Email sending blocked ISP server cant help

View previous topic View next topic Go down

Email sending blocked ISP server cant help

Post by celda on Tue Jun 08, 2010 4:34 am

HI

I am again having an issue. I work from home and have a personal email also

Work email through outlook express

Personal email through ISP server using incredimail

NO problems till Friday - work emails not getting through to others although looked like they got sent.
They were however coming in

Same with personal email coming but apparently not sending ..even though it appeared they had.

Today is when I realized it wasn't just my work email that was nt working but also my personal one.

I called shaw my ISP and was on the phone with him forever..he took over my computer and such and couldn't figure it out.

Then he realized it was my IP address that was BLOCKED ...banned something..saying that it is like someone was sending MASS emails etc...well I have not done this and he knew it but said it could be a virus..or the fact that my router was not secured

So he said to run virus removal scans on each computer...I have two desk tops and one laptop.This is the one I work off the other desk top is for WOW only.

SOOOO I did all that..and avg came up clean on here..but the MALWARE one came up with some problems which I include

I also got my router/ internet now secured.

Can you please tell me what else I can do ? He said i might have to wait a few days for the problem to resolve on its own and there is nothing they could do.

here is the MALWARE log

Thank you again for any help you can give me

Malwarebytes' Anti-Malware 1.44
Database version: 3914
Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18372

06/07/2010 07:47:37 PM
mbam-log-2010-06-07 (19-47-32).txt

Scan type: Full Scan (C:|D:|)
Objects scanned: 205273
Time elapsed: 1 hour(s), 54 minute(s), 26 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 19
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 30

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CLASSES_ROOTInterface{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOTInterface{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOTCLSID{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOTTypelib{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftInternet ExplorerSearchScopes{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerSearchScopes{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerLow RightsRunDll32Policyf3ScrCtr.dll (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftMultimediaWMPlayerSchemesf3pss (Adware.MyWebSearch) -> No action taken.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016953.dll (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016960.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016965.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016967.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016968.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016971.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016972.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016973.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016974.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016976.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016977.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016978.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016979.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016980.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016981.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016982.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016983.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016984.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016985.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016986.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016987.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0017014.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0017015.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0017016.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0017017.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0017018.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0017019.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016957.DLL (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP162A0016975.EXE (Adware.MyWebSearch) -> No action taken.
C:System Volume Information_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}RP163A0017069.dll (Adware.MyWebSearch) -> No action taken.

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Tue Jun 08, 2010 3:31 pm

here is my OTL
OTL logfile created on: 06/08/2010 08:14:13 AM - Run 1
OTL by OldTimer - Version 3.2.5.3 Folder = C:Documents and SettingsCelesteDesktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18372)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: MM/dd/yyyy

510.00 Mb Total Physical Memory | 176.00 Mb Available Physical Memory | 34.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 50.00% Paging File free
Paging file location(s): C:pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:WINDOWS | %ProgramFiles% = C:Program Files
Drive C: | 71.46 Gb Total Space | 41.64 Gb Free Space | 58.28% Space Free | Partition Type: NTFS
Drive D: | 657.31 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: D2K6VLB1
Current User Name: Celeste
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Processes (SafeList) ==========

PRC - [2010/06/08 08:13:13 | 000,571,904 | ---- | M] (OldTimer Tools) -- C:Documents and SettingsCelesteDesktopOTL.exe
PRC - [2010/06/08 07:53:36 | 000,139,264 | ---- | M] (Sun Microsystems, Inc.) -- C:SunSDKjdkbinjava.exe
PRC - [2010/06/02 09:04:40 | 002,065,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:Program FilesAVGAVG9avgtray.exe
PRC - [2010/06/02 09:04:36 | 000,515,424 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:Program FilesAVGAVG9avgrsx.exe
PRC - [2010/06/02 09:04:35 | 000,620,896 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:Program FilesAVGAVG9avgnsx.exe
PRC - [2010/06/02 09:02:36 | 000,722,784 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:Program FilesAVGAVG9avgcsrvx.exe
PRC - [2010/06/02 09:02:33 | 001,101,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:Program FilesAVGAVG9avgchsvx.exe
PRC - [2010/05/17 14:50:44 | 000,353,736 | ---- | M] (IncrediMail, Ltd.) -- C:Program FilesIncrediMailbinIncMail.exe
PRC - [2010/05/17 14:50:44 | 000,247,240 | ---- | M] (IncrediMail, Ltd.) -- C:Program FilesIncrediMailbinImApp.exe
PRC - [2010/04/16 08:33:40 | 000,144,672 | ---- | M] (Apple Inc.) -- C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe
PRC - [2010/03/13 09:02:28 | 000,308,064 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:Program FilesAVGAVG9avgwdsvc.exe
PRC - [2010/03/05 08:32:28 | 001,135,912 | ---- | M] () -- C:Program FilesDivXDivX UpdateDivXUpdate.exe
PRC - [2009/05/19 11:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:Program FilesMicrosoftSearch Enhancement PackSeaPortSeaPort.exe
PRC - [2007/06/13 03:23:07 | 001,033,216 | ---- | M] (Microsoft Corporation) -- C:WINDOWSexplorer.exe
PRC - [2007/03/15 10:09:36 | 000,460,784 | ---- | M] (Gteko Ltd.) -- C:Program FilesDellSupportDSAgnt.exe
PRC - [2005/10/05 01:12:00 | 000,094,208 | ---- | M] () -- C:Program FilesDellMedia ExperienceDMXLauncher.exe
PRC - [2005/06/10 08:44:02 | 000,081,920 | ---- | M] (InstallShield Software Corporation) -- C:Program FilesCommon FilesInstallShieldUpdateServiceissch.exe
PRC - [2004/10/14 17:42:54 | 001,404,928 | ---- | M] (Analog Devices, Inc.) -- C:Program FilesAnalog DevicesCoresmax4pnp.exe
PRC - [2004/04/14 13:46:50 | 000,057,393 | ---- | M] (ScanSoft, Inc.) -- C:Program FilesScanSoftPaperPortpptd40nt.exe


========== Modules (All) ==========

MOD - [2010/06/08 08:13:13 | 000,571,904 | ---- | M] (OldTimer Tools) -- C:Documents and SettingsCelesteDesktopOTL.exe
MOD - [2009/12/08 01:59:48 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32shlwapi.dll
MOD - [2009/11/21 09:36:13 | 000,470,528 | ---- | M] (Microsoft Corporation) -- C:WINDOWSAppPatchaclayers.dll
MOD - [2009/06/25 01:17:27 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32secur32.dll
MOD - [2009/04/15 08:26:39 | 000,583,168 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32rpcrt4.dll
MOD - [2009/03/21 07:18:57 | 000,986,112 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32kernel32.dll
MOD - [2009/02/26 22:08:40 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32msctfime.ime
MOD - [2009/02/09 03:01:53 | 000,617,984 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32advapi32.dll
MOD - [2009/02/09 03:01:52 | 000,715,264 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32ntdll.dll
MOD - [2008/10/23 06:01:36 | 000,283,648 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32gdi32.dll
MOD - [2008/07/03 06:03:29 | 008,460,800 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32shell32.dll
MOD - [2007/12/04 11:38:13 | 000,550,912 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32oleaut32.dll
MOD - [2007/03/08 08:36:28 | 000,577,536 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32user32.dll
MOD - [2006/08/25 08:45:55 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:WINDOWSWinSxSx86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03comctl32.dll
MOD - [2005/07/25 21:39:48 | 001,285,120 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32ole32.dll
MOD - [2005/07/25 21:39:43 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32clbcatq.dll
MOD - [2004/08/04 03:00:00 | 000,983,552 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32setupapi.dll
MOD - [2004/08/04 03:00:00 | 000,792,064 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32comres.dll
MOD - [2004/08/04 03:00:00 | 000,723,456 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32userenv.dll
MOD - [2004/08/04 03:00:00 | 000,406,528 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32usp10.dll
MOD - [2004/08/04 03:00:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32msvcrt.dll
MOD - [2004/08/04 03:00:00 | 000,294,400 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32MSCTF.dll
MOD - [2004/08/04 03:00:00 | 000,276,992 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32comdlg32.dll
MOD - [2004/08/04 03:00:00 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32uxtheme.dll
MOD - [2004/08/04 03:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32wbemframedyn.dll
MOD - [2004/08/04 03:00:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32winspool.drv
MOD - [2004/08/04 03:00:00 | 000,126,976 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32apphelp.dll
MOD - [2004/08/04 03:00:00 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32imm32.dll
MOD - [2004/08/04 03:00:00 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32msscript.ocx
MOD - [2004/08/04 03:00:00 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32olepro32.dll
MOD - [2004/08/04 03:00:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32srclient.dll
MOD - [2004/08/04 03:00:00 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32shimeng.dll
MOD - [2004/08/04 03:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32psapi.dll
MOD - [2004/08/04 03:00:00 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32lpk.dll
MOD - [2004/08/04 03:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32version.dll


========== Win32 Services (SafeList) ==========

SRV - [2010/06/07 12:59:30 | 000,013,160 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:Program FilesCitrixGoToAssist607g2aservice.exe -- (GoToAssist)
SRV - [2010/04/16 08:33:40 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/03/13 09:02:28 | 000,308,064 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:Program FilesAVGAVG9avgwdsvc.exe -- (avg9wd)
SRV - [2009/08/05 23:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:Program FilesWindows LiveFamily Safetyfsssvc.exe -- (fsssvc)
SRV - [2009/05/19 11:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:Program FilesMicrosoftSearch Enhancement PackSeaPortSeaPort.exe -- (SeaPort)
SRV - [2007/03/07 14:47:46 | 000,076,848 | ---- | M] () [On_Demand | Stopped] -- C:Program FilesDellSupportbrkrsvc.exe -- (DSBrokerService)


