<?xml version="1.0" encoding="ISO-8859-1" ?>
<rss version="2.0">
<channel>
	<title>247fixes</title>
	<description>247fixes</description>
	<link>http://www.247fixes.com/forums/index.php</link>
	<pubDate>Sun, 14 Mar 2010 18:56:38 +0000</pubDate>
	<ttl>5</ttl>
	<item>
		<title>Computer Shuts Down On  Its Own Upon Log In.</title>
		<link>http://www.247fixes.com/forums/topic/6560-computer-shuts-down-on-its-own-upon-log-in/</link>
		<description><![CDATA[Out of the blue last night my computer shut down on its own. and it didn't restart, freeze, or give me the blue screen of death. just shuts down completely as if the power is cut out. and since last night, every time when i try to log on to windows xp, it just shuts down by itself.. sometimes a 10 seconds after i logged in... sometimes a few minutes later. <br />
<br />
i could still log in fine in safe mode, and just now i got in mine through debugging mode (and as soon as i got in, i went to taskmanager and closed a lot of the applications in taskmanager) and so far the computer is still on.<br />
<br />
i checked window's event viewer and pretty much located the time and cause of the problem (i believe)<br />
here are the two errors during those times:<br />
<br />
service control manager:<br />
the following boot-start or system-start driver(s) failed to load: OMCI<br />
<br />
service control manager:<br />
The MCSTRM service failed to start due to t he following error:<br />
The system cannot find the file specified<br />
-------------------------------------------------<br />
<br />
i googled mcstrm and read on a forum that spywares and viruses sometimes would infect the mcstrm file? while other mentions something about realplayer and rhapsody... and i have gone to control manager and removed both of those.<br />
<br />
i also tried to search for MCSTRM.sys in C:&#092;windows and C:&#092;windows&#092;system32 but could not find it at all (which is probably why it says. the system cannot find the file specified in that event log) <br />
<br />
anyway. if anyone can help with this problem i would greatly appreciate it <img src='http://www.247fixes.com/forums/public/style_emoticons/default/sad.gif' class='bbc_emoticon' alt=':(' />]]></description>
		<pubDate>Sun, 14 Mar 2010 18:56:38 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6560-computer-shuts-down-on-its-own-upon-log-in/</guid>
	</item>
	<item>
		<title>Computer Shuts Down On  Its Own Upon Log In.</title>
		<link>http://www.247fixes.com/forums/topic/6559-computer-shuts-down-on-its-own-upon-log-in/</link>
		<description><![CDATA[Out of the blue last night my computer shut down on its own. and it didn't restart, freeze, or give me the blue screen of death. just shuts down completely as if the power is cut out. and since last night, every time when i try to log on to windows xp, it just shuts down by itself.. sometimes a 10 seconds after i logged in... sometimes a few minutes later. <br />
<br />
i could still log in fine in safe mode, and just now i got in mine through debugging mode (and as soon as i got in, i went to taskmanager and closed a lot of the applications in taskmanager) and so far the computer is still on.<br />
<br />
i checked window's event viewer and pretty much located the time and cause of the problem (i believe)<br />
here are the two errors during those times:<br />
<br />
service control manager:<br />
the following boot-start or system-start driver(s) failed to load: OMCI<br />
<br />
service control manager:<br />
The MCSTRM service failed to start due to t he following error:<br />
The system cannot find the file specified<br />
-------------------------------------------------<br />
<br />
i googled mcstrm and read on a forum that spywares and viruses sometimes would infect the mcstrm file? while other mentions something about realplayer and rhapsody... and i have gone to control manager and removed both of those.<br />
<br />
i also tried to search for MCSTRM.sys in C:&#092;windows and C:&#092;windows&#092;system32 but could not find it at all (which is probably why it says. the system cannot find the file specified in that event log) <br />
<br />
anyway. if anyone can help with this problem i would greatly appreciate it <img src='http://www.247fixes.com/forums/public/style_emoticons/default/sad.gif' class='bbc_emoticon' alt=':(' />]]></description>
		<pubDate>Sun, 14 Mar 2010 18:55:51 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6559-computer-shuts-down-on-its-own-upon-log-in/</guid>
	</item>
	<item>
		<title>Svchost Causes High Cpu Usage :(</title>
		<link>http://www.247fixes.com/forums/topic/6556-svchost-causes-high-cpu-usage/</link>
		<description><![CDATA[I started recently seeing that SVCHOST takes a lot of CPU% usage. I used program called "Process Explorer" to identify the source of problem and found out that thread "kernel32.dll!CreateThread+0x22" was causing the problems.<br />
<br />
http://img202.imageshack.us/img202/9329/kernel32dllthread.jpg<br />
<br />
But as you can see on picture, there are another <strong class='bbc'>same</strong> threads, which is interesting...<br />
<br />
Now even if i kill this thread, it will still be happening as computer starts. Is there a way to kill permanently this thread or to know more how it can be stopped?]]></description>
		<pubDate>Sat, 13 Mar 2010 14:06:08 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6556-svchost-causes-high-cpu-usage/</guid>
	</item>
	<item>
		<title>Remote Windows Updates</title>
		<link>http://www.247fixes.com/forums/topic/6543-remote-windows-updates/</link>
		<description><![CDATA[Hi, I was wondering does anybody have a method for remotely checking and <strong class='bbc'>installing</strong> windows updates on all client computers of a active directory server.<br />
<br />
I have got checking for updates working with the following script I wrote.<br />
<pre class='prettyprint'>
&lt;?php
function search($for) {
	if ($for == "user" | $for == "computer" | $for == "teachers") {
		if ($for == "teachers")
			$type = "teachers" && $for = "user";
		$results = array ();
		$ldap_host = "AD";
		$ldap_port = "389";
		if ($type == "teachers")
			$base_dn = "OU=Teachers,OU=School,dc=company,dc=local";
		else
			$base_dn = "OU=School,dc=company,dc=local";
		$filter = "(objectCategory=" . $for . ")";
		if ($for == "user")
			$get = array ("samaccountname" );
		if ($for == "computer")
			$get = array ("name" );
		
		$connect = ldap_connect ( $ldap_host, $ldap_port );
		ldap_set_option ( $connect, LDAP_OPT_PROTOCOL_VERSION, 3 );
		ldap_set_option ( $connect, LDAP_OPT_REFERRALS, 0 );
		$bind = ldap_bind ( $connect );
		$read = ldap_search ( $connect, $base_dn, $filter, $get );
		$info = ldap_get_entries ( $connect, $read );
		foreach ( $info as $open ) {
			if ($for == "user" && $open &#91;samaccountname&#93; &#91;0&#93; != "")
				$results &#91;&#93; = $open &#91;samaccountname&#93; &#91;0&#93;;
			if ($for == "computer" && $open &#91;name&#93; &#91;0&#93; != "")
				$results &#91;&#93; = $open &#91;name&#93; &#91;0&#93;;
		}
	}
	return $results;
}

$computers = search ( 'computer' );
foreach ( $computers as $computer ) {
	shell_exec("psexec  file://%5C%5C$computer - &#092;&#092;&#092;&#092;$computer wuauclt /resetauthorization /detectnow")
}
?&gt;
</pre>]]></description>
		<pubDate>Thu, 11 Mar 2010 19:05:30 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6543-remote-windows-updates/</guid>
	</item>
	<item>
		<title>I Think I Have A Key Logger</title>
		<link>http://www.247fixes.com/forums/topic/6535-i-think-i-have-a-key-logger/</link>
		<description><![CDATA[Hi guys i would love to get a little help in dummy talk lol. well here is the problem i had some sort of key logger in my system i guess and an gold farmer used it to hack my wowo and take it over. I caught it the next morning and got blizz to restor but now do not want to relog in till i find the bugger. Here is the Hackthis log and the uninstall logs pls help me figure out what ones i need to get rid of.<br />
<br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 7:17:33 AM, on 3/10/2010<br />
Platform: Windows Vista SP2 (WinNT 6.00.1906)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18882)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;Program Files (x86)&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAAnotif.exe<br />
C:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;HP Advisor&#092;HPAdvisor.exe<br />
C:&#092;Program Files (x86)&#092;Steam&#092;Steam.exe<br />
C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;3.8.0.41&#092;ccSvcHst.exe<br />
C:&#092;Program Files (x86)&#092;SUPERAntiSpyware&#092;SUPERAntiSpyware.exe<br />
C:&#092;Program Files (x86)&#092;Google&#092;GoogleToolbarNotifier&#092;GoogleToolbarNotifier.exe<br />
C:&#092;hp&#092;support&#092;hpsysdrv.exe<br />
C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jusched.exe<br />
C:&#092;Program Files (x86)&#092;HP&#092;HP Software Update&#092;hpwuSchd2.exe<br />
C:&#092;Program Files (x86)&#092;Adobe&#092;Reader 8.0&#092;Reader&#092;reader_sl.exe<br />
C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;acrotray.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ACDaemon.exe<br />
C:&#092;Program Files (x86)&#092;MSN Toolbar&#092;Platform&#092;4.0.0379.0&#092;mswinext.exe<br />
C:&#092;Program Files (x86)&#092;Trend Micro&#092;HijackThis&#092;HijackThis.exe<br />
<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://ie.redirect.hp.com/svs/rdr?TYPE=' class='bbc_url' title='External link' rel='nofollow'>http://ie.redirect.hp.com/svs/rdr?TYPE=</a> ... on&pf=cndt<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://ie.redirect.hp.com/svs/rdr?TYPE=' class='bbc_url' title='External link' rel='nofollow'>http://ie.redirect.hp.com/svs/rdr?TYPE=</a> ... on&pf=cndt<br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://ie.redirect.hp.com/svs/rdr?TYPE=' class='bbc_url' title='External link' rel='nofollow'>http://ie.redirect.hp.com/svs/rdr?TYPE=</a> ... on&pf=cndt<br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://ie.redirect.hp.com/svs/rdr?TYPE=' class='bbc_url' title='External link' rel='nofollow'>http://ie.redirect.hp.com/svs/rdr?TYPE=</a> ... on&pf=cndt<br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,SearchAssistant = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,CustomizeSearch = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Local Page = C:&#092;Windows&#092;SysWOW64&#092;blank.htm<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings,ProxyOverride = *.local<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Toolbar,LinksFolderName = <br />
O1 - Hosts: ::1 localhost<br />
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:&#092;Program Files (x86)&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn&#092;yt.dll<br />
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelper.dll<br />
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:&#092;Program Files (x86)&#092;Adobe&#092;/Adobe Contribute CS3/contributeieplugin.dll<br />
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;3.8.0.41&#092;coIEPlg.dll<br />
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;3.8.0.41&#092;IPSBHO.DLL<br />
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:&#092;Program Files (x86)&#092;Microsoft&#092;Search Enhancement Pack&#092;Search Helper&#092;SEPsearchhelperie.dll<br />
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:&#092;Program Files (x86)&#092;Google&#092;Google Toolbar&#092;GoogleToolbar_32.dll<br />
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:&#092;Program Files (x86)&#092;Google&#092;GoogleToolbarNotifier&#092;5.5.4723.1820&#092;swg.dll<br />
O2 - BHO: MSN Toolbar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:&#092;Program Files (x86)&#092;MSN Toolbar&#092;Platform&#092;4.0.0379.0&#092;npwinext.dll<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:&#092;Program Files (x86)&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn&#092;yt.dll<br />
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;3.8.0.41&#092;coIEPlg.dll<br />
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll<br />
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:&#092;Program Files (x86)&#092;Adobe&#092;/Adobe Contribute CS3/contributeieplugin.dll<br />
O3 - Toolbar: MSN Toolbar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:&#092;Program Files (x86)&#092;MSN Toolbar&#092;Platform&#092;4.0.0379.0&#092;npwinext.dll<br />
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:&#092;Program Files (x86)&#092;Google&#092;Google Toolbar&#092;GoogleToolbar_32.dll<br />
O4 - HKLM&#092;..&#092;Run: [hpsysdrv] c:&#092;hp&#092;support&#092;hpsysdrv.exe<br />
O4 - HKLM&#092;..&#092;Run: [HP Health Check Scheduler] c:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;HP Health Check&#092;HPHC_Scheduler.exe<br />
O4 - HKLM&#092;..&#092;Run: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jusched.exe"<br />
O4 - HKLM&#092;..&#092;Run: [HP Software Update] c:&#092;Program Files (x86)&#092;HP&#092;HP Software Update&#092;HPWuSchd2.exe<br />
O4 - HKLM&#092;..&#092;Run: [Adobe Reader Speed Launcher] "C:&#092;Program Files (x86)&#092;Adobe&#092;Reader 8.0&#092;Reader&#092;Reader_sl.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Acrobat Assistant 8.0] "C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;Acrotray.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Adobe_ID0EYTHM] C:&#092;PROGRA~2&#092;COMMON~1&#092;Adobe&#092;ADOBEV~1&#092;Server&#092;bin&#092;VERSIO~2.EXE<br />
O4 - HKLM&#092;..&#092;Run: [ArcSoft Connection Service] "C:&#092;Program Files (x86)&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ACDaemon.exe"<br />
O4 - HKLM&#092;..&#092;Run: [MSN Toolbar] "C:&#092;Program Files (x86)&#092;MSN Toolbar&#092;Platform&#092;4.0.0379.0&#092;mswinext.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Microsoft Default Manager] "C:&#092;Program Files (x86)&#092;Microsoft&#092;Search Enhancement Pack&#092;Default Manager&#092;DefMgr.exe" -resume<br />
O4 - HKCU&#092;..&#092;Run: [Sidebar] C:&#092;Program Files&#092;Windows Sidebar&#092;sidebar.exe /autoRun<br />
O4 - HKCU&#092;..&#092;Run: [HPAdvisor] C:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;HP Advisor&#092;HPAdvisor.exe autorun=AUTORUN<br />
O4 - HKCU&#092;..&#092;Run: [Steam] "C:&#092;Program Files (x86)&#092;Steam&#092;Steam.exe" -silent<br />
O4 - HKCU&#092;..&#092;Run: [EPSON WorkForce 500 Series] C:&#092;Windows&#092;system32&#092;spool&#092;DRIVERS&#092;x64&#092;3&#092;E_IATIEQA.EXE /FU "C:&#092;Windows&#092;TEMP&#092;E_SA106.tmp" /EF "HKCU"<br />
O4 - HKCU&#092;..&#092;Run: [SUPERAntiSpyware] C:&#092;Program Files (x86)&#092;SUPERAntiSpyware&#092;SUPERAntiSpyware.exe<br />
O4 - HKCU&#092;..&#092;Run: [swg] "C:&#092;Program Files (x86)&#092;Google&#092;GoogleToolbarNotifier&#092;GoogleToolbarNotifier.exe"<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;Run: [Sidebar] %ProgramFiles%&#092;Windows Sidebar&#092;Sidebar.exe /detectMem (User 'LOCAL SERVICE')<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')<br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;Run: [Sidebar] %ProgramFiles%&#092;Windows Sidebar&#092;Sidebar.exe /detectMem (User 'NETWORK SERVICE')<br />
O8 - Extra context menu item: Append to existing PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: Convert link target to existing PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: Convert selection to existing PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: Convert to Adobe PDF - res://C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 8.0&#092;Acrobat&#092;AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:&#092;PROGRA~2&#092;MICROS~2&#092;Office12&#092;EXCEL.EXE/3000<br />
O8 - Extra context menu item: Google Sidewiki... - res://C:&#092;Program Files (x86)&#092;Google&#092;Google Toolbar&#092;Component&#092;GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:&#092;PROGRA~2&#092;MICROS~2&#092;Office12&#092;REFIEBAR.DLL<br />
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - <a href='http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab' class='bbc_url' title='External link' rel='nofollow'>http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab</a><br />
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;3.8.0.41&#092;coIEPlg.dll<br />
O20 - Winlogon Notify: !SASWinLogon - C:&#092;Program Files (x86)&#092;SUPERAntiSpyware&#092;SASWINLO.dll<br />
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:&#092;Program Files (x86)&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ACService.exe<br />
O23 - Service: Adobe Version Cue CS3 - Adobe Systems Incorporated - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Adobe Version Cue CS3&#092;Server&#092;bin&#092;VersionCueCS3.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;Alg.exe,-112 (ALG) - Unknown owner - C:&#092;Windows&#092;System32&#092;alg.exe (file missing)<br />
O23 - Service: AMD External Events Utility - Unknown owner - C:&#092;Windows&#092;system32&#092;atiesrxx.exe (file missing)<br />
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:&#092;Program Files (x86)&#092;Bonjour&#092;mDNSResponder.exe<br />
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:&#092;Windows&#092;system32&#092;DFSR.exe (file missing)<br />
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:&#092;Program Files (x86)&#092;Common Files&#092;Macrovision Shared&#092;FLEXnet Publisher&#092;FNPLicensingService.exe<br />
O23 - Service: GameConsoleService - WildTangent, Inc. - C:&#092;Program Files (x86)&#092;HP Games&#092;My HP Game Console&#092;GameConsoleService.exe<br />
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;GoogleUpdate.exe<br />
O23 - Service: Google Software Updater (gusvc) - Google - C:&#092;Program Files (x86)&#092;Google&#092;Common&#092;Google Updater&#092;GoogleUpdaterService.exe<br />
O23 - Service: HP Health Check Service - Hewlett-Packard - c:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;HP Health Check&#092;hphc_service.exe<br />
O23 - Service: HP Chasis Button Service (HPBtnSrv) - Unknown owner - c:&#092;hp&#092;HPEZBTN&#092;HPBtnSrv.exe<br />
O23 - Service: Intel&reg; Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:&#092;Program Files (x86)&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAANTMon.exe<br />
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:&#092;Program Files (x86)&#092;Common Files&#092;LightScribe&#092;LSSrvc.exe<br />
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:&#092;Windows&#092;System32&#092;msdtc.exe (file missing)<br />
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;3.8.0.41&#092;ccSvcHst.exe<br />
O23 - Service: @%SystemRoot%&#092;System32&#092;netlogon.dll,-102 (Netlogon) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;nvvsvc.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;Locator.exe,-2 (RpcLocator) - Unknown owner - C:&#092;Windows&#092;system32&#092;locator.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;samsrv.dll,-1 (SamSs) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;SLsvc.exe,-101 (slsvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;SLsvc.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:&#092;Windows&#092;System32&#092;snmptrap.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;spoolsv.exe,-1 (Spooler) - Unknown owner - C:&#092;Windows&#092;System32&#092;spoolsv.exe (file missing)<br />
O23 - Service: Steam Client Service - Valve Corporation - C:&#092;Program Files (x86)&#092;Common Files&#092;Steam&#092;SteamService.exe<br />
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;3D Vision&#092;nvSCPAPISvr.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:&#092;Windows&#092;system32&#092;UI0Detect.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;vds.exe,-100 (vds) - Unknown owner - C:&#092;Windows&#092;System32&#092;vds.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;vssvc.exe,-102 (VSS) - Unknown owner - C:&#092;Windows&#092;system32&#092;vssvc.exe (file missing)<br />
