My husband's computer, running Windows XP, SP3 is infected by a number of things. Malwarebytes anti malware has detected:
Trojan.FakeMS
Rootkit.0Access.Gen
Trojan.Zaccess.IJ
Rootkit.0Access
Trojan.Agent.RND
Trojan.AGENT.FSA42
These things were also quarantined by my husband's Comodo Internet Security Premium and it looks like Malwarebytes detected them within the Comodo quarantine. While Malwarebytes was running, Comodo occasionally seemed to notice one of the malware programs and prompt me to click "clean", which I did. Malwarebytes also said it had deleted the malware on reboot, but it does seem unable to delete the rootkit or all the trojans, even after I ran a full scan three times. I am somewhat concerned that Comodo and Malwarebytes may be interfering with each other, but I am not sure what it is safe to turn off at this point. I am concerned that leaving Comodo Defense+ in training mode in the past may have allowed this malware to enter.
My husband does not know how he got this malware. He is careful about opening untrustworthy email attachments. His internet use is mainly confined to email, facebook, a yahoo group, and ordinary web browsing, mainly of sites related to linguistics or aviation history.
What I need to know is what is still infecting the computer and how to remove it. The computer is running much more slowly than usual. I very much appreciate any advice you can give me as to how to proceed.
HERE IS THE DDS.txt LOG:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.7.2
Run by Ron at 23:08:28 on 2014-01-19
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2559.2131 [GMT -5:00]
.
AV: COMODO Antivirus *Enabled/Updated* {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
FW: COMODO Firewall *Enabled*
.
============== Running Processes ================
.
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\CTSvcCDA.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\D-Link\DWA-125 revA\ANIWConnService.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
C:\Program Files\real\realplayer\update\realsched.exe
C:\Program Files\D-Link\DWA-125 revA\AirNCFG.exe
C:\Program Files\D-Link\DWA-125 revA\WZCSLDR2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
BHO: AutorunsDisabled - <orphaned>
BHO: RealNetworks Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\documents and settings\all users\application data\realnetworks\realdownloader\browserplugins\ie\rndlbrowserrecordplugin.dll
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.7.9012.1008\swg.dll
BHO: WOT Helper: {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - c:\program files\wot\WOT.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: WOT: {71576546-354D-41C9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: WOT: {71576546-354D-41c9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - <orphaned>
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Adobe Reader Synchronizer] "c:\program files\adobe\reader 10.0\reader\AdobeCollabSync.exe"
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
mRun: [CTSysVol] c:\program files\creative\sbaudigy2\surround mixer\CTSysVol.exe
mRun: [COMODO Internet Security] "c:\program files\comodo\comodo internet security\cfp.exe" -h
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRun: [D-Link D-Link DWA-125] c:\program files\d-link\dwa-125 reva\AirNCFG.exe
mRun: [D-Link DWA-125 WZCSLDR2] c:\program files\d-link\dwa-125 reva\WZCSLDR2.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/ ... ontrol.cab
DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} - hxxps://horizons.istaria.com/controls/launcher.ocx
DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - hxxp://office.microsoft.com/officeupdat ... /opuc3.cab
DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} - hxxps://www-secure.symantec.com/techsup ... gctlsr.cab
DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} - hxxp://dlm.tools.akamai.com/dlmanager/v ... .2.5.7.cab
DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} -
DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} - hxxps://webdl.symantec.com/activex/symdlmgr.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftup ... 9942960015
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} - hxxp://office.microsoft.com/officeupdat ... /opuc4.cab
DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} - hxxp://www.live365.com/players/play365.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{337A570C-2A59-4E67-89B1-99ECC47A12C7} : DHCPNameServer = 192.168.0.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - c:\program files\wot\WOT.dll
AppInit_DLLs= c:\windows\system32\guard32.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Eudora's Shell Extension - {EDB0E980-90BD-11D4-8599-0008C7D3B6F8} - c:\interlog\eudora\EuShlExt.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\32.0.1700.76\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
Hosts: 127.0.0.1 http://www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\ron\application data\mozilla\firefox\profiles\s6a166hv.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://tvlistings.cogeco.ca/tvgrid.shtm ... =1&hilite=
FF - plugin: c:\documents and settings\all users\application data\realnetworks\realdownloader\browserplugins\mozillaplugins\nprndlchromebrowserrecordext.dll
FF - plugin: c:\documents and settings\all users\application data\realnetworks\realdownloader\browserplugins\mozillaplugins\nprndlhtml5videoshim.dll
FF - plugin: c:\documents and settings\all users\application data\realnetworks\realdownloader\browserplugins\mozillaplugins\nprndlpepperflashvideoshim.dll
FF - plugin: c:\documents and settings\all users\application data\realnetworks\realdownloader\browserplugins\npdlplugin.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\real\realplayer\netscape6\nprpplugin.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_4_402_287.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
FF - plugin: c:\windows\system32\npwmsdrm.dll
.
