Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Resolved HJT Threads
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Resolved HJT Threads Resolved spyware and popup issues.

 
 
LinkBack Thread Tools
Old 01-08-2006, 06:34 PM   #1 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


Very Slow PC - Help

I've ran several spyware and antivirus programs and nothing comes up. My computer is dreadfully slow. Year and a half old PC, running XP with SP2. Installed SP2 shortly after purchasing. PC used to run smooth and fast and suddenly came to a very slow halt, not sure why. Takes about 5 minutes to boot. All programs list in the start area takes 2 minutes to display. Please help! Just ran Highjackthis, the log results are below.

Logfile of HijackThis v1.99.1
Scan saved at 5:51:55 PM, on 1/8/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\BCMSMMSG.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\NetZero\exec.exe
C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TangoManager.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\WINDOWS\explorer.exe
C:\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O3 - Toolbar: ZeroBar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\NetZero\Toolbar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [TangoManager] C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [uoltray] C:\Program Files\NetZero\exec.exe regrun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - Startup: PANTONE(R) colorist.lnk = C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\PANTONE COLORVISION\Startup\ColorVisionStartup.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.windowsupdate.com
O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.rovion.com/controls/rovion.cab
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/assets...LStreaming.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...3/mcinsctl.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/sh...20/mcgdmgr.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/...ampx_en_dl.cab
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Tango Service (TangoService) - Unknown owner - C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe
O23 - Service: Wusnuson - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nv4_mini.sys
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Sponsored Links
Old 01-09-2006, 03:21 PM   #2 (permalink)
Analyst, Security Team
 
Vikesrock8411's Avatar
 
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP


Hello Elevado and welcome to TSF

I reccommend you Subscribe to this thread so you are notified of any replies via email. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

There isn't much showing in your log, so we'll try a general cleaning and see what turns up.

Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions.

Downloads(make sure to save these in a permanent location)
Cleanup! (Alternate Link)- Install it. You will use this later.

*NOTE* Cleanup deletes EVERYTHING out of temporary folders and does not make backups.

Tools
Open Cleanup! by double-clicking the icon on your desktop (or from Start > All Programs). Set the program up as follows:

Click Options
Move the slider button down to Custom CleanUp!

Check the following:
  • Empty Recycle Bins
  • Delete Cookies
  • Delete Prefetch files
  • Cleanup! All Users
Uncheck the following :
  • Scan local drives for temporary files

Click OK, Press the CleanUp! button to start the program. If prompted to reboot, click No/

Online Scans
Perform an online scan with Internet Explorer with Panda ActiveScan
** click on "Free use ActiveScan" located on the top right hand corner
  1. Click Scan your PC & a 'pop up' window shall appear. *ensure that your pop up blocker doesn't block it
  2. Click Scan Now
  3. Enter your e-mail address & click Scan Now ...begins downloading 8 MB Panda's ActiveX controls
Begin the scan by selecting My Computer
  • If it finds any malware, it will offer you a report.
  • Click on see report. Then click Save report
Post the contents of the report in your next reply

*You needn't remain online while it's doing the scan but you have to re-connect after it has finished to see the report.
*Turn off the real time scanner of any existing antivirus program while performing the online scan


In your next post please include:
  • Panda Activescan Log
  • A new Hijackthis! Log
Vikesrock8411 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-10-2006, 04:41 PM   #3 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


Updated Highjackthis log and Panda Activescan report

Thank you very much for you quick responce. I have subscribed to this thread so I can get notified of postings. As you recommended I ran the Cleanup software and Panda Activescan. Below are the results of Activescan and Highjackthis. Thank you very much for your help. It is very much appreciated.

Activescan report:


Incident Status Location

Adware:adware/delfinmedia Not disinfected C:\keys.ini
Adware:adware/dyfuca Not disinfected Windows Registry
Spyware:Cookie/go Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{29E0D6C0-EA79-4761-B5DF-6A1FC6235225}.txt[{29E0D6C0-EA79-4761-B5DF-6A1FC6235225}.txt]
Spyware:Cookie/Serving-sys Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt[{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt]
Spyware:Cookie/Atlas DMT Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt[{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt]
Spyware:Cookie/Com.com Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt[{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt]
Spyware:Cookie/go Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{EE5C0E80-4DC7-43B5-BD6E-C74F76B18B82}\{6ABDB987-BD7D-4069-9203-5C026E17D82F}.txt[{6ABDB987-BD7D-4069-9203-5C026E17D82F}.txt]
Virus:Trj/Zapchast.BI Disinfected C:\winupd.bat


Highjackthis log:

Logfile of HijackThis v1.99.1
Scan saved at 4:27:18 PM, on 1/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\BCMSMMSG.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\NetZero\exec.exe
C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TangoManager.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Hijackthis\HijackThis.exe
C:\WINDOWS\system32\HPZinw12.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O3 - Toolbar: ZeroBar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\NetZero\Toolbar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [TangoManager] C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [uoltray] C:\Program Files\NetZero\exec.exe regrun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - Startup: PANTONE(R) colorist.lnk = C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\PANTONE COLORVISION\Startup\ColorVisionStartup.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.windowsupdate.com
O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.rovion.com/controls/rovion.cab
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/assets...LStreaming.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...3/mcinsctl.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/sh...20/mcgdmgr.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/...ampx_en_dl.cab
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Tango Service (TangoService) - Unknown owner - C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe
O23 - Service: Wusnuson - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nv4_mini.sys
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-12-2006, 12:45 PM   #4 (permalink)
Analyst, Security Team
 
Vikesrock8411's Avatar
 
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP


Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions.

Viewing Hidden Files
Go to My Computer >Tools >Folder Options >View tab and make sure that Show hidden files and folders is enabled. Also make sure that the System Files and Folders are showing / visible. Uncheck the Hide protected operating system files option.

Downloads(make sure to save these in a permanent location)
WinPFind-Unzip it to the desktop, but do not run it yet
Ewido Security Suite
  • Install Ewido Security Suite
  • When installing, under "Additional Options" uncheck..
    • Install background guard
    • Install scan via context menu
  • Double-click the icon on Desktop to launch Ewido
You will need to update Ewido to the latest definition files.
  • On the left hand side of the main screen click update.
  • Then click on Start Update.
The update will start and a progress bar will show the updates being installed.
If you are having problems with the updater, you can use this link to manually update Ewido
When you have finished updating, EXIT Ewido.

Next, please reboot your computer in SafeMode by doing the following:
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
  • Instead of Windows loading as normal, a menu should appear
  • Select the first option, to run Windows in Safe Mode.

File and Folder Deletions
Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist.
C:\keys.ini
C:\winupd.bat

Tools
Run Ewido with it's updated definitions:(...it's important that all windows must be closed)
  • Click Scanner
  • Click Complete System Scan to begin scanning.
  • Click OK when prompted to clean files
With the first file it prompts to clean, select the option:
  • "Perform action on all infections"
  • Choose clean and click OK.
Once finished, click the Save report button & save the report to your desktop

** This scan may take over an hour, after choosing the action for the first item you do not need to stay at the PC.

Double click WinPFind.exe

* Click 'Start Scan'
* It will scan the entire system, so please be patient!
* Once the scan is complete:
1. Go to the WinPFind folder
2. Locate WinPFind.txt
3. Copy those results in the next post!

Reboot back to Normal Mode

Online Scans
Please open IE and go to
Kaspersky WebScanner

Next Click on Kaspersky Online Scanner

You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will launch and then begin downloading the latest definition files:
  • Once the files have been downloaded click on NEXT
  • Now click on Scan Settings
  • In the scan settings make that the following are selected:
    • Scan using the following Anti-Virus database:
    • Standard
    • Scan Options:
    • Scan Archives
      Scan Mail Bases
  • Click OK
  • Now under select a target to scan:
    • Select My Computer
  • This will program will start and scan your system.
  • The scan will take a while so be patient and let it run.
  • Once the scan is complete it will display if your system has been infected.
    • Now click on the Save as Text button:
  • Save the file to your desktop.
  • Copy and paste that information in your next post.

* Turn off the real time scanner of any existing antivirus program while performing the online scan

In your next post please include:
  • Ewido Log
  • WinPFind.txt
  • Kaspersky Log
  • A new Hijackthis! Log
Vikesrock8411 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-13-2006, 06:03 PM   #5 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


Ewido, WinPFind, Kaspersky, Highjackthis Logs

I went through all of the steps in your last post. Here are the reports that you asked me to make. Thank you again for your help.