========== Driver Services (SafeList) ==========

DRV - [2010/06/02 09:04:37 | 000,242,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:WINDOWSSystem32Driversavgtdix.sys -- (AvgTdiX)
DRV - [2010/06/02 09:04:35 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:WINDOWSSystem32Driversavgmfx86.sys -- (AvgMfx86)
DRV - [2010/03/13 09:01:32 | 000,216,200 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:WINDOWSSystem32Driversavgldx86.sys -- (AvgLdx86)
DRV - [2009/08/05 23:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:WINDOWSsystem32driversfssfltr_tdi.sys -- (fssfltr)
DRV - [2009/05/09 02:14:20 | 000,014,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:WINDOWSsystem32driversnuidfltr.sys -- (NuidFltr)
DRV - [2007/03/20 12:33:26 | 000,028,672 | ---- | M] (http://libusb-win32.sourceforge.net) [Kernel | On_Demand | Running] -- C:WINDOWSsystem32driverslibusb0.sys -- (libusb0)
DRV - [2007/02/25 11:10:48 | 000,005,376 | --S- | M] (Gteko Ltd.) [Kernel | Auto | Running] -- C:WINDOWSsystem32driversdsunidrv.sys -- (dsunidrv)
DRV - [2006/10/05 15:07:28 | 000,004,736 | ---- | M] (Gteko Ltd.) [Kernel | On_Demand | Running] -- C:Program FilesDellSupportGTActiontriggersDSproct.sys -- (DSproct)
DRV - [2006/08/10 01:26:28 | 000,008,552 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:WINDOWSsystem32driversasctrm.sys -- (ASCTRM)
DRV - [2004/09/17 12:02:54 | 000,732,928 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:WINDOWSsystem32driverssenfilt.sys -- (senfilt)
DRV - [2004/08/03 21:07:44 | 000,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSamdagp.sys -- (amdagp)
DRV - [2004/08/03 21:07:44 | 000,041,088 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSsisagp.sys -- (sisagp)
DRV - [2004/08/03 20:29:56 | 001,897,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:WINDOWSsystem32driversnv4_mini.sys -- (nv)
DRV - [2001/11/05 13:54:38 | 000,014,182 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:WINDOWSsystem32driversicm10blk.sys -- (icm10blk) Intel(r)
DRV - [2001/11/05 13:54:14 | 000,420,870 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:WINDOWSsystem32driversICM10USB.sys -- (ICM10USB) Intel(r)
DRV - [2001/08/17 12:07:44 | 000,019,072 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSsparrow.sys -- (Sparrow)
DRV - [2001/08/17 12:07:42 | 000,030,688 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSsym_u3.sys -- (sym_u3)
DRV - [2001/08/17 12:07:40 | 000,028,384 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSsym_hi.sys -- (sym_hi)
DRV - [2001/08/17 12:07:36 | 000,032,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSsymc8xx.sys -- (symc8xx)
DRV - [2001/08/17 12:07:34 | 000,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSsymc810.sys -- (symc810)
DRV - [2001/08/17 11:52:22 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSultra.sys -- (ultra)
DRV - [2001/08/17 11:52:20 | 000,045,312 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSql12160.sys -- (ql12160)
DRV - [2001/08/17 11:52:20 | 000,040,320 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSql1080.sys -- (ql1080)
DRV - [2001/08/17 11:52:18 | 000,049,024 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSql1280.sys -- (ql1280)
DRV - [2001/08/17 11:52:16 | 000,179,584 | ---- | M] (Mylex Corporation) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSdac2w2k.sys -- (dac2w2k)
DRV - [2001/08/17 11:52:12 | 000,017,280 | ---- | M] (American Megatrends Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSmraid35x.sys -- (mraid35x)
DRV - [2001/08/17 11:52:00 | 000,026,496 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSasc.sys -- (asc)
DRV - [2001/08/17 11:51:58 | 000,014,848 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSasc3550.sys -- (asc3550)
DRV - [2001/08/17 11:51:56 | 000,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERSaliide.sys -- (AliIde)
DRV - [2001/08/17 11:51:54 | 000,006,656 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:WINDOWSsystem32DRIVERScmdide.sys -- (CmdIde)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLMSOFTWAREMicrosoftInternet ExplorerSearch,Default_Page_URL = [You must be registered and logged in to see this link.]
IE - HKLMSOFTWAREMicrosoftInternet ExplorerSearch,Start Page = [You must be registered and logged in to see this link.]

IE - HKCUSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = [You must be registered and logged in to see this link.]
IE - HKCUSOFTWAREMicrosoftInternet ExplorerMain,Start Page = [You must be registered and logged in to see this link.]
IE - HKCU..URLSearchHook: *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Reg Error: Key error. File not found
IE - HKCU..URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:Program FilesAVGAVG9ToolbarIEToolbar.dll ()
IE - HKCU..URLSearchHook: {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - Reg Error: Key error. File not found
IE - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings: "ProxyEnable" = 0
IE - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: [You must be registered and logged in to see this link.]:1.0



[2009/08/07 23:32:21 | 000,000,000 | ---D | M] -- C:Documents and SettingsCelesteApplication DataMozillaExtensions
[2009/02/09 12:08:58 | 000,000,000 | ---D | M] -- C:Documents and SettingsCelesteApplication [You must be registered and logged in to see this link.]
[2009/08/07 23:32:21 | 000,000,000 | ---D | M] -- C:Documents and SettingsCelesteApplication DataMozillaFirefoxProfilesu46ghws6.defaultextensions
[2009/08/07 23:41:07 | 000,000,000 | ---D | M] -- C:Program FilesMozilla Firefoxextensions

