![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Resolved HJT Threads Resolved spyware and popup issues. |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Jan 2006
Posts: 9
OS: XP
|
Very Slow PC - Help
I've ran several spyware and antivirus programs and nothing comes up. My computer is dreadfully slow. Year and a half old PC, running XP with SP2. Installed SP2 shortly after purchasing. PC used to run smooth and fast and suddenly came to a very slow halt, not sure why. Takes about 5 minutes to boot. All programs list in the start area takes 2 minutes to display. Please help! Just ran Highjackthis, the log results are below.
Logfile of HijackThis v1.99.1 Scan saved at 5:51:55 PM, on 1/8/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe C:\WINDOWS\System32\CTsvcCDA.exe C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe C:\WINDOWS\System32\MsPMSPSv.exe C:\WINDOWS\BCMSMMSG.exe C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe C:\WINDOWS\system32\CTHELPER.EXE C:\Program Files\Dell\Media Experience\PCMService.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\HP\hpcoretech\hpcmpmgr.exe C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\NetZero\exec.exe C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TangoManager.exe C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe C:\Program Files\SpywareGuard\sgmain.exe C:\Program Files\SpywareGuard\sgbhp.exe C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE C:\WINDOWS\explorer.exe C:\Hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll O3 - Toolbar: ZeroBar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\NetZero\Toolbar.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe" O4 - HKLM\..\Run: [TangoManager] C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe" O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKCU\..\Run: [uoltray] C:\Program Files\NetZero\exec.exe regrun O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe" O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" O4 - Startup: PANTONE(R) colorist.lnk = C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\PANTONE COLORVISION\Startup\ColorVisionStartup.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://*.windowsupdate.com O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.rovion.com/controls/rovion.cab O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/assets...LStreaming.cab O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...3/mcinsctl.cab O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/sh...20/mcgdmgr.cab O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/...ampx_en_dl.cab O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing) O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Tango Service (TangoService) - Unknown owner - C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe O23 - Service: Wusnuson - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nv4_mini.sys |
|
|
| Sponsored Links |
|
|
#2 (permalink) |
|
Analyst, Security Team
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP
|
Hello Elevado and welcome to TSF
I reccommend you Subscribe to this thread so you are notified of any replies via email. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe. There isn't much showing in your log, so we'll try a general cleaning and see what turns up. Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions. Downloads(make sure to save these in a permanent location) Cleanup! (Alternate Link)- Install it. You will use this later. *NOTE* Cleanup deletes EVERYTHING out of temporary folders and does not make backups. Tools Open Cleanup! by double-clicking the icon on your desktop (or from Start > All Programs). Set the program up as follows: Click Options Move the slider button down to Custom CleanUp! Check the following:
Click OK, Press the CleanUp! button to start the program. If prompted to reboot, click No/ Online Scans Perform an online scan with Internet Explorer with Panda ActiveScan ** click on "Free use ActiveScan" located on the top right hand corner
*You needn't remain online while it's doing the scan but you have to re-connect after it has finished to see the report. *Turn off the real time scanner of any existing antivirus program while performing the online scan In your next post please include:
|
|
|
|
|
#3 (permalink) |
|
Registered User
Join Date: Jan 2006
Posts: 9
OS: XP
|
Updated Highjackthis log and Panda Activescan report
Thank you very much for you quick responce. I have subscribed to this thread so I can get notified of postings. As you recommended I ran the Cleanup software and Panda Activescan. Below are the results of Activescan and Highjackthis. Thank you very much for your help. It is very much appreciated.
Activescan report: Incident Status Location Adware:adware/delfinmedia Not disinfected C:\keys.ini Adware:adware/dyfuca Not disinfected Windows Registry Spyware:Cookie/go Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{29E0D6C0-EA79-4761-B5DF-6A1FC6235225}.txt[{29E0D6C0-EA79-4761-B5DF-6A1FC6235225}.txt] Spyware:Cookie/Serving-sys Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt[{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt] Spyware:Cookie/Atlas DMT Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt[{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt] Spyware:Cookie/Com.com Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt[{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt] Spyware:Cookie/go Not disinfected C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{EE5C0E80-4DC7-43B5-BD6E-C74F76B18B82}\{6ABDB987-BD7D-4069-9203-5C026E17D82F}.txt[{6ABDB987-BD7D-4069-9203-5C026E17D82F}.txt] Virus:Trj/Zapchast.BI Disinfected C:\winupd.bat Highjackthis log: Logfile of HijackThis v1.99.1 Scan saved at 4:27:18 PM, on 1/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe C:\WINDOWS\System32\CTsvcCDA.exe C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe C:\WINDOWS\System32\MsPMSPSv.exe C:\WINDOWS\BCMSMMSG.exe C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe C:\WINDOWS\system32\CTHELPER.EXE C:\Program Files\Dell\Media Experience\PCMService.exe C:\Program Files\HP\hpcoretech\hpcmpmgr.exe C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\NetZero\exec.exe C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TangoManager.exe C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe C:\Program Files\SpywareGuard\sgmain.exe C:\Program Files\SpywareGuard\sgbhp.exe C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE C:\WINDOWS\explorer.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Hijackthis\HijackThis.exe C:\WINDOWS\system32\HPZinw12.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll O3 - Toolbar: ZeroBar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\NetZero\Toolbar.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe" O4 - HKLM\..\Run: [TangoManager] C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe" O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKCU\..\Run: [uoltray] C:\Program Files\NetZero\exec.exe regrun O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe" O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" O4 - Startup: PANTONE(R) colorist.lnk = C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\PANTONE COLORVISION\Startup\ColorVisionStartup.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://*.windowsupdate.com O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.rovion.com/controls/rovion.cab O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/assets...LStreaming.cab O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...3/mcinsctl.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/sh...20/mcgdmgr.cab O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/...ampx_en_dl.cab O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing) O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Tango Service (TangoService) - Unknown owner - C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe O23 - Service: Wusnuson - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nv4_mini.sys |
|
|
|
|
#4 (permalink) |
|
Analyst, Security Team
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP
|
Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions.
Viewing Hidden Files Go to My Computer >Tools >Folder Options >View tab and make sure that Show hidden files and folders is enabled. Also make sure that the System Files and Folders are showing / visible. Uncheck the Hide protected operating system files option. Downloads(make sure to save these in a permanent location) WinPFind-Unzip it to the desktop, but do not run it yet Ewido Security Suite
If you are having problems with the updater, you can use this link to manually update Ewido When you have finished updating, EXIT Ewido. Next, please reboot your computer in SafeMode by doing the following:
File and Folder Deletions Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist. C:\keys.ini C:\winupd.bat Tools Run Ewido with it's updated definitions:(...it's important that all windows must be closed)
** This scan may take over an hour, after choosing the action for the first item you do not need to stay at the PC. Double click WinPFind.exe * Click 'Start Scan' * It will scan the entire system, so please be patient! * Once the scan is complete: 1. Go to the WinPFind folder 2. Locate WinPFind.txt 3. Copy those results in the next post! Reboot back to Normal Mode Online Scans Please open IE and go to Kaspersky WebScanner Next Click on Kaspersky Online Scanner You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
* Turn off the real time scanner of any existing antivirus program while performing the online scan In your next post please include:
|
|
|
|
|
#5 (permalink) |
|
Registered User
Join Date: Jan 2006
Posts: 9
OS: XP
|
Ewido, WinPFind, Kaspersky, Highjackthis Logs
I went through all of the steps in your last post. Here are the reports that you asked me to make. Thank you again for your help.
