Jump to content

Recommended Posts

  • ExTS Admin
Posted

Hi Jamie,

 

I reset all internet explorer security and privacy settings which has now allowed messenger to work. However I have now removed messenger for the next OTL run.

If Messenger was working, it wasn't necessary to remove it to run the scan.

Doesn't matter though.

 

The same in my add/remove programmes is there anyway i can cut & paste the text or just print screen so you could advise if any can be removed please?
Not necessary.

The OTL reports will show all the startup entries and all the programs in the add/remove folder.

 

I'll have a good look through .... there are startup entries that you can safely remove. ( some can be started manually if required)

 

Btw:

are you happy with McAfee? ( i know it's a 'paid for' program)

Member of:

UNITE

  • Replies 45
  • Created
  • Last Reply

Top Posters In This Topic

Posted

OTL logfile created on: 04/10/2010 22:23:32 - Run 2

OTL by OldTimer - Version 3.2.14.1 Folder = C:\Documents and Settings\jamie panico\Desktop

Windows XP Media Center Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 8.0.6001.18702)

Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

 

1,022.00 Mb Total Physical Memory | 519.00 Mb Available Physical Memory | 51.00% Memory free

2.00 Gb Paging File | 2.00 Gb Available in Paging File | 83.00% Paging File free

Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

 

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 53.21 Gb Total Space | 11.24 Gb Free Space | 21.12% Space Free | Partition Type: NTFS

Drive D: | 53.69 Gb Total Space | 36.59 Gb Free Space | 68.15% Space Free | Partition Type: FAT32

Drive E: | 4.20 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF

F: Drive not present or media not loaded

G: Drive not present or media not loaded

H: Drive not present or media not loaded

I: Drive not present or media not loaded

 

Computer Name: FBP

Current User Name: jamie panico

Logged in as Administrator.

 

Current Boot Mode: Normal

Scan Mode: Current user

Company Name Whitelist: Off

Skip Microsoft Files: Off

File Age = 30 Days

Output = Minimal

 

========== Processes (SafeList) ==========

 

PRC - C:\Documents and Settings\jamie panico\Local Settings\temp\RtkBtMnt.exe (Realtek Semiconductor Corp.)

PRC - C:\Documents and Settings\jamie panico\Desktop\OTL.exe (OldTimer Tools)

PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)

PRC - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)

PRC - C:\WINDOWS\system32\FsUsbExService.Exe (Teruten)

PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)

PRC - C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.)

PRC - c:\Program Files\Common Files\Logitech\LVMVFM\LVPrcSrv.exe (Logitech)

PRC - C:\WINDOWS\system32\LVCOMSX.EXE (Logitech)

PRC - C:\Acer\Empowering Technology\eRecovery\Monitor.exe (acer Inc.)

PRC - C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe (HiTRUST)

PRC - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe (Intel Corporation )

PRC - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)

PRC - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)

PRC - C:\Acer\Empowering Technology\admtray.exe (Avocent Inc.)

PRC - C:\Acer\Empowering Technology\admServ.exe (Avocent Inc.)

PRC - C:\WINDOWS\system32\ElkCtrl.exe (Logitech Inc.)

 

 

========== Modules (SafeList) ==========

 

MOD - C:\Documents and Settings\jamie panico\Desktop\OTL.exe (OldTimer Tools)

MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)

MOD - C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech)

MOD - C:\WINDOWS\system32\sysenv.dll (HiTRUST)

MOD - C:\WINDOWS\system32\MSNChatHook.dll ()

MOD - C:\WINDOWS\system32\MFC71u.dll (Microsoft Corporation)

MOD - C:\WINDOWS\system32\MFC71ENU.DLL (Microsoft Corporation)

MOD - C:\WINDOWS\system32\msvcr71.dll (Microsoft Corporation)

 

 

========== Win32 Services (SafeList) ==========

 

SRV - (HidServ) -- C:\WINDOWS\System32\hidserv.dll File not found

SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)

SRV - (SeaPort) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)

SRV - (FsUsbExService) -- C:\WINDOWS\system32\FsUsbExService.Exe (Teruten)

SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia.)

SRV - (LVPrcSrv) -- c:\Program Files\Common Files\Logitech\LVMVFM\LVPrcSrv.exe (Logitech)

SRV - (S24EventMonitor) Intel® -- C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe (Intel Corporation )

SRV - (EvtEng) Intel® -- C:\Program Files\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)

SRV - (RegSrvc) Intel® -- C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)

SRV - (AWService) -- C:\Acer\Empowering Technology\admServ.exe (Avocent Inc.)

 

 

========== Driver Services (SafeList) ==========

 

DRV - (catchme) -- C:\DOCUME~1\JAMIEP~1\LOCALS~1\Temp\catchme.sys File not found

DRV - (FsUsbExDisk) -- C:\WINDOWS\system32\FsUsbExDisk.Sys ()

DRV - (amdagp) -- C:\WINDOWS\system32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)

DRV - (sisagp) -- C:\WINDOWS\system32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)

DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows ® Server 2003 DDK provider)

DRV - (sscdmdm) -- C:\WINDOWS\system32\drivers\sscdmdm.sys (MCCI Corporation)

DRV - (sscdmdfl) -- C:\WINDOWS\system32\drivers\sscdmdfl.sys (MCCI Corporation)

DRV - (sscdbus) SAMSUNG USB Composite Device driver (WDM) -- C:\WINDOWS\system32\drivers\sscdbus.sys (MCCI Corporation)

DRV - (pccsmcfd) -- C:\WINDOWS\system32\drivers\pccsmcfd.sys (Nokia)

DRV - (NTIDrvr) -- C:\WINDOWS\system32\drivers\NTIDrvr.sys (NewTech Infosystems, Inc.)

DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)

DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\WINDOWS\system32\drivers\RtkHDAud.Sys (Realtek Semiconductor Corp.)

DRV - (lvmvdrv) -- C:\WINDOWS\system32\drivers\LVMVdrv.sys ()

DRV - (LVPrcMon) -- C:\WINDOWS\system32\drivers\LVPrcMon.sys ()

DRV - (lv321av) Logitech USB PC Camera (VC0321) -- C:\WINDOWS\system32\drivers\lv321av.sys (Logitech)

DRV - (LVUSBSta) -- C:\WINDOWS\system32\drivers\LVUSBSta.sys (Logitech)

DRV - (ESMCR) -- C:\WINDOWS\system32\drivers\ESM7SK.sys (ENE Technology Inc.)

DRV - (ESDCR) -- C:\WINDOWS\system32\drivers\ESD7SK.sys (ENE Technology Inc.)

DRV - (EMSCR) -- C:\WINDOWS\system32\drivers\EMS7SK.sys (ENE Technology Inc.)

DRV - (w39n51) Intel® -- C:\WINDOWS\system32\drivers\w39n51.sys (Intel® Corporation)

DRV - (SynTP) -- C:\WINDOWS\system32\drivers\SynTP.sys (Synaptics, Inc.)

DRV - (EpmShd) -- C:\WINDOWS\system32\drivers\epm-shd.sys (Acer Value Labs, USA)

DRV - (EpmPsd) -- C:\WINDOWS\system32\drivers\epm-psd.sys (Acer Value Labs, USA)

DRV - (s24trans) -- C:\WINDOWS\system32\drivers\s24trans.sys (Intel Corporation)

DRV - (bcm4sbxp) -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys (Broadcom Corporation)

DRV - (SMCIRDA) -- C:\WINDOWS\system32\drivers\smcirda.sys (SMSC)

DRV - (HSFHWAZL) -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys (Conexant Systems, Inc.)

DRV - (HSF_DPV) -- C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)

DRV - (winachsf) -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)

DRV - (OsaFsLoc) -- C:\WINDOWS\system32\drivers\OsaFsLoc.sys (OSA Technologies)

DRV - (NdisFilt) -- C:\WINDOWS\system32\drivers\NdisFilt.sys (OSA Technologies)

DRV - (osaio) -- C:\WINDOWS\system32\drivers\osaio.sys (OSA Technologies, An Avocent Company)

DRV - (NETMNT) -- C:\WINDOWS\system32\drivers\NETMNT.sys ()

DRV - (osanbm) -- C:\WINDOWS\system32\drivers\osanbm.sys (Windows ® 2000 DDK provider)

DRV - (int15.sys) -- C:\Acer\Empowering Technology\eRecovery\int15.sys ()

DRV - (UBHelper) -- C:\WINDOWS\System32\drivers\UBHelper.sys ()

DRV - (DKbFltr) -- C:\WINDOWS\system32\drivers\DKbFltr.SYS (Dritek System Inc.)

DRV - (dac2w2k) -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys (Mylex Corporation)

DRV - (ql1280) -- C:\WINDOWS\system32\DRIVERS\ql1280.sys (QLogic Corporation)

DRV - (ql12160) -- C:\WINDOWS\system32\DRIVERS\ql12160.sys (QLogic Corporation)

DRV - (ql1080) -- C:\WINDOWS\system32\DRIVERS\ql1080.sys (QLogic Corporation)

DRV - (ultra) -- C:\WINDOWS\system32\DRIVERS\ultra.sys (Promise Technology, Inc.)

DRV - (symc8xx) -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys (LSI Logic)

DRV - (sym_u3) -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys (LSI Logic)

DRV - (sym_hi) -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys (LSI Logic)

DRV - (asc) -- C:\WINDOWS\system32\DRIVERS\asc.sys (Advanced System Products, Inc.)

DRV - (Sparrow) -- C:\WINDOWS\system32\DRIVERS\sparrow.sys (Adaptec, Inc.)

DRV - (mraid35x) -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys (American Megatrends Inc.)

DRV - (symc810) -- C:\WINDOWS\system32\DRIVERS\symc810.sys (Symbios Logic Inc.)

DRV - (asc3550) -- C:\WINDOWS\system32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)

DRV - (CmdIde) -- C:\WINDOWS\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)

DRV - (AliIde) -- C:\WINDOWS\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)

 

 

========== Standard Registry (SafeList) ==========

 

 

========== Internet Explorer ==========

 

 

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb

IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

 

 

 

O1 HOSTS File: ([2010/09/28 22:27:59 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)

O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)

O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)

O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)

O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll (HiTRUST)

O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.

O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)

O4 - HKLM..\Run: [Acer ePower Management] C:\Acer\Empowering Technology\ePower\Acer ePower Management.exe (Acer Value Labs, Taiwan)

O4 - HKLM..\Run: [ADMTray.exe] C:\Acer\Empowering Technology\admtray.exe (Avocent Inc.)

O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe (Realtek Semiconductor Corp.)

O4 - HKLM..\Run: [bluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation)

O4 - HKLM..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe (HiTRUST)

O4 - HKLM..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe (acer Inc.)

O4 - HKLM..\Run: [iMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)

O4 - HKLM..\Run: [LaunchApp] C:\WINDOWS\Alaunch.exe (Acer Inc.)

O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.)

O4 - HKLM..\Run: [LogitechCameraService(E)] C:\WINDOWS\System32\ElkCtrl.exe (Logitech Inc.)

O4 - HKLM..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE (Logitech)

O4 - HKLM..\Run: [MSConfig] C:\WINDOWS\pchealth\helpctr\Binaries\MSCONFIG.EXE (Microsoft Corporation)

O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()

O4 - HKLM..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe ()

O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)

O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)

O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()

O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)

O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)

O4 - HKLM..\Run: [skyTel] C:\WINDOWS\SkyTel.exe (Realtek Semiconductor Corp.)

