also @ TechSpot: Apple claims Samsung violates Siri patents with Google Now

Internet not working after AVG cleaned out Netbt.sys

Discussion in 'Virus and Malware Removal' started by Fudd0828, Jun 3, 2012.

Post New Reply
  1. Fudd0828 Newcomer, in training Posts: 49

    I meant that I still get blue screen in normal and in safe mode no internet did I do something wrong?
  2. Broni Malware Annihilator Posts: 39,375   +177

    Aside from BSOD is your computer operable in normal mode?
    Are you getting BSOD in safe mode as well?
    If so when?
  3. Fudd0828 Newcomer, in training Posts: 49

    I cant get past BSOD in normal right before login.
    I dont get the BSOD in Safe mode.
  4. Broni Malware Annihilator Posts: 39,375   +177

    OK.
    One more time.
    I want you to restart computer in Safe Mode with Networking (NOT Safe mode) and see if you can connect.
  5. Fudd0828 Newcomer, in training Posts: 49

    Network lan is connected but cannot get on internet.
  6. Broni Malware Annihilator Posts: 39,375   +177

    Stay in Safe Mode with Networking.

    Post new FSS log from there.

    Next...

    Please download MiniToolBox, save it to your desktop and run it.

    Checkmark following boxes:
    • Report IE Proxy Settings
    • Report FF Proxy Settings
    • List content of Hosts
    • List IP configuration
    • List Winsock Entries
    • List last 10 Event Viewer log
    • List Devices (do NOT change any settings)
    • List Users, Partitions and Memory size
    • List Restore Points
    Click Go and post the result.
     
  7. Fudd0828 Newcomer, in training Posts: 49

    Here is the FSS Safe Mode with networking

    Farbar Service Scanner Version: 27-05-2012
    Ran by Justin (administrator) on 04-06-2012 at 17:42:10
    Running from "C:\Documents and Settings\Justin\Desktop"
    Microsoft Windows XP Professional Service Pack 3 (X86)
    Boot Mode: Nerwork
    ****************************************************************

    Internet Services:
    ============

    Connection Status:
    ==============
    Localhost is accessible.
    LAN connected.
    Attempt to access Google IP returned error: Google IP is offline
    Attempt to access Google.com returned error: Other errors
    Attempt to access Yahoo IP returned error: Yahoo IP is offline
    Attempt to access Yahoo.com returned error: Other errors


    Windows Firewall:
    =============

    Firewall Disabled Policy:
    ==================


    System Restore:
    ============

    System Restore Disabled Policy:
    ========================


    Security Center:
    ============
    wscsvc Service is not running. Checking service configuration:
    The start type of wscsvc service is OK.
    The ImagePath of wscsvc service is OK.
    The ServiceDll of wscsvc service is OK.


    Windows Update:
    ============
    wuauserv Service is not running. Checking service configuration:
    The start type of wuauserv service is OK.
    The ImagePath of wuauserv service is OK.
    The ServiceDll of wuauserv: "C:\WINDOWS\system32\wuauserv.dll".

    BITS Service is not running. Checking service configuration:
    The start type of BITS service is set to Demand. The default start type is Auto.
    The ImagePath of BITS service is OK.
    The ServiceDll of BITS service is OK.

    EventSystem Service is not running. Checking service configuration:
    The start type of EventSystem service is OK.
    The ImagePath of EventSystem: "C:\WINDOWS\System32\svchost.exe -k netsvcs".
    The ServiceDll of EventSystem: "C:\WINDOWS\system32\es.dll".


    Windows Autoupdate Disabled Policy:
    ============================


    File Check:
    ========
    C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
    C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
    C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
    C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
    C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
    C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
    C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
    C:\WINDOWS\system32\netman.dll => MD5 is legit
    C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
    C:\WINDOWS\system32\srsvc.dll => MD5 is legit
    C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
    C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
    C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
    C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
    C:\WINDOWS\system32\qmgr.dll => MD5 is legit
    C:\WINDOWS\system32\es.dll => MD5 is legit
    C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
    C:\WINDOWS\system32\svchost.exe => MD5 is legit
    C:\WINDOWS\system32\rpcss.dll => MD5 is legit
    C:\WINDOWS\system32\services.exe => MD5 is legit


    **** End of log ****
  8. Fudd0828 Newcomer, in training Posts: 49

    Here is MinitoolBox Results

    MiniToolBox by Farbar Version: 04-06-2012
    Ran by Justin (administrator) on 04-06-2012 at 17:45:16
    Microsoft Windows XP Professional Service Pack 3 (X86)
    Boot Mode: Nerwork
    ***************************************************************************

    ========================= IE Proxy Settings: ==============================

    Proxy is not enabled.
    No Proxy Server is set.
    ========================= Hosts content: =================================

    127.0.0.1 localhost

    ========================= Winsock entries =====================================

    Catalog5 01 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
    Catalog5 03 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
    Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 04 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 05 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 12 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 13 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 14 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
    Catalog9 15 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)

    ========================= Event log errors: ===============================

    Application errors:
    ==================
    Error: (06/04/2012 01:14:19 PM) (Source: crypt32) (User: )
    Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The server name or address could not be resolved

    Error: (06/04/2012 00:58:38 PM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27007. CA_Error27007: Wait4StartWD(0xC0070426): Waiting for watchdog service start failed

    Error: (06/04/2012 00:56:29 PM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27046. CA_Error27046: DriverInstallation(0xE0010057): Driver installation failed

    Error: (06/04/2012 00:56:29 PM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27046. CA_Error27046: DriverInstallationFun(0x00000000): Driver installation failed

    Error: (06/04/2012 00:50:22 PM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27007. CA_Error27007: Wait4StartWD(0xC0070426): Waiting for watchdog service start failed

    Error: (06/04/2012 00:46:35 PM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27041. CA_Error27041: FixDrvOrd(0xE001003D): Fix driver order failed

    Error: (06/04/2012 01:06:14 AM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27046. CA_Error27046: DriverInstallation(0xE0010057): Driver installation failed

    Error: (06/04/2012 01:06:13 AM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27046. CA_Error27046: DriverInstallationFun(0x00000000): Driver installation failed

    Error: (06/04/2012 00:50:28 AM) (Source: MsiInstaller) (User: Justin)Justin
    Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2012 -- Error 27041. CA_Error27041: FixDrvOrd(0xE001003D): Fix driver order failed

    Error: (04/13/2012 08:24:19 PM) (Source: Application Error) (User: )
    Description: Faulting application iexplore.exe, version 8.0.6001.18702, faulting module unknown, version 0.0.0.0, fault address 0x0331bd00.
    Processing media-specific event for [iexplore.exe!ws!]