---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 11:01:20 PM, 1/12/2006
+ Report-Checksum: 8339F86E

+ Scan result:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{120E090D-9136-4b78-8258-F0B44B4BD2AC} -> Spyware.Maxspeed : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{8F9FBEB8-D216-4d6c-8D21-513157E09C0D} -> Spyware.Maxspeed : Cleaned with backup
C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt/{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt/{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt/{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt -> Spyware.Cookie.Com : Cleaned with backup
C:\RECYCLER\NPROTECT\00120509.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120510.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120511.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120512.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120513.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120514.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120515.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120516.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120517.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120518.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120519.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120520.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120521.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120522.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120523.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120524.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120525.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120526.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120527.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120528.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120529.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120530.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120531.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120532.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120533.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120534.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120535.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120536.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120537.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120538.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120539.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120540.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120541.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120542.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120543.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120544.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120545.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120546.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120547.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120548.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120549.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120550.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120551.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120552.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120553.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120554.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120555.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120556.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120557.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120558.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120559.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120560.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120561.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120562.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120563.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120564.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120565.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120566.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120567.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120568.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120569.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\RECYCLER\NPROTECT\00120686.TXT -> Spyware.Cookie.Liveperson : Cleaned with backup


::Report End


WinPFind:

WARNING: not all files found by this scanner are bad. Consult with a knowledgable person before proceeding.

If you see a message in the titlebar saying "Not responding..." you can ignore it. Windows somethimes displays this message due to the high volume of disk I/O. As long as the hard disk light is flashing, the program is still working properly.

»»»»»»»»»»»»»»»»» Windows OS and Versions »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Product Name: Microsoft Windows XP Current Build: Service Pack 2 Current Build Number: 2600
Internet Explorer Version: 6.0.2900.2180

»»»»»»»»»»»»»»»»» Checking Selected Standard Folders »»»»»»»»»»»»»»»»»»»»

Checking %SystemDrive% folder...
qoologic 1/12/2006 6:31:12 PM 204131 C:\WinPFind.zip

Checking %ProgramFilesDir% folder...

Checking %WinDir% folder...
UPX! 2/5/2004 68608 C:\WINDOWS\daemon.dll
PECompact2 8/23/2004 10:41:58 PM 9624554 C:\WINDOWS\LPT$VPN.162
PECompact2 8/23/2004 10:41:58 PM 9624554 C:\WINDOWS\VPTNFILE.162
UPX! 8/23/2004 10:41:58 PM 1036800 C:\WINDOWS\vsapi32.dll
aspack 8/23/2004 10:41:58 PM 1036800 C:\WINDOWS\vsapi32.dll

Checking %System% folder...
UPX! 9/1/2004 6:49:56 AM 284672 C:\WINDOWS\SYSTEM32\avisynth.dll
PEC2 8/29/2002 3:00:00 AM 41397 C:\WINDOWS\SYSTEM32\DFRG.MSC
PEC2 2/14/1997 10:24:14 PM 197171 C:\WINDOWS\SYSTEM32\Dwapilib.tlb
PTech 7/12/2005 5:04:22 PM 520456 C:\WINDOWS\SYSTEM32\LegitCheckControl.dll
PECompact2 1/4/2006 7:41:02 PM 2827616 C:\WINDOWS\SYSTEM32\MRT.exe
aspack 1/4/2006 7:41:02 PM 2827616 C:\WINDOWS\SYSTEM32\MRT.exe
aspack 8/3/2004 11:56:36 PM 708096 C:\WINDOWS\SYSTEM32\ntdll.dll
Umonitor 8/3/2004 11:56:44 PM 657920 C:\WINDOWS\SYSTEM32\rasdlg.dll
winsync 8/29/2002 3:00:00 AM 1309184 C:\WINDOWS\SYSTEM32\WBDBASE.DEU

Checking %System%\Drivers folder and sub-folders...
PTech 8/3/2004 9:41:38 PM 1309184 C:\WINDOWS\SYSTEM32\drivers\mtlstrm.sys

Items found in C:\WINDOWS\SYSTEM32\drivers\ETC\hosts


Checking the Windows folder and sub-folders for system and hidden files within the last 60 days...
1/12/2006 6:56:40 PM S 2048 C:\WINDOWS\BOOTSTAT.DAT
1/7/2006 12:02:28 PM S 64 C:\WINDOWS\CSC\00000001
1/9/2006 9:23:10 PM H 0 C:\WINDOWS\LastGood\INF\oem42.inf
1/9/2006 9:23:10 PM H 0 C:\WINDOWS\LastGood\INF\oem42.PNF
12/15/2005 9:47:44 PM HS 10022 C:\WINDOWS\SYSTEM32\KGyGaAvL.sys
1/2/2006 3:29:44 PM H 4212 C:\WINDOWS\SYSTEM32\zllictbl.dat
11/30/2005 8:17:10 PM S 21633 C:\WINDOWS\SYSTEM32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB905915.cat
12/1/2005 4:12:48 PM S 10925 C:\WINDOWS\SYSTEM32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB910437.cat
1/2/2006 3:09:36 PM S 11223 C:\WINDOWS\SYSTEM32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB912919.cat
1/12/2006 6:56:56 PM H 12288 C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG
1/12/2006 6:58:08 PM H 1024 C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG
1/12/2006 6:56:42 PM H 8192 C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG
1/12/2006 11:01:22 PM H 122880 C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG
1/12/2006 6:54:48 PM H 1024 C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG
1/11/2006 6:02:00 AM H 1024 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\NTUSER.DAT.LOG
12/10/2005 9:21:18 PM S 1047 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\7C8A03C4580C6B04FDF34357F3474EDC
12/10/2005 9:21:18 PM S 1370 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\B82262A5D5DA4DDACE9EDA7F787D0DEB
12/10/2005 9:21:18 PM S 126 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\MetaData\7C8A03C4580C6B04FDF34357F3474EDC
12/10/2005 9:21:18 PM S 194 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\MetaData\B82262A5D5DA4DDACE9EDA7F787D0DEB
12/15/2005 7:26:02 PM HS 388 C:\WINDOWS\SYSTEM32\Microsoft\Protect\S-1-5-18\User\22d8c794-36e8-4a1c-a392-e1e431975bb5
12/15/2005 7:26:02 PM HS 24 C:\WINDOWS\SYSTEM32\Microsoft\Protect\S-1-5-18\User\Preferred
1/12/2006 6:54:42 PM H 6 C:\WINDOWS\Tasks\SA.DAT

Checking for CPL files...
Microsoft Corporation 8/3/2004 11:56:58 PM 68608 C:\WINDOWS\SYSTEM32\access.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 549888 C:\WINDOWS\SYSTEM32\appwiz.cpl
Creative Technology Ltd. 5/28/2001 11:47:00 AM 32768 C:\WINDOWS\SYSTEM32\AudioHQU.cpl
Broadcom Corporation 6/3/2003 8:38:44 AM 94208 C:\WINDOWS\SYSTEM32\BCMSM.CPL
Microsoft Corporation 8/3/2004 11:56:58 PM 110592 C:\WINDOWS\SYSTEM32\bthprops.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 135168 C:\WINDOWS\SYSTEM32\desk.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 80384 C:\WINDOWS\SYSTEM32\firewall.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 155136 C:\WINDOWS\SYSTEM32\hdwwiz.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 358400 C:\WINDOWS\SYSTEM32\inetcpl.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 129536 C:\WINDOWS\SYSTEM32\intl.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 380416 C:\WINDOWS\SYSTEM32\irprops.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 68608 C:\WINDOWS\SYSTEM32\joy.cpl
Sun Microsystems 3/2/2004 4:52:40 PM 53352 C:\WINDOWS\SYSTEM32\jpicpl32.cpl
Microsoft Corporation 8/29/2002 3:00:00 AM 187904 C:\WINDOWS\SYSTEM32\MAIN.CPL
Microsoft Corporation 8/3/2004 11:56:58 PM 618496 C:\WINDOWS\SYSTEM32\mmsys.cpl
Microsoft Corporation 8/29/2002 3:00:00 AM 35840 C:\WINDOWS\SYSTEM32\NCPA.CPL
Microsoft Corporation 8/3/2004 11:56:58 PM 25600 C:\WINDOWS\SYSTEM32\netsetup.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 257024 C:\WINDOWS\SYSTEM32\nusrmgr.cpl
Microsoft Corporation 8/29/2002 3:00:00 AM 36864 C:\WINDOWS\SYSTEM32\NWC.CPL
Microsoft Corporation 8/3/2004 11:56:58 PM 32768 C:\WINDOWS\SYSTEM32\odbccp32.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 114688 C:\WINDOWS\SYSTEM32\powercfg.cpl
Intel(R) Corporation 3/11/2003 2:15:56 PM 77824 C:\WINDOWS\SYSTEM32\PRApplet.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 298496 C:\WINDOWS\SYSTEM32\sysdm.cpl
Microsoft Corporation 8/29/2002 3:00:00 AM 28160 C:\WINDOWS\SYSTEM32\TELEPHON.CPL
Microsoft Corporation 8/3/2004 11:56:58 PM 94208 C:\WINDOWS\SYSTEM32\timedate.cpl
Microsoft Corporation 8/3/2004 11:56:58 PM 148480 C:\WINDOWS\SYSTEM32\wscui.cpl
Microsoft Corporation 5/26/2005 3:16:30 AM 174360 C:\WINDOWS\SYSTEM32\wuaucpl.cpl
Microsoft Corporation 5/26/2005 3:16:30 AM 174360 C:\WINDOWS\SYSTEM32\DLLCACHE\wuaucpl.cpl

