michael311
Posts: 13 +0
Hi. When I run an internet speed test on this computer it shows a download speed 3 times slower than other computers and laptops in the house. This computer (emachine) is the computer that has the router installed. I do not know if the slow internet speed is caused by a virus or if I messed up the network configurations. I have tried many cleaners and scanners to try to fix the problem and then I found your site. Thank you very much for any help you can give.
Malwarebytes Anti-Malware 1.60.0.1800
www.malwarebytes.org
Database version: v2011.12.31.05
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Mom :: EMACHINE [administrator]
12/31/2011 4:23:38 PM
mbam-log-2011-12-31 (16-23-38).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 218653
Time elapsed: 18 minute(s), 49 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
++++++++++++++++++
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit quick scan 2012-01-01 02:18:08
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0 WDC_WD80 rev.13.0
Running: 2u4t0xh6.exe; Driver: C:\DOCUME~1\Mom\LOCALS~1\Temp\fxlcapog.sys
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Ip SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Ip kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Tcp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Tcp kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\RawIp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\RawIp kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
---- EOF - GMER 1.0.15 ----
+++++++++++++++++
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_29
Run by Mom at 2:35:26 on 2012-01-01
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.2039.1125 [GMT -5:00]
.
AV: AVG Anti-Virus Free Edition 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33}
AV: Norton Security Suite *Enabled/Updated* {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Security Suite *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Norton Security Suite\Engine\5.1.0.29\ccSvcHst.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZipm12.exe
C:\Program Files\Norton Security Suite\Engine\5.1.0.29\ccSvcHst.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Citrix\ICA Client\concentr.exe
C:\Program Files\Citrix\ICA Client\wfcrun32.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://my.yahoo.com/
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mStart Page = about:blank
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
mSearchAssistant = hxxp://www.google.com/ie
mWinlogon: Userinit=c:\windows\system32\userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton security suite\engine\5.1.0.29\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton security suite\engine\5.1.0.29\ips\IPSBHO.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton security suite\engine\5.1.0.29\coIEPlg.dll
mRun: [ConnectionCenter] "c:\program files\citrix\ica client\concentr.exe" /startup
mRun: [KSafeTray] "c:\program files\kingsoft\pcdoctor\KSafeTray.exe" -autorun
mRunOnce: [Malwarebytes Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} - hxxp://office.microsoft.com/sites/production/ieawsdc32.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/3/9/8/398422c0-8d3e-40e1-a617-af65a72a0465/LegitCheckControl.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 68.87.73.246 68.87.71.230 192.168.1.1
TCP: Interfaces\{5100D9CC-E15A-48F5-8C4D-7CF8BE488289} : DhcpNameServer = 68.87.73.246 68.87.71.230 192.168.1.1
Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp4.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: igfxcui - igfxsrvc.dll
SEH: Microsoft AntiMalware ShellExecuteHook: {091eb208-39dd-417d-a5dd-7e2c2d8fb9cb} - c:\progra~1\wifd1f~1\MpShHook.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\mom\application data\mozilla\firefox\profiles\4wngfs3y.default user\
FF - prefs.js: browser.search.selectedEngine - Google
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - plugin: c:\documents and settings\mom\application data\mozilla\firefox\profiles\4wngfs3y.default user\extensions\{e2883e8f-472f-4fb0-9522-ac9bf37916a7}\plugins\np_gp.dll
FF - plugin: c:\documents and settings\mom\local settings\application data\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npqtplugin8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\quicktime\plugins\npqtplugin8.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
.
---- FIREFOX POLICIES ----
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 0
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
.
=============== Created Last 30 ================
.