    System errors:
    =============
    Error: (06/04/2012 05:43:48 PM) (Source: DCOM) (User: Justin)
    Description: DCOM got error "%%1084" attempting to start the service StiSvc with arguments ""
    in order to run the server:
    {A1F4E726-8CF1-11D1-BF92-0060081ED811}

    Error: (06/04/2012 05:35:50 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:35:42 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:35:35 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:35:28 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:35:21 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:35:13 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:35:06 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:34:59 PM) (Source: 0) (User: )
    Description: \Device\CdRom0

    Error: (06/04/2012 05:34:52 PM) (Source: 0) (User: )
    Description: \Device\CdRom0


    Microsoft Office Sessions:
    =========================
    Error: (03/21/2012 07:23:30 PM) (Source: Microsoft Office 12 Sessions)(User: )
    Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 270 seconds with 180 seconds of active time. This session ended with a crash.

    Error: (03/21/2012 07:10:55 PM) (Source: Microsoft Office 12 Sessions)(User: )
    Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 747 seconds with 480 seconds of active time. This session ended with a crash.


    ========================= Devices: ================================

    Name: SM Bus Controller
    Description: SM Bus Controller
    Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


    ========================= Memory info: ===================================

    Percentage of memory in use: 9%
    Total physical RAM: 3069.86 MB
    Available physical RAM: 2778.23 MB
    Total Pagefile: 4960.5 MB
    Available Pagefile: 4870.8 MB
    Total Virtual: 2047.88 MB
    Available Virtual: 1971.8 MB

    ========================= Partitions: =====================================

    1 Drive c: () (Fixed) (Total:232.82 GB) (Free:213.96 GB) NTFS

    ========================= Users: ========================================

    User accounts for \\DESKTOP

    Administrator ASPNET Guest
    HelpAssistant Justin SUPPORT_388945a0

    ========================= Restore Points ==================================

    19-03-2012 00:31:03 Restore Operation
    19-03-2012 00:33:54 Restore Operation
    31-05-2012 05:56:46 System Checkpoint
    03-06-2012 21:44:19 System Checkpoint

    **** End of log ****
  9. Broni Malware Annihilator Posts: 39,375   +177

    You didn't check "List IP configuration".
    Please re-run MiniToolbox with just that one item checkmarked.
  10. Fudd0828 Newcomer, in training Posts: 49

    Here you go

    MiniToolBox by Farbar Version: 04-06-2012
    Ran by Justin (administrator) on 04-06-2012 at 18:18:23
    Microsoft Windows XP Professional Service Pack 3 (X86)
    Boot Mode: Nerwork
    ***************************************************************************
    ========================= IP Configuration: ================================

    Broadcom NetXtreme 57xx Gigabit Controller = Local Area Connection (Connected)


    # ----------------------------------
    # Interface IP Configuration
    # ----------------------------------
    pushd interface ip


    # Interface IP Configuration for "Local Area Connection"

    set address name="Local Area Connection" source=static addr=10.10.16.151 mask=255.255.255.0
    set address name="Local Area Connection" gateway=10.10.16.1 gwmetric=0
    set dns name="Local Area Connection" source=static addr=4.2.2.2 register=PRIMARY
    set wins name="Local Area Connection" source=static addr=none


    popd
    # End of interface IP configuration




    Windows IP Configuration



    Host Name . . . . . . . . . . . . : Desktop

    Primary Dns Suffix . . . . . . . :

    Node Type . . . . . . . . . . . . : Unknown

    IP Routing Enabled. . . . . . . . : No

    WINS Proxy Enabled. . . . . . . . : No



    Ethernet adapter Local Area Connection:



    Connection-specific DNS Suffix . :

    Description . . . . . . . . . . . : Broadcom NetXtreme 57xx Gigabit Controller

    Physical Address. . . . . . . . . : 00-1A-A0-02-0F-A3

    Dhcp Enabled. . . . . . . . . . . : No

    IP Address. . . . . . . . . . . . : 10.10.16.151

    Subnet Mask . . . . . . . . . . . : 255.255.255.0

    Default Gateway . . . . . . . . . : 10.10.16.1

    DNS Servers . . . . . . . . . . . : 4.2.2.2

    NetBIOS over Tcpip. . . . . . . . : Disabled

    DNS request timed out.
    timeout was 2 seconds.
    Server: UnKnown
    Address: 4.2.2.2

    DNS request timed out.
    timeout was 2 seconds.
    DNS request timed out.
    timeout was 2 seconds.
    Ping request could not find host google.com. Please check the name and try again.

    DNS request timed out.
    timeout was 2 seconds.
    Server: UnKnown
    Address: 4.2.2.2

    DNS request timed out.
    timeout was 2 seconds.
    DNS request timed out.
    timeout was 2 seconds.
    Ping request could not find host yahoo.com. Please check the name and try again.

    DNS request timed out.
    timeout was 2 seconds.
    Server: UnKnown
    Address: 4.2.2.2

    DNS request timed out.
    timeout was 2 seconds.
    DNS request timed out.
    timeout was 2 seconds.
    Ping request could not find host bleepingcomputer.com. Please check the name and try again.



    Pinging 127.0.0.1 with 32 bytes of data:



    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



    Ping statistics for 127.0.0.1:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

    Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

    ===========================================================================
    Interface List
    0x1 ........................... MS TCP Loopback interface
    0x2 ...00 1a a0 02 0f a3 ...... Broadcom NetXtreme 57xx Gigabit Controller
    ===========================================================================
    ===========================================================================
    Active Routes:
    Network Destination Netmask Gateway Interface Metric
    0.0.0.0 0.0.0.0 10.10.16.1 10.10.16.151 10
    10.10.16.0 255.255.255.0 10.10.16.151 10.10.16.151 10
    10.10.16.151 255.255.255.255 127.0.0.1 127.0.0.1 10
    10.255.255.255 255.255.255.255 10.10.16.151 10.10.16.151 10
    127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
    224.0.0.0 240.0.0.0 10.10.16.151 10.10.16.151 10
    255.255.255.255 255.255.255.255 10.10.16.151 10.10.16.151 1
    Default Gateway: 10.10.16.1
    ===========================================================================
    Persistent Routes:
    None