O23 - Service: @%Systemroot%&#092;system32&#092;wbem&#092;wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:&#092;Windows&#092;system32&#092;wbem&#092;WmiApSrv.exe (file missing)<br />
O23 - Service: @%ProgramFiles%&#092;Windows Media Player&#092;wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:&#092;Program Files (x86)&#092;Windows Media Player&#092;wmpnetwk.exe (file missing)<br />
<br />
--<br />
End of file - 13444 bytes<br />
<br />
<br />
Hereis the uninstal<br />
<br />
<br />
ABBYY FineReader 6.0 Sprint<br />
Add or Remove Adobe Creative Suite 3 Master Collection<br />
Adobe After Effects CS3<br />
Adobe After Effects CS3 Presets<br />
Adobe Anchor Service CS3<br />
Adobe Asset Services CS3<br />
Adobe Bridge CS3<br />
Adobe Bridge Start Meeting<br />
Adobe BridgeTalk Plugin CS3<br />
Adobe Camera Raw 4.0<br />
Adobe CMaps<br />
Adobe Color - Photoshop Specific<br />
Adobe Color Common Settings<br />
Adobe Color EU Extra Settings<br />
Adobe Color JA Extra Settings<br />
Adobe Color NA Recommended Settings<br />
Adobe Contribute CS3<br />
Adobe Creative Suite 3 Master Collection<br />
Adobe Default Language CS3<br />
Adobe Device Central CS3<br />
Adobe Dreamweaver CS3<br />
Adobe Encore CS3<br />
Adobe Encore CS3 Codecs<br />
Adobe ExtendScript Toolkit 2<br />
Adobe Extension Manager CS3<br />
Adobe Fireworks CS3<br />
Adobe Flash CS3<br />
Adobe Flash Player 10 ActiveX<br />
Adobe Flash Player 9 Plugin<br />
Adobe Flash Video Encoder<br />
Adobe Fonts All<br />
Adobe Help Viewer CS3<br />
Adobe Illustrator CS3<br />
Adobe InDesign CS3<br />
Adobe InDesign CS3 Icon Handler<br />
Adobe Linguistics CS3<br />
Adobe MotionPicture Color Files<br />
Adobe PDF Library Files<br />
Adobe Photoshop CS3<br />
Adobe Premiere Pro CS3<br />
Adobe Premiere Pro CS3 Functional Content<br />
Adobe Premiere Pro CS3 Third Party Content<br />
Adobe Reader 8.1.2<br />
Adobe Setup<br />
Adobe SING CS3<br />
Adobe Soundbooth CS3<br />
Adobe Soundbooth CS3 Codecs<br />
Adobe Stock Photos CS3<br />
Adobe Type Support<br />
Adobe Update Manager CS3<br />
Adobe Version Cue CS3 Client<br />
Adobe Version Cue CS3 Server<br />
Adobe Video Profiles<br />
Adobe WAS CS3<br />
Adobe WinSoft Linguistics Plugin<br />
Adobe XMP DVA Panels CS3<br />
Adobe XMP Panels CS3<br />
AHV content for Acrobat and Flash<br />
Aliens vs Predator<br />
ArcSoft Print Creations<br />
ArcSoft Print Creations - Brochure<br />
ArcSoft Print Creations - Photo Calendar<br />
Batman: Arkham Asylum<br />
Borderlands<br />
Command and Conquer: Red Alert 3<br />
Compatibility Pack for the 2007 Office system<br />
CyberLink DVD Suite Deluxe<br />
Enhanced Multimedia Keyboard Solution<br />
EPSON Scan<br />
Game Maker 7.0<br />
GameSpy Arcade<br />
Google Toolbar for Internet Explorer<br />
Google Toolbar for Internet Explorer<br />
Google Update Helper<br />
Hardware Diagnostic Tools<br />
Hewlett-Packard Active Check for Health Check<br />
Hewlett-Packard Asset Agent for Health Check<br />
HijackThis 2.0.2<br />
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)<br />
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)<br />
HP Active Support Library<br />
HP Customer Experience Enhancements<br />
HP Customer Feedback<br />
HP Demo<br />
HP Picasso Media Center Add-In<br />
HP Recovery Manager RSS<br />
HP Total Care Advisor<br />
HP Update<br />
HPTCSSetup<br />
Java&#153; 6 Update 17<br />
Java&#153; SE Runtime Environment 6 Update 1<br />
LabelPrint<br />
Left 4 Dead 2<br />
LightScribe System Software 1.14.17.1<br />
LightScribeTemplateLabeler<br />
Malwarebytes' Anti-Malware<br />
Mass Effect 2<br />
Microsoft Default Manager<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office Access MUI (English) 2007<br />
Microsoft Office Access Setup Metadata MUI (English) 2007<br />
Microsoft Office Excel MUI (English) 2007<br />
Microsoft Office InfoPath MUI (English) 2007<br />
Microsoft Office Outlook MUI (English) 2007<br />
Microsoft Office PowerPoint MUI (English) 2007<br />
Microsoft Office PowerPoint Viewer 2007 (English)<br />
Microsoft Office Professional Plus 2007<br />
Microsoft Office Professional Plus 2007<br />
Microsoft Office Proof (English) 2007<br />
Microsoft Office Proof (French) 2007<br />
Microsoft Office Proof (Spanish) 2007<br />
Microsoft Office Proofing (English) 2007<br />
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
Microsoft Office Publisher MUI (English) 2007<br />
Microsoft Office Shared MUI (English) 2007<br />
Microsoft Office Shared Setup Metadata MUI (English) 2007<br />
Microsoft Office Word MUI (English) 2007<br />
Microsoft Search Enhancement Pack<br />
Microsoft Silverlight<br />
Microsoft UI Engine<br />
Microsoft Visual C++ 2005 Redistributable<br />
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148<br />
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022<br />
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17<br />
Microsoft Works<br />
MSN Toolbar<br />
MSN Toolbar Platform<br />
muvee autoProducer 6.1<br />
My HP Games<br />
Norton 360<br />
NVIDIA PhysX<br />
NVIDIA Stereoscopic 3D Driver<br />
PDF Settings<br />
Power2Go<br />
PowerDirector<br />
PowerDirector<br />
Python 2.5.2<br />
Ralink Wireless LAN<br />
Realtek High Definition Audio Driver<br />
S.T.A.L.K.E.R.: Clear Sky<br />
S.T.A.L.K.E.R.: Shadow of Chernobyl<br />
Saints Row 2<br />
Security Update for 2007 Microsoft Office System (KB969559)<br />
Security Update for 2007 Microsoft Office System (KB973704)<br />
Security Update for Microsoft Office Excel 2007 (KB973593)<br />
Security Update for Microsoft Office Outlook 2007 (KB972363)<br />
Security Update for Microsoft Office PowerPoint 2007 (KB957789)<br />
Security Update for Microsoft Office Publisher 2007 (KB969693)<br />
Security Update for Microsoft Office system 2007 (972581)<br />
Security Update for Microsoft Office system 2007 (KB969613)<br />
Security Update for Microsoft Office system 2007 (KB974234)<br />
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)<br />
Spellforce - Platinum Edition<br />
Star Trek Online<br />
Steam<br />
SUPERAntiSpyware Free Edition<br />
UFO Extraterrestrials Gold<br />
Update for 2007 Microsoft Office System (KB967642)<br />
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)<br />
Update for Microsoft Office 2007 Help for Common Features (KB963673)<br />
Update for Microsoft Office Access 2007 Help (KB963663)<br />
Update for Microsoft Office Excel 2007 Help (KB963678)<br />
Update for Microsoft Office InfoPath 2007 (KB976416)<br />
Update for Microsoft Office Infopath 2007 Help (KB963662)<br />
Update for Microsoft Office Outlook 2007 Help (KB963677)<br />
Update for Microsoft Office Powerpoint 2007 Help (KB963669)<br />
Update for Microsoft Office Publisher 2007 Help (KB963667)<br />
Update for Microsoft Office Script Editor Help (KB963671)<br />
Update for Microsoft Office Word 2007 (KB974561)<br />
Update for Microsoft Office Word 2007 Help (KB963665)<br />
Update for Outlook 2007 Junk Email Filter (kb977719)<br />
Warhammer 40,000: Dawn of War II<br />
World of Warcraft<br />
Yahoo! Toolbar<br />
Zombie Bowl-O-Rama]]></description>
		<pubDate>Thu, 11 Mar 2010 01:21:09 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6535-i-think-i-have-a-key-logger/</guid>
	</item>
	<item>
		<title>Hidden Files Etc</title>
		<link>http://www.247fixes.com/forums/topic/6533-hidden-files-etc/</link>
		<description><![CDATA[<em class='bbc'>Hi, I'm new here so go easy on me. I'm trying to make my hidden files visible. I've followed the usual procedure in the files options AND upon adice I tried changing the registry entry under "hidden" from 1 to 0. The changes aren't accepted and I sill can't see my hidden files.<br />
<br />
Help!!<br />
<br />
So, I'm posing my Hijackthis file thingy in the hope that some kind soul can help me. Please note, this is a German OS but I'm told it shouldn't be a problem. So, here goes:<br />
</em><br />
<br />
Logfile of Trend Micro HijackThis v2.0.3 (BETA)<br />
Scan saved at 18:17:28, on 10.03.2010<br />
Platform: Windows XP SP3, v.3264 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.3264)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;WINDOWS&#092;System32&#092;smss.exe<br />
C:&#092;WINDOWS&#092;system32&#092;winlogon.exe<br />
C:&#092;WINDOWS&#092;system32&#092;services.exe<br />
C:&#092;WINDOWS&#092;system32&#092;lsass.exe<br />
C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;WINDOWS&#092;Explorer.EXE<br />
E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;avp.exe<br />
C:&#092;Programme&#092;DeviceVM&#092;Browser Configuration Utility&#092;BCU.exe<br />
C:&#092;Programme&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;MOM.exe<br />
C:&#092;Programme&#092;Brother&#092;Brmfcmon&#092;BrMfcWnd.exe<br />
C:&#092;Programme&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;ccc.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
E:&#092;Slawdog&#092;Smart Shutdown&#092;Smart Shutdown.exe<br />
C:&#092;Programme&#092;Brother&#092;ControlCenter3&#092;brccMCtl.exe<br />
E:&#092;nistime&#092;nistime-32bit.exe<br />
E:&#092;FireTrust&#092;MailWasher Pro&#092;MailWasher.exe<br />
C:&#092;Programme&#092;Application Updater&#092;ApplicationUpdater.exe<br />
C:&#092;Programme&#092;Brother&#092;Brmfcmon&#092;BrMfcmon.exe<br />
E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;avp.exe<br />
C:&#092;Programme&#092;DeviceVM&#092;Browser Configuration Utility&#092;BCUService.exe<br />
E:&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;system32&#092;wbem&#092;wmiapsrv.exe<br />
C:&#092;WINDOWS&#092;system32&#092;msiexec.exe<br />
E:&#092;Programme&#092;TrendMicro&#092;HiJackThis&#092;HiJackThis.exe<br />
<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Local Page = <br />
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:&#092;Programme&#092;DeviceVM&#092;Browser Configuration Utility&#092;AddressBarSearch.dll<br />
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:&#092;Programme&#092;pdfforge Toolbar&#092;SearchSettings.dll<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:&#092;Programme&#092;Gemeinsame Dateien&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;ievkbd.dll<br />
O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:&#092;Programme&#092;pdfforge Toolbar&#092;IE&#092;1.1.2&#092;pdfforgeToolbarIE.dll<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:&#092;Programme&#092;pdfforge Toolbar&#092;SearchSettings.dll<br />
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;klwtbbho.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:&#092;Java&#092;jre6&#092;lib&#092;deploy&#092;jqs&#092;ie&#092;jqs_plugin.dll<br />
O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:&#092;Programme&#092;pdfforge Toolbar&#092;IE&#092;1.1.2&#092;pdfforgeToolbarIE.dll<br />
O4 - HKLM&#092;..&#092;Run: [StartCCC] "C:&#092;Programme&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CLIStart.exe" MSRun<br />
O4 - HKLM&#092;..&#092;Run: [AVP] "E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;avp.exe"<br />
O4 - HKLM&#092;..&#092;Run: [BCU] "C:&#092;Programme&#092;DeviceVM&#092;Browser Configuration Utility&#092;BCU.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Adobe Reader Speed Launcher] "C:&#092;Programme&#092;Adobe&#092;Reader 9.0&#092;Reader&#092;Reader_sl.exe"<br />
O4 - HKLM&#092;..&#092;Run: [BrMfcWnd] C:&#092;Programme&#092;Brother&#092;Brmfcmon&#092;BrMfcWnd.exe /AUTORUN<br />
O4 - HKLM&#092;..&#092;Run: [ControlCenter3] C:&#092;Programme&#092;Brother&#092;ControlCenter3&#092;brctrcen.exe /autorun<br />
O4 - HKCU&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
O4 - HKCU&#092;..&#092;Run: [Slawdog Smart Shutdown] e:&#092;Slawdog&#092;Smart Shutdown&#092;Smart Shutdown.exe startup<br />
O4 - HKCU&#092;..&#092;Run: [cdoosoft] C:&#092;DOKUME~1&#092;Simon&#092;LOKALE~1&#092;Temp&#092;herss.exe<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS&#092;S-1-5-18&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS&#092;.DEFAULT&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'Default user')<br />
O4 - Startup: MailWasherPro.lnk = E:&#092;FireTrust&#092;MailWasher Pro&#092;MailWasher.exe<br />
O4 - Global Startup: nistime-32bit.lnk = E:&#092;nistime&#092;nistime-32bit.exe<br />
O8 - Extra context menu item: Hinzufügen zu Anti-Banner - E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;ie_banner_deny.htm<br />
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://E:&#092;MICROS~1&#092;Office10&#092;EXCEL.EXE/3000<br />
O9 - Extra button: &Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;klwtbbho.dll<br />
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - e:&#092;ICQ7.0&#092;ICQ.exe<br />
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - e:&#092;ICQ7.0&#092;ICQ.exe<br />
O9 - Extra button: Li&nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;klwtbbho.dll<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;Programme&#092;Messenger&#092;msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;Programme&#092;Messenger&#092;msmsgs.exe<br />
O20 - AppInit_DLLs: E:&#092;KASPER~1&#092;KASPER~1&#092;mzvkbd3.dll,E:&#092;KASPER~1&#092;KASPER~1&#092;kloehk.dll<br />
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:&#092;WINDOWS&#092;system32&#092;browseui.dll<br />
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:&#092;WINDOWS&#092;system32&#092;browseui.dll<br />
O23 - Service: Application Updater - Spigot, Inc. - C:&#092;Programme&#092;Application Updater&#092;ApplicationUpdater.exe<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - E:&#092;Kaspersky Lab&#092;Kaspersky Internet Security 2010&#092;avp.exe<br />
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:&#092;Programme&#092;DeviceVM&#092;Browser Configuration Utility&#092;BCUService.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
O23 - Service: Macromedia Licensing Service - Unknown owner - C:&#092;Programme&#092;Gemeinsame Dateien&#092;Macromedia Shared&#092;Service&#092;Macromedia Licensing.exe<br />
<br />
--<br />
End of file - 6435 bytes<br />
<br />
<br />
<em class='bbc'>Thanks in advance for any help you can give me.<br />
<br />
Simon</em>]]></description>
		<pubDate>Wed, 10 Mar 2010 17:39:50 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6533-hidden-files-etc/</guid>
	</item>
	<item>
		<title>Who Is Your Role Model?</title>
		<link>http://www.247fixes.com/forums/topic/6505-who-is-your-role-model/</link>
		<description><![CDATA[U HAVE TO DO THIS!!!!!! AMAZING, AND SOOOOOOO ACCURATE!!!!!!!!<br />
<br />
YOUR ROLE MODEL<br />
<br />
FIND OUT WHO TRULY IS YOUR ROLE MODEL.<br />
(DON'T SCROLL DOWN YET.)<br />
DO THE SIMPLE MATH BELOW,<br />
THEN SCROLL DOWN TO FIND YOUR HERO.<br />
<br />
It's CRAZY how accurate this is!!!<br />
No peeking!!!<br />
<br />
1) Pick your favorite number between 1-9<br />
2) Multiply by 3<br />
3) Add 3<br />
4) Multiply by 3, again<br />
5) You should now have a 2 or 3 digit number....<br />
6) Add the digits together<br />
<br />
Now, scroll down.<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
With that number, see who your ROLE MODEL is from the list below:<br />
1. Albert Einstein<br />
2. Oprah Winfrey<br />
3. President Lincoln<br />
4. Thomas Edison<br />
5. Bill Gates<br />
6. Ghandi<br />
7. Brad Pitt<br />
8. Babe Ruth<br />
9. Geeker33<br />
10.John F Kennedy<br />
<br />
 <img src='http://www.247fixes.com/forums/public/style_emoticons/default/ohmy.gif' class='bbc_emoticon' alt=':o' /> <br />
I know, I know.....I just have that effect on people.<br />
One day, maybe you too can be like me.<br />
<br />
Why are you laughing???<br />
P.S. Stop picking different numbers!!!  <img src='http://www.247fixes.com/forums/public/style_emoticons/default/hysterical.gif' class='bbc_emoticon' alt=':rofl:' /> <br />
<br />
I AM YOUR ROLE MODEL... JUST DEAL WITH IT!!!]]></description>
		<pubDate>Mon, 08 Mar 2010 02:57:24 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6505-who-is-your-role-model/</guid>
	</item>
	<item>
		<title>Windows Update Error</title>
		<link>http://www.247fixes.com/forums/topic/6453-windows-update-error/</link>
		<description><![CDATA[Hello, I am getting an error when I try to run windows update or even connect to the website for windows update. I am also not able to update adaware by Lavasoft. I have read that this may be caused by a worm, trojan, or virus. I do have Avast running now and I also have Windows Firewall on. I have disabled Windows Defender. In my Firewall I have enabled the adaware exe files. Nothing has worked. My name is Mark. Thank you. Please let me know if there is anything else I need to submit. <br />
<br />
Here is my "hijack this" log. <br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 12:30:28 PM, on 2/28/2010<br />
Platform: Unknown Windows (WinNT 6.01.3504)<br />
MSIE: Internet Explorer v8.00 (8.00.7600.16385)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;Windows&#092;system32&#092;Dwm.exe<br />
C:&#092;Windows&#092;Explorer.EXE<br />
C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jusched.exe<br />
C:&#092;Windows&#092;SOUNDMAN.EXE<br />
C:&#092;Program Files&#092;Maxtor&#092;OneTouch Status&#092;MaxMenuMgr.exe<br />
C:&#092;Program Files&#092;Adobe&#092;Acrobat 9.0&#092;Acrobat&#092;acrotray.exe<br />
C:&#092;Program Files&#092;Acronis&#092;TrueImageHome&#092;TrueImageMonitor.exe<br />
C:&#092;Program Files&#092;PowerISO&#092;PWRISOVM.EXE<br />
C:&#092;Program Files&#092;iTunes&#092;iTunesHelper.exe<br />
C:&#092;Program Files&#092;Common Files&#092;Acronis&#092;Schedule2&#092;schedhlp.exe<br />
C:&#092;Program Files&#092;Alwil Software&#092;Avast5&#092;AvastUI.exe<br />
C:&#092;Windows&#092;System32&#092;StikyNot.exe<br />
C:&#092;Program Files&#092;uTorrent&#092;uTorrent.exe<br />
C:&#092;Program Files&#092;Creative&#092;Software Update 3&#092;SoftAuto.exe<br />
C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;OfficeSAS&#092;officeSASscheduler.exe<br />
C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;ONENOTEM.EXE<br />
C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;OfficeSAS&#092;OfficeSAS.exe<br />
C:&#092;Windows&#092;system32&#092;taskhost.exe<br />
C:&#092;Program Files&#092;Lavasoft&#092;Ad-Aware&#092;AAWTray.exe<br />
C:&#092;Windows&#092;helppane.exe<br />
C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe<br />
G:&#092;windows-kb890830-v3.4.exe<br />
j:&#092;817bbd9bc8b5cffa4521&#092;mrtstub.exe<br />
C:&#092;Windows&#092;system32&#092;MRT.exe<br />
C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;WINWORD.EXE<br />
C:&#092;Windows&#092;system32&#092;NOTEPAD.EXE<br />
C:&#092;Windows&#092;system32&#092;cmd.exe<br />
C:&#092;Windows&#092;system32&#092;conhost.exe<br />
C:&#092;Windows&#092;system32&#092;netsh.exe<br />
C:&#092;Windows&#092;system32&#092;taskmgr.exe<br />
C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe<br />
c:&#092;windows&#092;system32&#092;inetsrv&#092;w3wp.exe<br />
C:&#092;Windows&#092;system32&#092;SearchFilterHost.exe<br />
C:&#092;Program Files&#092;Trend Micro&#092;HijackThis&#092;HijackThis.exe<br />
<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,SearchAssistant = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,CustomizeSearch = <br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings,ProxyOverride = *.local<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Toolbar,LinksFolderName = <br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:&#092;PROGRA~1&#092;MICROS~2&#092;Office14&#092;GROOVEEX.DLL<br />
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll<br />
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:&#092;PROGRA~1&#092;MICROS~2&#092;Office14&#092;URLREDIR.DLL<br />
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:&#092;Program Files&#092;Ask.com&#092;GenericAskToolbar.dll<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll<br />