2011-12-31 03:30:40 -------- d-----w- c:\documents and settings\mom\local settings\application data\KSafe
2011-12-31 01:53:08 -------- d-----w- c:\documents and settings\mom\application data\kingsoft
2011-12-31 01:43:43 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-12-31 01:29:01 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-12-31 01:19:10 9216 -c----w- c:\windows\system32\dllcache\fs_rec.sys
2011-12-31 01:19:10 77824 -c----w- c:\windows\system32\dllcache\ifsutil.dll
2011-12-31 01:19:10 57344 -c----w- c:\windows\system32\dllcache\uexfat.dll
2011-12-31 01:19:10 57344 ----a-w- c:\windows\system32\uexfat.dll
2011-12-31 01:19:10 18944 -c----w- c:\windows\system32\dllcache\fmifs.dll
2011-12-31 01:19:10 133632 -c----w- c:\windows\system32\dllcache\exfat.sys
2011-12-31 01:19:10 133632 ------w- c:\windows\system32\drivers\exfat.sys
2011-12-31 01:19:09 278528 -c----w- c:\windows\system32\dllcache\ulib.dll
2011-12-31 01:18:15 74752 -c----w- c:\windows\system32\dllcache\msw3prt.dll
2011-12-31 01:18:15 104960 -c----w- c:\windows\system32\dllcache\win32spl.dll
2011-12-31 01:17:37 62976 -c----w- c:\windows\system32\dllcache\cdrom.sys
2011-12-31 01:17:37 465920 -c----w- c:\windows\system32\dllcache\imapi2fs.dll
2011-12-31 01:17:37 465920 ------w- c:\windows\system32\imapi2fs.dll
2011-12-31 01:17:37 317952 -c----w- c:\windows\system32\dllcache\imapi2.dll
2011-12-31 01:17:37 317952 ------w- c:\windows\system32\imapi2.dll
2011-12-31 01:16:03 330752 -c----w- c:\windows\system32\dllcache\ipnathlp.dll
2011-12-31 01:15:50 -------- d-sh--w- C:\KRSHistory
2011-12-31 01:15:17 -------- d--h--w- C:\SafeRecycle
2011-12-31 01:15:14 -------- d-----w- c:\documents and settings\mom\application data\KSafe
2011-12-31 01:14:45 -------- d-sh--w- c:\documents and settings\all users\application data\KRSHistory
2011-12-31 01:14:44 -------- d-----w- c:\documents and settings\all users\application data\Safe
2011-12-31 01:13:19 -------- d-----w- c:\documents and settings\all users\application data\kingsoft
2011-12-31 01:12:46 -------- d-----w- c:\program files\Kingsoft
2011-12-28 01:30:13 -------- d-----w- c:\program files\Cisco Systems
2011-12-27 16:22:21 -------- d-----w- c:\documents and settings\all users\application data\Cisco Systems
.
==================== Find3M ====================
.
2011-12-31 01:43:18 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-12-10 20:24:06 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-11-23 13:25:32 1859584 ----a-w- c:\windows\system32\win32k.sys
2011-11-04 19:20:51 916992 ----a-w- c:\windows\system32\wininet.dll
2011-11-04 19:20:51 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-04 19:20:51 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-11-04 11:23:59 385024 ----a-w- c:\windows\system32\html.iec
2011-11-01 16:07:10 1288704 ----a-w- c:\windows\system32\ole32.dll
2011-10-28 05:31:48 33280 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-25 13:33:08 2192768 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-25 12:52:03 2069376 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-18 11:13:22 186880 ----a-w- c:\windows\system32\encdec.dll
2011-10-11 23:01:35 60872 ----a-w- c:\windows\system32\S32EVNT1.DLL
2011-10-11 23:01:35 126584 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS
2011-10-10 14:22:41 692736 ----a-w- c:\windows\system32\inetcomm.dll
.
============= FINISH: 2:36:24.48 ===============
+++++++++++++++++
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 1/3/2005 4:18:01 PM
System Uptime: 12/31/2011 1:09:07 PM (13 hours ago)
.
Motherboard: | |
Processor: Intel(R) Celeron(R) CPU 2.66GHz | J2E1 | 2666/133mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 75 GiB total, 4.184 GiB free.
D: is CDROM ()
E: is CDROM (CDFS)
F: is Removable
G: is Removable
H: is Removable
I: is Removable
Z: is NetworkDisk (NTFS) - 75 GiB total, 4.184 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP2679: 11/3/2011 4:41:59 PM - System Checkpoint
