ajplumbing
2010-07-16, 10:33
Any help you can give me will be greatly appreciated. Here are the logs:
DDS (Ver_10-03-17.01) - NTFSx86
Run by Janice at 2:21:08.56 on Fri 07/16/2010
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_19
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.511.134 [GMT -5:00]
============== Running Processes ===============
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CSHelper.exe
C:\Program Files\iWin Games\iWinTrusted.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\SoftActivity\SKL\alsvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\MPK\MPK.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe
C:\Program Files\Qwest Personal Digital Vault\QwestPersonalDigitalVault.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\SRS Labs\SRS iWOW for PC\SRS_iWOW_PC.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Gamesbar\SearchEngineProtection.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Hewlett-Packard\AiO\hp psc 900 series\Bin\hpobrt07.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\WINDOWS\system32\hpoipm07.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Janice\My Documents\Downloads\dds.scr
============== Pseudo HJT Report ===============
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = <local>;*.local
uInternet Settings,ProxyServer = http=127.0.0.1:5555
mWinlogon: Userinit=c:\windows\system32\userinit.exe,c:\windows\system32\mpk\MPK.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: IEHlprObj Class: {8ca5ed52-f3fb-4414-a105-2e3491156990} - c:\program files\iwin games\iWinGamesHookIE.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: GamesBarBHO Class: {cb0d163c-e9f4-4236-9496-0597e24b23a5} - c:\program files\gamesbar\2.0.1.53\oberontb.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: GamesBar: {6f282b65-56bf-4bd1-a8b2-a4449a05863d} - c:\program files\gamesbar\2.0.1.53\oberontb.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [DW6] "c:\program files\the weather channel fw\desktop\DesktopWeather.exe"
uRun: [Google Update] "c:\documents and settings\janice\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [SRS iWOW] "c:\program files\srs labs\srs iwow for pc\SRS_iWOW_PC.exe" /hideme
uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [BitComet] "c:\program files\bitcomet\BitComet.exe" /tray
uRun: [SearchEngineProtection] c:\program files\gamesbar\SearchEngineProtection.exe
mRun: [CTHelper] CTHELPER.EXE
mRun: [ATIPTA] c:\program files\ati technologies\ati control panel\atiptaxx.exe
mRun: [PRONoMgrWired] c:\program files\intel\prosetwired\ncs\proset\PRONoMgr.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [Adobe Acrobat Speed Launcher] "c:\program files\adobe\acrobat 9.0\acrobat\Acrobat_sl.exe"
mRun: [<NO NAME>]
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 9.0\acrobat\Acrotray.exe"
mRun: [Qwest Personal Digital Vault] "c:\program files\qwest personal digital vault\QwestPersonalDigitalVault.exe" /m
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
dRunOnce: [SetDefaultMidi] MIDIDEF.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\eventr~1.lnk - c:\program files\the print shop 23\Remind.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\forget~1.lnk - c:\program files\broderbund\ag creatacard\agremind.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpaiod~1.lnk - c:\program files\hewlett-packard\aio\hp psc 900 series\bin\hpobrt07.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\OSA9.EXE
IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {1A93C934-025B-4c3a-B38E-9654A7003239} - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - c:\program files\gamesbar\2.0.1.53\oberontb.dll
IE: {7F9DB11C-E358-4ca6-A83D-ACC663939424} - {9999A076-A9E2-4C99-8A2B-632FC9429223} - c:\program files\bonjour\ExplorerPlugin.dll
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1264563696578
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1264570521593
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - hxxp://clubgames.pogo.com/online2/pogop/zuma/popcaploader_v5.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Authentication Packages = msv1_0 nwprovau
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\janice\applic~1\mozilla\firefox\profiles\q1hpmr41.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - Web Search
FF - prefs.js: browser.startup.homepage - hxxp://go.microsoft.com/fwlink/?LinkId=69157
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - plugin: c:\documents and settings\all users\application data\realarcade\npraclient.dll
FF - plugin: c:\documents and settings\all users\application data\zylom\zylomgamesplayer\npzylomgamesplayer.dll
FF - plugin: c:\documents and settings\janice\application data\mozilla\firefox\profiles\q1hpmr41.default\extensions\logmeinclient@logmein.com\plugins\npRACtrl.dll
FF - plugin: c:\documents and settings\janice\local settings\application data\google\update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\documents and settings\janice\local settings\application data\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\program files\google\update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\k-lite codec pack\real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\k-lite codec pack\real\browser\plugins\nprpjplug.dll
FF - plugin: c:\program files\mozilla firefox\extensions\npmozax31@real.com\plugins\npmozax.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npArtistScope42.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npArtistScopeDRM11.dll
FF - plugin: c:\program files\mozilla firefox\plugins\nppopcaploader.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npraclient.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npzylomgamesplayer.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