    **** End of log ****
  11. Broni Malware Annihilator Posts: 39,375   +177

    Make sure, your settings are correct.
    1. Go Start>Settings>Control Panel (Vista/7 users: Start>Control Panel)
    2. Double click Network Connections (Vista/7 users: Network and Sharing Center)
    3. Vista/7 users - From the list of tasks on the left, click Manage network connections.
    4. For a wired network connection, right-click Local Area Connection, and then select Properties.
    For a wireless network connection, right-click Wireless Network Connection, and then select Properties.
    5. From the General tab (Vista/7 users: Networking tab), click Internet Protocol version 4 (TCP/IPv4), make sure it is checked, and then click Properties
    6. Make sure Obtain an IP Address Automatically and Obtain DNS server address Automatically are checked.
    7. Click on "Advanced" button and make sure "IP Settings" tab looks like this:
    [IMG]
    Make sure "DNS" tab looks like this:
    [IMG]
    Make sure "WINS" tab looks like this:
    [IMG]
    8. Still in Control Panel double click on "Internet options" then "Connections" tab then "LAN Settings" button. Make sure "Automatically detect settings" is checked.
    If you made any changes OK your way out.
    Restart computer.


    If that doesn't work...
    Turn off computer. Disconnect router, and modem from power source for 1 minute. At the same time disconnect ethernet cable as well.
    Reconnect everything.
    Restart computer.

    If that doesn't work, bypass router, and connect computer straight to the modem.

    If that doesn't work...
    Go Start>Run (Start search in Vista), type in:
    cmd
    Click OK (in Vista and 7, while holding CTRL, and SHIFT, press Enter).

    In Command Prompt window, type in following commands, and hit Enter after each one:
    ipconfig /flushdns
    ipconfig /registerdns
    ipconfig /release
    ipconfig /renew
    net stop "dns client"
    net start "dns client"


    Restart computer.

    If that doesn't work...
    Go Start>Run (Start search in Vista and 7), type in:
    cmd
    Click OK (in Vista and 7, while holding CTRL, and SHIFT, press Enter).

    At Command Prompt, type in:
    netsh int ip reset reset.log
    Hit Enter.
    Type in:
    netsh winsock reset catalog
    Hit Enter.

    Restart computer.


    If that doesn't work...
    Download, install, and run WinSockFix: http://www.softpedia.com/get/Tweak/Network-Tweak/WinSockFix.shtml (doesn't work in Vista and 7)
    Restart computer, and check again.

    If that doesn't work...
    Download Dial-A-Fix (DAF) (doesn't work in Vista and 7):
    http://wiki.lunarsoft.net/wiki/Dial-a-fix#Mirrors.2Fdownload_locations.2C_and_articles

    Have XP CD available in case DAF needs a file. Likely not!

    Check all boxes on the screen (clear any restrictions if it shows any)
    Then click GO!

    When the entire page is finished click the HammerHead at bottom to go to the second DAF page.

    Here, one at a time, do the below:

    Reinstall BITS
    Reinstall Windows Firewall
    Repair Permissions
    Reset networking

    Watch for any File not found or other errors and make note as this may lead to the fix!

    Restart computer.
  12. Fudd0828 Newcomer, in training Posts: 49

    YES!!!! I have internet connection in safe mode now should I try in normal.
  13. Fudd0828 Newcomer, in training Posts: 49

    I restarted in normal mode and so far no BSOD but it is taking very long to load.
  14. Broni Malware Annihilator Posts: 39,375   +177

    Very good news :)

    Now....

    Please, complete all steps listed here: http://www.techspot.com/vb/topic58138.html
    Make sure, you PASTE all logs. If some log exceeds 50,000 characters post limit, split it between couple of replies.
    Attached logs won't be reviewed.
  15. Fudd0828 Newcomer, in training Posts: 49

    Here is the malware log.

    Malwarebytes Anti-Malware (Trial) 1.61.0.1400
    www.malwarebytes.org
    Database version: v2012.06.04.09
    Windows XP Service Pack 3 x86 NTFS
    Internet Explorer 8.0.6001.18702
    Justin :: DESKTOP [administrator]
    Protection: Enabled
    6/4/2012 8:26:08 PM
    mbam-log-2012-06-04 (20-42-18).txt
    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 426137
    Time elapsed: 15 minute(s), 7 second(s)
    Memory Processes Detected: 0
    (No malicious items detected)
    Memory Modules Detected: 0
    (No malicious items detected)
    Registry Keys Detected: 0
    (No malicious items detected)
    Registry Values Detected: 1
    HKCU\Software\Microsoft|adver_id (Malware.Trace) -> Data: 0 -> No action taken.
    Registry Data Items Detected: 0
    (No malicious items detected)
    Folders Detected: 0
    (No malicious items detected)
    Files Detected: 1
    C:\Documents and Settings\Justin\uidsave.dat (Malware.Trace) -> No action taken.
    (end)
  16. Broni Malware Annihilator Posts: 39,375   +177

    It says "No action taken".
    Re-run it, FIX all issues and post new log.
  17. Fudd0828 Newcomer, in training Posts: 49

    Sorry here it is

    alwarebytes Anti-Malware (Trial) 1.61.0.1400
    www.malwarebytes.org
    Database version: v2012.06.04.09
    Windows XP Service Pack 3 x86 NTFS
    Internet Explorer 8.0.6001.18702
    Justin :: DESKTOP [administrator]
    Protection: Enabled
    6/4/2012 8:26:08 PM
    mbam-log-2012-06-04 (20-26-08).txt
    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 426137
    Time elapsed: 15 minute(s), 7 second(s)
    Memory Processes Detected: 0
    (No malicious items detected)
    Memory Modules Detected: 0
    (No malicious items detected)
    Registry Keys Detected: 0
    (No malicious items detected)
    Registry Values Detected: 1
    HKCU\Software\Microsoft|adver_id (Malware.Trace) -> Data: 0 -> Quarantined and deleted successfully.
    Registry Data Items Detected: 0
    (No malicious items detected)
    Folders Detected: 0
    (No malicious items detected)
    Files Detected: 1
    C:\Documents and Settings\Justin\uidsave.dat (Malware.Trace) -> Quarantined and deleted successfully.
    (end)
  18. Fudd0828 Newcomer, in training Posts: 49

    Here is the GMER log

    GMER 1.0.15.15641 - http://www.gmer.net
    Rootkit quick scan 2012-06-04 21:02:44
    Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 WDC_WD2500AAJS-75M0A0 rev.02.03E02
    Running: 0ku07dcu.exe; Driver: C:\DOCUME~1\Justin\LOCALS~1\Temp\fxddapoc.sys