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:&#092;Program Files&#092;Ask.com&#092;GenericAskToolbar.dll<br />
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll<br />
O4 - HKLM&#092;..&#092;Run: [SunJavaUpdateSched] "C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jusched.exe"<br />
O4 - HKLM&#092;..&#092;Run: [SoundMan] SOUNDMAN.EXE<br />
O4 - HKLM&#092;..&#092;Run: [mxomssmenu] "C:&#092;Program Files&#092;Maxtor&#092;OneTouch Status&#092;maxmenumgr.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Adobe ARM] "C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;AdobeARM.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Adobe Acrobat Speed Launcher] "C:&#092;Program Files&#092;Adobe&#092;Acrobat 9.0&#092;Acrobat&#092;Acrobat_sl.exe"<br />
O4 - HKLM&#092;..&#092;Run: [BCSSync] "C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;BCSSync.exe" /DelayServices<br />
O4 - HKLM&#092;..&#092;Run: [Acrobat Assistant 8.0] "C:&#092;Program Files&#092;Adobe&#092;Acrobat 9.0&#092;Acrobat&#092;Acrotray.exe"<br />
O4 - HKLM&#092;..&#092;Run: [TrueImageMonitor.exe] C:&#092;Program Files&#092;Acronis&#092;TrueImageHome&#092;TrueImageMonitor.exe<br />
O4 - HKLM&#092;..&#092;Run: [QuickTime Task] "C:&#092;Program Files&#092;QuickTime&#092;QTTask.exe" -atboottime<br />
O4 - HKLM&#092;..&#092;Run: [PWRISOVM.EXE] C:&#092;Program Files&#092;PowerISO&#092;PWRISOVM.EXE<br />
O4 - HKLM&#092;..&#092;Run: [iTunesHelper] "C:&#092;Program Files&#092;iTunes&#092;iTunesHelper.exe"<br />
O4 - HKLM&#092;..&#092;Run: [EKIJ5000StatusMonitor] C:&#092;Windows&#092;system32&#092;spool&#092;DRIVERS&#092;W32X86&#092;3&#092;EKIJ5000MUI.exe<br />
O4 - HKLM&#092;..&#092;Run: [Acronis Scheduler2 Service] "C:&#092;Program Files&#092;Common Files&#092;Acronis&#092;Schedule2&#092;schedhlp.exe"<br />
O4 - HKLM&#092;..&#092;Run: [avast5] "C:&#092;Program Files&#092;Alwil Software&#092;Avast5&#092;avastUI.exe" /nogui<br />
O4 - HKCU&#092;..&#092;Run: [RESTART_STICKY_NOTES] C:&#092;Windows&#092;System32&#092;StikyNot.exe<br />
O4 - HKCU&#092;..&#092;Run: [uTorrent] "C:&#092;Program Files&#092;uTorrent&#092;uTorrent.exe"<br />
O4 - HKCU&#092;..&#092;Run: [SoftAuto.exe] "C:&#092;Program Files&#092;Creative&#092;Software Update 3&#092;SoftAuto.exe"<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;Run: [Sidebar] %ProgramFiles%&#092;Windows Sidebar&#092;Sidebar.exe /autoRun (User 'LOCAL SERVICE')<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;RunOnce: [mctadmin] C:&#092;Windows&#092;System32&#092;mctadmin.exe (User 'LOCAL SERVICE')<br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;Run: [Sidebar] %ProgramFiles%&#092;Windows Sidebar&#092;Sidebar.exe /autoRun (User 'NETWORK SERVICE')<br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;RunOnce: [mctadmin] C:&#092;Windows&#092;System32&#092;mctadmin.exe (User 'NETWORK SERVICE')<br />
O4 - Startup: MagicDisc.lnk = C:&#092;Program Files&#092;MagicDisc&#092;MagicDisc.exe<br />
O4 - Startup: OneNote 2010 Screen Clipper and Launcher.lnk = C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;ONENOTEM.EXE<br />
O4 - Global Startup: OfficeSAS.lnk = ?<br />
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:&#092;Windows&#092;system32&#092;GPhotos.scr/200<br />
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />
O8 - Extra context menu item: Append to Existing PDF - res://C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />
O8 - Extra context menu item: Convert to Adobe PDF - res://C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:&#092;PROGRA~1&#092;MICROS~2&#092;Office14&#092;EXCEL.EXE/3000<br />
O8 - Extra context menu item: Se&nd to OneNote - res://C:&#092;PROGRA~1&#092;MICROS~2&#092;Office14&#092;ONBttnIE.dll/105<br />
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;ONBttnIE.dll<br />
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;ONBttnIELinkedNotes.dll<br />
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:&#092;Program Files&#092;Microsoft Office&#092;Office14&#092;ONBttnIELinkedNotes.dll<br />
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:&#092;Program Files&#092;Bonjour&#092;ExplorerPlugin.dll<br />
O16 - DPF: vzTCPConfig - <a href='http://www2.verizon.net/help/fios_settings/include/vzTCPConfig.CAB' class='bbc_url' title='External link' rel='nofollow'>http://www2.verizon.net/help/fios_settings/include/vzTCPConfig.CAB</a><br />
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - <a href='http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab' class='bbc_url' title='External link' rel='nofollow'>http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab</a><br />
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - <a href='http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab' class='bbc_url' title='External link' rel='nofollow'>http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab</a><br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <a href='http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab' class='bbc_url' title='External link' rel='nofollow'>http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab</a><br />
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - <a href='http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab' class='bbc_url' title='External link' rel='nofollow'>http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab</a><br />
O17 - HKLM&#092;System&#092;CCS&#092;Services&#092;Tcpip&#092;..&#092;{10733E9B-5DFD-45B4-816F-930F4CCF329D}: NameServer = 93.188.164.56,93.188.166.62<br />
O17 - HKLM&#092;System&#092;CS1&#092;Services&#092;Tcpip&#092;Parameters: NameServer = 93.188.164.56,93.188.166.62<br />
O17 - HKLM&#092;System&#092;CS1&#092;Services&#092;Tcpip&#092;..&#092;{10733E9B-5DFD-45B4-816F-930F4CCF329D}: NameServer = 93.188.164.56,93.188.166.62<br />
O17 - HKLM&#092;System&#092;CS2&#092;Services&#092;Tcpip&#092;Parameters: NameServer = 93.188.164.56,93.188.166.62<br />
O17 - HKLM&#092;System&#092;CS2&#092;Services&#092;Tcpip&#092;..&#092;{10733E9B-5DFD-45B4-816F-930F4CCF329D}: NameServer = 93.188.164.56,93.188.166.62<br />
O17 - HKLM&#092;System&#092;CCS&#092;Services&#092;Tcpip&#092;Parameters: NameServer = 93.188.164.56,93.188.166.62<br />
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;OFFICE14&#092;MSOXMLMF.DLL<br />
O20 - AppInit_DLLs: acaptuser32.dll<br />
O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:&#092;Program Files&#092;Common Files&#092;Acronis&#092;Acronis Disk Director&#092;oss_reinstall_svc.exe<br />
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:&#092;Program Files&#092;Common Files&#092;Acronis&#092;Schedule2&#092;schedul2.exe<br />
O23 - Service: Acronis N&#111;nstop Backup service (afcdpsrv) - Acronis - C:&#092;Program Files&#092;Common Files&#092;Acronis&#092;CDP&#092;afcdpsrv.exe<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:&#092;Program Files&#092;Common Files&#092;Apple&#092;Mobile Device Support&#092;bin&#092;AppleMobileDeviceService.exe<br />
O23 - Service: avast! Antivirus - ALWIL Software - C:&#092;Program Files&#092;Alwil Software&#092;Avast5&#092;AvastSvc.exe<br />
O23 - Service: avast! Mail Scanner - ALWIL Software - C:&#092;Program Files&#092;Alwil Software&#092;Avast5&#092;AvastSvc.exe<br />
O23 - Service: avast! Web Scanner - ALWIL Software - C:&#092;Program Files&#092;Alwil Software&#092;Avast5&#092;AvastSvc.exe<br />
O23 - Service: Bonjour Service - Apple Inc. - C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
O23 - Service: CT Device Query service (CTDevice_Srv) - Creative Technology Ltd - C:&#092;Program Files&#092;Creative&#092;Shared Files&#092;CTDevSrv.exe<br />
O23 - Service: Creative Centrale Media Server (CTUPnPSv) - Creative Technology Ltd - C:&#092;Program Files&#092;Creative&#092;Creative Centrale&#092;CTUPnPSv.exe<br />
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:&#092;Program Files&#092;Common Files&#092;Macrovision Shared&#092;FLEXnet Publisher&#092;FNPLicensingService.exe<br />
O23 - Service: Google Update Service (gupdate1caac0ab88c5701) (gupdate1caac0ab88c5701) - Google Inc. - C:&#092;Program Files&#092;Google&#092;Update&#092;GoogleUpdate.exe<br />
O23 - Service: Google Updater Service (gusvc) - Google - C:&#092;Program Files&#092;Google&#092;Common&#092;Google Updater&#092;GoogleUpdaterService.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:&#092;Program Files&#092;Common Files&#092;InstallShield&#092;Driver&#092;11&#092;Intel 32&#092;IDriverT.exe<br />
O23 - Service: iPod Service - Apple Inc. - C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
O23 - Service: Kodak AiO Network Discovery Service - Eastman Kodak Company - C:&#092;Program Files&#092;Kodak&#092;AiO&#092;Center&#092;ekdiscovery.exe<br />
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:&#092;Program Files&#092;Lavasoft&#092;Ad-Aware&#092;AAWService.exe<br />
O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:&#092;Program Files&#092;Maxtor&#092;Sync&#092;SyncServices.exe<br />
O23 - Service: NMSAccessU - Unknown owner - C:&#092;Program Files&#092;CDBurnerXP&#092;NMSAccessU.exe<br />
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:&#092;Windows&#092;system32&#092;nvvsvc.exe<br />
<br />
--<br />
End of file - 11712 bytes]]></description>
		<pubDate>Sun, 28 Feb 2010 19:07:53 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6453-windows-update-error/</guid>
	</item>
	<item>
		<title><![CDATA[[Closed] Malware Removal]]></title>
		<link>http://www.247fixes.com/forums/topic/6452-malware-removal/</link>
		<description><![CDATA[I need help with an antivirus software that has taken over my PC. I am not able to do anything except PURCHASE there software. I've tried to download AVG to my PC by downloading it onto a flash drive from another PC. But the antivirus software stops me. I am using another PC at this time to post this. I am at my wits end! Please I need HELP!]]></description>
		<pubDate>Sun, 28 Feb 2010 11:42:36 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6452-malware-removal/</guid>
	</item>
	<item>
		<title>Runtime Error</title>
		<link>http://www.247fixes.com/forums/topic/6441-runtime-error/</link>
		<description><![CDATA[I apologize if this is in the wrong section, Im new to the site. I'm trying to run Grand Theft Auto: San Andreas Multiplayer (SA-MP). When I try to connect, it gives me a runtime error that says:<br />
<br />
<p class='citation'>Quote</p><div class="blockquote"><div class='quote'>Microsoft Visual C++ Runtime Library<br />
<br />
Runtime Error!<br />
<br />
Program: C:&#092;Program Files&#092;Rockstar Games&#092;GTA San Andreas&#092;gta_sa.exe<br />
<br />
This application has requested the Runtime to terminate it in an unusual way. Please contact the application's support team for more information.</div></div><br />
<br />
I reinstalled GTA SA, and SAMP, no good. I even tried to run it from another Windows user, still no good. Singleplayer seems to work fine, but multiplayer doesn't. I don't quite understand why it's doing this and any help would be awesome.<br />
<br />
Thanks in advance]]></description>
		<pubDate>Fri, 26 Feb 2010 17:41:13 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6441-runtime-error/</guid>
	</item>
	<item>
		<title>Start Up Takes A Long Time</title>
		<link>http://www.247fixes.com/forums/topic/6435-start-up-takes-a-long-time/</link>
		<description><![CDATA[Hi,<br />
  After doing the suggestions Avir updated and Guard was activated. Could not do Gmer it kept freezing computer and I had to unplug pc to start it. Slow opening Internet and Web pages.<br />
Here are the Logs. Thanks<br />
<br />
OTL logfile created on: 2/25/2010 12:18:25 AM - Run 1<br />
OTL by OldTimer - Version 3.1.30.2     Folder = C:&#092;Documents and Settings&#092;Owner&#092;Desktop<br />
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation<br />
Internet Explorer (Version = 8.0.6001.18702)<br />
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy<br />
 <br />
223.00 Mb Total Physical Memory | 63.00 Mb Available Physical Memory | 28.00% Memory free<br />
882.00 Mb Paging File | 574.00 Mb Available in Paging File | 65.00% Paging File free<br />
Paging file location(s): C:&#092;pagefile.sys 336 2000D:&#092;pagefile.sys 0 0 [binary data]<br />
 <br />
%SystemDrive% = C: | %SystemRoot% = C:&#092;WINDOWS | %ProgramFiles% = C:&#092;Program Files<br />
Drive C: | 107.91 Gb Total Space | 70.56 Gb Free Space | 65.39% Space Free | Partition Type: NTFS<br />
Drive D: | 3.89 Gb Total Space | 0.57 Gb Free Space | 14.75% Space Free | Partition Type: FAT32<br />
E: Drive not present or media not loaded<br />
F: Drive not present or media not loaded<br />
G: Drive not present or media not loaded<br />
H: Drive not present or media not loaded<br />
I: Drive not present or media not loaded<br />
 <br />
Computer Name: YOUR-N3TY7ATHD5<br />
Current User Name: Owner<br />
Logged in as Administrator.<br />
 <br />
Current Boot Mode: Normal<br />
Scan Mode: Current user<br />
Company Name Whitelist: Off<br />
Skip Microsoft Files: Off<br />
File Age = 30 Days<br />
Output = Standard<br />
 <br />
<span style='color: #E56717'>========== Processes (SafeList) ==========</span><br />
 <br />
PRC - [2010/02/25 00:13:28 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;OTL.exe<br />
PRC - [2009/10/11 04:17:36 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jusched.exe<br />
PRC - [2009/10/11 04:17:35 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
PRC - [2009/10/10 13:32:18 | 000,305,664 | ---- | M] (ArcSoft Inc.) -- C:&#092;Program Files&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ArcCon.ac<br />
PRC - [2009/10/10 13:32:18 | 000,203,264 | ---- | M] (ArcSoft Inc.) -- C:&#092;Program Files&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ACDaemon.exe<br />
PRC - [2009/09/28 09:42:50 | 000,109,056 | ---- | M] (ArcSoft Inc.) -- C:&#092;Program Files&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ACService.exe<br />
PRC - [2009/04/17 02:35:18 | 000,408,424 | ---- | M] (Microsoft Corporation) -- C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;WINWORD.EXE<br />
PRC - [2009/03/08 13:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation) -- C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe<br />
PRC - [2009/03/02 12:08:47 | 000,209,153 | ---- | M] (Avira GmbH) -- C:&#092;Program Files&#092;Avira&#092;AntiVir Desktop&#092;avgnt.exe<br />
PRC - [2009/02/06 16:07:48 | 000,027,512 | ---- | M] (Microsoft Corporation) -- C:&#092;Program Files&#092;Windows Live&#092;Contacts&#092;wlcomm.exe<br />
PRC - [2008/12/12 10:17:38 | 000,238,888 | ---- | M] (Apple Inc.) -- C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
PRC - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:&#092;Program Files&#092;Yahoo!&#092;SoftwareUpdate&#092;YahooAUService.exe<br />
PRC - [2008/10/25 11:44:34 | 000,031,072 | ---- | M] (Microsoft Corporation) -- C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GrooveMonitor.exe<br />
PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:&#092;WINDOWS&#092;explorer.exe<br />
PRC - [2006/09/24 09:43:42 | 000,061,440 | ---- | M] (Hewlett-Packard Company) -- C:&#092;Program Files&#092;Common Files&#092;LightScribe&#092;LSSrvc.exe<br />
PRC - [2004/09/07 12:47:00 | 000,057,344 | ---- | M] (Realtek Semiconductor Corp.) -- C:&#092;WINDOWS&#092;ALCXMNTR.EXE<br />
PRC - [2003/02/25 04:33:14 | 000,069,632 | ---- | M] (S3 Graphics, Inc.) -- C:&#092;WINDOWS&#092;system32&#092;S3tray2.exe<br />
 <br />
 <br />
<span style='color: #E56717'>========== Modules (SafeList) ==========</span><br />
 <br />
MOD - [2010/02/25 00:13:28 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;OTL.exe<br />
MOD - [2008/04/13 12:39:24 | 002,897,920 | ---- | M] (Microsoft Corporation) -- C:&#092;WINDOWS&#092;system32&#092;xpsp2res.dll<br />
 <br />
 <br />
<span style='color: #E56717'>========== Win32 Services (SafeList) ==========</span><br />
 <br />
SRV - [2009/11/14 15:03:57 | 000,182,768 | ---- | M] (Google) [On_Demand | Stopped] -- C:&#092;Program Files&#092;Google&#092;Common&#092;Google Updater&#092;GoogleUpdaterService.exe -- (gusvc)<br />
SRV - [2009/10/11 04:17:35 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) [Auto | Running] -- C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jqs.exe -- (JavaQuickStarterService)<br />
SRV - [2009/09/28 09:42:50 | 000,109,056 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:&#092;Program Files&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ACService.exe -- (ACDaemon)<br />
SRV - [2009/08/05 22:31:28 | 000,185,089 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:&#092;Program Files&#092;Avira&#092;AntiVir Desktop&#092;avguard.exe -- (AntiVirService)<br />
SRV - [2009/05/13 15:48:22 | 000,108,289 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:&#092;Program Files&#092;Avira&#092;AntiVir Desktop&#092;sched.exe -- (AntiVirSchedulerService)<br />
SRV - [2008/12/12 10:17:38 | 000,238,888 | ---- | M] (Apple Inc.) [Auto | Running] -- C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe -- (Bonjour Service)<br />
SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:&#092;Program Files&#092;Yahoo!&#092;SoftwareUpdate&#092;YahooAUService.exe -- (YahooAUService)<br />
SRV - [2008/11/04 01:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;OFFICE12&#092;ODSERV.EXE -- (odserv)<br />
SRV - [2008/10/25 11:44:08 | 000,065,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GrooveAuditService.exe -- (Microsoft Office Groove Audit Service)<br />
SRV - [2008/05/02 02:42:06 | 000,121,360 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:&#092;Program Files&#092;Common Files&#092;Logitech&#092;Bluetooth&#092;LBTServ.exe -- (LBTServ)<br />
SRV - [2006/11/08 16:35:38 | 000,053,248 | ---- | M] (Hewlett-Packard) [Auto | Running] -- C:&#092;WINDOWS&#092;system32&#092;HPZipm12.dll -- (Pml Driver HPZ12)<br />
SRV - [2006/11/08 16:35:36 | 000,043,520 | ---- | M] (Hewlett-Packard) [Auto | Running] -- C:&#092;WINDOWS&#092;system32&#092;HPZinw12.dll -- (Net Driver HPZ12)<br />
SRV - [2006/10/26 13:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Source Engine&#092;OSE.EXE -- (ose)<br />
SRV - [2006/09/24 09:43:42 | 000,061,440 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:&#092;Program Files&#092;Common Files&#092;LightScribe&#092;LSSrvc.exe -- (LightScribeService)<br />
SRV - [2002/12/12 05:00:00 | 000,065,536 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;nvsvc32.exe -- (NVSvc)<br />
 <br />
 <br />
<span style='color: #E56717'>========== Driver Services (SafeList) ==========</span><br />
 <br />
DRV - [2009/12/07 17:21:01 | 000,056,816 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;avgntflt.sys -- (avgntflt)<br />
DRV - [2009/05/11 09:12:24 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;ssmdrv.sys -- (ssmdrv)<br />
DRV - [2009/03/30 09:33:07 | 000,096,104 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;avipbb.sys -- (avipbb)<br />
DRV - [2009/02/13 11:35:05 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:&#092;Program Files&#092;Avira&#092;AntiVir Desktop&#092;avgio.sys -- (avgio)<br />
DRV - [2008/04/13 11:39:15 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;secdrv.sys -- (Secdrv)<br />
DRV - [2008/02/29 03:13:36 | 000,079,120 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;LMouKE.Sys -- (LMouKE)<br />
DRV - [2008/02/29 03:12:56 | 000,063,120 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;L8042mou.Sys -- (L8042mou)<br />
DRV - [2008/02/29 03:12:48 | 000,020,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;L8042Kbd.sys -- (L8042Kbd)<br />
DRV - [2008/02/13 02:00:00 | 000,043,528 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:&#092;WINDOWS&#092;System32&#092;DRIVERS&#092;PxHelp20.sys -- (PxHelp20)<br />
DRV - [2007/01/23 15:45:00 | 000,034,576 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;LHidFilt.Sys -- (LHidFilt)<br />