RP2680: 11/4/2011 5:45:47 PM - System Checkpoint
RP2681: 11/5/2011 6:29:43 PM - System Checkpoint
RP2682: 11/6/2011 6:21:38 PM - System Checkpoint
RP2683: 11/7/2011 6:26:09 PM - System Checkpoint
RP2684: 11/8/2011 7:39:07 PM - System Checkpoint
RP2685: 11/9/2011 3:00:40 AM - Software Distribution Service 3.0
RP2686: 11/10/2011 3:17:40 AM - System Checkpoint
RP2687: 11/11/2011 3:00:38 AM - Software Distribution Service 3.0
RP2688: 11/12/2011 3:44:40 AM - System Checkpoint
RP2689: 11/13/2011 4:17:54 AM - System Checkpoint
RP2690: 11/14/2011 4:53:00 AM - System Checkpoint
RP2691: 11/15/2011 5:30:33 AM - System Checkpoint
RP2692: 11/16/2011 6:23:17 AM - System Checkpoint
RP2693: 11/17/2011 7:09:57 AM - System Checkpoint
RP2694: 11/18/2011 7:58:30 AM - System Checkpoint
RP2695: 11/19/2011 8:42:48 AM - System Checkpoint
RP2696: 11/20/2011 9:52:13 AM - System Checkpoint
RP2697: 11/21/2011 10:16:11 AM - System Checkpoint
RP2698: 11/22/2011 10:24:58 AM - System Checkpoint
RP2699: 11/23/2011 10:52:59 AM - System Checkpoint
RP2700: 11/24/2011 11:53:03 AM - System Checkpoint
RP2701: 11/25/2011 12:53:04 PM - System Checkpoint
RP2702: 11/26/2011 1:53:07 PM - System Checkpoint
RP2703: 11/27/2011 2:53:06 PM - System Checkpoint
RP2704: 11/28/2011 3:33:14 PM - System Checkpoint
RP2705: 11/29/2011 4:33:15 PM - System Checkpoint
RP2706: 12/1/2011 7:42:08 PM - System Checkpoint
RP2707: 12/2/2011 8:22:26 PM - System Checkpoint
RP2708: 12/3/2011 10:00:18 PM - System Checkpoint
RP2709: 12/4/2011 10:26:47 PM - System Checkpoint
RP2710: 12/5/2011 11:04:41 PM - System Checkpoint
RP2711: 12/6/2011 11:46:16 PM - System Checkpoint
RP2712: 12/8/2011 12:46:17 AM - System Checkpoint
RP2713: 12/9/2011 1:46:16 AM - System Checkpoint
RP2714: 12/10/2011 2:41:33 AM - System Checkpoint
RP2715: 12/11/2011 3:28:52 AM - System Checkpoint
RP2716: 12/12/2011 3:32:54 AM - System Checkpoint
RP2717: 12/13/2011 4:08:06 AM - System Checkpoint
RP2718: 12/14/2011 4:58:06 AM - System Checkpoint
RP2719: 12/15/2011 3:01:06 AM - Software Distribution Service 3.0
RP2720: 12/16/2011 3:29:57 AM - System Checkpoint
RP2721: 12/17/2011 4:19:31 AM - System Checkpoint
RP2722: 12/18/2011 5:19:28 AM - System Checkpoint
RP2723: 12/19/2011 6:19:29 AM - System Checkpoint
RP2724: 12/20/2011 6:59:18 AM - System Checkpoint
RP2725: 12/21/2011 7:45:55 AM - System Checkpoint
RP2726: 12/22/2011 8:10:21 AM - System Checkpoint
RP2727: 12/23/2011 9:08:07 AM - System Checkpoint
RP2728: 12/24/2011 9:48:39 AM - System Checkpoint
RP2729: 12/25/2011 12:17:51 PM - System Checkpoint
RP2730: 12/26/2011 12:44:03 PM - System Checkpoint
RP2731: 12/27/2011 1:34:09 PM - System Checkpoint
RP2732: 12/28/2011 1:35:21 PM - System Checkpoint
RP2733: 12/29/2011 2:06:16 PM - System Checkpoint
RP2734: 12/29/2011 3:02:58 PM - Removed Google Earth.
RP2735: 12/29/2011 3:03:56 PM - Installed Google Earth.
RP2736: 12/30/2011 12:33:54 PM - Installed Ad-Aware
RP2737: 12/30/2011 12:37:12 PM - Installed Ad-Aware
RP2738: 12/30/2011 8:17:28 PM - Installed Windows XP KB951830.
RP2739: 12/30/2011 8:18:08 PM - Installed Windows XP KB932716-v2.
RP2740: 12/30/2011 8:18:43 PM - Installed Windows XP KB953155.
RP2741: 12/30/2011 8:19:03 PM - Installed Windows Media Player KB952069.
RP2742: 12/30/2011 8:19:40 PM - Installed Windows XP KB955704.
RP2743: 12/30/2011 8:20:20 PM - Installed Windows XP KB2447568.
RP2744: 12/31/2011 9:15:13 PM - System Checkpoint
.
==== Installed Programs ======================
.
Ad-Aware
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader X (10.0.1)
Adobe Shockwave Player 11.5
AnswerWorks 5.0 English Runtime
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Batch File Modifier
Bionicle Translator
Bionicle Translator (C:\Program Files\Bionicle Translator\)
BlueJ 3.0.2
Bonjour
Bonjour Print Services
Cisco Connect
Cisco Network Magic
Citrix online plug-in - web
Citrix online plug-in (DV)
Citrix online plug-in (HDX)
Citrix online plug-in (USB)
Citrix online plug-in (Web)
CleanUp!
