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}" = Nokia PC Suite
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{94658027-9F16-4509-BBD7-A59FE57C3023}" = mZConfig
"{9541FED0-327F-4DF0-8B96-EF57EF622F19}" = Sonic RecordNow!
"{961034C0-58DF-11DF-97FD-005056806466}" = Google Earth Plug-in
"{9A33B83D-FFC4-44CF-BEEF-632DECEF2FCD}" = Microsoft SQL Server Database Publishing Wizard 1.2
"{9CC89556-3578-48DD-8408-04E66EBEF401}" = mXML
"{9D765FA6-F2BC-40AF-8145-50808F9BDF4E}" = DVD-RAM Driver
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver
"{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}" = CD/DVD Drive Acoustic Silencer
"{A1430C24-93CF-4182-9252-B333A76F2CDD}" = Garmin Training Center
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A38B2DBC-0DEE-651D-A2AE-EFD479363F74}" = Mountain Bike Action - August 2010
"{A38D57D1-5F29-4691-B3DD-FE4B3A7B3AFE}" = TOSHIBA Power Saver
"{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}" = MSXML 6.0 Parser
"{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}" = iTunes
"{A744C7C3-76F5-42F5-9E15-497A3DFBC709}" = 4300Trb
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA467959-A1D6-4F45-90CD-11DC57733F32}" = Crystal Reports Basic for Visual Studio 2008
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AC76BA86-7AD7-1033-7B44-A70500000002}" = Adobe Reader 7.0.5
"{AE8705FB-E13C-40A9-8A2D-68D6733FBFC2}" = Status
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B510A987-487E-4C66-9F4F-D386AC275715}" = TextPad 4.7
"{B57F2FF0-5A25-4332-B503-4592B370C02F}" = CP_Package_Variety3
"{BC41C09D-FAA9-4346-9FE6-1E0017BC551A}" = Adobe Flash Player 10 Plugin
"{BCC899FE-2DAA-460C-A5FB-60291E73D9C3}" = Microsoft SQL Server Compact 3.5 ENU
"{BD68F46D-8A82-4664-8E68-F87C55BDEFD4}" = Microsoft SQL Server Native Client
"{BDD83DC9-BEE9-4654-A5DA-CC46C250088D}" = TOSHIBA ConfigFree
"{BF4E9ED0-EF26-4A4C-A123-6A6A1ABEE411}" = DocProc
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant
"{C45F4811-31D5-4786-801D-F79CD06EDD85}" = SD Secure Module
"{C5641BA1-B572-FED0-6167-382344B53A99}" = Mountain Bike Action - June 2010
"{C6812939-B117-48E6-A3BA-1709C14A3C8C}" = Scan
"{C75CDBA2-3C86-481e-BD10-BDDA758F9DFF}" = hpPrintProjects
"{C8753E28-2680-49BF-BD48-DD38FD086EFE}" = AiO_Scan_CDA
"{C98E8D9D-21DE-4F87-A9B7-142BB89840FC}" = Toolbox
"{CAA376AF-0DE8-4FCA-942E-C6AC579B94B3}" = Microsoft Windows SDK for Visual Studio 2008 Tools
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D7CAE58E-26DE-49B7-A75D-EAEDF76726BE}" = HP Photosmart Essential
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB6BD5D5-8482-45C0-99CF-745C5B924497}" = WOT for Internet Explorer
"{DC0A5F99-FD66-433F-9D3A-05DCBA64BE42}" = TrayApp
"{E5A8DDAB-AE80-48C6-A75B-D0FAB83B299D}" = HP PSC & OfficeJet 6.1.A
"{E769999E-D0D9-4D51-AEFE-1BD44289E550}" = 4300_Help
"{E81667C6-2856-46D6-ABEA-6A2F42166779}" = mCore
"{E86E52E5-562B-404A-B39E-BDAC2E81365F}" = DJ_SF_06_K109a-z_SW_Min
"{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}" = mMHouse
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F6076EF9-08E1-442F-B6A2-BFB61B295A14}" = Fax_CDA
"{F6090A17-0967-4A8A-B3C3-422A1B514D49}" = mDrWiFi
"{F7B0939E-58DF-11DF-B3A6-005056806466}" = Google Earth
"{FBB980B0-63F8-4B48-8D65-90F1D9F81D9F}" = NewCopy_CDA
"{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}" = mWlsSafe
"{FD6034A3-655C-49F0-B496-D4CBFD74D7A7}" = Palm Desktop by ACCESS
"05B59228C7E1C21DFBE89260F879BD95880548D8" = Windows Driver Package - Nokia Modem (10/05/2009 4.2)
"4426ab73f62b67c04a0ebb032fb4ce1a.784B4C5CADF861323F25287817EE67357CB1E532.1" = Mountain Bike Action - August 2010
"49CF605F02C7954F4E139D18828DE298CD59217C" = Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0)
