Go Back   Cyber Tech Help Support Forums > Operating Systems > Older Windows Versions > Windows Vista

Notices

Windows Vista Problem solving for the Windows Vista Operating System. Please remember to state which edition of Vista you are using - Home Basic, Home Premium, Business, Ultimate etc. and whether you are using the 32-bit or 64-bit version if you know.

Reply
 
Topic Tools
  #16  
Old April 19th, 2008, 06:10 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
Folder: \Microsoft\Windows\Bluetooth
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Bluetooth\UninstallDeviceTask
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: BthUdTask.exe $(Arg0)
Start In: N/A
Comment: Uninstalls the PnP device associated with the specified Bluetooth service ID
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\CertificateServicesClient
HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\Syste mTask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:44:17 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\Syste mTask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:44:17 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:32 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:32 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A
Reply With Quote
  #17  
Old April 19th, 2008, 06:11 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
Folder: \Microsoft\Windows\Customer Experience Improvement Program
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Customer Experience Improvement Program\Consolidator
Next Run Time: 4/19/2008 2:00:00 AM
Status: Could not start
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:53:54 PM
Last Result: -2147479295
Author: Microsoft Corporation
Task To Run: %SystemRoot%\System32\wsqmcons.exe
Start In: N/A
Comment: If the user has consented to participate in the Windows Customer Experience Improvement Program, this job collects and sends usage data to Microsoft.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: One Time Only, Hourly
Start Time: 12:00:00 AM
Start Date: 1/2/2004
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: 19 Hour(s), 0 Minute(s)
Repeat: Until: Time: None
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Customer Experience Improvement Program\OptinNotification
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:53:32 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %SystemRoot%\System32\wsqmcons.exe -n 0x1C577FA2B69CAD0
Start In: N/A
Comment: Microsoft Windows Software Quality Metrics Optin Notification.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Administrators
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Defrag
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Defrag\ManualDefrag
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 2/13/2008 9:14:31 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\defrag.exe -c
Start In: N/A
Comment: This task defragments the computers hard disk drives.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Defrag\ScheduledDefrag
Next Run Time: 4/23/2008 2:00:00 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/16/2008 9:00:06 PM
Last Result: 267014
Author: Microsoft Corporation
Task To Run: %windir%\system32\defrag.exe -c -i
Start In: N/A
Comment: This task defragments the computers hard disk drives.
Scheduled Task State: Enabled
Idle Time: Only Start If Idle for 3 minutes, If Not Idle Retry For 525600 minutes Stop the task if Idle State end
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Weekly
Start Time: 2:00:00 AM
Start Date: 2/13/2008
End Date: N/A
Days: WED
Months: Every 1 week(s)
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

Folder: \Microsoft\Windows\DiskDiagnostic
HostName: JOSH-PC
TaskName: \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector
Next Run Time: 4/20/2008 1:00:00 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
Start In: N/A
Comment: The Windows Disk Diagnostic reports general disk and system information to Microsoft for users participating in the Customer Experience Program.
Scheduled Task State: Enabled
Idle Time: Only Start If Idle for 10 minutes, If Not Idle Retry For 60 minutes
Power Management: No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Weekly
Start Time: 1:00:00 AM
Start Date: 1/1/2004
End Date: N/A
Days: SUN
Months: Every 2 week(s)
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver
Next Run Time: Disabled
Status:
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: %windir%\system32\DFDWiz.exe
Start In: N/A
Comment: The Microsoft-Windows-DiskDiagnosticResolver warns users about faults reported by hard disks that support the Self Monitoring and Reporting Technology (S.M.A.R.T.) standard. This task is triggered automatically by the Diagnostic Policy Service when a S.
Scheduled Task State: Disabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Disabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Media Center
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\ehDRMInit
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/9/2008 10:58:04 AM
Last Result: 0
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
Start In: N/A
Comment: Privileged Media Center DRM initialization job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\mcupdate
Next Run Time: 4/19/2008 12:58:48 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 7:55:54 PM
Last Result: 0
Author: N/A
Task To Run: %SystemRoot%\ehome\mcupdate $(Arg0) -gc
Start In: N/A
Comment: Check for Media Center updates.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: NETWORK SERVICE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Daily
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: Every 1 day(s)
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\OCURActivate
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
Start In: N/A
Comment: Privileged Media Center OCUR activation job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\OCURDiscovery
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery
Start In: N/A
Comment: Privileged Media Center OCUR discovery job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\UpdateRecordPath
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/4/2008 10:35:21 PM
Last Result: 0
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
Start In: N/A
Comment: Privileged Media Center Recorder Permission setting job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\MobilePC
HostName: JOSH-PC
TaskName: \Microsoft\Windows\MobilePC\HotStart
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:32 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Launches applications configured for Windows HotStart
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Authenticated Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A
Reply With Quote
  #18  
Old April 19th, 2008, 06:11 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
HostName: JOSH-PC
TaskName: \Microsoft\Windows\MobilePC\TMM
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:34 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Microsoft Transient Multi-Monitor Manager
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Authenticated Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\MUI
HostName: JOSH-PC
TaskName: \Microsoft\Windows\MUI\LPRemove
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:58:07 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\lpremove.exe
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\MUI\LPRemove
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:58:07 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\lpremove.exe
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: One Time Only
Start Time: 6:27:52 PM
Start Date: 1/4/2008
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\MUI\Mcbuilder
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/8/2008 4:16:47 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: C:\Windows\System32\mcbuilder.exe
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Multimedia
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Multimedia\SystemSoundsService
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:32 PM
Last Result: 267009
Author: N/A
Task To Run: COM handler
Start In: N/A
Comment: System Sounds User Mode Agent
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\NetworkAccessProtection
HostName: JOSH-PC
TaskName: \Microsoft\Windows\NetworkAccessProtection\NAPStat us UI
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:37 PM
Last Result: 267014
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Launches the Network Access Protection Status UI
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 00:00:03
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\NetworkAccessProtection\NAPStat us UI
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:37 PM
Last Result: 267014
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Launches the Network Access Protection Status UI
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 00:00:03
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\PLA
INFO: There are no scheduled tasks presently available at your access level.