--------------------------------------------------------- ewido anti-malware - Scan report --------------------------------------------------------- + Created on: 11:01:20 PM, 1/12/2006 + Report-Checksum: 8339F86E + Scan result: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{120E090D-9136-4b78-8258-F0B44B4BD2AC} -> Spyware.Maxspeed : Cleaned with backup HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{8F9FBEB8-D216-4d6c-8D21-513157E09C0D} -> Spyware.Maxspeed : Cleaned with backup C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt/{4F43CAC2-C876-498E-A3CC-C52C31E72EE8}.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt/{69A29C0B-A542-4CDA-A8A1-AE63BA8899EA}.txt -> Spyware.Cookie.Atdmt : Cleaned with backup C:\Program Files\iolo\System Mechanic 6\Undo\Manual\{21C270EF-C4A7-45B9-B8FF-55785153C5BE}\{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt/{A3CA17CA-E9F6-48B0-850F-1CF511189BCC}.txt -> Spyware.Cookie.Com : Cleaned with backup C:\RECYCLER\NPROTECT\00120509.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120510.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120511.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120512.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120513.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120514.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120515.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120516.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120517.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120518.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120519.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120520.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120521.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120522.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120523.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120524.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120525.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120526.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120527.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120528.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120529.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120530.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120531.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120532.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120533.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120534.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120535.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120536.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120537.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120538.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120539.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120540.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120541.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120542.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120543.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120544.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120545.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120546.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120547.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120548.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120549.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120550.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120551.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120552.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120553.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120554.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120555.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120556.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120557.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120558.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120559.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120560.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120561.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120562.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120563.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120564.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120565.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120566.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120567.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120568.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120569.TXT -> Spyware.Cookie.Esomniture : Cleaned with backup C:\RECYCLER\NPROTECT\00120686.TXT -> Spyware.Cookie.Liveperson : Cleaned with backup ::Report End WinPFind: WARNING: not all files found by this scanner are bad. Consult with a knowledgable person before proceeding. If you see a message in the titlebar saying "Not responding..." you can ignore it. Windows somethimes displays this message due to the high volume of disk I/O. As long as the hard disk light is flashing, the program is still working properly. »»»»»»»»»»»»»»»»» Windows OS and Versions »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Product Name: Microsoft Windows XP Current Build: Service Pack 2 Current Build Number: 2600 Internet Explorer Version: 6.0.2900.2180 »»»»»»»»»»»»»»»»» Checking Selected Standard Folders »»»»»»»»»»»»»»»»»»»» Checking %SystemDrive% folder... qoologic 1/12/2006 6:31:12 PM 204131 C:\WinPFind.zip Checking %ProgramFilesDir% folder... Checking %WinDir% folder... UPX! 2/5/2004 68608 C:\WINDOWS\daemon.dll PECompact2 8/23/2004 10:41:58 PM 9624554 C:\WINDOWS\LPT$VPN.162 PECompact2 8/23/2004 10:41:58 PM 9624554 C:\WINDOWS\VPTNFILE.162 UPX! 8/23/2004 10:41:58 PM 1036800 C:\WINDOWS\vsapi32.dll aspack 8/23/2004 10:41:58 PM 1036800 C:\WINDOWS\vsapi32.dll Checking %System% folder... UPX! 9/1/2004 6:49:56 AM 284672 C:\WINDOWS\SYSTEM32\avisynth.dll PEC2 8/29/2002 3:00:00 AM 41397 C:\WINDOWS\SYSTEM32\DFRG.MSC PEC2 2/14/1997 10:24:14 PM 197171 C:\WINDOWS\SYSTEM32\Dwapilib.tlb PTech 7/12/2005 5:04:22 PM 520456 C:\WINDOWS\SYSTEM32\LegitCheckControl.dll PECompact2 1/4/2006 7:41:02 PM 2827616 C:\WINDOWS\SYSTEM32\MRT.exe aspack 1/4/2006 7:41:02 PM 2827616 C:\WINDOWS\SYSTEM32\MRT.exe aspack 8/3/2004 11:56:36 PM 708096 C:\WINDOWS\SYSTEM32\ntdll.dll Umonitor 8/3/2004 11:56:44 PM 657920 C:\WINDOWS\SYSTEM32\rasdlg.dll winsync 8/29/2002 3:00:00 AM 1309184 C:\WINDOWS\SYSTEM32\WBDBASE.DEU Checking %System%\Drivers folder and sub-folders... PTech 8/3/2004 9:41:38 PM 1309184 C:\WINDOWS\SYSTEM32\drivers\mtlstrm.sys Items found in C:\WINDOWS\SYSTEM32\drivers\ETC\hosts Checking the Windows folder and sub-folders for system and hidden files within the last 60 days... 1/12/2006 6:56:40 PM S 2048 C:\WINDOWS\BOOTSTAT.DAT 1/7/2006 12:02:28 PM S 64 C:\WINDOWS\CSC\00000001 1/9/2006 9:23:10 PM H 0 C:\WINDOWS\LastGood\INF\oem42.inf 1/9/2006 9:23:10 PM H 0 C:\WINDOWS\LastGood\INF\oem42.PNF 12/15/2005 9:47:44 PM HS 10022 C:\WINDOWS\SYSTEM32\KGyGaAvL.sys 1/2/2006 3:29:44 PM H 4212 C:\WINDOWS\SYSTEM32\zllictbl.dat 11/30/2005 8:17:10 PM S 21633 C:\WINDOWS\SYSTEM32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB905915.cat 12/1/2005 4:12:48 PM S 10925 C:\WINDOWS\SYSTEM32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB910437.cat 1/2/2006 3:09:36 PM S 11223 C:\WINDOWS\SYSTEM32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB912919.cat 1/12/2006 6:56:56 PM H 12288 C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG 1/12/2006 6:58:08 PM H 1024 C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG 1/12/2006 6:56:42 PM H 8192 C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG 1/12/2006 11:01:22 PM H 122880 C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG 1/12/2006 6:54:48 PM H 1024 C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG 1/11/2006 6:02:00 AM H 1024 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\NTUSER.DAT.LOG 12/10/2005 9:21:18 PM S 1047 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\7C8A03C4580C6B04FDF34357F3474EDC 12/10/2005 9:21:18 PM S 1370 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\B82262A5D5DA4DDACE9EDA7F787D0DEB 12/10/2005 9:21:18 PM S 126 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\MetaData\7C8A03C4580C6B04FDF34357F3474EDC 12/10/2005 9:21:18 PM S 194 C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\CryptnetUrlCache\MetaData\B82262A5D5DA4DDACE9EDA7F787D0DEB 12/15/2005 7:26:02 PM HS 388 C:\WINDOWS\SYSTEM32\Microsoft\Protect\S-1-5-18\User\22d8c794-36e8-4a1c-a392-e1e431975bb5 12/15/2005 7:26:02 PM HS 24 C:\WINDOWS\SYSTEM32\Microsoft\Protect\S-1-5-18\User\Preferred 1/12/2006 6:54:42 PM H 6 C:\WINDOWS\Tasks\SA.DAT Checking for CPL files... Microsoft Corporation 8/3/2004 11:56:58 PM 68608 C:\WINDOWS\SYSTEM32\access.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 549888 C:\WINDOWS\SYSTEM32\appwiz.cpl Creative Technology Ltd. 5/28/2001 11:47:00 AM 32768 C:\WINDOWS\SYSTEM32\AudioHQU.cpl Broadcom Corporation 6/3/2003 8:38:44 AM 94208 C:\WINDOWS\SYSTEM32\BCMSM.CPL Microsoft Corporation 8/3/2004 11:56:58 PM 110592 C:\WINDOWS\SYSTEM32\bthprops.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 135168 C:\WINDOWS\SYSTEM32\desk.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 80384 C:\WINDOWS\SYSTEM32\firewall.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 155136 C:\WINDOWS\SYSTEM32\hdwwiz.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 358400 C:\WINDOWS\SYSTEM32\inetcpl.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 129536 C:\WINDOWS\SYSTEM32\intl.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 380416 C:\WINDOWS\SYSTEM32\irprops.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 68608 C:\WINDOWS\SYSTEM32\joy.cpl Sun Microsystems 3/2/2004 4:52:40 PM 53352 C:\WINDOWS\SYSTEM32\jpicpl32.cpl Microsoft Corporation 8/29/2002 3:00:00 AM 187904 C:\WINDOWS\SYSTEM32\MAIN.CPL Microsoft Corporation 8/3/2004 11:56:58 PM 618496 C:\WINDOWS\SYSTEM32\mmsys.cpl Microsoft Corporation 8/29/2002 3:00:00 AM 35840 C:\WINDOWS\SYSTEM32\NCPA.CPL Microsoft Corporation 8/3/2004 11:56:58 PM 25600 C:\WINDOWS\SYSTEM32\netsetup.