"504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"6ee1d2863b374d64d7e7eb31fc376370.784B4C5CADF861323F25287817EE67357CB1E532.1" = Mountain Bike Action - June 2010
"8CDCFB95BB84DD9C0F88F22266A0CA86035E55BA" = Windows Driver Package - Nokia Modem (06/01/2009 7.01.0.4)
"Adobe AIR" = Adobe AIR
"CCleaner" = CCleaner (remove only)
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"ENTERPRISE" = Microsoft Office Enterprise 2007
"f416e096697084ffab9626a2a5af974b.784B4C5CADF861323F25287817EE67357CB1E532.1" = Mountain Bike Action - July 2010
"HP Imaging Device Functions" = HP Imaging Device Functions 13.0
"HP Print Projects" = HP Print Projects 1.0
"HP Smart Web Printing" = HP Smart Web Printing 4.5
"HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0
"HPExtendedCapabilities" = HP Customer Participation Program 13.0
"ie8" = Windows Internet Explorer 8
"InstallShield_{4497AFF6-98C4-4F49-B073-F48F42BCBF9E}" = Texas Instruments PCIxx21/x515/xx12 drivers.
"InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Supervisor Password
"InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}" = TOSHIBA Hardware Setup
"InstallShield_{5BCA8D15-BCB6-421E-9654-238B43456A4F}" = TOSHIBA Controls
"InstallShield_{80977342-27E8-4FF7-8B6A-D8D89461DA7F}" = TouchPad On/Off Utility
"InstallShield_{A38D57D1-5F29-4691-B3DD-FE4B3A7B3AFE}" = TOSHIBA Power Saver
"KLiteCodecPack_is1" = K-Lite Codec Pack 3.9.0 Full
"LiveUpdate" = LiveUpdate 3.1 (Symantec Corporation)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft Document Explorer 2008" = Microsoft Document Explorer 2008
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Microsoft Visual Studio Team System 2008 Team Suite - ENU" = Microsoft Visual Studio Team System 2008 Team Suite - ENU
"Mozilla Firefox (3.5.10)" = Mozilla Firefox (3.5.10)
"Nokia PC Suite" = Nokia PC Suite
"PC Diagnostic Tool" = TOSHIBA PC Diagnostic Tool
"PRJPRO" = Microsoft Office Project Professional 2007
"ProInst" = Intel(R) PROSet/Wireless Software
"PROSet" = Intel(R) PRO Network Connections Drivers
"Smart Bro" = Smart Bro
"TOSHIBA Software Modem" = TOSHIBA Software Modem
"VISPRO" = Microsoft Office Visio Professional 2007
"VisualWebDeveloper" = Microsoft Visual Studio Web Authoring Component
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"Zinio Reader" = Zinio Reader
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-3821735628-3510263295-1164204225-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Octoshape add-in for Adobe Flash Player" = Octoshape add-in for Adobe Flash Player
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 7/16/2010 10:15:57 AM | Computer Name = XQSMEQT | Source = EventSystem | ID = 4609
Description = The COM+ Event System detected a bad return code during its internal
processing. HRESULT was 80070422 from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.
Please contact Microsoft Product Support Services to report this erro
Error - 7/16/2010 10:15:57 AM | Computer Name = XQSMEQT | Source = VSS | ID = 8193
Description = Volume Shadow Copy Service error: Unexpected error calling routine
CoCreateInstance. hr = 0x80040206.
Error - 7/16/2010 10:16:05 AM | Computer Name = XQSMEQT | Source = EventSystem | ID = 4609
Description = The COM+ Event System detected a bad return code during its internal
processing. HRESULT was 80070422 from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.
Please contact Microsoft Product Support Services to report this erro
Error - 7/16/2010 10:16:05 AM | Computer Name = XQSMEQT | Source = VSS | ID = 8193
Description = Volume Shadow Copy Service error: Unexpected error calling routine
CoCreateInstance. hr = 0x80040206.
Error - 7/16/2010 8:02:15 PM | Computer Name = XQSMEQT | Source = EventSystem | ID = 4609
Description = The COM+ Event System detected a bad return code during its internal
processing. HRESULT was 80070422 from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.
Please contact Microsoft Product Support Services to report this erro
Error - 7/16/2010 8:02:15 PM | Computer Name = XQSMEQT | Source = VSS | ID = 8193
Description = Volume Shadow Copy Service error: Unexpected error calling routine
CoCreateInstance. hr = 0x80040206.
Error - 7/16/2010 8:02:25 PM | Computer Name = XQSMEQT | Source = EventSystem | ID = 4609
Description = The COM+ Event System detected a bad return code during its internal
processing. HRESULT was 80070422 from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.
Please contact Microsoft Product Support Services to report this erro
Error - 7/16/2010 8:02:25 PM | Computer Name = XQSMEQT | Source = VSS | ID = 8193
Description = Volume Shadow Copy Service error: Unexpected error calling routine
CoCreateInstance. hr = 0x80040206.
Error - 7/16/2010 8:32:00 PM | Computer Name = XQSMEQT | Source = Symantec AntiVirus | ID = 16711726
Description = Security Risk Found!Risk: Bloodhound.MalPE in File: C:\System Volume
Information\_restore{0F60396B-0F5E-4E50-B649-25D2D5E11E35}\RP236\A0056354.exe by:
Auto-Protect scan. Action: Quarantine succeeded. Action Description: The file
was quarantined successfully.
Error - 7/16/2010 8:32:00 PM | Computer Name = XQSMEQT | Source = Symantec AntiVirus | ID = 16711685
Description = Risk Found!Risk: Bloodhound.MalPE in File: C:\System Volume Information\_restore{0F60396B-0F5E-4E50-B649-25D2D5E11E35}\RP236\A0056354.exe
by: Auto-Protect scan. Action: Quarantine succeeded : Access denied. Action Description:
The file was quarantined successfully.
[ OSession Events ]
Error - 12/16/2009 8:58:55 AM | Computer Name = XQSMEQT | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 420
seconds with 360 seconds of active time. This session ended with a crash.
Error - 4/27/2010 9:13:29 AM | Computer Name = XQSMEQT | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 71
seconds with 60 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 7/16/2010 10:15:49 AM | Computer Name = XQSMEQT | Source = DCOM | ID = 10005
Description = DCOM got error "%1058" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
Error - 7/16/2010 10:15:57 AM | Computer Name = XQSMEQT | Source = DCOM | ID = 10005
Description = DCOM got error "%1058" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
Error - 7/16/2010 10:16:03 AM | Computer Name = XQSMEQT | Source = Service Control Manager | ID = 7001
Description = The System Event Notification service depends on the COM+ Event System
service which failed to start because of the following error: %%1058
Error - 7/16/2010 10:16:03 AM | Computer Name = XQSMEQT | Source = Service Control Manager | ID = 7001
Description = The Windows Service Pack Installer update service service depends
on the Security Accounts Manager service which failed to start because of the following
error: %%1058
Error - 7/16/2010 10:16:05 AM | Computer Name = XQSMEQT | Source = DCOM | ID = 10005
Description = DCOM got error "%1058" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
Error - 7/16/2010 8:02:04 PM | Computer Name = XQSMEQT | Source = DCOM | ID = 10005
Description = DCOM got error "%1058" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
Error - 7/16/2010 8:02:15 PM | Computer Name = XQSMEQT | Source = DCOM | ID = 10005
Description = DCOM got error "%1058" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
Error - 7/16/2010 8:02:22 PM | Computer Name = XQSMEQT | Source = Service Control Manager | ID = 7001
Description = The System Event Notification service depends on the COM+ Event System
service which failed to start because of the following error: %%1058
Error - 7/16/2010 8:02:22 PM | Computer Name = XQSMEQT | Source = Service Control Manager | ID = 7001
Description = The Windows Service Pack Installer update service service depends
on the Security Accounts Manager service which failed to start because of the following
error: %%1058
Error - 7/16/2010 8:02:25 PM | Computer Name = XQSMEQT | Source = DCOM | ID = 10005
Description = DCOM got error "%1058" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
< End of report >