O4 - HKCU..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe File not found

O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallVisualStyle = C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles (Microsoft)

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallTheme = C:\WINDOWS\Resources\Themes\Royale.theme ()

O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323

O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863

O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)

O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)

O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)

O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab (Facebook Photo Uploader 5 Control)

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)

O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)

O24 - Desktop WallPaper: C:\Documents and Settings\jamie panico\Local Settings\Application Data\Microsoft\Wallpaper1.bmp

O24 - Desktop BackupWallPaper: C:\Documents and Settings\jamie panico\Local Settings\Application Data\Microsoft\Wallpaper1.bmp

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - [2006/08/18 23:41:54 | 000,000,050 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]

O32 - AutoRun File - [2006/11/06 23:20:46 | 000,000,000 | R--D | M] - E:\AutoRun -- [ UDF ]

O32 - AutoRun File - [2006/11/06 22:59:47 | 000,569,344 | R--- | M] (Electronic Arts Inc.) - E:\AutoRun.exe -- [ UDF ]

O32 - AutoRun File - [2006/11/06 23:18:16 | 000,000,180 | R--- | M] () - E:\autorun.inf -- [ UDF ]

O32 - AutoRun File - [2006/10/29 03:39:19 | 000,880,640 | R--- | M] (Electronic Arts Inc.) - E:\AutoRunGUI.dll -- [ UDF ]

O34 - HKLM BootExecute: (autocheck autochk *) - File not found

O35 - HKLM\..comfile [open] -- "%1" %*

O35 - HKLM\..exefile [open] -- "%1" %*

O37 - HKLM\...com [@ = ComFile] -- "%1" %*

O37 - HKLM\...exe [@ = exefile] -- "%1" %*

 

========== Files/Folders - Created Within 30 Days ==========

 

[2010/10/01 15:52:15 | 000,000,000 | -HSD | C] -- C:\RECYCLER

[2010/10/01 13:08:14 | 000,012,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dot4prt.sys

[2010/10/01 13:08:03 | 000,206,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dot4.sys

[2010/10/01 13:08:03 | 000,023,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dot4usb.sys

[2010/10/01 09:26:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\PCHealth

[2010/09/30 22:50:51 | 000,000,000 | ---D | C] -- C:\Program Files\ESET

[2010/09/30 21:20:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jamie panico\Desktop\New Folder

[2010/09/29 20:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp

[2010/09/29 20:11:23 | 000,000,000 | ---D | C] -- C:\Combo-Fix

[2010/09/28 21:42:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump

[2010/09/28 21:35:22 | 000,000,000 | RHSD | C] -- C:\cmdcons

[2010/09/28 21:26:49 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe

[2010/09/28 21:26:49 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe

[2010/09/28 21:26:49 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe

[2010/09/28 21:26:49 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe

[2010/09/28 21:26:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT

[2010/09/28 21:26:00 | 000,000,000 | ---D | C] -- C:\Qoobox

[2010/09/28 21:11:14 | 000,000,000 | ---D | C] -- C:\_OTL

[2010/09/28 18:25:35 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\jamie panico\Desktop\OTL.exe

[2010/09/28 18:13:20 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\jamie panico\Desktop\TFC.exe

[2010/09/28 17:24:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss

[2010/09/27 21:49:35 | 000,000,000 | ---D | C] -- C:\Config.Msi

[2010/09/25 12:51:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jamie panico\Application Data\My The Lord of the Rings, The Rise of the Witch-king Files

[2010/09/24 23:50:30 | 000,221,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MpSigStub.exe

[2010/09/24 17:44:47 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Documents\Server

[2010/09/23 17:49:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Macromedia

[2010/09/23 17:49:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Adobe

[2010/09/06 23:04:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jamie panico\Application Data\Media Player Classic

[2010/09/06 21:24:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\nView_Profiles

 

========== Files - Modified Within 30 Days ==========

 

[2010/10/04 22:21:02 | 000,000,717 | ---- | M] () -- C:\WINDOWS\win.ini

[2010/10/04 22:21:02 | 000,000,325 | RHS- | M] () -- C:\boot.ini

[2010/10/04 22:21:02 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini

[2010/10/04 22:20:56 | 000,000,450 | ---- | M] () -- C:\WINDOWS\System32\eRLog.ini

[2010/10/04 22:20:49 | 000,051,048 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml

[2010/10/04 22:20:44 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT

[2010/10/04 22:20:42 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat

[2010/10/04 22:20:38 | 1071,763,456 | -HS- | M] () -- C:\hiberfil.sys

[2010/10/04 22:19:30 | 006,438,912 | ---- | M] () -- C:\Documents and Settings\jamie panico\ntuser.dat

[2010/10/04 22:19:30 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\jamie panico\ntuser.ini

[2010/10/04 20:30:02 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{7CCC4F8B-1DE7-451A-B5F3-48DBC9FF26D9}.job

[2010/10/01 14:39:55 | 034,470,912 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\Charity Auction.ppt

[2010/09/30 23:03:32 | 006,347,264 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\doc 4.doc

[2010/09/30 23:02:40 | 008,528,384 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\doc 3.doc

[2010/09/30 23:01:11 | 008,974,848 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\Doc1.doc

[2010/09/30 23:00:57 | 009,809,408 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\doc 2.doc

[2010/09/30 22:55:25 | 033,605,632 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\all photos.doc

[2010/09/30 18:36:24 | 000,254,536 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\The%20British%20Isles.jpg

[2010/09/29 20:01:09 | 003,856,218 | R--- | M] () -- C:\Documents and Settings\jamie panico\Desktop\Combo-Fix.exe