DRV - [2007/01/23 15:45:00 | 000,033,296 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;LMouFilt.Sys -- (LMouFilt)<br />
DRV - [2007/01/23 15:45:00 | 000,028,176 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;LUsbFilt.sys -- (LUsbFilt)<br />
DRV - [2007/01/19 06:46:12 | 000,021,568 | ---- | M] (HP) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;HPZius12.sys -- (HPZius12)<br />
DRV - [2007/01/19 06:46:10 | 000,016,496 | ---- | M] (HP) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;HPZipr12.sys -- (HPZipr12)<br />
DRV - [2007/01/19 06:46:09 | 000,049,920 | ---- | M] (HP) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;HPZid412.sys -- (HPZid412)<br />
DRV - [2004/12/16 13:36:30 | 000,042,496 | ---- | M] (VIA Technologies, Inc.              ) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;fetnd5bv.sys -- (FETND5BV)<br />
DRV - [2004/10/01 09:24:00 | 002,279,424 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)<br />
DRV - [2004/08/04 00:31:32 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;rtl8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)<br />
DRV - [2004/08/04 00:29:54 | 001,897,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;nv4_mini.sys -- (nv)<br />
DRV - [2003/05/26 13:57:50 | 000,166,912 | ---- | M] (S3 Graphics, Inc.) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;s3gnbm.sys -- (S3Psddr)<br />
DRV - [2003/03/31 14:29:00 | 000,625,537 | ---- | M] (LT) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;ltmdmnt.sys -- (ltmodem5)<br />
DRV - [2002/11/20 20:08:24 | 000,009,856 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;pfc.sys -- (pfc)<br />
DRV - [2002/10/25 19:03:30 | 000,071,514 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;ialmkchw.sys -- ({D31A0762-0CEB-444e-ACFF-B049A1F6FE91}) Intel&reg; Graphics Chipset (KCH)<br />
DRV - [2002/10/25 19:03:22 | 000,091,774 | ---- | M] (Intel Corporation) [Kernel | System | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;ialmsbw.sys -- ({6080A529-897E-4629-A488-ABA0C29B635E}) Intel&reg; Graphics Platform (SoftBIOS)<br />
DRV - [2002/10/25 19:02:20 | 000,080,283 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;ialmnt5.sys -- (ialm)<br />
DRV - [2002/09/12 05:18:28 | 000,040,448 | ---- | M] (VIA Technologies, Inc.              ) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;fetnd5b.sys -- (FETNDIS)<br />
DRV - [2002/09/06 21:24:00 | 000,013,568 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:&#092;WINDOWS&#092;System32&#092;DRIVERS&#092;nv_agp.sys -- (nv_agp)<br />
DRV - [2002/08/29 07:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;ptilink.sys -- (Ptilink)<br />
DRV - [2002/08/29 01:59:12 | 000,036,224 | ---- | M] (ADMtek Incorporated.) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;an983.sys -- (AN983)<br />
DRV - [2002/07/30 00:43:50 | 000,023,808 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;PS2.sys -- (Ps2)<br />
DRV - [2002/07/24 14:30:00 | 000,032,128 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:&#092;WINDOWS&#092;System32&#092;DRIVERS&#092;viaagp1.sys -- (viaagp1)<br />
 <br />
 <br />
<span style='color: #E56717'>========== Standard Registry (SafeList) ==========</span><br />
 <br />
 <br />
<span style='color: #E56717'>========== Internet Explorer ==========</span><br />
 <br />
IE - HKLM&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Search,Default_Search_URL = <br />
IE - HKLM&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Search,SearchAssistant = <br />
 <br />
IE - HKCU&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://www.yahoo.com/?fr=fp-yie8' class='bbc_url' title='External link' rel='nofollow'>http://www.yahoo.com/?fr=fp-yie8</a><br />
IE - HKCU&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://srch-qus7.hpwis.com/' class='bbc_url' title='External link' rel='nofollow'>http://srch-qus7.hpwis.com/</a><br />
IE - HKCU&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <br />
IE - HKCU&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Main,SearchDefaultBranded = 1<br />
IE - HKCU&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://my.yahoo.com/' class='bbc_url' title='External link' rel='nofollow'>http://my.yahoo.com/</a><br />
IE - HKCU&#092;SOFTWARE&#092;Microsoft&#092;Internet Explorer&#092;Search,SearchAssistant = <br />
IE - HKCU&#092;..&#092;URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:&#092;Program Files&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn0&#092;yt.dll (Yahoo! Inc.)<br />
IE - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings: "ProxyEnable" = 0<br />
IE - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings: "ProxyOverride" = *.local<br />
 <br />
FF - HKLM&#092;software&#092;mozilla&#092;Netscape 7.0&#092;Extensions&#092;&#092;Components: C:&#092;Program Files&#092;Netscape&#092;Netscape&#092;Components [2009/10/19 12:03:48 | 000,000,000 | ---D | M]<br />
FF - HKLM&#092;software&#092;mozilla&#092;Netscape 7.0&#092;Extensions&#092;&#092;Plugins: C:&#092;Program Files&#092;Netscape&#092;Netscape&#092;Plugins [2009/12/30 15:30:21 | 000,000,000 | ---D | M]<br />
 <br />
[2009/09/26 18:55:58 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;Owner&#092;Application Data&#092;Mozilla&#092;Extensions<br />
[2009/09/26 18:55:58 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;Owner&#092;Application Data&#092;Mozilla&#092;Extensions&#092;mozswing@mozswing.org<br />
[2009/04/27 11:43:13 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;Owner&#092;Application Data&#092;Mozilla&#092;Firefox&#092;extensions<br />
[2009/05/05 14:18:06 | 000,000,000 | ---D | M] (No name found) -- C:&#092;Documents and Settings&#092;Owner&#092;Application Data&#092;Mozilla&#092;Firefox&#092;extensions&#092;{E9A1DEE0-C623-4439-8932-001E7D17607D}<br />
 <br />
O1 HOSTS File: ([2009/03/22 02:24:54 | 000,000,848 | R--- | M]) - C:&#092;WINDOWS&#092;system32&#092;drivers&#092;etc&#092;hosts<br />
O1 - Hosts: 127.0.0.1       localhost<br />
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:&#092;Program Files&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn0&#092;yt.dll (Yahoo! Inc.)<br />
O2 - BHO: (no name) - {0347C33E-8762-4905-BF09-768834316C61} - No CLSID value found.<br />
O2 - BHO: (no name) - {053F9267-DC04-4294-A72C-58F732D338C0} - No CLSID value found.<br />
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:&#092;Program Files&#092;AskBarDis&#092;bar&#092;bin&#092;askBar.dll (Ask.com)<br />
O2 - BHO: (AT&&T Toolbar) - {4E7BD74F-2B8D-469E-94BE-FD60BB9AAE29} - C:&#092;Program Files&#092;ATTToolbar&#092;ATTToolbar.dll (AT&T)<br />
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.<br />
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GrooveShellExtensions.dll (Microsoft Corporation)<br />
O2 - BHO: (no name) - {A8FB8EB3-183B-4598-924D-86F0E5E37085} - No CLSID value found.<br />
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:&#092;Program Files&#092;Google&#092;Google Toolbar&#092;GoogleToolbar_32.dll (Google Inc.)<br />
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:&#092;Program Files&#092;Google&#092;GoogleToolbarNotifier&#092;5.2.4204.1700&#092;swg.dll (Google Inc.)<br />
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:&#092;Program Files&#092;Google&#092;Google Toolbar&#092;Component&#092;fastsearch_B7C5AC242193BB3E.dll (Google Inc.)<br />
O2 - BHO: (Java&#153; Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll (Sun Microsystems, Inc.)<br />
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:&#092;Program Files&#092;Java&#092;jre6&#092;lib&#092;deploy&#092;jqs&#092;ie&#092;jqs_plugin.dll (Sun Microsystems, Inc.)<br />
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:&#092;Program Files&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn0&#092;YTSingleInstance.dll (Yahoo! Inc)<br />
O3 - HKLM&#092;..&#092;Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:&#092;Program Files&#092;Google&#092;Google Toolbar&#092;GoogleToolbar_32.dll (Google Inc.)<br />
O3 - HKLM&#092;..&#092;Toolbar: (Foxit Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:&#092;Program Files&#092;AskBarDis&#092;bar&#092;bin&#092;askBar.dll (Ask.com)<br />
O3 - HKLM&#092;..&#092;Toolbar: (AT&&T Toolbar) - {4E7BD74F-2B8D-469E-94BE-FD60BB9AAE29} - C:&#092;Program Files&#092;ATTToolbar&#092;ATTToolbar.dll (AT&T)<br />
O3 - HKLM&#092;..&#092;Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:&#092;Program Files&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn0&#092;yt.dll (Yahoo! Inc.)<br />
O3 - HKCU&#092;..&#092;Toolbar&#092;ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.<br />
O3 - HKCU&#092;..&#092;Toolbar&#092;ShellBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:&#092;Program Files&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn0&#092;yt.dll (Yahoo! Inc.)<br />
O3 - HKCU&#092;..&#092;Toolbar&#092;WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:&#092;Program Files&#092;Google&#092;Google Toolbar&#092;GoogleToolbar_32.dll (Google Inc.)<br />
O3 - HKCU&#092;..&#092;Toolbar&#092;WebBrowser: (Foxit Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:&#092;Program Files&#092;AskBarDis&#092;bar&#092;bin&#092;askBar.dll (Ask.com)<br />
O3 - HKCU&#092;..&#092;Toolbar&#092;WebBrowser: (AT&&T Toolbar) - {4E7BD74F-2B8D-469E-94BE-FD60BB9AAE29} - C:&#092;Program Files&#092;ATTToolbar&#092;ATTToolbar.dll (AT&T)<br />
O3 - HKCU&#092;..&#092;Toolbar&#092;WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:&#092;Program Files&#092;Yahoo!&#092;Companion&#092;Installs&#092;cpn0&#092;yt.dll (Yahoo! Inc.)<br />
O4 - HKLM..&#092;Run: [23C3F5C0] c:&#092;docume~1&#092;owner&#092;locals~1&#092;tempor~1&#092;content.ie5&#092;knokg37k&#092;cbaffs~1.exe File not found<br />
O4 - HKLM..&#092;Run: [AlcxMonitor] C:&#092;WINDOWS&#092;ALCXMNTR.EXE (Realtek Semiconductor Corp.)<br />
O4 - HKLM..&#092;Run: [ArcSoft Connection Service] C:&#092;Program Files&#092;Common Files&#092;ArcSoft&#092;Connection Service&#092;Bin&#092;ACDaemon.exe (ArcSoft Inc.)<br />
O4 - HKLM..&#092;Run: [avgnt] C:&#092;Program Files&#092;Avira&#092;AntiVir Desktop&#092;avgnt.exe (Avira GmbH)<br />
O4 - HKLM..&#092;Run: [GrooveMonitor] C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GrooveMonitor.exe (Microsoft Corporation)<br />
O4 - HKLM..&#092;Run: [HotKeysCmds] C:&#092;WINDOWS&#092;system32&#092;hkcmd.exe (Intel Corporation)<br />
O4 - HKLM..&#092;Run: [Kernel and Hardware Abstraction Layer] C:&#092;WINDOWS&#092;KHALMNPR.Exe (Logitech, Inc.)<br />
O4 - HKLM..&#092;Run: [Logitech Hardware Abstraction Layer] C:&#092;WINDOWS&#092;KHALMNPR.Exe (Logitech, Inc.)<br />
O4 - HKLM..&#092;Run: [NWEReboot]  File not found<br />
O4 - HKLM..&#092;Run: [nwiz] C:&#092;WINDOWS&#092;System32&#092;nwiz.exe (NVIDIA Corporation)<br />
O4 - HKLM..&#092;Run: [Recguard] C:&#092;WINDOWS&#092;SMINST&#092;Recguard.exe ()<br />
O4 - HKLM..&#092;Run: [S3TRAY2] C:&#092;WINDOWS&#092;System32&#092;S3tray2.exe (S3 Graphics, Inc.)<br />
O4 - HKLM..&#092;Run: [SunJavaUpdateSched] C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jusched.exe (Sun Microsystems, Inc.)<br />
O4 - HKCU..&#092;Run: [ares] C:&#092;Program Files&#092;Ares&#092;ares.exe File not found<br />
O4 - HKCU..&#092;Run: [MoneyAgent] C:&#092;Program Files&#092;Microsoft Money&#092;System&#092;mnyexpr.exe File not found<br />
O4 - HKCU..&#092;Run: [NVIEW] C:&#092;WINDOWS&#092;System32&#092;nview.dll (NVIDIA Corporation)<br />
O4 - HKCU..&#092;Run: [swg] C:&#092;Program Files&#092;Google&#092;GoogleToolbarNotifier&#092;GoogleToolbarNotifier.exe (Google Inc.)<br />
O4 - HKCU..&#092;RunOnce: [FlashPlayerUpdate] C:&#092;WINDOWS&#092;system32&#092;Macromed&#092;Flash&#092;FlashUtil10d.exe (Adobe Systems, Inc.)<br />
O4 - Startup: C:&#092;Documents and Settings&#092;Owner&#092;Start Menu&#092;Programs&#092;Startup&#092;ERUNT AutoBackup.lnk = C:&#092;Program Files&#092;ERUNT&#092;AUTOBACK.EXE ()<br />
O6 - HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;Explorer: HonorAutoRunSetting = 1<br />
O6 - HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;Explorer: NoCDBurning = 0<br />
O7 - HKCU&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;Explorer: NoDriveTypeAutoRun = 145<br />
O8 - Extra context menu item: E&xport to Microsoft Excel - C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;EXCEL.EXE (Microsoft Corporation)<br />
O9 - Extra Button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:&#092;Program Files&#092;Yahoo!&#092;Common&#092;ylogin.dll (Yahoo! Inc.)<br />
O9 - Extra 'Tools' menuitem : Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:&#092;Program Files&#092;Yahoo!&#092;Common&#092;ylogin.dll (Yahoo! Inc.)<br />
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;ONBttnIE.dll (Microsoft Corporation)<br />
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;ONBttnIE.dll (Microsoft Corporation)<br />
O9 - Extra Button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:&#092;Program Files&#092;Yahoo!&#092;Messenger&#092;yhexbmes.dll File not found<br />
O9 - Extra 'Tools' menuitem : Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:&#092;Program Files&#092;Yahoo!&#092;Messenger&#092;yhexbmes.dll File not found<br />
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;REFIEBAR.DLL (Microsoft Corporation)<br />
O10 - NameSpace_Catalog5&#092;Catalog_Entries&#092;000000000004 [] - C:&#092;Program Files&#092;Bonjour&#092;mdnsNSP.dll (Apple Inc.)<br />
O15 - HKLM&#092;..Trusted Domains: 49 domain(s) and sub-domain(s) not assigned to a zone.<br />
O15 - HKCU&#092;..Trusted Domains: internet ([]about in Trusted sites)<br />
O15 - HKCU&#092;..Trusted Domains: msn.com ([www] https in Trusted sites)<br />
O15 - HKCU&#092;..Trusted Domains: 49 domain(s) and sub-domain(s) not assigned to a zone.<br />
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} <a href='http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab' class='bbc_url' title='External link' rel='nofollow'>http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab</a> (Shockwave ActiveX Control)<br />
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} <a href='http://go.microsoft.com/fwlink/?linkid=39204' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?linkid=39204</a> (Windows Genuine Advantage Validation Tool)<br />
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} <a href='https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab' class='bbc_url' title='External link' rel='nofollow'>https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab</a> (HP Download Manager)<br />
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} <a href='http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab' class='bbc_url' title='External link' rel='nofollow'>http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab</a> (GMNRev Class)<br />
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} <a href='http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab' class='bbc_url' title='External link' rel='nofollow'>http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab</a> (Java Plug-in 1.6.0_17)<br />
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <a href='http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab' class='bbc_url' title='External link' rel='nofollow'>http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab</a> (Reg Error: Key error.)<br />
O16 - DPF: {A4110378-789B-455F-AE86-3A1BFC402853} <a href='http://zone.msn.com/bingame/zpagames/zpa_shvl.cab55579.cab' class='bbc_url' title='External link' rel='nofollow'>http://zone.msn.com/bingame/zpagames/zpa_shvl.cab55579.cab</a> (ZPA_SHVL Object)<br />
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} <a href='http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab' class='bbc_url' title='External link' rel='nofollow'>http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab</a> (MSN Games - Installer)<br />
O16 - DPF: {CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA} <a href='http://java.sun.com/update/1.4.0/jinstall-1_4_0_01-windows-i586.cab' class='bbc_url' title='External link' rel='nofollow'>http://java.sun.com/update/1.4.0/jinstall-1_4_0_01-windows-i586.cab</a> (Reg Error: Key error.)<br />
O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} <a href='http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab' class='bbc_url' title='External link' rel='nofollow'>http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab</a> (Reg Error: Key error.)<br />
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} <a href='http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab' class='bbc_url' title='External link' rel='nofollow'>http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab</a> (Java Plug-in 1.6.0_17)<br />
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <a href='http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab' class='bbc_url' title='External link' rel='nofollow'>http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab</a> (Java Plug-in 1.6.0_17)<br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} <a href='http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab' class='bbc_url' title='External link' rel='nofollow'>http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab</a> (Shockwave Flash Object)<br />
O16 - DPF: DirectAnimation Java Classes file://C:&#092;WINDOWS&#092;Java&#092;classes&#092;dajava.cab (Reg Error: Key error.)<br />
O16 - DPF: Microsoft XML Parser for Java file://C:&#092;WINDOWS&#092;Java&#092;classes&#092;xmldso.cab (Reg Error: Key error.)<br />
O17 - HKLM&#092;System&#092;CCS&#092;Services&#092;Tcpip&#092;Parameters: DhcpNameServer = 192.168.1.254<br />
O18 - Protocol&#092;Handler&#092;grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GrooveSystemServices.dll (Microsoft Corporation)<br />
O18 - Protocol&#092;Handler&#092;ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Help&#092;hxds.dll (Microsoft Corporation)<br />
O18 - Protocol&#092;Filter&#092;text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;OFFICE12&#092;MSOXMLMF.DLL (Microsoft Corporation)<br />
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:&#092;WINDOWS&#092;explorer.exe (Microsoft Corporation)<br />
O20 - Winlogon&#092;Notify&#092;igfxcui: DllName - igfxsrvc.dll - C:&#092;WINDOWS&#092;System32&#092;igfxsrvc.dll (Intel Corporation)<br />
O20 - Winlogon&#092;Notify&#092;LBTWlgn: DllName - c:&#092;program files&#092;common files&#092;logitech&#092;bluetooth&#092;LBTWlgn.dll - c:&#092;Program Files&#092;Common Files&#092;Logitech&#092;Bluetooth&#092;LBTWLgn.dll (Logitech, Inc.)<br />
O20 - Winlogon&#092;Notify&#092;NavLogon: DllName - C:&#092;WINDOWS&#092;System32&#092;NavLogon.dll - C:&#092;WINDOWS&#092;system32&#092;NavLogon.dll ()<br />
O24 - Desktop WallPaper: C:&#092;Documents and Settings&#092;Owner&#092;Local Settings&#092;Application Data&#092;Microsoft&#092;Wallpaper1.bmp<br />
O24 - Desktop BackupWallPaper: C:&#092;Documents and Settings&#092;Owner&#092;Local Settings&#092;Application Data&#092;Microsoft&#092;Wallpaper1.bmp<br />
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GrooveShellExtensions.dll (Microsoft Corporation)<br />
O32 - HKLM CDRom: AutoRun - 1<br />
O32 - AutoRun File - [2003/01/24 09:07:32 | 000,000,000 | ---- | M] () - C:&#092;AUTOEXEC.BAT -- [ NTFS ]<br />
O32 - AutoRun File - [2001/07/28 07:07:38 | 000,000,000 | -HS- | M] () - D:&#092;AUTOEXEC.BAT -- [ FAT32 ]<br />
O32 - AutoRun File - [2002/09/11 04:02:32 | 000,000,045 | -HS- | M] () - D:&#092;Autorun.inf -- [ FAT32 ]<br />
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found<br />
O35 - comfile [open] -- "%1" %*<br />
O35 - exefile [open] -- "%1" %*<br />
 <br />
NetSvcs: 6to4 -  File not found<br />
NetSvcs: Ias - C:&#092;WINDOWS&#092;system32&#092;ias [2007/12/30 15:41:33 | 000,000,000 | ---D | M]<br />
NetSvcs: Iprip -  File not found<br />
NetSvcs: Irmon -  File not found<br />
NetSvcs: NWCWorkstation -  File not found<br />
NetSvcs: Nwsapagent -  File not found<br />