Hosts file not found
O2 - BHO: (Shareaza Web Download Hook) - {0EEDB912-C5FA-486F-8334-57288578C627} - C:Program FilesMorpheus MusicRazaWebHook.dll (Devhancer LLC)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:Program FilesAVGAVG9avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:Program FilesMicrosoftSearch Enhancement PackSearch HelperSEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:Program FilesAVGAVG9ToolbarIEToolbar.dll ()
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:Program FilesGoogleGoogleToolbarNotifier5.1.1309.3572swg.dll (Google Inc.)
O2 - BHO: (no name) - {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found.
O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:Program FilesBAEBAE.dll (Dell Inc.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:Program FilesWindows LiveToolbarwltcore.dll (Microsoft Corporation)
O3 - HKLM..Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:Program FilesWindows LiveToolbarwltcore.dll (Microsoft Corporation)
O3 - HKLM..Toolbar: (no name) - {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found.
O3 - HKLM..Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:Program FilesAVGAVG9ToolbarIEToolbar.dll ()
O3 - HKCU..ToolbarWebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:Program FilesWindows LiveToolbarwltcore.dll (Microsoft Corporation)
O3 - HKCU..ToolbarWebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:Program FilesAVGAVG9ToolbarIEToolbar.dll ()
O4 - HKLM..Run: [AVG9_TRAY] C:Program FilesAVGAVG9avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..Run: [DivXUpdate] C:Program FilesDivXDivX UpdateDivXUpdate.exe ()
O4 - HKLM..Run: [DMXLauncher] C:Program FilesDellMedia ExperienceDMXLauncher.exe ()
O4 - HKLM..Run: [IndexSearch] C:Program FilesScanSoftPaperPortIndexSearch.exe (ScanSoft, Inc.)
O4 - HKLM..Run: [ISUSPM Startup] C:Program FilesCommon FilesInstallShieldUpdateServiceisuspm.exe (InstallShield Software Corporation)
O4 - HKLM..Run: [ISUSScheduler] C:Program FilesCommon FilesInstallShieldUpdateServiceissch.exe (InstallShield Software Corporation)
O4 - HKLM..Run: [PaperPort PTD] C:Program FilesScanSoftPaperPortpptd40nt.exe (ScanSoft, Inc.)
O4 - HKLM..Run: [SoundMAXPnP] C:Program FilesAnalog DevicesCoresmax4pnp.exe (Analog Devices, Inc.)
O4 - HKLM..Run: [SSBkgdUpdate] C:Program FilesCommon FilesScansoft SharedSSBkgdUpdateSSBkgdupdate.exe (Scansoft, Inc.)
O4 - HKCU..Run: [DellSupport] C:Program FilesDellSupportDSAgnt.exe (Gteko Ltd.)
O4 - HKCU..RunOnce: [Shockwave Updater] C:WINDOWSSystem32AdobeShockwave 11SwHelper_1150595.exe -Update -1150595 -Mozilla4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident4.0; File not found
O4 - Startup: C:Documents and SettingsAll UsersStart MenuProgramsStartupMicrosoft Office.lnk = C:Program FilesMicrosoft OfficeOfficeOSA9.EXE (Microsoft Corporation)
O4 - Startup: C:Documents and SettingsCelesteStart MenuProgramsStartupSDK Tray Menu.lnk = C:SunSDKjdkbinjavaw.exe (Sun Microsystems, Inc.)
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: HonorAutoRunSetting = 1
O7 - HKCUSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Download with &Shareaza - C:Program FilesMorpheus MusicRazaWebHook.dll (Devhancer LLC)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000004 [] - C:Program FilesBonjourmdnsNSP.dll (Apple Inc.)
O15 - HKLM..Trusted Domains: LoadLink.ca ([LoadLinkNet] http in Trusted sites)
O15 - HKCU..Trusted Domains: 3sixty.ca ([www] * in Trusted sites)
O15 - HKCU..Trusted Domains: http; ([]* in Trusted sites)
O15 - HKCU..Trusted Domains: loadlink.ca ([www] * in Trusted sites)
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} [You must be registered and logged in to see this link.] (Microsoft Office Template and Media Control)
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} [You must be registered and logged in to see this link.] (Facebook Photo Uploader 5 Control)
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} [You must be registered and logged in to see this link.] (SpinTop DRM Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} [You must be registered and logged in to see this link.] (Shockwave ActiveX Control)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} [You must be registered and logged in to see this link.] (Checkers Class)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} [You must be registered and logged in to see this link.] (MSN Photo Upload Tool)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} [You must be registered and logged in to see this link.] (DivXBrowserPlugin Object)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} [You must be registered and logged in to see this link.] (Reg Error: Key error.)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} [You must be registered and logged in to see this link.] (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_17)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} [You must be registered and logged in to see this link.] (Reg Error: Key error.)
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} [You must be registered and logged in to see this link.] (MySpace Uploader Control)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} [You must be registered and logged in to see this link.] (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_17)
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} [You must be registered and logged in to see this link.] (ArmHelper Control)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} [You must be registered and logged in to see this link.] (Shockwave Flash Object)
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} [You must be registered and logged in to see this link.] (PopCapLoader Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} [You must be registered and logged in to see this link.] (Reg Error: Key error.)
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} [You must be registered and logged in to see this link.] (GoPetsWeb Control)
O17 - HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 192.168.2.1
O18 - ProtocolHandlerlinkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:Program FilesAVGAVG9avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - ProtocolHandlerwlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:Program FilesWindows LiveMailmailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:WINDOWSexplorer.exe (Microsoft Corporation)
O20 - WinlogonNotifyavgrsstarter: DllName - avgrsstx.dll - C:WINDOWSSystem32avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - WinlogonNotifyGoToAssist: DllName - C:Program FilesCitrixGoToAssist607G2AWinLogon.dll - C:Program FilesCitrixGoToAssist607g2awinlogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
O20 - WinlogonNotifyigfxcui: DllName - igfxdev.dll - C:WINDOWSSystem32igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:Documents and SettingsCelesteLocal SettingsApplication DataMicrosoftWallpaper1.bmp
O24 - Desktop BackupWallPaper: C:Documents and SettingsCelesteLocal SettingsApplication DataMicrosoftWallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/10 11:04:08 | 000,000,000 | ---- | M] () - C:AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2007/06/26 02:58:36 | 000,000,040 | R--- | M] () - D:AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2{69a1d6b4-0f08-11de-b630-001676afe5e8}ShellAutocommand - "" = F:autorun.bat -- File not found
O33 - MountPoints2{69a1d6b4-0f08-11de-b630-001676afe5e8}ShellAutoRun - "" = Auto&Play
O33 - MountPoints2{69a1d6b4-0f08-11de-b630-001676afe5e8}ShellexploreCommand - "" = F:autorun.bat -- File not found
O33 - MountPoints2{e6b6325e-6d5c-11de-b666-001676afe5e8}ShellAutocommand - "" = F:launcher.exe -- File not found
O33 - MountPoints2{e6b6325e-6d5c-11de-b666-001676afe5e8}ShellAutoRun - "" = Auto&Play
O35 - HKLM..comfile [open] -- "%1" %*
O35 - HKLM..exefile [open] -- "%1" %*
O37 - HKLM...com [@ = comfile] -- "%1" %*
O37 - HKLM...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:WINDOWSsystem32ias [2004/08/10 10:52:56 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:WINDOWSsystem32wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found

MsConfig - StartUpFolder: C:^Documents and Settings^Celeste^Start Menu^Programs^Startup^LimeWire On Startup.lnk - C:PROGRA~1LimeWireLimeWire.exe - File not found
MsConfig - StartUpReg: iTunesHelper - hkey= - key= - C:Program FilesiTunesiTunesHelper.exe (Apple Inc.)
MsConfig - StartUpReg: msnmsgr - hkey= - key= - C:Program FilesWindows LiveMessengermsnmsgr.exe (Microsoft Corporation)
MsConfig - StartUpReg: RealTray - hkey= - key= - C:Program FilesRealRealPlayerRealPlay.exe (RealNetworks, Inc.)
MsConfig - State: "system.ini" - 0
MsConfig - State: "win.ini" - 0
MsConfig - State: "bootini" - 2
MsConfig - State: "services" - 0
MsConfig - State: "startup" - 2

SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: GoToAssist - C:Program FilesCitrixGoToAssist607g2aservice.exe (Citrix Online, a division of Citrix Systems, Inc.)
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

ActiveX: {03F998B2-0E00-11D3-A498-00104B6EB52E} - Viewpoint Media Player
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vector Graphics Rendering (VML)
ActiveX: {1B00725B-C455-4DE6-BFB6-AD540AD427CD} - Viewpoint Media Player
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%system32regsvr32.exe /s /n /i:/UserInstall %SystemRoot%system32themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML Data Binding for Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {411EDCF7-755D-414E-A74B-3DCD6583F589} - Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Advanced Authoring
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%Outlook Expresssetup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:WINDOWSINFmsnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows script 5.8
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:WINDOWSINFmsmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - .NET Framework
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%Outlook Expresssetup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:WINDOWSsystem32ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:WINDOWSsystem32Rundll32.exe c:WINDOWSsystem32mscories.dll,Install
ActiveX: {8b15971b-5355-4c82-8c07-7e181ea07608} - rundll32.exe advpack.dll,LaunchINFSection C:WINDOWSINFfxsocm.inf,Fax.Install.PerUser
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {94de52c8-2d59-4f1b-883e-79663d2d9a8c} - Fax Provider
ActiveX: {ACC563BC-4266-43f0-B6ED-9D38C4202C7E} -
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - .NET Framework
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player
ActiveX: {DAA94A2A-2A8D-4D3B-9DB8-56FBECED082D} - Microsoft .NET Framework 1.1 Security Update (KB953297)
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:WINDOWSsystem32ieudinit.exe
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:WINDOWSinfunregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:WINDOWSsystem32ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:WINDOWSsystem32rundll32.exe" "C:WINDOWSsystem32iedkcs32.dll",BrandIEActiveSetup SIGNUP
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%system32shmgrate.exe OCInstallUserConfigOE

Drivers32: msacm.iac2 - C:WINDOWSsystem32iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:WINDOWSsystem32l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.siren - C:WINDOWSSystem32sirenacm.dll (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:WINDOWSSystem32sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:WINDOWSSystem32tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:WINDOWSSystem32vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:WINDOWSSystem32iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:WINDOWSSystem32ir32_32.dll ()
Drivers32: vidc.iv32 - C:WINDOWSSystem32ir32_32.dll ()
Drivers32: vidc.iv41 - C:WINDOWSSystem32ir41_32.ax ()
Drivers32: vidc.iv50 - C:WINDOWSSystem32ir50_32.dll ()

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (74323004602974208)

========== Files/Folders - Created Within 30 Days ==========

[2010/06/08 08:13:08 | 000,571,904 | ---- | C] (OldTimer Tools) -- C:Documents and SettingsCelesteDesktopOTL.exe
[2010/06/08 07:51:19 | 000,000,000 | ---D | C] -- C:Sun
[2010/06/07 19:52:44 | 000,000,000 | RH-D | C] -- C:Documents and SettingsCelesteRecent
[2010/05/17 14:53:48 | 000,000,000 | ---D | C] -- C:Documents and SettingsAll UsersApplication DataPhotoMail
[2010/05/17 14:53:46 | 000,000,000 | ---D | C] -- C:Program FilesPhotoMail Maker
[2010/05/17 13:09:59 | 000,000,000 | ---D | C] -- C:Program FilesiPod
[2010/05/17 13:09:29 | 000,000,000 | ---D | C] -- C:Program FilesiTunes
[2010/05/17 13:03:50 | 000,000,000 | ---D | C] -- C:Program FilesBonjour

