- OTL Extras logfile created on: 23/01/2011 4:11:07 PM - Run 1
- OTL by OldTimer - Version 3.2.20.4 Folder = C:\Documents and Settings\user\My Documents\Downloads
- Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
- Internet Explorer (Version = 8.0.6001.18702)
- Locale: 00000C09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
- 2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 67.00% Memory free
- 4.00 Gb Paging File | 3.00 Gb Available in Paging File | 86.00% Paging File free
- Paging file location(s): C:\pagefile.sys 0 0 [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
- Drive C: | 149.04 Gb Total Space | 134.35 Gb Free Space | 90.15% Space Free | Partition Type: NTFS
- Computer Name: KYLES | User Name: user | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: Current user | Quick Scan
- Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
- [color=#E56717]========== File Associations ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
- .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
- [color=#E56717]========== Shell Spawning ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- exefile [open] -- "%1" %*
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Key error.
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Key error.
- Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
- Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- [color=#E56717]========== Security Center Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- "FirstRunDisabled" = 1
- "AntiVirusDisableNotify" = 0
- "FirewallDisableNotify" = 0
- "UpdatesDisableNotify" = 0
- "AntiVirusOverride" = 1
- "FirewallOverride" = 0
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
- [color=#E56717]========== System Restore Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
- "DisableSR" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
- "Start" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
- "Start" = 2
- [color=#E56717]========== Firewall Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
- "EnableFirewall" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
- "EnableFirewall" = 1
- [color=#E56717]========== Authorized Applications List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\AVG\AVG10\avgdiagex.exe" = C:\Program Files\AVG\AVG10\avgdiagex.exe:*:Enabled:AVG Diagnostics 2011 -- (AVG Technologies CZ, s.r.o.)
- "C:\Program Files\AVG\AVG10\avgnsx.exe" = C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Online Shield -- (AVG Technologies CZ, s.r.o.)
- "C:\Program Files\AVG\AVG10\avgmfapx.exe" = C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:AVG Installer -- (AVG Technologies CZ, s.r.o.)
- "C:\Program Files\AVG\AVG10\avgam.exe" = C:\Program Files\AVG\AVG10\avgam.exe:*:Enabled:AVG Alert manager -- (AVG Technologies CZ, s.r.o.)
- "C:\Program Files\AVG\AVG10\avgemcx.exe" = C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Personal E-mail Scanner -- (AVG Technologies CZ, s.r.o.)
- [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{00BA866C-F2A2-4BB9-A308-3DFA695B6F7C}" = Java DB 10.5.3.0
- "{04E7A3BB-DB38-481C-A809-35FA60C78EDF}" = AVG 2011
- "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
- "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
- "{255FC1CF-2620-4B64-BE02-79B9E609BB3D}" = Webzen Game Starter
- "{26A24AE4-039D-4CA4-87B4-2F83216023FF}" = Java(TM) 6 Update 23
- "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
- "{32A3A4F4-B792-11D6-A78A-00B0D0160230}" = Java(TM) SE Development Kit 6 Update 23
- "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
- "{43FFE159-3199-4188-A1CD-629166AD1033}" = Nero 7 Ultra Edition
- "{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
- "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
- "{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials
- "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
- "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
- "{616FEB8D-CA05-49F4-A155-B74F8DB38B7A}_is1" = DVDFab version 8.0.2.2
- "{70014586-7BBA-4A92-A610-CDC896C48F8F}" = NETGEAR WG311v3 PCI Adapter
- "{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
- "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
- "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
- "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
- "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
- "{AC76BA86-7AD7-1033-7B44-AA0000000001}" = Adobe Reader X
- "{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}" = REALTEK GbE & FE Ethernet PCI NIC Driver
- "{B57EAFF2-D6EE-4C6C-9175-ED9F17BFC1BC}" = Windows Live Messenger
- "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
- "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
- "{E6158D07-2637-4ECF-B576-37C489669174}" = Windows Live Call
- "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
- "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
- "{F4C68898-EBA5-46A9-82B3-2D30426086BF}" = AVG 2011
- "{F57CEB84-3D22-4657-8EDA-F8CD5217B83E}" = Mu
- "Adobe AIR" = Adobe AIR
- "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
- "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
- "AVG" = AVG 2011
- "CCleaner" = CCleaner
- "HDMI" = Intel(R) Graphics Media Accelerator Driver
- "ie8" = Windows Internet Explorer 8
- "InstallShield_{70014586-7BBA-4A92-A610-CDC896C48F8F}" = NETGEAR WG311v3 PCI Adapter
- "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
- "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
- "Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
- "Windows Media Format Runtime" = Windows Media Format Runtime
- "WinLiveSuite_Wave3" = Windows Live Essentials
- "WinRAR archiver" = WinRAR 4.00 beta 4 (32-bit)
- [color=#E56717]========== Last 10 Event Log Errors ==========[/color]
- [ Application Events ]
- Error - 18/01/2011 2:29:07 AM | Computer Name = USER-716C00FC7D | Source = Application Error | ID = 1000
- Description = Faulting application WinDomainlogon.exe, version 3.2.34.30601, faulting
- module WinDomainlogon.exe, version 3.2.34.30601, fault address 0x00032255.
- Error - 18/01/2011 3:16:30 AM | Computer Name = USER-716C00FC7D | Source = Application Error | ID = 1004
- Description = Faulting application WinDomainlogon.exe, version 3.2.34.30601, faulting
- module WinDomainlogon.exe, version 3.2.34.30601, fault address 0x00032255.