Folder: \Microsoft\Windows\PLA\System
HostName: JOSH-PC
TaskName: \Microsoft\Windows\PLA\System\ConvertLogEntries
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 11:00:01 PM
Last Result: 0
Author: N/A
Task To Run: %windir%\system32\rundll32.exe %windir%\system32\pla.dll,PlaConvertLogEntries
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\RAC
HostName: JOSH-PC
TaskName: \Microsoft\Windows\RAC\RACAgent
Next Run Time: N/A
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 11:58:11 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\RacAgent.exe
Start In: N/A
Comment: Microsoft Reliability Analysis task started periodically to process system reliability data.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: LOCAL SERVICE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\RAC\RACAgent
Next Run Time: N/A
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 11:58:11 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\RacAgent.exe
Start In: N/A
Comment: Microsoft Reliability Analysis task started periodically to process system reliability data.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: LOCAL SERVICE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\RemoteAssistance
HostName: JOSH-PC
TaskName: \Microsoft\Windows\RemoteAssistance\RemoteAssistan ceTask
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: %windir%\system32\RAServer.exe /offerraupdate
Start In: %windir%
Comment: Checks group policy for changes relevant to Remote Assistance
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A
Reply With Quote
  #19  
Old April 19th, 2008, 06:13 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
HostName: JOSH-PC
TaskName: \Microsoft\Windows\RemoteAssistance\RemoteAssistan ceTask
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: %windir%\system32\RAServer.exe /offerraupdate
Start In: %windir%
Comment: Checks group policy for changes relevant to Remote Assistance
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\RestartManager
HostName: JOSH-PC
TaskName: \Microsoft\Windows\RestartManager\{FC3FA05B-4767-49bf-8046-0D84768B1051}
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive only
Last Run Time: 4/17/2008 11:33:52 PM
Last Result: 0
Author: Microsoft
Task To Run: C:\Windows\system32\rmclient.exe \\.\pipe\RestartManager-{D354AD7C-2320-4ece-AE6A-FB7A0BC5638E}
Start In: C:\Windows\system32
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Josh-PC\Josh
Delete Task If Not Rescheduled: PT0S
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Shell
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Shell\CrawlStartPages
Next Run Time: N/A
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 11:40:29 PM
Last Result: 267045
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Index all crawl type start addresses.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: LOCAL SERVICE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At idle time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\SideShow
HostName: JOSH-PC
TaskName: \Microsoft\Windows\SideShow\AutoWake
Next Run Time: Disabled
Status:
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: This task automatically wakes the computer and then puts it to sleep when automatic wake is turned on for a Windows SideShow-compatible device.
Scheduled Task State: Disabled
Idle Time: Disabled
Power Management:
Run As User: LOCAL SERVICE
Delete Task If Not Rescheduled: Disabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\SideShow\GadgetManager
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: This task manages and synchronizes metadata for the installed gadgets on a Windows SideShow-compatible device.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\SideShow\SessionAgent
Next Run Time: Disabled
Status: Could not start
Logon Mode: Interactive/Background
Last Run Time: 12/27/2007 12:15:25 AM
Last Result: -2147023729
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: This task manages the session behavior when multiple user accounts exist on a Windows SideShow-compatible device.
Scheduled Task State: Disabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Disabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\SideShow\SystemDataProviders
Next Run Time: Disabled
Status: Could not start
Logon Mode: Interactive/Background
Last Run Time: 12/27/2007 12:15:40 AM
Last Result: -2147023729
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: This task provides system data for the clock, power source, wireless network strength, and volume on a Windows SideShow-compatible device.
Scheduled Task State: Disabled
Idle Time: Disabled
Power Management:
Run As User: LOCAL SERVICE
Delete Task If Not Rescheduled: Disabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\SystemRestore
HostName: JOSH-PC
TaskName: \Microsoft\Windows\SystemRestore\SR
Next Run Time: 4/20/2008 12:00:00 AM
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 12:00:00 AM
Last Result: 267045
Author: Microsoft Corporation
Task To Run: %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
Start In: N/A
Comment: This task creates regular system protection points.
Scheduled Task State: Enabled
Idle Time: Only Start If Idle for 10 minutes, If Not Idle Retry For 525600 minutes
Power Management: No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Daily
Start Time: 12:00:00 AM
Start Date: 6/14/2005
End Date: N/A
Days: Every 1 day(s)
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\SystemRestore\SR
Next Run Time: 4/20/2008 12:00:00 AM
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 12:00:00 AM
Last Result: 267045
Author: Microsoft Corporation
Task To Run: %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
Start In: N/A
Comment: This task creates regular system protection points.
Scheduled Task State: Enabled
Idle Time: Only Start If Idle for 10 minutes, If Not Idle Retry For 525600 minutes
Power Management: No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Tcpip
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Tcpip\IpAddressConflict1
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: rundll32 ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Tcpip\IpAddressConflict2
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: rundll32 ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A
Reply With Quote
  #20  
Old April 19th, 2008, 06:13 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
Folder: \Microsoft\Windows\TextServicesFramework
HostName: JOSH-PC
TaskName: \Microsoft\Windows\TextServicesFramework\MsCtfMoni tor
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:43:32 PM
Last Result: 267009
Author: N/A
Task To Run: COM handler
Start In: N/A
Comment: TextServicesFramework monitor task
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\UPnP
HostName: JOSH-PC
TaskName: \Microsoft\Windows\UPnP\UPnPHostConfig
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: sc.exe config upnphost start= auto
Start In: N/A
Comment: Set UPnPHost service to Auto-Start
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\WDI
HostName: JOSH-PC
TaskName: \Microsoft\Windows\WDI\ResolutionHost
Next Run Time: N/A
Status: Could not start
Logon Mode: Interactive/Background
Last Run Time: 4/17/2008 11:34:38 PM
Last Result: -2147023829
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: The Windows Diagnostic Infrastructure Resolution host enables interactive resolutions for system problems detected by the Diagnostic Policy Service. It is triggered when necessary by the Diagnostic Policy Service in the appropriate user session. If the
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Windows Error Reporting
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Windows Error Reporting\QueueReporting
Next Run Time: N/A
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/18/2008 5:56:32 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\wermgr.exe -queuereporting
Start In: N/A
Comment: Windows Error Reporting task to process queued reports.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Wired
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Wired\GatherWiredInfo
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: %windir%\system32\gatherWiredInfo.vbs
Start In: $(Arg1)
Comment: Wired information collector
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Wireless
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Wireless\GatherWirelessInfo
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: %windir%\system32\gatherWirelessInfo.vbs
Start In: $(Arg1)
Comment: Wireless information collector
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows Defender
HostName: JOSH-PC
TaskName: \Microsoft\Windows Defender\MP Scheduled Scan
Next Run Time: 4/19/2008 1:31:00 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: c:\program files\windows defender\MpCmdRun.exe Scan -RestrictPrivileges
Start In: N/A
Comment: Scheduled Scan
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Daily
Start Time: 1:31:00 AM
Start Date: 1/1/2000
End Date: 1/1/2100
Days: Every 1 day(s)
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