NetSvcs: Wmi - C:&#092;WINDOWS&#092;system32&#092;wmi.dll (Microsoft Corporation)<br />
NetSvcs: WmdmPmSp -  File not found<br />
 <br />
MsConfig - State: "system.ini" - 0<br />
MsConfig - State: "win.ini" - 0<br />
MsConfig - State: "bootini" - 0<br />
MsConfig - State: "services" - 0<br />
MsConfig - State: "startup" - 0<br />
 <br />
SafeBootMin: Base - Driver Group<br />
SafeBootMin: Boot Bus Extender - Driver Group<br />
SafeBootMin: Boot file system - Driver Group<br />
SafeBootMin: File system - Driver Group<br />
SafeBootMin: Filter - Driver Group<br />
SafeBootMin: PCI Configuration - Driver Group<br />
SafeBootMin: PNP Filter - Driver Group<br />
SafeBootMin: Primary disk - Driver Group<br />
SafeBootMin: SCSI Class - Driver Group<br />
SafeBootMin: sermouse.sys - Driver<br />
SafeBootMin: System Bus Extender - Driver Group<br />
SafeBootMin: vds - Service<br />
SafeBootMin: vga.sys - Driver<br />
SafeBootMin: WdfLoadGroup - <br />
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers<br />
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive<br />
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive<br />
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller<br />
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc<br />
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard<br />
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse<br />
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters<br />
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter<br />
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System<br />
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive<br />
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy<br />
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume<br />
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices<br />
 <br />
SafeBootNet: Base - Driver Group<br />
SafeBootNet: Boot Bus Extender - Driver Group<br />
SafeBootNet: Boot file system - Driver Group<br />
SafeBootNet: File system - Driver Group<br />
SafeBootNet: Filter - Driver Group<br />
SafeBootNet: NDIS Wrapper - Driver Group<br />
SafeBootNet: NetBIOSGroup - Driver Group<br />
SafeBootNet: NetDDEGroup - Driver Group<br />
SafeBootNet: Network - Driver Group<br />
SafeBootNet: NetworkProvider - Driver Group<br />
SafeBootNet: PCI Configuration - Driver Group<br />
SafeBootNet: PNP Filter - Driver Group<br />
SafeBootNet: PNP_TDI - Driver Group<br />
SafeBootNet: Primary disk - Driver Group<br />
SafeBootNet: SCSI Class - Driver Group<br />
SafeBootNet: sermouse.sys - Driver<br />
SafeBootNet: Streams Drivers - Driver Group<br />
SafeBootNet: System Bus Extender - Driver Group<br />
SafeBootNet: TDI - Driver Group<br />
SafeBootNet: UploadMgr - Service<br />
SafeBootNet: vga.sys - Driver<br />
SafeBootNet: WdfLoadGroup - <br />
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers<br />
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive<br />
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive<br />
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller<br />
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc<br />
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard<br />
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse<br />
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net<br />
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient<br />
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService<br />
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans<br />
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters<br />
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter<br />
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System<br />
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive<br />
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume<br />
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices<br />
 <br />
ActiveX: {00F0EE7F-2C61-4EBD-A209-00281BDC869C} - Yahoo! Toolbar<br />
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM<br />
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608555} - Internet Explorer Classes for Java<br />
ActiveX: {0E9A3196-39EA-409D-8EB4-20D7FABC191A} - Microsoft .NET Framework 1.0 Hotfix (KB928367)<br />
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vector Graphics Rendering (VML)<br />
ActiveX: {14303301-758B-402B-9A0D-2C6A591680DB} - Microsoft .NET Framework 1.0 Service Pack 3 (KB867461)<br />
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow<br />
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4<br />
ActiveX: {270C7F22-6D59-4041-B865-76C48D190D91} - Yahoo! Search Settings Update<br />
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation<br />
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%&#092;system32&#092;regsvr32.exe /s /n /i:/UserInstall %SystemRoot%&#092;system32&#092;themeui.dll<br />
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML Data Binding for Java<br />
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack<br />
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe<br />
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Advanced Authoring<br />
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%&#092;Outlook Express&#092;setup50.exe" /APP:OE /CALLER:WINNT /user /install<br />
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:&#092;WINDOWS&#092;INF&#092;msnetmtg.inf,NetMtg.Install.PerUser.NT<br />
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow<br />
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015C} - Microsoft DirectX<br />
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx<br />
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help<br />
ActiveX: {4d64f3ba-f112-4efe-a02e-96680859937c} - KB918899<br />
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes<br />
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6<br />
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:&#092;WINDOWS&#092;INF&#092;msmsgs.inf,BLC.QuietInstall.PerUser<br />
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW<br />
ActiveX: {5b7bf89d-d196-4c32-a303-a57b8ab7f18d} - KB918439<br />
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools<br />
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements<br />
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player<br />
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access<br />
ActiveX: {73FA19D0-2D75-11D2-995D-00C04F98BBC9} - Web Folders<br />
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%&#092;Outlook Express&#092;setup50.exe" /APP:WAB /CALLER:WINNT /user /install<br />
ActiveX: {78705f0d-e8db-4b2d-8193-982bdda15ecd} - .NET Framework<br />
ActiveX: {81B52903-4C11-11D6-B6E1-00B0D049139F} - Microsoft .NET Framework 1.0 Service Pack 2 (KB867461)<br />
ActiveX: {871F8A30-15A2-11D6-8711-0002B3281F8B} - Microsoft .NET Framework 1.0 Service Pack 1 (KB867461)<br />
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll<br />
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:&#092;WINDOWS&#092;system32&#092;ie4uinit.exe -BaseSettings<br />
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:&#092;WINDOWS&#092;system32&#092;Rundll32.exe c:&#092;WINDOWS&#092;system32&#092;mscories.dll,Install<br />
ActiveX: {8b15971b-5355-4c82-8c07-7e181ea07608} - rundll32.exe advpack.dll,LaunchINFSection C:&#092;WINDOWS&#092;INF&#092;fxsocm.inf,Fax.Install.PerUser<br />
ActiveX: {8FD9D712-A285-4834-9F46-705AD5146A6B} - NoIETour<br />
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding<br />
ActiveX: {94de52c8-2d59-4f1b-883e-79663d2d9a8c} - Fax Provider<br />
ActiveX: {A509B1FF-37FF-4bFF-8CFF-4F3A747040FF} - C:&#092;WINDOWS&#092;system32&#092;rundll32.exe C:&#092;WINDOWS&#092;system32&#092;advpack.dll,LaunchINFSectionEx C:&#092;Program Files&#092;Internet Explorer&#092;clrtour.inf,DefaultInstall.ResetTour,,12<br />
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework<br />
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts<br />
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler<br />
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1<br />
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player<br />
ActiveX: {dd772a76-bef3-44d7-8b39-502c8504c1f1} - KB925486<br />
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help<br />
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface<br />
ActiveX: {f15ee071-deb7-4cbb-951f-431c98338d8e} - KB911567<br />
ActiveX: &lt;{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:&#092;WINDOWS&#092;system32&#092;ieudinit.exe<br />
ActiveX: &gt;{19FB76C6-DBEF-44B5-A053-ECDF5F855A07} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP<br />
ActiveX: &gt;{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:&#092;WINDOWS&#092;inf&#092;unregmp2.exe /ShowWMP<br />
ActiveX: &gt;{26923b43-4d38-484f-9b9e-de460746276c} - C:&#092;WINDOWS&#092;system32&#092;ie4uinit.exe -UserIconConfig<br />
ActiveX: &gt;{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%&#092;system32&#092;shmgrate.exe OCInstallUserConfigOE<br />
 <br />
Drivers32: msacm.iac2 - C:&#092;WINDOWS&#092;System32&#092;iac25_32.ax (Intel Corporation)<br />
Drivers32: msacm.l3acm - C:&#092;WINDOWS&#092;system32&#092;l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)<br />
Drivers32: msacm.siren - C:&#092;WINDOWS&#092;System32&#092;sirenacm.dll (Microsoft Corporation)<br />
Drivers32: msacm.sl_anet - C:&#092;WINDOWS&#092;System32&#092;sl_anet.acm (Sipro Lab Telecom Inc.)<br />
Drivers32: msacm.trspch - C:&#092;WINDOWS&#092;System32&#092;tssoft32.acm (DSP GROUP, INC.)<br />
Drivers32: vidc.cvid - C:&#092;WINDOWS&#092;System32&#092;iccvid.dll (Radius Inc.)<br />
Drivers32: vidc.iv31 - C:&#092;WINDOWS&#092;System32&#092;ir32_32.dll ()<br />
Drivers32: vidc.iv32 - C:&#092;WINDOWS&#092;System32&#092;ir32_32.dll ()<br />
Drivers32: vidc.iv41 - C:&#092;WINDOWS&#092;System32&#092;ir41_32.ax (Intel Corporation)<br />
Drivers32: vidc.iv50 - C:&#092;WINDOWS&#092;System32&#092;ir50_32.dll (Intel Corporation)<br />
Drivers32: vidc.LEAD - LCODCCMP.DLL File not found<br />
 <br />
CREATERESTOREPOINT<br />
Restore point Set: OTL Restore Point (16891891626803200)<br />
 <br />
<span style='color: #E56717'>========== Files/Folders - Created Within 30 Days ==========</span><br />
 <br />
[2010/02/25 00:13:23 | 000,549,888 | ---- | C] (OldTimer Tools) -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;OTL.exe<br />
[2010/02/25 00:07:12 | 000,000,000 | ---D | C] -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;2-25-2010<br />
[2010/02/25 00:05:52 | 000,000,000 | ---D | C] -- C:&#092;Program Files&#092;ERUNT<br />
[2010/02/25 00:03:45 | 000,791,393 | ---- | C] (Lars Hederer                                                ) -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;erunt-setup.exe<br />
[2010/02/24 23:32:23 | 000,000,000 | ---D | C] -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;SysRestorePoin<br />
[2010/02/23 12:37:10 | 000,000,000 | ---D | C] -- C:&#092;WINDOWS&#092;LastGood<br />
[2010/02/22 21:30:38 | 000,000,000 | ---D | C] -- C:&#092;Documents and Settings&#092;Owner&#092;Local Settings&#092;Application Data&#092;Wildtangent<br />
[2010/02/22 21:29:37 | 000,000,000 | ---D | C] -- C:&#092;WINDOWS&#092;wt<br />
[2010/02/22 21:29:37 | 000,000,000 | ---D | C] -- C:&#092;Program Files&#092;WildTangent<br />
[2010/02/12 17:27:39 | 000,000,000 | ---D | C] -- C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;WildTangent<br />
[2010/02/11 00:50:13 | 000,000,000 | ---D | C] -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;DIVERSITY ASSIGNMENT<br />
[2010/01/27 22:20:22 | 000,000,000 | ---D | C] -- C:&#092;Program Files&#092;Yahoo! Games<br />
[2010/01/27 21:12:53 | 000,000,000 | ---D | C] -- C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;Trymedia<br />
[2010/01/27 21:11:48 | 000,000,000 | ---D | C] -- C:&#092;GameHouse Games<br />
[2009/10/28 11:12:49 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;NetworkService&#092;Application Data&#092;Adobe<br />
[2009/10/09 11:32:59 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;LocalService&#092;Local Settings&#092;Application Data&#092;Microsoft<br />
[2009/10/07 18:37:56 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;NetworkService&#092;Local Settings&#092;Application Data&#092;Microsoft<br />
[2009/10/07 18:37:32 | 000,000,000 | --SD | M] -- C:&#092;Documents and Settings&#092;NetworkService&#092;Application Data&#092;Microsoft<br />
[2009/10/07 11:59:45 | 000,000,000 | --SD | M] -- C:&#092;Documents and Settings&#092;LocalService&#092;Application Data&#092;Microsoft<br />
[2009/09/09 11:38:22 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;NetworkService&#092;Local Settings&#092;Application Data&#092;Freecorder<br />
[2009/08/03 17:06:38 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;NetworkService&#092;Application Data&#092;SACore<br />
[2009/05/05 14:22:00 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;LocalService&#092;Application Data&#092;SACore<br />
[2009/03/04 12:38:38 | 000,000,000 | ---D | M] -- C:&#092;Documents and Settings&#092;NetworkService&#092;Local Settings&#092;Application Data&#092;Apple<br />
[2 C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;*.tmp files -&gt; C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;*.tmp -&gt; ]<br />
[1 C:&#092;WINDOWS&#092;System32&#092;*.tmp files -&gt; C:&#092;WINDOWS&#092;System32&#092;*.tmp -&gt; ]<br />
[1 C:&#092;WINDOWS&#092;*.tmp files -&gt; C:&#092;WINDOWS&#092;*.tmp -&gt; ]<br />
 <br />
<span style='color: #E56717'>========== Files - Modified Within 30 Days ==========</span><br />
 <br />
[2010/02/25 00:13:28 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;OTL.exe<br />
[2010/02/25 00:06:02 | 000,000,775 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Start Menu&#092;Programs&#092;Startup&#092;ERUNT AutoBackup.lnk<br />
[2010/02/25 00:05:53 | 000,000,619 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;NTREGOPT.lnk<br />
[2010/02/25 00:05:53 | 000,000,600 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;ERUNT.lnk<br />
[2010/02/25 00:03:48 | 000,791,393 | ---- | M] (Lars Hederer                                                ) -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;erunt-setup.exe<br />
[2010/02/24 23:42:47 | 000,009,334 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;SysRestorePoint_v13.zip<br />
[2010/02/24 22:47:25 | 000,000,422 | -H-- | M] () -- C:&#092;WINDOWS&#092;tasks&#092;User_Feed_Synchronization-{324510D9-12C2-49B4-95A3-025A009F306E}.job<br />
[2010/02/24 03:23:13 | 000,001,374 | ---- | M] () -- C:&#092;WINDOWS&#092;imsins.BAK<br />
[2010/02/23 17:11:31 | 000,000,006 | -H-- | M] () -- C:&#092;WINDOWS&#092;tasks&#092;SA.DAT<br />
[2010/02/23 17:09:36 | 000,002,048 | --S- | M] () -- C:&#092;WINDOWS&#092;bootstat.dat<br />
[2010/02/23 17:07:36 | 234,409,984 | -HS- | M] () -- C:&#092;hiberfil.sys<br />
[2010/02/23 01:58:34 | 000,000,178 | -HS- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;ntuser.ini<br />
[2010/02/23 01:58:32 | 008,007,680 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;ntuser.dat<br />
[2010/02/23 00:37:21 | 000,001,158 | ---- | M] () -- C:&#092;WINDOWS&#092;System32&#092;wpa.dbl<br />
[2010/02/17 22:57:46 | 002,108,052 | -H-- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Local Settings&#092;Application Data&#092;IconCache.db<br />
[2010/02/16 20:39:04 | 000,020,009 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;Tents.docx<br />
[2010/01/27 22:02:19 | 000,001,020 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;Nancy Drew&reg; - Dossier&#153; - Resorting to Danger.lnk<br />
[2010/01/27 21:11:48 | 000,000,137 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;More Games at GameHouse.com.url<br />
[2010/01/27 20:41:29 | 000,000,093 | ---- | M] () -- C:&#092;Documents and Settings&#092;Owner&#092;default.pls<br />
[2010/01/27 20:41:12 | 000,000,116 | ---- | M] () -- C:&#092;WINDOWS&#092;NeroDigital.ini<br />
[2 C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;*.tmp files -&gt; C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;*.tmp -&gt; ]<br />
[1 C:&#092;WINDOWS&#092;System32&#092;*.tmp files -&gt; C:&#092;WINDOWS&#092;System32&#092;*.tmp -&gt; ]<br />
[1 C:&#092;WINDOWS&#092;*.tmp files -&gt; C:&#092;WINDOWS&#092;*.tmp -&gt; ]<br />
 <br />
<span style='color: #E56717'>========== Files Created - No Company Name ==========</span><br />
 <br />
[2010/02/25 00:06:02 | 000,000,775 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Start Menu&#092;Programs&#092;Startup&#092;ERUNT AutoBackup.lnk<br />
[2010/02/25 00:05:53 | 000,000,619 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;NTREGOPT.lnk<br />
[2010/02/25 00:05:53 | 000,000,600 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;ERUNT.lnk<br />
[2010/02/24 23:42:47 | 000,009,334 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;SysRestorePoint_v13.zip<br />
[2010/02/16 20:39:00 | 000,020,009 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;Tents.docx<br />
[2010/02/10 11:28:17 | 008,007,680 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;ntuser.dat<br />
[2010/02/08 19:29:04 | 000,180,964 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;My Documents&#092;img003.jpg<br />
[2010/01/27 22:02:17 | 000,001,020 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;Nancy Drew&reg; - Dossier&#153; - Resorting to Danger.lnk<br />
[2010/01/27 21:11:48 | 000,000,137 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Desktop&#092;More Games at GameHouse.com.url<br />
[2009/12/14 17:56:47 | 000,000,097 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;PICSDK.ini<br />
[2009/12/14 17:54:20 | 000,000,044 | ---- | C] () -- C:&#092;WINDOWS&#092;EPWF500.ini<br />
[2009/10/27 21:38:36 | 000,156,672 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;RtlCPAPI.dll<br />
[2009/07/13 18:46:40 | 000,000,760 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Application Data&#092;setup_ldm.iss<br />
[2009/03/03 11:52:41 | 000,000,227 | ---- | C] () -- C:&#092;WINDOWS&#092;wininit.ini<br />
[2008/12/05 00:11:47 | 000,000,206 | ---- | C] () -- C:&#092;WINDOWS&#092;ALBUM.INI<br />
[2008/10/03 18:05:19 | 000,000,151 | ---- | C] () -- C:&#092;WINDOWS&#092;PhotoSnapViewer.INI<br />
[2008/10/02 17:57:50 | 000,000,029 | ---- | C] () -- C:&#092;WINDOWS&#092;DEBUGSM.INI<br />
[2008/10/02 17:37:33 | 000,000,171 | ---- | C] () -- C:&#092;WINDOWS&#092;EPSON CX3200 Installer.ini<br />
[2008/09/30 18:25:28 | 000,069,856 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;drivers&#092;LxrSge10d.sys<br />
[2008/09/27 16:04:14 | 000,024,929 | ---- | C] () -- C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;hpzinstall.log<br />
[2008/02/26 19:00:31 | 000,026,624 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Local Settings&#092;Application Data&#092;DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini<br />
[2008/01/15 00:45:00 | 000,000,116 | ---- | C] () -- C:&#092;WINDOWS&#092;NeroDigital.ini<br />
[2008/01/14 23:10:52 | 000,000,004 | ---- | C] () -- C:&#092;WINDOWS&#092;msoffice.ini<br />
[2008/01/14 22:05:53 | 000,000,066 | ---- | C] () -- C:&#092;Documents and Settings&#092;Owner&#092;Application Data&#092;Setup.txt<br />
[2008/01/14 21:34:07 | 000,363,520 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;psisdecd.dll<br />
[2008/01/14 21:34:01 | 001,291,264 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;quartz(2).dll<br />
[2007/12/30 16:14:47 | 000,000,376 | ---- | C] () -- C:&#092;WINDOWS&#092;ODBC.INI<br />
[2004/09/17 17:37:42 | 000,061,440 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;vuins32.dll<br />
[2003/01/25 05:43:47 | 000,000,061 | ---- | C] () -- C:&#092;WINDOWS&#092;smscfg.ini<br />
[2003/01/25 05:43:16 | 000,000,000 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;iAlmcoin.dll<br />
[2003/01/24 10:36:27 | 000,073,728 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;IntroReg.dll<br />