Comcast High-Speed Internet Install Wizard
Compatibility Pack for the 2007 Office system
eMachines Bay Reader
ERUNT 1.1j
ExamView Pro
EXIFeditor
Family Lawyer 2000
Glary Utilities 2.41.0.1358
Google Chrome
Google Earth
Google Update Helper
GoToAssist 8.0.0.516
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows XP (KB2570791)
Hotfix for Windows XP (KB2633952)
Hotfix for Windows XP (KB932716-v2)
Hotfix for Windows XP (KB951830)
Intel Application Accelerator
Intel(R) Extreme Graphics Driver
Intel(R) PRO Network Adapters and Drivers
IObit Security 360
IrfanView (remove only)
iTunes
Java Auto Updater
Java DB 10.5.3.0
Java(TM) 6 Update 29
Java(TM) SE Development Kit 6 Update 21
Java(TM) SE Development Kit 6 Update 24
Jesper Office Spaceplanning
Kingsoft PC Doctor 3.2.0.41
Learn2 Player (Uninstall Only)
Legal Search
Macromedia Flash Player
Macromedia Shockwave Player
Malwarebytes Anti-Malware version 1.60.0.1800
Media Collage
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Data Access Components KB870669
Microsoft FrontPage Client - English
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft National Language Support Downlevel APIs
Microsoft Office 2000 SR-1 Disc 2
Microsoft Office 2000 SR-1 Premium
Microsoft Office File Validation Add-In
Microsoft Office Professional Edition 2003
Microsoft Silverlight
Microsoft Visual Basic .NET Standard 2003 - English
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
MotoConnect 1.1.31
Motorola Mobile Drivers Installation 4.7.1
Mozilla Firefox (3.5.17)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Network Magic
Norton Security Suite
PDF2Word Converter
PDFTOEXCEL
Photo Story 3 for Windows
PowerDVD
Pure Networks Platform
Quicken 2009
QuickTime
RealPlayer
Realtek AC'97 Audio
Revo Uninstaller 1.91
RollerCoaster Tycoon 3
ScanSoft PaperPort Viewer 7.0
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft Windows (KB2564958)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 8 (KB2183461)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB2482017)
Security Update for Windows Internet Explorer 8 (KB2497640)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2530548)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2559049)
Security Update for Windows Internet Explorer 8 (KB2586448)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows XP (KB2412687)
Security Update for Windows XP (KB2476490)
Security Update for Windows XP (KB2485663)
Security Update for Windows XP (KB2503658)
Security Update for Windows XP (KB2503665)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2506223)
Security Update for Windows XP (KB2507618)
Security Update for Windows XP (KB2507938)
Security Update for Windows XP (KB2508272)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2511455)
Security Update for Windows XP (KB2535512)
Security Update for Windows XP (KB2536276-v2)
Security Update for Windows XP (KB2536276)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2544893)
Security Update for Windows XP (KB2555917)
Security Update for Windows XP (KB2562937)
Security Update for Windows XP (KB2566454)
Security Update for Windows XP (KB2567053)
Security Update for Windows XP (KB2567680)
Security Update for Windows XP (KB2570222)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2619339)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2633171)
Security Update for Windows XP (KB2639417)
Security Update for Windows XP (KB953155)
Serif PhotoPlus 5.5
Shutterfly Studio
Smart Defrag
SoftV92 Data Fax Modem with SmartCP
Sony USB Driver
Spybot - Search & Destroy
SUPERAntiSpyware
TestGen
The Plain-Language Law Dictionary
TrojanHunter 5.2
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB2447568)
Update for Windows Internet Explorer 8 (KB971930)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB2541763)
Update for Windows XP (KB2607712)
Update for Windows XP (KB2616676)
Update for Windows XP (KB2641690)
Update for Windows XP (KB955704)
Viewpoint Media Player
Virtual Earth 3D (Beta)
Visual Basic .NET Standard 2003 - English
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
Visual Studio.NET Baseline - English
WebFldrs XP
Winamp
Winamp Application Detect
Windows Backup Utility
Windows Defender
Windows Defender Signatures
Windows Imaging Component
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows Media Format Runtime
Windows Media Player 10
Windows Movie Maker 2.0
Windows WMF Metafile Vulnerability HotFix 1.2
Windows XP Service Pack 3
Yahoo! Messenger
Yahoo! Software Update
.
==== Event Viewer Messages From Past Week ========
.
12/30/2011 9:56:36 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the service.
12/30/2011 9:56:06 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the KSafeSvc service.
12/27/2011 8:30:59 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Pure Networks Platform Service service to connect.
12/27/2011 8:30:59 AM, error: Service Control Manager [7000] - The Pure Networks Platform Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/27/2011 4:17:52 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 4:12:19 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
12/27/2011 3:16:51 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 240 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 12:16:50 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 60 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 11:48:10 AM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service MDM with arguments "" in order to run the server: {0C0A3666-30C9-11D0-8F20-00805F2CD064}
12/27/2011 11:46:50 AM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 1:21:25 PM, error: NetBT [4321] - The name "MSHOME :1d" could not be registered on the Interface with IP address 192.168.1.103. The machine with the IP address 192.168.1.108 did not allow the name to be claimed by this machine.