- Error - 19/01/2011 10:12:45 AM | Computer Name = USER-716C00FC7D | Source = Application Hang | ID = 1002
- Description = Hanging application msnmsgr.exe, version 14.0.8117.416, hang module
- hungapp, version 0.0.0.0, hang address 0x00000000.
- Error - 20/01/2011 3:24:55 PM | Computer Name = USER-716C00FC7D | Source = Application Error | ID = 1000
- Description = Faulting application WinDomainlogon.exe, version 3.2.34.30601, faulting
- module WinDomainlogon.exe, version 3.2.34.30601, fault address 0x00032255.
- Error - 22/01/2011 2:18:50 AM | Computer Name = KYLES | Source = Automatic LiveUpdate Scheduler | ID = 101
- Description =
- Error - 22/01/2011 2:22:03 AM | Computer Name = KYLES | Source = Application Error | ID = 1000
- Description = Faulting application WinDomainlogon.exe, version 3.2.34.30601, faulting
- module WinDomainlogon.exe, version 3.2.34.30601, fault address 0x00032255.
- Error - 22/01/2011 3:59:11 AM | Computer Name = KYLES | Source = Application Error | ID = 1000
- Description = Faulting application WinDomainlogon.exe, version 3.2.34.30601, faulting
- module WinDomainlogon.exe, version 3.2.34.30601, fault address 0x00032255.
- Error - 22/01/2011 8:56:00 PM | Computer Name = KYLES | Source = Application Error | ID = 1004
- Description = Faulting application WinDomainlogon.exe, version 3.2.34.30601, faulting
- module WinDomainlogon.exe, version 3.2.34.30601, fault address 0x00032255.
- Error - 22/01/2011 8:56:02 PM | Computer Name = KYLES | Source = Application Error | ID = 1000
- Description = Faulting application WinDomainlogon.exe, version 3.2.34.30601, faulting
- module WinDomainlogon.exe, version 3.2.34.30601, fault address 0x00032255.
- Error - 22/01/2011 10:45:21 PM | Computer Name = KYLES | Source = Application Error | ID = 1000
- Description = Faulting application main.exe, version 1.3.38.0, faulting module ,
- version 0.0.0.0, fault address 0x00000000.
- [ System Events ]
- Error - 21/12/2010 10:37:13 PM | Computer Name = USER-716C00FC7D | Source = Dhcp | ID = 1002
- Description = The IP address lease 10.0.0.7 for the Network Card with network address
- 001D7D3232A0 has been denied by the DHCP server 10.0.0.138 (The DHCP Server sent
- a DHCPNACK message).
- Error - 22/12/2010 5:53:16 PM | Computer Name = USER-716C00FC7D | Source = Dhcp | ID = 1002
- Description = The IP address lease 10.0.0.6 for the Network Card with network address
- 001D7D3232A0 has been denied by the DHCP server 10.0.0.138 (The DHCP Server sent
- a DHCPNACK message).
- Error - 18/01/2011 7:17:50 PM | Computer Name = USER-716C00FC7D | Source = sr | ID = 1
- Description = The System Restore filter encountered the unexpected error '0xC0000243'
- while processing the file 'SrtETmp' on the volume 'HarddiskVolume1'. It has stopped
- monitoring the volume.
- Error - 19/01/2011 10:14:02 AM | Computer Name = USER-716C00FC7D | Source = DCOM | ID = 10010
- Description = The server {C2BFE331-6739-4270-86C9-493D9A04CD38} did not register
- with DCOM within the required timeout.
- Error - 20/01/2011 3:20:44 PM | Computer Name = USER-716C00FC7D | Source = sr | ID = 1
- Description = The System Restore filter encountered the unexpected error '0xC0000243'
- while processing the file 'SrtETmp' on the volume 'HarddiskVolume1'. It has stopped
- monitoring the volume.
- Error - 21/01/2011 7:42:04 AM | Computer Name = KYLES | Source = sr | ID = 1
- Description = The System Restore filter encountered the unexpected error '0xC0000243'
- while processing the file 'SrtETmp' on the volume 'HarddiskVolume1'. It has stopped
- monitoring the volume.
- Error - 21/01/2011 8:39:45 AM | Computer Name = KYLES | Source = sr | ID = 1
- Description = The System Restore filter encountered the unexpected error '0xC0000243'
- while processing the file 'SrtETmp' on the volume 'HarddiskVolume1'. It has stopped
- monitoring the volume.
- Error - 22/01/2011 12:34:51 AM | Computer Name = KYLES | Source = sr | ID = 1
- Description = The System Restore filter encountered the unexpected error '0xC0000243'
- while processing the file 'SrtETmp' on the volume 'HarddiskVolume1'. It has stopped
- monitoring the volume.
- Error - 22/01/2011 2:18:50 AM | Computer Name = KYLES | Source = PlugPlayManager | ID = 11
- Description = The device Root\LEGACY_ERASERUTILREBOOTDRV\0000 disappeared from the
- system without first being prepared for removal.
- Error - 22/01/2011 2:18:50 AM | Computer Name = KYLES | Source = PlugPlayManager | ID = 11
- Description = The device Root\LEGACY_SYMTDI\0000 disappeared from the system without
- first being prepared for removal.
- < End of report >