Folder: \PC-Doctor
HostName: JOSH-PC
TaskName: \PC-Doctor\Scheduled Maintanence
Next Run Time: 4/30/2008 10:00:00 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: PC-Doctor, Inc.
Task To Run: C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe -fh ./scripts/monthly.xml
Start In: N/A
Comment: Scheduled Maintenance is a monthly diagnostic check that verifies the integrity of your computer hardware.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Administrators
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Monthly
Start Time: 10:00:00 AM
Start Date: 8/14/2007
End Date: N/A
Days: 32
Months: Every month
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled
Reply With Quote
  #21  
Old April 19th, 2008, 07:17 AM
AnnMarie's Avatar
AnnMarie AnnMarie is offline
CTH Subscriber
 
Join Date: Oct 2001
O/S: Windows Vista 32-bit
Location: New Zealand
Posts: 59,810
You have a Sun Java startup showing that looks rather odd to me. Go to Add/Remove Programs in Control Panel and uninstall all versions Java/JRE (Sun Java Runtime Environment/J2SE Runtime Environment - see below) and reboot.

Java(TM) 6 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Java(TM) 6 Update 5 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Java(TM) SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}

When you have done that, please shutdown. Restart and post a new Deckards log (Main.txt only). Take note of whether you got the error message when you shutdown this time.

Next go here and download the latest version of Sun Java (Java Runtime Environment (JRE) 6 Update 6 - offline version) to your Desktop. Rightclick on the downloaded file and choose "Run as Administrator". Once installed, shutdown again. Restart and post another Deckards log please. Also tell me if you still got the error message.
Reply With Quote
  #22  
Old April 19th, 2008, 06:35 PM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
thanks for taking the time to help btw

im currently starting the scan again, but while im waiting.. i did not get the message after i shutdown after the restart after i uninstalled java, but sometimes i got the message, somtimes i didn't, so ill post a reply if this doesnt work.

idDeckard's System Scanner v20071014.68
Run by Josh on 2008-04-19 12:32:19
Computer is in Normal Mode.
--------------------------------------------------------------------------------



-- HijackThis Clone ------------------------------------------------------------


Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-04-19 12:32:49
Platform: Windows Vista Service Pack 1 (6.00.6001)
MSIE: Internet Explorer (7.00.6000.16386)
Boot mode: Normal

Running processes:
C:\Windows\System32\dwm.exe
C:\Windows\System32\taskeng.exe
C:\Windows\explorer.exe
C:\Windows\System32\mobsync.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Grisoft\AVG7\avgcc.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\microsoft shared\Windows Live\WLLoginProxy.exe
C:\hp\KBD\kbd.exe
C:\Users\Josh\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\MM1F4YUE\dss[1].exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runescape.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...ion&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TY...ion&pf=desktop
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe" -delete
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
O4 - Global Startup: Snapfish Media Detector.lnk = C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} () - http://ak.exe.imgfarm.com/images/noc...tup1.0.1.0.cab
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get.../ultrashim.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: avgwlntf - C:\Windows\system32\avgwlntf.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgrssvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgemc.exe
O23 - Service: FreezeScreenSaver - Unknown owner - C:\Windows\System32\FreezeScreenSaver.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCom\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe


--
End of file - 8119 bytes

-- Files created between 2008-03-19 and 2008-04-19 -----------------------------

2008-04-16 23:00:41 0 d-------- C:\Program Files\CCleaner
2008-04-16 22:16:50 0 d-------- C:\Windows\pss
2008-04-16 21:50:42 0 d-------- C:\Program Files\Apple Software Update
2008-04-15 01:26:54 0 d-------- C:\PerfLogs
2008-04-15 01:21:10 98304 --a------ C:\Windows\RTKAUDIOSERVICE.EXE <Not Verified; Realtek Semiconductor; Realtek Audio Service>
2008-04-13 23:23:24 0 d-------- C:\Windows\system32\Adobe
2008-04-11 18:51:13 0 d-------- C:\Program Files\CamStudio
2008-04-11 18:27:59 0 d-------- C:\Users\All Users\TEMP
2008-04-02 23:15:02 0 d-------- C:\Program Files\iPod
2008-04-02 23:15:01 0 d-------- C:\Program Files\iTunes
2008-04-02 23:14:18 0 d-------- C:\Program Files\QuickTime
2008-03-20 22:25:04 0 d-------- C:\Program Files\Edible Entertainment, Inc
2008-03-20 22:25:03 11739155 --a------ C:\Windows\system32\Astronomy 2005.scr <Not Verified; Axialis Software; Axialis Screen Saver Producer>


-- Find3M Report ---------------------------------------------------------------

2008-04-19 12:24:08 0 d-------- C:\Program Files\Java
2008-04-19 12:24:07 0 d-------- C:\Program Files\Common Files
2008-04-16 23:00:03 0 d-------- C:\Users\Josh\AppData\Roaming\AVG7
2008-04-15 01:33:28 174 --ahs---- C:\Program Files\desktop.ini
2008-04-15 01:28:28 0 d-------- C:\Program Files\Windows Sidebar
2008-04-15 01:28:28 0 d-------- C:\Program Files\Windows Calendar
2008-04-15 01:28:28 0 d-------- C:\Program Files\Movie Maker
2008-04-15 01:28:27 0 d-------- C:\Program Files\Windows Mail
2008-04-15 01:28:26 0 d-------- C:\Program Files\Windows Collaboration
2008-04-15 01:28:25 0 d-------- C:\Program Files\Windows Photo Gallery
2008-04-15 01:28:25 0 d-------- C:\Program Files\Windows Journal
2008-04-15 01:28:21 0 d-------- C:\Program Files\Windows Defender
2008-04-14 23:55:00 0 d-------- C:\Program Files\Coupons
2008-04-14 23:52:53 0 d-------- C:\Program Files\Common Files\Symantec Shared
2008-04-14 23:21:25 0 d-------- C:\Program Files\Yahoo!
2008-04-14 23:21:25 0 d-------- C:\Program Files\MyWebSearch
2008-04-11 18:30:22 0 d-------- C:\Users\Josh\AppData\Roaming\muvee Technologies
2008-04-07 21:01:41 0 d-------- C:\Users\Josh\AppData\Roaming\LimeWire
2008-03-08 15:54:30 0 d-------- C:\Program Files\Microsoft Silverlight
2008-03-03 16:20:12 0 d-------- C:\Program Files\Astro Gemini Software
2008-03-02 04:17:37 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-03-02 04:16:14 0 d-------- C:\Program Files\Veoh Networks
2008-02-27 22:28:29 0 d-------- C:\Program Files\LimeWire
2008-02-27 20:58:16 0 d-------- C:\Users\Josh\AppData\Roaming\PlayFirst
2008-01-21 19:47:45 94 --a------ C:\Users\Josh\AppData\Roaming\wklnhst.dat


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"@"="" []
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [01/19/2008 02:38 AM]
"RtHDVCpl"="RtHDVCpl.exe" [01/15/2008 11:26 AM C:\Windows\RtHDVCpl.exe]
"OsdMaestro"="C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [02/15/2007 06:59 AM]
"KBD"="C:\HP\KBD\KbdStub.EXE" [12/08/2006 11:16 AM]
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [07/12/2007 07:36 PM]
"HP Software Update"="c:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [05/08/2007 07:24 PM]
"SunJavaUpdateReg"="C:\Windows\system32\jureg. exe" [02/22/2008 05:25 AM]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [03/28/2008 11:37 PM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [03/30/2008 10:36 AM]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [04/18/2007 10:01 AM]
"HP Health Check Scheduler"="c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [05/24/2007 04:13 PM]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [04/18/2008 05:45 PM]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [08/28/2007 01:59 AM]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [08/28/2007 01:59 AM]
"NvMediaCenter"="C:\Windows\system32\NvMcTray. dll" [08/28/2007 01:59 AM]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"Aim6"="" []
"@"="" []
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [01/19/2008 02:33 AM]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [01/19/2008 02:33 AM]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\runonce]
"Launcher"=%WINDIR%\SMINST\launcher.exe

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Snapfish Media Detector.lnk - C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe [5/7/2007 1:35:56 PM]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\policies\system]
"ConsentPromptBehaviorAdmin"=2 (0x2)
"EnableUIADesktopToggle"=0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgwlntf]
avgwlntf.dll 02/26/2008 01:01 AM 9216 C:\Windows\System32\avgwlntf.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\AppInfo]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\KeyIso]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\NTDS]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\ProfSvc]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\sacsvr]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\SWPRV]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\TabletInputService]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\TBS]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\TrustedInstaller]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\VDS]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\volmgr.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\volmgrx.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
@="IEEE 1394 Bus host controllers"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
@="SBP2 IEEE 1394 Devices"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
@="SecurityDevices"

