Kaspersky Online Scanner report:
--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7.0 REPORT
Thursday, July 30, 2009
Operating System: Microsoft Windows XP Home Edition Service Pack 2 (build 2600)
Kaspersky Online Scanner version: 7.0.26.13
Program database last update: Friday, July 31, 2009 01:41:54
Records in database: 2565099
--------------------------------------------------------------------------------
Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes
Scan area - My Computer:
C:\
D:\
E:\
Scan statistics:
Files scanned: 66148
Threat name: 0
Infected objects: 0
Suspicious objects: 0
Duration of the scan: 01:44:07
No malware has been detected. The scan area is clean.
The selected area was scanned.
Combofix log after the CFscript thing :
ComboFix 09-07-29.04 - Jaquelin 07/30/2009 16:42.2.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.510.186 [GMT -4:00]
Running from: c:\documents and settings\Jaquelin\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Jaquelin\Desktop\CFScript.txt
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\DNA
c:\program files\DNA\plugins\npbtdna.dll
.
((((((((((((((((((((((((( Files Created from 2009-06-28 to 2009-07-30 )))))))))))))))))))))))))))))))
.
2009-07-28 18:10 . 2009-07-28 18:10 -------- d-----w- c:\program files\iPod
2009-07-28 18:10 . 2009-07-28 18:11 -------- d-----w- c:\program files\iTunes
2009-07-28 18:10 . 2009-07-28 18:11 -------- d-----w- c:\documents and settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-07-28 18:08 . 2009-07-28 18:08 -------- d-----w- c:\program files\Bonjour
2009-07-28 18:07 . 2009-07-28 18:08 -------- d-----w- c:\program files\QuickTime
2009-07-28 18:05 . 2009-07-28 18:11 -------- dc----w- c:\windows\system32\DRVSTORE
2009-07-28 18:05 . 2009-07-28 18:05 -------- d-----w- c:\program files\Common Files\Apple
2009-07-28 17:59 . 2009-07-28 17:59 75040 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 8.2.1.6\SetupAdmin.exe
2009-07-28 14:33 . 2009-07-28 14:33 -------- d--h--w- c:\windows\PIF
2009-07-26 14:11 . 2009-07-26 14:11 -------- d-----w- c:\program files\Trend Micro
2009-07-24 18:21 . 2009-06-27 18:35 1008896 ----a-w- c:\documents and settings\All Users\Application Data\AVG Security Toolbar\IEToolbar.dll
2009-07-24 18:01 . 2009-07-27 21:16 -------- d--h--w- C:\$AVG8.VAULT$
2009-07-23 19:51 . 2009-07-23 19:51 -------- d-----w- c:\documents and settings\Jaquelin\Local Settings\Application Data\AVG Security Toolbar
2009-07-23 19:46 . 2009-07-23 19:46 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-07-23 19:46 . 2009-07-23 19:46 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-07-23 19:46 . 2009-07-30 20:21 -------- d-----w- c:\windows\system32\drivers\Avg
2009-07-23 19:46 . 2009-07-24 18:21 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG Security Toolbar
2009-07-23 19:46 . 2009-07-23 19:46 335752 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-07-23 19:45 . 2009-07-23 19:45 -------- d-----w- c:\program files\AVG
2009-07-23 19:45 . 2009-07-25 23:20 -------- d-----w- c:\documents and settings\All Users\Application Data\avg8
2009-07-23 19:34 . 2009-07-23 19:34 -------- d-----w- c:\documents and settings\Jaquelin\Application Data\AVG8
2009-07-23 08:13 . 2009-07-29 03:26 117760 ----a-w- c:\documents and settings\Jaquelin\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-30 04:23 . 2009-02-15 02:22 -------- d-----w- c:\program files\Steam
2009-07-29 07:12 . 2008-02-09 17:54 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLec.DAT
2009-07-29 07:12 . 2008-02-09 17:48 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLds.DAT
2009-07-29 03:27 . 2007-06-19 00:15 -------- d-----w- c:\program files\SUPERAntiSpyware
2009-07-26 05:04 . 2006-09-12 13:38 29916 ----a-w- c:\documents and settings\Jaquelin\Application Data\wklnhst.dat
2009-07-23 19:46 . 2007-07-13 22:56 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-07-09 18:52 . 2005-07-30 00:31 -------- d-----w- c:\program files\Common Files\AOL
2009-07-09 18:52 . 2005-07-30 00:31 -------- d-----w- c:\documents and settings\All Users\Application Data\AOL
2009-07-06 16:49 . 2008-10-25 21:55 -------- d-----w- c:\program files\CCleaner
2009-06-26 16:18 . 2004-08-04 10:00 659456 ----a-w- c:\windows\system32\wininet.dll
2009-06-26 16:18 . 2004-08-04 10:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2009-06-16 14:55 . 2004-08-04 10:00 82432 ----a-w- c:\windows\system32\fontsub.dll
2009-06-16 14:55 . 2004-08-04 10:00 119808 ----a-w- c:\windows\system32\t2embed.dll
2009-06-03 19:27 . 2004-08-04 10:00 1290752 ----a-w- c:\windows\system32\quartz.dll
2009-06-01 02:42 . 2009-02-15 01:30 52240 ---ha-w- c:\windows\system32\mlfcache.dat
2009-05-07 15:44 . 2004-08-04 10:00 344064 ----a-w- c:\windows\system32\localspl.dll
2009-07-27 18:35 . 2009-02-09 01:35 134648 ----a-w- c:\program files\mozilla firefox\components\brwsrcmp.dll
.