12/27/2011 1:16:50 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 120 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
.
==== End Of File ===========================
Malwarebytes Anti-Malware 1.60.0.1800
www.malwarebytes.org
Database version: v2011.12.31.05
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Mom :: EMACHINE [administrator]
12/31/2011 4:23:38 PM
mbam-log-2011-12-31 (16-23-38).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 218653
Time elapsed: 18 minute(s), 49 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
++++++++++++++++++
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit quick scan 2012-01-01 02:18:08
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0 WDC_WD80 rev.13.0
Running: 2u4t0xh6.exe; Driver: C:\DOCUME~1\Mom\LOCALS~1\Temp\fxlcapog.sys
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Ip SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Ip kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Tcp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Tcp kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\RawIp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\RawIp kmodurl.sys (Firewall TdiFilter Driver/Kingsoft Corporation)
---- EOF - GMER 1.0.15 ----
+++++++++++++++++
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_29
Run by Mom at 2:35:26 on 2012-01-01
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.2039.1125 [GMT -5:00]
.
AV: AVG Anti-Virus Free Edition 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33}
AV: Norton Security Suite *Enabled/Updated* {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Security Suite *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Norton Security Suite\Engine\5.1.0.29\ccSvcHst.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZipm12.exe
C:\Program Files\Norton Security Suite\Engine\5.1.0.29\ccSvcHst.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Citrix\ICA Client\concentr.exe
C:\Program Files\Citrix\ICA Client\wfcrun32.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://my.yahoo.com/
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mStart Page = about:blank
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
mSearchAssistant = hxxp://www.google.com/ie
mWinlogon: Userinit=c:\windows\system32\userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton security suite\engine\5.1.0.29\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton security suite\engine\5.1.0.29\ips\IPSBHO.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton security suite\engine\5.1.0.29\coIEPlg.dll
mRun: [ConnectionCenter] "c:\program files\citrix\ica client\concentr.exe" /startup
mRun: [KSafeTray] "c:\program files\kingsoft\pcdoctor\KSafeTray.exe" -autorun
mRunOnce: [Malwarebytes Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} - hxxp://office.microsoft.com/sites/production/ieawsdc32.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/3/9/8/398422c0-8d3e-40e1-a617-af65a72a0465/LegitCheckControl.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 68.87.73.246 68.87.71.230 192.168.1.1
TCP: Interfaces\{5100D9CC-E15A-48F5-8C4D-7CF8BE488289} : DhcpNameServer = 68.87.73.246 68.87.71.230 192.168.1.1
Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - c:\program files\citrix\ica client\IcaMimeFilter.dll
Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp4.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: igfxcui - igfxsrvc.dll
SEH: Microsoft AntiMalware ShellExecuteHook: {091eb208-39dd-417d-a5dd-7e2c2d8fb9cb} - c:\progra~1\wifd1f~1\MpShHook.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\mom\application data\mozilla\firefox\profiles\4wngfs3y.default user\
FF - prefs.js: browser.search.selectedEngine - Google
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - plugin: c:\documents and settings\mom\application data\mozilla\firefox\profiles\4wngfs3y.default user\extensions\{e2883e8f-472f-4fb0-9522-ac9bf37916a7}\plugins\np_gp.dll
FF - plugin: c:\documents and settings\mom\local settings\application data\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npqtplugin8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\quicktime\plugins\npqtplugin8.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
.
---- FIREFOX POLICIES ----
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 0
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
.
=============== Created Last 30 ================
.
