Advertisement
Guest User

Untitled

a guest
Jun 1st, 2017
127
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 25.93 KB | None | 0 0
  1. OTL Extras logfile created on: 6/23/2010 10:53:27 PM - Run 1
  2. OTL by OldTimer - Version 3.2.7.0 Folder = C:\Documents and Settings\user\My Documents\Downloads
  3. Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
  4. Internet Explorer (Version = 6.0.2900.2180)
  5. Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
  6.  
  7. 1,013.00 Mb Total Physical Memory | 484.00 Mb Available Physical Memory | 48.00% Memory free
  8. 2.00 Gb Paging File | 2.00 Gb Available in Paging File | 81.00% Paging File free
  9. Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
  12. Drive C: | 108.85 Gb Total Space | 89.46 Gb Free Space | 82.19% Space Free | Partition Type: NTFS
  13. D: Drive not present or media not loaded
  14. E: Drive not present or media not loaded
  15. F: Drive not present or media not loaded
  16. G: Drive not present or media not loaded
  17. H: Drive not present or media not loaded
  18. I: Drive not present or media not loaded
  19.  
  20. Computer Name: USER-EFD7D69AF3
  21. Current User Name: user
  22. Logged in as Administrator.
  23.  
  24. Current Boot Mode: Normal
  25. Scan Mode: Current user
  26. Company Name Whitelist: Off
  27. Skip Microsoft Files: Off
  28. File Age = 30 Days
  29. Output = Standard
  30.  
  31. [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
  32.  
  33.  
  34. [color=#E56717]========== File Associations ==========[/color]
  35.  
  36. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
  37.  
  38. [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
  39. .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
  40.  
  41. [color=#E56717]========== Shell Spawning ==========[/color]
  42.  
  43. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
  44. batfile [open] -- "%1" %*
  45. cmdfile [open] -- "%1" %*
  46. comfile [open] -- "%1" %*
  47. exefile [open] -- "%1" %*
  48. htmlfile [edit] -- Reg Error: Key error.
  49. piffile [open] -- "%1" %*
  50. regfile [merge] -- Reg Error: Key error.
  51. scrfile [config] -- "%1"
  52. scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
  53. scrfile [open] -- "%1" /S
  54. txtfile [edit] -- Reg Error: Key error.
  55. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
  56. Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  57. Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
  58. Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
  59. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  60.  
  61. [color=#E56717]========== Security Center Settings ==========[/color]
  62.  
  63. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
  64. "FirstRunDisabled" = 1
  65. "AntiVirusDisableNotify" = 0
  66. "FirewallDisableNotify" = 0
  67. "UpdatesDisableNotify" = 0
  68. "AntiVirusOverride" = 0
  69. "FirewallOverride" = 0
  70.  
  71. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
  72.  
  73. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
  74.  
  75. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
  76.  
  77. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
  78.  
  79. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
  80.  
  81. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
  82.  
  83. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
  84.  
  85. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
  86.  
  87. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
  88.  
  89. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
  90.  
  91. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
  92.  
  93. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
  94.  
  95. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
  96.  
  97. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
  98.  
  99. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
  100.  
  101. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
  102.  
  103. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
  104. "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
  105. "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
  106.  
  107. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
  108.  
  109. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
  110. "1542:TCP" = 1542:TCP:*:Enabled:Realtek WPS TCP Prot
  111. "1542:UDP" = 1542:UDP:*:Enabled:Realtek WPS UDP Prot
  112. "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
  113. "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
  114.  
  115. [color=#E56717]========== Authorized Applications List ==========[/color]
  116.  
  117. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
  118. "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
  119.  
  120. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
  121. "C:\Program Files\REALTEK\8187SE Wireless LAN Utility\RtWLan.exe" = C:\Program Files\REALTEK\8187SE Wireless LAN Utility\RtWLan.exe:*:Enabled:RtWlan -- (Realtek Semiconductor Corp.)
  122. "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
  123. "C:\Program Files\ASPMonitor\ASMonitor.exe" = C:\Program Files\ASPMonitor\ASMonitor.exe:*:Enabled:System -- File not found
  124. "C:\Program Files\iMesh Applications\iMesh\iMesh.exe" = C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh -- (iMesh, Inc)
  125. "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
  126. "C:\Documents and Settings\All Users\Application Data\ee04820\SMee04_213.exe" = C:\Documents and Settings\All Users\Application Data\ee04820\SMee04_213.exe:*:Enabled:Security Master AV -- ()
  127.  
  128.  
  129. [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
  130.  