========== Files - Modified Within 30 Days ==========

[2010/06/08 08:13:13 | 000,571,904 | ---- | M] (OldTimer Tools) -- C:Documents and SettingsCelesteDesktopOTL.exe
[2010/06/08 08:00:36 | 000,023,180 | ---- | M] () -- C:WINDOWSSystem32productregistry
[2010/06/08 08:00:36 | 000,000,875 | ---- | M] () -- C:Documents and SettingsCelesteStart MenuProgramsStartupSDK Tray Menu.lnk
[2010/06/08 07:59:50 | 000,000,116 | ---- | M] () -- C:Documents and SettingsCeleste.asadminpass
[2010/06/08 07:59:17 | 000,000,787 | ---- | M] () -- C:Documents and SettingsCeleste.asadmintruststore
[2010/06/08 07:47:12 | 174,138,261 | ---- | M] () -- C:Documents and SettingsCelesteDesktopjava_ee_sdk-5_08-jdk-6u20-windows.exe
[2010/06/08 05:27:22 | 000,000,868 | ---- | M] () -- C:WINDOWStasksGoogle Software Updater.job
[2010/06/08 05:17:00 | 000,000,472 | ---- | M] () -- C:WINDOWStasksAd-Aware Update (Daily 3).job
[2010/06/07 23:17:00 | 000,000,472 | ---- | M] () -- C:WINDOWStasksAd-Aware Update (Daily 2).job
[2010/06/07 20:40:56 | 000,002,137 | ---- | M] () -- C:Documents and SettingsAll UsersDesktopiTunes.lnk
[2010/06/07 19:50:20 | 000,000,006 | -H-- | M] () -- C:WINDOWStasksSA.DAT
[2010/06/07 19:50:17 | 000,002,048 | --S- | M] () -- C:WINDOWSbootstat.dat
[2010/06/07 19:49:10 | 009,699,328 | ---- | M] () -- C:Documents and SettingsCelestentuser.dat
[2010/06/07 19:49:10 | 000,000,278 | -HS- | M] () -- C:Documents and SettingsCelestentuser.ini
[2010/06/07 19:49:00 | 004,835,880 | -H-- | M] () -- C:Documents and SettingsCelesteLocal SettingsApplication DataIconCache.db
[2010/06/07 18:01:45 | 060,811,867 | ---- | M] () -- C:WINDOWSSystem32driversAvgincavi.avm
[2010/06/07 17:17:01 | 000,000,472 | ---- | M] () -- C:WINDOWStasksAd-Aware Update (Weekly).job
[2010/06/07 17:17:01 | 000,000,472 | ---- | M] () -- C:WINDOWStasksAd-Aware Update (Daily 1).job
[2010/06/07 13:42:44 | 000,000,556 | ---- | M] () -- C:WINDOWSwin.ini
[2010/06/07 13:42:44 | 000,000,227 | ---- | M] () -- C:WINDOWSsystem.ini
[2010/06/07 13:42:44 | 000,000,211 | RHS- | M] () -- C:boot.ini
[2010/06/07 13:00:06 | 000,000,284 | ---- | M] () -- C:WINDOWStasksAppleSoftwareUpdate.job
[2010/06/07 11:17:00 | 000,000,472 | ---- | M] () -- C:WINDOWStasksAd-Aware Update (Daily 4).job
[2010/06/06 12:02:02 | 000,000,000 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsFaith Hill - The Way You Love Me_-_[Usersearch.net].mp3
[2010/06/06 12:00:53 | 003,626,491 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsFaith Hill - Cry_-_[Usersearch.net].mp3
[2010/06/06 11:56:00 | 003,238,979 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsTim Mc Graw and Faith Hill It_'s Your Love_-_[Usersearch.net].mp3
[2010/06/06 09:31:11 | 000,000,426 | ---- | M] () -- C:WINDOWSbrwmark.ini
[2010/06/05 12:15:30 | 000,022,016 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsCeleste Resume.doc
[2010/06/03 13:27:16 | 000,064,461 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsMiss To SAlt lake Utah.pdf
[2010/06/02 09:04:37 | 000,242,896 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:WINDOWSSystem32driversavgtdix.sys
[2010/06/02 09:04:35 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:WINDOWSSystem32driversavgmfx86.sys
[2010/05/30 09:28:57 | 000,020,992 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsEgyptian Soldier.doc
[2010/05/27 16:37:19 | 000,001,946 | ---- | M] () -- C:Documents and SettingsCelesteMy Documentscc_20100527_163656.reg
[2010/05/26 22:05:32 | 000,074,752 | ---- | M] () -- C:Documents and SettingsCelesteLocal SettingsApplication DataDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/05/26 12:13:50 | 000,132,046 | ---- | M] () -- C:Documents and SettingsCelesteMy Documentstoronto to Philly.pdf
[2010/05/21 09:51:06 | 000,041,984 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsPyramid of Mekaure.doc
[2010/05/20 20:41:18 | 000,067,467 | ---- | M] () -- C:Documents and SettingsCelesteMy DocumentsOmaha NE.pdf
[2010/05/17 14:51:32 | 000,001,917 | ---- | M] () -- C:Documents and SettingsAll UsersDesktopAnimations for Messenger.lnk
[2010/05/17 14:51:32 | 000,001,750 | ---- | M] () -- C:Documents and SettingsAll UsersDesktopIncrediMail.lnk

========== Files Created - No Company Name ==========

[2010/06/08 08:00:36 | 000,000,875 | ---- | C] () -- C:Documents and SettingsCelesteStart MenuProgramsStartupSDK Tray Menu.lnk
[2010/06/08 07:59:50 | 000,000,116 | ---- | C] () -- C:Documents and SettingsCeleste.asadminpass
[2010/06/08 07:59:17 | 000,000,787 | ---- | C] () -- C:Documents and SettingsCeleste.asadmintruststore
[2010/06/08 07:54:31 | 000,023,180 | ---- | C] () -- C:WINDOWSSystem32productregistry
[2010/06/08 07:45:27 | 174,138,261 | ---- | C] () -- C:Documents and SettingsCelesteDesktopjava_ee_sdk-5_08-jdk-6u20-windows.exe
[2010/06/06 12:02:01 | 000,000,000 | ---- | C] () -- C:Documents and SettingsCelesteMy DocumentsFaith Hill - The Way You Love Me_-_[Usersearch.net].mp3
[2010/06/06 12:00:34 | 003,626,491 | ---- | C] () -- C:Documents and SettingsCelesteMy DocumentsFaith Hill - Cry_-_[Usersearch.net].mp3
[2010/06/06 11:55:56 | 003,238,979 | ---- | C] () -- C:Documents and SettingsCelesteMy DocumentsTim Mc Graw and Faith Hill It_'s Your Love_-_[Usersearch.net].mp3
[2010/06/03 13:27:16 | 000,064,461 | ---- | C] () -- C:Documents and SettingsCelesteMy DocumentsMiss To SAlt lake Utah.pdf
[2010/05/30 09:28:57 | 000,020,992 | ---- | C] () -- C:Documents and SettingsCelesteMy DocumentsEgyptian Soldier.doc
[2010/05/27 16:37:04 | 000,001,946 | ---- | C] () -- C:Documents and SettingsCelesteMy Documentscc_20100527_163656.reg
[2010/05/26 12:13:50 | 000,132,046 | ---- | C] () -- C:Documents and SettingsCelesteMy Documentstoronto to Philly.pdf
[2010/05/21 09:51:06 | 000,041,984 | ---- | C] () -- C:Documents and SettingsCelesteMy DocumentsPyramid of Mekaure.doc
[2010/05/20 20:41:18 | 000,067,467 | ---- | C] () -- C:Documents and SettingsCelesteMy DocumentsOmaha NE.pdf
[2010/05/17 14:51:32 | 000,001,917 | ---- | C] () -- C:Documents and SettingsAll UsersDesktopAnimations for Messenger.lnk
[2010/05/17 13:11:15 | 000,002,137 | ---- | C] () -- C:Documents and SettingsAll UsersDesktopiTunes.lnk
[2009/02/08 18:13:59 | 000,000,050 | ---- | C] () -- C:WINDOWSbrmx2001.ini
[2009/02/08 18:02:01 | 000,000,426 | ---- | C] () -- C:WINDOWSbrwmark.ini
[2009/02/08 18:02:01 | 000,000,209 | ---- | C] () -- C:WINDOWSBrpfx04a.ini
[2009/02/08 18:02:01 | 000,000,092 | ---- | C] () -- C:WINDOWSbrpcfx.ini
[2009/02/08 18:02:01 | 000,000,052 | ---- | C] () -- C:WINDOWSBRPP2KA.INI
[2009/02/08 18:01:40 | 000,077,824 | ---- | C] () -- C:WINDOWSSystem32BROSNMP.DLL
[2009/02/08 17:59:09 | 000,027,019 | ---- | C] () -- C:WINDOWSmaxlink.ini
[2009/02/08 16:06:23 | 000,000,376 | ---- | C] () -- C:WINDOWSODBC.INI
[2009/02/08 11:08:02 | 000,000,002 | ---- | C] () -- C:WINDOWSmsoffice.ini
[2006/08/10 01:37:13 | 000,000,061 | ---- | C] () -- C:WINDOWSsmscfg.ini
[2006/08/10 01:08:12 | 000,012,288 | ---- | C] () -- C:WINDOWSSystem32e100bmsg.dll
[2006/08/10 01:08:10 | 000,000,493 | ---- | C] () -- C:WINDOWSSystem32OEMINFO.INI
[2005/10/27 13:14:44 | 000,000,000 | ---- | C] () -- C:WINDOWSSystem32px.ini
[2004/08/10 11:12:05 | 000,000,780 | ---- | C] () -- C:WINDOWSorun32.ini
[2004/08/10 11:01:18 | 000,001,793 | ---- | C] () -- C:WINDOWSSystem32fxsperf.ini
[2004/08/10 10:51:35 | 000,755,200 | ---- | C] () -- C:WINDOWSSystem32ir50_32.dll
[2004/08/10 10:51:35 | 000,338,432 | ---- | C] () -- C:WINDOWSSystem32ir41_qcx.dll
[2004/08/10 10:51:35 | 000,200,192 | ---- | C] () -- C:WINDOWSSystem32ir50_qc.dll
[2004/08/10 10:51:35 | 000,183,808 | ---- | C] () -- C:WINDOWSSystem32ir50_qcx.dll
[2004/08/10 10:51:35 | 000,120,320 | ---- | C] () -- C:WINDOWSSystem32ir41_qc.dll
[2002/03/04 09:16:34 | 000,110,592 | R--- | C] () -- C:WINDOWSSystem32Jpeg32.dll
[1999/01/22 03:46:58 | 000,065,536 | ---- | C] () -- C:WINDOWSSystem32MSRTEDIT.DLL