    ---- Disk sectors - GMER 1.0.15 ----
    Disk \Device\Harddisk0\DR0 TDL4@MBR code has been found <-- ROOTKIT !!!
    Disk \Device\Harddisk0\DR0 sector 00: rootkit-like behavior
    ---- Devices - GMER 1.0.15 ----
    Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort0 8A81B2C6
    Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort1 8A81B2C6
    Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort2 8A81B2C6
    Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort3 8A81B2C6
    Device \Driver\atapi -> DriverStartIo \Device\Ide\IdeDeviceP1T0L0-e 8A81B2C6
    Device Ntfs.sys (NT File System Driver/Microsoft Corporation)
    AttachedDevice AVGIDSFilter.Sys (IDS Application Activity Monitor Filter Driver./AVG Technologies CZ, s.r.o. )
    AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
    ---- EOF - GMER 1.0.15 ----
  19. Fudd0828 Newcomer, in training Posts: 49

    Here is the DDS log

    .
    DDS (Ver_2011-08-26.01) - NTFSx86
    Internet Explorer: 8.0.6001.18702
    Run by Justin at 21:07:33 on 2012-06-04
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3070.2007 [GMT -7:00]
    .
    AV: AVG Anti-Virus Free Edition 2012 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
    .
    ============== Running Processes ===============
    .
    C:\WINDOWS\system32\svchost.exe -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    svchost.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Program Files\AVG\AVG2012\avgwdsvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINDOWS\system32\svchost.exe -k hpdevmgmt
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\System32\svchost.exe -k HPZ12
    C:\WINDOWS\System32\svchost.exe -k HPZ12
    C:\WINDOWS\System32\svchost.exe -k imgsvc
    C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe
    C:\WINDOWS\system32\SearchIndexer.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\stsystra.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\AVG\AVG2012\avgtray.exe
    C:\Program Files\AVG Secure Search\vprot.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
    C:\Program Files\Windows Desktop Search\WindowsSearch.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\Common Files\Java\Java Update\jucheck.exe
    C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
    C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe
    C:\Program Files\AVG\AVG2012\avgnsx.exe
    C:\Program Files\AVG\AVG2012\avgrsx.exe
    C:\Program Files\AVG\AVG2012\avgcsrvx.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\SearchProtocolHost.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxp://www.yahoo.com/?ilc=1
    uInternet Settings,ProxyOverride = *.local
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
    BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\10.0.0.7\AVG Secure Search_toolbar.dll
    BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
    BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.6.6209.1142\swg.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
    TB: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\10.0.0.7\AVG Secure Search_toolbar.dll
    TB: {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    mRun: [SigmatelSysTrayApp] stsystra.exe
    mRun: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
    mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
    mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
    mRun: [\\GDC2.gdc.local\EPSON Stylus C86 Series/ERICPA] c:\windows\system32\spool\drivers\w32x86\3\e_s4i2r1.exe /p47 "\\gdc2.gdc.local\EPSON Stylus C86 Series/ERICPA" /O5 "LPT1:" /M "Stylus C86"
    mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
    mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
    mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
    mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
    mRun: [AVG_TRAY] "c:\program files\avg\avg2012\avgtray.exe"
    mRun: [vProt] "c:\program files\avg secure search\vprot.exe"
    mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
    mRunOnce: [Malwarebytes Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\netgea~1.lnk - c:\program files\netgear\wg111v3\WG111v3.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\window~1.lnk - c:\program files\windows desktop search\WindowsSearch.exe
    IE: E&xport to Microsoft Excel - c:\progra~1\mi1933~1\office12\EXCEL.EXE/3000
    IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\mi1933~1\office12\ONBttnIE.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\mi1933~1\office12\REFIEBAR.DLL
    DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1256181309562
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    TCP: DhcpNameServer = 209.18.47.61 209.18.47.62
    TCP: Interfaces\{9D105FAA-3EF2-43AA-8AC1-1C71D603FC0B} : DhcpNameServer = 209.18.47.61 209.18.47.62
    TCP: Interfaces\{E2FDB885-C33B-45A8-BEF8-BC07CD686C36} : DhcpNameServer = 192.168.1.1 68.238.64.12
    Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\10.0.6\ViProtocol.dll
    Notify: LMIinit - LMIinit.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
    .
    ============= SERVICES / DRIVERS ===============
    .
    R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2011-10-7 230608]
    R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2011-8-8 40016]
    R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2011-7-11 295248]