2011-12-31 03:30:40 -------- d-----w- c:\documents and settings\mom\local settings\application data\KSafe
2011-12-31 01:53:08 -------- d-----w- c:\documents and settings\mom\application data\kingsoft
2011-12-31 01:43:43 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-12-31 01:29:01 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-12-31 01:19:10 9216 -c----w- c:\windows\system32\dllcache\fs_rec.sys
2011-12-31 01:19:10 77824 -c----w- c:\windows\system32\dllcache\ifsutil.dll
2011-12-31 01:19:10 57344 -c----w- c:\windows\system32\dllcache\uexfat.dll
2011-12-31 01:19:10 57344 ----a-w- c:\windows\system32\uexfat.dll
2011-12-31 01:19:10 18944 -c----w- c:\windows\system32\dllcache\fmifs.dll
2011-12-31 01:19:10 133632 -c----w- c:\windows\system32\dllcache\exfat.sys
2011-12-31 01:19:10 133632 ------w- c:\windows\system32\drivers\exfat.sys
2011-12-31 01:19:09 278528 -c----w- c:\windows\system32\dllcache\ulib.dll
2011-12-31 01:18:15 74752 -c----w- c:\windows\system32\dllcache\msw3prt.dll
2011-12-31 01:18:15 104960 -c----w- c:\windows\system32\dllcache\win32spl.dll
2011-12-31 01:17:37 62976 -c----w- c:\windows\system32\dllcache\cdrom.sys
2011-12-31 01:17:37 465920 -c----w- c:\windows\system32\dllcache\imapi2fs.dll
2011-12-31 01:17:37 465920 ------w- c:\windows\system32\imapi2fs.dll
2011-12-31 01:17:37 317952 -c----w- c:\windows\system32\dllcache\imapi2.dll
2011-12-31 01:17:37 317952 ------w- c:\windows\system32\imapi2.dll
2011-12-31 01:16:03 330752 -c----w- c:\windows\system32\dllcache\ipnathlp.dll
2011-12-31 01:15:50 -------- d-sh--w- C:\KRSHistory
2011-12-31 01:15:17 -------- d--h--w- C:\SafeRecycle
2011-12-31 01:15:14 -------- d-----w- c:\documents and settings\mom\application data\KSafe
2011-12-31 01:14:45 -------- d-sh--w- c:\documents and settings\all users\application data\KRSHistory
2011-12-31 01:14:44 -------- d-----w- c:\documents and settings\all users\application data\Safe
2011-12-31 01:13:19 -------- d-----w- c:\documents and settings\all users\application data\kingsoft
2011-12-31 01:12:46 -------- d-----w- c:\program files\Kingsoft
2011-12-28 01:30:13 -------- d-----w- c:\program files\Cisco Systems
2011-12-27 16:22:21 -------- d-----w- c:\documents and settings\all users\application data\Cisco Systems
.
==================== Find3M ====================
.
2011-12-31 01:43:18 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-12-10 20:24:06 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-11-23 13:25:32 1859584 ----a-w- c:\windows\system32\win32k.sys
2011-11-04 19:20:51 916992 ----a-w- c:\windows\system32\wininet.dll
2011-11-04 19:20:51 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-04 19:20:51 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-11-04 11:23:59 385024 ----a-w- c:\windows\system32\html.iec
2011-11-01 16:07:10 1288704 ----a-w- c:\windows\system32\ole32.dll
2011-10-28 05:31:48 33280 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-25 13:33:08 2192768 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-25 12:52:03 2069376 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-18 11:13:22 186880 ----a-w- c:\windows\system32\encdec.dll
2011-10-11 23:01:35 60872 ----a-w- c:\windows\system32\S32EVNT1.DLL
2011-10-11 23:01:35 126584 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS
2011-10-10 14:22:41 692736 ----a-w- c:\windows\system32\inetcomm.dll
.
============= FINISH: 2:36:24.48 ===============
+++++++++++++++++
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 1/3/2005 4:18:01 PM
System Uptime: 12/31/2011 1:09:07 PM (13 hours ago)
.
Motherboard: | |
Processor: Intel(R) Celeron(R) CPU 2.66GHz | J2E1 | 2666/133mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 75 GiB total, 4.184 GiB free.
D: is CDROM ()
E: is CDROM (CDFS)
F: is Removable
G: is Removable
H: is Removable
I: is Removable
Z: is NetworkDisk (NTFS) - 75 GiB total, 4.184 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP2679: 11/3/2011 4:41:59 PM - System Checkpoint