»»»»»»»»»»»»»»»»» Checking Selected Startup Folders »»»»»»»»»»»»»»»»»»»»»

Checking files in %ALLUSERSPROFILE%\Startup folder...
1/8/2006 2:12:38 PM 2359 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk
9/29/2005 1:35:26 PM 988 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma.lnk
11/11/2005 5:35:06 PM 921 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ColorVisionStartup.lnk
9/3/2002 11:36:04 AM HS 84 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\DESKTOP.INI
3/22/2005 2:52:24 PM 1808 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
3/22/2005 2:53:58 PM 798 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Image Zone Fast Start.lnk

Checking files in %ALLUSERSPROFILE%\Application Data folder...
9/3/2002 11:26:20 AM HS 62 C:\Documents and Settings\All Users\Application Data\DESKTOP.INI
7/28/2005 4:41:26 PM 15857 C:\Documents and Settings\All Users\Application Data\hpzinstall.log
11/27/2005 10:18:34 PM 4108 C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache

Checking files in %USERPROFILE%\Startup folder...
9/3/2002 11:36:04 AM HS 84 C:\Documents and Settings\Angel\Start Menu\Programs\Startup\DESKTOP.INI
12/8/2005 10:22:58 PM 963 C:\Documents and Settings\Angel\Start Menu\Programs\Startup\PANTONE(R) colorist.lnk
8/28/2004 10:33:48 AM 650 C:\Documents and Settings\Angel\Start Menu\Programs\Startup\SpywareGuard.lnk

Checking files in %USERPROFILE%\Application Data folder...
9/3/2002 11:26:20 AM HS 62 C:\Documents and Settings\Angel\Application Data\DESKTOP.INI

»»»»»»»»»»»»»»»»» Checking Selected Registry Keys »»»»»»»»»»»»»»»»»»»»»»»

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
SV1 =

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
{81559C35-8464-49F7-BB0E-07A383BEF910} = C:\Program Files\SpywareGuard\spywareguard.dll

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]

[HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers]
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Adobe.Acrobat.ContextMenu
{D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} = C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat Elements\ContextMenu.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Macromedia.FlashPaper.ContextMenu
{9DED7A30-D572-4D21-8D82-6945EA697400} = C:\Program Files\Macromedia\FlashPaper 2\FlashPaperContextMenu.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Offline Files
{750fdf0e-2a26-11d1-a3ea-080036587f03} = %SystemRoot%\System32\cscui.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With
{09799AFB-AD67-11d1-ABCD-00C04FC30936} = %SystemRoot%\system32\SHELL32.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With EncryptionMenu
{A470F8CF-A1E8-4f65-8335-227475AA5C46} = %SystemRoot%\system32\SHELL32.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Symantec.Norton.Antivirus.IEContextMenu
{FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} = C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\WinRAR
{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Yahoo! Mail
{5464D816-CF16-4784-B9F3-75C0DB52B499} = C:\PROGRA~1\Yahoo!\Common\ymmapi.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8}
Start Menu Pin = %SystemRoot%\system32\SHELL32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\SpySweeper
{7C9D5882-CB4A-4090-96C8-430BFE8B795B} = C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\Symantec.Norton.Antivirus.IEContextMenu
{FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} = C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinRAR
{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\EncryptionMenu
{A470F8CF-A1E8-4f65-8335-227475AA5C46} = %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Offline Files
{750fdf0e-2a26-11d1-a3ea-080036587f03} = %SystemRoot%\System32\cscui.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Sharing
{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = ntshrui.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinRAR
{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{0D2E74C4-3C34-11d2-A27E-00C04FC30871}
= %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{24F14F01-7B1C-11d1-838f-0000F80461CF}
= %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{24F14F02-7B1C-11d1-838f-0000F80461CF}
= %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{66742402-F9B9-11D1-A202-0000F81FEDEE}
= %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{A9AACA72-1C51-4F84-804D-90EDBA0D58F4}
= C:\Program Files\Common Files\Zinio\ZSHExt.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{F9DB5320-233E-11D1-9F84-707F02C10627}
= C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\PDFShell.dll

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
AcroIEHlprObj Class = C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4A368E80-174F-4872-96B5-0B27DDD11DB2}
SpywareGuardDLBLOCK.CBrowserHelper = C:\Program Files\SpywareGuard\dlprotect.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}
= C:\PROGRA~1\SPYBOT~1\SDHelper.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}
DriveLetterAccess = C:\WINDOWS\system32\dla\tfswshx.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8F38D8D-E480-4D52-B7A2-731BB6995FDD}
CNavExtBho Class = C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}
AcroIEToolbarHelper Class = C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E5A1691B-D188-4419-AD02-90002030B8EE}
FlashFXP Helper for Internet Explorer = C:\PROGRA~1\FlashFXP\IEFlash.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{182EC0BE-5110-49C8-A062-BEB1D02A220B}
Adobe PDF = C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4528BBE0-4E08-11D5-AD55-00010333D0AD}
&Yahoo! Messenger = C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4D5C8C25-D075-11d0-B416-00C04FB90376}
&Tip of the Day = %SystemRoot%\System32\shdocvw.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{FE54FA40-D68C-11d2-98FA-00C0F0318AFE}
Real.com = C:\WINDOWS\System32\Shdocvw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
{F5735C15-1FB2-41FE-BA12-242757E69DDE} = ZeroBar : C:\Program Files\NetZero\Toolbar.dll
{47833539-D0C5-4125-9FA8-0819E2EAAC93} = Adobe PDF : C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
{C4069E3A-68F1-403E-B40E-20066696354B} = Norton AntiVirus : C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}
MenuText = Sun Java Console : C:\WINDOWS\System32\msjava.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{4528BBE0-4E08-11D5-AD55-00010333D0AD}
ButtonText = Messenger :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5E638779-1818-4754-A595-EF1C63B87A56}
ButtonText = Express Cleanup : C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}
ButtonText = Research :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
ButtonText = Real.com :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}
ButtonText = Messenger : C:\Program Files\Messenger\msmsgs.exe

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars]
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{30D02401-6A81-11D0-8274-00C04FD5AE38}
Search Band = %SystemRoot%\System32\browseui.dll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478}
=
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{4528BBE0-4E08-11D5-AD55-00010333D0AD}
&Yahoo! Messenger = C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{EFA24E61-B078-11D0-89E4-00C04FC9E26E}
Favorites Band = %SystemRoot%\System32\shdocvw.dll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{EFA24E62-B078-11D0-89E4-00C04FC9E26E}
History Band = %SystemRoot%\System32\shdocvw.dll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{EFA24E64-B078-11D0-89E4-00C04FC9E26E}
Explorer Band = %SystemRoot%\System32\shdocvw.dll

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser
{01E04581-4EEE-11D0-BFE9-00AA005B4383} = &Address : %SystemRoot%\System32\browseui.dll
{47833539-D0C5-4125-9FA8-0819E2EAAC93} = Adobe PDF : C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
{01E04581-4EEE-11D0-BFE9-00AA005B4383} = &Address : %SystemRoot%\System32\browseui.dll
{0E5CBF21-D15F-11D0-8301-00AA005B4383} = &Links : %SystemRoot%\system32\SHELL32.dll
{F5735C15-1FB2-41FE-BA12-242757E69DDE} = ZeroBar : C:\Program Files\NetZero\Toolbar.dll
{EF99BD32-C1FB-11D2-892F-0090271D4F88} = :
{47833539-D0C5-4125-9FA8-0819E2EAAC93} = Adobe PDF : C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
{C4069E3A-68F1-403E-B40E-20066696354B} = Norton AntiVirus : C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
BCMSMMSG BCMSMMSG.exe
IAAnotif C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
ATIPTA C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
dla C:\WINDOWS\system32\dla\tfswctrl.exe
CTSysVol C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
CTHelper CTHELPER.EXE
AsioReg REGSVR32.EXE /S CTASIO.DLL
PCMService "C:\Program Files\Dell\Media Experience\PCMService.exe"
TangoManager C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE
TkBellExe "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
HP Component Manager "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
NeroFilterCheck C:\WINDOWS\system32\NeroCheck.exe
UpdateManager "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
Adobe Version Cue CS2 "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
Acrobat Assistant 7.0 "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
iTunesHelper "C:\Program Files\iTunes\iTunesHelper.exe"
SpySweeper "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
ccApp "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
IMAIL Installed = 1
MAPI Installed = 1
MSFS Installed = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
uoltray C:\Program Files\NetZero\exec.exe regrun
MSMSGS "C:\Program Files\Messenger\msmsgs.exe" /background
MoneyAgent "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
NBJ "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\load]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SB Audigy 2 Startup Menu
key SOFTWARE\Microsoft\Windows\CurrentVersion\Run
item /L:ENG
hkey HKCU
command /L:ENG
inimapping 0