((((((((((((((((((((((((((((( SnapShot@2009-07-29_16.27.23 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-09-19 22:16 . 2009-05-26 11:40 17272 c:\windows\SYSTEM32\spmsg.dll
- 2007-09-19 22:16 . 2008-07-08 13:02 17272 c:\windows\SYSTEM32\spmsg.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 39424 c:\windows\SYSTEM32\pngfilt.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 39424 c:\windows\SYSTEM32\pngfilt.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 16384 c:\windows\SYSTEM32\jsproxy.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 16384 c:\windows\SYSTEM32\jsproxy.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 96256 c:\windows\SYSTEM32\inseng.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 96256 c:\windows\SYSTEM32\inseng.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 55808 c:\windows\SYSTEM32\extmgr.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 55808 c:\windows\SYSTEM32\extmgr.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 39424 c:\windows\SYSTEM32\DLLCACHE\pngfilt.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 39424 c:\windows\SYSTEM32\DLLCACHE\pngfilt.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 16384 c:\windows\SYSTEM32\DLLCACHE\jsproxy.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 16384 c:\windows\SYSTEM32\DLLCACHE\jsproxy.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 96256 c:\windows\SYSTEM32\DLLCACHE\inseng.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 96256 c:\windows\SYSTEM32\DLLCACHE\inseng.dll
- 2009-02-20 08:30 . 2009-04-29 04:52 81920 c:\windows\SYSTEM32\DLLCACHE\ieencode.dll
+ 2009-02-20 08:30 . 2009-06-26 16:18 81920 c:\windows\SYSTEM32\DLLCACHE\ieencode.dll
- 2006-06-23 08:35 . 2009-04-27 09:17 18432 c:\windows\SYSTEM32\DLLCACHE\iedw.exe
+ 2006-06-23 08:35 . 2009-06-22 11:38 18432 c:\windows\SYSTEM32\DLLCACHE\iedw.exe
- 2006-06-23 11:02 . 2009-04-29 04:52 55808 c:\windows\SYSTEM32\DLLCACHE\extmgr.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 55808 c:\windows\SYSTEM32\DLLCACHE\extmgr.dll
+ 2005-05-17 00:25 . 2009-06-22 11:26 352768 c:\windows\SYSTEM32\xpsp3res.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 616448 c:\windows\SYSTEM32\urlmon.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 616448 c:\windows\SYSTEM32\urlmon.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 474112 c:\windows\SYSTEM32\shlwapi.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 474112 c:\windows\SYSTEM32\shlwapi.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 532480 c:\windows\SYSTEM32\mstime.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 532480 c:\windows\SYSTEM32\mstime.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 146432 c:\windows\SYSTEM32\msrating.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 146432 c:\windows\SYSTEM32\msrating.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 449024 c:\windows\SYSTEM32\mshtmled.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 449024 c:\windows\SYSTEM32\mshtmled.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 251392 c:\windows\SYSTEM32\iepeers.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 251392 c:\windows\SYSTEM32\iepeers.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 205312 c:\windows\SYSTEM32\dxtrans.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 205312 c:\windows\SYSTEM32\dxtrans.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 357888 c:\windows\SYSTEM32\dxtmsft.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 357888 c:\windows\SYSTEM32\dxtmsft.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 659456 c:\windows\SYSTEM32\DLLCACHE\wininet.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 659456 c:\windows\SYSTEM32\DLLCACHE\wininet.dll
- 2006-07-25 20:33 . 2009-04-29 04:52 616448 c:\windows\SYSTEM32\DLLCACHE\urlmon.dll