============= SERVICES / DRIVERS ===============
R2 CSHelper;CopySafe Helper Service;c:\windows\system32\CSHelper.exe [2010-7-6 266240]
R2 iWinTrusted;iWinTrusted;c:\program files\iwin games\iWinTrusted.exe [2010-7-7 176408]
R2 Salsvc;Salsvc;c:\program files\softactivity\skl\alsvc.exe [2010-6-22 38840]
R3 SRS_iWowPC_Service;SRS Labs iWow PC;c:\windows\system32\drivers\SRS_iWowPC_i386.sys [2010-2-19 37888]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-2-4 135664]
S3 Droppix Service;Droppix Service;c:\program files\common files\droppix\DxService.exe [2010-2-20 135168]
S3 SAgentDriver;SAgent Driver;c:\program files\softactivity\skl\sagendrv.sys [2010-6-22 31160]
=============== Created Last 30 ================
2010-08-03 21:56:48 0 d-----w- C:\hplanet
2010-07-30 23:08:55 0 d-----w- c:\docume~1\alluse~1\applic~1\Playrix Entertainment
2010-07-15 21:21:50 0 d-----w- c:\docume~1\alluse~1\applic~1\MumboJumbo
2010-07-14 05:21:30 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-07-14 05:16:32 0 d-----w- c:\windows\system32\wbem\Repository
2010-07-13 06:42:21 0 d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-07-13 06:42:02 0 d-----w- c:\program files\Microsoft
2010-07-13 06:41:45 0 d-----w- c:\program files\Windows Live SkyDrive
2010-07-12 18:07:44 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2010-07-12 17:51:13 0 d-----w- c:\program files\common files\Windows Live
2010-07-12 03:54:56 0 d-----w- c:\program files\Mahjongg Dimensions Deluxe
2010-07-12 03:50:38 0 d-----w- c:\program files\bfgclient
2010-07-12 03:49:53 0 d-----w- c:\docume~1\alluse~1\applic~1\BigFishGamesCache
2010-07-12 00:30:31 587 ----a-w- c:\windows\system32\runkgb.lnk
2010-07-12 00:30:27 0 d-sh--w- c:\windows\system32\MPK
2010-07-12 00:30:27 0 d-sh--w- c:\docume~1\alluse~1\applic~1\MPK
2010-07-11 23:04:17 0 d-----w- c:\docume~1\janice\applic~1\Pogo Games
2010-07-11 23:02:41 65032 ----a-w- c:\windows\system32\XAPOFX1_0.dll
2010-07-11 23:02:41 507400 ----a-w- c:\windows\system32\XAudio2_1.dll
2010-07-11 23:02:39 25608 ----a-w- c:\windows\system32\X3DAudio1_4.dll
2010-07-11 23:02:39 238088 ----a-w- c:\windows\system32\xactengine3_1.dll
2010-07-11 23:02:38 467984 ----a-w- c:\windows\system32\d3dx10_38.dll
2010-07-11 23:02:38 1491992 ----a-w- c:\windows\system32\D3DCompiler_38.dll
2010-07-11 23:02:34 3850760 ----a-w- c:\windows\system32\D3DX9_38.dll
2010-07-11 23:02:18 0 d-----w- c:\windows\Logs
2010-07-11 00:03:39 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-07-09 06:04:22 0 d-----w- c:\docume~1\janice\applic~1\Oberonv1000
2010-07-08 02:45:59 3734536 ----a-w- c:\windows\system32\d3dx9_36.dll
2010-07-08 02:45:56 0 d-----w- c:\program files\SoundSpectrum
2010-07-08 02:33:22 0 d-----w- c:\program files\Morphyre
2010-07-07 07:20:46 0 d-----w- c:\docume~1\janice\applic~1\Oberon Media
2010-07-07 07:20:42 0 d-----w- c:\docume~1\alluse~1\applic~1\GamesBar
2010-07-07 07:20:39 0 d-----w- c:\program files\GamesBar
2010-07-07 07:20:39 0 d-----w- c:\program files\common files\Oberon Media
2010-07-07 00:14:42 266240 ----a-w- c:\windows\system32\CSHelper.exe
2010-07-07 00:14:42 225280 ----a-w- c:\windows\system32\CSInstru.DLL
2010-07-04 15:49:05 0 d-----w- c:\program files\BitComet
2010-06-29 08:00:30 0 d-----w- c:\program files\MSXML 4.0
2010-06-29 04:28:23 64512 ----a-w- c:\windows\system32\PTPITCP.dll
2010-06-29 04:15:02 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2010-06-29 04:15:02 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-06-29 01:52:16 0 d-----w- c:\program files\common files\eSellerate
2010-06-29 01:52:01 0 d-----w- c:\program files\Hog Heaven Buddy Pogo
2010-06-29 01:30:11 0 d-----w- c:\program files\BadgeHelp
2010-06-27 02:50:56 0 d-----w- c:\docume~1\alluse~1\applic~1\n7-89-o9-3r-4t-r9
2010-06-27 02:50:49 0 d-----w- c:\docume~1\janice\applic~1\GameHouse
2010-06-27 02:50:48 0 d-----w- c:\program files\GameHouse
2010-06-22 23:21:10 0 d-----w- c:\docume~1\alluse~1\applic~1\SKL
2010-06-22 23:20:35 0 ----a-w- c:\windows\aclg.dat
2010-06-22 23:20:34 0 d-----w- c:\program files\SoftActivity
2010-06-22 23:20:34 0 d-----w- c:\docume~1\alluse~1\applic~1\Lgr
2010-06-22 23:20:34 0 d-----w- c:\docume~1\alluse~1\applic~1\AL
2010-06-22 20:31:55 0 d-----w- c:\docume~1\janice\applic~1\MSNInstaller
2010-06-20 03:05:19 8704 ----a-w- c:\windows\system32\SpOrder.dll
2010-06-20 03:05:13 68 ----a-w- c:\windows\MyProg.ini
2010-06-20 03:05:11 0 d-----w- c:\program files\Invisible Browsing
==================== Find3M ====================
2010-05-29 06:48:39 4096 ----a-w- c:\windows\d3dx.dat
2010-05-06 10:41:53 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 05:22:50 1851264 ----a-w- c:\windows\system32\win32k.sys
2010-04-20 05:30:08 285696 ----a-w- c:\windows\system32\atmfd.dll
============= FINISH: 2:21:39.96 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-03-17.01)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 1/26/2010 8:30:01 PM
System Uptime: 7/15/2010 8:57:14 PM (6 hours ago)
Motherboard: Intel Corporation | | D915GAG
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | J2E1 | 2800/200mhz
==== Disk Partitions =========================
A: is Removable
C: is FIXED (NTFS) - 149 GiB total, 101.834 GiB free.
D: is CDROM ()
F: is Removable
G: is Removable
H: is Removable
I: is Removable
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP163: 5/28/2010 10:10:40 PM - System Checkpoint
RP164: 5/29/2010 1:40:06 AM - Revo Uninstaller's restore point - Kaspersky Internet Security 2010
RP165: 5/29/2010 1:41:57 AM - Removed Kaspersky Internet Security 2010.