[2003/01/24 10:36:25 | 000,024,576 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;syscontr.dll<br />
[2003/01/24 10:36:24 | 000,036,864 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;hpreg.dll<br />
[2003/01/24 10:18:55 | 000,000,052 | ---- | C] () -- C:&#092;WINDOWS&#092;intuprof.ini<br />
[2003/01/24 10:18:40 | 000,000,608 | ---- | C] () -- C:&#092;WINDOWS&#092;QUICKEN.INI<br />
[2003/01/24 09:52:52 | 000,001,793 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;fxsperf.ini<br />
[2003/01/24 09:41:30 | 000,266,240 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;shpshftr.dll<br />
[2003/01/24 09:30:21 | 000,299,073 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;PythonCOM22.dll<br />
[2003/01/24 09:30:21 | 000,065,536 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;PyWinTypes22.dll<br />
[2003/01/24 09:29:52 | 000,016,896 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;bcbmm.dll<br />
[2003/01/24 09:11:36 | 000,000,802 | ---- | C] () -- C:&#092;WINDOWS&#092;orun32.ini<br />
[2003/01/24 07:55:28 | 000,000,552 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;oeminfo.ini<br />
[2002/12/13 21:32:52 | 000,000,141 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;px.ini<br />
[2001/09/24 07:59:00 | 000,045,056 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;NavLogon.dll<br />
[2001/09/01 01:33:58 | 000,425,984 | ---- | C] () -- C:&#092;WINDOWS&#092;System32&#092;VxDMDcDlg.dll<br />
 <br />
<span style='color: #E56717'>========== Custom Scans ==========</span><br />
 <br />
 <br />
<span style='color: #A23BEC'>&lt; %SYSTEMDRIVE%&#092;*.* &gt;</span><br />
[2003/01/24 09:07:32 | 000,000,000 | ---- | M] () -- C:&#092;AUTOEXEC.BAT<br />
[2009/10/18 00:08:23 | 000,000,199 | -HS- | M] () -- C:&#092;boot.ini<br />
[2003/01/24 09:07:32 | 000,000,000 | ---- | M] () -- C:&#092;CONFIG.SYS<br />
[2010/02/12 20:15:22 | 000,000,045 | ---- | M] () -- C:&#092;error.log<br />
[2010/02/23 17:07:36 | 234,409,984 | -HS- | M] () -- C:&#092;hiberfil.sys<br />
[2008/07/14 14:52:10 | 000,000,128 | ---- | M] () -- C:&#092;INSTALL.LOG<br />
[2003/01/24 09:07:32 | 000,000,000 | RHS- | M] () -- C:&#092;IO.SYS<br />
[2007/12/30 15:49:47 | 000,000,591 | -H-- | M] () -- C:&#092;IPH.PH<br />
[2003/01/24 09:07:32 | 000,000,000 | RHS- | M] () -- C:&#092;MSDOS.SYS<br />
[2008/10/01 23:49:18 | 000,047,564 | RHS- | M] () -- C:&#092;NTDETECT.COM<br />
[2009/03/17 15:20:26 | 000,250,048 | RHS- | M] () -- C:&#092;ntldr<br />
[2003/01/24 21:14:43 | 000,000,000 | ---- | M] () -- C:&#092;nvlog.txt<br />
[2010/02/23 17:07:02 | 352,321,536 | -HS- | M] () -- C:&#092;pagefile.sys<br />
[2010/01/11 13:18:59 | 000,000,000 | ---- | M] () -- C:&#092;ProjectEngine.log<br />
[2008/01/01 11:50:15 | 000,000,118 | ---- | M] () -- C:&#092;remind.log<br />
[2009/10/17 20:40:34 | 000,004,651 | ---- | M] () -- C:&#092;resetip.txt<br />
[2009/03/22 02:12:25 | 000,010,791 | -H-- | M] () -- C:&#092;_NavCClt.Log<br />
 <br />
 <br />
<span style='color: #A23BEC'>&lt; MD5 for: AGP440.SYS  &gt;</span><br />
[2008/10/01 23:43:25 | 022,245,337 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;Driver Cache&#092;i386&#092;sp2.cab:AGP440.sys<br />
[2009/03/17 14:14:56 | 023,852,652 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;Driver Cache&#092;i386&#092;sp3.cab:AGP440.sys<br />
[2008/10/01 23:43:25 | 022,245,337 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;sp2.cab:AGP440.sys<br />
[2009/03/17 14:14:56 | 023,852,652 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;sp3.cab:AGP440.sys<br />
[2008/04/13 13:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;agp440.sys<br />
[2008/04/13 13:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;agp440.sys<br />
 <br />
<span style='color: #A23BEC'>&lt; MD5 for: ATAPI.SYS  &gt;</span><br />
[2002/08/29 07:00:00 | 010,158,890 | ---- | M] () .cab file -- C:&#092;i386&#092;sp1.cab:atapi.sys<br />
[2002/08/29 14:00:00 | 010,158,890 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;Driver Cache&#092;i386&#092;sp1.cab:atapi.sys<br />
[2008/10/01 23:43:25 | 022,245,337 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;Driver Cache&#092;i386&#092;sp2.cab:atapi.sys<br />
[2009/03/17 14:14:56 | 023,852,652 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;Driver Cache&#092;i386&#092;sp3.cab:atapi.sys<br />
[2002/08/29 14:00:00 | 010,158,890 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;I386&#092;sp1.cab:atapi.sys<br />
[2008/10/01 23:43:25 | 022,245,337 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;sp2.cab:atapi.sys<br />
[2009/03/17 14:14:56 | 023,852,652 | ---- | M] () .cab file -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;sp3.cab:atapi.sys<br />
[2008/04/13 13:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;atapi.sys<br />
[2008/04/13 13:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:&#092;WINDOWS&#092;system32&#092;drivers&#092;atapi.sys<br />
 <br />
<span style='color: #A23BEC'>&lt; MD5 for: EVENTLOG.DLL  &gt;</span><br />
[2008/04/13 19:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;eventlog.dll<br />
[2008/04/13 19:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:&#092;WINDOWS&#092;system32&#092;eventlog.dll<br />
 <br />
<span style='color: #A23BEC'>&lt; MD5 for: NETLOGON.DLL  &gt;</span><br />
[2008/04/13 19:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;netlogon.dll<br />
[2008/04/13 19:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:&#092;WINDOWS&#092;system32&#092;netlogon.dll<br />
 <br />
<span style='color: #A23BEC'>&lt; MD5 for: SCECLI.DLL  &gt;</span><br />
[2008/04/13 19:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:&#092;WINDOWS&#092;ServicePackFiles&#092;i386&#092;scecli.dll<br />
[2008/04/13 19:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:&#092;WINDOWS&#092;system32&#092;scecli.dll<br />
 <br />
<span style='color: #A23BEC'>&lt; %systemroot%&#092;*. /mp /s &gt;</span><br />
 <br />
<span style='color: #A23BEC'>&lt; %systemroot%&#092;system32&#092;*.dll /lockedfiles &gt;</span><br />
[2009/08/17 22:33:52 | 001,193,832 | ---- | M] (Microsoft Corporation)<strong class='bbc'> Unable to obtain MD5</strong> -- C:&#092;WINDOWS&#092;system32&#092;FM20.DLL<br />
[1 C:&#092;WINDOWS&#092;system32&#092;*.tmp files -&gt; C:&#092;WINDOWS&#092;system32&#092;*.tmp -&gt; ]<br />
 <br />
<span style='color: #A23BEC'>&lt; %systemroot%&#092;system32&#092;*.exe /lockedfiles &gt;</span><br />
[1 C:&#092;WINDOWS&#092;system32&#092;*.tmp files -&gt; C:&#092;WINDOWS&#092;system32&#092;*.tmp -&gt; ]<br />
 <br />
<span style='color: #A23BEC'>&lt; %systemroot%&#092;Tasks&#092;*.job /lockedfiles &gt;</span><br />
 <br />
<span style='color: #A23BEC'>&lt; %systemroot%&#092;system32&#092;drivers&#092;*.sys /lockedfiles &gt;</span><br />
 <br />
<span style='color: #A23BEC'>&lt; %systemroot%&#092;System32&#092;config&#092;*.sav  &gt;</span><br />
[2003/01/24 00:58:14 | 000,094,208 | ---- | M] () -- C:&#092;WINDOWS&#092;system32&#092;config&#092;default.sav<br />
[2003/01/24 00:58:14 | 000,602,112 | ---- | M] () -- C:&#092;WINDOWS&#092;system32&#092;config&#092;software.sav<br />
[2003/01/24 00:58:14 | 000,385,024 | ---- | M] () -- C:&#092;WINDOWS&#092;system32&#092;config&#092;system.sav<br />
 <br />
<span style='color: #E56717'>========== Alternate Data Streams ==========</span><br />
 <br />
@Alternate Data Stream - 150 bytes -&gt; C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;TEMP:1AE68282<br />
@Alternate Data Stream - 141 bytes -&gt; C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;TEMP:DFC5A2B2<br />
@Alternate Data Stream - 134 bytes -&gt; C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;TEMP:F4921BC9<br />
@Alternate Data Stream - 127 bytes -&gt; C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;TEMP:3DB0B938<br />
@Alternate Data Stream - 126 bytes -&gt; C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;TEMP:0A404476<br />
@Alternate Data Stream - 123 bytes -&gt; C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;TEMP:2A8A3140<br />
@Alternate Data Stream - 104 bytes -&gt; C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;TEMP:F65733F1<br />
&lt; End of report &gt;<br />
<br />
<br />
OTL Extras logfile created on: 2/25/2010 12:18:25 AM - Run 1<br />
OTL by OldTimer - Version 3.1.30.2     Folder = C:&#092;Documents and Settings&#092;Owner&#092;Desktop<br />
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation<br />
Internet Explorer (Version = 8.0.6001.18702)<br />
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy<br />
 <br />
223.00 Mb Total Physical Memory | 63.00 Mb Available Physical Memory | 28.00% Memory free<br />
882.00 Mb Paging File | 574.00 Mb Available in Paging File | 65.00% Paging File free<br />
Paging file location(s): C:&#092;pagefile.sys 336 2000D:&#092;pagefile.sys 0 0 [binary data]<br />
 <br />
%SystemDrive% = C: | %SystemRoot% = C:&#092;WINDOWS | %ProgramFiles% = C:&#092;Program Files<br />
Drive C: | 107.91 Gb Total Space | 70.56 Gb Free Space | 65.39% Space Free | Partition Type: NTFS<br />
Drive D: | 3.89 Gb Total Space | 0.57 Gb Free Space | 14.75% Space Free | Partition Type: FAT32<br />
E: Drive not present or media not loaded<br />
F: Drive not present or media not loaded<br />
G: Drive not present or media not loaded<br />
H: Drive not present or media not loaded<br />
I: Drive not present or media not loaded<br />
 <br />
Computer Name: YOUR-N3TY7ATHD5<br />
Current User Name: Owner<br />
Logged in as Administrator.<br />
 <br />
Current Boot Mode: Normal<br />
Scan Mode: Current user<br />
Company Name Whitelist: Off<br />
Skip Microsoft Files: Off<br />
File Age = 30 Days<br />
Output = Standard<br />
 <br />
<span style='color: #E56717'>========== Extra Registry (SafeList) ==========</span><br />
 <br />
 <br />
<span style='color: #E56717'>========== File Associations ==========</span><br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;&lt;extension&gt;]<br />
.html [@ = htmlfile] -- C:&#092;Program Files&#092;Internet Explorer&#092;IEXPLORE.EXE (Microsoft Corporation)<br />
 <br />
<span style='color: #E56717'>========== Shell Spawning ==========</span><br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;&lt;key&gt;&#092;shell&#092;[command]&#092;command]<br />
batfile [open] -- "%1" %*<br />
cmdfile [open] -- "%1" %*<br />
comfile [open] -- "%1" %*<br />
exefile [open] -- "%1" %*<br />
htmlfile [edit] -- "C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;msohtmed.exe" %1 (Microsoft Corporation)<br />
htmlfile [open] -- "C:&#092;Program Files&#092;Internet Explorer&#092;IEXPLORE.EXE" -nohome (Microsoft Corporation)<br />
htmlfile [opennew] -- "C:&#092;Program Files&#092;Internet Explorer&#092;IEXPLORE.EXE" %1 (Microsoft Corporation)<br />
htmlfile [print] -- "C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;msohtmed.exe" /p %1 (Microsoft Corporation)<br />
http [open] -- "C:&#092;Program Files&#092;Internet Explorer&#092;IEXPLORE.EXE" -nohome (Microsoft Corporation)<br />
https [open] -- "C:&#092;Program Files&#092;Internet Explorer&#092;IEXPLORE.EXE" -nohome (Microsoft Corporation)<br />
piffile [open] -- "%1" %*<br />
regfile [merge] -- Reg Error: Key error.<br />
scrfile [config] -- "%1"<br />
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)<br />
scrfile [open] -- "%1" /S<br />
txtfile [edit] -- Reg Error: Key error.<br />
Unknown [openas] -- %SystemRoot%&#092;system32&#092;rundll32.exe %SystemRoot%&#092;system32&#092;shell32.dll,OpenAs_RunDLL %1<br />
Directory [find] -- %SystemRoot%&#092;Explorer.exe (Microsoft Corporation)<br />
Directory [OneNote.Open] -- C:&#092;PROGRA~1&#092;MICROS~2&#092;Office12&#092;ONENOTE.EXE "%L" (Microsoft Corporation)<br />
Folder [open] -- %SystemRoot%&#092;Explorer.exe /idlist,%I,%L (Microsoft Corporation)<br />
Folder [explore] -- %SystemRoot%&#092;Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)<br />
Drive [find] -- %SystemRoot%&#092;Explorer.exe (Microsoft Corporation)<br />
Applications&#092;iexplore.exe [open] -- "C:&#092;Program Files&#092;Internet Explorer&#092;IEXPLORE.EXE" %1 (Microsoft Corporation)<br />
CLSID&#092;{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe" (Microsoft Corporation)<br />
 <br />
<span style='color: #E56717'>========== Security Center Settings ==========</span><br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center]<br />
"AntiVirusDisableNotify" = 0<br />
"FirewallDisableNotify" = 0<br />
"UpdatesDisableNotify" = 0<br />
"AntiVirusOverride" = 0<br />
"FirewallOverride" = 0<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;AhnlabAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;ComputerAssociatesAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;KasperskyAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;McAfeeAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;McAfeeFirewall]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;PandaAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;PandaFirewall]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;SophosAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;SymantecAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;SymantecFirewall]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;TinyFirewall]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;TrendAntiVirus]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;TrendFirewall]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Security Center&#092;Monitoring&#092;ZoneLabsFirewall]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;SharedAccess&#092;Parameters&#092;FirewallPolicy&#092;DomainProfile]<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;SharedAccess&#092;Parameters&#092;FirewallPolicy&#092;StandardProfile]<br />
"EnableFirewall" = 1<br />
"DoNotAllowExceptions" = 0<br />
"DisableNotifications" = 0<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;SharedAccess&#092;Parameters&#092;FirewallPolicy&#092;StandardProfile&#092;GloballyOpenPorts&#092;List]<br />
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007<br />
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008<br />
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004<br />
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005<br />
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001<br />
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002<br />
 <br />
<span style='color: #E56717'>========== Authorized Applications List ==========</span><br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;SharedAccess&#092;Parameters&#092;FirewallPolicy&#092;DomainProfile&#092;AuthorizedApplications&#092;List]<br />
"C:&#092;Program Files&#092;Windows Live&#092;Messenger&#092;wlcsdk.exe" = C:&#092;Program Files&#092;Windows Live&#092;Messenger&#092;wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)<br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;SharedAccess&#092;Parameters&#092;FirewallPolicy&#092;StandardProfile&#092;AuthorizedApplications&#092;List]<br />
"C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;OUTLOOK.EXE" = C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)<br />
"C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GROOVE.EXE" = C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)<br />
"C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;ONENOTE.EXE" = C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)<br />
"C:&#092;Program Files&#092;Nero&#092;Nero 7&#092;Nero Home&#092;NeroHome.exe" = C:&#092;Program Files&#092;Nero&#092;Nero 7&#092;Nero Home&#092;NeroHome.exe:*:Enabled:Nero Home -- (Nero AG)<br />
"C:&#092;Program Files&#092;Nero&#092;Nero 7&#092;Nero ShowTime&#092;ShowTime.exe" = C:&#092;Program Files&#092;Nero&#092;Nero 7&#092;Nero ShowTime&#092;ShowTime.exe:*:Enabled:Nero ShowTime Essentials -- (Nero AG)<br />
"C:&#092;Program Files&#092;MSN&#092;MSNCoreFiles&#092;msn6.exe" = C:&#092;Program Files&#092;MSN&#092;MSNCoreFiles&#092;msn6.exe:*:Enabled:MSN Explorer -- (Microsoft Corporation)<br />
"C:&#092;Program Files&#092;OXXOGames&#092;VIVAGplayer&#092;GPlayer.exe" = C:&#092;Program Files&#092;OXXOGames&#092;VIVAGplayer&#092;GPlayer.exe:*:Enabled:GAME CENTER -- (INTENIUM GmbH)<br />
"C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe" = C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe:*:Enabled:Bonjour -- (Apple Inc.)<br />
"C:&#092;Program Files&#092;Yahoo!&#092;Messenger&#092;YahooMessenger.exe" = C:&#092;Program Files&#092;Yahoo!&#092;Messenger&#092;YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- File not found<br />
"C:&#092;Program Files&#092;MusicETC&#092;MusicETC.exe" = C:&#092;Program Files&#092;MusicETC&#092;MusicETC.exe:*:Enabled:MusicETC -- File not found<br />
"C:&#092;Program Files&#092;FrostWire&#092;FrostWire.exe" = C:&#092;Program Files&#092;FrostWire&#092;FrostWire.exe:*:Enabled:FrostWire -- File not found<br />
"C:&#092;Program Files&#092;Windows Live&#092;Messenger&#092;wlcsdk.exe" = C:&#092;Program Files&#092;Windows Live&#092;Messenger&#092;wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)<br />
"C:&#092;Program Files&#092;Ares&#092;Ares.exe" = C:&#092;Program Files&#092;Ares&#092;Ares.exe:*:Enabled:Ares p2p for windows -- File not found<br />
"C:&#092;Program Files&#092;LimeWire&#092;LimeWire.exe" = C:&#092;Program Files&#092;LimeWire&#092;LimeWire.exe:*:Enabled:LimeWire -- File not found<br />
"C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe" = C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe:*:Enabled:Internet Explorer -- (Microsoft Corporation)<br />
"C:&#092;WINDOWS&#092;system32&#092;dpnsvr.exe" = C:&#092;WINDOWS&#092;system32&#092;dpnsvr.exe:*:Enabled:Microsoft DirectPlay8 Server -- (Microsoft Corporation)<br />
"C:&#092;WINDOWS&#092;system32&#092;dxdiag.exe" = C:&#092;WINDOWS&#092;system32&#092;dxdiag.exe:*:Enabled:Microsoft DirectX Diagnostic Tool -- (Microsoft Corporation)<br />
"C:&#092;Program Files&#092;Yahoo! Games&#092;Blasterball 2 Remix&#092;bb2remix.exe" = C:&#092;Program Files&#092;Yahoo! Games&#092;Blasterball 2 Remix&#092;bb2remix.exe:*:Enabled:bb2remix -- File not found<br />
 <br />
 <br />
<span style='color: #E56717'>========== HKEY_LOCAL_MACHINE Uninstall List ==========</span><br />
 <br />
[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Uninstall]<br />
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148<br />
"{007B37D9-0C45-4202-834B-DD5FAAE99D63}" = ArcSoft Print Creations - Slimline Card<br />
"{01A1A019-E1D8-482A-BE17-5E118D17C0A0}" = ArcSoft Print Creations - Brochures & Flyers<br />
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour<br />
"{09DA4F91-2A09-4232-AB8C-6BC740096DE3}" = RecordNow Update Manager<br />
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer<br />
"{13F00518-807A-4B3A-83B0-A7CD90F3A398}" = MarketResearch<br />
"{14589F05-C658-4594-9429-D437BA688686}" = IntelliMover Data Transfer Demo<br />
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer<br />
"{1C220811-048F-4D60-B42E-B86027C57372}" = LightScribe  1.4.119.1<br />
"{1F7CCFA3-D926-4882-B2A5-A0217ED25597}" = PC-Doctor for Windows<br />
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool<br />
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT<br />
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer<br />
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java&#153; 6 Update 17<br />
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper<br />
"{3248F0A8-6813-11D6-A77B-00B0D0150050}" = J2SE Runtime Environment 5.0 Update 5<br />
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP<br />
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform<br />
"{3CE47E6B-AE27-4E40-AC54-329EED96B933}" = ArcSoft Print Creations - Funhouse II<br />
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant<br />
"{56589DFE-0C29-4DFE-8E42-887B771ECD23}" = ArcSoft Print Creations - Photo Book<br />
"{5D1C82E7-7EC0-4404-A8AD-36C3B444BC34}" = ArcSoft Print Creations - Poster Creator<br />
"{6C5D7191-140A-11D6-B5A0-0050DA208A93}" = ArcSoft PhotoImpression<br />