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state
system.ini 0
win.ini 0
bootini 0
services 0
startup 2


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
NoCDBurning 0


HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} = C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} =
{0DF44EAA-FF21-4412-828E-260A8728E7F1} =


HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Ratings

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system
dontdisplaylastusername 0
legalnoticecaption
legalnoticetext
shutdownwithoutlogon 1
undockwithoutlogon 1


[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies]

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
NoDriveTypeAutoRun 145
NoDrives 0
NoViewOnDrive 0

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Uninstall


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
PostBootReminder {7849596a-48ea-486e-8937-a2a3009f31a9} = %SystemRoot%\system32\SHELL32.dll
CDBurn {fbeb8a05-beee-4442-804e-409d6c4515e9} = %SystemRoot%\system32\SHELL32.dll
WebCheck {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = %SystemRoot%\System32\webcheck.dll
SysTray {35CEC8A3-2BE6-11D2-8773-92E220524153} = C:\WINDOWS\System32\stobject.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\WINDOWS\system32\userinit.exe,
Shell = Explorer.exe
System =

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain
= crypt32.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet
= cryptnet.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll
= cscdll.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp
= wlnotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule
= wlnotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy
= sclgntfy.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn
= WlNotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv
= wlnotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon
= wlnotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WRNotifier
= WRLogonNTF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Your Image File Name Here without a path
Debugger = ntsd -d

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLs


»»»»»»»»»»»»»»»»»»»»»»»» Scan Complete »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
WinPFind v1.4.1 - Log file written to "WinPFind.Txt" in the WinPFind folder.
Scan completed on 1/12/2006 11:17:40 PM




-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Friday, January 13, 2006 07:20:16
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 13/01/2006
Kaspersky Anti-Virus database records: 160466
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\

Scan Statistics:
Total number of scanned objects: 179630
Number of viruses found: 0
Number of infected objects: 0
Number of suspicious objects: 0
Duration of the scan process: 13556 sec
No malware has been detected. The sections that have been scanned are CLEAN.

Scan process completed.





Logfile of HijackThis v1.99.1
Scan saved at 5:47:01 PM, on 1/13/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\BCMSMMSG.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TangoManager.exe
C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\NetZero\exec.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\WINDOWS\system32\HPZinw12.exe
C:\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O3 - Toolbar: ZeroBar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\NetZero\Toolbar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [TangoManager] C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [uoltray] C:\Program Files\NetZero\exec.exe regrun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - Startup: PANTONE(R) colorist.lnk = C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\PANTONE COLORVISION\Startup\ColorVisionStartup.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.windowsupdate.com
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/downloads/kws/kavwebscan_unicode.cab
O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.rovion.com/controls/rovion.cab
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/assets/activexplayer/SMALStreaming.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,83/mcinsctl.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Tango Service (TangoService) - Unknown owner - C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe
O23 - Service: Wusnuson - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nv4_mini.sys
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-14-2006, 01:31 PM   #6 (permalink)
Analyst, Security Team
 
Vikesrock8411's Avatar
 
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP


Hmm, all those logs are clean.

Let's take a look in the event viewer and see if there are any problems behiond the scenes.

Click Start>Run and type in eventvwr.msc

What we're looking for are the Errors from the System and Application viewers. You'll see something like this: Application Error...

Locate the ones with a big red X that say error. Double click to open it. Hit the Tablet (Says Copy to Clipboard if you hover mouse over it) and then CTRL+V to paste the info into the post.
Vikesrock8411 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-14-2006, 09:17 PM   #7 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


Application and System Errors

I got all of the Application Errors. Under Application do you need the other errors that come up as well such as: Applicaton Hang, ccSetMgr, MsiInstaller, SNDSrvc, ESENT, TrueVector Service, Microsoft Office 11 or Norton Disk Doctor? I assumed you only wanted the Application Error results. There are alot of System Hang errors...Thank you for your time and efforts. The results are below. I got an error that the post was too long so I split it to 2 posts.


Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 5/20/2005
Time: 2:55:38 PM
User: N/A
Computer: XPS
Description:
Faulting application iexplore.exe, version 6.0.2900.2180, faulting module urlmon.dll, version 6.0.2900.2627, fault address 0x00039086.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 65 78 ure iex
0018: 70 6c 6f 72 65 2e 65 78 plore.ex
0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
0028: 30 30 2e 32 31 38 30 20 00.2180
0030: 69 6e 20 75 72 6c 6d 6f in urlmo
0038: 6e 2e 64 6c 6c 20 36 2e n.dll 6.
0040: 30 2e 32 39 30 30 2e 32 0.2900.2
0048: 36 32 37 20 61 74 20 6f 627 at o
0050: 66 66 73 65 74 20 30 30 ffset 00
0058: 30 33 39 30 38 36 0d 0a 039086..

Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 5/29/2005
Time: 4:33:36 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..

Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 12:51:47 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 33 34 32 t 000342
0058: 36 64 0d 0a 6d..

Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 1:09:06 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 30 66 t 00010f
0058: 32 39 0d 0a 29..

Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 1:11:22 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e5a.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 65 t 00011e
0058: 35 61 0d 0a 5a..

Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 1:19:39 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 1:21:08 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 30 66 t 00010f
0058: 32 39 0d 0a 29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 1:21:37 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 30 66 t 00010f
0058: 32 39 0d 0a 29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 1:35:12 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000111de.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 31 t 000111
0058: 64 65 0d 0a de..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 1:35:23 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 65 t 00011e
0058: 35 38 0d 0a 58..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 2:30:53 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/22/2005
Time: 2:34:29 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/25/2005
Time: 1:54:41 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000111de.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 31 t 000111
0058: 64 65 0d 0a de..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 5:00:21 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 33 34 32 t 000342
0058: 36 64 0d 0a 6d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 557 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 5:12:09 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module mcspmpeg.ax, version 1.0.0.39, fault address 0x0000e532.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6d 63 73 70 6d 70 65 67 mcspmpeg
0038: 2e 61 78 20 31 2e 30 2e .ax 1.0.
0040: 30 2e 33 39 20 61 74 20 0.39 at
0048: 6f 66 66 73 65 74 20 30 offset 0
0050: 30 30 30 65 35 33 32 0d 000e532.
0058: 0a .



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 5:12:30 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6e.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 65 0d 0a 6e..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 5:27:17 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 33 34 32 t 000342
0058: 36 64 0d 0a 6d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 6:08:47 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module unknown, version 0.0.0.0, fault address 0x01977fc3.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 75 6e 6b 6e 6f 77 6e 20 unknown
0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0
0040: 61 74 20 6f 66 66 73 65 at offse
0048: 74 20 30 31 39 37 37 66 t 01977f
0050: 63 33 0d 0a c3..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 6:16:56 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000184ad.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 38 34 t 000184
0058: 61 64 0d 0a ad..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 6:17:10 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module unknown, version 0.0.0.0, fault address 0x017b3a70.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 75 6e 6b 6e 6f 77 6e 20 unknown
0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0
0040: 61 74 20 6f 66 66 73 65 at offse
0048: 74 20 30 31 37 62 33 61 t 017b3a
0050: 37 30 0d 0a 70..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 6/27/2005
Time: 6:17:28 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module mcspmpeg.ax, version 1.0.0.39, fault address 0x0000e532.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6d 63 73 70 6d 70 65 67 mcspmpeg
0038: 2e 61 78 20 31 2e 30 2e .ax 1.0.
0040: 30 2e 33 39 20 61 74 20 0.39 at
0048: 6f 66 66 73 65 74 20 30 offset 0
0050: 30 30 30 65 35 33 32 0d 000e532.
0058: 0a .