[2010/09/28 22:27:59 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts

[2010/09/28 18:25:53 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\jamie panico\Desktop\OTL.exe

[2010/09/28 18:13:28 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\jamie panico\Desktop\TFC.exe

[2010/09/28 17:27:26 | 000,000,209 | ---- | M] () -- C:\Boot.bak

[2010/09/27 22:32:03 | 000,041,512 | ---- | M] () -- C:\Documents and Settings\jamie panico\Local Settings\Application Data\GDIPFONTCACHEV1.DAT

[2010/09/27 22:29:22 | 000,185,816 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT

[2010/09/27 21:54:37 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl

[2010/09/27 17:51:43 | 000,086,961 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\untitled.JPG

[2010/09/27 17:50:58 | 000,062,976 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\Document1.doc

[2010/09/24 22:44:30 | 000,846,294 | ---- | M] () -- C:\Documents and Settings\jamie panico\Desktop\failbook.bmp

[2010/09/19 18:18:14 | 000,002,131 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\The Lord of the Rings, The Rise of the Witch-king.lnk

[2010/09/16 19:36:03 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK

[2010/09/05 22:01:00 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\jamie panico\My Documents\PDVD_MediaDisc.PlayList

 

========== Files Created - No Company Name ==========

 

[2010/10/01 14:40:22 | 000,050,176 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\Mr Jamie Panico.doc

[2010/10/01 12:28:37 | 034,470,912 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\Charity Auction.ppt

[2010/09/30 23:03:31 | 006,347,264 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\doc 4.doc

[2010/09/30 23:02:38 | 008,528,384 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\doc 3.doc

[2010/09/30 22:59:12 | 009,809,408 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\doc 2.doc

[2010/09/30 22:55:18 | 033,605,632 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\all photos.doc

[2010/09/30 22:28:13 | 008,974,848 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\Doc1.doc

[2010/09/30 18:36:48 | 000,254,536 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\The%20British%20Isles.jpg

[2010/09/28 22:27:24 | 1071,763,456 | -HS- | C] () -- C:\hiberfil.sys

[2010/09/28 21:35:28 | 000,000,209 | ---- | C] () -- C:\Boot.bak

[2010/09/28 21:35:25 | 000,260,272 | RHS- | C] () -- C:\cmldr

[2010/09/28 21:26:49 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe

[2010/09/28 21:26:49 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe

[2010/09/28 21:26:49 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe

[2010/09/28 21:26:49 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe

[2010/09/28 21:26:49 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe

[2010/09/28 21:25:17 | 003,856,218 | R--- | C] () -- C:\Documents and Settings\jamie panico\Desktop\Combo-Fix.exe

[2010/09/27 21:46:57 | 006,438,912 | ---- | C] () -- C:\Documents and Settings\jamie panico\ntuser.dat

[2010/09/27 17:51:42 | 000,086,961 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\untitled.JPG

[2010/09/27 17:50:56 | 000,062,976 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\Document1.doc

[2010/09/24 22:44:29 | 000,846,294 | ---- | C] () -- C:\Documents and Settings\jamie panico\Desktop\failbook.bmp

[2010/09/19 18:18:14 | 000,002,131 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\The Lord of the Rings, The Rise of the Witch-king.lnk

[2010/09/05 22:01:00 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\jamie panico\My Documents\PDVD_MediaDisc.PlayList

[2010/04/26 22:40:11 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI

[2010/03/22 17:50:02 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll

[2010/03/22 17:50:02 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys

[2010/03/22 17:49:53 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\jamie panico\Application Data\$_hpcst$.hpc

[2010/03/17 17:15:14 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll

[2010/03/17 17:15:13 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini

[2010/03/17 17:15:11 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll

[2010/03/17 17:15:11 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll

[2010/03/17 17:15:10 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll

[2010/03/17 17:15:08 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest

[2010/03/17 17:15:07 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll

[2010/03/12 11:11:46 | 000,000,450 | ---- | C] () -- C:\WINDOWS\System32\eRLog.ini

[2010/03/12 11:08:28 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\SC_res.dll

[2010/03/12 11:08:28 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\TC_res.dll

[2010/03/12 11:08:28 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\MSNChatHook.dll

[2010/03/12 11:08:27 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\APISlice.dll

[2010/03/12 11:08:27 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\EN_res.dll

[2010/03/12 11:07:26 | 000,000,719 | R--- | C] () -- C:\WINDOWS\System32\InstExec.ini

[2010/03/12 10:59:17 | 000,000,135 | ---- | C] () -- C:\Documents and Settings\jamie panico\Local Settings\Application Data\fusioncache.dat

[2007/10/25 18:26:10 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys

[2006/08/19 09:21:18 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini

[2006/08/18 23:42:20 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIBUN4.dll

[2006/08/18 23:40:54 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMPEG2.dll

[2006/08/18 23:40:54 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMP3.dll

[2006/08/18 23:40:54 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIFCD3.dll

[2006/08/18 23:40:54 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK7.dll

[2006/06/23 11:40:58 | 002,400,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVMVdrv.sys

[2006/06/23 11:40:58 | 000,016,768 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVPrcMon.sys

[2006/06/19 12:59:24 | 000,013,227 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini

[2006/06/16 20:17:32 | 000,356,352 | ---- | C] () -- C:\WINDOWS\EMCRI.dll

[2006/06/12 17:11:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll

[2006/06/12 17:11:00 | 001,470,464 | ---- | C] () -- C:\WINDOWS\System32\nview.dll

[2006/06/12 17:11:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll

[2006/06/12 17:11:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll

[2006/06/12 17:11:00 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll

[2005/12/14 21:59:52 | 000,000,038 | ---- | C] () -- C:\WINDOWS\Acer.ini

[2005/10/31 19:17:38 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll

[2005/10/26 15:59:46 | 000,037,706 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini

[2005/08/05 15:01:54 | 000,235,008 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll

[2005/05/02 13:13:42 | 000,009,600 | ---- | C] () -- C:\WINDOWS\System32\drivers\NETMNT.sys

[2005/03/28 16:45:26 | 000,000,081 | ---- | C] () -- C:\WINDOWS\ALaunch.ini

[2004/12/17 18:14:44 | 000,013,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\UBHelper.sys

[2004/08/10 21:00:00 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini

[2003/12/29 21:45:08 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\ServiceControl.dll

[2001/12/26 17:12:30 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll

[2001/09/04 00:46:38 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\Hmpg12.dll

[2001/07/30 17:33:56 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll

[2001/07/23 23:04:36 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll

[1999/01/27 14:39:06 | 000,065,024 | ---- | C] () -- C:\WINDOWS\System32\indounin.dll

[1999/01/22 19:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL

[1997/06/13 08:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\Iyvu9_32.dll

< End of report >

Posted

OTL Extras logfile created on: 04/10/2010 22:23:32 - Run 2

OTL by OldTimer - Version 3.2.14.1 Folder = C:\Documents and Settings\jamie panico\Desktop

Windows XP Media Center Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 8.0.6001.18702)

Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

 

1,022.00 Mb Total Physical Memory | 519.00 Mb Available Physical Memory | 51.00% Memory free

2.00 Gb Paging File | 2.00 Gb Available in Paging File | 83.00% Paging File free

Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

 

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 53.21 Gb Total Space | 11.24 Gb Free Space | 21.12% Space Free | Partition Type: NTFS

Drive D: | 53.69 Gb Total Space | 36.59 Gb Free Space | 68.15% Space Free | Partition Type: FAT32

Drive E: | 4.20 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF

F: Drive not present or media not loaded

G: Drive not present or media not loaded

H: Drive not present or media not loaded

I: Drive not present or media not loaded

 

Computer Name: FBP

Current User Name: jamie panico

Logged in as Administrator.

 

Current Boot Mode: Normal

Scan Mode: Current user

Company Name Whitelist: Off

Skip Microsoft Files: Off

File Age = 30 Days

Output = Minimal

 

========== Extra Registry (SafeList) ==========

 

 

========== File Associations ==========

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

 

========== Shell Spawning ==========

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

exefile [open] -- "%1" %*

htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation)

htmlfile [print] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" /p %1 (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)

Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

 

========== Security Center Settings ==========

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

"FirstRunDisabled" = 1

"UpdatesDisableNotify" = 0

"AntiVirusOverride" = 0

"FirewallOverride" = 0

"AntiVirusDisableNotify" = 0

"FirewallDisableNotify" = 0

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

 

========== System Restore Settings ==========

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]

"DisableSR" = 0

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]

"Start" = 0

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]

"Start" = 2

 

========== Firewall Settings ==========

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

"EnableFirewall" = 0

"DoNotAllowExceptions" = 0

"DisableNotifications" = 0

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007

"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

 

========== Authorized Applications List ==========

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

"D:\itunes\iTunes.exe" = D:\itunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)

"C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Disabled:KTF MUSIC AoD Server -- (PeeringPortal)

"C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Disabled:KTF MUSIC VoD Server -- (PeeringPortal)

"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)

 

 

========== HKEY_LOCAL_MACHINE Uninstall List ==========

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{00010409-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Professional

"{0CB9668D-F979-4F31-B8B8-67FE90F929F8}" = Bonjour

"{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker

"{15B70821-7893-4607-805A-BB80F3EA8279}" = Acer Empowering Technology framework

"{1BD07DF4-FB06-41BA-B896-B2DA59000C96}" = Windows Live Toolbar

"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool

"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT

"{23FB368F-1399-4EAC-817C-4B83ECBE3D83}" = mProSafe

"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime

"{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}" = The Battle for Middle-earth II

"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP

"{3F290582-3F4E-4B96-009C-E0BABAA40C42}" = The Battle for Middle-earth

"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant

"{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials

"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack

"{4DA416AE-6D1C-40D6-BCA3-A65A59DD60FC}" = Acer eDataSecurity Management

"{58E5844B-7CE2-413D-83D1-99294BF6C74F}" = Acer ePower Management

"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD

"{6A28AB0B-22B1-494C-AF61-B386EA1736C0}" = LightScribe 1.4.97.1

"{6CA897D0-67F5-4F75-8261-DC8BFCA6DA42}" = Acer eLock Management

"{76AC1AEB-1167-4ABC-8861-4E58392A5B7F}" = Acer OrbiCam Software

"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver

"{85991ED2-010C-4930-96FA-52F43C2CE98A}" = Apple Mobile Device Support

"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight

"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)

"{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}" = mPfMgr

"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting

"{9941F0AA-B903-4AF4-A055-83A9815CC011}" = Sonic Encoders

"{9CC89556-3578-48DD-8408-04E66EBEF401}" = mXML

"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI

"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2

"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution

"{AC76BA86-7AD7-1033-7B44-A70000000000}" = Adobe Reader 7.0

"{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer

"{AFAC914D-9E83-4A89-8ABE-427521C82CCF}" = Safari

"{B06B842F-2450-494F-BBDE-217CDC151A37}" = NTI Backup NOW! 4.5

"{B10914FD-8812-47A4-85A1-50FCDE7F1F33}" = Windows Live Sync

"{B2D328BE-45AD-4D92-96F9-2151490A203E}" = Apple Application Support

"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = PowerProducer

"{B931FB80-537A-4600-00AD-AC5DEDB6C25B}" = The Lord of the Rings, The Rise of the Witch-king

"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)