+ 2006-07-25 20:33 . 2009-06-26 16:18 616448 c:\windows\SYSTEM32\DLLCACHE\urlmon.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 474112 c:\windows\SYSTEM32\DLLCACHE\shlwapi.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 474112 c:\windows\SYSTEM32\DLLCACHE\shlwapi.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 532480 c:\windows\SYSTEM32\DLLCACHE\mstime.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 532480 c:\windows\SYSTEM32\DLLCACHE\mstime.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 146432 c:\windows\SYSTEM32\DLLCACHE\msrating.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 146432 c:\windows\SYSTEM32\DLLCACHE\msrating.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 449024 c:\windows\SYSTEM32\DLLCACHE\mshtmled.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 449024 c:\windows\SYSTEM32\DLLCACHE\mshtmled.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 251392 c:\windows\SYSTEM32\DLLCACHE\iepeers.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 251392 c:\windows\SYSTEM32\DLLCACHE\iepeers.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 205312 c:\windows\SYSTEM32\DLLCACHE\dxtrans.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 205312 c:\windows\SYSTEM32\DLLCACHE\dxtrans.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 357888 c:\windows\SYSTEM32\DLLCACHE\dxtmsft.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 357888 c:\windows\SYSTEM32\DLLCACHE\dxtmsft.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 151040 c:\windows\SYSTEM32\DLLCACHE\cdfview.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 151040 c:\windows\SYSTEM32\DLLCACHE\cdfview.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 151040 c:\windows\SYSTEM32\cdfview.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 151040 c:\windows\SYSTEM32\cdfview.dll
+ 2004-08-04 10:00 . 2009-07-18 16:20 1506304 c:\windows\SYSTEM32\shdocvw.dll
+ 2004-08-04 10:00 . 2009-07-18 16:20 3062272 c:\windows\SYSTEM32\mshtml.dll
+ 2006-06-23 11:02 . 2009-07-18 16:20 1506304 c:\windows\SYSTEM32\DLLCACHE\shdocvw.dll
+ 2006-07-28 11:28 . 2009-07-18 16:20 3062272 c:\windows\SYSTEM32\DLLCACHE\mshtml.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 1054208 c:\windows\SYSTEM32\DLLCACHE\danim.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 1054208 c:\windows\SYSTEM32\DLLCACHE\danim.dll
- 2006-06-23 11:02 . 2009-04-29 04:52 1023488 c:\windows\SYSTEM32\DLLCACHE\browseui.dll
+ 2006-06-23 11:02 . 2009-06-26 16:18 1023488 c:\windows\SYSTEM32\DLLCACHE\browseui.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 1054208 c:\windows\SYSTEM32\danim.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 1054208 c:\windows\SYSTEM32\danim.dll
- 2004-08-04 10:00 . 2009-04-29 04:52 1023488 c:\windows\SYSTEM32\browseui.dll
+ 2004-08-04 10:00 . 2009-06-26 16:18 1023488 c:\windows\SYSTEM32\browseui.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{A3BC75A2-1F87-4686-AA43-5347D756017C}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-06-27 1008896]
[HKEY_CLASSES_ROOT\clsid\{a3bc75a2-1f87-4686-aa43-5347d756017c}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
2009-06-27 18:35 1008896 ----a-w- c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-06-27 1008896]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-06-27 1008896]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DellSupport"="c:\program files\DellSupport\DSAgnt.exe" [2007-03-15 460784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"IntelMeM"="c:\program files\Intel\Modem Event Monitor\IntelMEM.exe" [2003-09-04 221184]
"dla"="c:\windows\system32\dla\tfswctrl.exe" [2004-12-06 127035]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-07-27 81920]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-09-20 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-09-20 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-09-20 114688]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_01\bin\jusched.exe" [2007-03-14 83608]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-07-23 1948440]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2004-07-27 221184]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-07-13 292128]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"RunNarrator"="Narrator.exe" - c:\windows\SYSTEM32\NARRATOR.EXE [2004-08-04 53760]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2008-4-26 113664]
America Online 9.0 Tray Icon.lnk - c:\program files\America Online 9.0\aoltray.exe [2005-7-29 156784]
NkbMonitor.exe.lnk - c:\program files\Nikon\PictureProject\NkbMonitor.exe [2008-2-9 118784]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2009-03-11 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-03-11 22:02 356352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-07-23 19:46 11952 ----a-w- c:\windows\SYSTEM32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ \0