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:40:12 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011404.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 34 t 000114
0058: 30 34 0d 0a 04..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:40:19 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 33 34 32 t 000342
0058: 36 64 0d 0a 6d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:50:04 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module unknown, version 0.0.0.0, fault address 0x01a301d2.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 75 6e 6b 6e 6f 77 6e 20 unknown
0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0
0040: 61 74 20 6f 66 66 73 65 at offse
0048: 74 20 30 31 61 33 30 31 t 01a301
0050: 64 32 0d 0a d2..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:58:26 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 4:05:34 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 4:12:03 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 30 66 t 00010f
0058: 32 39 0d 0a 29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 4:13:08 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 30 66 t 00010f
0058: 32 39 0d 0a 29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 4:32:39 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 4:34:52 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 4:36:39 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 5:37:02 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 33 34 32 t 000342
0058: 36 64 0d 0a 6d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:37:34 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000114b6.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 34 t 000114
0058: 62 36 0d 0a b6..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:39:37 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0001103c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 30 t 000110
0058: 33 63 0d 0a 3c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:39:43 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000111de.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 31 t 000111
0058: 64 65 0d 0a de..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/2/2005
Time: 3:51:54 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 39 2e 30 2e 30 2e e 9.0.0.
0028: 33 32 35 30 20 69 6e 20 3250 in
0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl
0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26
0040: 30 30 2e 32 31 38 30 20 00.2180
0048: 61 74 20 6f 66 66 73 65 at offse
0050: 74 20 30 30 30 31 31 66 t 00011f
0058: 36 63 0d 0a 6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/5/2005
Time: 9:59:38 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/6/2005
Time: 7:33:50 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/8/2005
Time: 3:15:42 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 66 36 63 0d 0a f6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/9/2005
Time: 7:48:56 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/11/2005
Time: 8:44:29 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/11/2005
Time: 11:57:43 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/11/2005
Time: 11:52:12 PM
User: N/A
Computer: XPS
Description:
Faulting application explorer.exe, version 6.0.2900.2180, faulting module wininet.dll, version 6.0.2900.2668, fault address 0x00003670.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 65 78 70 ure exp
0018: 6c 6f 72 65 72 2e 65 78 lorer.ex
0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
0028: 30 30 2e 32 31 38 30 20 00.2180
0030: 69 6e 20 77 69 6e 69 6e in winin
0038: 65 74 2e 64 6c 6c 20 36 et.dll 6
0040: 2e 30 2e 32 39 30 30 2e .0.2900.
0048: 32 36 36 38 20 61 74 20 2668 at
0050: 6f 66 66 73 65 74 20 30 offset 0
0058: 30 30 30 33 36 37 30 0d 0003670.
0060: 0a .



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/14/2005
Time: 11:23:19 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/20/2005
Time: 1:24:54 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 66 36 63 0d 0a f6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/24/2005
Time: 7:36:54 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/27/2005
Time: 12:34:22 PM
User: N/A
Computer: XPS
Description:
Faulting application afterfx.exe, version 6.0.128.172, faulting module unknown, version 0.0.0.0, fault address 0x00000000.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 61 66 74 ure aft
0018: 65 72 66 78 2e 65 78 65 erfx.exe
0020: 20 36 2e 30 2e 31 32 38 6.0.128
0028: 2e 31 37 32 20 69 6e 20 .172 in
0030: 75 6e 6b 6e 6f 77 6e 20 unknown
0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0
0040: 61 74 20 6f 66 66 73 65 at offse
0048: 74 20 30 30 30 30 30 30 t 000000
0050: 30 30 0d 0a 00..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/28/2005
Time: 1:09:43 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e5a.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 65 35 61 0d 0a e5a..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/28/2005
Time: 1:10:03 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module unknown, version 0.0.0.0, fault address 0x00000000.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 75 6e 6b 6e 6f 77 6e unknown
0038: 20 30 2e 30 2e 30 2e 30 0.0.0.0
0040: 20 61 74 20 6f 66 66 73 at offs
0048: 65 74 20 30 30 30 30 30 et 00000
0050: 30 30 30 0d 0a 000..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/28/2005
Time: 1:30:57 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0001103c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 30 33 63 0d 0a 03c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/28/2005
Time: 1:33:08 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 39 0d 0a f29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 7/28/2005
Time: 1:35:47 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 66 36 63 0d 0a f6c..




Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/1/2005
Time: 8:27:31 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/1/2005
Time: 10:01:04 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/1/2005
Time: 10:33:17 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/2/2005
Time: 4:14:38 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/2/2005
Time: 5:02:16 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 33 34 et 00034
0058: 32 36 64 0d 0a 26d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/2/2005
Time: 5:10:34 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010de3.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 64 65 33 0d 0a de3..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/2/2005
Time: 5:10:41 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 33 34 et 00034
0058: 32 36 64 0d 0a 26d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/3/2005
Time: 10:53:10 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/3/2005
Time: 8:50:35 PM
User: N/A
Computer: XPS
Description:
Faulting application iexplore.exe, version 6.0.2900.2180, faulting module urlmon.dll, version 6.0.2900.2668, fault address 0x00039146.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 65 78 ure iex
0018: 70 6c 6f 72 65 2e 65 78 plore.ex
0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
0028: 30 30 2e 32 31 38 30 20 00.2180
0030: 69 6e 20 75 72 6c 6d 6f in urlmo
0038: 6e 2e 64 6c 6c 20 36 2e n.dll 6.
0040: 30 2e 32 39 30 30 2e 32 0.2900.2
0048: 36 36 38 20 61 74 20 6f 668 at o
0050: 66 66 73 65 74 20 30 30 ffset 00
0058: 30 33 39 31 34 36 0d 0a 039146..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/4/2005
Time: 5:59:42 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/5/2005
Time: 3:51:17 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011b9f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 62 39 66 0d 0a b9f..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/6/2005
Time: 2:09:18 AM
User: N/A
Computer: XPS
Description:
Faulting application hpcmpmgr.exe, version 2.1.1.0, faulting module hpcmpmgr.exe, version 2.1.1.0, fault address 0x000119d9.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 63 ure hpc
0018: 6d 70 6d 67 72 2e 65 78 mpmgr.ex
0020: 65 20 32 2e 31 2e 31 2e e 2.1.1.
0028: 30 20 69 6e 20 68 70 63 0 in hpc
0030: 6d 70 6d 67 72 2e 65 78 mpmgr.ex
0038: 65 20 32 2e 31 2e 31 2e e 2.1.1.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 31 set 0001
0050: 31 39 64 39 0d 0a 19d9..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/12/2005
Time: 7:31:15 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 33 34 et 00034
0058: 32 36 64 0d 0a 26d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/12/2005
Time: 7:42:02 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 33 34 et 00034
0058: 32 36 64 0d 0a 26d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/12/2005
Time: 7:52:50 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f2b.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 62 0d 0a f2b..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/15/2005
Time: 10:32:13 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/16/2005
Time: 7:23:44 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/16/2005
Time: 7:37:28 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/16/2005
Time: 5:29:35 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/19/2005
Time: 6:29:16 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f2b.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 62 0d 0a f2b..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/20/2005
Time: 6:17:52 AM
User: N/A
Computer: XPS
Description:
Faulting application hpcmpmgr.exe, version 2.1.1.0, faulting module ole32.dll, version 5.1.2600.2665, fault address 0x000480d1.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 63 ure hpc
0018: 6d 70 6d 67 72 2e 65 78 mpmgr.ex
0020: 65 20 32 2e 31 2e 31 2e e 2.1.1.
0028: 30 20 69 6e 20 6f 6c 65 0 in ole
0030: 33 32 2e 64 6c 6c 20 35 32.dll 5
0038: 2e 31 2e 32 36 30 30 2e .1.2600.
0040: 32 36 36 35 20 61 74 20 2665 at
0048: 6f 66 66 73 65 74 20 30 offset 0
0050: 30 30 34 38 30 64 31 0d 00480d1.
0058: 0a .