"{C06554A1-2C1E-4D20-B613-EE62C79927CC}" = Acer eNet Management

"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2

"{C1E11C46-E6EB-4BD2-9ADF-2A98ACBEB216}" = iTunes

"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update

"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1

"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1

"{D458BBDC-0363-42E0-8FF9-4736E3CB3CA2}" = Acer Screensaver

"{D8CE69B0-9274-4b8c-BA49-0FF6A20A3C65}" = SAMSUNG SYMBIAN USB Download Driver

"{DEE08946-40F0-4890-853E-60A6C3306041}" = Acer ePerformance Management

"{E38BC648-883B-4EE5-966C-94C4B7AB3E0B}" = Acer eSettings Management

"{E431C518-2EE2-471E-9234-BE995C36D513}" = Acer eDataSecurity Management 1.00.26

"{E81667C6-2856-46D6-ABEA-6A2F42166779}" = mCore

"{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}" = mMHouse

"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard

"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver

"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio

"{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}" = mWlsSafe

"12133444-BF36-4d4e-B7FB-A3424C645DE4" = GemMaster Mystic

"3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F" = Windows Driver Package - Nokia pccsmcfd (10/12/2007 6.85.4.0)

"AcerOrbiCamDrv" = Acer OrbiCam Driver

"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX

"B3EE3001-DC24-4cd1-8743-5692C716659F" = Otto

"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_1025007F" = HDAUDIO Soft Data Fax Modem with SmartCP

"ePresentation" = Acer ePresentation Management

"ESET Online Scanner" = ESET Online Scanner v3

"GridVista" = Acer GridVista

"ie8" = Windows Internet Explorer 8

"InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker

"InstallShield_{15B70821-7893-4607-805A-BB80F3EA8279}" = Acer Empowering Technology framework

"InstallShield_{6CA897D0-67F5-4F75-8261-DC8BFCA6DA42}" = Acer eLock Management

"InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer

"InstallShield_{DEE08946-40F0-4890-853E-60A6C3306041}" = Acer ePerformance Management

"InstallShield_{E38BC648-883B-4EE5-966C-94C4B7AB3E0B}" = Acer eSettings Management

"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio

"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 5.8.3

"LManager" = Launch Manager

"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware

"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1

"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1

"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP

"MSNINST" = MSN

"NVIDIA Drivers" = NVIDIA Drivers

"ProInst" = Intel® PROSet/Wireless Software

"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software

"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set

"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software

"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software

"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software

"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software

"SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software

"SynTPDeinstKey" = Synaptics Pointing Device Driver

"Windows Media Format Runtime" = Windows Media Format 11 runtime

"Windows Media Player" = Windows Media Player 11

"Windows XP Service Pack" = Windows XP Service Pack 3

"WinLiveSuite_Wave3" = Windows Live Essentials

"WMFDist11" = Windows Media Format 11 runtime

"wmp11" = Windows Media Player 11

"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

 

========== Last 10 Event Log Errors ==========

 

[ Application Events ]

Error - 04/10/2010 08:40:25 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 7797

 

Error - 04/10/2010 12:53:30 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: Continuously busy for more than a second

 

Error - 04/10/2010 12:53:30 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledEvent 3890

 

Error - 04/10/2010 12:53:30 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 3890

 

Error - 04/10/2010 12:53:34 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: Continuously busy for more than a second

 

Error - 04/10/2010 12:53:34 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledEvent 7797

 

Error - 04/10/2010 12:53:34 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 7797

 

Error - 04/10/2010 12:53:38 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: Continuously busy for more than a second

 

Error - 04/10/2010 12:53:38 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledEvent 11734

 

Error - 04/10/2010 12:53:38 | Computer Name = FBP | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 11734

 

[ System Events ]

Error - 01/10/2010 08:50:19 | Computer Name = FBP | Source = W32Time | ID = 39452689

Description = Time Provider NtpClient: An error occurred during DNS lookup of the

manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup

again in 15 minutes. The error was: A socket operation was attempted to an unreachable

host. (0x80072751)

 

Error - 01/10/2010 08:50:19 | Computer Name = FBP | Source = W32Time | ID = 39452701

Description = The time provider NtpClient is configured to acquire time from one

or more time sources, however none of the sources are currently accessible. No attempt

to contact a source will be made for 14 minutes. NtpClient has no source of accurate

time.

 

Error - 01/10/2010 09:05:20 | Computer Name = FBP | Source = W32Time | ID = 39452689

Description = Time Provider NtpClient: An error occurred during DNS lookup of the

manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup

again in 30 minutes. The error was: A socket operation was attempted to an unreachable

host. (0x80072751)

 

Error - 01/10/2010 09:05:20 | Computer Name = FBP | Source = W32Time | ID = 39452701

Description = The time provider NtpClient is configured to acquire time from one

or more time sources, however none of the sources are currently accessible. No attempt

to contact a source will be made for 29 minutes. NtpClient has no source of accurate

time.

 

Error - 01/10/2010 09:34:00 | Computer Name = FBP | Source = Dhcp | ID = 1001

Description = Your computer was not assigned an address from the network (by the

DHCP Server) for the Network Card with network address 0018DE87977F. The following

error occurred: %%1223. Your computer will continue to try and obtain an address

on its own from the network address (DHCP) server.

 

Error - 01/10/2010 09:35:54 | Computer Name = FBP | Source = W32Time | ID = 39452689

Description = Time Provider NtpClient: An error occurred during DNS lookup of the

manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup

again in 15 minutes. The error was: A socket operation was attempted to an unreachable

host. (0x80072751)

 

Error - 01/10/2010 09:35:54 | Computer Name = FBP | Source = W32Time | ID = 39452701

Description = The time provider NtpClient is configured to acquire time from one

or more time sources, however none of the sources are currently accessible. No attempt

to contact a source will be made for 14 minutes. NtpClient has no source of accurate

time.