    R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2012\AVGIDSAgent.exe [2011-10-12 4433248]
    R2 avgwd;AVG WatchDog;c:\program files\avg\avg2012\avgwdsvc.exe [2011-8-2 192776]
    R2 EAPPkt;Realtek EAPPkt Protocol;c:\windows\system32\drivers\EAPPkt.sys [2007-10-9 38144]
    R2 LMIRfsDriver;LogMeIn Remote File System Driver;c:\windows\system32\drivers\LMIRfsDriver.sys [2009-11-5 47640]
    R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-6-4 654408]
    R2 vToolbarUpdater;vToolbarUpdater;c:\program files\common files\avg secure search\vtoolbarupdater\10.0.6\ToolbarUpdater.exe [2012-6-4 909152]
    R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2011-7-11 134608]
    R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2011-7-11 24272]
    R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2011-10-4 16720]
    R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-6-4 22344]
    S2 AGV;Tfsnpool;c:\windows\system32\svchost.exe -k netsvcs [2003-7-16 14336]
    S2 ccpwdsvc;Gdihook5;c:\windows\system32\svchost.exe -k netsvcs [2003-7-16 14336]
    S2 DivisCTP;Meraksmtp;c:\windows\system32\svchost.exe -k netsvcs [2003-7-16 14336]
    S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-2-8 135664]
    S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\logmein\x86\LMIGuardianSvc.exe [2011-1-25 374152]
    S2 LMIInfo;LogMeIn Kernel Information Provider;\??\c:\program files\logmein\x86\rainfo.sys --> c:\program files\logmein\x86\RaInfo.sys [?]
    S2 mcrdsvc;HssSrv;c:\windows\system32\svchost.exe -k netsvcs [2003-7-16 14336]
    S2 mfeavfk;Cwafrmiregistry;c:\windows\system32\svchost.exe -k netsvcs [2003-7-16 14336]
    S2 starwindservice;Awhost32;c:\windows\system32\svchost.exe -k netsvcs [2003-7-16 14336]
    S2 symantecantibotagent;S3savagemx;c:\windows\system32\svchost.exe -k netsvcs [2003-7-16 14336]
    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-4-13 257696]
    S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2010-2-8 135664]
    S3 RTL8187B;NETGEAR WG111v3 Wireless-G USB Adapter Vista Driver;c:\windows\system32\drivers\wg111v3.sys [2009-7-31 341504]
    S4 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2011-7-11 23120]
    S4 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2011-9-13 32592]
    S4 LMIRfsClientNP;LMIRfsClientNP; [x]
    .
    =============== Created Last 30 ================
    .
    2012-06-05 03:23:54 -------- d-----w- c:\documents and settings\justin\application data\Malwarebytes
    2012-06-05 03:23:48 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
    2012-06-05 03:23:47 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
    2012-06-05 03:23:47 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
    2012-06-04 19:48:00 -------- d-----w- c:\documents and settings\all users\application data\AVG Secure Search
    2012-06-04 19:47:51 -------- d-----w- c:\documents and settings\justin\application data\AVG Secure Search
    2012-06-04 19:47:44 -------- d-----w- c:\program files\common files\AVG Secure Search
    2012-06-04 19:47:39 -------- d-----w- c:\program files\AVG Secure Search
    2012-06-04 19:46:39 -------- d-----w- c:\windows\system32\drivers\AVG
    2012-06-04 08:11:07 208896 ----a-w- c:\windows\MBR.exe
    2012-06-04 08:11:06 98816 ----a-w- c:\windows\sed.exe
    2012-06-04 08:11:06 518144 ----a-w- c:\windows\SWREG.exe
    2012-06-04 08:11:06 256000 ----a-w- c:\windows\PEV.exe
    2012-05-31 06:41:27 -------- d-----w- c:\windows\system32\NtmsData
    2012-05-31 06:14:28 -------- d-----w- c:\windows\pss
    2012-05-31 05:21:35 -------- d-----w- c:\documents and settings\justin\application data\Windows Search
    .
    ==================== Find3M ====================
    .
    2012-06-05 02:41:07 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
    2012-06-05 02:41:07 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
    .
    =================== ROOTKIT ====================
    .
    Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
    Windows 5.1.2600 Disk: WDC_WD2500AAJS-75M0A0 rev.02.03E02 -> Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
    .
    device: opened successfully
    user: MBR read successfully
    .
    Disk trace:
    called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll >>UNKNOWN [0x8A81B49F]<<
    _asm { PUSH EBP; MOV EBP, ESP; PUSH ECX; MOV EAX, [EBP+0x8]; CMP EAX, [0x8a822740]; MOV EAX, [0x8a8228b4]; PUSH EBX; PUSH ESI; MOV ESI, [EBP+0xc]; MOV EBX, [ESI+0x60]; PUSH EDI; JNZ 0x20; MOV [EBP+0x8], EAX; }
    1 ntkrnlpa!IofCallDriver[0x804EE130] -> \Device\Harddisk0\DR0[0x8AB51AB8]
    3 CLASSPNP[0xBA0E8FD7] -> ntkrnlpa!IofCallDriver[0x804EE130] -> \Device\00000067[0x8AB6B258]
    5 ACPI[0xB9F7F620] -> ntkrnlpa!IofCallDriver[0x804EE130] -> [0x8AADED98]
    \Driver\atapi[0x8AA81030] -> IRP_MJ_CREATE -> 0x8A81B49F
    error: Read A device attached to the system is not functioning.
    kernel: MBR read successfully
    _asm { XOR AX, AX; MOV SS, AX; MOV SP, 0x7c00; STI ; PUSH AX; POP ES; PUSH AX; POP DS; CLD ; MOV SI, 0x7c1b; MOV DI, 0x61b; PUSH AX; PUSH DI; MOV CX, 0x1e5; REP MOVSB ; RETF ; MOV BP, 0x7be; MOV CL, 0x4; CMP [BP+0x0], CH; JL 0x2e; JNZ 0x3a; }
    detected disk devices:
    detected hooks:
    \Driver\atapi DriverStartIo -> 0x8A81B2C6
    user & kernel MBR OK
    Warning: possible TDL3 rootkit infection !
    .
    ============= FINISH: 21:09:02.70 ===============
  20. Fudd0828 Newcomer, in training Posts: 49