RP166: 5/30/2010 2:51:28 AM - System Checkpoint
RP167: 5/31/2010 4:48:43 AM - System Checkpoint
RP168: 6/1/2010 2:00:42 PM - System Checkpoint
RP169: 6/2/2010 3:31:46 PM - System Checkpoint
RP170: 6/3/2010 4:32:51 PM - System Checkpoint
RP171: 6/4/2010 4:37:25 PM - System Checkpoint
RP172: 6/5/2010 5:21:03 PM - System Checkpoint
RP173: 6/6/2010 8:24:37 PM - System Checkpoint
RP174: 6/6/2010 11:01:16 PM - Installed Bonjour
RP175: 6/7/2010 12:23:59 AM - Revo Uninstaller's restore point - Bonjour
RP176: 6/7/2010 12:24:14 AM - Configured Bonjour
RP177: 6/7/2010 12:26:39 AM - Revo Uninstaller's restore point - Deadtime Stories
RP178: 6/7/2010 12:27:33 AM - Revo Uninstaller's restore point - Haunted Hotel
RP179: 6/7/2010 12:28:31 AM - Revo Uninstaller's restore point - Jewel Quest Mysteries 2
RP180: 6/7/2010 12:29:39 AM - Revo Uninstaller's restore point - Mystery PI - The London Caper
RP181: 6/7/2010 12:30:40 AM - Revo Uninstaller's restore point - Mishap An Accidental Haunting
RP182: 6/7/2010 4:58:11 AM - Restore Operation
RP183: 6/8/2010 5:06:54 AM - System Checkpoint
RP184: 6/9/2010 5:54:45 AM - System Checkpoint
RP185: 6/10/2010 6:54:30 AM - System Checkpoint
RP186: 6/11/2010 3:00:19 AM - Software Distribution Service 3.0
RP187: 6/12/2010 4:41:39 AM - System Checkpoint
RP188: 6/13/2010 5:38:40 AM - System Checkpoint
RP189: 6/13/2010 9:34:08 AM - Revo Uninstaller's restore point - Bonjour
RP190: 6/13/2010 10:20:23 AM - Restore Operation
RP191: 6/14/2010 11:59:24 AM - System Checkpoint
RP192: 6/15/2010 2:23:24 PM - System Checkpoint
RP193: 6/16/2010 2:26:32 PM - System Checkpoint
RP194: 6/17/2010 2:59:49 PM - System Checkpoint
RP195: 6/18/2010 4:24:55 PM - System Checkpoint
RP196: 6/19/2010 4:53:58 PM - System Checkpoint
RP197: 6/20/2010 9:53:50 AM - Revo Uninstaller's restore point - Haunted Hotel
RP198: 6/20/2010 9:55:19 AM - Revo Uninstaller's restore point - Mystery PI - The London Caper
RP199: 6/20/2010 9:56:27 AM - Revo Uninstaller's restore point - Jewel Quest Mysteries 2
RP200: 6/21/2010 9:59:49 AM - System Checkpoint
RP201: 6/22/2010 1:33:47 PM - System Checkpoint
RP202: 6/23/2010 5:28:56 PM - System Checkpoint
RP203: 6/24/2010 3:00:19 AM - Software Distribution Service 3.0
RP204: 6/25/2010 3:32:21 AM - System Checkpoint
RP205: 6/26/2010 3:00:19 AM - Software Distribution Service 3.0
RP206: 6/27/2010 3:30:17 AM - System Checkpoint
RP207: 6/28/2010 3:32:25 AM - System Checkpoint
RP208: 6/28/2010 11:20:14 PM - Revo Uninstaller's restore point - Kodak EasyShare software
RP209: 6/28/2010 11:28:08 PM - Installed ESSPDock
RP210: 6/28/2010 11:34:08 PM - Installed Bonjour
RP211: 6/29/2010 3:00:20 AM - Software Distribution Service 3.0
RP212: 6/30/2010 6:16:11 AM - System Checkpoint
RP213: 7/1/2010 6:41:02 AM - System Checkpoint
RP214: 7/2/2010 6:58:30 AM - System Checkpoint
RP215: 7/3/2010 7:10:28 AM - System Checkpoint
RP216: 7/4/2010 7:58:31 AM - System Checkpoint
RP217: 7/5/2010 3:29:07 AM - Revo Uninstaller's restore point - Kodak EasyShare software
RP218: 7/6/2010 5:33:29 AM - System Checkpoint
RP219: 7/7/2010 6:25:26 AM - System Checkpoint
RP220: 7/8/2010 8:13:28 AM - System Checkpoint
RP221: 7/9/2010 8:55:48 AM - System Checkpoint
RP222: 7/10/2010 9:09:28 AM - System Checkpoint
RP223: 7/11/2010 3:00:43 AM - Software Distribution Service 3.0
RP224: 7/11/2010 10:45:50 PM - Revo Uninstaller's restore point - Mahjongg dimensions
RP225: 7/12/2010 1:07:06 PM - Installed Windows XP KB954708.