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder<br />
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable<br />
"{764D06D8-D8DE-411E-A1C8-D9E9380F8A84}" = Microsoft Works 7.0<br />
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053<br />
"{7CF31609-270B-11D6-9445-000102308676}" = Java 2 Runtime Environment, SE v1.4.0_01<br />
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials<br />
"{8214CC02-6271-4DC8-B8DD-779933450264}" = RecordNow<br />
"{8780F4A9-3234-42CB-B444-517F314444B1}" = ArcSoft Print Creations<br />
"{8867CEBD-E6C0-4C7A-83B3-9E45669A1033}" = Nero 7 Essentials<br />
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel&reg; Extreme Graphics Driver Software<br />
"{8D5D99B8-DFA2-4018-ADE9-A6B83E655C65}" = <br />
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders  (English) 12<br />
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007<br />
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007<br />
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007<br />
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007<br />
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007<br />
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007<br />
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007<br />
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007<br />
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007<br />
"{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007<br />
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007<br />
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)<br />
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007<br />
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007<br />
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007<br />
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007<br />
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007<br />
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007<br />
"{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007<br />
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)<br />
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting<br />
"{9591C049-5CAE-4E89-A8D9-191F1899628B}" = ArcSoft Print Creations - Funhouse<br />
"{95F875CC-1B85-43E6-B3E0-13EA04F3D995}" = ArcSoft Print Creations - Photo Prints<br />
"{98E8A2EF-4EAE-43B8-A172-74842B764777}" = InterVideo WinDVD Player<br />
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17<br />
"{9A3EABC0-CA06-11D4-BF77-00104B130C19}" = EPSON TWAIN 5<br />
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI<br />
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2<br />
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger<br />
"{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint<br />
"{ADF1F741-4BBC-4F7E-8C2C-9855D6318185}" = SystemTechXP<br />
"{B0D83FCD-9D42-43ED-8315-250326AADA02}" = ArcSoft Print Creations - Scrapbook<br />
"{B43357AA-3A6D-4D94-B56E-43C44D09E548}" = Microsoft .NET Framework (English)<br />
"{B69CC1A5-0404-11D6-ABCB-005004C21D30}" = EPSON Copy Utility<br />
"{BDE90251-93EB-4F6A-89D8-086E2D91DC56}" = Coloreal<br />
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2<br />
"{CA9ED5E4-1548-485B-A293-417840060158}" = ArcSoft Print Creations - Photo Calendar<br />
"{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}" = HP Product Detection<br />
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240BA}" = WinZip 14.0<br />
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1<br />
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag<br />
"{E6B4117F-AC59-4B13-9274-EB136E8897EE}" = ArcSoft Print Creations - Album Page<br />
"{ECA1A3B6-898F-4DCE-9F04-714CF3BA126B}" = Adobe Flash Player 10 Plugin<br />
"{EEF397AC-DAEF-4C04-90A9-5B2BD31875DC}" = Simple Installer - Multilanguage Version<br />
"{F04F9557-81A9-4293-BC49-2C216FA325A7}" = ArcSoft Print Creations - Greeting Card<br />
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard<br />
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer<br />
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint<br />
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call<br />
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio<br />
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX<br />
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5<br />
"am-nancydrewrdossiertmresortingtodanger" = Nancy Drew&reg; - Dossier&#153; - Resorting to Danger<br />
"Ask Toolbar_is1" = Foxit Toolbar<br />
"ATTToolbar" = AT&T Toolbar<br />
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus<br />
"bejeweled2deluxe" = Bejeweled 2 Deluxe<br />
"BFGC" = Big Fish Games Client<br />
"diamonddash" = Diamond Dash<br />
"ENTERPRISE" = Microsoft Office Enterprise 2007<br />
"EPSON Printer and Utilities" = EPSON Printer Software<br />
"EPSON Scanner" = EPSON Scan<br />
"EPSON WorkForce 500 Series" = EPSON WorkForce 500 Series Printer Uninstall<br />
"ERUNT_is1" = ERUNT 1.1j<br />
"ExpressBurn" = Express Burn<br />
"Foxit Reader" = Foxit Reader<br />
"ie8" = Windows Internet Explorer 8<br />
"Inactive HP Printer Drivers (Remove only)" = Inactive HP Printer Drivers (Remove only)<br />
"Java Web Start" = Java Web Start<br />
"LiveReg" = LiveReg (Symantec Corporation)<br />
"LiveUpdate" = LiveUpdate 1.80 (Symantec Corporation)<br />
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware<br />
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1<br />
"Microsoft .NET Framework Full v1.0.3705 (1033)" = Microsoft .NET Framework (English) v1.0.3705<br />
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP<br />
"Mystery P.I. - The Lottery Ticket 1.0.0.5" = Mystery P.I. - The Lottery Ticket 1.0.0.5<br />
"Nero PhotoShow Express 4" = Nero PhotoShow Express 4<br />
"Netscape (7.0)" = Netscape (7.0)<br />
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers<br />
"PhotoPad" = PhotoPad Image Editor<br />
"PS2" = PS2<br />
"Python 2.2 combined Win32 extensions" = Python 2.2 combined Win32 extensions<br />
"Python 2.2.1" = Python 2.2.1<br />
"RealArcade" = RealArcade<br />
"S3Display" = S3Display<br />
"S3Gamma2" = S3Gamma2<br />
"S3Info2" = S3Info2<br />
"S3Overlay" = S3Overlay<br />
"Silent Package Run-Time Sample" = EPSON User's Guide<br />
"Switch" = Switch Sound File Converter<br />
"ToolBox" = NCH Toolbox<br />
"ViewpointMediaPlayer" = Viewpoint Media Player (Remove Only)<br />
"VIVAGplayer" = VIVA MEDIA GAME CENTER<br />
"VN_VUIns_Rhine_VIA" = VIA Rhine-Family Fast Ethernet Adapter<br />
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5<br />
"WildTangent CDA" = WildTangent Web Driver<br />
"Windows Media Format Runtime" = Windows Media Format 11 runtime<br />
"Windows Media Player" = Windows Media Player 11<br />
"Windows XP Service Pack" = Windows XP Service Pack 3<br />
"WinLiveSuite_Wave3" = Windows Live Essentials<br />
"WMFDist11" = Windows Media Format 11 runtime<br />
"wmp11" = Windows Media Player 11<br />
"wordbuzzgold" = Word Buzz Gold<br />
"wordjongtmtogo" = WordJong&#153; To Go<br />
"Yahoo! Companion" = Yahoo! Toolbar<br />
"Yahoo! Essentials" = Yahoo! Essentials<br />
"Yahoo! Login" = Yahoo! Login<br />
"Yahoo! Mail" = Yahoo! Internet Mail<br />
"Yahoo! Messenger Explorer Bar" = Yahoo! Messenger Explorer Bar<br />
"Yahoo! Software Update" = Yahoo! Software Update<br />
"zumadeluxe" = Zuma Deluxe<br />
 <br />
<span style='color: #E56717'>========== Last 10 Event Log Errors ==========</span><br />
 <br />
[ Application Events ]<br />
Error - 1/28/2010 6:30:56 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4112<br />
Description = An error occurred during a resource request to the Windows NT system.<br />
   The resource &lt;ThreadInit&gt; has not been allocated.   This could be due to an out-of-memory<br />
 error or any other system failure.  Returned error code: 0x18<br />
 <br />
Error - 2/1/2010 3:57:26 AM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4112<br />
Description = An error occurred during a resource request to the Windows NT system.<br />
   The resource &lt;ThreadInit&gt; has not been allocated.   This could be due to an out-of-memory<br />
 error or any other system failure.  Returned error code: 0x18<br />
 <br />
Error - 2/12/2010 6:39:53 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Application Error | ID = 1000<br />
Description = Faulting application blasterball3.exe, version 3.0.0.80, faulting <br />
module blasterball3.exe, version 3.0.0.80, fault address 0x0014e9a6.<br />
 <br />
Error - 2/23/2010 1:41:48 AM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4110<br />
Description = An unknown error occurred during init of the engine!  Returned error<br />
 code: 0x35<br />
 <br />
Error - 2/23/2010 2:21:27 AM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4110<br />
Description = An unknown error occurred during init of the engine!  Returned error<br />
 code: 0x35<br />
 <br />
Error - 2/23/2010 2:22:02 AM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4110<br />
Description = An unknown error occurred during init of the engine!  Returned error<br />
 code: 0x35<br />
 <br />
Error - 2/23/2010 1:33:20 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4110<br />
Description = An unknown error occurred during init of the engine!  Returned error<br />
 code: 0x35<br />
 <br />
Error - 2/23/2010 6:13:21 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4110<br />
Description = An unknown error occurred during init of the engine!  Returned error<br />
 code: 0x35<br />
 <br />
Error - 2/24/2010 1:43:54 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4110<br />
Description = An unknown error occurred during init of the engine!  Returned error<br />
 code: 0x35<br />
 <br />
Error - 2/24/2010 5:01:25 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Avira AntiVir | ID = 4110<br />
Description = An unknown error occurred during init of the engine!  Returned error<br />
 code: 0x35<br />
 <br />
[ OSession Events ]<br />
Error - 10/22/2008 8:20:04 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Microsoft Office 12 Sessions | ID = 7001<br />
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:<br />
 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1398<br />
 seconds with 1260 seconds of active time.  This session ended with a crash.<br />
 <br />
Error - 12/15/2008 3:17:18 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Microsoft Office 12 Sessions | ID = 7001<br />
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:<br />
 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 355<br />
 seconds with 60 seconds of active time.  This session ended with a crash.<br />
 <br />
Error - 12/15/2008 3:18:44 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Microsoft Office 12 Sessions | ID = 7001<br />
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:<br />
 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 52<br />
 seconds with 0 seconds of active time.  This session ended with a crash.<br />
 <br />
[ System Events ]<br />
Error - 2/23/2010 6:28:01 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Service Control Manager | ID = 7009<br />
Description = Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM <br />
Service service to connect.<br />
 <br />
Error - 2/23/2010 6:28:01 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Service Control Manager | ID = 7000<br />
Description = The IMAPI CD-Burning COM Service service failed to start due to the<br />
 following error:   %%1053<br />
 <br />
Error - 2/23/2010 6:28:05 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Service Control Manager | ID = 7023<br />
Description = The Security Center service terminated with the following error:   %%16389<br />
 <br />
Error - 2/23/2010 6:29:38 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Service Control Manager | ID = 7022<br />
Description = The SSDP Discovery Service service hung on starting.<br />
 <br />
Error - 2/23/2010 6:32:10 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Service Control Manager | ID = 7009<br />
Description = Timeout (30000 milliseconds) waiting for the Application Layer Gateway<br />
 Service service to connect.<br />
 <br />
Error - 2/23/2010 6:32:10 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = Service Control Manager | ID = 7000<br />
Description = The Application Layer Gateway Service service failed to start due <br />
to the following error:   %%1053<br />
 <br />
Error - 2/23/2010 6:48:22 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = MRxSmb | ID = 8016<br />
Description = The browser driver has received too many illegal datagrams from the<br />
 remote computer YOUR-N3TY7ATHD5 to name MSHOME on transport NetBT_Tcpip_{194C0.<br />
  The data is the datagram.  No more events will be generated until the reset frequency<br />
 has expired.<br />
 <br />
Error - 2/24/2010 5:03:31 AM | Computer Name = YOUR-N3TY7ATHD5 | Source = atapi | ID = 262153<br />
Description = The device, &#092;Device&#092;Ide&#092;IdePort0, did not respond within the timeout<br />
 period.<br />
 <br />
Error - 2/24/2010 5:46:29 AM | Computer Name = YOUR-N3TY7ATHD5 | Source = atapi | ID = 262153<br />
Description = The device, &#092;Device&#092;Ide&#092;IdePort0, did not respond within the timeout<br />
 period.<br />
 <br />
Error - 2/24/2010 3:45:13 PM | Computer Name = YOUR-N3TY7ATHD5 | Source = atapi | ID = 262153<br />
Description = The device, &#092;Device&#092;Ide&#092;IdePort0, did not respond within the timeout<br />
 period.<br />
 <br />
 <br />
&lt; End of report &gt;]]></description>
		<pubDate>Fri, 26 Feb 2010 04:15:41 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6435-start-up-takes-a-long-time/</guid>
	</item>
	<item>
		<title>Avira Antivir</title>
		<link>http://www.247fixes.com/forums/topic/6425-avira-antivir/</link>
		<description><![CDATA[Hi,<br />
   Have Avira AntiVir Personal. I get an error message when trying to scan or update Message is "While loading the module (aecore.dll) the following error occured: The specified module cannot be loaded"<br />
Thanks]]></description>
		<pubDate>Wed, 24 Feb 2010 21:00:42 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6425-avira-antivir/</guid>
	</item>
	<item>
		<title><![CDATA[[Inactive]&nbsp;Svchost/exe]]></title>
		<link>http://www.247fixes.com/forums/topic/6415-svchostexe/</link>
		<description>I get an error message when i turn my comp on. I googled this but can not figure out to fix it. help please</description>
		<pubDate>Wed, 24 Feb 2010 08:42:38 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6415-svchostexe/</guid>
	</item>
	<item>
		<title>Redirect Issue</title>
		<link>http://www.247fixes.com/forums/topic/6390-redirect-issue/</link>
		<description><![CDATA[Not all the time - but get redirected to blank page sometimes<br />
<br />
have played with torrents<br />
<br />
have read previous stuff etc etc<br />
<br />
logs <br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 3:06:52 PM, on 2/19/2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v7.00 (7.00.6000.16705)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;WINDOWS&#092;System32&#092;smss.exe<br />
C:&#092;WINDOWS&#092;system32&#092;csrss.exe<br />
C:&#092;WINDOWS&#092;system32&#092;winlogon.exe<br />
C:&#092;WINDOWS&#092;system32&#092;services.exe<br />
C:&#092;WINDOWS&#092;system32&#092;lsass.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;system32&#092;tftpu.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgchsvx.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgrsx.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgcsrvx.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;Explorer.EXE<br />
C:&#092;WINDOWS&#092;system32&#092;ZoneLabs&#092;vsmon.exe<br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
C:&#092;WINDOWS&#092;system32&#092;rundll32.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgwdsvc.exe<br />
C:&#092;Program Files&#092;IObit&#092;IObit Security 360&#092;IS360srv.exe<br />
C:&#092;WINDOWS&#092;system32&#092;pctspk.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;Program Files&#092;Viewpoint&#092;Common&#092;ViewpointService.exe<br />
C:&#092;WINDOWS&#092;system32&#092;SearchIndexer.exe<br />
C:&#092;WINDOWS&#092;System32&#092;alg.exe<br />
C:&#092;Program Files&#092;BillP Studios&#092;WinPatrol&#092;winpatrol.exe<br />
C:&#092;Program Files&#092;Zone Labs&#092;ZoneAlarm&#092;zlclient.exe<br />
C:&#092;PROGRA~1&#092;AVG&#092;AVG9&#092;avgtray.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
C:&#092;Program Files&#092;uTorrent&#092;uTorrent.exe<br />
C:&#092;WINDOWS&#092;system32&#092;devldr32.exe<br />
C:&#092;Program Files&#092;Viewpoint&#092;Viewpoint Manager&#092;ViewMgr.exe<br />
C:&#092;PROGRAM FILES&#092;ITUNES&#092;ITUNESHELPER.EXE<br />
C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
C:&#092;PROGRAM FILES&#092;YOURWARE SOLUTIONS&#092;FREERAM XP PRO&#092;FREERAM XP PRO.EXE<br />
C:&#092;PROGRAM FILES&#092;HEWLETT-PACKARD&#092;HP SOFTWARE UPDATE&#092;HPWUSCHD2.EXE<br />
C:&#092;Program Files&#092;Trend Micro&#092;HijackThis&#092;HijackThis.exe<br />
C:&#092;WINDOWS&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Local Page = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Local Page = <br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings,ProxyServer = :<br />
R3 - URLSearchHook: (no name) - CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgssie.dll<br />
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:&#092;PROGRA~1&#092;MICROS~2&#092;Office12&#092;GRA8E1~1.DLL<br />
O2 - BHO: ZoneAlarm Spy Blocker BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:&#092;Program Files&#092;ZoneAlarmSB&#092;bar&#092;1.bin&#092;SPYBLOCK.DLL<br />
O3 - Toolbar: ZoneAlarm Spy Blocker - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:&#092;Program Files&#092;ZoneAlarmSB&#092;bar&#092;1.bin&#092;SPYBLOCK.DLL<br />
O4 - HKLM&#092;..&#092;Run: [WinPatrol] "C:&#092;Program Files&#092;BillP Studios&#092;WinPatrol&#092;winpatrol.exe"<br />
O4 - HKLM&#092;..&#092;Run: [ZoneAlarm Client] "C:&#092;Program Files&#092;Zone Labs&#092;ZoneAlarm&#092;zlclient.exe"<br />
O4 - HKLM&#092;..&#092;Run: [AVG9_TRAY] C:&#092;PROGRA~1&#092;AVG&#092;AVG9&#092;avgtray.exe<br />
O4 - HKCU&#092;..&#092;Run: [ctfmon.exe] C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
O4 - HKCU&#092;..&#092;Run: [uTorrent] "C:&#092;Program Files&#092;uTorrent&#092;uTorrent.exe"<br />
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:&#092;PROGRA~1&#092;MICROS~2&#092;Office12&#092;EXCEL.EXE/3000<br />
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:&#092;WINDOWS&#092;System32&#092;shdocvw.dll<br />
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:&#092;WINDOWS&#092;System32&#092;shdocvw.dll<br />
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;PROGRA~1&#092;MICROS~2&#092;Office12&#092;ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;PROGRA~1&#092;MICROS~2&#092;Office12&#092;ONBttnIE.dll<br />
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:&#092;Program Files&#092;PokerStars&#092;PokerStarsUpdate.exe<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:&#092;PROGRA~1&#092;MICROS~2&#092;Office12&#092;REFIEBAR.DLL<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;WINDOWS&#092;System32&#092;shdocvw.dll<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;WINDOWS&#092;System32&#092;shdocvw.dll<br />
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Battleship%20-%20Fleet%20Command/Images/stg_drm.ocx<br />
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - <a href='http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1179760495516' class='bbc_url' title='External link' rel='nofollow'>http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1179760495516</a><br />