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/22/2005
Time: 5:58:41 PM
User: N/A
Computer: XPS
Description:
Faulting application acrobat.exe, version 6.0.0.878, faulting module unknown, version 0.0.0.0, fault address 0x040f8b00.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 61 63 72 ure acr
0018: 6f 62 61 74 2e 65 78 65 obat.exe
0020: 20 36 2e 30 2e 30 2e 38 6.0.0.8
0028: 37 38 20 69 6e 20 75 6e 78 in un
0030: 6b 6e 6f 77 6e 20 30 2e known 0.
0038: 30 2e 30 2e 30 20 61 74 0.0.0 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 34 30 66 38 62 30 30 040f8b00
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 8/29/2005
Time: 5:35:25 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/5/2005
Time: 3:45:27 PM
User: N/A
Computer: XPS
Description:
Faulting application illustrator.exe, version 10.0.96.0, faulting module illustrator.exe, version 10.0.96.0, fault address 0x0028382c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 6c 6c ure ill
0018: 75 73 74 72 61 74 6f 72 ustrator
0020: 2e 65 78 65 20 31 30 2e .exe 10.
0028: 30 2e 39 36 2e 30 20 69 0.96.0 i
0030: 6e 20 69 6c 6c 75 73 74 n illust
0038: 72 61 74 6f 72 2e 65 78 rator.ex
0040: 65 20 31 30 2e 30 2e 39 e 10.0.9
0048: 36 2e 30 20 61 74 20 6f 6.0 at o
0050: 66 66 73 65 74 20 30 30 ffset 00
0058: 32 38 33 38 32 63 0d 0a 28382c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/5/2005
Time: 5:08:51 PM
User: N/A
Computer: XPS
Description:
Faulting application illustrator.exe, version 10.0.96.0, faulting module illustrator.exe, version 10.0.96.0, fault address 0x004b31fe.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 6c 6c ure ill
0018: 75 73 74 72 61 74 6f 72 ustrator
0020: 2e 65 78 65 20 31 30 2e .exe 10.
0028: 30 2e 39 36 2e 30 20 69 0.96.0 i
0030: 6e 20 69 6c 6c 75 73 74 n illust
0038: 72 61 74 6f 72 2e 65 78 rator.ex
0040: 65 20 31 30 2e 30 2e 39 e 10.0.9
0048: 36 2e 30 20 61 74 20 6f 6.0 at o
0050: 66 66 73 65 74 20 30 30 ffset 00
0058: 34 62 33 31 66 65 0d 0a 4b31fe..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/5/2005
Time: 10:51:32 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/6/2005
Time: 11:01:58 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/7/2005
Time: 5:45:31 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/7/2005
Time: 9:42:32 PM
User: N/A
Computer: XPS
Description:
Faulting application quicktimeplayer.exe, version 7.0.2.120, faulting module quicktime.qts, version 7.0.2.120, fault address 0x0010daa3.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 71 75 69 ure qui
0018: 63 6b 74 69 6d 65 70 6c cktimepl
0020: 61 79 65 72 2e 65 78 65 ayer.exe
0028: 20 37 2e 30 2e 32 2e 31 7.0.2.1
0030: 32 30 20 69 6e 20 71 75 20 in qu
0038: 69 63 6b 74 69 6d 65 2e icktime.
0040: 71 74 73 20 37 2e 30 2e qts 7.0.
0048: 32 2e 31 32 30 20 61 74 2.120 at
0050: 20 6f 66 66 73 65 74 20 offset
0058: 30 30 31 30 64 61 61 33 0010daa3
0060: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/25/2005
Time: 11:13:05 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/30/2005
Time: 12:36:26 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 39 0d 0a f29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/30/2005
Time: 12:38:31 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 65 35 38 0d 0a e58..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/30/2005
Time: 12:39:05 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 39 0d 0a f29..



Event Type: Error
Event Source: Application Error
Event Category: (100)
Event ID: 1000
Date: 9/30/2005
Time: 12:39:10 PM
User: N/A
Computer: XPS
Description:
Faulting application DRWTSN32.EXE, version 5.1.2600.0, faulting module dbghelp.dll, version 5.1.2600.2180, fault address 0x0001295d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 44 52 57 ure DRW
0018: 54 53 4e 33 32 2e 45 58 TSN32.EX
0020: 45 20 35 2e 31 2e 32 36 E 5.1.26
0028: 30 30 2e 30 20 69 6e 20 00.0 in
0030: 64 62 67 68 65 6c 70 2e dbghelp.
0038: 64 6c 6c 20 35 2e 31 2e dll 5.1.
0040: 32 36 30 30 2e 32 31 38 2600.218
0048: 30 20 61 74 20 6f 66 66 0 at off
0050: 73 65 74 20 30 30 30 31 set 0001
0058: 32 39 35 64 295d



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 9/30/2005
Time: 12:39:54 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 33 34 et 00034
0058: 32 36 64 0d 0a 26d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/2/2005
Time: 1:05:43 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 65 35 38 0d 0a e58..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/7/2005
Time: 5:11:30 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 66 36 63 0d 0a f6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/7/2005
Time: 5:25:56 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module unknown, version 0.0.0.0, fault address 0xe97777ee.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 75 6e 6b 6e 6f 77 6e unknown
0038: 20 30 2e 30 2e 30 2e 30 0.0.0.0
0040: 20 61 74 20 6f 66 66 73 at offs
0048: 65 74 20 65 39 37 37 37 et e9777
0050: 37 65 65 0d 0a 7ee..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/7/2005
Time: 5:41:29 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 66 36 63 0d 0a f6c..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/7/2005
Time: 5:50:32 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 33 34 et 00034
0058: 32 36 64 0d 0a 26d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/7/2005
Time: 5:53:32 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 33 34 et 00034
0058: 32 36 64 0d 0a 26d..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/13/2005
Time: 1:54:12 AM
User: N/A
Computer: XPS
Description:
Faulting application iexplore.exe, version 6.0.2900.2180, faulting module comctl32.dll, version 6.0.2900.2180, fault address 0x0007d4e3.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 65 78 ure iex
0018: 70 6c 6f 72 65 2e 65 78 plore.ex
0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
0028: 30 30 2e 32 31 38 30 20 00.2180
0030: 69 6e 20 63 6f 6d 63 74 in comct
0038: 6c 33 32 2e 64 6c 6c 20 l32.dll
0040: 36 2e 30 2e 32 39 30 30 6.0.2900
0048: 2e 32 31 38 30 20 61 74 .2180 at
0050: 20 6f 66 66 73 65 74 20 offset
0058: 30 30 30 37 64 34 65 33 0007d4e3
0060: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: (100)
Event ID: 1000
Date: 10/13/2005
Time: 1:54:19 AM
User: N/A
Computer: XPS
Description:
Faulting application DRWTSN32.EXE, version 5.1.2600.0, faulting module dbghelp.dll, version 5.1.2600.2180, fault address 0x0001295d.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 44 52 57 ure DRW
0018: 54 53 4e 33 32 2e 45 58 TSN32.EX
0020: 45 20 35 2e 31 2e 32 36 E 5.1.26
0028: 30 30 2e 30 20 69 6e 20 00.0 in
0030: 64 62 67 68 65 6c 70 2e dbghelp.
0038: 64 6c 6c 20 35 2e 31 2e dll 5.1.
0040: 32 36 30 30 2e 32 31 38 2600.218
0048: 30 20 61 74 20 6f 66 66 0 at off
0050: 73 65 74 20 30 30 30 31 set 0001
0058: 32 39 35 64 295d



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/15/2005
Time: 2:33:05 PM
User: N/A
Computer: XPS
Description:
Faulting application photoshop.exe, version 9.0.0.0, faulting module photoshop.exe, version 9.0.0.0, fault address 0x00b249b2.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 70 68 6f ure pho
0018: 74 6f 73 68 6f 70 2e 65 toshop.e
0020: 78 65 20 39 2e 30 2e 30 xe 9.0.0
0028: 2e 30 20 69 6e 20 70 68 .0 in ph
0030: 6f 74 6f 73 68 6f 70 2e otoshop.
0038: 65 78 65 20 39 2e 30 2e exe 9.0.
0040: 30 2e 30 20 61 74 20 6f 0.0 at o
0048: 66 66 73 65 74 20 30 30 ffset 00
0050: 62 32 34 39 62 32 0d 0a b249b2..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/17/2005
Time: 6:53:21 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 39 0d 0a f29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/18/2005
Time: 11:21:58 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/19/2005
Time: 3:37:21 PM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-14-2006, 09:24 PM   #8 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


Part 2

Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/20/2005
Time: 6:04:38 PM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 11:55:35 AM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 12:07:36 PM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 12:17:24 PM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 12:59:29 PM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 1:11:10 PM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 1:25:39 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module neaudio.ax, version 1.0.4.20, fault address 0x0000daae.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 65 61 75 64 69 6f neaudio
0038: 2e 61 78 20 31 2e 30 2e .ax 1.0.
0040: 34 2e 32 30 20 61 74 20 4.20 at
0048: 6f 66 66 73 65 74 20 30 offset 0
0050: 30 30 30 64 61 61 65 0d 000daae.
0058: 0a .



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 1:25:46 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module neaudio.ax, version 1.0.4.20, fault address 0x0000daae.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 65 61 75 64 69 6f neaudio
0038: 2e 61 78 20 31 2e 30 2e .ax 1.0.
0040: 34 2e 32 30 20 61 74 20 4.20 at
0048: 6f 66 66 73 65 74 20 30 offset 0
0050: 30 30 30 64 61 61 65 0d 000daae.
0058: 0a .