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 257024 C:\WINDOWS\SYSTEM32\nusrmgr.cpl Microsoft Corporation 8/29/2002 3:00:00 AM 36864 C:\WINDOWS\SYSTEM32\NWC.CPL Microsoft Corporation 8/3/2004 11:56:58 PM 32768 C:\WINDOWS\SYSTEM32\odbccp32.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 114688 C:\WINDOWS\SYSTEM32\powercfg.cpl Intel(R) Corporation 3/11/2003 2:15:56 PM 77824 C:\WINDOWS\SYSTEM32\PRApplet.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 298496 C:\WINDOWS\SYSTEM32\sysdm.cpl Microsoft Corporation 8/29/2002 3:00:00 AM 28160 C:\WINDOWS\SYSTEM32\TELEPHON.CPL Microsoft Corporation 8/3/2004 11:56:58 PM 94208 C:\WINDOWS\SYSTEM32\timedate.cpl Microsoft Corporation 8/3/2004 11:56:58 PM 148480 C:\WINDOWS\SYSTEM32\wscui.cpl Microsoft Corporation 5/26/2005 3:16:30 AM 174360 C:\WINDOWS\SYSTEM32\wuaucpl.cpl Microsoft Corporation 5/26/2005 3:16:30 AM 174360 C:\WINDOWS\SYSTEM32\DLLCACHE\wuaucpl.cpl »»»»»»»»»»»»»»»»» Checking Selected Startup Folders »»»»»»»»»»»»»»»»»»»»» Checking files in %ALLUSERSPROFILE%\Startup folder... 1/8/2006 2:12:38 PM 2359 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk 9/29/2005 1:35:26 PM 988 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma.lnk 11/11/2005 5:35:06 PM 921 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ColorVisionStartup.lnk 9/3/2002 11:36:04 AM HS 84 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\DESKTOP.INI 3/22/2005 2:52:24 PM 1808 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk 3/22/2005 2:53:58 PM 798 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Image Zone Fast Start.lnk Checking files in %ALLUSERSPROFILE%\Application Data folder... 9/3/2002 11:26:20 AM HS 62 C:\Documents and Settings\All Users\Application Data\DESKTOP.INI 7/28/2005 4:41:26 PM 15857 C:\Documents and Settings\All Users\Application Data\hpzinstall.log 11/27/2005 10:18:34 PM 4108 C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache Checking files in %USERPROFILE%\Startup folder... 9/3/2002 11:36:04 AM HS 84 C:\Documents and Settings\Angel\Start Menu\Programs\Startup\DESKTOP.INI 12/8/2005 10:22:58 PM 963 C:\Documents and Settings\Angel\Start Menu\Programs\Startup\PANTONE(R) colorist.lnk 8/28/2004 10:33:48 AM 650 C:\Documents and Settings\Angel\Start Menu\Programs\Startup\SpywareGuard.lnk Checking files in %USERPROFILE%\Application Data folder... 9/3/2002 11:26:20 AM HS 62 C:\Documents and Settings\Angel\Application Data\DESKTOP.INI »»»»»»»»»»»»»»»»» Checking Selected Registry Keys »»»»»»»»»»»»»»»»»»»»»»» [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform] SV1 = [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved] {81559C35-8464-49F7-BB0E-07A383BEF910} = C:\Program Files\SpywareGuard\spywareguard.dll [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved] [HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers] HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Adobe.Acrobat.ContextMenu {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} = C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat Elements\ContextMenu.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Macromedia.FlashPaper.ContextMenu {9DED7A30-D572-4D21-8D82-6945EA697400} = C:\Program Files\Macromedia\FlashPaper 2\FlashPaperContextMenu.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Offline Files {750fdf0e-2a26-11d1-a3ea-080036587f03} = %SystemRoot%\System32\cscui.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With {09799AFB-AD67-11d1-ABCD-00C04FC30936} = %SystemRoot%\system32\SHELL32.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With EncryptionMenu {A470F8CF-A1E8-4f65-8335-227475AA5C46} = %SystemRoot%\system32\SHELL32.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Symantec.Norton.Antivirus.IEContextMenu {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} = C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\WinRAR {B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Yahoo! Mail {5464D816-CF16-4784-B9F3-75C0DB52B499} = C:\PROGRA~1\Yahoo!\Common\ymmapi.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8} Start Menu Pin = %SystemRoot%\system32\SHELL32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers] HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\SpySweeper {7C9D5882-CB4A-4090-96C8-430BFE8B795B} = C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\Symantec.Norton.Antivirus.IEContextMenu {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} = C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinRAR {B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers] HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\EncryptionMenu {A470F8CF-A1E8-4f65-8335-227475AA5C46} = %SystemRoot%\system32\SHELL32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Offline Files {750fdf0e-2a26-11d1-a3ea-080036587f03} = %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Sharing {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinRAR {B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers] HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{0D2E74C4-3C34-11d2-A27E-00C04FC30871} = %SystemRoot%\system32\SHELL32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{24F14F01-7B1C-11d1-838f-0000F80461CF} = %SystemRoot%\system32\SHELL32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{24F14F02-7B1C-11d1-838f-0000F80461CF} = %SystemRoot%\system32\SHELL32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{66742402-F9B9-11D1-A202-0000F81FEDEE} = %SystemRoot%\system32\SHELL32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{A9AACA72-1C51-4F84-804D-90EDBA0D58F4} = C:\Program Files\Common Files\Zinio\ZSHExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{F9DB5320-233E-11D1-9F84-707F02C10627} = C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\PDFShell.dll [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} AcroIEHlprObj Class = C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4A368E80-174F-4872-96B5-0B27DDD11DB2} SpywareGuardDLBLOCK.CBrowserHelper = C:\Program Files\SpywareGuard\dlprotect.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F} = C:\PROGRA~1\SPYBOT~1\SDHelper.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890} DriveLetterAccess = C:\WINDOWS\system32\dla\tfswshx.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8F38D8D-E480-4D52-B7A2-731BB6995FDD} CNavExtBho Class = C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910} AcroIEToolbarHelper Class = C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E5A1691B-D188-4419-AD02-90002030B8EE} FlashFXP Helper for Internet Explorer = C:\PROGRA~1\FlashFXP\IEFlash.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{182EC0BE-5110-49C8-A062-BEB1D02A220B} Adobe PDF = C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4528BBE0-4E08-11D5-AD55-00010333D0AD} &Yahoo! Messenger = C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4D5C8C25-D075-11d0-B416-00C04FB90376} &Tip of the Day = %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{FE54FA40-D68C-11d2-98FA-00C0F0318AFE} Real.com = C:\WINDOWS\System32\Shdocvw.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar] {F5735C15-1FB2-41FE-BA12-242757E69DDE} = ZeroBar : C:\Program Files\NetZero\Toolbar.dll {47833539-D0C5-4125-9FA8-0819E2EAAC93} = Adobe PDF : C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll {C4069E3A-68F1-403E-B40E-20066696354B} = Norton AntiVirus : C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} MenuText = Sun Java Console : C:\WINDOWS\System32\msjava.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{4528BBE0-4E08-11D5-AD55-00010333D0AD} ButtonText = Messenger : HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5E638779-1818-4754-A595-EF1C63B87A56} ButtonText = Express Cleanup : C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263} ButtonText = Research : HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{CD67F990-D8E9-11d2-98FE-00C0F0318AFE} ButtonText = Real.com : HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683} ButtonText = Messenger : C:\Program Files\Messenger\msmsgs.exe [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{30D02401-6A81-11D0-8274-00C04FD5AE38} Search Band = %SystemRoot%\System32\browseui.dll HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} = HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{4528BBE0-4E08-11D5-AD55-00010333D0AD} &Yahoo! Messenger = C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{EFA24E61-B078-11D0-89E4-00C04FC9E26E} Favorites Band = %SystemRoot%\System32\shdocvw.dll HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{EFA24E62-B078-11D0-89E4-00C04FC9E26E} History Band = %SystemRoot%\System32\shdocvw.dll HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{EFA24E64-B078-11D0-89E4-00C04FC9E26E} Explorer Band = %SystemRoot%\System32\shdocvw.dll [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser {01E04581-4EEE-11D0-BFE9-00AA005B4383} = &Address : %SystemRoot%\System32\browseui.dll {47833539-D0C5-4125-9FA8-0819E2EAAC93} = Adobe PDF : C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser {01E04581-4EEE-11D0-BFE9-00AA005B4383} = &Address : %SystemRoot%\System32\browseui.dll {0E5CBF21-D15F-11D0-8301-00AA005B4383} = &Links : %SystemRoot%\system32\SHELL32.dll {F5735C15-1FB2-41FE-BA12-242757E69DDE} = ZeroBar : C:\Program Files\NetZero\Toolbar.dll {EF99BD32-C1FB-11D2-892F-0090271D4F88} = : {47833539-D0C5-4125-9FA8-0819E2EAAC93} = Adobe PDF : C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll {C4069E3A-68F1-403E-B40E-20066696354B} = Norton AntiVirus : C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] BCMSMMSG BCMSMMSG.exe IAAnotif C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe ATIPTA C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe dla C:\WINDOWS\system32\dla\tfswctrl.exe CTSysVol C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe CTHelper CTHELPER.EXE AsioReg REGSVR32.EXE /S CTASIO.DLL PCMService "C:\Program Files\Dell\Media Experience\PCMService.exe" TangoManager C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE TkBellExe "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot HP Component Manager "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" NeroFilterCheck C:\WINDOWS\system32\NeroCheck.exe UpdateManager "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r Adobe Version Cue CS2 "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe" Acrobat Assistant 7.0 "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" iTunesHelper "C:\Program Files\iTunes\iTunesHelper.exe" SpySweeper "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray ccApp "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents] IMAIL Installed = 1 MAPI Installed = 1 MSFS Installed = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] uoltray C:\Program Files\NetZero\exec.exe regrun MSMSGS "C:\Program Files\Messenger\msmsgs.exe" /background MoneyAgent "C:\Program Files\Microsoft Money\System\mnyexpr.exe" NBJ "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\load] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\run] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SB Audigy 2 Startup Menu key SOFTWARE\Microsoft\Windows\CurrentVersion\Run item /L:ENG hkey HKCU command /L:ENG inimapping 0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state system.ini 0 win.ini 0 bootini 0 services 0 startup 2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer NoCDBurning 0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum {BDEADF00-C265-11D0-BCED-00A0C90AB50F} = C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL {6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} = {0DF44EAA-FF21-4412-828E-260A8728E7F1} = HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Ratings HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system dontdisplaylastusername 0 legalnoticecaption legalnoticetext shutdownwithoutlogon 1 undockwithoutlogon 1 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies] HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer NoDriveTypeAutoRun 145 NoDrives 0 NoViewOnDrive 0 HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Uninstall [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] PostBootReminder {7849596a-48ea-486e-8937-a2a3009f31a9} = %SystemRoot%\system32\SHELL32.dll CDBurn {fbeb8a05-beee-4442-804e-409d6c4515e9} = %SystemRoot%\system32\SHELL32.dll WebCheck {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = %SystemRoot%\System32\webcheck.dll SysTray {35CEC8A3-2BE6-11D2-8773-92E220524153} = C:\WINDOWS\System32\stobject.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] UserInit = C:\WINDOWS\system32\userinit.exe, Shell = Explorer.exe System = HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain = crypt32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet = cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll = cscdll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp = wlnotify.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule = wlnotify.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy = sclgntfy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn = WlNotify.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv = wlnotify.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon = wlnotify.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WRNotifier = WRLogonNTF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Your Image File Name Here without a path Debugger = ntsd -d [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] AppInit_DLLs »»»»»»»»»»»»»»»»»»»»»»»» Scan Complete »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» WinPFind v1.4.1 - Log file written to "WinPFind.Txt" in the WinPFind folder. Scan completed on 1/12/2006 11:17:40 PM ------------------------------------------------------------------------------- KASPERSKY ON-LINE SCANNER REPORT Friday, January 13, 2006 07:20:16 Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600) Kaspersky On-line Scanner version: 5.0.67.0 Kaspersky Anti-Virus database last update: 13/01/2006 Kaspersky Anti-Virus database records: 160466 ------------------------------------------------------------------------------- Scan Settings: Scan using the following antivirus database: standard Scan Archives: true Scan Mail Bases: true Scan Target - My Computer: A:\ C:\ D:\ E:\ F:\ Scan Statistics: Total number of scanned objects: 179630 Number of viruses found: 0 Number of infected objects: 0 Number of suspicious objects: 0 Duration of the scan process: 13556 sec No malware has been detected. The sections that have been scanned are CLEAN. Scan process completed. Logfile of HijackThis v1.99.1 Scan saved at 5:47:01 PM, on 1/13/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe C:\WINDOWS\System32\CTsvcCDA.exe C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe C:\WINDOWS\System32\MsPMSPSv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\BCMSMMSG.exe C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe C:\WINDOWS\system32\CTHELPER.EXE C:\Program Files\Dell\Media Experience\PCMService.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\HP\hpcoretech\hpcmpmgr.exe C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TangoManager.exe C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\NetZero\exec.exe C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe C:\Program Files\SpywareGuard\sgmain.exe C:\Program Files\SpywareGuard\sgbhp.exe C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE C:\WINDOWS\system32\HPZinw12.exe C:\Hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=488 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll O3 - Toolbar: ZeroBar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\NetZero\Toolbar.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe" O4 - HKLM\..\Run: [TangoManager] C:\PROGRA~1\FRONTI~1\FRONTI~1\app\TANGOM~1.EXE O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe" O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKCU\..\Run: [uoltray] C:\Program Files\NetZero\exec.exe regrun O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe" O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" O4 - Startup: PANTONE(R) colorist.lnk = C:\Program Files\Pantone, Inc\PANTONE(R) colorist\PANTONE(R) colorist.exe O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\PANTONE COLORVISION\Startup\ColorVisionStartup.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://*.windowsupdate.com O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/downloads/kws/kavwebscan_unicode.cab O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.rovion.com/controls/rovion.cab O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/assets/activexplayer/SMALStreaming.cab O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,83/mcinsctl.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing) O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\NPROTECT.EXE O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\SPEEDD~1\NOPDB.EXE O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Tango Service (TangoService) - Unknown owner - C:\Program Files\FrontierNet\FrontierNet DSL Attendant\app\TangoService.exe O23 - Service: Wusnuson - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nv4_mini.sys |
|
|
|
|
#6 (permalink) |
|
Analyst, Security Team
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP
|
Hmm, all those logs are clean.
Let's take a look in the event viewer and see if there are any problems behiond the scenes. Click Start>Run and type in eventvwr.msc What we're looking for are the Errors from the System and Application viewers. You'll see something like this: Application Error... Locate the ones with a big red X that say error. Double click to open it. Hit the Tablet (Says Copy to Clipboard if you hover mouse over it) and then CTRL+V to paste the info into the post. |
|
|
|
|
#7 (permalink) |
|
Registered User
Join Date: Jan 2006
Posts: 9
OS: XP
|
Application and System Errors
I got all of the Application Errors. Under Application do you need the other errors that come up as well such as: Applicaton Hang, ccSetMgr, MsiInstaller, SNDSrvc, ESENT, TrueVector Service, Microsoft Office 11 or Norton Disk Doctor? I assumed you only wanted the Application Error results. There are alot of System Hang errors...Thank you for your time and efforts. The results are below. I got an error that the post was too long so I split it to 2 posts.
Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 5/20/2005 Time: 2:55:38 PM User: N/A Computer: XPS Description: Faulting application iexplore.exe, version 6.0.2900.2180, faulting module urlmon.dll, version 6.0.2900.2627, fault address 0x00039086. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 65 78 ure iex 0018: 70 6c 6f 72 65 2e 65 78 plore.ex 0020: 65 20 36 2e 30 2e 32 39 e 6.0.29 0028: 30 30 2e 32 31 38 30 20 00.2180 0030: 69 6e 20 75 72 6c 6d 6f in urlmo 0038: 6e 2e 64 6c 6c 20 36 2e n.dll 6. 0040: 30 2e 32 39 30 30 2e 32 0.2900.2 0048: 36 32 37 20 61 74 20 6f 627 at o 0050: 66 66 73 65 74 20 30 30 ffset 00 0058: 30 33 39 30 38 36 0d 0a 039086.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 5/29/2005 Time: 4:33:36 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 12:51:47 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 33 34 32 t 000342 0058: 36 64 0d 0a 6d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 1:09:06 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 30 66 t 00010f 0058: 32 39 0d 0a 29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 1:11:22 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e5a. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 65 t 00011e 0058: 35 61 0d 0a 5a.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 1:19:39 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 1:21:08 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 30 66 t 00010f 0058: 32 39 0d 0a 29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 1:21:37 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 30 66 t 00010f 0058: 32 39 0d 0a 29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 1:35:12 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000111de. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 31 t 000111 0058: 64 65 0d 0a de.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 1:35:23 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 65 t 00011e 0058: 35 38 0d 0a 58.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 2:30:53 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/22/2005 Time: 2:34:29 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/25/2005 Time: 1:54:41 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000111de. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 31 t 000111 0058: 64 65 0d 0a de.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 5:00:21 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 33 34 32 t 000342 0058: 36 64 0d 0a 6d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 5 57 PMUser: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 5:12:09 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module mcspmpeg.ax, version 1.0.0.39, fault address 0x0000e532. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6d 63 73 70 6d 70 65 67 mcspmpeg 0038: 2e 61 78 20 31 2e 30 2e .ax 1.0. 0040: 30 2e 33 39 20 61 74 20 0.39 at 0048: 6f 66 66 73 65 74 20 30 offset 0 0050: 30 30 30 65 35 33 32 0d 000e532. 0058: 0a . Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 5:12:30 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6e. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 65 0d 0a 6e.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 5:27:17 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 33 34 32 t 000342 0058: 36 64 0d 0a 6d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 6:08:47 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module unknown, version 0.0.0.0, fault address 0x01977fc3. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 75 6e 6b 6e 6f 77 6e 20 unknown 0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0 0040: 61 74 20 6f 66 66 73 65 at offse 0048: 74 20 30 31 39 37 37 66 t 01977f 0050: 63 33 0d 0a c3.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 6:16:56 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000184ad. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 38 34 t 000184 0058: 61 64 0d 0a ad.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 6:17:10 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module unknown, version 0.0.0.0, fault address 0x017b3a70. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 75 6e 6b 6e 6f 77 6e 20 unknown 0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0 0040: 61 74 20 6f 66 66 73 65 at offse 0048: 74 20 30 31 37 62 33 61 t 017b3a 0050: 37 30 0d 0a 70.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 6/27/2005 Time: 6:17:28 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module mcspmpeg.ax, version 1.0.0.39, fault address 0x0000e532. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6d 63 73 70 6d 70 65 67 mcspmpeg 0038: 2e 61 78 20 31 2e 30 2e .ax 1.0. 0040: 30 2e 33 39 20 61 74 20 0.39 at 0048: 6f 66 66 73 65 74 20 30 offset 0 0050: 30 30 30 65 35 33 32 0d 000e532. 0058: 0a . Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:40:12 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011404. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 34 t 000114 0058: 30 34 0d 0a 04.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:40:19 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 33 34 32 t 000342 0058: 36 64 0d 0a 6d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:50:04 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module unknown, version 0.0.0.0, fault address 0x01a301d2. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 75 6e 6b 6e 6f 77 6e 20 unknown 0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0 0040: 61 74 20 6f 66 66 73 65 at offse 0048: 74 20 30 31 61 33 30 31 t 01a301 0050: 64 32 0d 0a d2.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:58:26 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 4:05:34 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 4:12:03 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 30 66 t 00010f 0058: 32 39 0d 0a 29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 4:13:08 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 30 66 t 00010f 0058: 32 39 0d 0a 29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 4:32:39 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 4:34:52 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 4:36:39 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 5:37:02 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 33 34 32 t 000342 0058: 36 64 0d 0a 6d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:37:34 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000114b6. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 34 t 000114 0058: 62 36 0d 0a b6.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:39:37 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0001103c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 30 t 000110 0058: 33 63 0d 0a 3c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:39:43 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000111de. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 31 t 000111 0058: 64 65 0d 0a de.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/2/2005 Time: 3:51:54 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 9.0.0.3250, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 39 2e 30 2e 30 2e e 9.0.0. 0028: 33 32 35 30 20 69 6e 20 3250 in 0030: 6e 74 64 6c 6c 2e 64 6c ntdll.dl 0038: 6c 20 35 2e 31 2e 32 36 l 5.1.26 0040: 30 30 2e 32 31 38 30 20 00.2180 0048: 61 74 20 6f 66 66 73 65 at offse 0050: 74 20 30 30 30 31 31 66 t 00011f 0058: 36 63 0d 0a 6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/5/2005 Time: 9:59:38 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/6/2005 Time: 7:33:50 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/8/2005 Time: 3:15:42 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 66 36 63 0d 0a f6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/9/2005 Time: 7:48:56 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/11/2005 Time: 8:44:29 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/11/2005 Time: 11:57:43 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/11/2005 Time: 11:52:12 PM User: N/A Computer: XPS Description: Faulting application explorer.exe, version 6.0.2900.2180, faulting module wininet.dll, version 6.0.2900.2668, fault address 0x00003670. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 65 78 70 ure exp 0018: 6c 6f 72 65 72 2e 65 78 lorer.ex 0020: 65 20 36 2e 30 2e 32 39 e 6.0.29 0028: 30 30 2e 32 31 38 30 20 00.2180 0030: 69 6e 20 77 69 6e 69 6e in winin 0038: 65 74 2e 64 6c 6c 20 36 et.dll 6 0040: 2e 30 2e 32 39 30 30 2e .0.2900. 0048: 32 36 36 38 20 61 74 20 2668 at 0050: 6f 66 66 73 65 74 20 30 offset 0 0058: 30 30 30 33 36 37 30 0d 0003670. 0060: 0a . Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/14/2005 Time: 11:23:19 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/20/2005 Time: 1:24:54 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 66 36 63 0d 0a f6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/24/2005 Time: 7:36:54 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/27/2005 Time: 12:34:22 PM User: N/A Computer: XPS Description: Faulting application afterfx.exe, version 6.0.128.172, faulting module unknown, version 0.0.0.0, fault address 0x00000000. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 61 66 74 ure aft 0018: 65 72 66 78 2e 65 78 65 erfx.exe 0020: 20 36 2e 30 2e 31 32 38 6.0.128 0028: 2e 31 37 32 20 69 6e 20 .172 in 0030: 75 6e 6b 6e 6f 77 6e 20 unknown 0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0 0040: 61 74 20 6f 66 66 73 65 at offse 0048: 74 20 30 30 30 30 30 30 t 000000 0050: 30 30 0d 0a 00.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/28/2005 Time: 1:09:43 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e5a. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 65 35 61 0d 0a e5a.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/28/2005 Time: 1:10:03 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module unknown, version 0.0.0.0, fault address 0x00000000. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 75 6e 6b 6e 6f 77 6e unknown 0038: 20 30 2e 30 2e 30 2e 30 0.0.0.0 0040: 20 61 74 20 6f 66 66 73 at offs 0048: 65 74 20 30 30 30 30 30 et 00000 0050: 30 30 30 0d 0a 000.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/28/2005 Time: 1:30:57 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0001103c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 30 33 63 0d 0a 03c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/28/2005 Time: 1:33:08 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 39 0d 0a f29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 7/28/2005 Time: 1:35:47 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 66 36 63 0d 0a f6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/1/2005 Time: 8:27:31 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/1/2005 Time: 10:01:04 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/1/2005 Time: 10:33:17 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/2/2005 Time: 4:14:38 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/2/2005 Time: 5:02:16 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 33 34 et 00034 0058: 32 36 64 0d 0a 26d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/2/2005 Time: 5:10:34 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010de3. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 64 65 33 0d 0a de3.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/2/2005 Time: 5:10:41 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 33 34 et 00034 0058: 32 36 64 0d 0a 26d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/3/2005 Time: 10:53:10 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/3/2005 Time: 8:50:35 PM User: N/A Computer: XPS Description: Faulting application iexplore.exe, version 6.0.2900.2180, faulting module urlmon.dll, version 6.0.2900.2668, fault address 0x00039146. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 65 78 ure iex 0018: 70 6c 6f 72 65 2e 65 78 plore.ex 0020: 65 20 36 2e 30 2e 32 39 e 6.0.29 0028: 30 30 2e 32 31 38 30 20 00.2180 0030: 69 6e 20 75 72 6c 6d 6f in urlmo 0038: 6e 2e 64 6c 6c 20 36 2e n.dll 6. 0040: 30 2e 32 39 30 30 2e 32 0.2900.2 0048: 36 36 38 20 61 74 20 6f 668 at o 0050: 66 66 73 65 74 20 30 30 ffset 00 0058: 30 33 39 31 34 36 0d 0a 039146.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/4/2005 Time: 5:59:42 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/5/2005 Time: 3:51:17 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011b9f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 62 39 66 0d 0a b9f.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/6/2005 Time: 2:09:18 AM User: N/A Computer: XPS Description: Faulting application hpcmpmgr.exe, version 2.1.1.0, faulting module hpcmpmgr.exe, version 2.1.1.0, fault address 0x000119d9. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 63 ure hpc 0018: 6d 70 6d 67 72 2e 65 78 mpmgr.ex 0020: 65 20 32 2e 31 2e 31 2e e 2.1.1. 0028: 30 20 69 6e 20 68 70 63 0 in hpc 0030: 6d 70 6d 67 72 2e 65 78 mpmgr.ex 0038: 65 20 32 2e 31 2e 31 2e e 2.1.1. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 31 set 0001 0050: 31 39 64 39 0d 0a 19d9.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/12/2005 Time: 7:31:15 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 33 34 et 00034 0058: 32 36 64 0d 0a 26d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/12/2005 Time: 7:42:02 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 33 34 et 00034 0058: 32 36 64 0d 0a 26d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/12/2005 Time: 7:52:50 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f2b. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 62 0d 0a f2b.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/15/2005 Time: 10:32:13 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/16/2005 Time: 7:23:44 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/16/2005 Time: 7:37:28 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/16/2005 Time: 5:29:35 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/19/2005 Time: 6:29:16 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f2b. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 62 0d 0a f2b.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/20/2005 Time: 6:17:52 AM User: N/A Computer: XPS Description: Faulting application hpcmpmgr.exe, version 2.1.1.0, faulting module ole32.dll, version 5.1.2600.2665, fault address 0x000480d1. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 63 ure hpc 0018: 6d 70 6d 67 72 2e 65 78 mpmgr.ex 0020: 65 20 32 2e 31 2e 31 2e e 2.1.1. 0028: 30 20 69 6e 20 6f 6c 65 0 in ole 0030: 33 32 2e 64 6c 6c 20 35 32.dll 5 0038: 2e 31 2e 32 36 30 30 2e .1.2600. 0040: 32 36 36 35 20 61 74 20 2665 at 0048: 6f 66 66 73 65 74 20 30 offset 0 0050: 30 30 34 38 30 64 31 0d 00480d1. 0058: 0a . Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/22/2005 Time: 5:58:41 PM User: N/A Computer: XPS Description: Faulting application acrobat.exe, version 6.0.0.878, faulting module unknown, version 0.0.0.0, fault address 0x040f8b00. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 61 63 72 ure acr 0018: 6f 62 61 74 2e 65 78 65 obat.exe 0020: 20 36 2e 30 2e 30 2e 38 6.0.0.8 0028: 37 38 20 69 6e 20 75 6e 78 in un 0030: 6b 6e 6f 77 6e 20 30 2e known 0. 0038: 30 2e 30 2e 30 20 61 74 0.0.0 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 34 30 66 38 62 30 30 040f8b00 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 8/29/2005 Time: 5:35:25 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/5/2005 Time: 3:45:27 PM User: N/A Computer: XPS Description: Faulting application illustrator.exe, version 10.0.96.0, faulting module illustrator.exe, version 10.0.96.0, fault address 0x0028382c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 6c 6c ure ill 0018: 75 73 74 72 61 74 6f 72 ustrator 0020: 2e 65 78 65 20 31 30 2e .exe 10. 0028: 30 2e 39 36 2e 30 20 69 0.96.0 i 0030: 6e 20 69 6c 6c 75 73 74 n illust 0038: 72 61 74 6f 72 2e 65 78 rator.ex 0040: 65 20 31 30 2e 30 2e 39 e 10.0.9 0048: 36 2e 30 20 61 74 20 6f 6.0 at o 0050: 66 66 73 65 74 20 30 30 ffset 00 0058: 32 38 33 38 32 63 0d 0a 28382c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/5/2005 Time: 5:08:51 PM User: N/A Computer: XPS Description: Faulting application illustrator.exe, version 10.0.96.0, faulting module illustrator.exe, version 10.0.96.0, fault address 0x004b31fe. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 6c 6c ure ill 0018: 75 73 74 72 61 74 6f 72 ustrator 0020: 2e 65 78 65 20 31 30 2e .exe 10. 0028: 30 2e 39 36 2e 30 20 69 0.96.0 i 0030: 6e 20 69 6c 6c 75 73 74 n illust 0038: 72 61 74 6f 72 2e 65 78 rator.ex 0040: 65 20 31 30 2e 30 2e 39 e 10.0.9 0048: 36 2e 30 20 61 74 20 6f 6.0 at o 0050: 66 66 73 65 74 20 30 30 ffset 00 0058: 34 62 33 31 66 65 0d 0a 4b31fe.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/5/2005 Time: 10:51:32 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/6/2005 Time: 11:01:58 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/7/2005 Time: 5:45:31 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/7/2005 Time: 9:42:32 PM User: N/A Computer: XPS Description: Faulting application quicktimeplayer.exe, version 7.0.2.120, faulting module quicktime.qts, version 7.0.2.120, fault address 0x0010daa3. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 71 75 69 ure qui 0018: 63 6b 74 69 6d 65 70 6c cktimepl 0020: 61 79 65 72 2e 65 78 65 ayer.exe 0028: 20 37 2e 30 2e 32 2e 31 7.0.2.1 0030: 32 30 20 69 6e 20 71 75 20 in qu 0038: 69 63 6b 74 69 6d 65 2e icktime. 0040: 71 74 73 20 37 2e 30 2e qts 7.0. 0048: 32 2e 31 32 30 20 61 74 2.120 at 0050: 20 6f 66 66 73 65 74 20 offset 0058: 30 30 31 30 64 61 61 33 0010daa3 0060: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/25/2005 Time: 11:13:05 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/30/2005 Time: 12:36:26 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 39 0d 0a f29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/30/2005 Time: 12:38:31 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 65 35 38 0d 0a e58.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/30/2005 Time: 12:39:05 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 39 0d 0a f29.. Event Type: Error Event Source: Application Error Event Category: (100) Event ID: 1000 Date: 9/30/2005 Time: 12:39:10 PM User: N/A Computer: XPS Description: Faulting application DRWTSN32.EXE, version 5.1.2600.0, faulting module dbghelp.dll, version 5.1.2600.2180, fault address 0x0001295d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 44 52 57 ure DRW 0018: 54 53 4e 33 32 2e 45 58 TSN32.EX 0020: 45 20 35 2e 31 2e 32 36 E 5.1.26 0028: 30 30 2e 30 20 69 6e 20 00.0 in 0030: 64 62 67 68 65 6c 70 2e dbghelp. 0038: 64 6c 6c 20 35 2e 31 2e dll 5.1. 0040: 32 36 30 30 2e 32 31 38 2600.218 0048: 30 20 61 74 20 6f 66 66 0 at off 0050: 73 65 74 20 30 30 30 31 set 0001 0058: 32 39 35 64 295d Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 9/30/2005 Time: 12:39:54 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 33 34 et 00034 0058: 32 36 64 0d 0a 26d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/2/2005 Time: 1:05:43 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 65 35 38 0d 0a e58.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/7/2005 Time: 5:11:30 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 66 36 63 0d 0a f6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/7/2005 Time: 5:25:56 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module unknown, version 0.0.0.0, fault address 0xe97777ee. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 75 6e 6b 6e 6f 77 6e unknown 0038: 20 30 2e 30 2e 30 2e 30 0.0.0.0 0040: 20 61 74 20 6f 66 66 73 at offs 0048: 65 74 20 65 39 37 37 37 et e9777 0050: 37 65 65 0d 0a 7ee.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/7/2005 Time: 5:41:29 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f6c. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 66 36 63 0d 0a f6c.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/7/2005 Time: 5:50:32 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 33 34 et 00034 0058: 32 36 64 0d 0a 26d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/7/2005 Time: 5:53:32 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x0003426d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 33 34 et 00034 0058: 32 36 64 0d 0a 26d.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/13/2005 Time: 1:54:12 AM User: N/A Computer: XPS Description: Faulting application iexplore.exe, version 6.0.2900.2180, faulting module comctl32.dll, version 6.0.2900.2180, fault address 0x0007d4e3. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 65 78 ure iex 0018: 70 6c 6f 72 65 2e 65 78 plore.ex 0020: 65 20 36 2e 30 2e 32 39 e 6.0.29 0028: 30 30 2e 32 31 38 30 20 00.2180 0030: 69 6e 20 63 6f 6d 63 74 in comct 0038: 6c 33 32 2e 64 6c 6c 20 l32.dll 0040: 36 2e 30 2e 32 39 30 30 6.0.2900 0048: 2e 32 31 38 30 20 61 74 .2180 at 0050: 20 6f 66 66 73 65 74 20 offset 0058: 30 30 30 37 64 34 65 33 0007d4e3 0060: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: (100) Event ID: 1000 Date: 10/13/2005 Time: 1:54:19 AM User: N/A Computer: XPS Description: Faulting application DRWTSN32.EXE, version 5.1.2600.0, faulting module dbghelp.dll, version 5.1.2600.2180, fault address 0x0001295d. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 44 52 57 ure DRW 0018: 54 53 4e 33 32 2e 45 58 TSN32.EX 0020: 45 20 35 2e 31 2e 32 36 E 5.1.26 0028: 30 30 2e 30 20 69 6e 20 00.0 in 0030: 64 62 67 68 65 6c 70 2e dbghelp. 0038: 64 6c 6c 20 35 2e 31 2e dll 5.1. 0040: 32 36 30 30 2e 32 31 38 2600.218 0048: 30 20 61 74 20 6f 66 66 0 at off 0050: 73 65 74 20 30 30 30 31 set 0001 0058: 32 39 35 64 295d Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/15/2005 Time: 2:33:05 PM User: N/A Computer: XPS Description: Faulting application photoshop.exe, version 9.0.0.0, faulting module photoshop.exe, version 9.0.0.0, fault address 0x00b249b2. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 70 68 6f ure pho 0018: 74 6f 73 68 6f 70 2e 65 toshop.e 0020: 78 65 20 39 2e 30 2e 30 xe 9.0.0 0028: 2e 30 20 69 6e 20 70 68 .0 in ph 0030: 6f 74 6f 73 68 6f 70 2e otoshop. 0038: 65 78 65 20 39 2e 30 2e exe 9.0. 0040: 30 2e 30 20 61 74 20 6f 0.0 at o 0048: 66 66 73 65 74 20 30 30 ffset 00 0050: 62 32 34 39 62 32 0d 0a b249b2.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/17/2005 Time: 6:53:21 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 39 0d 0a f29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/18/2005 Time: 11:21:58 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/19/2005 Time: 3:37:21 PM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. |