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalService nsi lltdsvc SSDPSRV upnphost SCardSvr w32time EventSystem RemoteRegistry WinHttpAutoProxySvc lanmanworkstation TBS SLUINotify THREADORDER fdrespub netprofm fdphost wcncsvc QWAVE Mcx2Svc WebClient SstpSvc
LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum


[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
C:\Windows\system32\unregmp2.exe /ShowWMP

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI



-- End of Deckard's System Scanner: finished at 2008-04-19 12:33:59 ------------
Reply With Quote
  #23  
Old April 19th, 2008, 06:46 PM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
this is the log after installing java and reboot

Deckard's System Scanner v20071014.68
Run by Josh on 2008-04-19 12:44:14
Computer is in Normal Mode.
--------------------------------------------------------------------------------



-- HijackThis Clone ------------------------------------------------------------


Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-04-19 12:44:44
Platform: Windows Vista Service Pack 1 (6.00.6001)
MSIE: Internet Explorer (7.00.6000.16386)
Boot mode: Normal

Running processes:
C:\Windows\System32\taskeng.exe
C:\Windows\System32\dwm.exe
C:\Windows\explorer.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\hp\KBD\KbdStub.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
C:\Program Files\Grisoft\AVG7\avgcc.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe
C:\Windows\System32\mobsync.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\microsoft shared\Windows Live\WLLoginProxy.exe
C:\Users\Josh\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\0J82VAPM\dss[1].exe
C:\hp\KBD\kbd.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runescape.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...ion&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TY...ion&pf=desktop
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe" -delete
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
O4 - Global Startup: Snapfish Media Detector.lnk = C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} () - http://ak.exe.imgfarm.com/images/noc...tup1.0.1.0.cab
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get.../ultrashim.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: avgwlntf - C:\Windows\system32\avgwlntf.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgrssvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgemc.exe
O23 - Service: FreezeScreenSaver - Unknown owner - C:\Windows\System32\FreezeScreenSaver.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCom\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe


--
End of file - 8725 bytes

-- Files created between 2008-03-19 and 2008-04-19 -----------------------------

2008-04-19 12:40:01 0 d-------- C:\Program Files\Common Files\Java
2008-04-16 23:00:41 0 d-------- C:\Program Files\CCleaner
2008-04-16 22:16:50 0 d-------- C:\Windows\pss
2008-04-16 21:50:42 0 d-------- C:\Program Files\Apple Software Update
2008-04-15 01:26:54 0 d-------- C:\PerfLogs
2008-04-15 01:21:10 98304 --a------ C:\Windows\RTKAUDIOSERVICE.EXE <Not Verified; Realtek Semiconductor; Realtek Audio Service>
2008-04-13 23:23:24 0 d-------- C:\Windows\system32\Adobe
2008-04-11 18:51:13 0 d-------- C:\Program Files\CamStudio
2008-04-11 18:27:59 0 d-------- C:\Users\All Users\TEMP
2008-04-02 23:15:02 0 d-------- C:\Program Files\iPod
2008-04-02 23:15:01 0 d-------- C:\Program Files\iTunes
2008-04-02 23:14:18 0 d-------- C:\Program Files\QuickTime
2008-03-20 22:25:04 0 d-------- C:\Program Files\Edible Entertainment, Inc
2008-03-20 22:25:03 11739155 --a------ C:\Windows\system32\Astronomy 2005.scr <Not Verified; Axialis Software; Axialis Screen Saver Producer>


-- Find3M Report ---------------------------------------------------------------

2008-04-19 12:40:51 0 d-------- C:\Program Files\Java
2008-04-19 12:40:01 0 d-------- C:\Program Files\Common Files
2008-04-16 23:00:03 0 d-------- C:\Users\Josh\AppData\Roaming\AVG7
2008-04-15 01:33:28 174 --ahs---- C:\Program Files\desktop.ini
2008-04-15 01:28:28 0 d-------- C:\Program Files\Windows Sidebar
2008-04-15 01:28:28 0 d-------- C:\Program Files\Windows Calendar
2008-04-15 01:28:28 0 d-------- C:\Program Files\Movie Maker
2008-04-15 01:28:27 0 d-------- C:\Program Files\Windows Mail
2008-04-15 01:28:26 0 d-------- C:\Program Files\Windows Collaboration
2008-04-15 01:28:25 0 d-------- C:\Program Files\Windows Photo Gallery
2008-04-15 01:28:25 0 d-------- C:\Program Files\Windows Journal
2008-04-15 01:28:21 0 d-------- C:\Program Files\Windows Defender
2008-04-14 23:55:00 0 d-------- C:\Program Files\Coupons
2008-04-14 23:52:53 0 d-------- C:\Program Files\Common Files\Symantec Shared
2008-04-14 23:21:25 0 d-------- C:\Program Files\Yahoo!
2008-04-14 23:21:25 0 d-------- C:\Program Files\MyWebSearch
2008-04-11 18:30:22 0 d-------- C:\Users\Josh\AppData\Roaming\muvee Technologies
2008-04-07 21:01:41 0 d-------- C:\Users\Josh\AppData\Roaming\LimeWire
2008-03-08 15:54:30 0 d-------- C:\Program Files\Microsoft Silverlight
2008-03-03 16:20:12 0 d-------- C:\Program Files\Astro Gemini Software
2008-03-02 04:17:37 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-03-02 04:16:14 0 d-------- C:\Program Files\Veoh Networks
2008-02-27 22:28:29 0 d-------- C:\Program Files\LimeWire
2008-02-27 20:58:16 0 d-------- C:\Users\Josh\AppData\Roaming\PlayFirst
2008-01-21 19:47:45 94 --a------ C:\Users\Josh\AppData\Roaming\wklnhst.dat