  131. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  132. "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
  133. "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
  134. "{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
  135. "{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
  136. "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
  137. "{1BD07DF4-FB06-41BA-B896-B2DA59000C96}" = Windows Live Toolbar
  138. "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
  139. "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
  140. "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
  141. "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
  142. "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
  143. "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
  144. "{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
  145. "{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
  146. "{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials
  147. "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
  148. "{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
  149. "{4DA7C45A-BE9E-4538-B233-F829D59545D1}" = REALTEK RTL8187SE Wireless LAN Driver and Utility
  150. "{5C47C8B6-77FF-4FC7-A388-66FCF9CFC24C}" = Snagit 9.1.3
  151. "{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
  152. "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
  153. "{6ADD0603-16EF-400D-9F9E-486432835002}" = OpenOffice.org 3.2
  154. "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
  155. "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
  156. "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
  157. "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
  158. "{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
  159. "{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update
  160. "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
  161. "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
  162. "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
  163. "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
  164. "{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
  165. "{B10914FD-8812-47A4-85A1-50FCDE7F1F33}" = Windows Live Sync
  166. "{B57EAFF2-D6EE-4C6C-9175-ED9F17BFC1BC}" = Windows Live Messenger
  167. "{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
  168. "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
  169. "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
  170. "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
  171. "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
  172. "{D10CB652-9332-4242-B7A9-2D61570144F7}" = Realtek Card Reader
  173. "{D92FF8EB-BD77-40AE-B68B-A6BFC6F8661D}" = Windows Live Family Safety
  174. "{E6158D07-2637-4ECF-B576-37C489669174}" = Windows Live Call
  175. "{EE39FFBD-544E-49E4-A999-6819828EAE91}" = Windows Live Photo Gallery
  176. "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
  177. "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
  178. "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
  179. "{F439D7AF-03F3-4F8E-AEC4-571BFE977C61}" = iTunes
  180. "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
  181. "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
  182. "Adobe Shockwave Player" = Adobe Shockwave Player 11.5
  183. "Fake Webcam_is1" = Fake Webcam 6.1.3
  184. "HDMI" = Intel(R) Graphics Media Accelerator Driver
  185. "iMesh" = iMesh
  186. "iMesh MediaBar" = MediaBar
  187. "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
  188. "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
  189. "Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
  190. "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
  191. "MSNINST" = MSN
  192. "NSS" = Norton Security Scan
  193. "ProgSense_is1" = ProgSense
  194. "Softonic-Eng7 Toolbar" = Softonic-Eng7 Toolbar
  195. "WIC" = Windows Imaging Component
  196. "Windows Media Format Runtime" = Windows Media Format 11 runtime
  197. "Windows Media Player" = Windows Media Player 11
  198. "Windows XP Service Pack" = Windows XP Service Pack 3
  199. "WinLiveSuite_Wave3" = Windows Live Essentials
  200. "WMFDist11" = Windows Media Format 11 runtime
  201. "wmp11" = Windows Media Player 11
  202. "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
  203.  
  204. [color=#E56717]========== Last 10 Event Log Errors ==========[/color]
  205.  
  206. [ Application Events ]
  207. Error - 6/22/2010 11:09:22 AM | Computer Name = USER-EFD7D69AF3 | Source = Application Hang | ID = 1002
  208. Description = Hanging application IEXPLORE.EXE, version 6.0.2900.2180, hang module
  209. hungapp, version 0.0.0.0, hang address 0x00000000.
  210.  
  211. [ System Events ]
  212. Error - 6/22/2010 9:06:40 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  213. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  214. with DCOM within the required timeout.
  215.  
  216. Error - 6/22/2010 9:07:15 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  217. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  218. with DCOM within the required timeout.
  219.  
  220. Error - 6/22/2010 9:07:51 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  221. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  222. with DCOM within the required timeout.
  223.  
  224. Error - 6/22/2010 9:08:26 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  225. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  226. with DCOM within the required timeout.
  227.  
  228. Error - 6/22/2010 9:09:01 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  229. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  230. with DCOM within the required timeout.
  231.  
  232. Error - 6/22/2010 9:09:37 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  233. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  234. with DCOM within the required timeout.
  235.  
  236. Error - 6/22/2010 9:10:12 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  237. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  238. with DCOM within the required timeout.
  239.  
  240. Error - 6/22/2010 9:10:47 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  241. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  242. with DCOM within the required timeout.
  243.  
