| okay here's the stuff from that with main.txt first.
2008-06-10 19:26:55 0 d-------- C:\Program Files\Roxio 2008-06-10 01:23:51 0 d-------- C:\Documents and Settings\Melissa\Application Data\Roxio 2008-06-10 01:09:21 0 d-------- C:\Program Files\Common Files\Sonic Shared 2008-06-10 01:06:16 0 d-------- C:\Program Files\Common Files\InstallShield 2008-06-10 01:06:15 0 d-------- C:\Program Files\Common Files\Roxio Shared 2008-06-10 01:02:45 0 d-------- C:\Program Files\DivX 2008-05-21 12:10:15 685328 --ahs---- C:\WINDOWS\system32\suBLnnmp.ini2 2008-05-20 22:50:43 777039 --ahs---- C:\WINDOWS\system32\jPVxwyay.ini2 2008-05-20 00:20:48 900860 --ahs---- C:\WINDOWS\system32\WDfNUvut.ini2 2008-05-10 13:38:18 552 --a------ C:\WINDOWS\system32\d3d8caps.dat
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [03/23/2006 09:17 PM] "igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [03/23/2006 09:13 PM] "igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [03/23/2006 09:17 PM] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [06/10/2008 04:27 AM] "StopSignSsTsMon"="C:\Program Files\Acceleration Software\Anti-Virus\sstsmon0.dll" [12/10/2007 10:13 PM] "StopSignSsSsMon"="C:\Program Files\Acceleration Software\Anti-Virus\ssssmon.dll" [12/19/2007 03:50 PM] "webscan"="C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" [12/19/2007 10:20 PM] "StopSignSystemProtect"="C:\Program Files\Acceleration Software\StopSignProducts\SystemProtect\stopsignprotect.exe" [12/23/2004 01:14 AM] "HostManager"="C:\Program Files\Common Files\AOL\1201224075\ee\AOLSoftware.exe" [] "Verizon_McciTrayApp"="C:\Program Files\Verizon\McciTrayApp.exe" [09/28/2007 02:30 PM] "@"="" [] "RoxWatchTray"="C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe" [10/27/2006 08:41 AM] "ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [08/25/2006 11:11 AM] "ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [08/25/2006 11:11 AM] "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [06/23/2008 05:27 PM] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [06/12/2008 02:38 AM] "Zune Launcher"="c:\Program Files\Zune\ZuneLauncher.exe" [04/29/2008 07:56 PM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AOL Fast Start"="C:\Program Files\AOL 9.0\AOL.exe" [02/19/2007 03:14 AM] "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [05/28/2008 10:33 AM]
C:\Documents and Settings\Melissa\Start Menu\Programs\Startup\ OpenOffice.org 2.3.lnk - C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe [8/17/2007 10:57:56 PM]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableRegistryTools"=0 (0x0)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [05/13/2008 10:13 AM 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 04/19/2007 01:41 PM 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\dimsntfy] C:\WINDOWS\System32\dimsntfy.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\flQ62.sys] @="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds] @="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] @="Volume shadow copy"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] eapsvcs eaphost dot3svc dot3svc
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs napagent hkmsvc
-- End of Deckard's System Scanner: finished at 2008-07-26 22:42:49 ------------
Deckard's System Scanner v20071014.68 Extra logfile - please post this as an attachment with your post. --------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Professional (build 2600) SP 3.0 Architecture: X86; Language: English
CPU 0: Intel(R) Pentium(R) 4 CPU 2.80GHz Percentage of Memory in Use: 53% Physical Memory (total/avail): 502.08 MiB / 235.98 MiB Pagefile Memory (total/avail): 1225.32 MiB / 906.48 MiB Virtual Memory (total/avail): 2047.88 MiB / 1912.11 MiB
A: is Removable (No Media) C: is Fixed (NTFS) - 74.5 GiB total, 62.11 GiB free. D: is CDROM (No Media) E: is CDROM (No Media)
\\.\PHYSICALDRIVE0 - WDC WD800JD-75MSA1 - 74.5 GiB - 1 partition \PARTITION0 (bootable) - Installable File System - 74.5 GiB - C:
-- Security Center -------------------------------------------------------------
AUOptions is scheduled to auto-install.