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"@"="" []
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [01/19/2008 02:38 AM]
"RtHDVCpl"="RtHDVCpl.exe" [01/15/2008 11:26 AM C:\Windows\RtHDVCpl.exe]
"OsdMaestro"="C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [02/15/2007 06:59 AM]
"KBD"="C:\HP\KBD\KbdStub.EXE" [12/08/2006 11:16 AM]
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [07/12/2007 07:36 PM]
"HP Software Update"="c:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [05/08/2007 07:24 PM]
"SunJavaUpdateReg"="C:\Windows\system32\jureg. exe" [02/22/2008 05:25 AM]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [03/28/2008 11:37 PM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [03/30/2008 10:36 AM]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [04/18/2007 10:01 AM]
"HP Health Check Scheduler"="c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [05/24/2007 04:13 PM]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [04/18/2008 05:45 PM]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [08/28/2007 01:59 AM]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [08/28/2007 01:59 AM]
"NvMediaCenter"="C:\Windows\system32\NvMcTray. dll" [08/28/2007 01:59 AM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [03/25/2008 04:28 AM]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"Aim6"="" []
"@"="" []
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [01/19/2008 02:33 AM]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [01/19/2008 02:33 AM]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\runonce]
"Launcher"=%WINDIR%\SMINST\launcher.exe

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Snapfish Media Detector.lnk - C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe [5/7/2007 1:35:56 PM]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\policies\system]
"ConsentPromptBehaviorAdmin"=2 (0x2)
"EnableUIADesktopToggle"=0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgwlntf]
avgwlntf.dll 02/26/2008 01:01 AM 9216 C:\Windows\System32\avgwlntf.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\AppInfo]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\KeyIso]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\NTDS]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\ProfSvc]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\sacsvr]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\SWPRV]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\TabletInputService]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\TBS]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\TrustedInstaller]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\VDS]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\volmgr.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\volmgrx.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
@="IEEE 1394 Bus host controllers"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
@="SBP2 IEEE 1394 Devices"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
@="SecurityDevices"

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalService nsi lltdsvc SSDPSRV upnphost SCardSvr w32time EventSystem RemoteRegistry WinHttpAutoProxySvc lanmanworkstation TBS SLUINotify THREADORDER fdrespub netprofm fdphost wcncsvc QWAVE Mcx2Svc WebClient SstpSvc
LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum


[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
C:\Windows\system32\unregmp2.exe /ShowWMP

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI



-- End of Deckard's System Scanner: finished at 2008-04-19 12:45:51 ------------
Reply With Quote
  #24  
Old April 20th, 2008, 01:35 AM
AnnMarie's Avatar
AnnMarie AnnMarie is offline
CTH Subscriber
 
Join Date: Oct 2001
O/S: Windows Vista 32-bit
Location: New Zealand
Posts: 59,810
Are you still getting the error message?

I need to see a file please. Download the latest version of Combofix.exe from here and save it to your C folder (C:\ComboFix.exe).

Open notepad and copy and paste the text in the codebox below into it:

Code:
Suspect::
C:\Windows\system32\jureg.exe
Go to File > Save As and save the file as CFScript.txt and set the location to your Desktop. Drag CFScript.txt and drop it into ComboFix.exe. See below:



ComboFix will run again. When the fix completes it will create a C:\ComboFix.txt log. Please post that log in your next reply.

Additionally, ComboFix will generate a zipped file on your desktop called Submit [Date Time].zip. Please send this file to anniefriday@xtra.co.nz and include a link to this thread. Title your email "Requested File".
Reply With Quote
  #25  
Old April 20th, 2008, 02:25 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
Still not receiving the error message since uninstalling java, but here's the log.

Mind if i ask what your looking for?

--------------------------------------------------------------------------

ComboFix 08-04-18.3 - Josh 2008-04-19 20:16:13.1 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.2167 [GMT -5:00]
Running from: C:\Users\Josh\Downloads\ComboFix.exe
Command switches used :: C:\Users\Josh\Desktop\CFScript.txt
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Program Files\FunWebProducts
C:\Program Files\MyWebSearch
C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat

.
((((((((((((((((((((((((( Files Created from 2008-03-20 to 2008-04-20 )))))))))))))))))))))))))))))))
.