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Steam\\steamapps\\dynamite14\\condition zero\\hl.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\SYSTEM32\DRIVERS\avgldx86.sys [7/23/2009 3:46 PM 335752]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\SYSTEM32\DRIVERS\avgtdix.sys [7/23/2009 3:46 PM 108552]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2/27/2007 12:39 PM 55024]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [7/23/2009 3:45 PM 907032]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [7/23/2009 3:45 PM 298776]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\Viewpoint\Common\ViewpointService.exe [12/1/2007 9:23 PM 24652]
S3 AsAudioDevice_351;AsAudioDevice_351;c:\windows\SYSTEM32\DRIVERS\AsAudioDevice_351.sys [3/8/2009 3:55 PM 16640]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2/16/2006 5:51 PM 4096]
.
Contents of the 'Scheduled Tasks' folder
2009-07-28 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
mStart Page = hxxp://www.dell4me.com/myway
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://toolbar.ask.com/toolbarv/askRedirect?o=20008&gct=&gc=1&q=%s
IE: {{d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\Jaquelin\Start Menu\Programs\IMVU\Run IMVU.lnk
FF - ProfilePath - c:\documents and settings\Jaquelin\Application Data\Mozilla\Firefox\Profiles\u5m65l0o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.goodsearch.com
FF - prefs.js: network.proxy.type - 4
FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-07-30 16:48
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(660)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
Completion time: 2009-07-30 16:51
ComboFix-quarantined-files.txt 2009-07-30 20:50
ComboFix2.txt 2009-07-29 16:30
Pre-Run: 28,052,996,096 bytes free
Post-Run: 28,040,302,592 bytes free
233 --- E O F --- 2009-07-29 16:42
new DDS.txt file :
DDS (Ver_09-06-26.01) - NTFSx86
Run by Jaquelin at 22:12:57.51 on Thu 07/30/2009
Internet Explorer: 6.0.2900.2180 BrowserJavaVersion: 1.6.0_14
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.510.267 [GMT -4:00]
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
SVCHOST.EXE
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\Explorer.EXE
SVCHOST.EXE
SVCHOST.EXE
C:\WINDOWS\system32\spoolsv.exe
SVCHOST.EXE
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\igfxpers.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Java\jre6\bin\java.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymSCUI.exe
C:\Documents and Settings\Jaquelin\Desktop\dds.pif
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.com/
mStart Page = hxxp://www.dell4me.com/myway
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://toolbar.ask.com/toolbarv/askRedirect?o=20008&gct=&gc=1&q=%s
uURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Skype add-on (mastermind): {22bf413b-c6d2-4d91-82a9-a0f997ba588c} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\tfswshx.dll
BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
uRun: [DellSupport] "c:\program files\dellsupport\DSAgnt.exe" /startup
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [IntelMeM] c:\program files\intel\modem event monitor\IntelMEM.exe
mRun: [dla] c:\windows\system32\dla\tfswctrl.exe
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
dRunOnce: [RunNarrator] Narrator.exe
StartupFolder: c:\docume~1\hotpoc~1\programs\startup\stardo~1.lnk - c:\program files\stardock\objectdock\ObjectDock.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\americ~1.lnk - c:\program files\america online 9.0\aoltray.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\nkbmon~1.lnk - c:\program files\nikon\pictureproject\NkbMonitor.exe
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
IE: {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\jaquelin\start menu\programs\imvu\Run IMVU.lnk
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
IE: {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - {552781AF-37E4-4FEE-920A-CED9E648EADD} - c:\program files\common files\microsoft shared\encarta search bar\ENCSBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: avgrsstarter - avgrsstx.dll
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\jaquelin\applic~1\mozilla\firefox\profiles\u5m65l0o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.goodsearch.com
FF - prefs.js: network.proxy.type - 4
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true
============= SERVICES / DRIVERS ===============
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-7-23 335752]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2007-7-13 27784]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-7-23 108552]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2007-2-27 55024]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-7-23 907032]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-7-23 298776]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2007-12-1 24652]
S3 AsAudioDevice_351;AsAudioDevice_351;c:\windows\system32\drivers\AsAudioDevice_351.sys [2009-3-8 16640]
S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2006-2-16 4096]
=============== Created Last 30 ================
2009-07-30 19:04 410,984 a------- c:\windows\system32\deploytk.dll
2009-07-30 19:04 73,728 a------- c:\windows\system32\javacpl.cpl
2009-07-30 16:41 <DIR> --ds---- C:\ComboFix
2009-07-29 12:28 <DIR> --d----- c:\windows\system32\dllcache\cache
2009-07-29 12:21 <DIR> a-dshr-- C:\cmdcons
2009-07-29 12:17 219,648 a------- c:\windows\PEV.exe
2009-07-29 12:17 161,792 a------- c:\windows\SWREG.exe
2009-07-29 12:17 98,816 a------- c:\windows\sed.exe
2009-07-28 14:10 <DIR> --d----- c:\program files\iPod
2009-07-28 14:10 <DIR> --d----- c:\program files\iTunes
2009-07-28 14:10 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-07-28 14:08 <DIR> --d----- c:\program files\Bonjour
2009-07-28 12:35 54,156 a---h--- c:\windows\QTFont.qfn
2009-07-28 12:35 1,409 a------- c:\windows\QTFont.for
2009-07-28 10:33 <DIR> --d-h--- c:\windows\PIF
2009-07-26 10:11 <DIR> --d----- c:\program files\Trend Micro
2009-07-24 14:01 <DIR> --d-h--- C:\$AVG8.VAULT$
2009-07-23 15:46 11,952 a------- c:\windows\system32\avgrsstx.dll
2009-07-23 15:46 108,552 a------- c:\windows\system32\drivers\avgtdix.sys
2009-07-23 15:46 <DIR> --d----- c:\windows\system32\drivers\Avg
2009-07-23 15:46 <DIR> --d----- c:\docume~1\alluse~1\applic~1\AVG Security Toolbar
2009-07-23 15:46 335,752 a------- c:\windows\system32\drivers\avgldx86.sys
2009-07-23 15:45 <DIR> --d----- c:\program files\AVG
2009-07-23 15:45 <DIR> --d----- c:\docume~1\alluse~1\applic~1\avg8
2009-07-23 15:34 <DIR> --d----- c:\docume~1\jaquelin\applic~1\AVG8
==================== Find3M ====================
2009-07-29 03:12 20 ----h--- c:\docume~1\alluse~1\applic~1\PKP_DLec.DAT
2009-07-29 03:12 20 ----h--- c:\docume~1\alluse~1\applic~1\PKP_DLds.DAT
2009-07-26 01:04 29,916 a------- c:\docume~1\jaquelin\applic~1\wklnhst.dat
2009-07-18 12:20 3,062,272 -------- c:\windows\system32\dllcache\mshtml.dll
2009-07-18 12:20 1,506,304 -------- c:\windows\system32\dllcache\shdocvw.dll
2009-06-22 07:38 18,432 -------- c:\windows\system32\dllcache\iedw.exe
2009-06-16 10:55 119,808 a------- c:\windows\system32\t2embed.dll
2009-06-16 10:55 82,432 a------- c:\windows\system32\fontsub.dll
2009-06-16 10:55 119,808 -------- c:\windows\system32\dllcache\t2embed.dll
2009-06-16 10:55 82,432 -------- c:\windows\system32\dllcache\fontsub.dll
2009-06-03 15:27 1,290,752 a------- c:\windows\system32\quartz.dll
2009-06-03 15:27 1,290,752 -------- c:\windows\system32\dllcache\quartz.dll
2009-05-31 22:42 52,240 a---h--- c:\windows\system32\mlfcache.dat
2009-05-07 11:44 344,064 a------- c:\windows\system32\localspl.dll
2009-05-07 11:44 344,064 -------- c:\windows\system32\dllcache\localspl.dll
2008-11-16 15:34 62,904 a------- c:\docume~1\jaquelin\applic~1\GDIPFONTCACHEV1.DAT
============= FINISH: 22:13:38.04 ===============
new Attach.txt :
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-06-26.01)
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume2
Install Date: 3/3/2006 10:03:36 PM
System Uptime: 7/30/2009 7:01:00 PM (3 hours ago)
Motherboard: Dell Computer Corp. | | 0TC667
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | Microprocessor | 2792/533mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 70 GiB total, 25.679 GiB free.
D: is CDROM ()
E: is CDROM ()
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP857: 5/2/2009 5:23:44 PM - System Checkpoint
RP858: 5/3/2009 5:47:29 PM - System Checkpoint
RP859: 5/4/2009 6:35:34 PM - System Checkpoint
RP860: 5/5/2009 6:49:56 PM - System Checkpoint
RP861: 5/6/2009 7:21:25 PM - System Checkpoint
RP862: 5/7/2009 9:53:29 PM - System Checkpoint
RP863: 5/9/2009 4:52:23 PM - System Checkpoint
RP864: 5/10/2009 4:52:31 PM - System Checkpoint
RP865: 5/11/2009 9:22:19 PM - System Checkpoint
RP866: 5/12/2009 9:31:15 PM - System Checkpoint
RP867: 5/13/2009 10:06:38 PM - System Checkpoint
RP868: 5/14/2009 10:30:38 PM - System Checkpoint
RP869: 5/16/2009 2:46:07 PM - System Checkpoint
RP870: 5/17/2009 4:05:19 PM - System Checkpoint
RP871: 5/19/2009 11:06:04 AM - System Checkpoint
RP872: 5/20/2009 8:40:11 PM - System Checkpoint
RP873: 5/21/2009 9:15:44 PM - System Checkpoint
RP874: 5/23/2009 1:13:18 PM - System Checkpoint
RP875: 5/24/2009 9:31:18 PM - System Checkpoint
RP876: 5/25/2009 10:33:15 PM - System Checkpoint
RP877: 5/27/2009 4:45:55 PM - System Checkpoint
RP878: 5/28/2009 4:50:02 PM - System Checkpoint
RP879: 5/29/2009 5:36:18 PM - System Checkpoint
RP880: 5/30/2009 5:38:00 PM - System Checkpoint
RP881: 5/31/2009 6:20:40 PM - System Checkpoint
RP882: 6/1/2009 8:08:43 PM - System Checkpoint
RP883: 6/2/2009 8:21:58 PM - System Checkpoint
RP884: 6/9/2009 8:13:34 PM - System Checkpoint
RP885: 6/13/2009 10:20:10 PM - System Checkpoint
RP886: 6/15/2009 12:31:57 PM - Software Distribution Service 3.0
RP887: 6/18/2009 8:42:16 PM - System Checkpoint
RP888: 6/20/2009 11:40:08 PM - System Checkpoint
RP889: 6/22/2009 9:27:32 PM - System Checkpoint
RP890: 6/23/2009 10:01:07 PM - System Checkpoint
RP891: 6/25/2009 11:13:39 AM - System Checkpoint
RP892: 6/27/2009 8:41:27 AM - System Checkpoint
RP893: 6/28/2009 3:02:33 PM - System Checkpoint
RP894: 6/29/2009 11:04:49 PM - System Checkpoint
RP895: 7/2/2009 9:02:16 PM - System Checkpoint
RP896: 7/4/2009 5:41:09 PM - System Checkpoint
RP897: 7/5/2009 8:23:11 PM - System Checkpoint
RP898: 7/9/2009 2:50:39 PM - Removed Bonjour
RP899: 7/9/2009 2:51:31 PM - Removed Safari
RP900: 7/11/2009 5:05:09 PM - System Checkpoint
RP901: 7/12/2009 6:02:56 PM - System Checkpoint
RP902: 7/13/2009 6:07:17 PM - System Checkpoint
RP903: 7/15/2009 2:43:06 PM - System Checkpoint
RP904: 7/16/2009 11:29:32 AM - Software Distribution Service 3.0
RP905: 7/17/2009 5:02:36 PM - System Checkpoint
RP906: 7/18/2009 5:30:02 PM - System Checkpoint
RP907: 7/19/2009 7:47:15 PM - System Checkpoint
RP908: 7/21/2009 12:27:05 AM - System Checkpoint
RP909: 7/22/2009 2:15:51 PM - System Checkpoint
RP910: 7/23/2009 3:45:28 PM - Installed AVG Free 8.5
RP911: 7/23/2009 3:52:16 PM - Software Distribution Service 3.0
RP912: 7/26/2009 2:28:05 AM - System Checkpoint
RP913: 7/26/2009 4:21:26 AM - Avg8 Update
RP914: 7/27/2009 4:09:51 PM - System Checkpoint
RP915: 7/28/2009 5:00:07 PM - System Checkpoint
RP916: 7/29/2009 12:41:25 PM - Software Distribution Service 3.0
RP917: 7/30/2009 4:55:12 PM - Removed Adobe Reader 6.0.1
RP918: 7/30/2009 5:06:38 PM - Installed Adobe Reader 9.1.
RP919: 7/30/2009 6:58:57 PM - Removed Java(TM) SE Runtime Environment 6 Update 1
RP920: 7/30/2009 7:03:44 PM - Installed Java(TM) 6 Update 14
==== Installed Programs ======================
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.1.2
Adobe Shockwave Player
AGEIA PhysX v2.4.4
AOL Connectivity Services
AOL Uninstaller (Choose which Products to Remove)
AOLIcon
Apple Mobile Device Support
Apple Software Update
AVG Free 8.5
Bonjour
CCleaner (remove only)
Condition Zero
Dell Driver Reset Tool
Dell Picture Studio v3.0
Dell System Restore
DellSupport
DivX Web Player
EarthLink setup files
Free and Easy Biorhythm Calculator version 3.02
Google Video Uploader
HijackThis 2.0.2
Intel(R) 537EP V9x DF PCI Modem
Intel(R) Extreme Graphics 2 Driver
Intel(R) PRO Network Adapters and Drivers
Intel(R) PROSet for Wired Connections
Internet Explorer Default Page
iTunes
Java(TM) 6 Update 14
Macromedia Flash Player
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Encarta Encyclopedia Standard 2005
Microsoft Plus! Digital Media Edition Installer
Microsoft Plus! Photo Story 2 LE
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Word 2002
Microsoft Works
Microsoft Works 2005 Setup Launcher
Microsoft Works Suite Add-in for Microsoft Word
Modem Event Monitor
Mozilla Firefox (3.0.12)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 Parser and SDK
NetZeroInstallers
Nikon Message Center
Norton Security Center
Photo Click
PictureProject
PictureProject In Touch Downloader 1.0
QuickTime
RealPlayer
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB972260)
Shockwave
Skype™ 3.8
Sonic DLA
Sonic RecordNow Audio
Sonic RecordNow Copy
Sonic RecordNow Data
Sonic Update Manager
Steam
SUPERAntiSpyware Free Edition
Viewpoint Media Player
WD Diagnostics
WebFldrs XP
Windows Media Format 11 runtime
Windows Media Player 10
Windows Media Player 11
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888310
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB891781
==== Event Viewer Messages From Past Week ========
7/29/2009 12:22:25 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the PEVSystemStart service to connect.
7/28/2009 11:25:50 PM, error: Service Control Manager [7023] - The Application Management service terminated with the following error: The specified module could not be found.
7/26/2009 4:16:52 AM, error: System Error [1003] - Error code 1000000a, parameter1 8bc0d7c4, parameter2 00000002, parameter3 00000001, parameter4 804dc11d.
7/26/2009 2:31:08 AM, error: Service Control Manager [7032] - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Management Instrumentation service, but this action failed with the following error: An instance of the service is already running.
7/26/2009 2:09:45 AM, error: Service Control Manager [7034] - The Windows Image Acquisition (WIA) service terminated unexpectedly. It has done this 1 time(s).
7/25/2009 7:20:23 PM, error: Service Control Manager [7023] - The Automatic Updates service terminated with the following error: %%2147952506
7/23/2009 3:54:06 PM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Internet Explorer 8 for Windows XP.
7/23/2009 3:21:06 PM, error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: This operation returned because the timeout period expired.
7/23/2009 3:17:37 PM, error: Service Control Manager [7034] - The AOL Connectivity Service service terminated unexpectedly. It has done this 1 time(s).
7/23/2009 2:27:56 PM, error: Service Control Manager [7023] - The Windows Firewall/Internet Connection Sharing (ICS) service terminated with the following error: The class is configured to run as a security id different from the caller
==== End Of File ===========================