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\Documents and Settings\All Users APPDATA=C:\Documents and Settings\Melissa\Application Data CommonProgramFiles=C:\Program Files\Common Files COMPUTERNAME=MICROSOF-BD646A ComSpec=C:\WINDOWS\system32\cmd.exe FP_NO_HOST_CHECK=NO HOMEDRIVE=C: HOMEPATH=\Documents and Settings\Melissa LOGONSERVER=\\MICROSOF-BD646A NUMBER_OF_PROCESSORS=1 OS=Windows_NT Path=C:\Program Files\AOL 9.0;C:\Program Files\Common Files\AOL\1201224075\ee;C:\Program Files\AOL 9.0;C:\Program Files\Common Files\AOL\1201224075\ee;C:\Program Files\AOL 9.0;C:\Program Files\Common Files\AOL\1201224075\ee;C:\Program Files\AOL 9.0;C:\Program Files\Common Files\AOL\1201224075\ee;C:\Program Files\AOL 9.0;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\ PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH PROCESSOR_ARCHITECTURE=x86 PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 9, GenuineIntel PROCESSOR_LEVEL=15 PROCESSOR_REVISION=0409 ProgramFiles=C:\Program Files PROMPT=$P$G RoxioCentral=C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\ SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\WINDOWS TEMP=C:\DOCUME~1\Melissa\LOCALS~1\Temp TMP=C:\DOCUME~1\Melissa\LOCALS~1\Temp USERDOMAIN=MICROSOF-BD646A USERNAME=Melissa USERPROFILE=C:\Documents and Settings\Melissa windir=C:\WINDOWS
-- User Profiles ---------------------------------------------------------------
Melissa [I](admin)[/I] Amber [I](admin)[/I]
-- Add/Remove Programs ---------------------------------------------------------
--> "C:\Program Files\Acceleration Software\Anti-Virus\ws_uninst.exe" -s --> "C:\Program Files\AOL\AOL Toolbar 4.0\uninstall.exe" --> C:\PROGRA~1\ACCELE~1\ANTI-V~1\regsvr32.exe /u /s C:\PROGRA~1\ACCELE~1\ANTI-V~1\ssupload.dll --> C:\PROGRA~1\ACCELE~1\ANTI-V~1\regsvr32.exe /u /s C:\PROGRA~1\ACCELE~1\ANTI-V~1\vclnr.dll --> C:\PROGRA~1\COMMON~1\EACCEL~1\SysSnap\syssnap.exe -UnregServer --> MsiExec.exe /I{0394CDC8-FABD-4ed8-B104-03393876DFDF} --> MsiExec.exe /I{0D330013-4A99-46D6-83C6-2C959C68DBFF} --> MsiExec.exe /I{0D397393-9B50-4c52-84D5-77E344289F87} --> MsiExec.exe /I{11F93B4B-48F0-4A4E-AE77-DFA96A99664B} --> MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0} --> MsiExec.exe /I{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048} --> MsiExec.exe /I{83FFCFC7-88C6-41c6-8752-958A45325C82} --> MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C} --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe Adobe Reader 9 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001} Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log AOL Toolbar 4.0 --> "C:\Program Files\AOL\AOL Toolbar 4.0\uninstall.exe" AOL Uninstaller (Choose which Products to Remove) --> C:\Program Files\Common Files\AOL\uninstaller.exe CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe" Conexant D850 56K V.9x DFVc Modem --> C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200F14F1\HXFSETUP.EXE -U -Idel200fk.inf Dell Solution Center --> MsiExec.exe /X{11F1920A-56A2-4642-B6E0-3B31A12C9288} DivX --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC High Definition Audio Driver Package - KB835221 --> C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe HijackThis 2.0.2 --> "C:\Documents and Settings\Melissa\Local Settings\Temporary Internet Files\Content.IE5\STC9IN41\HijackThis.exe" /uninstall Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe" Intel(R) Graphics Media Accelerator Driver --> RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_2782 PCI\VEN_8086&DEV_2582 Intel(R) PRO Network Connections Drivers --> Prounstl.exe Java(TM) 6 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030} Java(TM) 6 Update 7 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070} Malwarebytes' Anti-Malware --> "C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe" Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe" Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 --> "C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe" Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 --> "C:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe" Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe" OpenOffice.org 2.3 --> MsiExec.exe /I{2F29D6D2-824E-4FEF-8AED-7013F39F642A} Roxio Easy Media Creator 9 Suite --> MsiExec.exe /I{70272964-C468-4C5F-8246-AA2CABA75941} SigmaTel Audio --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}\setup.exe" -l0x9 -remove -removeonly Stop-Sign System Protect --> "C:\Program Files\Acceleration Software\StopSignProducts\SystemProtect\stopsignprotect.exe" /Uninstall StopSign by eAcceleration --> C:\PROGRA~1\COMMON~1\EACCEL~1\INSTAL~1\eaccelsetup.exe -AddRemove SUPERAntiSpyware Free Edition --> MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} Verizon Online DSL --> C:\Program Files\Common Files\SupportSoft\Verizon\vzuninstall.exe /starthidden Verizon Online Help and Support --> C:\PROGRA~1\Verizon\UNWISE.EXE C:\PROGRA~1\Verizon\INSTALL.LOG Viewpoint Media Player --> C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe" Windows Media Format SDK Hotfix - KB891122 --> "C:\WINDOWS\$NtUninstallKB891122$\spuninst\spuninst.exe" Windows XP Service Pack 3 --> "C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe" Zune --> c:\Program Files\Zune\ZuneSetup.exe /x Zune --> MsiExec.exe /X{FF70513F-E3A7-402F-84FB-B7810A064BE2} Zune Language Pack (ES) --> MsiExec.exe /X{EE4ACABF-531E-419A-9225-B8E0FA4955AF} Zune Language Pack (FR) --> MsiExec.exe /X{0076E1AC-9E7B-4B9F-A62A-4CC9511AD8E3}
-- Application Event Log -------------------------------------------------------
Event Record #/Type3580 / Warning Event Submitted/Written: 07/26/2008 06:59:23 PM Event ID/Source: 4354 / EventSystem Event Description: The COM+ Event System failed to fire the DisplayUnlock method on subscription {73F0817C-A012-48BD-80E0-E5E9984F410D}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The subscriber returned HRESULT 80004001.
Event Record #/Type3579 / Warning Event Submitted/Written: 07/26/2008 06:59:17 PM Event ID/Source: 4354 / EventSystem Event Description: The COM+ Event System failed to fire the DisplayLock method on subscription {73F0817C-A012-48BD-80E0-E5E9984F410D}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The subscriber returned HRESULT 80004001.
Event Record #/Type3578 / Warning Event Submitted/Written: 07/26/2008 06:59:17 PM Event ID/Source: 4354 / EventSystem Event Description: The COM+ Event System failed to fire the StopScreenSaver method on subscription {73F0817C-A012-48BD-80E0-E5E9984F410D}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The subscriber returned HRESULT 80004001.
Event Record #/Type3577 / Warning Event Submitted/Written: 07/26/2008 02:32:29 AM Event ID/Source: 4354 / EventSystem Event Description: The COM+ Event System failed to fire the StartScreenSaver method on subscription {73F0817C-A012-48BD-80E0-E5E9984F410D}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The subscriber returned HRESULT 80004001.
Event Record #/Type3576 / Warning Event Submitted/Written: 07/26/2008 02:22:12 AM Event ID/Source: 4354 / EventSystem Event Description: The COM+ Event System failed to fire the DisplayUnlock method on subscription {73F0817C-A012-48BD-80E0-E5E9984F410D}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The subscriber returned HRESULT 80004001.
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
Event Record #/Type6823 / Warning Event Submitted/Written: 07/26/2008 11:35:30 AM Event ID/Source: 36 / W32Time Event Description: The time service has not been able to synchronize the system time for 49152 seconds because none of the time providers has been able to provide a usable time stamp. The system clock is unsynchronized.
Event Record #/Type6667 / Error Event Submitted/Written: 07/25/2008 03:28:24 PM Event ID/Source: 10005 / DCOM Event Description: DCOM got error "%%1058" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
Event Record #/Type6666 / Error Event Submitted/Written: 07/25/2008 03:28:21 PM Event ID/Source: 10005 / DCOM Event Description: DCOM got error "%%1058" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
Event Record #/Type6665 / Error Event Submitted/Written: 07/25/2008 02:58:35 PM Event ID/Source: 10005 / DCOM Event Description: DCOM got error "%%1058" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
Event Record #/Type6664 / Error Event Submitted/Written: 07/25/2008 02:58:31 PM Event ID/Source: 10005 / DCOM Event Description: DCOM got error "%%1058" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
-- End of Deckard's System Scanner: finished at 2008-07-26 22:42:49 ------------
|