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 9:20:34 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/22/2005
Time: 11:12:11 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/23/2005
Time: 10:10:45 AM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/23/2005
Time: 10:08:09 PM
User: N/A
Computer: XPS
Description:
Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 7a 64 6c ure zdl
0018: 6d 2e 65 78 65 20 31 2e m.exe 1.
0020: 36 2e 30 2e 38 31 35 20 6.0.815
0028: 69 6e 20 7a 64 6c 6d 2e in zdlm.
0030: 65 78 65 20 31 2e 36 2e exe 1.6.
0038: 30 2e 38 31 35 20 61 74 0.815 at
0040: 20 6f 66 66 73 65 74 20 offset
0048: 30 30 30 34 32 35 35 66 0004255f
0050: 0d 0a ..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/24/2005
Time: 6:20:34 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/24/2005
Time: 6:35:56 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module wininet.dll, version 6.0.2900.2753, fault address 0x00078b94.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 77 69 6e 69 6e 65 74 wininet
0038: 2e 64 6c 6c 20 36 2e 30 .dll 6.0
0040: 2e 32 39 30 30 2e 32 37 .2900.27
0048: 35 33 20 61 74 20 6f 66 53 at of
0050: 66 73 65 74 20 30 30 30 fset 000
0058: 37 38 62 39 34 0d 0a 78b94..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/24/2005
Time: 6:36:59 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module wininet.dll, version 6.0.2900.2753, fault address 0x00078b94.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 77 69 6e 69 6e 65 74 wininet
0038: 2e 64 6c 6c 20 36 2e 30 .dll 6.0
0040: 2e 32 39 30 30 2e 32 37 .2900.27
0048: 35 33 20 61 74 20 6f 66 53 at of
0050: 66 73 65 74 20 30 30 30 fset 000
0058: 37 38 62 39 34 0d 0a 78b94..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 10/30/2005
Time: 4:01:06 AM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f2b.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 62 0d 0a f2b..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 11/2/2005
Time: 10:11:39 PM
User: N/A
Computer: XPS
Description:
Faulting application iexplore.exe, version 6.0.2900.2180, faulting module unknown, version 0.0.0.0, fault address 0x604245d0.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 65 78 ure iex
0018: 70 6c 6f 72 65 2e 65 78 plore.ex
0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
0028: 30 30 2e 32 31 38 30 20 00.2180
0030: 69 6e 20 75 6e 6b 6e 6f in unkno
0038: 77 6e 20 30 2e 30 2e 30 wn 0.0.0
0040: 2e 30 20 61 74 20 6f 66 .0 at of
0048: 66 73 65 74 20 36 30 34 fset 604
0050: 32 34 35 64 30 0d 0a 245d0..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 11/8/2005
Time: 7:21:58 PM
User: N/A
Computer: XPS
Description:
Faulting application iexplore.exe, version 6.0.2900.2180, faulting module quicktime.qts, version 7.0.3.50, fault address 0x0005e931.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 65 78 ure iex
0018: 70 6c 6f 72 65 2e 65 78 plore.ex
0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
0028: 30 30 2e 32 31 38 30 20 00.2180
0030: 69 6e 20 71 75 69 63 6b in quick
0038: 74 69 6d 65 2e 71 74 73 time.qts
0040: 20 37 2e 30 2e 33 2e 35 7.0.3.5
0048: 30 20 61 74 20 6f 66 66 0 at off
0050: 73 65 74 20 30 30 30 35 set 0005
0058: 65 39 33 31 0d 0a e931..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 11/22/2005
Time: 12:36:52 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 65 35 38 0d 0a e58..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 11/22/2005
Time: 1:00:28 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 30 et 00010
0058: 66 32 39 0d 0a f29..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 11/22/2005
Time: 1:00:49 PM
User: N/A
Computer: XPS
Description:
Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f52.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 77 6d 70 ure wmp
0018: 6c 61 79 65 72 2e 65 78 layer.ex
0020: 65 20 31 30 2e 30 2e 30 e 10.0.0
0028: 2e 33 38 30 32 20 69 6e .3802 in
0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d
0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2
0040: 36 30 30 2e 32 31 38 30 600.2180
0048: 20 61 74 20 6f 66 66 73 at offs
0050: 65 74 20 30 30 30 31 31 et 00011
0058: 66 35 32 0d 0a f52..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 12/10/2005
Time: 8:58:18 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 12/11/2005
Time: 5:01:08 PM
User: N/A
Computer: XPS
Description:
Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 68 70 7a ure hpz
0018: 69 6e 77 31 32 2e 65 78 inw12.ex
0020: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0028: 30 20 69 6e 20 68 70 7a 0 in hpz
0030: 69 6e 77 31 32 2e 65 78 inw12.ex
0038: 65 20 38 2e 30 2e 30 2e e 8.0.0.
0040: 30 20 61 74 20 6f 66 66 0 at off
0048: 73 65 74 20 30 30 30 30 set 0000
0050: 34 39 31 36 0d 0a 4916..



Event Type: Error
Event Source: Application Error
Event Category: (100)
Event ID: 1000
Date: 12/14/2005
Time: 7:21:52 PM
User: N/A
Computer: XPS
Description:
Faulting application vsmon.exe, version 5.1.39.4, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010e03.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 76 73 6d ure vsm
0018: 6f 6e 2e 65 78 65 20 35 on.exe 5
0020: 2e 31 2e 33 39 2e 34 20 .1.39.4
0028: 69 6e 20 6e 74 64 6c 6c in ntdll
0030: 2e 64 6c 6c 20 35 2e 31 .dll 5.1
0038: 2e 32 36 30 30 2e 32 31 .2600.21
0040: 38 30 20 61 74 20 6f 66 80 at of
0048: 66 73 65 74 20 30 30 30 fset 000
0050: 31 30 65 30 33 10e03



Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 12/14/2005
Time: 7:23:07 PM
User: N/A
Computer: XPS
Description:
Faulting application iexplore.exe, version 6.0.2900.2180, faulting module mshtml.dll, version 6.0.2900.2769, fault address 0x000a9089.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 65 78 ure iex
0018: 70 6c 6f 72 65 2e 65 78 plore.ex
0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
0028: 30 30 2e 32 31 38 30 20 00.2180
0030: 69 6e 20 6d 73 68 74 6d in mshtm
0038: 6c 2e 64 6c 6c 20 36 2e l.dll 6.
0040: 30 2e 32 39 30 30 2e 32 0.2900.2
0048: 37 36 39 20 61 74 20 6f 769 at o
0050: 66 66 73 65 74 20 30 30 ffset 00
0058: 30 61 39 30 38 39 0d 0a 0a9089..



==============================================================

System


Event Type: Error
Event Source: atapi
Event Category: None
Event ID: 9
Date: 1/14/2006
Time: 5:49:58 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\IdePort0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 50 00 01 00 a4 00 ..P...¤.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 00 01 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 00 00 00 ........
0030: 00 00 00 00 07 00 00 00 ........
0038: 40 00 00 0e 00 00 01 00 @.......
0040: ff 20 0a 12 48 01 00 10 ÿ ..H...
0048: 00 00 00 00 04 00 00 00 ........
0050: e0 43 2a 8a 28 58 1a 8a àC*Š(X.Š
0058: 00 00 00 00 78 86 1c 8a ....x†.Š
0060: 01 00 00 00 00 00 00 00 ........
0068: 4a 01 00 00 52 00 00 00 J...R...
0070: 08 00 00 00 00 00 00 00 ........



Event Type: Error
Event Source: atapi
Event Category: None
Event ID: 9
Date: 1/14/2006
Time: 514 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\IdePort0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 50 00 01 00 a4 00 ..P...¤.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 00 01 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 00 00 00 ........
0030: 00 00 00 00 07 00 00 00 ........
0038: 40 00 00 0e 00 00 01 00 @.......
0040: ff 20 0a 12 48 01 00 10 ÿ ..H...
0048: 00 00 00 00 04 00 00 00 ........
0050: e0 43 2a 8a 28 58 1a 8a àC*Š(X.Š
0058: 00 00 00 00 78 86 1c 8a ....x†.Š
0060: 01 00 00 00 00 00 00 00 ........
0068: 4a 01 00 00 52 00 00 00 J...R...
0070: 08 00 00 00 00 00 00 00 ........