RP2680: 11/4/2011 5:45:47 PM - System Checkpoint
RP2681: 11/5/2011 6:29:43 PM - System Checkpoint
RP2682: 11/6/2011 6:21:38 PM - System Checkpoint
RP2683: 11/7/2011 6:26:09 PM - System Checkpoint
RP2684: 11/8/2011 7:39:07 PM - System Checkpoint
RP2685: 11/9/2011 3:00:40 AM - Software Distribution Service 3.0
RP2686: 11/10/2011 3:17:40 AM - System Checkpoint
RP2687: 11/11/2011 3:00:38 AM - Software Distribution Service 3.0
RP2688: 11/12/2011 3:44:40 AM - System Checkpoint
RP2689: 11/13/2011 4:17:54 AM - System Checkpoint
RP2690: 11/14/2011 4:53:00 AM - System Checkpoint
RP2691: 11/15/2011 5:30:33 AM - System Checkpoint
RP2692: 11/16/2011 6:23:17 AM - System Checkpoint
RP2693: 11/17/2011 7:09:57 AM - System Checkpoint
RP2694: 11/18/2011 7:58:30 AM - System Checkpoint
RP2695: 11/19/2011 8:42:48 AM - System Checkpoint
RP2696: 11/20/2011 9:52:13 AM - System Checkpoint
RP2697: 11/21/2011 10:16:11 AM - System Checkpoint
RP2698: 11/22/2011 10:24:58 AM - System Checkpoint
RP2699: 11/23/2011 10:52:59 AM - System Checkpoint
RP2700: 11/24/2011 11:53:03 AM - System Checkpoint
RP2701: 11/25/2011 12:53:04 PM - System Checkpoint
RP2702: 11/26/2011 1:53:07 PM - System Checkpoint
RP2703: 11/27/2011 2:53:06 PM - System Checkpoint
RP2704: 11/28/2011 3:33:14 PM - System Checkpoint
RP2705: 11/29/2011 4:33:15 PM - System Checkpoint
RP2706: 12/1/2011 7:42:08 PM - System Checkpoint
RP2707: 12/2/2011 8:22:26 PM - System Checkpoint
RP2708: 12/3/2011 10:00:18 PM - System Checkpoint
RP2709: 12/4/2011 10:26:47 PM - System Checkpoint
RP2710: 12/5/2011 11:04:41 PM - System Checkpoint
RP2711: 12/6/2011 11:46:16 PM - System Checkpoint
RP2712: 12/8/2011 12:46:17 AM - System Checkpoint
RP2713: 12/9/2011 1:46:16 AM - System Checkpoint
RP2714: 12/10/2011 2:41:33 AM - System Checkpoint
RP2715: 12/11/2011 3:28:52 AM - System Checkpoint
RP2716: 12/12/2011 3:32:54 AM - System Checkpoint
RP2717: 12/13/2011 4:08:06 AM - System Checkpoint
RP2718: 12/14/2011 4:58:06 AM - System Checkpoint
RP2719: 12/15/2011 3:01:06 AM - Software Distribution Service 3.0
RP2720: 12/16/2011 3:29:57 AM - System Checkpoint
RP2721: 12/17/2011 4:19:31 AM - System Checkpoint
RP2722: 12/18/2011 5:19:28 AM - System Checkpoint
RP2723: 12/19/2011 6:19:29 AM - System Checkpoint
RP2724: 12/20/2011 6:59:18 AM - System Checkpoint
RP2725: 12/21/2011 7:45:55 AM - System Checkpoint
RP2726: 12/22/2011 8:10:21 AM - System Checkpoint
RP2727: 12/23/2011 9:08:07 AM - System Checkpoint
RP2728: 12/24/2011 9:48:39 AM - System Checkpoint
RP2729: 12/25/2011 12:17:51 PM - System Checkpoint
RP2730: 12/26/2011 12:44:03 PM - System Checkpoint
RP2731: 12/27/2011 1:34:09 PM - System Checkpoint
RP2732: 12/28/2011 1:35:21 PM - System Checkpoint
RP2733: 12/29/2011 2:06:16 PM - System Checkpoint
RP2734: 12/29/2011 3:02:58 PM - Removed Google Earth.
RP2735: 12/29/2011 3:03:56 PM - Installed Google Earth.
RP2736: 12/30/2011 12:33:54 PM - Installed Ad-Aware
RP2737: 12/30/2011 12:37:12 PM - Installed Ad-Aware
RP2738: 12/30/2011 8:17:28 PM - Installed Windows XP KB951830.
RP2739: 12/30/2011 8:18:08 PM - Installed Windows XP KB932716-v2.
RP2740: 12/30/2011 8:18:43 PM - Installed Windows XP KB953155.
RP2741: 12/30/2011 8:19:03 PM - Installed Windows Media Player KB952069.
RP2742: 12/30/2011 8:19:40 PM - Installed Windows XP KB955704.
RP2743: 12/30/2011 8:20:20 PM - Installed Windows XP KB2447568.
RP2744: 12/31/2011 9:15:13 PM - System Checkpoint
.
==== Installed Programs ======================
.
Ad-Aware
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader X (10.0.1)
Adobe Shockwave Player 11.5
AnswerWorks 5.0 English Runtime
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Batch File Modifier
Bionicle Translator
Bionicle Translator (C:\Program Files\Bionicle Translator\)
BlueJ 3.0.2
Bonjour
Bonjour Print Services
Cisco Connect
Cisco Network Magic
Citrix online plug-in - web
Citrix online plug-in (DV)
Citrix online plug-in (HDX)
Citrix online plug-in (USB)
Citrix online plug-in (Web)
CleanUp!