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2011-08-26.01)
    .
    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume1
    Install Date: 10/21/2009 7:52:57 PM
    System Uptime: 6/4/2012 8:14:58 PM (1 hours ago)
    .
    Motherboard: Dell Inc. | | 0UT225
    Processor: AMD Athlon(tm) 64 Processor 3500+ | Socket M2 | 2204/1000mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 233 GiB total, 213.803 GiB free.
    D: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Description: SM Bus Controller
    Device ID: PCI\VEN_10DE&DEV_0264&SUBSYS_01EC1028&REV_A3\3&2411E6FE&0&51
    Manufacturer:
    Name: SM Bus Controller
    PNP Device ID: PCI\VEN_10DE&DEV_0264&SUBSYS_01EC1028&REV_A3\3&2411E6FE&0&51
    Service:
    .
    ==== System Restore Points ===================
    .
    RP472: 3/18/2012 5:31:03 PM - Restore Operation
    RP473: 3/18/2012 5:33:54 PM - Restore Operation
    RP474: 5/30/2012 10:56:46 PM - System Checkpoint
    RP475: 6/3/2012 2:44:19 PM - System Checkpoint
    RP476: 6/4/2012 7:57:07 PM - System Checkpoint
    .
    ==== Installed Programs ======================
    .
    32 Bit HP CIO Components Installer
    Acrobat.com
    Adobe AIR
    Adobe Flash Player 11 ActiveX
    Adobe Reader 9.4.6
    AIO_Scan
    AMD Processor Driver
    Apple Application Support
    Apple Mobile Device Support
    Apple Software Update
    AVG 2012
    Bonjour
    Broadcom Gigabit Integrated Controller
    BufferChm
    Citrix Presentation Server Client
    Copy
    CRW_v10_ES360
    CustomerResearchQFolder
    Destination Component
    DeviceDiscovery
    DeviceManagementQFolder
    DJ_AIO_ProductContext
    DJ_AIO_Software
    DJ_AIO_Software_min
    eSupportQFolder
    F4100
    F4100_doccd
    F4100_Help
    Fujitsu COBOL Free Run-time
    Google Toolbar for Internet Explorer
    Google Update Helper
    High Definition Audio Driver Package - KB835221
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB2158563)
    Hotfix for Windows XP (KB2443685)
    Hotfix for Windows XP (KB915800-v4)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB954550-v5)
    Hotfix for Windows XP (KB961118)
    Hotfix for Windows XP (KB970653-v3)
    Hotfix for Windows XP (KB976098-v2)
    Hotfix for Windows XP (KB979306)
    Hotfix for Windows XP (KB981793)
    HP Customer Participation Program 9.0
    HP Deskjet All-In-One Software 9.0
    HP Imaging Device Functions 9.0
    HP Photosmart Essential 2.01
    HP Photosmart Essential2.01
    HP Solution Center 9.0
    HP Update
    HPProductAssistant
    HPSSupply
    iTunes
    Java Auto Updater
    Java(TM) 6 Update 20
    Malwarebytes Anti-Malware version 1.61.0.1400
    MarketResearch
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Security Update (KB2416447)
    Microsoft .NET Framework 1.1 Security Update (KB979906)
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft Application Error Reporting
    Microsoft Base Smart Card Cryptographic Service Provider Package
    Microsoft Choice Guard
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office Excel MUI (English) 2007
    Microsoft Office Home and Student 2007
    Microsoft Office OneNote MUI (English) 2007
    Microsoft Office Outlook 2003
    Microsoft Office PowerPoint MUI (English) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (Spanish) 2007
    Microsoft Office Proofing (English) 2007
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared Setup Metadata MUI (English) 2007
    Microsoft Office Word MUI (English) 2007
    Microsoft Silverlight
    Microsoft Software Update for Web Folders (English) 12
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    MSVCRT
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    NETGEAR WG111v3 wireless USB 2.0 adapter
    PhoTags Express
    PSSWCORE
    QuickTime
    Scan
    Security Update for 2007 Microsoft Office System (KB2288621)
    Security Update for 2007 Microsoft Office System (KB2288931)
    Security Update for 2007 Microsoft Office System (KB2345043)
    Security Update for 2007 Microsoft Office System (KB2509488)
    Security Update for 2007 Microsoft Office System (KB969559)
    Security Update for 2007 Microsoft Office System (KB976321)
    Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
    Security Update for Microsoft Office 2007 System (KB2541012)
    Security Update for Microsoft Office Excel 2007 (KB2541007)
    Security Update for Microsoft Office InfoPath 2007 (KB979441)
    Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
    Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
    Security Update for Microsoft Office system 2007 (972581)
    Security Update for Microsoft Office system 2007 (KB974234)
    Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
    Security Update for Microsoft Office Word 2007 (KB2344993)
    Security Update for Windows Internet Explorer 8 (KB2482017)
    Security Update for Windows Internet Explorer 8 (KB2497640)
    Security Update for Windows Internet Explorer 8 (KB2510531)
    Security Update for Windows Internet Explorer 8 (KB2530548)
    Security Update for Windows Internet Explorer 8 (KB2544521)
    Security Update for Windows Internet Explorer 8 (KB971961)
    Security Update for Windows Internet Explorer 8 (KB981332)
    Security Update for Windows Internet Explorer 8 (KB982381)
    Security Update for Windows Media Player (KB2378111)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player (KB954155)
    Security Update for Windows Media Player (KB968816)
    Security Update for Windows Media Player (KB973540)
    Security Update for Windows Media Player (KB975558)
    Security Update for Windows Media Player (KB978695)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Search 4 - KB963093
    Security Update for Windows XP (KB2079403)
    Security Update for Windows XP (KB2115168)
    Security Update for Windows XP (KB2121546)
    Security Update for Windows XP (KB2160329)
    Security Update for Windows XP (KB2229593)
    Security Update for Windows XP (KB2259922)
    Security Update for Windows XP (KB2279986)
    Security Update for Windows XP (KB2286198)
    Security Update for Windows XP (KB2296011)
    Security Update for Windows XP (KB2296199)
    Security Update for Windows XP (KB2347290)
    Security Update for Windows XP (KB2360937)
    Security Update for Windows XP (KB2387149)
    Security Update for Windows XP (KB2393802)
    Security Update for Windows XP (KB2412687)
    Security Update for Windows XP (KB2419632)
    Security Update for Windows XP (KB2423089)
    Security Update for Windows XP (KB2436673)
    Security Update for Windows XP (KB2440591)
    Security Update for Windows XP (KB2443105)
    Security Update for Windows XP (KB2476490)
    Security Update for Windows XP (KB2476687)
    Security Update for Windows XP (KB2478960)
    Security Update for Windows XP (KB2478971)
    Security Update for Windows XP (KB2479628)
    Security Update for Windows XP (KB2479943)
    Security Update for Windows XP (KB2481109)
    Security Update for Windows XP (KB2483185)
    Security Update for Windows XP (KB2485376)
    Security Update for Windows XP (KB2485663)
    Security Update for Windows XP (KB2503658)
    Security Update for Windows XP (KB2503665)
    Security Update for Windows XP (KB2506212)
    Security Update for Windows XP (KB2506223)
    Security Update for Windows XP (KB2507618)
    Security Update for Windows XP (KB2508272)
    Security Update for Windows XP (KB2508429)
    Security Update for Windows XP (KB2509553)
    Security Update for Windows XP (KB2511455)
    Security Update for Windows XP (KB2524375)
    Security Update for Windows XP (KB2535512)
    Security Update for Windows XP (KB2536276)
    Security Update for Windows XP (KB2544893)
    Security Update for Windows XP (KB913433)
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956744)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956844)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958869)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB960859)
    Security Update for Windows XP (KB961371-v2)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB968537)
    Security Update for Windows XP (KB969059)
    Security Update for Windows XP (KB969947)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB970430)
    Security Update for Windows XP (KB971468)
    Security Update for Windows XP (KB971486)
    Security Update for Windows XP (KB971557)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB971657)
    Security Update for Windows XP (KB971961)
    Security Update for Windows XP (KB972270)
    Security Update for Windows XP (KB973354)
    Security Update for Windows XP (KB973507)
    Security Update for Windows XP (KB973525)
    Security Update for Windows XP (KB973869)
    Security Update for Windows XP (KB973904)
    Security Update for Windows XP (KB974112)
    Security Update for Windows XP (KB974318)
    Security Update for Windows XP (KB974392)
    Security Update for Windows XP (KB974455)
    Security Update for Windows XP (KB974571)
    Security Update for Windows XP (KB975025)
    Security Update for Windows XP (KB975467)
    Security Update for Windows XP (KB975560)
    Security Update for Windows XP (KB975561)
    Security Update for Windows XP (KB975562)
    Security Update for Windows XP (KB975713)
    Security Update for Windows XP (KB977165)
    Security Update for Windows XP (KB977816)
    Security Update for Windows XP (KB977914)
    Security Update for Windows XP (KB978037)
    Security Update for Windows XP (KB978251)
    Security Update for Windows XP (KB978262)
    Security Update for Windows XP (KB978338)
    Security Update for Windows XP (KB978542)
    Security Update for Windows XP (KB978601)
    Security Update for Windows XP (KB978706)
    Security Update for Windows XP (KB979309)
    Security Update for Windows XP (KB979482)
    Security Update for Windows XP (KB979559)
    Security Update for Windows XP (KB979683)
    Security Update for Windows XP (KB979687)
    Security Update for Windows XP (KB980195)
    Security Update for Windows XP (KB980218)
    Security Update for Windows XP (KB980232)
    Security Update for Windows XP (KB980436)
    Security Update for Windows XP (KB981322)