2008-04-19 12:40 . 2008-04-19 12:40 <DIR> d-------- C:\Program Files\Common Files\Java
2008-04-18 23:53 . 2008-04-18 23:53 <DIR> d-------- C:\Deckard
2008-04-16 21:50 . 2008-04-16 21:50 <DIR> d-------- C:\Program Files\Apple Software Update
2008-04-15 01:26 . 2008-04-15 01:26 <DIR> d-------- C:\PerfLogs
2008-04-15 01:21 . 2008-01-08 13:10 98,304 --a------ C:\Windows\RTKAUDIOSERVICE.EXE
2008-04-15 00:48 . 2008-01-19 02:33 2,623,488 --a------ C:\Windows\System32\SLsvc.exe
2008-04-15 00:48 . 2008-01-19 02:36 1,541,120 --a------ C:\Windows\System32\onex.dll
2008-04-15 00:46 . 2008-01-19 02:35 9,847,296 --a------ C:\Windows\System32\NlsData000a.dll
2008-04-15 00:45 . 2008-01-19 02:36 704,512 --a------ C:\Windows\System32\SmiEngine.dll
2008-04-15 00:45 . 2008-01-19 02:36 357,888 --a------ C:\Windows\System32\wbemcomn.dll
2008-04-15 00:45 . 2008-01-19 02:34 305,152 --a------ C:\Windows\System32\msdelta.dll
2008-04-15 00:45 . 2008-01-19 02:34 258,560 --a------ C:\Windows\System32\dpx.dll
2008-04-15 00:45 . 2008-01-19 02:34 246,784 --a------ C:\Windows\System32\drvstore.dll
2008-04-15 00:45 . 2008-01-19 02:36 218,624 --a------ C:\Windows\System32\wdscore.dll
2008-04-15 00:45 . 2008-01-19 02:36 139,264 --a------ C:\Windows\System32\SmiInstaller.dll
2008-04-15 00:45 . 2008-01-19 02:33 130,560 --a------ C:\Windows\System32\PkgMgr.exe
2008-04-15 00:45 . 2008-01-19 02:35 35,328 --a------ C:\Windows\System32\mspatcha.dll
2008-04-13 23:23 . 2008-04-17 23:33 <DIR> d-------- C:\Windows\System32\Adobe
2008-04-11 18:51 . 2008-04-11 18:51 <DIR> d-------- C:\Program Files\CamStudio
2008-04-11 18:29 . 2008-04-11 18:30 <DIR> d-------- C:\Users\Josh\AppData\Roaming\muvee Technologies
2008-04-11 18:27 . 2008-04-11 18:27 <DIR> d-------- C:\Users\All Users\TEMP
2008-04-11 18:27 . 2008-04-11 18:27 <DIR> d-------- C:\ProgramData\TEMP
2008-04-08 15:34 . 2008-02-29 02:11 988,216 --a------ C:\Windows\System32\winload.exe
2008-04-08 15:34 . 2008-02-29 02:11 927,288 --a------ C:\Windows\System32\winresume.exe
2008-04-08 15:34 . 2008-02-22 00:05 615,992 --a------ C:\Windows\System32\ci.dll
2008-04-08 15:34 . 2008-02-29 01:53 378,368 --a------ C:\Windows\System32\srcore.dll
2008-04-08 15:34 . 2008-02-28 23:12 318,464 --a------ C:\Windows\System32\rstrui.exe
2008-04-08 15:34 . 2008-02-29 01:53 46,592 --a------ C:\Windows\System32\setbcdlocale.dll
2008-04-08 15:34 . 2008-02-29 02:14 19,000 --a------ C:\Windows\System32\kd1394.dll
2008-04-08 15:34 . 2008-02-28 23:12 14,848 --a------ C:\Windows\System32\srdelayed.exe
2008-04-08 15:33 . 2008-02-28 23:21 2,032,128 --a------ C:\Windows\System32\win32k.sys
2008-04-08 15:33 . 2008-02-21 21:50 1,383,424 --a------ C:\Windows\System32\mshtml.tlb
2008-04-08 15:33 . 2008-02-22 00:01 826,880 --a------ C:\Windows\System32\wininet.dll
2008-04-08 15:33 . 2008-02-21 23:57 295,936 --a------ C:\Windows\System32\gdi32.dll
2008-04-08 15:33 . 2008-02-29 01:53 40,960 --a------ C:\Windows\System32\srclient.dll
2008-04-08 15:33 . 2008-02-29 01:35 6,656 --a------ C:\Windows\System32\kbd106n.dll
2008-04-02 23:15 . 2008-04-02 23:15 <DIR> d-------- C:\Program Files\iTunes
2008-04-02 23:15 . 2008-04-02 23:15 <DIR> d-------- C:\Program Files\iPod
2008-04-02 23:15 . 2008-04-02 23:15 54,156 --ah----- C:\Windows\QTFont.qfn
2008-04-02 23:15 . 2008-04-02 23:15 1,409 --a------ C:\Windows\QTFont.for
2008-04-02 23:14 . 2008-04-02 23:14 <DIR> d-------- C:\Program Files\QuickTime
2008-03-28 23:37 . 2008-03-28 23:37 90,112 --a------ C:\Windows\System32\QuickTimeVR.qtx
2008-03-28 23:37 . 2008-03-28 23:37 57,344 --a------ C:\Windows\System32\QuickTime.qts
2008-03-22 15:57 . 2007-11-14 15:18 553 --a------ C:\Windows\USetup.iss
2008-03-22 15:56 . 2008-01-15 11:26 4,874,240 --a------ C:\Windows\RtHDVCpl.exe
2008-03-22 15:56 . 2008-01-07 19:30 2,156,544 --a------ C:\Windows\System32\RtkAPO.dll
2008-03-22 15:56 . 2008-01-15 19:19 2,047,576 --a------ C:\Windows\System32\drivers\RTKVHDA.sys
2008-03-22 15:56 . 2007-11-07 17:31 1,191,936 --a------ C:\Windows\RtlUpd.exe
2008-03-22 15:56 . 2008-01-09 18:52 636,416 --a------ C:\Windows\System32\RtkPgExt.dll
2008-03-22 15:56 . 2007-11-13 12:35 532,480 --a------ C:\Windows\System32\RTSndMgr.cpl
2008-03-22 15:56 . 2008-01-14 16:18 29,696 --a------ C:\Windows\System32\RtkCoInst.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2008-04-19 22:19 --------- d-----w C:\Program Files\HP
2008-04-19 17:40 --------- d-----w C:\Program Files\Java
2008-04-17 04:00 --------- d-----w C:\Users\Josh\AppData\Roaming\AVG7
2008-04-15 06:33 174 --sha-w C:\Program Files\desktop.ini
2008-04-15 06:28 --------- d-----w C:\Program Files\Windows Sidebar
2008-04-15 06:28 --------- d-----w C:\Program Files\Windows Photo Gallery
2008-04-15 06:28 --------- d-----w C:\Program Files\Windows Mail
2008-04-15 06:28 --------- d-----w C:\Program Files\Windows Journal
2008-04-15 06:28 --------- d-----w C:\Program Files\Windows Defender
2008-04-15 06:28 --------- d-----w C:\Program Files\Windows Collaboration
2008-04-15 06:28 --------- d-----w C:\Program Files\Windows Calendar
2008-04-15 06:17 82,432 ----a-w C:\Windows\System32\axaltocm.dll
2008-04-15 06:17 101,888 ----a-w C:\Windows\System32\ifxcardm.dll
2008-04-15 04:55 --------- d-----w C:\Program Files\Coupons
2008-04-15 04:52 --------- d-----w C:\ProgramData\Symantec
2008-04-15 04:52 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-04-15 04:21 --------- d-----w C:\Program Files\Yahoo!
2008-04-08 20:54 --------- d-----w C:\ProgramData\Microsoft Help
2008-04-08 02:01 --------- d-----w C:\Users\Josh\AppData\Roaming\LimeWire
2008-03-31 13:00 --------- d-----w C:\ProgramData\avg7
2008-03-22 20:56 319,456 ----a-w C:\Windows\DIFxAPI.dll
2008-03-13 22:44 53,768 ----a-w C:\Windows\system32\drivers\avgwfp.sys
2008-03-08 20:54 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-03-03 21:21 --------- d--h--w C:\ProgramData\yahoo!
2008-03-03 21:20 --------- d-----w C:\Program Files\Astro Gemini Software
2008-03-02 09:17 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-03-02 09:16 --------- d-----w C:\Program Files\Veoh Networks
2008-02-28 03:28 --------- d-----w C:\Program Files\LimeWire
2008-02-28 01:58 --------- d-----w C:\Users\Josh\AppData\Roaming\PlayFirst
2008-02-28 01:58 --------- d-----w C:\ProgramData\PlayFirst
2008-02-28 01:57 --------- d-----w C:\ProgramData\WildTangent
2008-02-26 06:01 9,216 ----a-w C:\Windows\System32\avgwlntf.dll
2008-02-26 06:00 --------- d-----w C:\ProgramData\Grisoft
2008-02-22 10:25 54,672 ----a-w C:\Windows\System32\jureg.exe
2008-01-29 17:02 107,368 ----a-w C:\Windows\System32\GEARAspi.dll
2008-01-22 00:47 94 ----a-w C:\Users\Josh\AppData\Roaming\wklnhst.dat
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"Aim6"="" []
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2008-01-19 02:33 125952]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 02:33 202240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2008-01-19 02:38 1008184]
"RtHDVCpl"="RtHDVCpl.exe" [2008-01-15 11:26 4874240 C:\Windows\RtHDVCpl.exe]
"OsdMaestro"="C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [2007-02-15 06:59 118784]
"KBD"="C:\HP\KBD\KbdStub.EXE" [2006-12-08 11:16 65536]
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2007-07-12 19:36 178712]
"SunJavaUpdateReg"="C:\Windows\system32\jureg. exe" [2008-02-22 05:25 54672]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-03-28 23:37 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-03-30 10:36 267048]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2007-04-18 10:01 65536]
"HP Health Check Scheduler"="c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2007-05-24 16:13 71176]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-04-18 17:45 579584]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [2008-03-25 04:28 144784]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-08-09 05:30 86016]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-08-09 05:30 8466432]
"NvMediaCenter"="C:\Windows\system32\NvMcTray. dll" [2007-08-09 05:30 81920]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 16:24 54840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\RunOnce]
"Launcher"="%WINDIR%\SMINST\launcher.exe" [ ]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Cur rentVersion\Run]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2008-02-26 01:00 219136]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Snapfish Media Detector.lnk - C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe [2007-05-07 13:35:56 1273856]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgwlntf]
avgwlntf.dll 2008-02-26 01:01 9216 C:\Windows\System32\avgwlntf.dll