RP226: 7/12/2010 1:07:41 PM - Installed DirectX
RP227: 7/13/2010 1:17:35 AM - Revo Uninstaller's restore point - Windows Live Essentials
RP228: 7/13/2010 1:20:58 AM - Revo Uninstaller's restore point - Windows Live Essentials
RP229: 7/13/2010 1:23:38 AM - Revo Uninstaller's restore point - Windows Live Upload Tool
RP230: 7/13/2010 1:24:50 AM - Revo Uninstaller's restore point - Windows Live Sign-in Assistant
RP231: 7/13/2010 1:26:37 AM - Revo Uninstaller's restore point - Windows Live Sync
RP232: 7/13/2010 1:26:44 AM - Removed Windows Live Sync
RP233: 7/13/2010 1:42:29 AM - Installed DirectX
RP234: 7/14/2010 2:26:25 AM - System Checkpoint
RP235: 7/15/2010 3:07:01 AM - System Checkpoint
RP236: 7/16/2010 3:50:38 AM - System Checkpoint
RP237: 7/17/2010 3:53:43 AM - System Checkpoint
RP238: 7/18/2010 6:37:19 AM - System Checkpoint
RP239: 7/19/2010 8:15:21 PM - System Checkpoint
RP240: 7/20/2010 8:52:29 PM - System Checkpoint
RP241: 7/21/2010 9:35:29 PM - System Checkpoint
RP242: 7/22/2010 10:34:11 PM - System Checkpoint
RP243: 7/23/2010 10:41:35 PM - System Checkpoint
RP244: 7/24/2010 3:00:20 AM - Software Distribution Service 3.0
RP245: 7/25/2010 3:43:06 AM - System Checkpoint
RP246: 7/26/2010 3:43:32 AM - System Checkpoint
RP247: 7/27/2010 4:21:43 AM - System Checkpoint
RP248: 7/28/2010 6:54:58 AM - System Checkpoint
RP249: 7/29/2010 7:43:40 AM - System Checkpoint
RP250: 7/30/2010 9:29:55 AM - System Checkpoint
RP251: 7/31/2010 9:59:41 AM - System Checkpoint
RP252: 8/1/2010 10:26:49 AM - System Checkpoint
RP253: 8/2/2010 10:54:58 AM - System Checkpoint
RP254: 8/3/2010 11:30:51 AM - System Checkpoint
RP255: 7/4/2010 8:08:42 PM - System Checkpoint
RP256: 7/5/2010 10:41:47 PM - System Checkpoint
RP257: 7/6/2010 10:42:31 PM - System Checkpoint
RP258: 7/7/2010 11:21:21 PM - System Checkpoint
RP259: 7/9/2010 2:04:42 AM - System Checkpoint
RP260: 7/10/2010 7:07:35 AM - System Checkpoint
RP261: 7/11/2010 2:42:28 PM - System Checkpoint
RP262: 7/11/2010 6:02:33 PM - Installed DirectX
RP263: 7/12/2010 8:18:25 PM - System Checkpoint
RP264: 7/13/2010 8:37:41 PM - System Checkpoint
RP265: 7/14/2010 12:01:27 AM - Revo Uninstaller's restore point - Jewel Quest Online Party (remove only)
RP266: 7/14/2010 12:15:08 AM - Restore Operation
RP267: 7/14/2010 3:00:25 AM - Software Distribution Service 3.0
RP268: 7/14/2010 11:51:07 PM - Revo Uninstaller's restore point - iWin Games (remove only)
RP269: 7/14/2010 11:57:38 PM - Revo Uninstaller's restore point - Jewel Quest II (remove only)
RP270: 7/14/2010 11:59:13 PM - Revo Uninstaller's restore point - Jewel Quest Online Party (remove only)
RP271: 7/15/2010 8:59:24 PM - Revo Uninstaller's restore point - BitComet 1.21
==== Installed Programs ======================
AC3Filter 1.63b
AcroChallenge 2.86
Actiontec Gateway
Adobe Acrobat 9 Pro Extended - English, Français, Deutsch
Adobe Flash Player 10 Plugin
Adobe Reader 9.3
Adobe Shockwave Player 11.5
American Greetings CreataCard
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArtistScope Plugin FX
ATI - Software Uninstall Utility
ATI Control Panel
ATI Display Driver
Big Fish Games: Game Manager
Bonjour
ConvertXtoDVD 3.3.4.106e
Creative Driver
Droppix Label Maker 2.9.1
Escape Whisper Valley
Family Feud 2
FamilyFeudOnlineParty (remove only)
FileASSASSIN
Fishdom 2 Premium Edition
G-Force
GamesBar 2.0.1.53
Google Chrome
Google Update Helper
Hog Heaven Buddy - Pogo Version 1.3
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB954708)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
hp psc 900 series
Intel(R) PRO Network Adapters and Drivers
Intel(R) PROSet for Wired Connections
iTunes
iWin Games (remove only)
Java Auto Updater
Java(TM) 6 Update 19
Jewel Quest Online Party (remove only)
Junk Mail filter update
K-Lite Mega Codec Pack 4.1.6
LightScribe System Software
LightScribe Template Labeler
Mahjongg Dimensions Deluxe
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Office 2000 Professional
Microsoft Search Enhancement Pack
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Web Publishing Wizard 1.52
Midnight Mysteries Salem Witch Trial
Mishap An Accidental Haunting
Morphyre
Motamo 5.1
Mozilla Firefox (3.6.6)
MSN
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Office 2003 Setup Files
PC Inspector File Recovery
PopCap Browser Plugin
PowerISO
QuantZ
QuickTime
Qwest Personal Digital Vault™
RealArcade
Revo Uninstaller 1.85
Rhapsody
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Segoe UI
Shockwave
Soft Data Fax Modem with SmartCP
SpywareBlaster 4.2
SRS iWOW for PC
Super Collapse! 3
The Hidden Object Show Season 2
The Print Shop 23
Uninstall FamilySearch Indexing
Unity Web Player
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB978506)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update for Windows XP (KB978207)
Way To Go! Bowling
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Toolbar
Windows Live Upload Tool
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
Wordscape Online Party (remove only)
Zenerchi
Zylom Games Player Plugin
==== Event Viewer Messages From Past Week ========
7/28/2010 8:50:02 PM, error: W32Time [34] - The time service has detected that the system time needs to be changed by -2592071 seconds. The time service will not change the system time by more than -54000 seconds. Verify that your time and time zone are correct, and that the time source time.windows.com (ntp.m|0x1|192.168.0.4:123->207.46.232.182:123) is working properly.
7/21/2010 8:50:07 PM, error: W32Time [34] - The time service has detected that the system time needs to be changed by -2592121 seconds. The time service will not change the system time by more than -54000 seconds. Verify that your time and time zone are correct, and that the time source time.windows.com (ntp.m|0x1|192.168.0.4:123->207.46.232.182:123) is working properly.
7/19/2010 10:31:52 AM, error: Service Control Manager [7000] - The PfModNT service failed to start due to the following error: The system cannot find the file specified.
7/19/2010 10:31:52 AM, error: Service Control Manager [7000] - The MCSTRM service failed to start due to the following error: The system cannot find the file specified.
7/14/2010 8:50:16 PM, error: W32Time [34] - The time service has detected that the system time needs to be changed by -2592064 seconds. The time service will not change the system time by more than -54000 seconds. Verify that your time and time zone are correct, and that the time source time.windows.com (ntp.m|0x1|192.168.0.4:123->207.46.197.32:123) is working properly.