    Security Update for Windows XP (KB981852)
    Security Update for Windows XP (KB981957)
    Security Update for Windows XP (KB981997)
    Security Update for Windows XP (KB982132)
    Security Update for Windows XP (KB982214)
    Security Update for Windows XP (KB982665)
    Security Update for Windows XP (KB982802)
    Segoe UI
    SigmaTel Audio
    SolutionCenter
    Status
    Toolbox
    TrayApp
    Uninstall Dual Mode Camera
    UnloadSupport
    Update for 2007 Microsoft Office System (KB967642)
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Microsoft Office 2007 System (KB2539530)
    Update for Microsoft Office OneNote 2007 (KB980729)
    Update for Windows Internet Explorer 8 (KB2447568)
    Update for Windows Internet Explorer 8 (KB976662)
    Update for Windows XP (KB2141007)
    Update for Windows XP (KB2345886)
    Update for Windows XP (KB2467659)
    Update for Windows XP (KB943729)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955759)
    Update for Windows XP (KB961503)
    Update for Windows XP (KB967715)
    Update for Windows XP (KB968389)
    Update for Windows XP (KB971029)
    Update for Windows XP (KB971737)
    Update for Windows XP (KB973687)
    Update for Windows XP (KB973815)
    VBA (2627.01)
    VideoToolkit01
    WebFldrs XP
    WebReg
    Windows Genuine Advantage Notifications (KB905474)
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Internet Explorer 8
    Windows Live Call
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Upload Tool
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows PowerShell(TM) 1.0
    Windows PowerShell(TM) 1.0 MUI pack
    Windows Search 4.0
    Windows XP Service Pack 3
    .
    ==== Event Viewer Messages From Past Week ========
    .
    6/4/2012 9:12:06 AM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 480 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
    6/4/2012 12:52:00 AM, error: Schedule [7901] - The At39.job command failed to start due to the following error: %%2147942402
    6/4/2012 12:51:59 AM, error: Service Control Manager [7001] - The AVGIDSAgent service depends on the AVGIDSDriver service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
    6/4/2012 12:42:52 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
    6/4/2012 12:42:05 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD AmdK8 Avgldx86 Avgmfx86 Avgtdix Fips IPSec MRxSmb NetBIOS RasAcd Rdbss Tcpip WS2IFSL
    6/4/2012 1:40:42 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD AmdK8 Avgmfx86 Avgtdix Fips IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip WS2IFSL
    6/4/2012 1:40:42 PM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error: A device attached to the system is not functioning.
    6/4/2012 1:30:28 AM, error: Service Control Manager [7022] - The Automatic Updates service hung on starting.
    6/4/2012 1:23:31 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AmdK8 Avgmfx86 Fips
    6/4/2012 1:06:08 AM, error: Service Control Manager [7000] - The AVG Anti-Rootkit Driver service failed to start due to the following error: The system cannot find the file specified.
    6/4/2012 1:05:00 AM, error: Schedule [7901] - The At66.job command failed to start due to the following error: %%2147942402
    6/4/2012 1:05:00 AM, error: Schedule [7901] - The At65.job command failed to start due to the following error: %%2147942402
    6/4/2012 1:05:00 AM, error: Schedule [7901] - The At4.job command failed to start due to the following error: %%2147942402
    6/4/2012 1:05:00 AM, error: Schedule [7901] - The At3.job command failed to start due to the following error: %%2147942402
    6/4/2012 1:00:00 AM, error: Schedule [7901] - The At40.job command failed to start due to the following error: %%2147942402
    6/4/2012 1:00:00 AM, error: Schedule [7901] - The At16.job command failed to start due to the following error: %%2147942402
    6/3/2012 7:05:00 PM, error: Schedule [7901] - The At102.job command failed to start due to the following error: %%2147942402
    6/3/2012 7:05:00 PM, error: Schedule [7901] - The At101.job command failed to start due to the following error: %%2147942402
    6/3/2012 7:00:40 PM, error: Schedule [7901] - The At58.job command failed to start due to the following error: %%2147942402
    6/3/2012 7:00:00 PM, error: Schedule [7901] - The At34.job command failed to start due to the following error: %%2147942402
    6/3/2012 6:54:50 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ZBackupAssistService service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The WmBEnum service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Wm service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Winvnc4 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Wandrv service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The W200mdfl service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Vpcnets2 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Videoacceleratorengine service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Vga service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Vetfddnt service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Vetefile service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The VCAM service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The VC6SecS service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The VC4CB104 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Usprserv service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Uscbs108 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Usbvm321 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The USBDongle service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The UimBus service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Tvicport service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Tsp service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Transarcafsdaemon service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The TPM service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Tpkmpsvc service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Tmxpflt service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Thkeys service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Tfsnpool service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Sysplant service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The SWMX00 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Svcwrsssdk service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The StickyMesger service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ssm_mdfl service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ss_mdfl service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The SQTECH9080 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The SQLAgent$ABBEYIIOFFLINE service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Spupdsvc service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The SprintRcAppSvc service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Sonywbms service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Snpstd service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Snapman380 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Sfhlp01 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The SetupSys service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ser2pl service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Se59mgmt service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Se59bus service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Se58obex service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Sdcoreservice service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Sdbus service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Scsiaccess service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ScFBPNT2 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Sagefserver service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The S716mdm service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The S3savagemx service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The S217mdfl service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Rwbackupsrv service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Rp32service service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Rnadirectory service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Rdpdd service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Rapapp service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Pxfhbus service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Prevxagent service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The PPPoEWin service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Phc600 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Pcscnsrv service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Pavfnsvr service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Pav_service service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Pacsptisvr service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Orbpvr service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Oracleservicesecinst service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The NWFILTER service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The NTSIM service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ntpr_nic_service2 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Nm service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The NetTcpActivator service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The NETMDUSB service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ncrc710 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Nchssvad service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Mwspollserver service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Mskservice service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Mqdmserd service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Mgisvr service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Mfetdik service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Meraksmtp