|
|
|
|
#8 (permalink) |
|
Registered User
Join Date: Jan 2006
Posts: 9
OS: XP
|
Part 2
Event Type: Error
Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/20/2005 Time: 6:04:38 PM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 11:55:35 AM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 12:07:36 PM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 12:17:24 PM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 12:59:29 PM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 1:11:10 PM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 1:25:39 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module neaudio.ax, version 1.0.4.20, fault address 0x0000daae. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 65 61 75 64 69 6f neaudio 0038: 2e 61 78 20 31 2e 30 2e .ax 1.0. 0040: 34 2e 32 30 20 61 74 20 4.20 at 0048: 6f 66 66 73 65 74 20 30 offset 0 0050: 30 30 30 64 61 61 65 0d 000daae. 0058: 0a . Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 1:25:46 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module neaudio.ax, version 1.0.4.20, fault address 0x0000daae. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 65 61 75 64 69 6f neaudio 0038: 2e 61 78 20 31 2e 30 2e .ax 1.0. 0040: 34 2e 32 30 20 61 74 20 4.20 at 0048: 6f 66 66 73 65 74 20 30 offset 0 0050: 30 30 30 64 61 61 65 0d 000daae. 0058: 0a . Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 9:20:34 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/22/2005 Time: 11:12:11 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/23/2005 Time: 10:10:45 AM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/23/2005 Time: 10:08:09 PM User: N/A Computer: XPS Description: Faulting application zdlm.exe, version 1.6.0.815, faulting module zdlm.exe, version 1.6.0.815, fault address 0x0004255f. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 7a 64 6c ure zdl 0018: 6d 2e 65 78 65 20 31 2e m.exe 1. 0020: 36 2e 30 2e 38 31 35 20 6.0.815 0028: 69 6e 20 7a 64 6c 6d 2e in zdlm. 0030: 65 78 65 20 31 2e 36 2e exe 1.6. 0038: 30 2e 38 31 35 20 61 74 0.815 at 0040: 20 6f 66 66 73 65 74 20 offset 0048: 30 30 30 34 32 35 35 66 0004255f 0050: 0d 0a .. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/24/2005 Time: 6:20:34 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/24/2005 Time: 6:35:56 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module wininet.dll, version 6.0.2900.2753, fault address 0x00078b94. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 77 69 6e 69 6e 65 74 wininet 0038: 2e 64 6c 6c 20 36 2e 30 .dll 6.0 0040: 2e 32 39 30 30 2e 32 37 .2900.27 0048: 35 33 20 61 74 20 6f 66 53 at of 0050: 66 73 65 74 20 30 30 30 fset 000 0058: 37 38 62 39 34 0d 0a 78b94.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/24/2005 Time: 6:36:59 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module wininet.dll, version 6.0.2900.2753, fault address 0x00078b94. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 77 69 6e 69 6e 65 74 wininet 0038: 2e 64 6c 6c 20 36 2e 30 .dll 6.0 0040: 2e 32 39 30 30 2e 32 37 .2900.27 0048: 35 33 20 61 74 20 6f 66 53 at of 0050: 66 73 65 74 20 30 30 30 fset 000 0058: 37 38 62 39 34 0d 0a 78b94.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 10/30/2005 Time: 4:01:06 AM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f2b. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 62 0d 0a f2b.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 11/2/2005 Time: 10:11:39 PM User: N/A Computer: XPS Description: Faulting application iexplore.exe, version 6.0.2900.2180, faulting module unknown, version 0.0.0.0, fault address 0x604245d0. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 65 78 ure iex 0018: 70 6c 6f 72 65 2e 65 78 plore.ex 0020: 65 20 36 2e 30 2e 32 39 e 6.0.29 0028: 30 30 2e 32 31 38 30 20 00.2180 0030: 69 6e 20 75 6e 6b 6e 6f in unkno 0038: 77 6e 20 30 2e 30 2e 30 wn 0.0.0 0040: 2e 30 20 61 74 20 6f 66 .0 at of 0048: 66 73 65 74 20 36 30 34 fset 604 0050: 32 34 35 64 30 0d 0a 245d0.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 11/8/2005 Time: 7:21:58 PM User: N/A Computer: XPS Description: Faulting application iexplore.exe, version 6.0.2900.2180, faulting module quicktime.qts, version 7.0.3.50, fault address 0x0005e931. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 65 78 ure iex 0018: 70 6c 6f 72 65 2e 65 78 plore.ex 0020: 65 20 36 2e 30 2e 32 39 e 6.0.29 0028: 30 30 2e 32 31 38 30 20 00.2180 0030: 69 6e 20 71 75 69 63 6b in quick 0038: 74 69 6d 65 2e 71 74 73 time.qts 0040: 20 37 2e 30 2e 33 2e 35 7.0.3.5 0048: 30 20 61 74 20 6f 66 66 0 at off 0050: 73 65 74 20 30 30 30 35 set 0005 0058: 65 39 33 31 0d 0a e931.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 11/22/2005 Time: 12:36:52 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011e58. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 65 35 38 0d 0a e58.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 11/22/2005 Time: 1:00:28 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010f29. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 30 et 00010 0058: 66 32 39 0d 0a f29.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 11/22/2005 Time: 1:00:49 PM User: N/A Computer: XPS Description: Faulting application wmplayer.exe, version 10.0.0.3802, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00011f52. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 77 6d 70 ure wmp 0018: 6c 61 79 65 72 2e 65 78 layer.ex 0020: 65 20 31 30 2e 30 2e 30 e 10.0.0 0028: 2e 33 38 30 32 20 69 6e .3802 in 0030: 20 6e 74 64 6c 6c 2e 64 ntdll.d 0038: 6c 6c 20 35 2e 31 2e 32 ll 5.1.2 0040: 36 30 30 2e 32 31 38 30 600.2180 0048: 20 61 74 20 6f 66 66 73 at offs 0050: 65 74 20 30 30 30 31 31 et 00011 0058: 66 35 32 0d 0a f52.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 12/10/2005 Time: 8:58:18 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 12/11/2005 Time: 5:01:08 PM User: N/A Computer: XPS Description: Faulting application hpzinw12.exe, version 8.0.0.0, faulting module hpzinw12.exe, version 8.0.0.0, fault address 0x00004916. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 68 70 7a ure hpz 0018: 69 6e 77 31 32 2e 65 78 inw12.ex 0020: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0028: 30 20 69 6e 20 68 70 7a 0 in hpz 0030: 69 6e 77 31 32 2e 65 78 inw12.ex 0038: 65 20 38 2e 30 2e 30 2e e 8.0.0. 0040: 30 20 61 74 20 6f 66 66 0 at off 0048: 73 65 74 20 30 30 30 30 set 0000 0050: 34 39 31 36 0d 0a 4916.. Event Type: Error Event Source: Application Error Event Category: (100) Event ID: 1000 Date: 12/14/2005 Time: 7:21:52 PM User: N/A Computer: XPS Description: Faulting application vsmon.exe, version 5.1.39.4, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x00010e03. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 76 73 6d ure vsm 0018: 6f 6e 2e 65 78 65 20 35 on.exe 5 0020: 2e 31 2e 33 39 2e 34 20 .1.39.4 0028: 69 6e 20 6e 74 64 6c 6c in ntdll 0030: 2e 64 6c 6c 20 35 2e 31 .dll 5.1 0038: 2e 32 36 30 30 2e 32 31 .2600.21 0040: 38 30 20 61 74 20 6f 66 80 at of 0048: 66 73 65 74 20 30 30 30 fset 000 0050: 31 30 65 30 33 10e03 Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 12/14/2005 Time: 7:23:07 PM User: N/A Computer: XPS Description: Faulting application iexplore.exe, version 6.0.2900.2180, faulting module mshtml.dll, version 6.0.2900.2769, fault address 0x000a9089. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 69 65 78 ure iex 0018: 70 6c 6f 72 65 2e 65 78 plore.ex 0020: 65 20 36 2e 30 2e 32 39 e 6.0.29 0028: 30 30 2e 32 31 38 30 20 00.2180 0030: 69 6e 20 6d 73 68 74 6d in mshtm 0038: 6c 2e 64 6c 6c 20 36 2e l.dll 6. 0040: 30 2e 32 39 30 30 2e 32 0.2900.2 0048: 37 36 39 20 61 74 20 6f 769 at o 0050: 66 66 73 65 74 20 30 30 ffset 00 0058: 30 61 39 30 38 39 0d 0a 0a9089.. ============================================================== System Event Type: Error Event Source: atapi Event Category: None Event ID: 9 Date: 1/14/2006 Time: 5:49:58 PM User: N/A Computer: XPS Description: The device, \Device\Ide\IdePort0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 50 00 01 00 a4 00 ..P...¤. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 00 01 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 00 00 00 ........ 0030: 00 00 00 00 07 00 00 00 ........ 0038: 40 00 00 0e 00 00 01 00 @....... 0040: ff 20 0a 12 48 01 00 10 ÿ ..H... 0048: 00 00 00 00 04 00 00 00 ........ 0050: e0 43 2a 8a 28 58 1a 8a àC*(X. 0058: 00 00 00 00 78 86 1c 8a ....x. 0060: 01 00 00 00 00 00 00 00 ........ 0068: 4a 01 00 00 52 00 00 00 J...R... 0070: 08 00 00 00 00 00 00 00 ........ Event Type: Error Event Source: atapi Event Category: None Event ID: 9 Date: 1/14/2006 Time: 5 14 PMUser: N/A Computer: XPS Description: The device, \Device\Ide\IdePort0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 50 00 01 00 a4 00 ..P...¤. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 00 01 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 00 00 00 ........ 0030: 00 00 00 00 07 00 00 00 ........ 0038: 40 00 00 0e 00 00 01 00 @....... 0040: ff 20 0a 12 48 01 00 10 ÿ ..H... 0048: 00 00 00 00 04 00 00 00 ........ 0050: e0 43 2a 8a 28 58 1a 8a àC*(X. 0058: 00 00 00 00 78 86 1c 8a ....x. 0060: 01 00 00 00 00 00 00 00 ........ 0068: 4a 01 00 00 52 00 00 00 J...R... 0070: 08 00 00 00 00 00 00 00 ........ Event Type: Error Event Source: atapi Event Category: None Event ID: 9 Date: 1/14/2006 Time: 2:29:53 PM User: N/A Computer: XPS Description: The device, \Device\Ide\IdePort0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 50 00 01 00 a4 00 ..P...¤. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 00 01 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 00 00 00 ........ 0030: 00 00 00 00 07 00 00 00 ........ 0038: 40 00 00 0e 00 00 01 00 @....... 0040: ff 20 0a 12 48 01 00 10 ÿ ..H... 0048: 00 00 00 00 04 00 00 00 ........ 0050: e0 43 2a 8a 28 58 1a 8a àC*(X. 0058: 00 00 00 00 78 86 1c 8a ....x. 0060: 01 00 00 00 00 00 00 00 ........ 0068: 4a 01 00 00 52 00 00 00 J...R... 0070: 08 00 00 00 00 00 00 00 ........ Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:21:18 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:21:04 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:18:38 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:18:13 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:17:56 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:17:27 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:17:13 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:16:26 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:16:16 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:16:03 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:16:03 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:15:39 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:15:13 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:14:57 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:14:40 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:14:27 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: iaStor Event Category: None Event ID: 9 Date: 1/13/2006 Time: 3:14:14 PM User: N/A Computer: XPS Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 05 00 01 00 6a 00 ......j. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 01 00 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 ..... Event Type: Error Event Source: DCOM Event Category: None Event ID: 10005 Date: 1/12/2006 Time: 11:20:17 PM User: NT AUTHORITY\SYSTEM Computer: XPS Description: DCOM got error "This service cannot be started in Safe Mode " attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF} For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Event Type: Error Event Source: atapi Event Category: None Event ID: 9 Date: 1/11/2006 Time: 5:57:12 PM User: N/A Computer: XPS Description: The device, \Device\Ide\IdePort0, did not respond within the timeout period. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 0f 00 50 00 01 00 a4 00 ..P...¤. 0008: 00 00 00 00 09 00 04 c0 .......À 0010: 00 01 00 00 00 00 00 00 ........ 0018: 00 00 00 00 00 00 00 00 ........ 0020: 00 00 00 00 00 00 00 00 ........ 0028: 00 00 00 00 00 00 00 00 ........ 0030: 00 00 00 00 07 00 00 00 ........ 0038: 40 00 00 0e 00 00 01 00 @....... 0040: ff 20 0a 12 48 01 00 10 ÿ ..H... 0048: 00 00 00 00 04 00 00 00 ........ 0050: 48 4b 30 8a 68 c2 16 8a HK0hÂ. 0058: 00 00 00 00 08 d0 0c 8a .....Ð. 0060: 01 00 00 00 00 00 00 00 ........ 0068: 4a 01 00 00 52 00 00 00 J...R... 0070: 08 00 00 00 00 00 00 00 ........ Event Type: Error Event Source: Service Control Manager Event Category: None Event ID: 7009 Date: 1/8/2006 Time: 2:07:22 PM User: N/A Computer: XPS Description: Timeout (30000 milliseconds) waiting for the SPBBCSvc service to connect. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. |
|
|
|
|
#9 (permalink) |
|
Analyst, Security Team
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP
|
If you have an XP CD please do the following, otherwise move on to the next step:
Click Start>Run and type in sfc /scannow This will check to make sure all protected Windows files are intact. If it finds any problems it may prompt you to insert your XP CD. Make sure you do not need your computer for at least 12 hours before proceeding with this step. This scan may take that long and cannot be aborted. I reccomend you run it overnight. If this is not possible let me know and we will continue another way. Click Start>Run and type in chkdsk /r If it asks you to run chkdsk on restart please click yes, and restart your computer. This will check your hard drive for errors, and correct any minor errors it finds. |
|
|
|
|
#10 (permalink) |
|
Registered User
Join Date: Jan 2006
Posts: 9
OS: XP
|
PC works
You are a genious! The last recommended action seemed to do the trick. I was excited when I saw that it didn't take 5-6 minutes to reboot. I was a little skeptical. I didn't want to declare victory too soon but everything seems to be running smooth again. It feels great to have my computer functioning again after a long month of frusteration. I wish I would have come across this board sooner. I went to a couple of other ones and they were not able help me. You truly had the knowledge and expertise to get my computer working again and for that I want to thank you very, very much.
What exactly went wrong and how can I prevent this from happening again in the future? Thank you! |
|
|
|
|
#11 (permalink) |
|
Analyst, Security Team
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP
|
If chkdsk fixed the problem it means that you hard drive had some bad sectors on it. There are many potential causes of this, one of which is your hard drive is beginning to fail. I would post a thread in the hardware section that describes what happened (a slow boot was solved by running chkdsk /r). They should be able to help you diagnose if your hard drive is still working properly or not.
It is unlikely,but possible that SFC solved the problem. SFC checks Windows files for corruption and replaces them with fresh copies from various backups or an XP CD if found. Your log appears to be clean. If you still have any problems let me know and we will work on diagnosing those through other means. If not, there are just a few more things to go through to finish this off and help prevent future infections. Please post one more time even if you have no problems so we can mark this thread as resolved. Disabling the Viewing of Hidden and System Files
Setting a new Restore Point Go to Start >> Run - type control sysdm.cpl,,4 & press Enter.
Windows Update Make sure to get the latest updates for Windows and Internet Explorer at Microsoft Update Site. Prevention A good virus scanner is a necessity in today's computer environment. Many virus scanners include active components that protect you from infection without even running a scan. Some good free antivirus programs include: AVG Free Avast! Home Edition (Antivirus & Firewall) AntiVir A firewall is the first line of defense standing between the internet and your computer. Some good free firewalls are: Zone Alarm Outpost Tiny Personal Firewall Avast! Home Edition (Antivirus & Firewall) Adaware SE and Spybot SD are a pair of anti-spyware scanners that should be run every week or two. Although there is some overlap there are many pieces of malware that is caught by one of these and not the other, therefore it is recommended you use both to compliment each other. Spybot also contains two other useful pieces. The first is "Immunize", this helps protect your computer against known exploits. The second is "TeaTimer", with this feature enabled you will receive notifications of all changes to the registry such as programs adding themselves to start-up and you default search page being changed. Spyware Blaster is a powerful tool that prevents "drive-by" downloads and other unwanted installations. It also uses no system resources, run it once and you're all set. Spyware Guard Is a realtime protection engine to guard your computer from spyware. This program does for spyware what an antivirus program does for viruses. IE-Spyad is a program that only needs to be run once to protect you from many malicious sites. It adds domains of known adware companies into the Restricted List of Internet Explorer, preventing them from performing malicious actions on your PC. The MVPS HOSTS file is a file you can download and use to replace your regular hosts file. It prevents many sites from performing malicious actions by blocking the sites from ever being accessed. Together these programs form a powerful barrier between the Internet and your computer. However, all the programs stand alone and feel free to eliminate any you are not comfortable with. Any protection you add to your PC is better than no protection at all. Alternative Programs Here are some alternatives that are either less suceptible than others to malware or don't contain malware where similar programs do. Trillian or Miranda-IM - These are Malware free Instant Messenger programs which allow you to connect to multiple IM services in one program! (AOL, Yahoo, ICQ, IRC, MSN) Desktop Weather - Free taskbar weather program that is free, malware free, and resource light. Firefox - This is an increasingly popular alternate browser. Whilst Internet Explorer is not a bad browser, almost every exploit crafted is targeted to take advantage of an IE weakness. Sun's Java - It's much more secure than Microsoft's Java Virtual Machine. |
|
|
|
|
#12 (permalink) |
|
Registered User
Join Date: Jan 2006
Posts: 9
OS: XP
|
I ran the steps of your last post. I will submit a post in the hardware section regarding this issue. I hope I didn't lose any work.
I will also install an additional antivirus program as well as a firewall. I have some of the spyware programs and will make a note to run them more often. Firefox also seems like a great addition. Thank you again for your help. |
|
|
|
|
#13 (permalink) |
|
Analyst, Security Team
Join Date: Jun 2005
Posts: 3,065
OS: Windows XP
|
Sorry about the confusion. You only need one antivirus/firewall program running on your PC at a time. I include those items to show alternatives to the programs people already have. Having more than one antivirus/firewall installed at a time is actually counterproductive and could potentially cause system crashes.
|
|
|
| Thread Tools | |
|
|