==== End Of File ===========================
DDS (Ver_10-03-17.01) - NTFSx86
Run by Janice at 2:21:08.56 on Fri 07/16/2010
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_19
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.511.134 [GMT -5:00]
============== Running Processes ===============
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CSHelper.exe
C:\Program Files\iWin Games\iWinTrusted.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\SoftActivity\SKL\alsvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\MPK\MPK.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe
C:\Program Files\Qwest Personal Digital Vault\QwestPersonalDigitalVault.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\SRS Labs\SRS iWOW for PC\SRS_iWOW_PC.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Gamesbar\SearchEngineProtection.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Hewlett-Packard\AiO\hp psc 900 series\Bin\hpobrt07.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\WINDOWS\system32\hpoipm07.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Janice\My Documents\Downloads\dds.scr
============== Pseudo HJT Report ===============
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = <local>;*.local
uInternet Settings,ProxyServer = http=127.0.0.1:5555
mWinlogon: Userinit=c:\windows\system32\userinit.exe,c:\windows\system32\mpk\MPK.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: IEHlprObj Class: {8ca5ed52-f3fb-4414-a105-2e3491156990} - c:\program files\iwin games\iWinGamesHookIE.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: GamesBarBHO Class: {cb0d163c-e9f4-4236-9496-0597e24b23a5} - c:\program files\gamesbar\2.0.1.53\oberontb.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: GamesBar: {6f282b65-56bf-4bd1-a8b2-a4449a05863d} - c:\program files\gamesbar\2.0.1.53\oberontb.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [DW6] "c:\program files\the weather channel fw\desktop\DesktopWeather.exe"
uRun: [Google Update] "c:\documents and settings\janice\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [SRS iWOW] "c:\program files\srs labs\srs iwow for pc\SRS_iWOW_PC.exe" /hideme
uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [BitComet] "c:\program files\bitcomet\BitComet.exe" /tray
uRun: [SearchEngineProtection] c:\program files\gamesbar\SearchEngineProtection.exe
mRun: [CTHelper] CTHELPER.EXE
mRun: [ATIPTA] c:\program files\ati technologies\ati control panel\atiptaxx.exe
mRun: [PRONoMgrWired] c:\program files\intel\prosetwired\ncs\proset\PRONoMgr.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [Adobe Acrobat Speed Launcher] "c:\program files\adobe\acrobat 9.0\acrobat\Acrobat_sl.exe"
mRun: [<NO NAME>]
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 9.0\acrobat\Acrotray.exe"
mRun: [Qwest Personal Digital Vault] "c:\program files\qwest personal digital vault\QwestPersonalDigitalVault.exe" /m
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
dRunOnce: [SetDefaultMidi] MIDIDEF.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\eventr~1.lnk - c:\program files\the print shop 23\Remind.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\forget~1.lnk - c:\program files\broderbund\ag creatacard\agremind.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpaiod~1.lnk - c:\program files\hewlett-packard\aio\hp psc 900 series\bin\hpobrt07.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\OSA9.EXE
IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {1A93C934-025B-4c3a-B38E-9654A7003239} - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - c:\program files\gamesbar\2.0.1.53\oberontb.dll
IE: {7F9DB11C-E358-4ca6-A83D-ACC663939424} - {9999A076-A9E2-4C99-8A2B-632FC9429223} - c:\program files\bonjour\ExplorerPlugin.dll
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1264563696578
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1264570521593
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_19-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - hxxp://clubgames.pogo.com/online2/pogop/zuma/popcaploader_v5.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Authentication Packages = msv1_0 nwprovau
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\janice\applic~1\mozilla\firefox\profiles\q1hpmr41.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - Web Search
FF - prefs.js: browser.startup.homepage - hxxp://go.microsoft.com/fwlink/?LinkId=69157
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - plugin: c:\documents and settings\all users\application data\realarcade\npraclient.dll
FF - plugin: c:\documents and settings\all users\application data\zylom\zylomgamesplayer\npzylomgamesplayer.dll
FF - plugin: c:\documents and settings\janice\application data\mozilla\firefox\profiles\q1hpmr41.default\extensions\logmeinclient@logmein.com\plugins\npRACtrl.dll
FF - plugin: c:\documents and settings\janice\local settings\application data\google\update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\documents and settings\janice\local settings\application data\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\program files\google\update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\k-lite codec pack\real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\k-lite codec pack\real\browser\plugins\nprpjplug.dll
FF - plugin: c:\program files\mozilla firefox\extensions\npmozax31@real.com\plugins\npmozax.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npArtistScope42.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npArtistScopeDRM11.dll
FF - plugin: c:\program files\mozilla firefox\plugins\nppopcaploader.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npraclient.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npzylomgamesplayer.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