service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Mcsysmon service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The MagicTune service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The LxdmCATSCustConnectService service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Lxcr_device service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The LVRS service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The LPCFilter service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Lp6nds35 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ldlcserv service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ldap service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Lanusb service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The KMW_USB service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Kbstuff service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The K750mdfl service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Iviregmgr service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ISMBIOS service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Iksyssec service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ICAM3NT5 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Iam service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The HssSrv service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The HSFHWALI service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The HPFECP20 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Help and Support service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Hddsvc service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Hcmon service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Gdihook5 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Freebsd service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The FiltUSBEMPIA service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Fetnd5bv service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Fax service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Evteng service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ErrDev service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The EPSON_EB_RPCV4_01 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Enxpsvr service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Emitray service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Elnkfwppservice service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The EL2000 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ehrecvr service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Dlpwd service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Cxusb service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Cwafrmiregistry service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ctxcpubal service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ctljystk service terminated with the following error: The specified procedure could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Cpqfws2e service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ClntMgmt.sys service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Cicssfs.scmmc223 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Centennialclientagent service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The CDRPDACC service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ccflic0 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Camdrl service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Btwdins service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Bdss service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Battc service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Awhost32 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The AVerTV service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Automate6 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ATWPKT2 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The ATSWPDRV service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Ati service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Asp.net_1.1.4322 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The AR5416 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Amoagent service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The Alertmanager service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7023] - The A4S2600 service terminated with the following error: The specified module could not be found.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the LMIGuardianSvc service to connect.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7003] - The TCP/IP NetBIOS Helper service depends on the following nonexistent service: NetBT
    6/3/2012 6:50:40 PM, error: Service Control Manager [7003] - The DHCP Client service depends on the following nonexistent service: NetBT
    6/3/2012 6:50:40 PM, error: Service Control Manager [7000] - The LogMeIn Kernel Information Provider service failed to start due to the following error: The system cannot find the file specified.
    6/3/2012 6:50:40 PM, error: Service Control Manager [7000] - The LMIGuardianSvc service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    6/3/2012 6:05:00 PM, error: Schedule [7901] - The At99.job command failed to start due to the following error: %%2147942402
    6/3/2012 6:05:00 PM, error: Schedule [7901] - The At100.job command failed to start due to the following error: %%2147942402
    6/3/2012 6:00:25 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 240 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
    6/3/2012 6:00:00 PM, error: Schedule [7901] - The At57.job command failed to start due to the following error: %%2147942402
    6/3/2012 6:00:00 PM, error: Schedule [7901] - The At33.job command failed to start due to the following error: %%2147942402
    6/3/2012 5:05:00 PM, error: Schedule [7901] - The At98.job command failed to start due to the following error: %%2147942402
    6/3/2012 5:05:00 PM, error: Schedule [7901] - The At97.job command failed to start due to the following error: %%2147942402
    6/3/2012 5:00:00 PM, error: Schedule [7901] - The At56.job command failed to start due to the following error: %%2147942402
    6/3/2012 5:00:00 PM, error: Schedule [7901] - The At32.job command failed to start due to the following error: %%2147942402
    6/3/2012 4:05:00 PM, error: Schedule [7901] - The At96.job command failed to start due to the following error: %%2147942402
    6/3/2012 4:05:00 PM, error: Schedule [7901] - The At95.job command failed to start due to the following error: %%2147942402
    6/3/2012 4:00:24 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 120 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
    6/3/2012 4:00:00 PM, error: Schedule [7901] - The At55.job command failed to start due to the following error: %%2147942402
    6/3/2012 4:00:00 PM, error: Schedule [7901] - The At31.job command failed to start due to the following error: %%2147942402
    6/3/2012 3:05:00 PM, error: Schedule [7901] - The At94.job command failed to start due to the following error: %%2147942402
    6/3/2012 3:05:00 PM, error: Schedule [7901] - The At93.job command failed to start due to the following error: %%2147942402
    6/3/2012 3:00:23 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 60 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
    6/3/2012 3:00:00 PM, error: Schedule [7901] - The At54.job command failed to start due to the following error: %%2147942402
    6/3/2012 3:00:00 PM, error: Schedule [7901] - The At30.job command failed to start due to the following error: %%2147942402
    6/3/2012 2:30:23 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
    5/30/2012 9:44:20 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    5/30/2012 9:19:43 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
    5/30/2012 5:58:27 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD AmdK8 Avgldx86 Avgmfx86 Avgtdix Fips IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip
    5/30/2012 5:58:27 PM, error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the AFD Networking Support Environment service which failed to start because of the following error: A device attached to the system is not functioning.
    5/30/2012 5:58:27 PM, error: Service Control Manager [7001] - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.
    5/30/2012 5:58:27 PM, error: Service Control Manager [7001] - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    5/30/2012 5:58:27 PM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBT service which failed to start because of the following error: A device attached to the system is not functioning.
    5/30/2012 5:58:27 PM, error: Service Control Manager [7001] - The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    5/30/2012 5:58:27 PM, error: Service Control Manager [7001] - The Apple Mobile Device service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    5/30/2012 5:57:53 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service netman with arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
    5/30/2012 11:05:00 PM, error: Schedule [7901] - The At110.job command failed to start due to the following error: %%2147942402
    5/30/2012 11:05:00 PM, error: Schedule [7901] - The At109.job command failed to start due to the following error: %%2147942402
    5/30/2012 11:00:00 PM, error: Schedule [7901] - The At62.job command failed to start due to the following error: %%2147942402
    5/30/2012 11:00:00 PM, error: Schedule [7901] - The At38.job command failed to start due to the following error: %%2147942402
    5/30/2012 10:05:00 PM, error: Schedule [7901] - The At108.job command failed to start due to the following error: %%2147942402
    5/30/2012 10:05:00 PM, error: Schedule [7901] - The At107.job command failed to start due to the following error: %%2147942402
    5/30/2012 10:00:00 PM, error: Schedule [7901] - The At61.job command failed to start due to the following error: %%2147942402
    5/30/2012 10:00:00 PM, error: Schedule [7901] - The At37.job command failed to start due to the following error: %%2147942402
    .
    ==== End Of File ===========================