Event Type: Error
Event Source: atapi
Event Category: None
Event ID: 9
Date: 1/14/2006
Time: 2:29:53 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\IdePort0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 50 00 01 00 a4 00 ..P...¤.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 00 01 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 00 00 00 ........
0030: 00 00 00 00 07 00 00 00 ........
0038: 40 00 00 0e 00 00 01 00 @.......
0040: ff 20 0a 12 48 01 00 10 ÿ ..H...
0048: 00 00 00 00 04 00 00 00 ........
0050: e0 43 2a 8a 28 58 1a 8a àC*Š(X.Š
0058: 00 00 00 00 78 86 1c 8a ....x†.Š
0060: 01 00 00 00 00 00 00 00 ........
0068: 4a 01 00 00 52 00 00 00 J...R...
0070: 08 00 00 00 00 00 00 00 ........



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:21:18 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:21:04 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:18:38 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:18:13 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:17:56 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:17:27 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:17:13 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:16:26 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:16:16 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:16:03 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:16:03 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:15:39 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:15:13 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:14:57 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:14:40 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:14:27 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: iaStor
Event Category: None
Event ID: 9
Date: 1/13/2006
Time: 3:14:14 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\iaStor0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 05 00 01 00 6a 00 ......j.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 .....



Event Type: Error
Event Source: DCOM
Event Category: None
Event ID: 10005
Date: 1/12/2006
Time: 11:20:17 PM
User: NT AUTHORITY\SYSTEM
Computer: XPS
Description:
DCOM got error "This service cannot be started in Safe Mode " attempting to start the service EventSystem with arguments "" in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.



Event Type: Error
Event Source: atapi
Event Category: None
Event ID: 9
Date: 1/11/2006
Time: 5:57:12 PM
User: N/A
Computer: XPS
Description:
The device, \Device\Ide\IdePort0, did not respond within the timeout period.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 50 00 01 00 a4 00 ..P...¤.
0008: 00 00 00 00 09 00 04 c0 .......À
0010: 00 01 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 00 00 00 00 00 00 00 00 ........
0030: 00 00 00 00 07 00 00 00 ........
0038: 40 00 00 0e 00 00 01 00 @.......
0040: ff 20 0a 12 48 01 00 10 ÿ ..H...
0048: 00 00 00 00 04 00 00 00 ........
0050: 48 4b 30 8a 68 c2 16 8a HK0ŠhÂ.Š
0058: 00 00 00 00 08 d0 0c 8a .....Ð.Š
0060: 01 00 00 00 00 00 00 00 ........
0068: 4a 01 00 00 52 00 00 00 J...R...
0070: 08 00 00 00 00 00 00 00 ........



Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7009
Date: 1/8/2006
Time: 2:07:22 PM
User: N/A
Computer: XPS
Description:
Timeout (30000 milliseconds) waiting for the SPBBCSvc service to connect.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-15-2006, 02:54 PM   #9 (permalink)
Analyst, Security Team
 
Vikesrock8411's Avatar
 
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP


If you have an XP CD please do the following, otherwise move on to the next step:
Click Start>Run and type in sfc /scannow
This will check to make sure all protected Windows files are intact. If it finds any problems it may prompt you to insert your XP CD.


Make sure you do not need your computer for at least 12 hours before proceeding with this step. This scan may take that long and cannot be aborted. I reccomend you run it overnight. If this is not possible let me know and we will continue another way.

Click Start>Run and type in chkdsk /r
If it asks you to run chkdsk on restart please click yes, and restart your computer. This will check your hard drive for errors, and correct any minor errors it finds.
Vikesrock8411 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-16-2006, 11:20 AM   #10 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


PC works

You are a genious! The last recommended action seemed to do the trick. I was excited when I saw that it didn't take 5-6 minutes to reboot. I was a little skeptical. I didn't want to declare victory too soon but everything seems to be running smooth again. It feels great to have my computer functioning again after a long month of frusteration. I wish I would have come across this board sooner. I went to a couple of other ones and they were not able help me. You truly had the knowledge and expertise to get my computer working again and for that I want to thank you very, very much.

What exactly went wrong and how can I prevent this from happening again in the future?

Thank you!
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-16-2006, 12:05 PM   #11 (permalink)
Analyst, Security Team
 
Vikesrock8411's Avatar
 
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP


If chkdsk fixed the problem it means that you hard drive had some bad sectors on it. There are many potential causes of this, one of which is your hard drive is beginning to fail. I would post a thread in the hardware section that describes what happened (a slow boot was solved by running chkdsk /r). They should be able to help you diagnose if your hard drive is still working properly or not.

It is unlikely,but possible that SFC solved the problem. SFC checks Windows files for corruption and replaces them with fresh copies from various backups or an XP CD if found.

Your log appears to be clean. If you still have any problems let me know and we will work on diagnosing those through other means. If not, there are just a few more things to go through to finish this off and help prevent future infections. Please post one more time even if you have no problems so we can mark this thread as resolved.

Disabling the Viewing of Hidden and System Files
  • Click Start.
  • Open My Computer.
  • Select the Tools menu and click Folder Options.
  • Select the View tab.
  • Deselect the Show hidden files and folders option.
  • Select the Hide file extensions for known types option.
  • Select the Hide protected operating system files option.
  • Click Yes to confirm.
  • Click OK.

Setting a new Restore Point
Go to Start >> Run - type control sysdm.cpl,,4 & press Enter.
  • Tick the checkbox - Turn off System Restore on all drives
  • Click Apply
  • Turn it back 'On' by unticking the same checkbox & click OK

Windows Update
Make sure to get the latest updates for Windows and Internet Explorer at Microsoft Update Site.

Prevention
A good virus scanner is a necessity in today's computer environment. Many virus scanners include active components that protect you from infection without even running a scan. Some good free antivirus programs include:
AVG Free
Avast! Home Edition (Antivirus & Firewall)
AntiVir

A firewall is the first line of defense standing between the internet and your computer. Some good free firewalls are:
Zone Alarm
Outpost
Tiny Personal Firewall
Avast! Home Edition (Antivirus & Firewall)

Adaware SE and Spybot SD are a pair of anti-spyware scanners that should be run every week or two. Although there is some overlap there are many pieces of malware that is caught by one of these and not the other, therefore it is recommended you use both to compliment each other. Spybot also contains two other useful pieces. The first is "Immunize", this helps protect your computer against known exploits. The second is "TeaTimer", with this feature enabled you will receive notifications of all changes to the registry such as programs adding themselves to start-up and you default search page being changed.

Spyware Blaster is a powerful tool that prevents "drive-by" downloads and other unwanted installations. It also uses no system resources, run it once and you're all set. Spyware Guard Is a realtime protection engine to guard your computer from spyware. This program does for spyware what an antivirus program does for viruses.

IE-Spyad is a program that only needs to be run once to protect you from many malicious sites. It adds domains of known adware companies into the Restricted List of Internet Explorer, preventing them from performing malicious actions on your PC.

The MVPS HOSTS file is a file you can download and use to replace your regular hosts file. It prevents many sites from performing malicious actions by blocking the sites from ever being accessed.

Together these programs form a powerful barrier between the Internet and your computer. However, all the programs stand alone and feel free to eliminate any you are not comfortable with. Any protection you add to your PC is better than no protection at all.

Alternative Programs
Here are some alternatives that are either less suceptible than others to malware or don't contain malware where similar programs do.

Trillian or Miranda-IM - These are Malware free Instant Messenger programs which allow you to connect to multiple IM services in one program! (AOL, Yahoo, ICQ, IRC, MSN)

Desktop Weather - Free taskbar weather program that is free, malware free, and resource light.

Firefox - This is an increasingly popular alternate browser. Whilst Internet Explorer is not a bad browser, almost every exploit crafted is targeted to take advantage of an IE weakness.

Sun's Java - It's much more secure than Microsoft's Java Virtual Machine.
Vikesrock8411 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-16-2006, 02:25 PM   #12 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


I ran the steps of your last post. I will submit a post in the hardware section regarding this issue. I hope I didn't lose any work.

I will also install an additional antivirus program as well as a firewall. I have some of the spyware programs and will make a note to run them more often. Firefox also seems like a great addition. Thank you again for your help.
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-16-2006, 03:02 PM   #13 (permalink)
Analyst, Security Team
 
Vikesrock8411's Avatar
 
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP


Sorry about the confusion. You only need one antivirus/firewall program running on your PC at a time. I include those items to show alternatives to the programs people already have. Having more than one antivirus/firewall installed at a time is actually counterproductive and could potentially cause system crashes.
Vikesrock8411 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 01-16-2006, 07:44 PM   #14 (permalink)
Registered User
 
Join Date: Jan 2006
Posts: 9
OS: XP


ok, thanks for letting me know. Again, thank you for all of your help.
elevado is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
 


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 02:01 AM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84