============= SERVICES / DRIVERS ===============
R2 CSHelper;CopySafe Helper Service;c:\windows\system32\CSHelper.exe [2010-7-6 266240]
R2 iWinTrusted;iWinTrusted;c:\program files\iwin games\iWinTrusted.exe [2010-7-7 176408]
R2 Salsvc;Salsvc;c:\program files\softactivity\skl\alsvc.exe [2010-6-22 38840]
R3 SRS_iWowPC_Service;SRS Labs iWow PC;c:\windows\system32\drivers\SRS_iWowPC_i386.sys [2010-2-19 37888]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-2-4 135664]
S3 Droppix Service;Droppix Service;c:\program files\common files\droppix\DxService.exe [2010-2-20 135168]
S3 SAgentDriver;SAgent Driver;c:\program files\softactivity\skl\sagendrv.sys [2010-6-22 31160]
=============== Created Last 30 ================
2010-08-03 21:56:48 0 d-----w- C:\hplanet
2010-07-30 23:08:55 0 d-----w- c:\docume~1\alluse~1\applic~1\Playrix Entertainment
2010-07-15 21:21:50 0 d-----w- c:\docume~1\alluse~1\applic~1\MumboJumbo
2010-07-14 05:21:30 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-07-14 05:16:32 0 d-----w- c:\windows\system32\wbem\Repository
2010-07-13 06:42:21 0 d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-07-13 06:42:02 0 d-----w- c:\program files\Microsoft
2010-07-13 06:41:45 0 d-----w- c:\program files\Windows Live SkyDrive
2010-07-12 18:07:44 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2010-07-12 17:51:13 0 d-----w- c:\program files\common files\Windows Live
2010-07-12 03:54:56 0 d-----w- c:\program files\Mahjongg Dimensions Deluxe
2010-07-12 03:50:38 0 d-----w- c:\program files\bfgclient
2010-07-12 03:49:53 0 d-----w- c:\docume~1\alluse~1\applic~1\BigFishGamesCache
2010-07-12 00:30:31 587 ----a-w- c:\windows\system32\runkgb.lnk
2010-07-12 00:30:27 0 d-sh--w- c:\windows\system32\MPK
2010-07-12 00:30:27 0 d-sh--w- c:\docume~1\alluse~1\applic~1\MPK
2010-07-11 23:04:17 0 d-----w- c:\docume~1\janice\applic~1\Pogo Games
2010-07-11 23:02:41 65032 ----a-w- c:\windows\system32\XAPOFX1_0.dll
2010-07-11 23:02:41 507400 ----a-w- c:\windows\system32\XAudio2_1.dll
2010-07-11 23:02:39 25608 ----a-w- c:\windows\system32\X3DAudio1_4.dll
2010-07-11 23:02:39 238088 ----a-w- c:\windows\system32\xactengine3_1.dll
2010-07-11 23:02:38 467984 ----a-w- c:\windows\system32\d3dx10_38.dll
2010-07-11 23:02:38 1491992 ----a-w- c:\windows\system32\D3DCompiler_38.dll
2010-07-11 23:02:34 3850760 ----a-w- c:\windows\system32\D3DX9_38.dll
2010-07-11 23:02:18 0 d-----w- c:\windows\Logs
2010-07-11 00:03:39 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-07-09 06:04:22 0 d-----w- c:\docume~1\janice\applic~1\Oberonv1000
2010-07-08 02:45:59 3734536 ----a-w- c:\windows\system32\d3dx9_36.dll
2010-07-08 02:45:56 0 d-----w- c:\program files\SoundSpectrum
2010-07-08 02:33:22 0 d-----w- c:\program files\Morphyre
2010-07-07 07:20:46 0 d-----w- c:\docume~1\janice\applic~1\Oberon Media
2010-07-07 07:20:42 0 d-----w- c:\docume~1\alluse~1\applic~1\GamesBar
2010-07-07 07:20:39 0 d-----w- c:\program files\GamesBar
2010-07-07 07:20:39 0 d-----w- c:\program files\common files\Oberon Media
2010-07-07 00:14:42 266240 ----a-w- c:\windows\system32\CSHelper.exe
2010-07-07 00:14:42 225280 ----a-w- c:\windows\system32\CSInstru.DLL
2010-07-04 15:49:05 0 d-----w- c:\program files\BitComet
2010-06-29 08:00:30 0 d-----w- c:\program files\MSXML 4.0
2010-06-29 04:28:23 64512 ----a-w- c:\windows\system32\PTPITCP.dll
2010-06-29 04:15:02 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2010-06-29 04:15:02 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-06-29 01:52:16 0 d-----w- c:\program files\common files\eSellerate
2010-06-29 01:52:01 0 d-----w- c:\program files\Hog Heaven Buddy Pogo
2010-06-29 01:30:11 0 d-----w- c:\program files\BadgeHelp
2010-06-27 02:50:56 0 d-----w- c:\docume~1\alluse~1\applic~1\n7-89-o9-3r-4t-r9
2010-06-27 02:50:49 0 d-----w- c:\docume~1\janice\applic~1\GameHouse
2010-06-27 02:50:48 0 d-----w- c:\program files\GameHouse
2010-06-22 23:21:10 0 d-----w- c:\docume~1\alluse~1\applic~1\SKL
2010-06-22 23:20:35 0 ----a-w- c:\windows\aclg.dat
2010-06-22 23:20:34 0 d-----w- c:\program files\SoftActivity
2010-06-22 23:20:34 0 d-----w- c:\docume~1\alluse~1\applic~1\Lgr
2010-06-22 23:20:34 0 d-----w- c:\docume~1\alluse~1\applic~1\AL
2010-06-22 20:31:55 0 d-----w- c:\docume~1\janice\applic~1\MSNInstaller
2010-06-20 03:05:19 8704 ----a-w- c:\windows\system32\SpOrder.dll
2010-06-20 03:05:13 68 ----a-w- c:\windows\MyProg.ini
2010-06-20 03:05:11 0 d-----w- c:\program files\Invisible Browsing
==================== Find3M ====================
2010-05-29 06:48:39 4096 ----a-w- c:\windows\d3dx.dat
2010-05-06 10:41:53 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 05:22:50 1851264 ----a-w- c:\windows\system32\win32k.sys
2010-04-20 05:30:08 285696 ----a-w- c:\windows\system32\atmfd.dll
============= FINISH: 2:21:39.96 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-03-17.01)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 1/26/2010 8:30:01 PM
System Uptime: 7/15/2010 8:57:14 PM (6 hours ago)
Motherboard: Intel Corporation | | D915GAG
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | J2E1 | 2800/200mhz
==== Disk Partitions =========================
A: is Removable
C: is FIXED (NTFS) - 149 GiB total, 101.834 GiB free.
D: is CDROM ()
F: is Removable
G: is Removable
H: is Removable
I: is Removable
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP163: 5/28/2010 10:10:40 PM - System Checkpoint
RP164: 5/29/2010 1:40:06 AM - Revo Uninstaller's restore point - Kaspersky Internet Security 2010
RP165: 5/29/2010 1:41:57 AM - Removed Kaspersky Internet Security 2010.