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Wedding%20Dash%202/Images/armhelper.ocx<br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - <a href='http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab' class='bbc_url' title='External link' rel='nofollow'>http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab</a><br />
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:&#092;PROGRA~1&#092;MICROS~2&#092;Office12&#092;GR99D3~1.DLL<br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgpp.dll<br />
O20 - AppInit_DLLs: C:&#092;WINDOWS&#092;system32&#092;pdfcmnntr.dll<br />
O20 - Winlogon Notify: avgrsstarter - C:&#092;WINDOWS&#092;SYSTEM32&#092;avgrsstx.dll<br />
O23 - Service: Ati HotKey Poller - Unknown owner - C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgwdsvc.exe<br />
O23 - Service: iPod Service - Apple Inc. - C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
O23 - Service: IS360service - IObit - C:&#092;Program Files&#092;IObit&#092;IObit Security 360&#092;IS360srv.exe<br />
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:&#092;WINDOWS&#092;system32&#092;pctspk.exe<br />
O23 - Service: System kernel integrity service (Scprtn) - SearchHelp, Inc. - C:&#092;WINDOWS&#092;system32&#092;tftpu.exe<br />
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:&#092;Program Files&#092;Viewpoint&#092;Common&#092;ViewpointService.exe<br />
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:&#092;WINDOWS&#092;system32&#092;ZoneLabs&#092;vsmon.exe<br />
<br />
--<br />
End of file - 6119 bytes<br />
<br />
Malwarebytes' Anti-Malware 1.44<br />
Database version: 3744<br />
Windows 5.1.2600 Service Pack 3<br />
Internet Explorer 7.0.5730.13<br />
<br />
2/19/2010 12:26:04 PM<br />
mbam-log-2010-02-19 (12-26-04).txt<br />
<br />
Scan type: Full Scan (C:&#092;|D:&#092;|E:&#092;|)<br />
Objects scanned: 208095<br />
Time elapsed: 1 hour(s), 52 minute(s), 48 second(s)<br />
<br />
Memory Processes Infected: 0<br />
Memory Modules Infected: 0<br />
Registry Keys Infected: 0<br />
Registry Values Infected: 0<br />
Registry Data Items Infected: 0<br />
Folders Infected: 0<br />
Files Infected: 0<br />
<br />
Memory Processes Infected:<br />
(No malicious items detected)<br />
<br />
Memory Modules Infected:<br />
(No malicious items detected)<br />
<br />
Registry Keys Infected:<br />
(No malicious items detected)<br />
<br />
Registry Values Infected:<br />
(No malicious items detected)<br />
<br />
Registry Data Items Infected:<br />
(No malicious items detected)<br />
<br />
Folders Infected:<br />
(No malicious items detected)<br />
<br />
Files Infected:<br />
(No malicious items detected)<br />
GMER 1.0.15.15281 - <a href='http://www.gmer.net' class='bbc_url' title='External link' rel='nofollow'>http://www.gmer.net</a><br />
Rootkit quick scan 2010-02-15 23:18:07<br />
Windows 5.1.2600 Service Pack 3<br />
Running: gmer.exe; Driver: C:&#092;DOCUME~1&#092;Allie&#092;LOCALS~1&#092;Temp&#092;kwdiyfob.sys<br />
<br />
<br />
---- Devices - GMER 1.0.15 ----<br />
<br />
AttachedDevice  &#092;FileSystem&#092;Ntfs &#092;Ntfs       MPRIFL.SYS (My Private Folder driver/FSPro Labs)<br />
AttachedDevice  &#092;FileSystem&#092;Fastfat &#092;Fat     MPRIFL.SYS (My Private Folder driver/FSPro Labs)<br />
AttachedDevice  &#092;FileSystem&#092;Fastfat &#092;Fat     fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)<br />
<br />
Device          &#092;Driver&#092;Tcpip &#092;Device&#092;Ip     vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)<br />
Device          &#092;Driver&#092;Tcpip &#092;Device&#092;Tcp    vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)<br />
Device          &#092;Driver&#092;Tcpip &#092;Device&#092;Udp    vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)<br />
Device          &#092;Driver&#092;Tcpip &#092;Device&#092;RawIp  vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)<br />
<br />
---- EOF - GMER 1.0.15 ----]]></description>
		<pubDate>Sat, 20 Feb 2010 04:34:38 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6390-redirect-issue/</guid>
	</item>
	<item>
		<title>Is There Another Way To Monitor Ram?</title>
		<link>http://www.247fixes.com/forums/topic/6381-is-there-another-way-to-monitor-ram/</link>
		<description><![CDATA[I have 1GB of RAM. I have noticed once that my memory is incredibly low and when looked at <em class='bbc'>Task Manager's</em> memory monitor i saw that all applications that were running were taking less than 200MB. The question is - what else ate the rest of RAM. You see, the problem with <em class='bbc'>Task Manager's</em> memory monitor is that it only shows applications' memory, but doesn't show all of the other stuff that takes memory. Is there a way to see what other stuff eats memory besides applications?]]></description>
		<pubDate>Thu, 18 Feb 2010 19:57:39 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6381-is-there-another-way-to-monitor-ram/</guid>
	</item>
	<item>
		<title><![CDATA[[Inactive]&nbsp;Browser Highjacked]]></title>
		<link>http://www.247fixes.com/forums/topic/6373-browser-highjacked/</link>
		<description><![CDATA[Hello<br />
<br />
I am running ie8 and seem to have picked up a malware or other virus.<br />
<br />
problem is pages get highjacked to random other sites.<br />
<br />
Have adaware and spybot but still persists <br />
<br />
Highjack thhis logas follows:<br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 8:40:46 PM, on 18/02/2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;WINDOWS&#092;System32&#092;smss.exe<br />
C:&#092;WINDOWS&#092;system32&#092;winlogon.exe<br />
C:&#092;WINDOWS&#092;system32&#092;services.exe<br />
C:&#092;WINDOWS&#092;system32&#092;lsass.exe<br />
C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgchsvx.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgrsx.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgcsrvx.exe<br />
C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;EvtEng.exe<br />
C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;S24EvMon.exe<br />
C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;WLKeeper.exe<br />
C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;ZcfgSvc.exe<br />
C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;WINDOWS&#092;Explorer.EXE<br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgwdsvc.exe<br />
C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
C:&#092;Program Files&#092;Dell&#092;Bluetooth Software&#092;bin&#092;btwdins.exe<br />
C:&#092;PROGRA~1&#092;Intel&#092;Wireless&#092;Bin&#092;1XConfig.exe<br />
C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;VS7Debug&#092;mdm.exe<br />
C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;RegSrvc.exe<br />
C:&#092;Program Files&#092;CyberLink&#092;Shared files&#092;RichVideo.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgnsx.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
C:&#092;WINDOWS&#092;system32&#092;rundll32.exe<br />
C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;ifrmewrk.exe<br />
C:&#092;Program Files&#092;ATI Technologies&#092;ATI Control Panel&#092;atiptaxx.exe<br />
C:&#092;Program Files&#092;Synaptics&#092;SynTP&#092;SynTPEnh.exe<br />
C:&#092;PROGRA~1&#092;AVG&#092;AVG9&#092;avgtray.exe<br />
C:&#092;Program Files&#092;Messenger&#092;msmsgs.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
C:&#092;Program Files&#092;Spybot - Search & Destroy&#092;TeaTimer.exe<br />
C:&#092;Program Files&#092;Lavasoft&#092;Ad-Aware&#092;AAWService.exe<br />
C:&#092;Program Files&#092;Lavasoft&#092;Ad-Aware&#092;AAWTray.exe<br />
C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program Files&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program Files&#092;Trend Micro&#092;HijackThis&#092;HijackThis.exe<br />
<br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='External link' rel='nofollow'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R3 - URLSearchHook: Zynga Toolbar - {7b13ec3e-999a-4b70-b9cb-2617b8323822} - C:&#092;Program Files&#092;Zynga&#092;tbZyng.dll<br />
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:&#092;Program Files&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelper.dll<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgssie.dll<br />
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:&#092;Program Files&#092;Spybot - Search & Destroy&#092;SDHelper.dll<br />
O2 - BHO: Zynga Toolbar - {7b13ec3e-999a-4b70-b9cb-2617b8323822} - C:&#092;Program Files&#092;Zynga&#092;tbZyng.dll<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:&#092;Program Files&#092;Java&#092;jre6&#092;lib&#092;deploy&#092;jqs&#092;ie&#092;jqs_plugin.dll<br />
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)<br />
O3 - Toolbar: Zynga Toolbar - {7b13ec3e-999a-4b70-b9cb-2617b8323822} - C:&#092;Program Files&#092;Zynga&#092;tbZyng.dll<br />
O4 - HKLM&#092;..&#092;Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent<br />
O4 - HKLM&#092;..&#092;Run: [IntelZeroConfig] C:&#092;Program Files&#092;Intel&#092;Wireless&#092;bin&#092;ZCfgSvc.exe<br />
O4 - HKLM&#092;..&#092;Run: [IntelWireless] C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;ifrmewrk.exe /tf Intel PROSet/Wireless<br />
O4 - HKLM&#092;..&#092;Run: [ATIPTA] "C:&#092;Program Files&#092;ATI Technologies&#092;ATI Control Panel&#092;atiptaxx.exe"<br />
O4 - HKLM&#092;..&#092;Run: [SynTPEnh] C:&#092;Program Files&#092;Synaptics&#092;SynTP&#092;SynTPEnh.exe<br />
O4 - HKLM&#092;..&#092;Run: [AVG9_TRAY] C:&#092;PROGRA~1&#092;AVG&#092;AVG9&#092;avgtray.exe<br />
O4 - HKLM&#092;..&#092;Run: [SunJavaUpdateSched] "C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jusched.exe"<br />
O4 - HKLM&#092;..&#092;Run: [UpdateP2GoShortCut] "C:&#092;Program Files&#092;CyberLink&#092;Power2Go&#092;MUITransfer&#092;MUIStartMenu.exe" "C:&#092;Program Files&#092;CyberLink&#092;Power2Go" UpdateWithCreateOnce "SOFTWARE&#092;CyberLink&#092;Power2Go&#092;6.0"<br />
O4 - HKLM&#092;..&#092;Run: [UpdatePSTShortCut] "C:&#092;Program Files&#092;CyberLink&#092;DVD Suite&#092;MUITransfer&#092;MUIStartMenu.exe" "C:&#092;Program Files&#092;CyberLink&#092;DVD Suite" UpdateWithCreateOnce "Software&#092;CyberLink&#092;PowerStarter"<br />
O4 - HKLM&#092;..&#092;Run: [QuickTime Task] "C:&#092;Program Files&#092;QuickTime&#092;qttask.exe" -atboottime<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingA100] command.com /c del "C:&#092;WINDOWS&#092;msa.exe"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingC3685] cmd.exe /c del "C:&#092;WINDOWS&#092;msa.exe"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingA9617] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;updater&#092;wcmdmgrl.exe"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingC6627] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;updater&#092;wcmdmgrl.exe"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingA7681] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;webdriver.dll"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingC6885] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;webdriver.dll"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingA2529] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;info.txt"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingC8172] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;info.txt"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingA1284] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;data.wts"<br />
O4 - HKLM&#092;..&#092;RunOnce: [SpybotDeletingC2041] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;data.wts"<br />
O4 - HKCU&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
O4 - HKCU&#092;..&#092;Run: [MSMSGS] "C:&#092;Program Files&#092;Messenger&#092;msmsgs.exe" /background<br />
O4 - HKCU&#092;..&#092;Run: [uTorrent] "C:&#092;Program Files&#092;uTorrent&#092;uTorrent.exe"<br />
O4 - HKCU&#092;..&#092;Run: [TOY5KNQ8OC] C:&#092;DOCUME~1&#092;Rob&#092;LOCALS~1&#092;Temp&#092;Nsx.exe<br />
O4 - HKCU&#092;..&#092;Run: [SpybotSD TeaTimer] C:&#092;Program Files&#092;Spybot - Search & Destroy&#092;TeaTimer.exe<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingB8521] command.com /c del "C:&#092;WINDOWS&#092;msa.exe"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingD2717] cmd.exe /c del "C:&#092;WINDOWS&#092;msa.exe"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingB5107] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;updater&#092;wcmdmgrl.exe"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingD2432] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;updater&#092;wcmdmgrl.exe"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingB2421] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;webdriver.dll"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingD743] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;webdriver.dll"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingB7048] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;info.txt"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingD4062] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;info.txt"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingB4881] command.com /c del "C:&#092;WINDOWS&#092;wt&#092;data.wts"<br />
O4 - HKCU&#092;..&#092;RunOnce: [SpybotDeletingD1499] cmd.exe /c del "C:&#092;WINDOWS&#092;wt&#092;data.wts"<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'LOCAL SERVICE')<br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'NETWORK SERVICE')<br />
O4 - HKUS&#092;S-1-5-18&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS&#092;.DEFAULT&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;CTFMON.EXE (User 'Default user')<br />
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:&#092;PROGRA~1&#092;MICROS~2&#092;Office10&#092;EXCEL.EXE/3000<br />
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:&#092;Program Files&#092;Spybot - Search & Destroy&#092;SDHelper.dll<br />
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:&#092;Program Files&#092;Spybot - Search & Destroy&#092;SDHelper.dll<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;Program Files&#092;Messenger&#092;msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;Program Files&#092;Messenger&#092;msmsgs.exe<br />
O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} (ContactExtractor Class) - <a href='http://www.facebook.com/controls/contactx.dll' class='bbc_url' title='External link' rel='nofollow'>http://www.facebook.com/controls/contactx.dll</a><br />
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - <a href='http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab' class='bbc_url' title='External link' rel='nofollow'>http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab</a><br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgpp.dll<br />
O20 - Winlogon Notify: avgrsstarter - C:&#092;WINDOWS&#092;SYSTEM32&#092;avgrsstx.dll<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:&#092;Program Files&#092;AVG&#092;AVG9&#092;avgwdsvc.exe<br />
O23 - Service: Bonjour Service - Apple Inc. - C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:&#092;Program Files&#092;Dell&#092;Bluetooth Software&#092;bin&#092;btwdins.exe<br />
O23 - Service: EvtEng - Intel Corporation - C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;EvtEng.exe<br />
O23 - Service: iPod Service - Apple Inc. - C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:&#092;Program Files&#092;Lavasoft&#092;Ad-Aware&#092;AAWService.exe<br />
O23 - Service: RegSrvc - Intel Corporation - C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;RegSrvc.exe<br />
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:&#092;Program Files&#092;CyberLink&#092;Shared files&#092;RichVideo.exe<br />
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation  - C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;S24EvMon.exe<br />
O23 - Service: ServiceLayer - Nokia - C:&#092;Program Files&#092;PC Connectivity Solution&#092;ServiceLayer.exe<br />
O23 - Service: WLANKEEPER - Intel® Corporation - C:&#092;Program Files&#092;Intel&#092;Wireless&#092;Bin&#092;WLKeeper.exe<br />
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Rob/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg<br />
<br />
--<br />
End of file - 10060 bytes<br />
<br />
<br />
thanks<br />
<br />
assistance would be great!]]></description>
		<pubDate>Thu, 18 Feb 2010 10:57:25 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6373-browser-highjacked/</guid>
	</item>
	<item>
		<title>Me On Tv</title>
		<link>http://www.247fixes.com/forums/topic/6370-me-on-tv/</link>
		<description><![CDATA[yeah i am a student here and a member of the forum<br />
here i am on TV<br />
i am the fat guy as a witness for the defendant<br />
<br />
<a href='http://www.youtube.com/watch?v=oAuP0o-Qgsc' class='bbc_url' title='External link' rel='nofollow'>http://www.youtube.com/watch?v=oAuP0o-Qgsc</a>]]></description>
		<pubDate>Wed, 17 Feb 2010 18:54:43 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6370-me-on-tv/</guid>
	</item>
	<item>
		<title>.net Framework 1.1 Service Pack</title>
		<link>http://www.247fixes.com/forums/topic/6365-net-framework-1-1-service-pack/</link>
		<description><![CDATA[hi,<br />
i'm having trouble installing a specific microsoft update.Microsoft .NET Framework 1.1 Service Pack 1 Security Update for Windows 2000, Windows XP, Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 (KB953297). i have tried all the fixes i can find but no luck in solving the problem. has anyone had the same problem and does anyone know of a fix? thanks in advance.]]></description>
		<pubDate>Wed, 17 Feb 2010 11:30:49 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6365-net-framework-1-1-service-pack/</guid>
	</item>
	<item>
		<title><![CDATA[[Inactive]&nbsp;Hard Drive Slow]]></title>
		<link>http://www.247fixes.com/forums/topic/6353-hard-drive-slow/</link>
		<description><![CDATA[Hard drive is running all the time in XP. ran hijack this and OTL for evaluation.Please help. allso ran virus and spyware before logs. showing no problems.thanks<div id='attach_wrap' class='rounded clearfix'>
	<h4></h4>
	<ul>
		
			<li class='clear'>
				<a href="http://www.247fixes.com/forums/index.php?app=core&module=attach&section=attach&attach_id=915&s=230a9f569db5a766a53a1ff3bb7101b7" title=""><img src="http://www.247fixes.com/forums/public/style_extra/mime_types/txt.gif" alt="" /></a>
&nbsp;<a href="http://www.247fixes.com/forums/index.php?app=core&module=attach&section=attach&attach_id=915&s=230a9f569db5a766a53a1ff3bb7101b7" title="">hijackthis report.txt</a> <span class='desc'><strong>(18.86K)</strong></span>
<br /><span class="desc info">: 1</span>
			</li>
		

			<li class='clear'>
				<a href="http://www.247fixes.com/forums/index.php?app=core&module=attach&section=attach&attach_id=916&s=230a9f569db5a766a53a1ff3bb7101b7" title=""><img src="http://www.247fixes.com/forums/public/style_extra/mime_types/txt.gif" alt="" /></a>
&nbsp;<a href="http://www.247fixes.com/forums/index.php?app=core&module=attach&section=attach&attach_id=916&s=230a9f569db5a766a53a1ff3bb7101b7" title="">OTL.Txt</a> <span class='desc'><strong>(106.81K)</strong></span>
<br /><span class="desc info">: 1</span>
			</li>
		
	</ul>
</div>]]></description>
		<pubDate>Mon, 15 Feb 2010 21:18:38 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6353-hard-drive-slow/</guid>
	</item>
	<item>
		<title>Setting Up Wireless Internet Connection</title>
		<link>http://www.247fixes.com/forums/topic/6352-setting-up-wireless-internet-connection/</link>
		<description><![CDATA[What is the best way to boost a router signal so that I may receive internet on another computer on my property. I currently have linksys wireless g broadband and also have a patch attenae bought off ebay it is 9dbi but don't know how to connect or what to connect to ect..thanks for help.<br />
my house is about 50 feet away from shop with cable internet service.]]></description>
		<pubDate>Mon, 15 Feb 2010 16:46:58 +0000</pubDate>
		<guid>http://www.247fixes.com/forums/topic/6352-setting-up-wireless-internet-connection/</guid>
	</item>
</channel>
</rss>