============= SERVICES / DRIVERS ===============
.
R0 ppa;Iomega Parallel Port Filter Driver;c:\windows\system32\drivers\ppa.sys [2006-8-3 17792]
R1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\drivers\cmderd.sys [2010-9-10 18096]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdGuard.sys [2010-9-10 497952]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2010-9-10 32640]
R1 hwinterface;hwinterface;c:\windows\system32\drivers\hwinterface.sys [2009-6-30 3026]
R2 ANPD;ANPD Service;c:\windows\system32\ANPD.SYS [2013-3-30 29411]
R2 cmdAgent;COMODO Internet Security Helper Service;c:\program files\comodo\comodo internet security\cmdagent.exe [2010-9-10 1990464]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [2012-3-30 21992]
R2 D_Link_DWA-125_WPS;D_Link_DWA-125_WPS Service;c:\program files\d-link\dwa-125 reva\ANIWConnService.exe [2013-3-30 53248]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\realnetworks\realdownloader\rndlresolversvc.exe [2012-11-29 38608]
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\all users\application data\skype\toolbars\skype c2c service\c2c_service.exe [2013-10-9 3275136]
R3 rt2870;D-Link dnetr28u USB Extensible Wireless LAN Card Driver;c:\windows\system32\drivers\Drt2870.sys [2013-3-30 1174976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 D_Link_DWA-125;D_Link_DWA-125 Service;c:\program files\d-link\dwa-125 reva\ANIWZCSdS.exe [2013-3-30 126976]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-2-28 161384]
S2 WLNdis50;Wireless Lan NDIS Protocol I/O Control;c:\windows\system32\drivers\wlndis50.sys --> c:\windows\system32\drivers\wlndis50.sys [?]
S3 Arfumftr;Trust RF-Mouse filter driver;c:\windows\system32\drivers\arfumftr.sys --> c:\windows\system32\drivers\Arfumftr.sys [?]
S3 COMMONFX.SYS;COMMONFX.SYS;c:\windows\system32\drivers\commonfx.sys --> c:\windows\system32\drivers\COMMONFX.SYS [?]
S3 COMMONFX;COMMONFX;c:\windows\system32\drivers\commonfx.sys --> c:\windows\system32\drivers\COMMONFX.SYS [?]
S3 CTAUDFX.SYS;CTAUDFX.SYS;c:\windows\system32\drivers\ctaudfx.sys --> c:\windows\system32\drivers\CTAUDFX.SYS [?]
S3 CTAUDFX;CTAUDFX;c:\windows\system32\drivers\ctaudfx.sys --> c:\windows\system32\drivers\CTAUDFX.SYS [?]
S3 CTERFXFX.SYS;CTERFXFX.SYS;c:\windows\system32\drivers\cterfxfx.sys --> c:\windows\system32\drivers\CTERFXFX.SYS [?]
S3 CTERFXFX;CTERFXFX;c:\windows\system32\drivers\cterfxfx.sys --> c:\windows\system32\drivers\CTERFXFX.SYS [?]
S3 CTSBLFX.SYS;CTSBLFX.SYS;c:\windows\system32\drivers\ctsblfx.sys --> c:\windows\system32\drivers\CTSBLFX.SYS [?]
S3 CTSBLFX;CTSBLFX;c:\windows\system32\drivers\ctsblfx.sys --> c:\windows\system32\drivers\CTSBLFX.SYS [?]
S3 RTL8192su;%RTL8192su.DeviceDesc.DispName%;c:\windows\system32\drivers\rtl8192su.sys --> c:\windows\system32\drivers\RTL8192su.sys [?]
S3 SWDUMon;SWDUMon;c:\windows\system32\drivers\SWDUMon.sys [2012-3-29 13464]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2013-7-20 754856]
S4 Symantec Core LC;Symantec Core LC;"c:\program files\common files\symantec shared\ccpd-lc\symlcsvc.exe" --> c:\program files\common files\symantec shared\ccpd-lc\symlcsvc.exe [?]
.
=============== File Associations ===============
.
.txt: <filetype is not registered>
.js: <filetype is not registered>
.
=============== Created Last 30 ================
.
2014-01-17 00:09:17 -------- d-----w- c:\documents and settings\ron\local settings\application data\SecondLife
2014-01-16 02:57:48 -------- d-----w- c:\program files\SecondLifeViewer
.