RP166: 5/30/2010 2:51:28 AM - System Checkpoint
RP167: 5/31/2010 4:48:43 AM - System Checkpoint
RP168: 6/1/2010 2:00:42 PM - System Checkpoint
RP169: 6/2/2010 3:31:46 PM - System Checkpoint
RP170: 6/3/2010 4:32:51 PM - System Checkpoint
RP171: 6/4/2010 4:37:25 PM - System Checkpoint
RP172: 6/5/2010 5:21:03 PM - System Checkpoint
RP173: 6/6/2010 8:24:37 PM - System Checkpoint
RP174: 6/6/2010 11:01:16 PM - Installed Bonjour
RP175: 6/7/2010 12:23:59 AM - Revo Uninstaller's restore point - Bonjour
RP176: 6/7/2010 12:24:14 AM - Configured Bonjour
RP177: 6/7/2010 12:26:39 AM - Revo Uninstaller's restore point - Deadtime Stories
RP178: 6/7/2010 12:27:33 AM - Revo Uninstaller's restore point - Haunted Hotel
RP179: 6/7/2010 12:28:31 AM - Revo Uninstaller's restore point - Jewel Quest Mysteries 2
RP180: 6/7/2010 12:29:39 AM - Revo Uninstaller's restore point - Mystery PI - The London Caper
RP181: 6/7/2010 12:30:40 AM - Revo Uninstaller's restore point - Mishap An Accidental Haunting
RP182: 6/7/2010 4:58:11 AM - Restore Operation
RP183: 6/8/2010 5:06:54 AM - System Checkpoint
RP184: 6/9/2010 5:54:45 AM - System Checkpoint
RP185: 6/10/2010 6:54:30 AM - System Checkpoint
RP186: 6/11/2010 3:00:19 AM - Software Distribution Service 3.0
RP187: 6/12/2010 4:41:39 AM - System Checkpoint
RP188: 6/13/2010 5:38:40 AM - System Checkpoint
RP189: 6/13/2010 9:34:08 AM - Revo Uninstaller's restore point - Bonjour
RP190: 6/13/2010 10:20:23 AM - Restore Operation
RP191: 6/14/2010 11:59:24 AM - System Checkpoint
RP192: 6/15/2010 2:23:24 PM - System Checkpoint
RP193: 6/16/2010 2:26:32 PM - System Checkpoint
RP194: 6/17/2010 2:59:49 PM - System Checkpoint
RP195: 6/18/2010 4:24:55 PM - System Checkpoint
RP196: 6/19/2010 4:53:58 PM - System Checkpoint
RP197: 6/20/2010 9:53:50 AM - Revo Uninstaller's restore point - Haunted Hotel
RP198: 6/20/2010 9:55:19 AM - Revo Uninstaller's restore point - Mystery PI - The London Caper
RP199: 6/20/2010 9:56:27 AM - Revo Uninstaller's restore point - Jewel Quest Mysteries 2
RP200: 6/21/2010 9:59:49 AM - System Checkpoint
RP201: 6/22/2010 1:33:47 PM - System Checkpoint
RP202: 6/23/2010 5:28:56 PM - System Checkpoint
RP203: 6/24/2010 3:00:19 AM - Software Distribution Service 3.0
RP204: 6/25/2010 3:32:21 AM - System Checkpoint
RP205: 6/26/2010 3:00:19 AM - Software Distribution Service 3.0
RP206: 6/27/2010 3:30:17 AM - System Checkpoint
RP207: 6/28/2010 3:32:25 AM - System Checkpoint
RP208: 6/28/2010 11:20:14 PM - Revo Uninstaller's restore point - Kodak EasyShare software
RP209: 6/28/2010 11:28:08 PM - Installed ESSPDock
RP210: 6/28/2010 11:34:08 PM - Installed Bonjour
RP211: 6/29/2010 3:00:20 AM - Software Distribution Service 3.0
RP212: 6/30/2010 6:16:11 AM - System Checkpoint
RP213: 7/1/2010 6:41:02 AM - System Checkpoint
RP214: 7/2/2010 6:58:30 AM - System Checkpoint
RP215: 7/3/2010 7:10:28 AM - System Checkpoint
RP216: 7/4/2010 7:58:31 AM - System Checkpoint
RP217: 7/5/2010 3:29:07 AM - Revo Uninstaller's restore point - Kodak EasyShare software
RP218: 7/6/2010 5:33:29 AM - System Checkpoint
RP219: 7/7/2010 6:25:26 AM - System Checkpoint
RP220: 7/8/2010 8:13:28 AM - System Checkpoint
RP221: 7/9/2010 8:55:48 AM - System Checkpoint
RP222: 7/10/2010 9:09:28 AM - System Checkpoint
RP223: 7/11/2010 3:00:43 AM - Software Distribution Service 3.0
RP224: 7/11/2010 10:45:50 PM - Revo Uninstaller's restore point - Mahjongg dimensions
RP225: 7/12/2010 1:07:06 PM - Installed Windows XP KB954708.