========== Custom Scans ==========


< %systemroot%*. /mp /s >

< %systemroot%system32*.dll /lockedfiles >
[2009/01/15 01:01:22 | 000,348,160 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:WINDOWSsystem32dxtmsft.dll
[2009/01/15 01:01:16 | 000,216,064 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:WINDOWSsystem32dxtrans.dll

< %systemroot%system32*.exe /lockedfiles >

< %systemroot%Tasks*.job /lockedfiles >

< %systemroot%system32drivers*.sys /lockedfiles >

< %systemroot%System32config*.sav >
[2004/08/10 10:56:48 | 000,094,208 | ---- | M] () -- C:WINDOWSsystem32configdefault.sav
[2004/08/10 10:56:46 | 000,634,880 | ---- | M] () -- C:WINDOWSsystem32configsoftware.sav
[2004/08/10 10:56:46 | 000,872,448 | ---- | M] () -- C:WINDOWSsystem32configsystem.sav

< %systemroot%system32*.sys >
[2004/08/04 03:00:00 | 000,009,029 | ---- | M] () -- C:WINDOWSsystem32ansi.sys
[2004/08/04 03:00:00 | 000,027,097 | ---- | M] () -- C:WINDOWSsystem32country.sys
[2004/06/09 08:29:56 | 000,006,977 | ---- | M] (Gteko Ltd.) -- C:WINDOWSsystem32DDMI2.sys
[2005/03/13 14:54:00 | 000,006,656 | ---- | M] (GTek Technologies Ltd.) -- C:WINDOWSsystem32DLPT2.sys
[2005/02/08 10:37:52 | 000,007,626 | ---- | M] (Gteko Ltd.) -- C:WINDOWSsystem32GPCIEnum.sys
[2004/06/15 14:55:56 | 000,007,882 | ---- | M] (Gteko Ltd.) -- C:WINDOWSsystem32GTKCMOS.sys
[2004/08/04 03:00:00 | 000,004,768 | ---- | M] () -- C:WINDOWSsystem32himem.sys
[2004/08/04 03:00:00 | 000,042,809 | ---- | M] () -- C:WINDOWSsystem32key01.sys
[2004/08/04 03:00:00 | 000,042,537 | ---- | M] () -- C:WINDOWSsystem32keyboard.sys
[2004/08/04 03:00:00 | 000,027,866 | ---- | M] () -- C:WINDOWSsystem32ntdos.sys
[2004/08/04 03:00:00 | 000,029,146 | ---- | M] () -- C:WINDOWSsystem32ntdos404.sys
[2004/08/04 03:00:00 | 000,029,370 | ---- | M] () -- C:WINDOWSsystem32ntdos411.sys
[2004/08/04 03:00:00 | 000,029,274 | ---- | M] () -- C:WINDOWSsystem32ntdos412.sys
[2004/08/04 03:00:00 | 000,029,146 | ---- | M] () -- C:WINDOWSsystem32ntdos804.sys
[2004/08/04 03:00:00 | 000,033,840 | ---- | M] () -- C:WINDOWSsystem32ntio.sys
[2004/08/04 03:00:00 | 000,034,560 | ---- | M] () -- C:WINDOWSsystem32ntio404.sys
[2004/08/04 03:00:00 | 000,035,648 | ---- | M] () -- C:WINDOWSsystem32ntio411.sys
[2004/08/04 03:00:00 | 000,035,424 | ---- | M] () -- C:WINDOWSsystem32ntio412.sys
[2004/08/04 03:00:00 | 000,034,560 | ---- | M] () -- C:WINDOWSsystem32ntio804.sys
[2004/08/04 03:00:00 | 000,017,664 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32watchdog.sys
[2009/08/14 05:19:41 | 001,850,112 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32win32k.sys

< %systemroot%system32drivers*.dll >
[2004/08/04 01:56:44 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:WINDOWSsystem32drivershidserv.dll

< %systemroot%system32drivers*.ini >

< %systemroot%system32drivers*.exe >

< %SYSTEMDRIVE%*.* >
[2009/04/07 16:12:19 | 000,001,024 | ---- | M] () -- C:.rnd
[2009/12/22 19:56:56 | 000,001,986 | ---- | M] () -- C:aaw7boot.log
[2004/08/10 11:04:08 | 000,000,000 | ---- | M] () -- C:AUTOEXEC.BAT
[2009/12/22 16:59:43 | 000,001,024 | ---- | M] () -- C:avenger1.txt
[2010/06/07 13:42:44 | 000,000,211 | RHS- | M] () -- C:boot.ini
[2004/08/10 11:04:08 | 000,000,000 | ---- | M] () -- C:CONFIG.SYS
[2006/08/10 01:11:22 | 000,004,738 | RH-- | M] () -- C:dell.sdr
[2010/03/25 11:01:24 | 000,042,332 | ---- | M] () -- C:fb20100325.log
[2009/11/11 09:10:08 | 000,005,462 | ---- | M] () -- C:graph.log
[2009/02/08 17:55:53 | 000,004,128 | ---- | M] () -- C:INFCACHE.1
[2004/08/10 11:04:08 | 000,000,000 | -H-- | M] () -- C:IO.SYS
[2006/08/10 01:27:05 | 000,000,768 | -H-- | M] () -- C:IPH.PH
[2010/06/08 08:10:43 | 000,013,565 | ---- | M] () -- C:JavaRa.log
[2004/08/10 11:04:08 | 000,000,000 | -H-- | M] () -- C:MSDOS.SYS
[2004/08/04 03:00:00 | 000,047,564 | RHS- | M] () -- C:NTDETECT.COM
[2004/08/04 03:00:00 | 000,250,032 | RHS- | M] () -- C:ntldr
[2010/06/07 19:50:15 | 805,306,368 | -HS- | M] () -- C:pagefile.sys