  244. Error - 6/23/2010 8:16:55 AM | Computer Name = USER-EFD7D69AF3 | Source = Dhcp | ID = 1002
  245. Description = The IP address lease 192.168.1.2 for the Network Card with network
  246. address 002185B90823 has been denied by the DHCP server 0.0.0.0 (The DHCP Server
  247. sent a DHCPNACK message).
  248.  
  249. Error - 6/23/2010 5:43:48 PM | Computer Name = USER-EFD7D69AF3 | Source = Dhcp | ID = 1002
  250. Description = The IP address lease 192.168.1.3 for the Network Card with network
  251. address 002185B90823 has been denied by the DHCP server 0.0.0.0 (The DHCP Server
  252. sent a DHCPNACK message).
  253.  
  254.  
  255. < End of report >
  256.  
  257. [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
  258.  
  259.  
  260. [color=#E56717]========== File Associations ==========[/color]
  261.  
  262. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
  263.  
  264. [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
  265. .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
  266.  
  267. [color=#E56717]========== Shell Spawning ==========[/color]
  268.  
  269. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
  270. batfile [open] -- "%1" %*
  271. cmdfile [open] -- "%1" %*
  272. comfile [open] -- "%1" %*
  273. exefile [open] -- "%1" %*
  274. htmlfile [edit] -- Reg Error: Key error.
  275. piffile [open] -- "%1" %*
  276. regfile [merge] -- Reg Error: Key error.
  277. scrfile [config] -- "%1"
  278. scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
  279. scrfile [open] -- "%1" /S
  280. txtfile [edit] -- Reg Error: Key error.
  281. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
  282. Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  283. Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
  284. Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
  285. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  286.  
  287. [color=#E56717]========== Security Center Settings ==========[/color]
  288.  
  289. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
  290. "FirstRunDisabled" = 1
  291. "AntiVirusDisableNotify" = 0
  292. "FirewallDisableNotify" = 0
  293. "UpdatesDisableNotify" = 0
  294. "AntiVirusOverride" = 0
  295. "FirewallOverride" = 0
  296.  
  297. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
  298.  
  299. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
  300.  
  301. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
  302.  
  303. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
  304.  
  305. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
  306.  
  307. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
  308.  
  309. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
  310.  
  311. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
  312.  
  313. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
  314.  
  315. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
  316.  
  317. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
  318.  
  319. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
  320.  
  321. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
  322.  
  323. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
  324.  
  325. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
  326.  
  327. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
  328.  
  329. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
  330. "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
  331. "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
  332.  
  333. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
  334.  
  335. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
  336. "1542:TCP" = 1542:TCP:*:Enabled:Realtek WPS TCP Prot
  337. "1542:UDP" = 1542:UDP:*:Enabled:Realtek WPS UDP Prot
  338. "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
  339. "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
  340.  
  341. [color=#E56717]========== Authorized Applications List ==========[/color]
  342.  
  343. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
  344. "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
  345.  
  346. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
  347. "C:\Program Files\REALTEK\8187SE Wireless LAN Utility\RtWLan.exe" = C:\Program Files\REALTEK\8187SE Wireless LAN Utility\RtWLan.exe:*:Enabled:RtWlan -- (Realtek Semiconductor Corp.)
  348. "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
  349. "C:\Program Files\ASPMonitor\ASMonitor.exe" = C:\Program Files\ASPMonitor\ASMonitor.exe:*:Enabled:System -- File not found
  350. "C:\Program Files\iMesh Applications\iMesh\iMesh.exe" = C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh -- (iMesh, Inc)
  351. "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
  352. "C:\Documents and Settings\All Users\Application Data\ee04820\SMee04_213.exe" = C:\Documents and Settings\All Users\Application Data\ee04820\SMee04_213.exe:*:Enabled:Security Master AV -- ()
  353.  
  354.  
  355. [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
  356.  