Comcast High-Speed Internet Install Wizard
Compatibility Pack for the 2007 Office system
eMachines Bay Reader
ERUNT 1.1j
ExamView Pro
EXIFeditor
Family Lawyer 2000
Glary Utilities 2.41.0.1358
Google Chrome
Google Earth
Google Update Helper
GoToAssist 8.0.0.516
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows XP (KB2570791)
Hotfix for Windows XP (KB2633952)
Hotfix for Windows XP (KB932716-v2)
Hotfix for Windows XP (KB951830)
Intel Application Accelerator
Intel(R) Extreme Graphics Driver
Intel(R) PRO Network Adapters and Drivers
IObit Security 360
IrfanView (remove only)
iTunes
Java Auto Updater
Java DB 10.5.3.0
Java(TM) 6 Update 29
Java(TM) SE Development Kit 6 Update 21
Java(TM) SE Development Kit 6 Update 24
Jesper Office Spaceplanning
Kingsoft PC Doctor 3.2.0.41
Learn2 Player (Uninstall Only)
Legal Search
Macromedia Flash Player
Macromedia Shockwave Player
Malwarebytes Anti-Malware version 1.60.0.1800
Media Collage
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Data Access Components KB870669
Microsoft FrontPage Client - English
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft National Language Support Downlevel APIs
Microsoft Office 2000 SR-1 Disc 2
Microsoft Office 2000 SR-1 Premium
Microsoft Office File Validation Add-In
Microsoft Office Professional Edition 2003
Microsoft Silverlight
Microsoft Visual Basic .NET Standard 2003 - English
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
MotoConnect 1.1.31
Motorola Mobile Drivers Installation 4.7.1
Mozilla Firefox (3.5.17)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Network Magic
Norton Security Suite
PDF2Word Converter
PDFTOEXCEL
Photo Story 3 for Windows
PowerDVD
Pure Networks Platform
Quicken 2009
QuickTime
RealPlayer
Realtek AC'97 Audio
Revo Uninstaller 1.91
RollerCoaster Tycoon 3
ScanSoft PaperPort Viewer 7.0
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft Windows (KB2564958)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 8 (KB2183461)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB2482017)
Security Update for Windows Internet Explorer 8 (KB2497640)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2530548)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2559049)
Security Update for Windows Internet Explorer 8 (KB2586448)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows XP (KB2412687)
Security Update for Windows XP (KB2476490)
Security Update for Windows XP (KB2485663)
Security Update for Windows XP (KB2503658)
Security Update for Windows XP (KB2503665)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2506223)
Security Update for Windows XP (KB2507618)
Security Update for Windows XP (KB2507938)
Security Update for Windows XP (KB2508272)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2511455)
Security Update for Windows XP (KB2535512)
Security Update for Windows XP (KB2536276-v2)
Security Update for Windows XP (KB2536276)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2544893)
Security Update for Windows XP (KB2555917)
Security Update for Windows XP (KB2562937)
Security Update for Windows XP (KB2566454)
Security Update for Windows XP (KB2567053)
Security Update for Windows XP (KB2567680)
Security Update for Windows XP (KB2570222)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2619339)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2633171)
Security Update for Windows XP (KB2639417)
Security Update for Windows XP (KB953155)
Serif PhotoPlus 5.5
Shutterfly Studio
Smart Defrag
SoftV92 Data Fax Modem with SmartCP
Sony USB Driver
Spybot - Search & Destroy
SUPERAntiSpyware
TestGen
The Plain-Language Law Dictionary
TrojanHunter 5.2
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB2447568)
Update for Windows Internet Explorer 8 (KB971930)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB2541763)
Update for Windows XP (KB2607712)
Update for Windows XP (KB2616676)
Update for Windows XP (KB2641690)
Update for Windows XP (KB955704)
Viewpoint Media Player
Virtual Earth 3D (Beta)
Visual Basic .NET Standard 2003 - English
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
Visual Studio.NET Baseline - English
WebFldrs XP
Winamp
Winamp Application Detect
Windows Backup Utility
Windows Defender
Windows Defender Signatures
Windows Imaging Component
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows Media Format Runtime
Windows Media Player 10
Windows Movie Maker 2.0
Windows WMF Metafile Vulnerability HotFix 1.2
Windows XP Service Pack 3
Yahoo! Messenger
Yahoo! Software Update
.
==== Event Viewer Messages From Past Week ========
.
12/30/2011 9:56:36 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the service.
12/30/2011 9:56:06 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the KSafeSvc service.
12/27/2011 8:30:59 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Pure Networks Platform Service service to connect.
12/27/2011 8:30:59 AM, error: Service Control Manager [7000] - The Pure Networks Platform Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/27/2011 4:17:52 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 4:12:19 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
12/27/2011 3:16:51 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 240 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 12:16:50 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 60 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 11:48:10 AM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service MDM with arguments "" in order to run the server: {0C0A3666-30C9-11D0-8F20-00805F2CD064}
12/27/2011 11:46:50 AM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/27/2011 1:21:25 PM, error: NetBT [4321] - The name "MSHOME :1d" could not be registered on the Interface with IP address 192.168.1.103. The machine with the IP address 192.168.1.108 did not allow the name to be claimed by this machine.
12/27/2011 1:16:50 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 120 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
.
==== End Of File ===========================