< %PROGRAMFILES%*. >
[2010/01/21 07:54:08 | 000,000,000 | ---D | M] -- C:Program FilesAdobe
[2006/08/10 01:14:00 | 000,000,000 | ---D | M] -- C:Program FilesAnalog Devices
[2009/02/09 19:06:11 | 000,000,000 | ---D | M] -- C:Program FilesApple Software Update
[2009/12/20 23:48:51 | 000,000,000 | ---D | M] -- C:Program FilesAVG
[2009/02/24 16:20:23 | 000,000,000 | ---D | M] -- C:Program FilesAviSynth 2.5
[2006/08/10 01:33:46 | 000,000,000 | ---D | M] -- C:Program FilesBAE
[2010/05/17 13:03:52 | 000,000,000 | ---D | M] -- C:Program FilesBonjour
[2009/02/08 18:01:28 | 000,000,000 | ---D | M] -- C:Program FilesBrother
[2009/12/08 08:53:33 | 000,000,000 | ---D | M] -- C:Program FilesCCleaner
[2009/12/22 12:12:34 | 000,000,000 | ---D | M] -- C:Program FilesCircle Development
[2009/10/14 09:45:27 | 000,000,000 | ---D | M] -- C:Program FilesCitrix
[2010/03/27 13:48:25 | 000,000,000 | ---D | M] -- C:Program FilesCommon Files
[2010/05/01 13:36:58 | 000,000,000 | ---D | M] -- C:Program FilesConduit
[2009/11/19 09:06:32 | 000,000,000 | ---D | M] -- C:Program FilesCoupons
[2009/12/14 11:31:17 | 000,000,000 | ---D | M] -- C:Program FilesDatel
[2009/02/08 11:39:47 | 000,000,000 | ---D | M] -- C:Program FilesDell
[2009/02/08 11:06:48 | 000,000,000 | ---D | M] -- C:Program FilesDellSupport
[2010/03/27 13:49:10 | 000,000,000 | ---D | M] -- C:Program FilesDivX
[2010/05/02 10:50:44 | 000,000,000 | ---D | M] -- C:Program FilesDownload_Energy
[2010/04/01 19:41:15 | 000,000,000 | ---D | M] -- C:Program FileseMedia Starter Guitar Lessons
[2010/04/14 15:16:15 | 000,000,000 | ---D | M] -- C:Program FilesGoogle
[2010/03/27 14:05:23 | 000,000,000 | ---D | M] -- C:Program FilesGPL MPEG Decoder
[2009/11/19 09:09:04 | 000,000,000 | ---D | M] -- C:Program FilesHandBrake
[2010/05/01 13:41:35 | 000,000,000 | ---D | M] -- C:Program FilesiCopyExpert
[2010/05/17 14:53:23 | 000,000,000 | ---D | M] -- C:Program FilesIncrediMail
[2009/12/13 08:46:36 | 000,000,000 | -H-D | M] -- C:Program FilesInstallShield Installation Information
[2009/02/08 11:39:47 | 000,000,000 | ---D | M] -- C:Program FilesIntel
[2006/08/10 01:25:44 | 000,000,000 | ---D | M] -- C:Program FilesInterActual
[2009/12/21 10:15:57 | 000,000,000 | ---D | M] -- C:Program FilesInternet Explorer
[2010/05/17 13:09:59 | 000,000,000 | ---D | M] -- C:Program FilesiPod
[2010/05/17 13:11:04 | 000,000,000 | ---D | M] -- C:Program FilesiTunes
[2009/03/13 06:36:02 | 000,000,000 | ---D | M] -- C:Program FilesiWin.com
[2010/03/25 10:07:11 | 000,000,000 | ---D | M] -- C:Program FilesJava
[2010/02/12 18:43:04 | 000,000,000 | ---D | M] -- C:Program FilesLibUSB-Win32
[2009/03/18 14:08:34 | 000,000,000 | ---D | M] -- C:Program FilesLittleFighter2
[2010/03/25 13:45:38 | 000,000,000 | ---D | M] -- C:Program FilesMalwarebytes' Anti-Malware
[2009/02/11 02:21:10 | 000,000,000 | ---D | M] -- C:Program FilesMessenger
[2010/02/16 12:10:11 | 000,000,000 | ---D | M] -- C:Program FilesMessenger Plus! Live
[2009/02/08 11:32:40 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft
[2009/12/21 22:43:15 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft ActiveSync
[2009/02/08 16:03:31 | 000,000,000 | ---D | M] -- C:Program Filesmicrosoft frontpage
[2009/04/14 09:09:50 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft Office
[2006/08/10 01:28:46 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft Plus! Digital Media Edition
[2006/08/10 01:28:48 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft Plus! Photo Story 2 LE
[2010/06/07 12:31:07 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft Silverlight
[2009/02/17 14:41:40 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft SQL Server Compact Edition
[2009/02/17 14:42:52 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft Sync Framework
[2009/02/08 16:05:21 | 000,000,000 | ---D | M] -- C:Program FilesMicrosoft Visual Studio
[2010/05/01 13:40:07 | 000,000,000 | ---D | M] -- C:Program FilesMorpheus Music
[2010/03/10 04:04:40 | 000,000,000 | ---D | M] -- C:Program FilesMovie Maker
[2009/08/07 23:41:08 | 000,000,000 | ---D | M] -- C:Program FilesMozilla Firefox
[2009/08/08 03:07:44 | 000,000,000 | ---D | M] -- C:Program FilesMSBuild
[2009/04/14 09:09:31 | 000,000,000 | ---D | M] -- C:Program FilesMSECache
[2009/02/11 12:00:34 | 000,000,000 | ---D | M] -- C:Program FilesMSN
[2010/05/11 08:45:51 | 000,000,000 | ---D | M] -- C:Program FilesMSN Games
[2004/08/10 11:01:24 | 000,000,000 | ---D | M] -- C:Program FilesMSN Gaming Zone
[2009/04/12 12:16:36 | 000,000,000 | ---D | M] -- C:Program FilesMSXML 4.0
[2009/08/08 03:01:13 | 000,000,000 | ---D | M] -- C:Program FilesMSXML 6.0
[2009/02/13 08:24:20 | 000,000,000 | ---D | M] -- C:Program FilesMUSICMATCH
[2004/08/10 11:02:28 | 000,000,000 | ---D | M] -- C:Program FilesNetMeeting
[2010/03/18 15:39:03 | 000,000,000 | ---D | M] -- C:Program FilesOberon Media
[2004/08/10 11:01:34 | 000,000,000 | ---D | M] -- C:Program FilesOnline Services
[2009/12/21 12:54:29 | 000,000,000 | ---D | M] -- C:Program FilesOpera
[2010/05/12 03:01:26 | 000,000,000 | ---D | M] -- C:Program FilesOutlook Express
[2009/03/21 16:52:58 | 000,000,000 | ---D | M] -- C:Program FilesParadox Interactive
[2010/05/17 14:53:46 | 000,000,000 | ---D | M] -- C:Program FilesPhotoMail Maker
[2009/12/24 14:02:58 | 000,000,000 | ---D | M] -- C:Program FilesPhotoViewer
[2009/03/15 18:23:35 | 000,000,000 | ---D | M] -- C:Program FilesPinnacle
[2010/03/25 13:17:09 | 000,000,000 | ---D | M] -- C:Program FilesQuickFreedom
[2010/04/05 13:12:38 | 000,000,000 | ---D | M] -- C:Program FilesQuickTime
[2006/08/10 01:26:25 | 000,000,000 | ---D | M] -- C:Program FilesReal
[2009/02/24 16:20:16 | 000,000,000 | ---D | M] -- C:Program FilesRed Kawa
[2009/08/08 03:07:24 | 000,000,000 | ---D | M] -- C:Program FilesReference Assemblies
[2009/02/08 17:58:42 | 000,000,000 | ---D | M] -- C:Program FilesScanSoft
[2009/12/20 22:59:55 | 000,000,000 | ---D | M] -- C:Program FilesSD EnterNET
[2006/08/10 01:33:46 | 000,000,000 | ---D | M] -- C:Program FilesSearchAssist
[2009/12/21 12:57:49 | 000,000,000 | ---D | M] -- C:Program FilesSpybot - Search & Destroy
[2010/03/25 11:04:43 | 000,000,000 | ---D | M] -- C:Program FilesSun
[2010/03/25 11:04:43 | 000,000,000 | ---D | M] -- C:Program FilesSun(2)
[2009/02/09 07:00:51 | 000,000,000 | ---D | M] -- C:Program FilesTransCore Link Logistics Corporation
[2009/12/20 23:58:40 | 000,000,000 | ---D | M] -- C:Program FilesTrendMicro
[2009/02/10 07:59:16 | 000,000,000 | -H-D | M] -- C:Program FilesUninstall Information
[2006/08/10 01:30:01 | 000,000,000 | ---D | M] -- C:Program FilesWebCyberCoach
[2009/11/27 15:47:56 | 000,000,000 | ---D | M] -- C:Program FilesWebEx
[2009/11/10 10:30:40 | 000,000,000 | ---D | M] -- C:Program FilesWindows Live
[2009/02/08 11:32:21 | 000,000,000 | ---D | M] -- C:Program FilesWindows Live SkyDrive
[2010/03/18 17:40:20 | 000,000,000 | ---D | M] -- C:Program FilesWindows Media Connect 2
[2010/03/18 21:03:21 | 000,000,000 | ---D | M] -- C:Program FilesWindows Media Player
[2004/08/10 11:01:16 | 000,000,000 | ---D | M] -- C:Program FilesWindows NT
[2009/11/10 11:53:45 | 000,000,000 | ---D | M] -- C:Program FilesWindows Sidebar
[2009/02/08 11:39:48 | 000,000,000 | ---D | M] -- C:Program FilesWordPerfect Office 12
[2004/08/10 11:04:18 | 000,000,000 | ---D | M] -- C:Program Filesxerox

< %appdata%*.* >
[2009/06/08 22:06:14 | 000,002,528 | ---- | M] () -- C:Documents and SettingsCelesteApplication Data$_hpcst$.hpc
[2004/08/10 10:57:42 | 000,000,062 | -HS- | M] () -- C:Documents and SettingsCelesteApplication Datadesktop.ini
[2009/03/24 06:46:44 | 000,012,358 | ---- | M] () -- C:Documents and SettingsCelesteApplication DataPFP120JCM.{PB
[2009/03/24 06:46:44 | 000,061,678 | ---- | M] () -- C:Documents and SettingsCelesteApplication DataPFP120JPR.{PB


< MD5 for: AGP440.SYS >
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:i386sp2.cab:AGP440.sys
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:WINDOWSDriver Cachei386sp2.cab:AGP440.sys
[2008/04/13 11:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:WINDOWSSoftwareDistributionDownloade9500597a78495f397efb821e37bf356agp440.sys
[2004/08/03 21:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:i386AGP440.SYS
[2004/08/03 21:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:WINDOWSsystem32driversAGP440.SYS

< MD5 for: ATAPI.SYS >
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:i386sp2.cab:atapi.sys
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:WINDOWSDriver Cachei386sp2.cab:atapi.sys
[2008/04/13 11:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:WINDOWSSoftwareDistributionDownloade9500597a78495f397efb821e37bf356atapi.sys
[2004/08/03 20:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:i386atapi.sys
[2004/08/03 20:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:WINDOWSsystem32dllcacheatapi.sys
[2004/08/03 20:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:WINDOWSsystem32driversatapi.sys
[2004/08/03 20:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:WINDOWSsystem32ReinstallBackups005DriverFilesi386atapi.sys

< MD5 for: DISK.SYS >
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:i386sp2.cab:disk.sys
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:WINDOWSDriver Cachei386sp2.cab:disk.sys
[2004/08/04 03:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:i386disk.sys
[2004/08/04 03:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:WINDOWSsystem32driversdisk.sys
[2008/04/13 11:40:47 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:WINDOWSSoftwareDistributionDownloade9500597a78495f397efb821e37bf356disk.sys

< MD5 for: EVENTLOG.DLL >
[2008/04/13 17:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:WINDOWSSoftwareDistributionDownloade9500597a78495f397efb821e37bf356eventlog.dll
[2004/08/04 03:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:WINDOWSsystem32eventlog.dll
[2004/08/04 03:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:i386eventlog.dll

< MD5 for: NETLOGON.DLL >
[2008/04/13 17:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:WINDOWSSoftwareDistributionDownloade9500597a78495f397efb821e37bf356netlogon.dll
[2009/02/06 11:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:WINDOWSsystem32dllcachenetlogon.dll
[2009/02/06 11:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:WINDOWSsystem32netlogon.dll
[2004/08/04 03:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:i386netlogon.dll
[2004/08/04 03:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:WINDOWS$NtUninstallKB968389$netlogon.dll