==================== Find3M ====================
.
2013-12-22 15:33:43 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-12-22 15:33:43 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-11-27 20:21:06 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2013-11-13 02:59:42 150528 ----a-w- c:\windows\system32\imagehlp.dll
2013-11-07 05:38:51 591360 ----a-w- c:\windows\system32\rpcrt4.dll
2013-11-06 01:03:31 7168 ----a-w- c:\windows\system32\xpsp4res.dll
2013-10-30 02:26:17 1879040 ----a-w- c:\windows\system32\win32k.sys
2013-10-29 07:57:34 920064 ----a-w- c:\windows\system32\wininet.dll
2013-10-29 07:57:33 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-10-29 07:57:33 18944 ----a-w- c:\windows\system32\corpol.dll
2013-10-29 07:57:33 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2013-10-29 00:45:02 385024 ----a-w- c:\windows\system32\html.iec
2013-10-23 23:45:49 172032 ----a-w- c:\windows\system32\scrrun.dll
2012-08-08 22:56:40 4024320 ----a-w- c:\program files\GUT24.tmp
2000-12-12 15:17:40 100432 ------w- c:\program files\Win2000PPAHotfix.exe
.
============= FINISH: 23:09:34.17 ===============
HERE IS THE Attach.txt LOG:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 7/25/2006 1:28:56 PM
System Uptime: 1/19/2014 10:34:23 PM (1 hours ago)
.
Motherboard: Dell Computer Corp. | | 0M2035
Processor: Intel(R) Pentium(R) 4 CPU 3.00GHz | Microprocessor | 2991/800mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 74 GiB total, 28.517 GiB free.
D: is CDROM ()
E: is CDROM ()
F: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID:
Description: PCI Simple Communications Controller
Device ID: PCI\VEN_14F1&DEV_2702&SUBSYS_8D891028&REV_01\4&1C660DD6&0&08F0
Manufacturer:
Name: PCI Simple Communications Controller
PNP Device ID: PCI\VEN_14F1&DEV_2702&SUBSYS_8D891028&REV_01\4&1C660DD6&0&08F0
Service:
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: 1394 Net Adapter
Device ID: V1394\NIC1394\1101835823C04
Manufacturer: Microsoft
Name: 1394 Net Adapter
PNP Device ID: V1394\NIC1394\1101835823C04
Service: NIC1394
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Intel(R) PRO/100 VE Network Connection
Device ID: PCI\VEN_8086&DEV_1050&SUBSYS_01571028&REV_02\4&1C660DD6&0&40F0
Manufacturer: Intel
Name: Intel(R) PRO/100 VE Network Connection
PNP Device ID: PCI\VEN_8086&DEV_1050&SUBSYS_01571028&REV_02\4&1C660DD6&0&40F0
Service: E100B
.
==== System Restore Points ===================
.
RP1999: 10/22/2013 6:18:39 PM - System Checkpoint
RP2000: 10/23/2013 6:56:55 PM - System Checkpoint
RP2001: 10/24/2013 7:55:41 PM - System Checkpoint
RP2002: 10/25/2013 8:28:41 PM - System Checkpoint
RP2003: 10/26/2013 9:14:40 PM - System Checkpoint
RP2004: 10/27/2013 10:16:14 PM - System Checkpoint
RP2005: 10/28/2013 10:21:18 PM - System Checkpoint
RP2006: 10/29/2013 11:04:48 PM - System Checkpoint
RP2007: 10/30/2013 11:07:59 PM - System Checkpoint
RP2008: 10/31/2013 11:26:22 PM - System Checkpoint
RP2009: 11/2/2013 12:25:42 AM - System Checkpoint
RP2010: 11/2/2013 11:39:08 PM - System Checkpoint
RP2011: 11/4/2013 12:32:10 AM - System Checkpoint
RP2012: 11/5/2013 1:05:48 AM - System Checkpoint
RP2013: 11/6/2013 1:09:00 AM - System Checkpoint
RP2014: 11/7/2013 1:27:43 AM - System Checkpoint
RP2015: 11/8/2013 3:10:22 PM - System Checkpoint
RP2016: 11/9/2013 6:04:07 PM - System Checkpoint
RP2017: 11/10/2013 6:44:21 PM - System Checkpoint
RP2018: 11/11/2013 7:21:51 PM - System Checkpoint
RP2019: 11/12/2013 9:51:47 PM - System Checkpoint
RP2020: 11/13/2013 10:43:42 PM - System Checkpoint
RP2021: 11/14/2013 11:18:21 PM - System Checkpoint
RP2022: 11/15/2013 11:25:18 PM - System Checkpoint
RP2023: 11/17/2013 12:09:09 AM - System Checkpoint
RP2024: 11/18/2013 12:30:14 AM - System Checkpoint
RP2025: 11/19/2013 1:21:06 AM - System Checkpoint
RP2026: 11/20/2013 1:24:55 AM - System Checkpoint
RP2027: 11/21/2013 3:46:48 PM - System Checkpoint
RP2028: 11/22/2013 6:23:19 PM - System Checkpoint
RP2029: 11/23/2013 6:31:06 PM - System Checkpoint
RP2030: 11/24/2013 10:24:36 PM - System Checkpoint
RP2031: 11/25/2013 11:23:14 PM - System Checkpoint
RP2032: 11/26/2013 11:34:01 PM - System Checkpoint
RP2033: 11/28/2013 12:08:07 AM - System Checkpoint
RP2034: 11/29/2013 1:14:10 AM - System Checkpoint
RP2035: 11/30/2013 2:06:43 AM - System Checkpoint
RP2036: 12/1/2013 2:16:14 AM - System Checkpoint
RP2037: 12/2/2013 6:19:43 PM - System Checkpoint
RP2038: 12/3/2013 6:21:29 PM - System Checkpoint
RP2039: 12/4/2013 8:42:34 PM - System Checkpoint
RP2040: 12/5/2013 11:44:32 PM - System Checkpoint
RP2041: 12/6/2013 11:50:50 PM - System Checkpoint
RP2042: 12/8/2013 12:14:20 AM - System Checkpoint
RP2043: 12/9/2013 12:40:30 AM - System Checkpoint
RP2044: 12/10/2013 1:53:07 AM - System Checkpoint
RP2045: 12/11/2013 5:58:11 PM - System Checkpoint
RP2046: 12/12/2013 6:33:46 PM - System Checkpoint
RP2047: 12/13/2013 7:06:35 PM - System Checkpoint
RP2048: 12/14/2013 7:12:33 PM - System Checkpoint
RP2049: 12/15/2013 7:23:29 PM - System Checkpoint
RP2050: 12/16/2013 8:12:44 PM - System Checkpoint
RP2051: 12/17/2013 9:49:54 PM - System Checkpoint
RP2052: 12/18/2013 10:31:28 PM - System Checkpoint
RP2053: 12/20/2013 12:06:46 AM - System Checkpoint
RP2054: 12/21/2013 12:27:40 AM - System Checkpoint
RP2055: 12/22/2013 1:25:54 AM - System Checkpoint
RP2056: 12/23/2013 12:21:28 PM - System Checkpoint
RP2057: 12/24/2013 12:59:32 PM - System Checkpoint
RP2058: 12/25/2013 1:07:12 PM - System Checkpoint
RP2059: 12/26/2013 2:46:45 PM - System Checkpoint
RP2060: 12/27/2013 3:01:31 PM - System Checkpoint
RP2061: 12/28/2013 5:32:05 PM - System Checkpoint
RP2062: 12/29/2013 6:39:36 PM - System Checkpoint
RP2063: 12/30/2013 8:40:45 PM - System Checkpoint
RP2064: 12/31/2013 9:18:59 PM - System Checkpoint
RP2065: 1/1/2014 11:46:34 PM - System Checkpoint
RP2066: 1/3/2014 12:25:43 AM - System Checkpoint
RP2067: 1/4/2014 12:54:26 AM - System Checkpoint
RP2068: 1/5/2014 11:51:47 AM - System Checkpoint
RP2069: 1/6/2014 12:44:47 PM - System Checkpoint
RP2070: 1/7/2014 1:13:18 PM - System Checkpoint
RP2071: 1/8/2014 2:45:09 PM - System Checkpoint
RP2072: 1/9/2014 3:01:20 PM - System Checkpoint
RP2073: 1/10/2014 6:21:12 PM - System Checkpoint
RP2074: 1/11/2014 6:31:57 PM - System Checkpoint
RP2075: 1/12/2014 6:37:23 PM - System Checkpoint
RP2076: 1/13/2014 6:39:32 PM - System Checkpoint
RP2077: 1/14/2014 9:29:46 PM - System Checkpoint
RP2078: 1/15/2014 10:29:42 PM - System Checkpoint
RP2079: 1/16/2014 11:36:37 PM - System Checkpoint
RP2080: 1/18/2014 12:14:47 AM - System Checkpoint
RP2081: 1/19/2014 12:30:23 AM - System Checkpoint
.
==== Installed Programs ======================
.
.
==== End Of File ===========================
Thank you for your help.