  357. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  358. "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
  359. "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
  360. "{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
  361. "{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
  362. "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
  363. "{1BD07DF4-FB06-41BA-B896-B2DA59000C96}" = Windows Live Toolbar
  364. "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
  365. "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
  366. "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
  367. "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
  368. "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
  369. "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
  370. "{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
  371. "{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
  372. "{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials
  373. "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
  374. "{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
  375. "{4DA7C45A-BE9E-4538-B233-F829D59545D1}" = REALTEK RTL8187SE Wireless LAN Driver and Utility
  376. "{5C47C8B6-77FF-4FC7-A388-66FCF9CFC24C}" = Snagit 9.1.3
  377. "{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
  378. "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
  379. "{6ADD0603-16EF-400D-9F9E-486432835002}" = OpenOffice.org 3.2
  380. "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
  381. "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
  382. "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
  383. "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
  384. "{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
  385. "{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update
  386. "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
  387. "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
  388. "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
  389. "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
  390. "{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
  391. "{B10914FD-8812-47A4-85A1-50FCDE7F1F33}" = Windows Live Sync
  392. "{B57EAFF2-D6EE-4C6C-9175-ED9F17BFC1BC}" = Windows Live Messenger
  393. "{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
  394. "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
  395. "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
  396. "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
  397. "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
  398. "{D10CB652-9332-4242-B7A9-2D61570144F7}" = Realtek Card Reader
  399. "{D92FF8EB-BD77-40AE-B68B-A6BFC6F8661D}" = Windows Live Family Safety
  400. "{E6158D07-2637-4ECF-B576-37C489669174}" = Windows Live Call
  401. "{EE39FFBD-544E-49E4-A999-6819828EAE91}" = Windows Live Photo Gallery
  402. "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
  403. "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
  404. "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
  405. "{F439D7AF-03F3-4F8E-AEC4-571BFE977C61}" = iTunes
  406. "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
  407. "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
  408. "Adobe Shockwave Player" = Adobe Shockwave Player 11.5
  409. "Fake Webcam_is1" = Fake Webcam 6.1.3
  410. "HDMI" = Intel(R) Graphics Media Accelerator Driver
  411. "iMesh" = iMesh
  412. "iMesh MediaBar" = MediaBar
  413. "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
  414. "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
  415. "Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
  416. "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
  417. "MSNINST" = MSN
  418. "NSS" = Norton Security Scan
  419. "ProgSense_is1" = ProgSense
  420. "Softonic-Eng7 Toolbar" = Softonic-Eng7 Toolbar
  421. "WIC" = Windows Imaging Component
  422. "Windows Media Format Runtime" = Windows Media Format 11 runtime
  423. "Windows Media Player" = Windows Media Player 11
  424. "Windows XP Service Pack" = Windows XP Service Pack 3
  425. "WinLiveSuite_Wave3" = Windows Live Essentials
  426. "WMFDist11" = Windows Media Format 11 runtime
  427. "wmp11" = Windows Media Player 11
  428. "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
  429.  
  430. [color=#E56717]========== Last 10 Event Log Errors ==========[/color]
  431.  
  432. [ Application Events ]
  433. Error - 6/22/2010 11:09:22 AM | Computer Name = USER-EFD7D69AF3 | Source = Application Hang | ID = 1002
  434. Description = Hanging application IEXPLORE.EXE, version 6.0.2900.2180, hang module
  435. hungapp, version 0.0.0.0, hang address 0x00000000.
  436.  
  437. [ System Events ]
  438. Error - 6/22/2010 9:06:40 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  439. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  440. with DCOM within the required timeout.
  441.  
  442. Error - 6/22/2010 9:07:15 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  443. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  444. with DCOM within the required timeout.
  445.  
  446. Error - 6/22/2010 9:07:51 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  447. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  448. with DCOM within the required timeout.
  449.  
  450. Error - 6/22/2010 9:08:26 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  451. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  452. with DCOM within the required timeout.
  453.  
  454. Error - 6/22/2010 9:09:01 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  455. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  456. with DCOM within the required timeout.
  457.  
  458. Error - 6/22/2010 9:09:37 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  459. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  460. with DCOM within the required timeout.
  461.  
  462. Error - 6/22/2010 9:10:12 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  463. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  464. with DCOM within the required timeout.
  465.  
  466. Error - 6/22/2010 9:10:47 AM | Computer Name = USER-EFD7D69AF3 | Source = DCOM | ID = 10010
  467. Description = The server {DC0C2640-1415-4644-875C-6F4D769839BA} did not register
  468. with DCOM within the required timeout.
  469.  
  470. Error - 6/23/2010 8:16:55 AM | Computer Name = USER-EFD7D69AF3 | Source = Dhcp | ID = 1002
  471. Description = The IP address lease 192.168.1.2 for the Network Card with network
  472. address 002185B90823 has been denied by the DHCP server 0.0.0.0 (The DHCP Server
  473. sent a DHCPNACK message).
  474.  
  475. Error - 6/23/2010 5:43:48 PM | Computer Name = USER-EFD7D69AF3 | Source = Dhcp | ID = 1002
  476. Description = The IP address lease 192.168.1.3 for the Network Card with network
  477. address 002185B90823 has been denied by the DHCP server 0.0.0.0 (The DHCP Server
  478. sent a DHCPNACK message).
  479.  
  480.  
  481. < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement