Author Topic: Computer Crashes and power turns off.  (Read 2053 times)

Offline bizzoveg111

  • Full Member
  • ***
  • Posts: 101
  • Karma: +0/-0
    • View Profile
Computer Crashes and power turns off.
« Reply #20 on: December 24, 2007, 03:52:53 AM »
Hi.

Whoops! I meant internet explorer closes using Firefox....

Offline bizzoveg111

  • Full Member
  • ***
  • Posts: 101
  • Karma: +0/-0
    • View Profile
Computer Crashes and power turns off.
« Reply #21 on: December 24, 2007, 04:44:11 AM »
Hi.

Whoops! I meant the window crashes when using Firefox.

I just used Internet Explorer and it seemed fine to upload photos.

Here's the result of DSS Scanner;
Deckard's System Scanner v20071014.68
Run by mrs skee on 2007-12-24 20:29:25
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Successfully created a Deckard's System Scanner Restore Point.


-- Last 5 Restore Point(s) --
85: 2007-12-24 09:29:36 UTC - RP253 - Deckard's System Scanner Restore Point
84: 2007-12-24 00:11:25 UTC - RP252 - System Checkpoint
83: 2007-12-22 11:24:01 UTC - RP251 - System Checkpoint
82: 2007-12-21 11:14:33 UTC - RP250 - System Checkpoint
81: 2007-12-20 07:43:09 UTC - RP249 - ComboFix created restore point


-- First Restore Point --
1: 2007-09-25 18:22:51 UTC - RP169 - System Checkpoint


Backed up registry hives.
Performed disk cleanup.



-- HijackThis (run as mrs skee.exe) --------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:31:15 PM, on 24/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\SAMSUNG\FW LiveUpdate\Liveupdate.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Uniblue\SpeedUpMyPC\SpeedUpMyPC.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\FSScrCtl.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\BizzoTempFiles\dss.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\mrs skee.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com.au/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [Name of App] C:\Program Files\SAMSUNG\FW LiveUpdate\Liveupdate.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Uniblue SpeedUpMyPC] C:\Program Files\Uniblue\SpeedUpMyPC\SpeedUpMyPC.exe -s
O4 - HKCU\..\Run: [SpamBully 3 for Outlook Express] "C:\Program Files\Axaware\Spam Bully 3 for OE\sb3oe.exe" install
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Screen Saver Control.lnk = C:\WINDOWS\FSScrCtl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/as...rl/LSSupCtl.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/eB...l_v1-0-3-30.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1132951782953
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1133261628729
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/techsupp/as...rl/SymAData.cab
O16 - DPF: {E36C5562-C4E0-4220-BCB2-1C671E3A5916} (Seagate SeaTools English Online) - http://www.seagate.com/support/disc/asp/to.../npseatools.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--
End of file - 9299 bytes

-- HijackThis Fixed Entries (C:\PROGRA~1\TRENDM~1\HIJACK~1\backups\) -----------

backup-20071217-072501-302 O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
backup-20071220-181335-490 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
backup-20071220-181335-711 O2 - BHO: (no name) - {6CDC713D-3ECA-0650-7D80-6076B1693F93} - (no file)
backup-20071220-181335-731 O2 - BHO: (no name) - {1E8984F3-12E6-46D5-AD0B-F2605A9FD147} - (no file)
backup-20071220-181335-762 O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} - http://www.miniclip.com/zenpuzzlegarden/mi...pGameLoader.dll
backup-20071220-181335-886 O2 - BHO: RGWIE Class - {D4D5806E-EA2C-45b2-972D-8BE237697B87} - RGWIE.dll (file missing)

-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R1 cdrbsvsd - c:\windows\system32\drivers\cdrbsvsd.sys <Not Verified; B.H.A Corporation; B's Recorder GOLD5>
R3 ElbyCDFL - c:\windows\system32\drivers\elbycdfl.sys <Not Verified; SlySoft, Inc.; CloneCD>
R3 Eplpdx02 - c:\windows\system32\drivers\eplpdx02.sys <Not Verified; MK Systems CO., LTD.; MK Systems LPT I/O Driver for Windows2000>

S2 ASInsHelp - c:\windows\system32\drivers\asinshelp32.sys (file missing)
S3 catchme - c:\docume~1\mrsske~1\locals~1\temp\catchme.sys (file missing)
S3 Pcouffin (VSO Software pcouffin) - c:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
S3 RegGuard - c:\windows\system32\drivers\regguard.sys <Not Verified; Greatis Software; RegRun Security Suite>
S3 Ser2pl (Prolific2 Serial port driver) - c:\windows\system32\drivers\ser2pl.sys (file missing)
S3 slabbus (USB Data Cable driver (WDM)) - c:\windows\system32\drivers\slabbus.sys <Not Verified; MCCI; CP2101 USB Composite Device>
S3 slabser (USB Data Cable Drivers) - c:\windows\system32\drivers\slabser.sys <Not Verified; MCCI; CP2101 USB to UART Bridge Controller>


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

R2 EPSONStatusAgent2 (EPSON Printer Status Agent2) - c:\program files\common files\epson\ebapi\sagent2.exe <Not Verified; SEIKO EPSON CORPORATION; EPSON Bidirectional Printer>
R3 ServiceLayer - "c:\program files\pc connectivity solution\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>

S3 NBService - c:\program files\nero\nero 7\nero backitup\nbservice.exe


-- Device Manager: Disabled ----------------------------------------------------

Class GUID: {4D36E97D-E325-11CE-BFC1-08002BE10318}
Description:
Device ID: ACPI\ATK0110\1010110
Manufacturer: ATK
Name:
PNP Device ID: ACPI\ATK0110\1010110
Service:

Class GUID: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
Description: Nokia Windows Portable Device Driver
Device ID: ROOT\WPD\0000
Manufacturer: Nokia
Name: Nokia 6131
PNP Device ID: ROOT\WPD\0000
Service: WUDFRd

Class GUID: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
Description: Nokia 6131
Device ID: ROOT\WPD\0001
Manufacturer: Nokia
Name: Nokia 6131
PNP Device ID: ROOT\WPD\0001
Service: WUDFRd


-- Scheduled Tasks -------------------------------------------------------------

2007-12-24 17:31:41       444 --a------ C:\WINDOWS\Tasks\RegCure Program Check.job
2007-12-20 12:00:00       392 --a------ C:\WINDOWS\Tasks\Uniblue SpyEraser.job
2007-12-20 06:34:33       378 --a------ C:\WINDOWS\Tasks\RegCure.job
2007-12-17 08:43:06       272 --a------ C:\WINDOWS\Tasks\Uniblue SpeedUpMyPC Nag.job
2007-12-15 18:29:01       284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2007-04-21 09:43:43       390 --a------ C:\WINDOWS\Tasks\Uniblue SpeedUpMyPC.job


-- Files created between 2007-11-24 and 2007-12-24 -----------------------------

2007-12-24 17:39:05         0 dr-h----- C:\Documents and Settings\mrs skee\Recent
2007-12-23 14:42:32         0 d-------- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2007-12-23 09:22:43         0 d------c- C:\Adobe After effects Pro v7 rar
2007-12-16 11:25:33         0 d-------- C:\Program Files\Trend Micro
2007-12-09 16:06:59    352256 --a------ C:\WINDOWS\system32\IJL151.dll <Not Verified; Intel Corporation; Intel® JPEG Library>
2007-12-09 16:06:20   1559780 --a------ C:\WINDOWS\system32\Illawarra Screensaver.Scr <Not Verified; Acme Photo Software; ApssmPlayer>


-- Find3M Report ---------------------------------------------------------------

2007-12-24 17:38:35         0 d-------- C:\Program Files\SpywareBlaster
2007-12-24 16:39:32         0 d-------- C:\Program Files\Jewel Quest II
2007-12-24 09:13:50         0 d-------- C:\Documents and Settings\mrs skee\Application Data\Adobe
2007-12-19 04:39:07         0 d-a------ C:\Program Files\Common Files
2007-12-17 07:25:03         0 d-------- C:\Program Files\SpywareGuard
2007-12-16 10:12:32         0 d-------- C:\Program Files\LimeWire
2007-12-14 16:43:48         0 d-------- C:\Documents and Settings\mrs skee\Application Data\AVG7
2007-12-02 21:30:03     41492 --a------ C:\Documents and Settings\mrs skee\Application Data\Hewlett-PackardHP Photosmart 3100 series1164837155_UI.log
2007-12-02 21:29:59     25301 --a------ C:\Documents and Settings\mrs skee\Application Data\Hewlett-PackardHP Photosmart 3100 series1164837155_PROTOCOL.log
2007-12-02 13:45:44      1187 --a------ C:\Documents and Settings\mrs skee\Application Data\Hewlett-PackardHP Photosmart 3100 series1164837155_API.log
2007-11-22 19:53:26         0 d-------- C:\Program Files\Numbers Up!2 Baggin' the Dragon V1.2
2007-11-22 07:31:08         0 d-------- C:\Program Files\NickJr. Games
2007-11-18 12:49:01         0 d-------- C:\Documents and Settings\mrs skee\Application Data\Skype
2007-11-02 15:13:43        16 --a------ C:\WINDOWS\popcinfo.dat
2007-10-27 17:20:07         0 d-------- C:\Program Files\XviD
2007-10-27 17:20:07         0 d-------- C:\Program Files\Words Rock! V1.1 Home
2007-10-27 17:20:07         0 d-------- C:\Program Files\Windows Media Connect 2
2007-10-27 17:20:06         0 d-------- C:\Program Files\Solar System
2007-10-27 17:20:06         0 d-------- C:\Program Files\RegCure
2007-10-27 17:20:06         0 d-------- C:\Program Files\Numbers Up! VP V1.2.2
2007-10-27 17:20:06         0 d-------- C:\Program Files\Movie Maker
2007-10-27 17:20:06         0 d-------- C:\Program Files\Messenger
2007-10-27 17:20:06         0 d-------- C:\Program Files\bfgclient
2007-10-27 17:20:06         0 d-------- C:\Program Files\BFG
2007-10-27 17:20:06         0 d-------- C:\Program Files\Bejeweled 2 Deluxe
2007-10-26 19:47:42     45056 --a------ C:\WINDOWS\system32\sstunst2.exe <Not Verified; Stardust Software; Stardust Screen Saver Uninstaller>
2007-10-26 19:47:39     40960 --a------ C:\WINDOWS\QStart.exe <Not Verified; Stardust Software; Stardust Screen Saver Toolkit>
2007-10-26 19:47:39    241664 --a------ C:\WINDOWS\FSScrCtl.exe <Not Verified; Stardust Software; Stardust Screen Saver Toolkit 2.1>
2007-10-26 19:47:18    475136 --a------ C:\WINDOWS\system32\Dubai.scr <Not Verified; Stardust Software; Stardust Screen Saver Toolkit>
2007-10-24 04:34:14         0 d-------- C:\Documents and Settings\mrs skee\Application Data\Big Fish Games
2007-10-24 04:28:40         0 d-------- C:\Documents and Settings\mrs skee\Application Data\iWin
2007-10-24 03:44:07         0 d-------- C:\Program Files\The Golden Path of Plumeboom
2007-10-24 03:43:34         0 d-------- C:\Program Files\Azada
2007-10-14 08:04:07        55 --a------ C:\Documents and Settings\mrs skee\Application Data\pcouffin.log
2007-10-14 08:04:06     47360 --a------ C:\Documents and Settings\mrs skee\Application Data\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
2007-10-14 08:04:06      1144 --a------ C:\Documents and Settings\mrs skee\Application Data\pcouffin.inf
2007-10-14 08:04:06      7887 --a------ C:\Documents and Settings\mrs skee\Application Data\pcouffin.cat


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [10/12/2005 03:06 AM]
"nwiz"="nwiz.exe" [10/12/2005 03:06 AM C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [10/12/2005 03:06 AM]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [12/05/2005 12:12 AM]
"SoundMAXPnP"="C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe" [01/04/2004 11:52 AM]
"SoundMAX"="C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" [26/03/2004 03:40 PM]
"Name of App"="C:\Program Files\SAMSUNG\FW LiveUpdate\Liveupdate.exe" [10/03/2006 10:07 AM]
"PCSuiteTrayApplication"="C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe" [23/03/2007 02:20 PM]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [03/07/2007 09:34 AM]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [10/10/2007 07:51 PM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [25/09/2007 02:11 AM]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [01/03/2007 04:57 PM]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" [22/12/2007 09:12 AM]
"AVG7_EMC"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe" [22/12/2007 09:12 AM]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [29/06/2007 07:24 AM]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [04/08/2004 06:56 PM]
"Uniblue SpeedUpMyPC"="C:\Program Files\Uniblue\SpeedUpMyPC\SpeedUpMyPC.exe" [13/04/2007 12:51 PM]
"Uniblue SpyEraser"="" []
"SpamBully 3 for Outlook Express"="C:\Program Files\Axaware\Spam Bully 3 for OE\sb3oe.exe" [01/09/2005 08:56 PM]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog

C:\Documents and Settings\mrs skee\Start Menu\Programs\Startup\
Screen Saver Control.lnk - C:\WINDOWS\FSScrCtl.exe [26/10/2007 7:47:39 PM]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [12/05/2005 12:23:26 AM]
HP Image Zone Fast Start.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe [12/05/2005 1:49:24 AM]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableCAD"=0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"NoDispBackgroundPage"=0 (0x0)
"DisableRegistryTools"=0 (0x0)

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Notification Packages"=  :\WINDOWS\system32\srrstr.dll  cecli

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"




-- End of Deckard's System Scanner: finished at 2007-12-24 20:32:44 ------------

And the other txt file;
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: English

CPU 0: AMD Sempron(tm) Processor 2800+
Percentage of Memory in Use: 61%
Physical Memory (total/avail): 767.17 MiB / 298.15 MiB
Pagefile Memory (total/avail): 1873.72 MiB / 1390.07 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1922.65 MiB

A: is Removable (No Media)
C: is Fixed (NTFS) - 74.52 GiB total, 18.42 GiB free.
D: is CDROM (CDFS)
E: is Removable (No Media)
F: is CDROM (No Media)

\\.\PHYSICALDRIVE0 - ST380023A - 74.53 GiB - 1 partition
  \PARTITION0 (bootable) - Installable File System - 74.52 GiB - C:

\\.\PHYSICALDRIVE1 - HP Photosmart 3110 USB Device



-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.

AV: AVG 7.5.516 v7.5.516 (Grisoft)

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\BitLord\\BitLord.exe"="C:\\Program Files\\BitLord\\BitLord.exe:*:Enabled:BitLord"


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\mrs skee\Application Data
CLASSPATH=.;"C:\Program Files\Java\jre1.5.0_06\lib\ext\QTJava.zip";C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=MRS-SKEE
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\mrs skee
LOGONSERVER=\\MRS-SKEE
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=C:\Program Files\PC Connectivity Solution\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\WBEM;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\Ulead Systems\Ulead DVD MovieFactory 3 SE;C:\Program Files\QuickTime\QTSystem\;C:\Program Files\Common Files\Ahead\Lib\;C:\Program Files\Common Files\Ahead\Lib\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 44 Stepping 2, AuthenticAMD
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=2c02
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\MRSSKE~1\LOCALS~1\Temp
TMP=C:\DOCUME~1\MRSSKE~1\LOCALS~1\Temp
USERDOMAIN=MRS-SKEE
USERNAME=mrs skee
USERPROFILE=C:\Documents and Settings\mrs skee
windir=C:\WINDOWS
__COMPAT_LAYER=EnableNXShowUI


-- User Profiles ---------------------------------------------------------------

mrs skee (admin)
Administrator (admin)


-- Add/Remove Programs ---------------------------------------------------------

 --> C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
 --> C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
 --> C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
 --> C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
 --> C:\WINDOWS\UNNeroVision.exe /UNINSTALL
 --> C:\WINDOWS\UNRecode.exe /UNINSTALL
 --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
AC3Filter (remove only) --> C:\Program Files\AC3Filter\uninstall.exe
Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~2\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~2\INSTALL.LOG
Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Photoshop 7.0 --> C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Adobe\Photoshop 7.0\Uninst.isu" -c"C:\Program Files\Adobe\Photoshop 7.0\Uninst.dll"
Adobe Reader 8.1.1 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81000000003}
Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
afreeCodecVT --> "C:\WINDOWS\afreeCodecVT\uninstall.exe" "/U:C:\Program Files\afreeCodecVT\Uninstall\uninstall.xml"
AnyDVD --> "C:\Program Files\SlySoft\AnyDVD\AnyDVD-uninst.exe" /D="C:\Program Files\SlySoft\AnyDVD"
Apple Software Update --> MsiExec.exe /I{A50C25D7-62E9-4511-AD70-8E2DA5E79B7D}
Ariel's Story Studio --> C:\DISNEY\ARIEL_SS\A_DEL95.EXE
AVG Anti-Spyware 7.5 --> C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
AVG Free Edition --> C:\Program Files\Grisoft\AVG Free\setup.exe /UNINSTALL
Azada (remove only) --> "C:\Program Files\Azada\Uninstall.exe"
Big Fish Games Client --> C:\Program Files\bfgclient\Uninstall.exe
BitLord 1.1 --> C:\Program Files\BitLord\uninst.exe
Bloink v1.30e --> "C:\Program Files\Bloink\unins000.exe"
Brain Buster Quiz --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{273A71C7-5EE2-44B9-943F-9BC2A976D97E}\Setup.exe" -l0x9
Brave Dwarves Back --> "C:\Program Files\Oberon Media\Brave Dwarves Back\Uninstall.exe" "C:\Program Files\Oberon Media\Brave Dwarves Back\install.log"
Casper Activity Center --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Sound Source Interactive\Casper Activity Center\Uninst.isu"
CleanUp! --> C:\Program Files\CleanUp!\uninstall.exe
CloneCD --> "C:\Program Files\SlySoft\CloneCD\ccd-uninst.exe" /D="C:\Program Files\SlySoft\CloneCD"
CloneDVD2 --> "C:\Program Files\Elaborate Bytes\CloneDVD2\CloneDVD2-uninst.exe" /D="C:\Program Files\Elaborate Bytes\CloneDVD2"
CoreVorbis Audio Decoder (remove only) --> "C:\WINDOWS\system32\CoreVorbis-uninstall.exe"
Dinosaur Hunter --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F73BB4A8-6F3A-4260-99A2-CAA54E92CB98}\setup.exe" -l0x9  -removeonly
Disney Interactive Global Compatibility Update June 2003 --> C:\WINDOWS\system32\sdbinst.exe -u "C:\WINDOWS\AppPatch\Custom\{4acec804-8c2c-4c78-9127-6c6b756e44e2}.sdb"
DivX --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
Dr. Seuss Reading Games --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Creative Wonders\Dr. Seuss Reading Games\Uninst.isu"
Dubai Screen Saver --> sstunst2.exe Dubai
DVD Decrypter (Remove Only) --> "C:\Program Files\DVD Decrypter\uninstall.exe"
DVD Shrink 3.2 --> "C:\Program Files\DVD Shrink\unins000.exe"
DVD X Copy Platinum 4.0.3 --> "C:\Program Files\321Studios\Platinum\uninstall.exe"
EPSON Printer Software --> C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
eVac-U8 --> MsiExec.exe /X{EBC0BEE4-5F1B-11D5-8307-005004B8D703}
Eyewitness Encyclopedia of Nature 2.1 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8ED8B898-D888-4D44-A97B-D893A06B82CC}\Setup.exe" -l0x9
Eyewitness Encyclopedia of Science 2.0 --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\DK Multimedia\Eyewitness Encyclopedia of Science 2.0\Uninst.isu"
Fairy Tale v1.0 --> C:\WINDOWS\IsUninst.exe -fC:\KA\Fairies\DeIsL4.isu
Finding Nemo: Nemo's Underwater World of Fun --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{BCB8D603-985E-4765-B4AB-B4B991A535B7} NemoUWFUninstall
FW LiveUpdate --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C74523E1-3D92-4C07-911F-3177933C3B38}\setup.exe" -l0x9  -removeonly
G.H.O.S.T. Hunters: The Haunting of Majesty Manor (remove only) --> "C:\Program Files\G.H.O.S.T. Hunters - The Haunting of Majesty Manor\Uninstall.exe"
GdiplusUpgrade --> MsiExec.exe /I{5421155F-B033-49DB-9B33-8F80F233D4D5}
Google Earth --> MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}
GPL Ghostscript 8.15 --> C:\Program Files\gs\uninstgs.exe "C:\Program Files\gs\gs8.15\uninstal.txt"
GPL Ghostscript Fonts --> C:\Program Files\gs\uninstgs.exe "C:\Program Files\gs\fonts\uninstal.txt"
Harry Potter and the Goblet of Fireâ„¢ --> C:\Program Files\Electronic Arts\Harry Potter and the Goblet of Fire\EAUninstall.exe
Harry Potter and the Prisoner of Azkaban(tm) --> C:\Program Files\EA GAMES\Harry Potter and the Prisoner of Azkaban(tm)\EAUninstall.exe
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Document Viewer 5.3 --> C:\Program Files\HP\Digital Imaging\DocumentViewer\hpzscr01.exe -datfile hpqbud04.dat
HP Extended Capabilities 5.3 --> C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Image Zone 5.3 --> C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP Imaging Device Functions 5.3 --> C:\Program Files\HP\Digital Imaging\DigitalImagingMonitor\hpzscr01.exe -datfile hpqbud01.dat
HP PSC & OfficeJet 5.3.A --> "C:\Program Files\HP\Digital Imaging\{3E386744-10FA-44b2-98C9-DF7A270DECB3}\setup\hpzscr01.exe" -datfile hposcr06.dat
HP Solution Center & Imaging Support Tools 5.3 --> C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update --> MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134}
Indeo® Software --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Ligos\Indeo\Uninst.isu" -c"C:\Program Files\Ligos\Indeo\Indeo System Files\indounin.dll"
InterVideo WinDVD --> "C:\Program Files\InstallShield Installation Information\{C1939820-A945-11D4-86F6-0001031E5712}\setup.exe" REMOVEALL
J2SE Runtime Environment 5.0 Update 10 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100}
Java(tm) 6 Update 2 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
Java(tm) 6 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Java(tm) SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
Jewel Quest II (remove only) --> "C:\Program Files\Jewel Quest II\Uninstall.exe"
Journey to the Center of the Earth (remove only) --> "C:\Program Files\Journey to the Center of the Earth\Uninstall.exe"
JumpStart Artist --> C:\Program Files\Common Files\Knowledge Adventure\Uninstall\JSArtistUn.exe
Kid Pix Deluxe 3 --> C:\Program Files\Broderbund\Kid Pix Deluxe 3\uninstal.exe
Kid Pix Studio Deluxe --> C:\WINDOWS\uninst.exe -fC:\KPSDLUX\DeIsL1.isu
Kiran's Typing Tutor 1.0 --> "C:\Program Files\Kiran's Typing Tutor\unins000.exe"
Lemmings Paintball --> C:\WINDOWS\uninst.exe -fC:\Games\LemBall\DeIsLog.1
LimeWire PRO 4.10.0 --> "C:\Program Files\LimeWire\uninstall.exe"
Macromedia Flash Player 8 --> RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\swflash.inf,DefaultUninstall,5
Magic Match --> "C:\Program Files\Oberon Media\Magic Match\Uninstall.exe" "C:\Program Files\Oberon Media\Magic Match\install.log"
Magic Match (remove only) --> C:\Program Files\Magic Match\Uninstall.exe
Mahjongg Investigation - Under Suspicion (remove only) --> "C:\Program Files\Mahjongg Investigation - Under Suspicion\Uninstall.exe"
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Office 2000 Premium --> MsiExec.exe /I{00000409-78E1-11D2-B60F-006097C998E7}
Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007 --> MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007 --> MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007 --> MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007 --> MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word 2007 --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall WORD /dll OSETUP.DLL
Microsoft Office Word 2007 --> MsiExec.exe /X{90120000-001B-0000-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007 --> MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Text-to-Speech Engine 4.0 (English) --> RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\msTTS.inf, Uninstall
Microsoft User-Mode Driver Framework Feature Pack 1.5 --> "C:\WINDOWS\$NtUninstallWudf01005$\spuninst\spuninst.exe"
Mozilla Firefox (2.0.0.11) --> C:\PROGRA~1\Mozilla Firefox\uninstall\helper.exe
Nero 7 Ultra Edition --> MsiExec.exe /X{CF097717-F174-4144-954A-FBC4BF301033}
neroxml --> MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
Nokia Connectivity Cable Driver --> MsiExec.exe /X{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}
Nokia PC Suite --> C:\Documents and Settings\All Users\Application Data\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_eng_web.exe /LANG="2057"
Nokia PC Suite --> MsiExec.exe /I{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}
Nokia Series 40 Theme Studio 2.2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{138B53E6-34D8-45FF-89D7-1D54A44FA355}\setup.exe" -l0x9  -removeonly
Numbers Up! VP V1.2.2 --> C:\WINDOWS\iun6002.exe "C:\Program Files\Numbers Up! VP V1.2.2\irunin.ini"
Numbers Up!2 Baggin' the Dragon V1.2 --> "C:\WINDOWS\Numbers Up!2 Baggin' the Dragon V1.2\uninstall.exe" "/U:C:\Program Files\Numbers Up!2 Baggin' the Dragon V1.2\Uninstall\uninstall.xml"
NVIDIA Drivers --> C:\WINDOWS\system32\nvudisp.exe UninstallGUI
Our living Oceans --> C:\emme\oceanSr\Desinst.exe
PC Connectivity Solution --> MsiExec.exe /I{066D65EA-ED53-44E4-A96A-F81B6E409D2E}
PDF Writer --> C:\WINDOWS\system32\uninstpw.exe C:\Program Files\PDF Writer
Planetwide Games Comic Book Creator --> MsiExec.exe /I{EBFB1375-E8DE-43DD-8430-3E43485E19F8}
PrintMaster Gold 3.00 --> c:\pmw\msrun.exe
QuickTime --> MsiExec.exe /I{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}
QuickTime for Windows (32-bit) --> C:\WINDOWS\QTW32DEL.EXE
RatBags --> MsiExec.exe /X{2E155A37-C41A-49AF-8036-2BE7867F8E77}
RegCure 1.2.0.4 --> C:\Program Files\RegCure\uninst.exe
Seagate SeaTools English Online --> RunDll32.exe C:\WINDOWS\DOWNLO~1\NPSEAT~1.DLL,DllUninstallServer
Security Update for Office 2007 (KB934062) --> msiexec /package {90120000-001B-0000-0000-0000000FF1CE} /uninstall {305D509B-F194-4638-9F0F-D9E4C05F9D33}
Security Update for Office 2007 (KB936514) --> msiexec /package {90120000-001B-0000-0000-0000000FF1CE} /uninstall {C7A78F7F-EF32-4477-BAD7-3439EA7571BF}
Security Update for the 2007 Microsoft Office System (KB936960) --> msiexec /package {90120000-001B-0000-0000-0000000FF1CE} /uninstall {5E5BD655-7AA9-47F9-BB6D-A1D8CE29AC86}
setup (Remove only) --> C:\WINDOWS\rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\setup.inf,DefaultUninstall
Skypeâ„¢ 3.5 --> MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
Slot_Scary 4.0 --> "C:\Program Files\Slot_Scary\uninstall.exe"
Slots_ahoy 2.0 --> "C:\Program Files\Slots_ahoy\uninstall.exe"
Slots_Cheers 3.0 --> "C:\Program Files\Slots_Cheers\uninstall.exe"
Slots_TUT 4.0 --> "C:\Program Files\Slots_TUT\uninstall.exe"
Slots_Vegas 3.0 --> "C:\Program Files\Slots_Vegas\uninstall.exe"
Solar System 3D Simulator --> "C:\Program Files\Solar System\unins000.exe"
Sony Ericsson File Manager --> MsiExec.exe /X{60E5B847-2353-4AE3-829E-685937EDDC40}
Sony Ericsson Image Editor --> MsiExec.exe /X{4FB0FB47-8F1D-4339-8BE9-39819362AE05}
Sony Ericsson MMS Home Studio --> MsiExec.exe /X{83E9FDFD-B4E9-4FB7-A767-8339664CDE96}
Sony Ericsson Sound Editor --> MsiExec.exe /X{8DD641C2-FFEC-4AED-A339-88BACFC60C39}
Sony USB Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}\setup.exe" UNINSTALL
SoundMAX --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\setup.exe" -l0x9
Spam Bully 3 for OE 3.0.0.28 --> C:\Program Files\Axaware\Spam Bully 3 for OE\uninst.exe
Spirit (remove only) --> "C:\Program Files\THQ\Spirit\uninstall.exe"
Spybot - Search & Destroy 1.4 --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
SpywareBlaster v3.5.1 --> "C:\Program Files\SpywareBlaster\unins000.exe"
Tarzan Action Game --> C:\WINDOWS\IsUninst.exe -fC:\PROGRA~1\DISNEY~1\TARZAN~1\DeIsL1.isu
Tarzan Activity Center --> C:\WINDOWS\IsUninst.exe -fC:\PROGRA~1\DISNEY~1\TARZAN~2\DeIsL2.isu
The Da Vinci Code --> "C:\Program Files\Oberon Media\The Da Vinci Code\Uninstall.exe" "C:\Program Files\Oberon Media\The Da Vinci Code\install.log"
The Fairly OddParents --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BBA98386-2B74-4C54-B085-543E7D5A3FAC}\Setup.exe" -l0x9 \ /uninst
The Golden Path of Plumeboom (remove only) --> "C:\Program Files\The Golden Path of Plumeboom\Uninstall.exe"
Tonka Construction 2 --> C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Hasbro Interactive\Tonka Construction 2\Uninst.isu" -c"C:\Program Files\Hasbro Interactive\Tonka Construction 2\_UnInstall.dll"
Tonka Garage --> C:\Hasbro\TONKA_GR\TG_DEL95.EXE
Toy Story 2 Activity Center --> C:\WINDOWS\IsUninst.exe -fC:\PROGRA~1\DISNEY~1\TOYSTO~1\DeIsL1.isu
Ulead DVD MovieFactory 3 SE --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{068502DA-6979-4D9A-BBE1-C3AD0FF11F19}\Setup.exe" -l0x9
Ultimate Human Body 2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B62C3B2A-9FB8-44AA-B58F-FD2CE550E9E3}\Setup.exe" -l0x9  -removeonly
Uniblue SpeedUpMyPC --> "C:\Program Files\Uniblue\SpeedUpMyPC\unins000.exe"
Update for Office 2007 (KB932080) --> msiexec /package {90120000-001B-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}
Update for Office 2007 (KB934391) --> msiexec /package {90120000-001B-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5}
Update for Word 2007 (KB934173) --> msiexec /package {90120000-001B-0000-0000-0000000FF1CE} /uninstall {C6A89125-5473-45E3-B413-ED8186437475}
USB Data Cable --> C:\WINDOWS\System32\USB2k.exe C:\WINDOWS\System32\USB.u2k
VIA Rhine-Family Fast Ethernet Adapter --> Rundll32.exe vuins32.dll,vuins32Ex $Rhine $VIA
Webshots Desktop --> C:\PROGRA~1\Webshots\UNWISE.EXE C:\PROGRA~1\Webshots\INSTALL.LOG
Windows Defender Signatures --> MsiExec.exe /I{A5CC2A09-E9D3-49EC-923D-03874BBD4C2C}
Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccswpddri_039E7E24575DBAE6A389611AF28F4EB97729D33E\pccswpddriver.inf
Windows Driver Package - Nokia Modem (02/15/2007 3.1) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccs_bluet_8B37DC72918CCD58A6EC20373AF6242B037A293B\pccs_bluetooth.inf
Windows Driver Package - Nokia Modem (11/03/2006 6.82.0.1) --> C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_4EFFAAE27A08EDFDE145390033D8EF099DA65567\nokbtmdm.inf
Windows Installer Clean Up --> MsiExec.exe /X{121634B0-2F4B-11D3-ADA3-00C04F52DD52}
Windows Live Messenger --> MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}
Windows Live Sign-in Assistant --> MsiExec.exe /I{49672EC2-171B-47B4-8CE7-50D7806360D7}
Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
WinZip --> "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
Words Rock! V1.1 Home --> "C:\WINDOWS\Words Rock! V1.1 Home\uninstall.exe" "/U:C:\Program Files\Words Rock! V1.1 Home\irunin.xml"
XviD 1.1 final uninstall --> "C:\Program Files\XviD\unins000.exe"
Zoombinis Island Odyssey --> C:\WINDOWS\TLCUninstall.exe -f  "C:\Program Files\Mindscape\Zoombinis Island Odyssey\Uninstall.xml"


-- Application Event Log -------------------------------------------------------

Event Record #/Type7299 / Error
Event Submitted/Written: 12/24/2007 00:45:16 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application firefox.exe, version 1.8.20071.12718, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Event Record #/Type7292 / Warning
Event Submitted/Written: 12/24/2007 07:52:54 AM
Event ID/Source: 1001 / MsiInstaller
Event Description:
Detection of product '{C506A18C-1469-4678-B094-F4EC9DAE6DB7}', feature 'Scan' failed during request for component '{ED62C5B1-1D02-42E3-9671-266AE4329209}'

Event Record #/Type7291 / Warning
Event Submitted/Written: 12/24/2007 07:52:54 AM
Event ID/Source: 1004 / MsiInstaller
Event Description:
Detection of product '{C506A18C-1469-4678-B094-F4EC9DAE6DB7}', feature 'Scan', component '{B1C1D510-D2C1-4544-B33A-31E289F2852F}' failed.  The resource 'C:\WINDOWS\twain_32\hpqgnds2.tmp' does not exist.

Event Record #/Type7277 / Success
Event Submitted/Written: 12/23/2007 10:17:17 PM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.

Event Record #/Type7276 / Error
Event Submitted/Written: 12/23/2007 02:19:41 PM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application msimn.exe, version 6.0.2900.2180, faulting module directdb.dll, version 6.0.2900.3138, fault address 0x0000be75.
Processing media-specific event for [msimn.exe!ws!]



-- Security Event Log ----------------------------------------------------------

No Errors/Warnings found.


-- System Event Log ------------------------------------------------------------

Event Record #/Type73186 / Warning
Event Submitted/Written: 12/24/2007 08:13:42 PM
Event ID/Source: 4226 / Tcpip
Event Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.

Event Record #/Type73185 / Warning
Event Submitted/Written: 12/24/2007 05:37:11 PM
Event ID/Source: 4226 / Tcpip
Event Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.

Event Record #/Type73181 / Warning
Event Submitted/Written: 12/24/2007 04:12:07 PM
Event ID/Source: 4226 / Tcpip
Event Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.

Event Record #/Type73180 / Warning
Event Submitted/Written: 12/24/2007 01:24:50 PM
Event ID/Source: 4226 / Tcpip
Event Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.

Event Record #/Type73177 / Warning
Event Submitted/Written: 12/24/2007 00:43:51 PM
Event ID/Source: 4226 / Tcpip
Event Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.



-- End of Deckard's System Scanner: finished at 2007-12-24 20:32:44 ------------

Thanks

Liz

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
Computer Crashes and power turns off.
« Reply #22 on: December 24, 2007, 12:19:00 PM »
Quote
Whoops! I meant the window crashes when using Firefox.

Can you try the next step
Go to START>>RUN (If Run is not showing, you can use the Windows + R keys on your keyboard)
Copy and paste the next command in bold below to the open field


firefox -safe-mode

DON'T hit OK yet, instead ensure that you first close any Firefox windows that are open
Then hit OK

You should get a Firefox Safe mode prompt
Click "Continue in Safe Mode"

Do you have any problems with Firefox running in it's safe mode enviroment?

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline bizzoveg111

  • Full Member
  • ***
  • Posts: 101
  • Karma: +0/-0
    • View Profile
Computer Crashes and power turns off.
« Reply #23 on: December 24, 2007, 10:10:14 PM »
Hi again.

Firefox worked fine in safe mode as you suggested.

However, as soon as I went to upload a photo on myspace...crash! The page disappears.

Liz

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
Computer Crashes and power turns off.
« Reply #24 on: December 25, 2007, 01:57:42 PM »
So the only problem you have right now is Firefox, is that correct?

Can you do the following

Close any browser windows you have open
Access your add/remove programs and remove older versions of Java

This includes
J2SE Runtime Environment 5.0 Update 10
Javaâ„¢ 6 Update 2

Javaâ„¢ SE Runtime Environment 6 Update 1


Reboot the computer

Back in Windows

with Firefox, can you go to the following address
www.disneychannel.com
Does firefox crash?
Can you open Firefox and in the address field type in the following

about:plugins

Can you let me know what Flash version you have installed please
« Last Edit: December 25, 2007, 02:05:54 PM by guestolo »

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline bizzoveg111

  • Full Member
  • ***
  • Posts: 101
  • Karma: +0/-0
    • View Profile
Computer Crashes and power turns off.
« Reply #25 on: December 25, 2007, 07:38:36 PM »
[Have uninstalled java versions.

Rebooted and Firefox did not crash when I entered disney.com. (all loaded fine)

Typed in the aboutplugin and a window popped up with information.

This is the flash information;
Shockwave Flash

    File name: NPSWF32.dll
    Shockwave Flash 9.0 r115

MIME Type    Description    Suffixes    Enabled
application/x-shockwave-flash    Adobe Flash movie    swf    Yes
application/futuresplash    FutureSplash movie    spl    Yes
Mozilla Default Plug-in

Yes, problem only seems to happen using Firefox.

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
Computer Crashes and power turns off.
« Reply #26 on: December 25, 2007, 08:19:59 PM »
Let's try the following and see if it's any help with the Firefox issue
Set Windows To Show Hidden Files and Folders
    * Click Start.
    * Open My Computer.
    * Select the Tools menu and click Folder Options.
    * Select the View Tab.
    * Under the Hidden files and folders heading select Show hidden files and folders.
    * Uncheck the Hide Extensions for known file types
    * Click Yes to confirm.
    * Click OK.

Navigate to the following file and delete it
It will be rebuilt the next time you download with Firefox

C:\Documents and Settings\Bill\Application Data\Mozilla\Firefox\Profiles\*******.default\downloads.rdf <-this file

It's advised to first close Firefox before deleting that file

Afterwards, go back and reset Windows to Hide Hidden files/folders

After that
Download uninstall_flash_player.exe
from this link and save it to your desktop
http://download.macromedia.com/pub/flashpl...lash_player.exe

Don't run it yet, instead
Close All browser windows, including this one
Access add/remove programs and remove if found
Macromedia Flash Player 8

Still with all browser windows closed
Double click on uninstall_flash_player.exe
Select YES at the prompt to uninstall
When it's done, REBOOT the computer

Back in Windows
Come back here with INTERNET EXPLORER
Go to the next link
http://www.adobe.com/products/flashplayer/

Click the DOWNLOAD NOW button
Take note of the next selections
UNCHECK under "Also Install">>Google Toolbar
CHECK>>"I agree to adobe flash player........"

Then click on Install now
you should get a prompt from IE7 to install the Active X
Do so and then follow the prompts
After Flash has successfully installed you can delete the installer on desktop
Shut down IE7 and now come back here with Mozilla Firefox

Go to the following link again
http://www.adobe.com/products/flashplayer/
Click the DOWNLOAD NOW button
Click "Download Now" again at the next page
Save the installer to desktop
In Firefox click on TOOLS>>Clear Private data
Ensure "cache" is selected, the select Clear Private data now button

Close Firefox and then double click on install_flash_player.exe
Follow the prompts, it will install very quickly
Afterwards you can delete the installer on desktop

Try this page again to ensure flash is working properly
http://home.disney.go.com/tv/index
If it's working ok, try uploading to myspace and see if you have any more problems

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline bizzoveg111

  • Full Member
  • ***
  • Posts: 101
  • Karma: +0/-0
    • View Profile
Computer Crashes and power turns off.
« Reply #27 on: December 26, 2007, 12:15:29 AM »
Hi there.

I have only just recently installed flash player (couple of days ago).

Guess what?

After the java uninstallations i can now download files and upload photos to myspace through Firefox....yay!!!


I think it is all fixed!

Thanks to you again.

Appreciate your time and knowledge.


Liz

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
Computer Crashes and power turns off.
« Reply #28 on: December 26, 2007, 12:28:14 AM »
Good work, I suspected it might be a Java or Flash problem
I guess it was Java

Can you do one last step for me, I just want to check on something

Is System Restore working properly?
Go to START>>All Programs>>Accessories>>System Tools>>System Restore
Select>>Create a New restore point
Give it a name and click Create
Windows will prompt when it was created successfully

Let me know if it completed successfully please
When that's done

If it worked properly, can you continue with the following
Go to START>>RUN>>type the following
cleanmgr
Hit OK
Let if finish calculating

Select the More Options tab
and click Cleanup.. under 'System Restore'
This will clear all later restore points except for the one you just made

Ok the prompts, it may take a few seconds to remove old restore points
Ok again after it's ready and let it finish cleaning

Also, can you let me know if you can access System Restore from the following
Right click on "MyComputer" icon and select Properties>>System Restore tab
Is it Monitoring properly?

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline bizzoveg111

  • Full Member
  • ***
  • Posts: 101
  • Karma: +0/-0
    • View Profile
Computer Crashes and power turns off.
« Reply #29 on: December 26, 2007, 01:11:32 AM »
Hi there.

Have successfully created new restore point.

Have cleared previous restore points....I think.
It said it was deleting them and then just disappeared.

Right clicking my computer.....properties...system restore......;
It says it is 'monitoring'

Am I finished????

Computer is running just wonderfully.....

Liz

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
Computer Crashes and power turns off.
« Reply #30 on: December 26, 2007, 01:21:59 AM »
Quote
Am I finished????

Yes we're done here  http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/tongue.gif\' class=\'bbc_emoticon\' alt=\':P\' />

Just some final steps
Go to START>>RUN>>Copy then paste the next command below in bold
Then hit OK

combofix /u

This will uninstall combofix and it's components

Let's remove other tools we used earlier
Download this tool:
[color=\"blue\"]OTMoveIt[/color] by OldTimer:
  • Save it to your desktop.
  • Please double-click OTMoveIt.exe to run it.
    Click the Cleanup! button
    A list will be downloaded>>Allow it Internet access if prompted by your Firewall
    Don't change anything in this list
    Select Yes at the prompt
    Wait for the confirmation box to open to reboot the computer, don't mouseclick during the wait as you may cause the tool to stall
    Select Yes to reboot Now
NOTE: This procedure will also delete OTMoveit.exe from desktop

Be sure to check for updates with Spywareblaster and select the enable all protections if there was an update
Also, check and download updates with Spybot 1.4,
Ensure to use the Immunize feature after every update
Simply click Immunize>>OK>>Immunize again at the top green cross

Stay safe and have a wonderful New year  http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/biggrin.gif\' class=\'bbc_emoticon\' alt=\':D\' />

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline bizzoveg111

  • Full Member
  • ***
  • Posts: 101
  • Karma: +0/-0
    • View Profile
Computer Crashes and power turns off.
« Reply #31 on: December 26, 2007, 02:47:04 AM »
You too!

Thanks again!

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
Computer Crashes and power turns off.
« Reply #32 on: December 26, 2007, 12:28:52 PM »
Your welcome, I'll lock this topic as your problems are resolved
Take care Liz  http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/smile.gif\' class=\'bbc_emoticon\' alt=\':)\' />

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here