 

Error - 01/10/2010 10:02:07 | Computer Name = FBP | Source = Dhcp | ID = 1000

Description = Your computer has lost the lease to its IP address 10.71.175.50 on

the Network Card with network address 0018DE87977F.

 

Error - 01/10/2010 10:37:36 | Computer Name = FBP | Source = Dhcp | ID = 1001

Description = Your computer was not assigned an address from the network (by the

DHCP Server) for the Network Card with network address 0018DE87977F. The following

error occurred: %%1223. Your computer will continue to try and obtain an address

on its own from the network address (DHCP) server.

 

Error - 03/10/2010 18:33:24 | Computer Name = FBP | Source = Dhcp | ID = 1000

Description = Your computer has lost the lease to its IP address 192.168.1.64 on

the Network Card with network address 0018DE87977F.

 

 

< End of report >

Posted

Hi Starbuck,

 

Thanks, I can always reinstall messenger once i know everything is ok.

 

Thanks for looking through some exe files that don't look affiliated to windows i dont have loads of programmes on my laptop and probably need less in start up-im happy to manually load them as and when i need.

 

Not too sure about mcafee im open to suggestions, ive avioded nortoin because it has always crippled my running speed, and tried NOD but that only quarantined files wouldnt actually remove a trojan whereas mcafee hasnt give me too many problems and blocked and cleaned quite a few. I had a AVG at one point when it was free. What do you think would be best?

 

Is it worth registering MBAM, does it give round the clock protection or do i still have to run as and when required?

 

Thanks for your time

 

Jamie

  • ExTS Admin
Posted

Hi Jamie,

 

Is it worth registering MBAM, does it give round the clock protection or do i still have to run as and when required?

If you register MBAM you can run it as a realtime program.

It'll update itself and will run in the background all the time.

It's a very handy thing to have running.

 

If i have to recommend an AntiVirus program, i always recommend what i run myself:

On my systems i run either:

 

Note*:

Upon installation MS Security Essentials will check that your OS is a legal copy.

 

 

 

I've tried to cut the startup programs down to a minimum for you.

It should make quite a difference.

I've only stopped the entries from running at startup .... i haven't actually removed any files.

 

Double click on OTL.exe to run it.

Copy the lines in the codebox below. (make sure that :Otl is on the first line )

:Otl
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKCU..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe File not found

:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ADMTray.exe"=-
"AzMixerSel"=-
"eRecoveryService"=-
"IMJPMIG8.1"=-
"LaunchApp"=-
"LogitechCameraService(E)"=-
"LVCOMSX"=-
"MSPY2002"=-
"NvCplDaemon"=-
"nwiz"=-
"PHIME2002"=-

:commands
[emptytemp]

  • Return to OTL,
  • right click in the Custom Scans/Fixes window (under the blue bar) and choose Paste.
     
    http://img.photobucket.com/albums/v708/starbuck50/new%20forum/scan-fix.png
     
  • Click the red Run Fix button.
     
    http://img.photobucket.com/albums/v708/starbuck50/runfixbutton.png
     
  • OTL will reboot your system once the fix has completed.
  • After the reboot, you may need to double click OTL to launch the program and retrieve the log.

 

Copy and paste the contents of the OTL log that comes up after the fix in your next reply.

 

if you lose the report, there will be a copy here:

C:\_OTL\MovedFiles

 

See how the system runs and let me have the Otl fix report.

 

Thanks

Member of:

UNITE

Posted

Hi Starbuck thank you

 

Ive ran OTL and the text is below:

 

All processes killed

========== OTL ==========

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.

Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.

========== REGISTRY ==========

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\ADMTray.exe deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\AzMixerSel deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\eRecoveryService deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\IMJPMIG8.1 deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\LaunchApp deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\LogitechCameraService(E) deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\LVCOMSX deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\MSPY2002 deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\NvCplDaemon deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\nwiz deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\PHIME2002 not found.

========== COMMANDS ==========

 

[EMPTYTEMP]

 

User: Administrator

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

 

User: All Users

 

User: Default User

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

 

User: jamie panico

->Temp folder emptied: 84259559 bytes

->Temporary Internet Files folder emptied: 56855722 bytes

->Apple Safari cache emptied: 0 bytes

->Flash cache emptied: 117950 bytes

 

User: LocalService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 65789 bytes

->Flash cache emptied: 12154 bytes

 

User: NetworkService

->Temp folder emptied: 2968 bytes

->Temporary Internet Files folder emptied: 32902 bytes

 

%systemdrive% .tmp files removed: 0 bytes

%systemroot% .tmp files removed: 0 bytes

%systemroot%\System32 .tmp files removed: 0 bytes

%systemroot%\System32\dllcache .tmp files removed: 0 bytes

%systemroot%\System32\drivers .tmp files removed: 0 bytes

Windows Temp folder emptied: 596241 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes

RecycleBin emptied: 0 bytes

 

Total Files Cleaned = 135.00 mb

 

 

OTL by OldTimer - Version 3.2.14.1 log created on 10052010_204704

Files\Folders moved on Reboot...

File\Folder C:\Documents and Settings\jamie panico\Local Settings\Temp\fla9.tmp not found!

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\Y2ZZLZ3Y\ads[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\LNKLM5X1\ads[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\J8EP3IJ5\120_rot[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\ICSK7X40\br3[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\I0W1LXFH\xvideos.com_1863f61e6b449063d92df54edc1359a7[1].flv moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\BCAOL3NJ\Messenger[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\BCAOL3NJ\xmlProxy[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\959P8Q0L\10566-gremlins-2[1].html moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\959P8Q0L\ads[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\7AS0LV16\default[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\6JOO5N03\InboxLight[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\5JOC6TU0\01[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\5JOC6TU0\like[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\5JOC6TU0\LocalStorage[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\5JOC6TU0\sh24[1].html moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\Content.IE5\5JOC6TU0\xmlProxy[1].htm moved successfully.