< MD5 for: SCECLI.DLL >
[2004/08/04 03:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:i386scecli.dll
[2004/08/04 03:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:WINDOWSsystem32scecli.dll
[2008/04/13 17:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:WINDOWSSoftwareDistributionDownloade9500597a78495f397efb821e37bf356scecli.dll

< MD5 for: USBSTOR.SYS >
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:i386sp2.cab:usbstor.sys
[2004/08/04 03:00:00 | 018,738,937 | ---- | M] () .cab file -- C:WINDOWSDriver Cachei386sp2.cab:usbstor.sys
[2004/08/03 22:08:48 | 000,026,496 | ---- | M] (Microsoft Corporation) MD5=6CD7B22193718F1D17A47A1CD6D37E75 -- C:i386usbstor.sys
[2004/08/03 22:08:48 | 000,026,496 | ---- | M] (Microsoft Corporation) MD5=6CD7B22193718F1D17A47A1CD6D37E75 -- C:WINDOWSsystem32dllcacheusbstor.sys
[2004/08/03 22:08:48 | 000,026,496 | ---- | M] (Microsoft Corporation) MD5=6CD7B22193718F1D17A47A1CD6D37E75 -- C:WINDOWSsystem32driversUSBSTOR.SYS
[2008/04/13 11:45:38 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089EAA1D922E0C5801A9 -- C:WINDOWSSoftwareDistributionDownloade9500597a78495f397efb821e37bf356usbstor.sys

< HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionWindowsUpdateAuto UpdateResultsInstall|LastSuccessTime /rs >
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionWindowsUpdateAuto UpdateResultsInstall\LastSuccessTime: 2010-06-04 10:01:41

< >

< >

========== Alternate Data Streams ==========

@Alternate Data Stream - 146 bytes -> C:Documents and SettingsAll UsersApplication DataTEMP:5466F106
@Alternate Data Stream - 144 bytes -> C:Documents and SettingsAll UsersApplication DataTEMP:CE7C61DF
@Alternate Data Stream - 132 bytes -> C:Documents and SettingsAll UsersApplication DataTEMP:6A5004EB
@Alternate Data Stream - 124 bytes -> C:Documents and SettingsAll UsersApplication DataTEMP:CF5C4195
@Alternate Data Stream - 121 bytes -> C:Documents and SettingsAll UsersApplication DataTEMP:2CFBE2D1
@Alternate Data Stream - 104 bytes -> C:Documents and SettingsAll UsersApplication DataTEMP:B7A22351
@Alternate Data Stream - 101 bytes -> C:Documents and SettingsAll UsersApplication DataTEMP:5E196FE2
< End of report >

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Tue Jun 08, 2010 3:32 pm

OTL EXTRAS :

OTL Extras logfile created on: 06/08/2010 08:14:13 AM - Run 1
OTL by OldTimer - Version 3.2.5.3 Folder = C:Documents and SettingsCelesteDesktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18372)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: MM/dd/yyyy

510.00 Mb Total Physical Memory | 176.00 Mb Available Physical Memory | 34.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 50.00% Paging File free
Paging file location(s): C:pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:WINDOWS | %ProgramFiles% = C:Program Files
Drive C: | 71.46 Gb Total Space | 41.64 Gb Free Space | 58.28% Space Free | Partition Type: NTFS
Drive D: | 657.31 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: D2K6VLB1
Current User Name: Celeste
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINESOFTWAREClasses]

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINESOFTWAREClassesshell[command]command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:Program FilesMicrosoft OfficeOfficemsohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:Program FilesMicrosoft OfficeOfficemsohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%system32rundll32.exe %SystemRoot%system32shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoring]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringAhnlabAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringKasperskyAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringMcAfeeAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringMcAfeeFirewall]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringPandaAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringPandaFirewall]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringSophosAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringSymantecAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringSymantecFirewall]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringTinyFirewall]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringTrendAntiVirus]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringTrendFirewall]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringZoneLabsFirewall]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyDomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyDomainProfileGloballyOpenPortsList]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyStandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyStandardProfileGloballyOpenPortsList]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyDomainProfileAuthorizedApplicationsList]
"C:Program FilesWindows LiveSyncWindowsLiveSync.exe" = C:Program FilesWindows LiveSyncWindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyStandardProfileAuthorizedApplicationsList]
"C:Program FilesIncrediMailbinImApp.exe" = C:Program FilesIncrediMailbinImApp.exe:*:Enabled:IncrediMail -- (IncrediMail, Ltd.)
"C:Program FilesIncrediMailbinIncMail.exe" = C:Program FilesIncrediMailbinIncMail.exe:*:Enabled:IncrediMail -- (IncrediMail, Ltd.)
"C:Program FilesIncrediMailbinImpCnt.exe" = C:Program FilesIncrediMailbinImpCnt.exe:*:Enabled:IncrediMail -- (IncrediMail, Ltd.)
"C:Program FilesTransCore Link Logistics CorporationLoadLink Net StartLoadLinkNetStart.exe" = C:Program FilesTransCore Link Logistics CorporationLoadLink Net StartLoadLinkNetStart.exe:*:Enabled:LoadLink Net Start -- ( )
"C:Program FilesLimeWireLimeWire.exe" = C:Program FilesLimeWireLimeWire.exe:*:Enabled:LimeWire -- File not found
"C:Program FilesPinnacleVideoSpinProgramsRM.exe" = C:Program FilesPinnacleVideoSpinProgramsRM.exe:*:Enabled:Render Manager -- File not found
"C:Program FilesPinnacleVideoSpinProgramsumi.exe" = C:Program FilesPinnacleVideoSpinProgramsumi.exe:*:Enabled:umi -- File not found
"C:Program FilesPinnacleVideoSpinProgramsVideoSpin.exe" = C:Program FilesPinnacleVideoSpinProgramsVideoSpin.exe:*:Enabled:Pinnacle VideoSpin -- File not found
"C:Program FilesWindows LiveSyncWindowsLiveSync.exe" = C:Program FilesWindows LiveSyncWindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
"C:Program FilesAVGAVG9avgupd.exe" = C:Program FilesAVGAVG9avgupd.exe:*:Enabled:avgupd.exe -- (AVG Technologies CZ, s.r.o.)
"C:Program FilesAVGAVG9avgnsx.exe" = C:Program FilesAVGAVG9avgnsx.exe:*:Enabled:avgnsx.exe -- (AVG Technologies CZ, s.r.o.)
"C:Program FilesOperaopera.exe" = C:Program FilesOperaopera.exe:*:Enabled:Opera Internet Browser -- File not found
"C:Documents and SettingsCelesteLocal SettingsTemp7zS2C.tmpSymNRT.exe" = C:Documents and SettingsCelesteLocal SettingsTemp7zS2C.tmpSymNRT.exe:*:Enabled:Norton Removal Tool -- File not found
"C:Program FilesMorpheus MusicMorpheus Music.exe" = C:Program FilesMorpheus MusicMorpheus Music.exe:*:Enabled:Morpheus Music -- File not found
"C:Program FilesiTunesiTunes.exe" = C:Program FilesiTunesiTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"C:Program FilesJavajdk1.6.0_17jrebinjavaw.exe" = C:Program FilesJavajdk1.6.0_17jrebinjavaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
"C:SunSDKjdkbinjava.exe" = C:SunSDKjdkbinjava.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstall]
"{00000409-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium
"{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}" = Microsoft Plus! Photo Story 2 LE
"{139E303E-1050-497F-98B1-9AE87B15C463}" = Windows Live Family Safety
"{15382D89-6EF6-4D21-9484-B500F2B10E46}" = PhotoMail Maker
"{17334AAF-C9E7-483B-9F45-E3FCAF07FFA7}" = Intel(R) PROSet for Wired Connections
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{18DB3375-0649-4EA3-959A-44F1ACD278BA}" = IncrediMail
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 17
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{32A3A4F4-B792-11D6-A78A-00B0D0160170}" = Java(TM) SE Development Kit 6 Update 17
"{33BB4982-DC52-4886-A03B-F4C5C80BEE89}" = Windows Media Player 10
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}" = URL Assistant
"{43CAC9A1-1993-4F65-9096-7C9AFC2BBF54}" = Dell CinePlayer
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{5905F42D-3F5F-4916-ADA6-94A3646AEE76}" = Dell Driver Reset Tool
"{5B6BE547-21E2-49CA-B2E2-6A5F470593B1}" = Sonic Activation Module
"{5ECB3A3C-980B-4D12-9724-25DCB07A1F47}" = iTunes
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}" = Microsoft Plus! Digital Media Edition Installer
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74F7662C-B1DB-489E-A8AC-07A06B24978B}" = Dell System Restore
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}" = DellSupport
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{870815CA-6B60-47B6-88DD-A67F42D2F03E}" = GPL MPEG-1/2 DirectShow Decoder Filter
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A253629-0511-4854-8B4E-46E57E66005C}" = Bonjour
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Extreme Graphics 2 Driver
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{926C96FB-9D0A-4504-8000-C6D3A4A3118E}" = Java DB 10.4.2.1
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{995F1E2E-F542-4310-8E1D-9926F5A279B3}" = Windows Live Toolbar
"{9DE1BE03-AFE2-4CDB-BFEB-D06D736CD01A}" = Apple Mobile Device Support
"{A17EABB6-D0C6-44E5-820C-72DC7F495064}" = PaperPort
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.2
"{AF19F291-F22F-4798-9662-525305AE9E48}" = WordPerfect Office 12
"{B702CCCE-3176-4DBF-B932-D1B8F402F330}" = Digital Content Portal
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D6C75F0B-3BC1-4FC9-B8C5-3F7E8ED059CA}" = Windows Live Photo Gallery
"{D83BD5E2-5AF4-49F6-B5C1-484A9760E73D}" = Brother MFL-Pro Suite
"{D9CC04FD-4EAE-4116-8637-3EFB8150FCCC}" = LoadLink Net Start
"{DF6A589A-7A1A-430C-9FF2-A0BDB42669DC}" = Search Assist
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{ECA1A3B6-898F-4DCE-9F04-714CF3BA126B}" = Adobe Flash Player 10 Plugin
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F9ECABC4-A8D4-11D8-AF05-0050708557B4}" = eMedia Starter Guitar Lessons
"ActiveTouchMeetingClient" = WebEx
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AVG9Uninstall" = AVG Free 9.0
"AviSynth" = AviSynth 2.5
"CCleaner" = CCleaner
"Dell Digital Jukebox Driver" = Dell Digital Jukebox Driver
"DivX Setup.divx.com" = DivX Setup
"Google Updater" = Google Updater
"GoToAssist" = GoToAssist Corporate
"iCopyExpert_is1" = iCopyExpert 3.1.2
"ie8" = Windows Internet Explorer 8 Release Candidate 1
"IncrediMail" = IncrediMail 2.0
"Java Platform, Enterprise Edition 5 SDK" = Java Platform, Enterprise Edition 5 SDK
"LibUSB-Win32_is1" = LibUSB-Win32-0.1.12.1
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Messenger Plus! Live" = Messenger Plus! Live
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSNINST" = MSN
"PhotoMail" = PhotoMail Maker
"PROSet" = Intel(R) PRO Network Adapters and Drivers
"RealPlayer 6.0" = RealPlayer Basic
"Videora iPod Converter" = Videora iPod Converter 4.06
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"WebCyberCoach_wtrb" = WebCyberCoach 3.2 Dell
"WIC" = Windows Imaging Component
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WinLiveSuite_Wave3" = Windows Live Essentials
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionUninstall]
"Move Networks Player - IE" = Move Networks Media Player for Internet Explorer