RP226: 7/12/2010 1:07:41 PM - Installed DirectX
RP227: 7/13/2010 1:17:35 AM - Revo Uninstaller's restore point - Windows Live Essentials
RP228: 7/13/2010 1:20:58 AM - Revo Uninstaller's restore point - Windows Live Essentials
RP229: 7/13/2010 1:23:38 AM - Revo Uninstaller's restore point - Windows Live Upload Tool
RP230: 7/13/2010 1:24:50 AM - Revo Uninstaller's restore point - Windows Live Sign-in Assistant
RP231: 7/13/2010 1:26:37 AM - Revo Uninstaller's restore point - Windows Live Sync
RP232: 7/13/2010 1:26:44 AM - Removed Windows Live Sync
RP233: 7/13/2010 1:42:29 AM - Installed DirectX
RP234: 7/14/2010 2:26:25 AM - System Checkpoint
RP235: 7/15/2010 3:07:01 AM - System Checkpoint
RP236: 7/16/2010 3:50:38 AM - System Checkpoint
RP237: 7/17/2010 3:53:43 AM - System Checkpoint
RP238: 7/18/2010 6:37:19 AM - System Checkpoint
RP239: 7/19/2010 8:15:21 PM - System Checkpoint
RP240: 7/20/2010 8:52:29 PM - System Checkpoint
RP241: 7/21/2010 9:35:29 PM - System Checkpoint
RP242: 7/22/2010 10:34:11 PM - System Checkpoint
RP243: 7/23/2010 10:41:35 PM - System Checkpoint
RP244: 7/24/2010 3:00:20 AM - Software Distribution Service 3.0
RP245: 7/25/2010 3:43:06 AM - System Checkpoint
RP246: 7/26/2010 3:43:32 AM - System Checkpoint
RP247: 7/27/2010 4:21:43 AM - System Checkpoint
RP248: 7/28/2010 6:54:58 AM - System Checkpoint
RP249: 7/29/2010 7:43:40 AM - System Checkpoint
RP250: 7/30/2010 9:29:55 AM - System Checkpoint
RP251: 7/31/2010 9:59:41 AM - System Checkpoint
RP252: 8/1/2010 10:26:49 AM - System Checkpoint
RP253: 8/2/2010 10:54:58 AM - System Checkpoint
RP254: 8/3/2010 11:30:51 AM - System Checkpoint
RP255: 7/4/2010 8:08:42 PM - System Checkpoint
RP256: 7/5/2010 10:41:47 PM - System Checkpoint
RP257: 7/6/2010 10:42:31 PM - System Checkpoint
RP258: 7/7/2010 11:21:21 PM - System Checkpoint
RP259: 7/9/2010 2:04:42 AM - System Checkpoint
RP260: 7/10/2010 7:07:35 AM - System Checkpoint
RP261: 7/11/2010 2:42:28 PM - System Checkpoint
RP262: 7/11/2010 6:02:33 PM - Installed DirectX
RP263: 7/12/2010 8:18:25 PM - System Checkpoint
RP264: 7/13/2010 8:37:41 PM - System Checkpoint
RP265: 7/14/2010 12:01:27 AM - Revo Uninstaller's restore point - Jewel Quest Online Party (remove only)
RP266: 7/14/2010 12:15:08 AM - Restore Operation
RP267: 7/14/2010 3:00:25 AM - Software Distribution Service 3.0
RP268: 7/14/2010 11:51:07 PM - Revo Uninstaller's restore point - iWin Games (remove only)
RP269: 7/14/2010 11:57:38 PM - Revo Uninstaller's restore point - Jewel Quest II (remove only)
RP270: 7/14/2010 11:59:13 PM - Revo Uninstaller's restore point - Jewel Quest Online Party (remove only)
RP271: 7/15/2010 8:59:24 PM - Revo Uninstaller's restore point - BitComet 1.21
==== Installed Programs ======================
AC3Filter 1.63b
AcroChallenge 2.86
Actiontec Gateway
Adobe Acrobat 9 Pro Extended - English, Français, Deutsch
Adobe Flash Player 10 Plugin
Adobe Reader 9.3
Adobe Shockwave Player 11.5
American Greetings CreataCard
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArtistScope Plugin FX
ATI - Software Uninstall Utility
ATI Control Panel
ATI Display Driver
Big Fish Games: Game Manager
Bonjour
ConvertXtoDVD 3.3.4.106e
Creative Driver
Droppix Label Maker 2.9.1
Escape Whisper Valley
Family Feud 2
FamilyFeudOnlineParty (remove only)
FileASSASSIN
Fishdom 2 Premium Edition
G-Force
GamesBar 2.0.1.53
Google Chrome
Google Update Helper
Hog Heaven Buddy - Pogo Version 1.3
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB954708)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
hp psc 900 series
Intel(R) PRO Network Adapters and Drivers
Intel(R) PROSet for Wired Connections
iTunes
iWin Games (remove only)
Java Auto Updater
Java(TM) 6 Update 19
Jewel Quest Online Party (remove only)
Junk Mail filter update
K-Lite Mega Codec Pack 4.1.6
LightScribe System Software
LightScribe Template Labeler
Mahjongg Dimensions Deluxe
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Office 2000 Professional
Microsoft Search Enhancement Pack
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Web Publishing Wizard 1.52
Midnight Mysteries Salem Witch Trial
Mishap An Accidental Haunting
Morphyre
Motamo 5.1
Mozilla Firefox (3.6.6)
MSN
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Office 2003 Setup Files
PC Inspector File Recovery
PopCap Browser Plugin
PowerISO
QuantZ
QuickTime
Qwest Personal Digital Vault™
RealArcade
Revo Uninstaller 1.85
Rhapsody
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Segoe UI
Shockwave
Soft Data Fax Modem with SmartCP
SpywareBlaster 4.2
SRS iWOW for PC
Super Collapse! 3
The Hidden Object Show Season 2
The Print Shop 23
Uninstall FamilySearch Indexing
Unity Web Player
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB978506)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update for Windows XP (KB978207)
Way To Go! Bowling
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Toolbar
Windows Live Upload Tool
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
Wordscape Online Party (remove only)
Zenerchi
Zylom Games Player Plugin
==== Event Viewer Messages From Past Week ========
7/28/2010 8:50:02 PM, error: W32Time [34] - The time service has detected that the system time needs to be changed by -2592071 seconds. The time service will not change the system time by more than -54000 seconds. Verify that your time and time zone are correct, and that the time source time.windows.com (ntp.m|0x1|192.168.0.4:123->207.46.232.182:123) is working properly.
7/21/2010 8:50:07 PM, error: W32Time [34] - The time service has detected that the system time needs to be changed by -2592121 seconds. The time service will not change the system time by more than -54000 seconds. Verify that your time and time zone are correct, and that the time source time.windows.com (ntp.m|0x1|192.168.0.4:123->207.46.232.182:123) is working properly.
7/19/2010 10:31:52 AM, error: Service Control Manager [7000] - The PfModNT service failed to start due to the following error: The system cannot find the file specified.
7/19/2010 10:31:52 AM, error: Service Control Manager [7000] - The MCSTRM service failed to start due to the following error: The system cannot find the file specified.
7/14/2010 8:50:16 PM, error: W32Time [34] - The time service has detected that the system time needs to be changed by -2592064 seconds. The time service will not change the system time by more than -54000 seconds. Verify that your time and time zone are correct, and that the time source time.windows.com (ntp.m|0x1|192.168.0.4:123->207.46.197.32:123) is working properly.
==== End Of File ===========================