C:\Documents and Settings\jamie panico\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.

Registry entries deleted on Reboot...

Posted

Hi Starbuck,

 

Thanks yes, smooth transitions, and its stoppd freezing (no response) programmes, i have some pretty intense spreadsheets and they are now looking up/macros smoothly as opposed to previous niggly stop/start.

 

Thanks for the options for virus checkers, i always thought mcaafee was the fastest but diidnt think of other alternatives to nod/norton.

 

The last question i was going to ask is do you know any good programmes/websites to benchmark my broadband speed this also appears slower than i would of imagined now i live very close to the exchange and not a million miles away on a raf base lol

  • ExTS Admin
Posted

Hi Jamie,

 

Thanks yes, smooth transitions, and its stoppd freezing (no response) programmes, i have some pretty intense spreadsheets and they are now looking up/macros smoothly as opposed to previous niggly stop/start.
That's nice to hear. http://fc07.deviantart.com/images3/i/2004/146/9/1/Two_thumbs_up.gif

 

Thanks for the options for virus checkers, i always thought mcaafee was the fastest but diidnt think of other alternatives to nod/norton.
No problem at all.

 

The last question i was going to ask is do you know any good programmes/websites to benchmark my broadband speed this also appears slower than i would of imagined now i live very close to the exchange and not a million miles away on a raf base lol
Try these:

My Broadband Speed - Broadband Speed Tester

 

Broadband Speed Test | ZDNet UK

 

Speedtest.net - The Global Broadband Speed Test

Don't run any other scans with this test.... just run the test.

 

When you are ready, let me know and we'll finish the cleaning process.

We have to remove the tools we used and reset a few things.

Member of:

UNITE

Posted

Thanks starbuck,

 

Disturbingly BT estimate me getting 15mb broadband however the clocks all test 2-300kbps!!! I have tried at different times inc 4am and no better service :S Ive also tried ethernet cable or wireless.

 

I reloaded messenger and unfortunatley now it has stopped working. However everything else is running perfectly.

 

Ive tried tweaking my Internet Options security settings but with no luck including resetting to default. Not even setting everything to medium or low. At this moment I have no firewall or virus checker installed/on so cant understand what is stopping it from working.

 

Jamie

Posted

Hi Starbuck,

 

I have also noticed my power settings have changed as my screen shuts down after about 5 minutes and my comupter goes to hibernate after 10 more. When I click on control panel > Power Options nothing happens so I am not sure if this needs to also be restored

 

Thanks Jamie

  • ExTS Admin
Posted

Hi Jamie,

 

I reloaded messenger and unfortunatley now it has stopped working. However everything else is running perfectly.
I've checked all the reports and i can't see anything in them that would stop 'Messenger' from running.

 

Where are you downloading 'Messenger' from?

Try this link...... anything is worth a try:

Windows Live Messenger

Save it to your 'Desktop'

Make sure all security is turned off before installing it.

If it gives you a list of what to add/install .... just select messenger.

Sometimes Windows Live wants to add all sorts of extra things.

Member of:

UNITE

  • ExTS Admin
Posted

We seemed to have cross posted there. :)

 

I've just checked my settings....

Balanced is ticked.

if i click to change the settings, it shows:

Turn off the display .... Never

Put the computer to sleep .... 2 Hours.

 

It's obviously not the default setting, but i can't even remember when or why i changed them.

Saying that ... the settings suit me and i don't seem to have a problem with them.

Member of:

UNITE

Posted

Hi Starbuck,

 

I was downloading it straight from the hotmail.com wbsite link to windows live when i try to use your link it tells me that i already have those programmes ill try and remover/re-install if you think it may help.

 

Thanks sorry about me dual posting lol

 

That is the settings i prefer however I cannot get any response at all when i click on the power options icon. :-(

 

Thanks for your help

 

Jamie

  • ExTS Admin
Posted
I cannot get any response at all when i click on the power options icon.

Do you mean the icon in Control Panel?

Do you mean the Power Options settings are not opening?

 

Try another way.....

Right click on your Desktop and select Properties.

Now click on Screensaver.

You should have an option there to change the power settings.

Member of:

UNITE

Posted
yea mate, clicking on the control panel icon then the power settings icon - eggtimer pops up then nothing. All other control panel icons work properly tho
  • ExTS Admin
Posted

Hi Jamie,

 

After looking around, it seems more common than you'd think.

But sadly there doesn't seem much in the way of help.

 

I take it you are signing in to an admin account.

Have you tried doing a system restore..... ( going back a couple of days)

Member of:

UNITE

Posted

Hi Starbuck,

 

Sorry I havent been in touch i have lost all internet from bt now and waiting for sky to be installed. I am only logged in as myself but have the same access rights as administrator (it always used to work in my login)

 

I havent got much on my laptop and as we know its clean i could always reset factory settings all media/photos/office files are backed up on my external hd so would just need to reinstall a few progs, office, itues, etc

 

Thanks for your help and sorry i wasnt able to contact you.

 

Jamie

  • ExTS Admin
Posted

Hi Jamie,

 

If the settings are causing problems and you can't find a way to reset them ..... then a restore back to factory settings settings should set this right.

Having everything backed up is always handy and does make the job a lot easier.

Obviously this is entirely up to you.

 

I see you're at home to 'Leeds' today ... should be a good game.

We've got 'Reading' away .... so i'll expect a win there for us. http://fc06.deviantart.com/fs4/i/2004/250/7/1/ROFL_by_b4sti.gif

Member of:

UNITE

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...