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 216: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 228: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 392: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 404: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/07/2010 03:31:34 PM | Computer Name = D2K6VLB1 | Source = JavaQuickStarterService | ID = 1
Description =

Error - 06/07/2010 04:27:04 PM | Computer Name = D2K6VLB1 | Source = EventSystem | ID = 4609
Description = The COM+ Event System detected a bad return code during its internal
processing. HRESULT was 8007043C from line 44 of d:comxp_sp2comcom1xsrceventstier1eventsystemobj.cpp.
Please contact Microsoft Product Support Services to report this erro

Error - 06/07/2010 04:44:37 PM | Computer Name = D2K6VLB1 | Source = JavaQuickStarterService | ID = 1
Description =

Error - 06/07/2010 10:50:45 PM | Computer Name = D2K6VLB1 | Source = JavaQuickStarterService | ID = 1
Description =

Error - 06/08/2010 12:16:15 AM | Computer Name = D2K6VLB1 | Source = Application Hang | ID = 1002
Description = Hanging application CCleaner.exe, version 2.25.0.1025, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

[ Application Events ]
Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 216: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 228: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 392: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 404: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/06/2010 10:16:53 PM | Computer Name = D2K6VLB1 | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)

Error - 06/07/2010 03:31:34 PM | Computer Name = D2K6VLB1 | Source = JavaQuickStarterService | ID = 1
Description =

Error - 06/07/2010 04:27:04 PM | Computer Name = D2K6VLB1 | Source = EventSystem | ID = 4609
Description = The COM+ Event System detected a bad return code during its internal
processing. HRESULT was 8007043C from line 44 of d:comxp_sp2comcom1xsrceventstier1eventsystemobj.cpp.
Please contact Microsoft Product Support Services to report this erro

Error - 06/07/2010 04:44:37 PM | Computer Name = D2K6VLB1 | Source = JavaQuickStarterService | ID = 1
Description =

Error - 06/07/2010 10:50:45 PM | Computer Name = D2K6VLB1 | Source = JavaQuickStarterService | ID = 1
Description =

Error - 06/08/2010 12:16:15 AM | Computer Name = D2K6VLB1 | Source = Application Hang | ID = 1002
Description = Hanging application CCleaner.exe, version 2.25.0.1025, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

[ System Events ]
Error - 06/07/2010 04:26:53 PM | Computer Name = D2K6VLB1 | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 06/07/2010 04:27:04 PM | Computer Name = D2K6VLB1 | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 06/07/2010 04:27:44 PM | Computer Name = D2K6VLB1 | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
AvgLdx86 AvgMfx86 Fips intelppm

Error - 06/07/2010 04:43:24 PM | Computer Name = D2K6VLB1 | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 06/07/2010 04:45:29 PM | Computer Name = D2K6VLB1 | Source = Service Control Manager | ID = 7024
Description = The Java Quick Starter service terminated with service-specific error
1 (0x1).

Error - 06/07/2010 04:56:00 PM | Computer Name = D2K6VLB1 | Source = Dhcp | ID = 1002
Description = The IP address lease 96.48.100.83 for the Network Card with network
address 001676AFE5E8 has been denied by the DHCP server 0.0.0.0 (The DHCP Server
sent a DHCPNACK message).

Error - 06/07/2010 05:39:40 PM | Computer Name = D2K6VLB1 | Source = Dhcp | ID = 1002
Description = The IP address lease 192.168.2.2 for the Network Card with network
address 001676AFE5E8 has been denied by the DHCP server 0.0.0.0 (The DHCP Server
sent a DHCPNACK message).

Error - 06/07/2010 10:51:07 PM | Computer Name = D2K6VLB1 | Source = Service Control Manager | ID = 7024
Description = The Java Quick Starter service terminated with service-specific error
1 (0x1).

Error - 06/07/2010 10:51:07 PM | Computer Name = D2K6VLB1 | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
IntelIde

Error - 06/08/2010 12:16:58 AM | Computer Name = D2K6VLB1 | Source = DCOM | ID = 10010
Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
with DCOM within the required timeout.


< End of report >

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by Belahzur on Tue Jun 08, 2010 5:32 pm

Please re-open Malwarebytes, click the Update tab, and click Check for Updates. Then, click the Scanner tab, select Perform Quick Scan, and press Scan.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Status :
Online
Offline

Posts : 34916
Joined : 2008-08-03
Gender : Male
OS : XP SP3 Media Centre

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Tue Jun 08, 2010 5:59 pm

Malwarebytes' Anti-Malware 1.46
[You must be registered and logged in to see this link.]

Database version: 4052

Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18372

06/08/2010 10:54:25 AM
mbam-log-2010-06-08 (10-54-25).txt

Scan type: Quick scan
Objects scanned: 124329
Time elapsed: 13 minute(s), 8 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Wed Jun 09, 2010 4:01 pm

I hope this is correct ? did I mess up ?

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by Belahzur on Wed Jun 09, 2010 11:46 pm

Did you update it? the log says it's still an old database you have there.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Status :
Online
Offline

Posts : 34916
Joined : 2008-08-03
Gender : Male
OS : XP SP3 Media Centre

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Thu Jun 10, 2010 12:51 am

I did update it or so I thought..I will try again !

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Thu Jun 10, 2010 4:43 pm

I am doing this again right now...I have talked to my ISP ( shaw ) and she said to run scan through their website..but it wont truly start on this computer but did on my laptop and other desktop used for wow
So I am now strongly assuming I have a problem...so I am scanning and will send this to you soon as it is done.

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Thu Jun 10, 2010 4:58 pm

Malwarebytes' Anti-Malware 1.46
[You must be registered and logged in to see this link.]

Database version: 4186

Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18372

06/10/2010 09:53:57 AM
mbam-log-2010-06-10 (09-53-57).txt

Scan type: Quick scan
Objects scanned: 132975
Time elapsed: 15 minute(s), 38 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Thu Jun 10, 2010 8:19 pm

well this computer ( the one I was most worried about and the one the malware up there comes from ) is cleared by McAffe online virus scanner which Shaw had me do as theirs didn't want to work on here..

My other desk top was fine...ran Shaw Secure scan TWICE....( the wow almost only computer )

And my laptop is still going...been going for almost 3 hours...on the Shaw Secure.

I just want you to know..so I am not blindly leading anyone !

Thanks

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by Belahzur on Thu Jun 10, 2010 9:13 pm

Hello.
Okay, still having problems now?


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Status :
Online
Offline

Posts : 34916
Joined : 2008-08-03
Gender : Male
OS : XP SP3 Media Centre

View user profile

Back to top Go down

Re: Email sending blocked ISP server cant help

Post by celda on Thu Jun 10, 2010 10:44 pm

I was when I wrote that...just got a call from ISP and said another three business days. wasn't happy and then bang I got a test email back and it seems to be working just fine !

Thank you again anyway for being there to help

celda
Novice
Novice

Status :
Online
Offline

Posts : 37
Joined : 2009-12-22
OS : windows xp

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum