Well hopefully I'm doing this all right. My problems come when using mozilla browser however safari does not seem to have the same problems. They are mainly just annoying
continual pop-up windows saying "9.temp has encountered an error" or "f.temp has encountered a problem."
Installing programs fail , nothing wants to update w\o failing ie widows defender or new virus definitions.
We don't get blue screens of death or anything major other than just general slowness.
We do get alot of redirection to other than websites clicked on.
I was using avg free for anti-virus and spyware protection.
I have since uninstalled avg and ran kerpesky virus removal tool and malwarebytes anti-malware. I couldn't get c cleaner to install. So far the names i have gotten are "trojan.tracur.s" netman32.exe and avmeter32.exe.
Thank you in advance for any help provided.
OTL Extras logfile created on: 7/10/2011 4:29:11 PM - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\owner\My Documents
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.43 Gb Available Physical Memory | 71.47% Memory free
3.85 Gb Paging File | 3.37 Gb Available in Paging File | 87.43% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 153.37 Gb Total Space | 126.52 Gb Free Space | 82.49% Space Free | Partition Type: NTFS
Unable to calculate disk information.
Computer Name: OWNER-BAF37C0F8 | User Name: owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"3389:TCP" = 3389:TCP:*:Enabled:@xpsp2res.dll,-22009
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"1:TCP" = 1:TCP:*:Enabled:bsp
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\WINDOWS\keymgrwow.exe" = C:\WINDOWS\keymgrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iologmsgwow.exe" = C:\WINDOWS\iologmsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ufatwow.exe" = C:\WINDOWS\ufatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqperfwow.exe" = C:\WINDOWS\mqperfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mscorieswow.exe" = C:\WINDOWS\mscorieswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eventclswow.exe" = C:\WINDOWS\eventclswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\licwmiwow.exe" = C:\WINDOWS\licwmiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\tapisrvwow.exe" = C:\WINDOWS\tapisrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\vgawow.exe" = C:\WINDOWS\vgawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nwapi16wow.exe" = C:\WINDOWS\nwapi16wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odbcintwow.exe" = C:\WINDOWS\odbcintwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\slbcspwow.exe" = C:\WINDOWS\slbcspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\midimapwow.exe" = C:\WINDOWS\midimapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrshuwow.exe" = C:\WINDOWS\nvwrshuwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\w32toplwow.exe" = C:\WINDOWS\w32toplwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdcanwow.exe" = C:\WINDOWS\kbdcanwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\PortableDeviceClassExtensionwow.exe" = C:\WINDOWS\PortableDeviceClassExtensionwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mspmspwow.exe" = C:\WINDOWS\mspmspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\84B.tmp" = C:\WINDOWS\system32\84B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\wuauservwow.exe" = C:\WINDOWS\wuauservwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\RA32SIPRwow.exe" = C:\WINDOWS\RA32SIPRwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unrarwow.exe" = C:\WINDOWS\unrarwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvrsjawow.exe" = C:\WINDOWS\nvrsjawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\1A2E.tmp" = C:\WINDOWS\system32\1A2E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\sccbasewow.exe" = C:\WINDOWS\sccbasewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\btpanuiwow.exe" = C:\WINDOWS\btpanuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxmontrwow.exe" = C:\WINDOWS\ipxmontrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdlvwow.exe" = C:\WINDOWS\kbdlvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\57A.tmp" = C:\WINDOWS\system32\57A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcconfwow.exe" = C:\WINDOWS\odbcconfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsoundwow.exe" = C:\WINDOWS\dsoundwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\compatUIwow.exe" = C:\WINDOWS\compatUIwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FBE.tmp" = C:\WINDOWS\Temp\1FBE.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\icardiewow.exe" = C:\WINDOWS\icardiewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B5E.tmp" = C:\WINDOWS\system32\B5E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmstylewow.exe" = C:\WINDOWS\dmstylewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pngfiltwow.exe" = C:\WINDOWS\pngfiltwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2292.tmp" = C:\WINDOWS\system32\2292.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\mll_qicwow.exe" = C:\WINDOWS\mll_qicwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2695.tmp" = C:\WINDOWS\system32\2695.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\34BE.tmp" = C:\WINDOWS\system32\34BE.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\shimengwow.exe" = C:\WINDOWS\shimengwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\45AB.tmp" = C:\WINDOWS\system32\45AB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\4DAD.tmp" = C:\WINDOWS\system32\4DAD.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\B5C.tmp" = C:\WINDOWS\system32\B5C.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\5DAB.tmp" = C:\WINDOWS\system32\5DAB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\untfswow.exe" = C:\WINDOWS\untfswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\davclntwow.exe" = C:\WINDOWS\davclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\quartzwow.exe" = C:\WINDOWS\quartzwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\oleaut32wow.exe" = C:\WINDOWS\oleaut32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pstorecwow.exe" = C:\WINDOWS\pstorecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxpromnwow.exe" = C:\WINDOWS\ipxpromnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipv6monwow.exe" = C:\WINDOWS\ipv6monwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsnlwow.exe" = C:\WINDOWS\nvwrsnlwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dxtmsftwow.exe" = C:\WINDOWS\dxtmsftwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\twextwow.exe" = C:\WINDOWS\twextwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iepeerswow.exe" = C:\WINDOWS\iepeerswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ir32_32wow.exe" = C:\WINDOWS\ir32_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\5DA9.tmp" = C:\WINDOWS\system32\5DA9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\objselwow.exe" = C:\WINDOWS\objselwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mfc40uwow.exe" = C:\WINDOWS\mfc40uwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\20E.tmp" = C:\WINDOWS\system32\20E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\210.tmp" = C:\WINDOWS\system32\210.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\20F.tmp" = C:\WINDOWS\system32\20F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsskwow.exe" = C:\WINDOWS\nvrsskwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ftsrchwow.exe" = C:\WINDOWS\ftsrchwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msoeacctwow.exe" = C:\WINDOWS\msoeacctwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eapp3hstwow.exe" = C:\WINDOWS\eapp3hstwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3gpclntwow.exe" = C:\WINDOWS\dot3gpclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3.tmp" = C:\WINDOWS\system32\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B4C.tmp" = C:\WINDOWS\system32\B4C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\netrapwow.exe" = C:\WINDOWS\netrapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\isrdbg32wow.exe" = C:\WINDOWS\isrdbg32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsprpreswow.exe" = C:\WINDOWS\dsprpreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\fltlibwow.exe" = C:\WINDOWS\fltlibwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\qt-dx331wow.exe" = C:\WINDOWS\qt-dx331wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\10AD.tmp" = C:\WINDOWS\Temp\10AD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\DE7.tmp" = C:\WINDOWS\system32\DE7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbewow.exe" = C:\WINDOWS\kbdbewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsound3dwow.exe" = C:\WINDOWS\dsound3dwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\17.tmp" = C:\WINDOWS\system32\17.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdpowow.exe" = C:\WINDOWS\kbdpowow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqadwow.exe" = C:\WINDOWS\mqadwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pnrpnspwow.exe" = C:\WINDOWS\pnrpnspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdgr1wow.exe" = C:\WINDOWS\kbdgr1wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\capesnpnwow.exe" = C:\WINDOWS\capesnpnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iyuv_32wow.exe" = C:\WINDOWS\iyuv_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\6B.tmp" = C:\WINDOWS\system32\6B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ddrawexwow.exe" = C:\WINDOWS\ddrawexwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsthwow.exe" = C:\WINDOWS\nvwrsthwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\213.tmp" = C:\WINDOWS\system32\213.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msimsgwow.exe" = C:\WINDOWS\msimsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\serwvdrvwow.exe" = C:\WINDOWS\serwvdrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\4B.tmp" = C:\WINDOWS\Temp\4B.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\dpnlobbywow.exe" = C:\WINDOWS\dpnlobbywow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\7D.tmp" = C:\WINDOWS\system32\7D.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\B4B.tmp" = C:\WINDOWS\system32\B4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mqsecwow.exe" = C:\WINDOWS\mqsecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\356.tmp" = C:\WINDOWS\system32\356.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\399.tmp" = C:\WINDOWS\system32\399.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\nvrsdawow.exe" = C:\WINDOWS\nvrsdawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dmdlgswow.exe" = C:\WINDOWS\dmdlgswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3uiwow.exe" = C:\WINDOWS\dot3uiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3B8.tmp" = C:\WINDOWS\system32\3B8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvwrscswow.exe" = C:\WINDOWS\nvwrscswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\516.tmp" = C:\WINDOWS\system32\516.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsesmwow.exe" = C:\WINDOWS\nvrsesmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\srsvcwow.exe" = C:\WINDOWS\srsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\comsnapwow.exe" = C:\WINDOWS\comsnapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\11D.tmp" = C:\WINDOWS\system32\11D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmbandwow.exe" = C:\WINDOWS\dmbandwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odexl32wow.exe" = C:\WINDOWS\odexl32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\22A.tmp" = C:\WINDOWS\system32\22A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\acctreswow.exe" = C:\WINDOWS\acctreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\39F.tmp" = C:\WINDOWS\system32\39F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ippromonwow.exe" = C:\WINDOWS\ippromonwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unimdmatwow.exe" = C:\WINDOWS\unimdmatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msrd2x40wow.exe" = C:\WINDOWS\msrd2x40wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3C4B.tmp" = C:\WINDOWS\system32\3C4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ksuserwow.exe" = C:\WINDOWS\ksuserwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\wzcsvcwow.exe" = C:\WINDOWS\wzcsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\sensapiwow.exe" = C:\WINDOWS\sensapiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\resutilswow.exe" = C:\WINDOWS\resutilswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\cardswow.exe" = C:\WINDOWS\cardswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\92F.tmp" = C:\WINDOWS\Temp\92F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\usrvoicawow.exe" = C:\WINDOWS\usrvoicawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\944.tmp" = C:\WINDOWS\Temp\944.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\309.tmp" = C:\WINDOWS\system32\309.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\397.tmp" = C:\WINDOWS\system32\397.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\iasradwow.exe" = C:\WINDOWS\iasradwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\cfgbkendwow.exe" = C:\WINDOWS\cfgbkendwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\B84.tmp" = C:\WINDOWS\Temp\B84.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9C.tmp" = C:\WINDOWS\system32\B9C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B9B.tmp" = C:\WINDOWS\TEMP\B9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\safrdmwow.exe" = C:\WINDOWS\safrdmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\1.tmp" = C:\WINDOWS\TEMP\1.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\2.tmp" = C:\WINDOWS\Temp\2.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\6D.tmp" = C:\WINDOWS\system32\6D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\xmlprovwow.exe" = C:\WINDOWS\xmlprovwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\3.tmp" = C:\WINDOWS\Temp\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\5.tmp" = C:\WINDOWS\TEMP\5.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\adsntwow.exe" = C:\WINDOWS\adsntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9D.tmp" = C:\WINDOWS\Temp\9D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsfiwow.exe" = C:\WINDOWS\nvrsfiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FD.tmp" = C:\WINDOWS\Temp\1FD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\77F.tmp" = C:\WINDOWS\Temp\77F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\PortableDeviceTypeswow.exe" = C:\WINDOWS\PortableDeviceTypeswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B3.tmp" = C:\WINDOWS\system32\B3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbhcwow.exe" = C:\WINDOWS\kbdbhcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\6.tmp" = C:\WINDOWS\Temp\6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\7.tmp" = C:\WINDOWS\TEMP\7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\winnlswow.exe" = C:\WINDOWS\winnlswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\483.tmp" = C:\WINDOWS\Temp\483.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\C6.tmp" = C:\WINDOWS\system32\C6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\4.tmp" = C:\WINDOWS\system32\4.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\9.tmp" = C:\WINDOWS\TEMP\9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mslbuiwow.exe" = C:\WINDOWS\mslbuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\MSCTFwow.exe" = C:\WINDOWS\MSCTFwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\A.tmp" = C:\WINDOWS\TEMP\A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\8B.tmp" = C:\WINDOWS\system32\8B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\GdiPluswow.exe" = C:\WINDOWS\GdiPluswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9B.tmp" = C:\WINDOWS\Temp\9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msvbvm50wow.exe" = C:\WINDOWS\msvbvm50wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9E.tmp" = C:\WINDOWS\Temp\9E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mobsyncwow.exe" = C:\WINDOWS\mobsyncwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\8.tmp" = C:\WINDOWS\Temp\8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B.tmp" = C:\WINDOWS\TEMP\B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\shdocvwwow.exe" = C:\WINDOWS\shdocvwwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\C.tmp" = C:\WINDOWS\Temp\C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\D.tmp" = C:\WINDOWS\Temp\D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\11.tmp" = C:\WINDOWS\system32\11.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\igmpagntwow.exe" = C:\WINDOWS\igmpagntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\12.tmp" = C:\WINDOWS\Temp\12.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\E.tmp" = C:\WINDOWS\Temp\E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dnsrslvrwow.exe" = C:\WINDOWS\dnsrslvrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\F.tmp" = C:\WINDOWS\TEMP\F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mshtmlerwow.exe" = C:\WINDOWS\mshtmlerwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\31.tmp" = C:\WINDOWS\system32\31.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\149.tmp" = C:\WINDOWS\Temp\149.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\duserwow.exe" = C:\WINDOWS\duserwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\avmeter32.exe" = C:\WINDOWS\system32\avmeter32.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcp32rwow.exe" = C:\WINDOWS\odbcp32rwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9A.tmp" = C:\WINDOWS\system32\B9A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\33.tmp" = C:\WINDOWS\system32\33.tmp:*:Enabled:Windows Update Service -- ()
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"E:\FrostWire\FrostWire.exe" = E:\FrostWire\FrostWire.exe:*:Enabled:FrostWire 4.21.1
"C:\WINDOWS\keymgrwow.exe" = C:\WINDOWS\keymgrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iologmsgwow.exe" = C:\WINDOWS\iologmsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ufatwow.exe" = C:\WINDOWS\ufatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqperfwow.exe" = C:\WINDOWS\mqperfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mscorieswow.exe" = C:\WINDOWS\mscorieswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eventclswow.exe" = C:\WINDOWS\eventclswow.exe:*:Enabled:Windows Update Service
"C:\Program Files\LuckyWire\LuckyWire.exe" = C:\Program Files\LuckyWire\LuckyWire.exe:*:Enabled:Luckywire
"C:\WINDOWS\licwmiwow.exe" = C:\WINDOWS\licwmiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\tapisrvwow.exe" = C:\WINDOWS\tapisrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\vgawow.exe" = C:\WINDOWS\vgawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nwapi16wow.exe" = C:\WINDOWS\nwapi16wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odbcintwow.exe" = C:\WINDOWS\odbcintwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\slbcspwow.exe" = C:\WINDOWS\slbcspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\midimapwow.exe" = C:\WINDOWS\midimapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrshuwow.exe" = C:\WINDOWS\nvwrshuwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\w32toplwow.exe" = C:\WINDOWS\w32toplwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdcanwow.exe" = C:\WINDOWS\kbdcanwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\PortableDeviceClassExtensionwow.exe" = C:\WINDOWS\PortableDeviceClassExtensionwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mspmspwow.exe" = C:\WINDOWS\mspmspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\84B.tmp" = C:\WINDOWS\system32\84B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\wuauservwow.exe" = C:\WINDOWS\wuauservwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\RA32SIPRwow.exe" = C:\WINDOWS\RA32SIPRwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unrarwow.exe" = C:\WINDOWS\unrarwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvrsjawow.exe" = C:\WINDOWS\nvrsjawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\1A2E.tmp" = C:\WINDOWS\system32\1A2E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\sccbasewow.exe" = C:\WINDOWS\sccbasewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\btpanuiwow.exe" = C:\WINDOWS\btpanuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxmontrwow.exe" = C:\WINDOWS\ipxmontrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdlvwow.exe" = C:\WINDOWS\kbdlvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\57A.tmp" = C:\WINDOWS\system32\57A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcconfwow.exe" = C:\WINDOWS\odbcconfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsoundwow.exe" = C:\WINDOWS\dsoundwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\compatUIwow.exe" = C:\WINDOWS\compatUIwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FBE.tmp" = C:\WINDOWS\Temp\1FBE.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\icardiewow.exe" = C:\WINDOWS\icardiewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B5E.tmp" = C:\WINDOWS\system32\B5E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmstylewow.exe" = C:\WINDOWS\dmstylewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pngfiltwow.exe" = C:\WINDOWS\pngfiltwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2292.tmp" = C:\WINDOWS\system32\2292.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\mll_qicwow.exe" = C:\WINDOWS\mll_qicwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2695.tmp" = C:\WINDOWS\system32\2695.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\34BE.tmp" = C:\WINDOWS\system32\34BE.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\shimengwow.exe" = C:\WINDOWS\shimengwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\45AB.tmp" = C:\WINDOWS\system32\45AB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\4DAD.tmp" = C:\WINDOWS\system32\4DAD.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\B5C.tmp" = C:\WINDOWS\system32\B5C.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\5DAB.tmp" = C:\WINDOWS\system32\5DAB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\untfswow.exe" = C:\WINDOWS\untfswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\davclntwow.exe" = C:\WINDOWS\davclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\quartzwow.exe" = C:\WINDOWS\quartzwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\oleaut32wow.exe" = C:\WINDOWS\oleaut32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pstorecwow.exe" = C:\WINDOWS\pstorecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxpromnwow.exe" = C:\WINDOWS\ipxpromnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipv6monwow.exe" = C:\WINDOWS\ipv6monwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsnlwow.exe" = C:\WINDOWS\nvwrsnlwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dxtmsftwow.exe" = C:\WINDOWS\dxtmsftwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\twextwow.exe" = C:\WINDOWS\twextwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iepeerswow.exe" = C:\WINDOWS\iepeerswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ir32_32wow.exe" = C:\WINDOWS\ir32_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\5DA9.tmp" = C:\WINDOWS\system32\5DA9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\objselwow.exe" = C:\WINDOWS\objselwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mfc40uwow.exe" = C:\WINDOWS\mfc40uwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\20E.tmp" = C:\WINDOWS\system32\20E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\210.tmp" = C:\WINDOWS\system32\210.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\20F.tmp" = C:\WINDOWS\system32\20F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsskwow.exe" = C:\WINDOWS\nvrsskwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ftsrchwow.exe" = C:\WINDOWS\ftsrchwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msoeacctwow.exe" = C:\WINDOWS\msoeacctwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eapp3hstwow.exe" = C:\WINDOWS\eapp3hstwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3gpclntwow.exe" = C:\WINDOWS\dot3gpclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3.tmp" = C:\WINDOWS\system32\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B4C.tmp" = C:\WINDOWS\system32\B4C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\netrapwow.exe" = C:\WINDOWS\netrapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\isrdbg32wow.exe" = C:\WINDOWS\isrdbg32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsprpreswow.exe" = C:\WINDOWS\dsprpreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\fltlibwow.exe" = C:\WINDOWS\fltlibwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\qt-dx331wow.exe" = C:\WINDOWS\qt-dx331wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\10AD.tmp" = C:\WINDOWS\Temp\10AD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\DE7.tmp" = C:\WINDOWS\system32\DE7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbewow.exe" = C:\WINDOWS\kbdbewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsound3dwow.exe" = C:\WINDOWS\dsound3dwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\17.tmp" = C:\WINDOWS\system32\17.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdpowow.exe" = C:\WINDOWS\kbdpowow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqadwow.exe" = C:\WINDOWS\mqadwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pnrpnspwow.exe" = C:\WINDOWS\pnrpnspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdgr1wow.exe" = C:\WINDOWS\kbdgr1wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\capesnpnwow.exe" = C:\WINDOWS\capesnpnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iyuv_32wow.exe" = C:\WINDOWS\iyuv_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\6B.tmp" = C:\WINDOWS\system32\6B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ddrawexwow.exe" = C:\WINDOWS\ddrawexwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsthwow.exe" = C:\WINDOWS\nvwrsthwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\213.tmp" = C:\WINDOWS\system32\213.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msimsgwow.exe" = C:\WINDOWS\msimsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\serwvdrvwow.exe" = C:\WINDOWS\serwvdrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\4B.tmp" = C:\WINDOWS\Temp\4B.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\dpnlobbywow.exe" = C:\WINDOWS\dpnlobbywow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\7D.tmp" = C:\WINDOWS\system32\7D.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\B4B.tmp" = C:\WINDOWS\system32\B4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mqsecwow.exe" = C:\WINDOWS\mqsecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\356.tmp" = C:\WINDOWS\system32\356.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\399.tmp" = C:\WINDOWS\system32\399.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\nvrsdawow.exe" = C:\WINDOWS\nvrsdawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dmdlgswow.exe" = C:\WINDOWS\dmdlgswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3uiwow.exe" = C:\WINDOWS\dot3uiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3B8.tmp" = C:\WINDOWS\system32\3B8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvwrscswow.exe" = C:\WINDOWS\nvwrscswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\516.tmp" = C:\WINDOWS\system32\516.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsesmwow.exe" = C:\WINDOWS\nvrsesmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\srsvcwow.exe" = C:\WINDOWS\srsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\comsnapwow.exe" = C:\WINDOWS\comsnapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\11D.tmp" = C:\WINDOWS\system32\11D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmbandwow.exe" = C:\WINDOWS\dmbandwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odexl32wow.exe" = C:\WINDOWS\odexl32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\22A.tmp" = C:\WINDOWS\system32\22A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\acctreswow.exe" = C:\WINDOWS\acctreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\39F.tmp" = C:\WINDOWS\system32\39F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ippromonwow.exe" = C:\WINDOWS\ippromonwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unimdmatwow.exe" = C:\WINDOWS\unimdmatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msrd2x40wow.exe" = C:\WINDOWS\msrd2x40wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3C4B.tmp" = C:\WINDOWS\system32\3C4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ksuserwow.exe" = C:\WINDOWS\ksuserwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\wzcsvcwow.exe" = C:\WINDOWS\wzcsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\sensapiwow.exe" = C:\WINDOWS\sensapiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\resutilswow.exe" = C:\WINDOWS\resutilswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\92F.tmp" = C:\WINDOWS\Temp\92F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\cardswow.exe" = C:\WINDOWS\cardswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\944.tmp" = C:\WINDOWS\Temp\944.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\usrvoicawow.exe" = C:\WINDOWS\usrvoicawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\309.tmp" = C:\WINDOWS\system32\309.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\397.tmp" = C:\WINDOWS\system32\397.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\iasradwow.exe" = C:\WINDOWS\iasradwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\cfgbkendwow.exe" = C:\WINDOWS\cfgbkendwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\B84.tmp" = C:\WINDOWS\Temp\B84.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9C.tmp" = C:\WINDOWS\system32\B9C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B9B.tmp" = C:\WINDOWS\TEMP\B9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\safrdmwow.exe" = C:\WINDOWS\safrdmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\1.tmp" = C:\WINDOWS\TEMP\1.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\2.tmp" = C:\WINDOWS\Temp\2.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\6D.tmp" = C:\WINDOWS\system32\6D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\xmlprovwow.exe" = C:\WINDOWS\xmlprovwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\3.tmp" = C:\WINDOWS\Temp\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\5.tmp" = C:\WINDOWS\TEMP\5.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\9D.tmp" = C:\WINDOWS\Temp\9D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\adsntwow.exe" = C:\WINDOWS\adsntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvrsfiwow.exe" = C:\WINDOWS\nvrsfiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FD.tmp" = C:\WINDOWS\Temp\1FD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\77F.tmp" = C:\WINDOWS\Temp\77F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\PortableDeviceTypeswow.exe" = C:\WINDOWS\PortableDeviceTypeswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B3.tmp" = C:\WINDOWS\system32\B3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbhcwow.exe" = C:\WINDOWS\kbdbhcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\6.tmp" = C:\WINDOWS\Temp\6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\7.tmp" = C:\WINDOWS\TEMP\7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\483.tmp" = C:\WINDOWS\Temp\483.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\winnlswow.exe" = C:\WINDOWS\winnlswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\C6.tmp" = C:\WINDOWS\system32\C6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\4.tmp" = C:\WINDOWS\system32\4.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\9.tmp" = C:\WINDOWS\TEMP\9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mslbuiwow.exe" = C:\WINDOWS\mslbuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\MSCTFwow.exe" = C:\WINDOWS\MSCTFwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\A.tmp" = C:\WINDOWS\TEMP\A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\8B.tmp" = C:\WINDOWS\system32\8B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\GdiPluswow.exe" = C:\WINDOWS\GdiPluswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9B.tmp" = C:\WINDOWS\Temp\9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msvbvm50wow.exe" = C:\WINDOWS\msvbvm50wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9E.tmp" = C:\WINDOWS\Temp\9E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mobsyncwow.exe" = C:\WINDOWS\mobsyncwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\8.tmp" = C:\WINDOWS\Temp\8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B.tmp" = C:\WINDOWS\TEMP\B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\shdocvwwow.exe" = C:\WINDOWS\shdocvwwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\C.tmp" = C:\WINDOWS\Temp\C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\D.tmp" = C:\WINDOWS\Temp\D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\11.tmp" = C:\WINDOWS\system32\11.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\igmpagntwow.exe" = C:\WINDOWS\igmpagntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\12.tmp" = C:\WINDOWS\Temp\12.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\E.tmp" = C:\WINDOWS\Temp\E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dnsrslvrwow.exe" = C:\WINDOWS\dnsrslvrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\F.tmp" = C:\WINDOWS\TEMP\F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mshtmlerwow.exe" = C:\WINDOWS\mshtmlerwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\mmc.exe" = C:\WINDOWS\system32\mmc.exe:*:Enabled:Microsoft Management Console -- (Microsoft Corporation)
"C:\WINDOWS\system32\31.tmp" = C:\WINDOWS\system32\31.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\149.tmp" = C:\WINDOWS\Temp\149.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\duserwow.exe" = C:\WINDOWS\duserwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\avmeter32.exe" = C:\WINDOWS\system32\avmeter32.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcp32rwow.exe" = C:\WINDOWS\odbcp32rwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9A.tmp" = C:\WINDOWS\system32\B9A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\33.tmp" = C:\WINDOWS\system32\33.tmp:*:Enabled:Windows Update Service -- ()
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series" = Canon MP250 series MP Drivers
"{26A24AE4-039D-4CA4-87B4-2F83216013F0}" = Java(TM) 6 Update 13
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 24
"{27113CA3-36B8-48AB-A419-79CF1FC0ECED}" = Ulead VideoStudio 5.0 DV
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2A697B53-0DE3-42DA-B41D-C3F804B1C538}" = iTunes
"{2A981294-F14C-4F0F-9627-D793270922F8}" = Bonjour
"{2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}" = Apple Application Support
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{54266945-8A11-424D-B20F-4F747A714FBA}" = DV TS
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A06275F4-324B-4E85-95E6-87B2CD729401}" = Windows Defender
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A71D5E81-B967-43DB-93D7-FD31BFB95748}" = MobileMe Control Panel
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.0)
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C3E69CE0-45FD-11D4-AA4A-00C0580802FD}" = eUSB SCSI Adapter
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C73F2967-062E-48F2-A462-D335B8950183}" = Safari
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CACAEB5F-174D-4C7C-AC56-A33289A807CA}" = Apple Mobile Device Support
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{E5BD1F9C-8BBA-410E-837D-94D523269F8F}" = ArcSoft MediaConverter
"{E6B87DC4-2B3D-4483-ADFF-E483BF718991}" = OpenOffice.org 3.1
"{E6CF5B58-E775-46C0-BFF2-F39A0014FE4A}" = muvee autoProducer 4.1
"{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}" = PL-2303 USB-to-Serial
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"ASTRA32_is1" = ASTRA32 - Advanced System Information Tool 2.06
"AVS Update Manager_is1" = AVS Update Manager 1.0
"AVS Video Editor 4_is1" = AVS Video Editor 4
"AVS Video Recorder_is1" = AVS Video Recorder 2.4
"AVS YouTube Uploader 2.1_is1" = AVS YouTube Uploader version 2.1
"AVS4YOU Software Navigator_is1" = AVS4YOU Software Navigator 1.4
"Bejeweled 3" = Bejeweled 3
"Defraggler" = Defraggler
"Free 3GP Video Converter_is1" = Free 3GP Video Converter version 3.1
"Free Studio_is1" = Free Studio version 4.9.13
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"IrfanView" = IrfanView (remove only)
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 4.9.5
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.0.1200
"McAfee Security Scan" = McAfee Security Scan Plus
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 4.0.1 (x86 en-US)" = Mozilla Firefox 4.0.1 (x86 en-US)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA Drivers" = NVIDIA Drivers
"Uninstall_is1" = Uninstall 1.0.0.1
"Universal Extractor_is1" = Universal Extractor 1.5
"USB File Transfer 1.13A" = USB File Transfer 1.13A
"VLC media player" = VLC media player 1.0.1
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 7/4/2011 6:46:20 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 6:52:31 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 6:58:41 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:04:51 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:11:02 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:17:13 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:23:23 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:29:36 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:35:46 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:41:57 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
[ System Events ]
Error - 7/9/2011 12:28:37 AM | Computer Name = OWNER-BAF37C0F8 | Source = MRxSmb | ID = 8003
Description = The master browser has received a server announcement from the computer
ACER-D37F251F21 that believes that it is the master browser for the domain on transport
NetBT_Tcpip_{FC558FD0-A94. The master browser is stopping or an election is being
forced.
Error - 7/9/2011 4:53:45 PM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/9/2011 5:15:50 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The NMSAccessU service terminated unexpectedly. It has done this
1 time(s).
Error - 7/9/2011 5:15:59 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The Java Quick Starter service terminated unexpectedly. It has done
this 1 time(s).
Error - 7/9/2011 9:55:02 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7031
Description = The Windows Defender service terminated unexpectedly. It has done
this 1 time(s). The following corrective action will be taken in 15000 milliseconds:
Restart the service.
Error - 7/9/2011 10:52:21 PM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/10/2011 12:14:58 AM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/10/2011 12:04:08 PM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/10/2011 3:24:47 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The .NET Runtime Optimization Service v2.0.50727_X86 service terminated
unexpectedly. It has done this 1 time(s).
Error - 7/10/2011 5:26:59 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The MBAMService service terminated unexpectedly. It has done this
1 time(s).
< End of report >
aswMBR version 0.9.7.705 Copyright(c) 2011 AVAST Software
Run date: 2011-07-10 18:14:10
-----------------------------
18:14:10.812 OS Version: Windows 5.1.2600 Service Pack 3
18:14:10.812 Number of processors: 2 586 0xF0D
18:14:10.812 ComputerName: OWNER-BAF37C0F8 UserName: owner
18:14:13.578 Initialize success
18:14:46.859 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
18:14:46.859 Disk 0 Vendor: HDS722516VLAT80 V34OA60A Size: 157066MB BusType: 3
18:14:46.875 Disk 0 MBR read successfully
18:14:46.875 Disk 0 MBR scan
18:14:46.875 Disk 0 Windows XP default MBR code
18:14:46.890 Disk 0 scanning sectors +321637365
18:14:46.953 Disk 0 scanning C:\WINDOWS\system32\drivers
18:15:04.781 Service scanning
18:15:07.484 Disk 0 trace - called modules:
18:15:07.484 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys
18:15:07.484 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x89b9bab8]
18:15:07.484 3 CLASSPNP.SYS[f7637fd7] -> nt!IofCallDriver -> \Device\00000066[0x89bdf820]
18:15:07.484 5 ACPI.sys[f75ae620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x89ba0940]
18:15:07.484 Scan finished successfully
18:17:00.593 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\owner\Desktop\MBR.dat"
18:17:00.593 The log file has been saved successfully to "C:\Documents and Settings\owner\Desktop\aswMBR.txt"
Results of screen317's Security Check version 0.99.17
Windows XP Service Pack 3
Internet Explorer 7 Out of date!
``````````````````````````````
Antivirus/Firewall Check:
Windows Firewall Enabled!
McAfee Security Scan Plus
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:
Malwarebytes' Anti-Malware
Java(TM) 6 Update 13
Java(TM) 6 Update 24
Out of date Java installed!
Adobe Flash Player 10.3.181.26
Adobe Reader X (10.1.0)
Mozilla Firefox (x86 en-US..)
````````````````````````````````
Process Check:
objlist.exe by Laurent
Windows Defender MSMpEng.exe
Windows Defender MSASCui.exe
Windows Defender MsMpEng.exe
Windows Defender MSASCui.exe
``````````End of Log````````````
continual pop-up windows saying "9.temp has encountered an error" or "f.temp has encountered a problem."
Installing programs fail , nothing wants to update w\o failing ie widows defender or new virus definitions.
We don't get blue screens of death or anything major other than just general slowness.
We do get alot of redirection to other than websites clicked on.
I was using avg free for anti-virus and spyware protection.
I have since uninstalled avg and ran kerpesky virus removal tool and malwarebytes anti-malware. I couldn't get c cleaner to install. So far the names i have gotten are "trojan.tracur.s" netman32.exe and avmeter32.exe.
Thank you in advance for any help provided.
OTL Extras logfile created on: 7/10/2011 4:29:11 PM - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\owner\My Documents
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.43 Gb Available Physical Memory | 71.47% Memory free
3.85 Gb Paging File | 3.37 Gb Available in Paging File | 87.43% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 153.37 Gb Total Space | 126.52 Gb Free Space | 82.49% Space Free | Partition Type: NTFS
Unable to calculate disk information.
Computer Name: OWNER-BAF37C0F8 | User Name: owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
[HKEY_CURRENT_USER\SOFTWARE\Classes\
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"3389:TCP" = 3389:TCP:*:Enabled:@xpsp2res.dll,-22009
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"1:TCP" = 1:TCP:*:Enabled:bsp
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\WINDOWS\keymgrwow.exe" = C:\WINDOWS\keymgrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iologmsgwow.exe" = C:\WINDOWS\iologmsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ufatwow.exe" = C:\WINDOWS\ufatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqperfwow.exe" = C:\WINDOWS\mqperfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mscorieswow.exe" = C:\WINDOWS\mscorieswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eventclswow.exe" = C:\WINDOWS\eventclswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\licwmiwow.exe" = C:\WINDOWS\licwmiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\tapisrvwow.exe" = C:\WINDOWS\tapisrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\vgawow.exe" = C:\WINDOWS\vgawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nwapi16wow.exe" = C:\WINDOWS\nwapi16wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odbcintwow.exe" = C:\WINDOWS\odbcintwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\slbcspwow.exe" = C:\WINDOWS\slbcspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\midimapwow.exe" = C:\WINDOWS\midimapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrshuwow.exe" = C:\WINDOWS\nvwrshuwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\w32toplwow.exe" = C:\WINDOWS\w32toplwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdcanwow.exe" = C:\WINDOWS\kbdcanwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\PortableDeviceClassExtensionwow.exe" = C:\WINDOWS\PortableDeviceClassExtensionwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mspmspwow.exe" = C:\WINDOWS\mspmspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\84B.tmp" = C:\WINDOWS\system32\84B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\wuauservwow.exe" = C:\WINDOWS\wuauservwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\RA32SIPRwow.exe" = C:\WINDOWS\RA32SIPRwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unrarwow.exe" = C:\WINDOWS\unrarwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvrsjawow.exe" = C:\WINDOWS\nvrsjawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\1A2E.tmp" = C:\WINDOWS\system32\1A2E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\sccbasewow.exe" = C:\WINDOWS\sccbasewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\btpanuiwow.exe" = C:\WINDOWS\btpanuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxmontrwow.exe" = C:\WINDOWS\ipxmontrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdlvwow.exe" = C:\WINDOWS\kbdlvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\57A.tmp" = C:\WINDOWS\system32\57A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcconfwow.exe" = C:\WINDOWS\odbcconfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsoundwow.exe" = C:\WINDOWS\dsoundwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\compatUIwow.exe" = C:\WINDOWS\compatUIwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FBE.tmp" = C:\WINDOWS\Temp\1FBE.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\icardiewow.exe" = C:\WINDOWS\icardiewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B5E.tmp" = C:\WINDOWS\system32\B5E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmstylewow.exe" = C:\WINDOWS\dmstylewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pngfiltwow.exe" = C:\WINDOWS\pngfiltwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2292.tmp" = C:\WINDOWS\system32\2292.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\mll_qicwow.exe" = C:\WINDOWS\mll_qicwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2695.tmp" = C:\WINDOWS\system32\2695.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\34BE.tmp" = C:\WINDOWS\system32\34BE.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\shimengwow.exe" = C:\WINDOWS\shimengwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\45AB.tmp" = C:\WINDOWS\system32\45AB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\4DAD.tmp" = C:\WINDOWS\system32\4DAD.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\B5C.tmp" = C:\WINDOWS\system32\B5C.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\5DAB.tmp" = C:\WINDOWS\system32\5DAB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\untfswow.exe" = C:\WINDOWS\untfswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\davclntwow.exe" = C:\WINDOWS\davclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\quartzwow.exe" = C:\WINDOWS\quartzwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\oleaut32wow.exe" = C:\WINDOWS\oleaut32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pstorecwow.exe" = C:\WINDOWS\pstorecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxpromnwow.exe" = C:\WINDOWS\ipxpromnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipv6monwow.exe" = C:\WINDOWS\ipv6monwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsnlwow.exe" = C:\WINDOWS\nvwrsnlwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dxtmsftwow.exe" = C:\WINDOWS\dxtmsftwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\twextwow.exe" = C:\WINDOWS\twextwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iepeerswow.exe" = C:\WINDOWS\iepeerswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ir32_32wow.exe" = C:\WINDOWS\ir32_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\5DA9.tmp" = C:\WINDOWS\system32\5DA9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\objselwow.exe" = C:\WINDOWS\objselwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mfc40uwow.exe" = C:\WINDOWS\mfc40uwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\20E.tmp" = C:\WINDOWS\system32\20E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\210.tmp" = C:\WINDOWS\system32\210.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\20F.tmp" = C:\WINDOWS\system32\20F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsskwow.exe" = C:\WINDOWS\nvrsskwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ftsrchwow.exe" = C:\WINDOWS\ftsrchwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msoeacctwow.exe" = C:\WINDOWS\msoeacctwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eapp3hstwow.exe" = C:\WINDOWS\eapp3hstwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3gpclntwow.exe" = C:\WINDOWS\dot3gpclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3.tmp" = C:\WINDOWS\system32\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B4C.tmp" = C:\WINDOWS\system32\B4C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\netrapwow.exe" = C:\WINDOWS\netrapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\isrdbg32wow.exe" = C:\WINDOWS\isrdbg32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsprpreswow.exe" = C:\WINDOWS\dsprpreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\fltlibwow.exe" = C:\WINDOWS\fltlibwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\qt-dx331wow.exe" = C:\WINDOWS\qt-dx331wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\10AD.tmp" = C:\WINDOWS\Temp\10AD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\DE7.tmp" = C:\WINDOWS\system32\DE7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbewow.exe" = C:\WINDOWS\kbdbewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsound3dwow.exe" = C:\WINDOWS\dsound3dwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\17.tmp" = C:\WINDOWS\system32\17.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdpowow.exe" = C:\WINDOWS\kbdpowow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqadwow.exe" = C:\WINDOWS\mqadwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pnrpnspwow.exe" = C:\WINDOWS\pnrpnspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdgr1wow.exe" = C:\WINDOWS\kbdgr1wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\capesnpnwow.exe" = C:\WINDOWS\capesnpnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iyuv_32wow.exe" = C:\WINDOWS\iyuv_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\6B.tmp" = C:\WINDOWS\system32\6B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ddrawexwow.exe" = C:\WINDOWS\ddrawexwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsthwow.exe" = C:\WINDOWS\nvwrsthwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\213.tmp" = C:\WINDOWS\system32\213.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msimsgwow.exe" = C:\WINDOWS\msimsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\serwvdrvwow.exe" = C:\WINDOWS\serwvdrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\4B.tmp" = C:\WINDOWS\Temp\4B.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\dpnlobbywow.exe" = C:\WINDOWS\dpnlobbywow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\7D.tmp" = C:\WINDOWS\system32\7D.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\B4B.tmp" = C:\WINDOWS\system32\B4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mqsecwow.exe" = C:\WINDOWS\mqsecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\356.tmp" = C:\WINDOWS\system32\356.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\399.tmp" = C:\WINDOWS\system32\399.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\nvrsdawow.exe" = C:\WINDOWS\nvrsdawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dmdlgswow.exe" = C:\WINDOWS\dmdlgswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3uiwow.exe" = C:\WINDOWS\dot3uiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3B8.tmp" = C:\WINDOWS\system32\3B8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvwrscswow.exe" = C:\WINDOWS\nvwrscswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\516.tmp" = C:\WINDOWS\system32\516.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsesmwow.exe" = C:\WINDOWS\nvrsesmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\srsvcwow.exe" = C:\WINDOWS\srsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\comsnapwow.exe" = C:\WINDOWS\comsnapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\11D.tmp" = C:\WINDOWS\system32\11D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmbandwow.exe" = C:\WINDOWS\dmbandwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odexl32wow.exe" = C:\WINDOWS\odexl32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\22A.tmp" = C:\WINDOWS\system32\22A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\acctreswow.exe" = C:\WINDOWS\acctreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\39F.tmp" = C:\WINDOWS\system32\39F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ippromonwow.exe" = C:\WINDOWS\ippromonwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unimdmatwow.exe" = C:\WINDOWS\unimdmatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msrd2x40wow.exe" = C:\WINDOWS\msrd2x40wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3C4B.tmp" = C:\WINDOWS\system32\3C4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ksuserwow.exe" = C:\WINDOWS\ksuserwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\wzcsvcwow.exe" = C:\WINDOWS\wzcsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\sensapiwow.exe" = C:\WINDOWS\sensapiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\resutilswow.exe" = C:\WINDOWS\resutilswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\cardswow.exe" = C:\WINDOWS\cardswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\92F.tmp" = C:\WINDOWS\Temp\92F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\usrvoicawow.exe" = C:\WINDOWS\usrvoicawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\944.tmp" = C:\WINDOWS\Temp\944.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\309.tmp" = C:\WINDOWS\system32\309.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\397.tmp" = C:\WINDOWS\system32\397.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\iasradwow.exe" = C:\WINDOWS\iasradwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\cfgbkendwow.exe" = C:\WINDOWS\cfgbkendwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\B84.tmp" = C:\WINDOWS\Temp\B84.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9C.tmp" = C:\WINDOWS\system32\B9C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B9B.tmp" = C:\WINDOWS\TEMP\B9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\safrdmwow.exe" = C:\WINDOWS\safrdmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\1.tmp" = C:\WINDOWS\TEMP\1.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\2.tmp" = C:\WINDOWS\Temp\2.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\6D.tmp" = C:\WINDOWS\system32\6D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\xmlprovwow.exe" = C:\WINDOWS\xmlprovwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\3.tmp" = C:\WINDOWS\Temp\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\5.tmp" = C:\WINDOWS\TEMP\5.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\adsntwow.exe" = C:\WINDOWS\adsntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9D.tmp" = C:\WINDOWS\Temp\9D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsfiwow.exe" = C:\WINDOWS\nvrsfiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FD.tmp" = C:\WINDOWS\Temp\1FD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\77F.tmp" = C:\WINDOWS\Temp\77F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\PortableDeviceTypeswow.exe" = C:\WINDOWS\PortableDeviceTypeswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B3.tmp" = C:\WINDOWS\system32\B3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbhcwow.exe" = C:\WINDOWS\kbdbhcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\6.tmp" = C:\WINDOWS\Temp\6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\7.tmp" = C:\WINDOWS\TEMP\7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\winnlswow.exe" = C:\WINDOWS\winnlswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\483.tmp" = C:\WINDOWS\Temp\483.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\C6.tmp" = C:\WINDOWS\system32\C6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\4.tmp" = C:\WINDOWS\system32\4.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\9.tmp" = C:\WINDOWS\TEMP\9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mslbuiwow.exe" = C:\WINDOWS\mslbuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\MSCTFwow.exe" = C:\WINDOWS\MSCTFwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\A.tmp" = C:\WINDOWS\TEMP\A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\8B.tmp" = C:\WINDOWS\system32\8B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\GdiPluswow.exe" = C:\WINDOWS\GdiPluswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9B.tmp" = C:\WINDOWS\Temp\9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msvbvm50wow.exe" = C:\WINDOWS\msvbvm50wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9E.tmp" = C:\WINDOWS\Temp\9E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mobsyncwow.exe" = C:\WINDOWS\mobsyncwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\8.tmp" = C:\WINDOWS\Temp\8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B.tmp" = C:\WINDOWS\TEMP\B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\shdocvwwow.exe" = C:\WINDOWS\shdocvwwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\C.tmp" = C:\WINDOWS\Temp\C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\D.tmp" = C:\WINDOWS\Temp\D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\11.tmp" = C:\WINDOWS\system32\11.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\igmpagntwow.exe" = C:\WINDOWS\igmpagntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\12.tmp" = C:\WINDOWS\Temp\12.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\E.tmp" = C:\WINDOWS\Temp\E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dnsrslvrwow.exe" = C:\WINDOWS\dnsrslvrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\F.tmp" = C:\WINDOWS\TEMP\F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mshtmlerwow.exe" = C:\WINDOWS\mshtmlerwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\31.tmp" = C:\WINDOWS\system32\31.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\149.tmp" = C:\WINDOWS\Temp\149.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\duserwow.exe" = C:\WINDOWS\duserwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\avmeter32.exe" = C:\WINDOWS\system32\avmeter32.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcp32rwow.exe" = C:\WINDOWS\odbcp32rwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9A.tmp" = C:\WINDOWS\system32\B9A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\33.tmp" = C:\WINDOWS\system32\33.tmp:*:Enabled:Windows Update Service -- ()
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"E:\FrostWire\FrostWire.exe" = E:\FrostWire\FrostWire.exe:*:Enabled:FrostWire 4.21.1
"C:\WINDOWS\keymgrwow.exe" = C:\WINDOWS\keymgrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iologmsgwow.exe" = C:\WINDOWS\iologmsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ufatwow.exe" = C:\WINDOWS\ufatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqperfwow.exe" = C:\WINDOWS\mqperfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mscorieswow.exe" = C:\WINDOWS\mscorieswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eventclswow.exe" = C:\WINDOWS\eventclswow.exe:*:Enabled:Windows Update Service
"C:\Program Files\LuckyWire\LuckyWire.exe" = C:\Program Files\LuckyWire\LuckyWire.exe:*:Enabled:Luckywire
"C:\WINDOWS\licwmiwow.exe" = C:\WINDOWS\licwmiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\tapisrvwow.exe" = C:\WINDOWS\tapisrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\vgawow.exe" = C:\WINDOWS\vgawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nwapi16wow.exe" = C:\WINDOWS\nwapi16wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odbcintwow.exe" = C:\WINDOWS\odbcintwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\slbcspwow.exe" = C:\WINDOWS\slbcspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\midimapwow.exe" = C:\WINDOWS\midimapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrshuwow.exe" = C:\WINDOWS\nvwrshuwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\w32toplwow.exe" = C:\WINDOWS\w32toplwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdcanwow.exe" = C:\WINDOWS\kbdcanwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\PortableDeviceClassExtensionwow.exe" = C:\WINDOWS\PortableDeviceClassExtensionwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mspmspwow.exe" = C:\WINDOWS\mspmspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\84B.tmp" = C:\WINDOWS\system32\84B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\wuauservwow.exe" = C:\WINDOWS\wuauservwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\RA32SIPRwow.exe" = C:\WINDOWS\RA32SIPRwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unrarwow.exe" = C:\WINDOWS\unrarwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvrsjawow.exe" = C:\WINDOWS\nvrsjawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\1A2E.tmp" = C:\WINDOWS\system32\1A2E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\sccbasewow.exe" = C:\WINDOWS\sccbasewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\btpanuiwow.exe" = C:\WINDOWS\btpanuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxmontrwow.exe" = C:\WINDOWS\ipxmontrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdlvwow.exe" = C:\WINDOWS\kbdlvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\57A.tmp" = C:\WINDOWS\system32\57A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcconfwow.exe" = C:\WINDOWS\odbcconfwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsoundwow.exe" = C:\WINDOWS\dsoundwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\compatUIwow.exe" = C:\WINDOWS\compatUIwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FBE.tmp" = C:\WINDOWS\Temp\1FBE.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\icardiewow.exe" = C:\WINDOWS\icardiewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B5E.tmp" = C:\WINDOWS\system32\B5E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmstylewow.exe" = C:\WINDOWS\dmstylewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pngfiltwow.exe" = C:\WINDOWS\pngfiltwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2292.tmp" = C:\WINDOWS\system32\2292.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\mll_qicwow.exe" = C:\WINDOWS\mll_qicwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\2695.tmp" = C:\WINDOWS\system32\2695.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\34BE.tmp" = C:\WINDOWS\system32\34BE.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\shimengwow.exe" = C:\WINDOWS\shimengwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\45AB.tmp" = C:\WINDOWS\system32\45AB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\4DAD.tmp" = C:\WINDOWS\system32\4DAD.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\B5C.tmp" = C:\WINDOWS\system32\B5C.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\system32\5DAB.tmp" = C:\WINDOWS\system32\5DAB.tmp:*:Enabled:Windows Update Service -- (opx.bit)
"C:\WINDOWS\untfswow.exe" = C:\WINDOWS\untfswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\davclntwow.exe" = C:\WINDOWS\davclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\quartzwow.exe" = C:\WINDOWS\quartzwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\oleaut32wow.exe" = C:\WINDOWS\oleaut32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pstorecwow.exe" = C:\WINDOWS\pstorecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipxpromnwow.exe" = C:\WINDOWS\ipxpromnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ipv6monwow.exe" = C:\WINDOWS\ipv6monwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsnlwow.exe" = C:\WINDOWS\nvwrsnlwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dxtmsftwow.exe" = C:\WINDOWS\dxtmsftwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\twextwow.exe" = C:\WINDOWS\twextwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iepeerswow.exe" = C:\WINDOWS\iepeerswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ir32_32wow.exe" = C:\WINDOWS\ir32_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\5DA9.tmp" = C:\WINDOWS\system32\5DA9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\objselwow.exe" = C:\WINDOWS\objselwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mfc40uwow.exe" = C:\WINDOWS\mfc40uwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\20E.tmp" = C:\WINDOWS\system32\20E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\210.tmp" = C:\WINDOWS\system32\210.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\20F.tmp" = C:\WINDOWS\system32\20F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsskwow.exe" = C:\WINDOWS\nvrsskwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\ftsrchwow.exe" = C:\WINDOWS\ftsrchwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msoeacctwow.exe" = C:\WINDOWS\msoeacctwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\eapp3hstwow.exe" = C:\WINDOWS\eapp3hstwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3gpclntwow.exe" = C:\WINDOWS\dot3gpclntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3.tmp" = C:\WINDOWS\system32\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B4C.tmp" = C:\WINDOWS\system32\B4C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\netrapwow.exe" = C:\WINDOWS\netrapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\isrdbg32wow.exe" = C:\WINDOWS\isrdbg32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsprpreswow.exe" = C:\WINDOWS\dsprpreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\fltlibwow.exe" = C:\WINDOWS\fltlibwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\qt-dx331wow.exe" = C:\WINDOWS\qt-dx331wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\10AD.tmp" = C:\WINDOWS\Temp\10AD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\DE7.tmp" = C:\WINDOWS\system32\DE7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbewow.exe" = C:\WINDOWS\kbdbewow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dsound3dwow.exe" = C:\WINDOWS\dsound3dwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\17.tmp" = C:\WINDOWS\system32\17.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdpowow.exe" = C:\WINDOWS\kbdpowow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\mqadwow.exe" = C:\WINDOWS\mqadwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\pnrpnspwow.exe" = C:\WINDOWS\pnrpnspwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\kbdgr1wow.exe" = C:\WINDOWS\kbdgr1wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\capesnpnwow.exe" = C:\WINDOWS\capesnpnwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\iyuv_32wow.exe" = C:\WINDOWS\iyuv_32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\6B.tmp" = C:\WINDOWS\system32\6B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ddrawexwow.exe" = C:\WINDOWS\ddrawexwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvwrsthwow.exe" = C:\WINDOWS\nvwrsthwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\213.tmp" = C:\WINDOWS\system32\213.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msimsgwow.exe" = C:\WINDOWS\msimsgwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\serwvdrvwow.exe" = C:\WINDOWS\serwvdrvwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\4B.tmp" = C:\WINDOWS\Temp\4B.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\dpnlobbywow.exe" = C:\WINDOWS\dpnlobbywow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\7D.tmp" = C:\WINDOWS\system32\7D.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\B4B.tmp" = C:\WINDOWS\system32\B4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mqsecwow.exe" = C:\WINDOWS\mqsecwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\356.tmp" = C:\WINDOWS\system32\356.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\system32\399.tmp" = C:\WINDOWS\system32\399.tmp:*:Enabled:Windows Update Service -- (RAL Asistencia Informática.)
"C:\WINDOWS\nvrsdawow.exe" = C:\WINDOWS\nvrsdawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dmdlgswow.exe" = C:\WINDOWS\dmdlgswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\dot3uiwow.exe" = C:\WINDOWS\dot3uiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3B8.tmp" = C:\WINDOWS\system32\3B8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvwrscswow.exe" = C:\WINDOWS\nvwrscswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\516.tmp" = C:\WINDOWS\system32\516.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\nvrsesmwow.exe" = C:\WINDOWS\nvrsesmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\srsvcwow.exe" = C:\WINDOWS\srsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\comsnapwow.exe" = C:\WINDOWS\comsnapwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\11D.tmp" = C:\WINDOWS\system32\11D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dmbandwow.exe" = C:\WINDOWS\dmbandwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\odexl32wow.exe" = C:\WINDOWS\odexl32wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\22A.tmp" = C:\WINDOWS\system32\22A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\acctreswow.exe" = C:\WINDOWS\acctreswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\39F.tmp" = C:\WINDOWS\system32\39F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ippromonwow.exe" = C:\WINDOWS\ippromonwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\unimdmatwow.exe" = C:\WINDOWS\unimdmatwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\msrd2x40wow.exe" = C:\WINDOWS\msrd2x40wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\3C4B.tmp" = C:\WINDOWS\system32\3C4B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\ksuserwow.exe" = C:\WINDOWS\ksuserwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\wzcsvcwow.exe" = C:\WINDOWS\wzcsvcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\sensapiwow.exe" = C:\WINDOWS\sensapiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\resutilswow.exe" = C:\WINDOWS\resutilswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\92F.tmp" = C:\WINDOWS\Temp\92F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\cardswow.exe" = C:\WINDOWS\cardswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\944.tmp" = C:\WINDOWS\Temp\944.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\usrvoicawow.exe" = C:\WINDOWS\usrvoicawow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\309.tmp" = C:\WINDOWS\system32\309.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\397.tmp" = C:\WINDOWS\system32\397.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\iasradwow.exe" = C:\WINDOWS\iasradwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\cfgbkendwow.exe" = C:\WINDOWS\cfgbkendwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\B84.tmp" = C:\WINDOWS\Temp\B84.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9C.tmp" = C:\WINDOWS\system32\B9C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B9B.tmp" = C:\WINDOWS\TEMP\B9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\safrdmwow.exe" = C:\WINDOWS\safrdmwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\1.tmp" = C:\WINDOWS\TEMP\1.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\2.tmp" = C:\WINDOWS\Temp\2.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\6D.tmp" = C:\WINDOWS\system32\6D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\xmlprovwow.exe" = C:\WINDOWS\xmlprovwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\3.tmp" = C:\WINDOWS\Temp\3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\5.tmp" = C:\WINDOWS\TEMP\5.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\9D.tmp" = C:\WINDOWS\Temp\9D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\adsntwow.exe" = C:\WINDOWS\adsntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\nvrsfiwow.exe" = C:\WINDOWS\nvrsfiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\1FD.tmp" = C:\WINDOWS\Temp\1FD.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\77F.tmp" = C:\WINDOWS\Temp\77F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\PortableDeviceTypeswow.exe" = C:\WINDOWS\PortableDeviceTypeswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\B3.tmp" = C:\WINDOWS\system32\B3.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\kbdbhcwow.exe" = C:\WINDOWS\kbdbhcwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\6.tmp" = C:\WINDOWS\Temp\6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\7.tmp" = C:\WINDOWS\TEMP\7.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\483.tmp" = C:\WINDOWS\Temp\483.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\winnlswow.exe" = C:\WINDOWS\winnlswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\system32\C6.tmp" = C:\WINDOWS\system32\C6.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\4.tmp" = C:\WINDOWS\system32\4.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\9.tmp" = C:\WINDOWS\TEMP\9.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mslbuiwow.exe" = C:\WINDOWS\mslbuiwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\MSCTFwow.exe" = C:\WINDOWS\MSCTFwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\A.tmp" = C:\WINDOWS\TEMP\A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\8B.tmp" = C:\WINDOWS\system32\8B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\GdiPluswow.exe" = C:\WINDOWS\GdiPluswow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9B.tmp" = C:\WINDOWS\Temp\9B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\msvbvm50wow.exe" = C:\WINDOWS\msvbvm50wow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\9E.tmp" = C:\WINDOWS\Temp\9E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mobsyncwow.exe" = C:\WINDOWS\mobsyncwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\8.tmp" = C:\WINDOWS\Temp\8.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\TEMP\B.tmp" = C:\WINDOWS\TEMP\B.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\shdocvwwow.exe" = C:\WINDOWS\shdocvwwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\C.tmp" = C:\WINDOWS\Temp\C.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\D.tmp" = C:\WINDOWS\Temp\D.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\11.tmp" = C:\WINDOWS\system32\11.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\igmpagntwow.exe" = C:\WINDOWS\igmpagntwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\Temp\12.tmp" = C:\WINDOWS\Temp\12.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\E.tmp" = C:\WINDOWS\Temp\E.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\dnsrslvrwow.exe" = C:\WINDOWS\dnsrslvrwow.exe:*:Enabled:Windows Update Service
"C:\WINDOWS\TEMP\F.tmp" = C:\WINDOWS\TEMP\F.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\mshtmlerwow.exe" = C:\WINDOWS\mshtmlerwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\mmc.exe" = C:\WINDOWS\system32\mmc.exe:*:Enabled:Microsoft Management Console -- (Microsoft Corporation)
"C:\WINDOWS\system32\31.tmp" = C:\WINDOWS\system32\31.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\Temp\149.tmp" = C:\WINDOWS\Temp\149.tmp:*:Enabled:Windows Update Service
"C:\WINDOWS\duserwow.exe" = C:\WINDOWS\duserwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\avmeter32.exe" = C:\WINDOWS\system32\avmeter32.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\odbcp32rwow.exe" = C:\WINDOWS\odbcp32rwow.exe:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\B9A.tmp" = C:\WINDOWS\system32\B9A.tmp:*:Enabled:Windows Update Service -- ()
"C:\WINDOWS\system32\33.tmp" = C:\WINDOWS\system32\33.tmp:*:Enabled:Windows Update Service -- ()
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series" = Canon MP250 series MP Drivers
"{26A24AE4-039D-4CA4-87B4-2F83216013F0}" = Java(TM) 6 Update 13
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 24
"{27113CA3-36B8-48AB-A419-79CF1FC0ECED}" = Ulead VideoStudio 5.0 DV
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2A697B53-0DE3-42DA-B41D-C3F804B1C538}" = iTunes
"{2A981294-F14C-4F0F-9627-D793270922F8}" = Bonjour
"{2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}" = Apple Application Support
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{54266945-8A11-424D-B20F-4F747A714FBA}" = DV TS
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A06275F4-324B-4E85-95E6-87B2CD729401}" = Windows Defender
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A71D5E81-B967-43DB-93D7-FD31BFB95748}" = MobileMe Control Panel
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.0)
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C3E69CE0-45FD-11D4-AA4A-00C0580802FD}" = eUSB SCSI Adapter
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C73F2967-062E-48F2-A462-D335B8950183}" = Safari
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CACAEB5F-174D-4C7C-AC56-A33289A807CA}" = Apple Mobile Device Support
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{E5BD1F9C-8BBA-410E-837D-94D523269F8F}" = ArcSoft MediaConverter
"{E6B87DC4-2B3D-4483-ADFF-E483BF718991}" = OpenOffice.org 3.1
"{E6CF5B58-E775-46C0-BFF2-F39A0014FE4A}" = muvee autoProducer 4.1
"{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}" = PL-2303 USB-to-Serial
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"ASTRA32_is1" = ASTRA32 - Advanced System Information Tool 2.06
"AVS Update Manager_is1" = AVS Update Manager 1.0
"AVS Video Editor 4_is1" = AVS Video Editor 4
"AVS Video Recorder_is1" = AVS Video Recorder 2.4
"AVS YouTube Uploader 2.1_is1" = AVS YouTube Uploader version 2.1
"AVS4YOU Software Navigator_is1" = AVS4YOU Software Navigator 1.4
"Bejeweled 3" = Bejeweled 3
"Defraggler" = Defraggler
"Free 3GP Video Converter_is1" = Free 3GP Video Converter version 3.1
"Free Studio_is1" = Free Studio version 4.9.13
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"IrfanView" = IrfanView (remove only)
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 4.9.5
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.0.1200
"McAfee Security Scan" = McAfee Security Scan Plus
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 4.0.1 (x86 en-US)" = Mozilla Firefox 4.0.1 (x86 en-US)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA Drivers" = NVIDIA Drivers
"Uninstall_is1" = Uninstall 1.0.0.1
"Universal Extractor_is1" = Universal Extractor 1.5
"USB File Transfer 1.13A" = USB File Transfer 1.13A
"VLC media player" = VLC media player 1.0.1
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 7/4/2011 6:46:20 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 6:52:31 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 6:58:41 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:04:51 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:11:02 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:17:13 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:23:23 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:29:36 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:35:46 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
Error - 7/4/2011 7:41:57 AM | Computer Name = OWNER-BAF37C0F8 | Source = Application Error | ID = 1000
Description = Faulting application B9A.tmp, version 0.0.0.0, faulting module ntdll.dll,
version 5.1.2600.6055, fault address 0x00019af2.
[ System Events ]
Error - 7/9/2011 12:28:37 AM | Computer Name = OWNER-BAF37C0F8 | Source = MRxSmb | ID = 8003
Description = The master browser has received a server announcement from the computer
ACER-D37F251F21 that believes that it is the master browser for the domain on transport
NetBT_Tcpip_{FC558FD0-A94. The master browser is stopping or an election is being
forced.
Error - 7/9/2011 4:53:45 PM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/9/2011 5:15:50 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The NMSAccessU service terminated unexpectedly. It has done this
1 time(s).
Error - 7/9/2011 5:15:59 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The Java Quick Starter service terminated unexpectedly. It has done
this 1 time(s).
Error - 7/9/2011 9:55:02 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7031
Description = The Windows Defender service terminated unexpectedly. It has done
this 1 time(s). The following corrective action will be taken in 15000 milliseconds:
Restart the service.
Error - 7/9/2011 10:52:21 PM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/10/2011 12:14:58 AM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/10/2011 12:04:08 PM | Computer Name = OWNER-BAF37C0F8 | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.107.1308.0).
Error - 7/10/2011 3:24:47 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The .NET Runtime Optimization Service v2.0.50727_X86 service terminated
unexpectedly. It has done this 1 time(s).
Error - 7/10/2011 5:26:59 PM | Computer Name = OWNER-BAF37C0F8 | Source = Service Control Manager | ID = 7034
Description = The MBAMService service terminated unexpectedly. It has done this
1 time(s).
< End of report >
aswMBR version 0.9.7.705 Copyright(c) 2011 AVAST Software
Run date: 2011-07-10 18:14:10
-----------------------------
18:14:10.812 OS Version: Windows 5.1.2600 Service Pack 3
18:14:10.812 Number of processors: 2 586 0xF0D
18:14:10.812 ComputerName: OWNER-BAF37C0F8 UserName: owner
18:14:13.578 Initialize success
18:14:46.859 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
18:14:46.859 Disk 0 Vendor: HDS722516VLAT80 V34OA60A Size: 157066MB BusType: 3
18:14:46.875 Disk 0 MBR read successfully
18:14:46.875 Disk 0 MBR scan
18:14:46.875 Disk 0 Windows XP default MBR code
18:14:46.890 Disk 0 scanning sectors +321637365
18:14:46.953 Disk 0 scanning C:\WINDOWS\system32\drivers
18:15:04.781 Service scanning
18:15:07.484 Disk 0 trace - called modules:
18:15:07.484 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys
18:15:07.484 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x89b9bab8]
18:15:07.484 3 CLASSPNP.SYS[f7637fd7] -> nt!IofCallDriver -> \Device\00000066[0x89bdf820]
18:15:07.484 5 ACPI.sys[f75ae620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x89ba0940]
18:15:07.484 Scan finished successfully
18:17:00.593 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\owner\Desktop\MBR.dat"
18:17:00.593 The log file has been saved successfully to "C:\Documents and Settings\owner\Desktop\aswMBR.txt"
Results of screen317's Security Check version 0.99.17
Windows XP Service Pack 3
Internet Explorer 7 Out of date!
``````````````````````````````
Antivirus/Firewall Check:
Windows Firewall Enabled!
McAfee Security Scan Plus
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:
Malwarebytes' Anti-Malware
Java(TM) 6 Update 13
Java(TM) 6 Update 24
Out of date Java installed!
Adobe Flash Player 10.3.181.26
Adobe Reader X (10.1.0)
Mozilla Firefox (x86 en-US..)
````````````````````````````````
Process Check:
objlist.exe by Laurent
Windows Defender MSMpEng.exe
Windows Defender MSASCui.exe
Windows Defender MsMpEng.exe
Windows Defender MSASCui.exe
``````````End of Log````````````