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UacDisableNotify"=dword:00000001
"InternetSettingsDisableNotify"=dword:00000001
"AutoUpdateDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpo licy\FirewallRules]
"{E6CEB3AF-5D67-42EE-A7FD-B7F9F90EBFD9}"= UDP:C:\Program Files\earthlink totalaccess\TaskPanl.exe:taskpanl
"{948485AE-7C41-4FDC-8463-761FD55C64F8}"= TCP:C:\Program Files\earthlink totalaccess\TaskPanl.exe:taskpanl
"{430E720E-6125-4CB4-843F-75F1EE8C3C73}"= UDP:C:\Program Files\earthlink totalaccess\TaskPanl.exe:taskpanl
"{2B59F8B5-4AA1-4F12-9D6F-EA6D0B6E3091}"= TCP:C:\Program Files\earthlink totalaccess\TaskPanl.exe:taskpanl
"{D257225F-869B-4AE3-9816-D78D3C62490C}"= UDP:C:\Program Files\earthlink totalaccess\TaskPanl.exe:taskpanl
"{021C4177-0A4D-4AD9-B4E1-DCED197EEF62}"= TCP:C:\Program Files\earthlink totalaccess\TaskPanl.exe:taskpanl
"{A2C47000-01B1-481E-B18B-E7CBB784586F}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{3F22BF60-C295-4537-91AB-5B4A65839E05}"= UDP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
"{17386D5F-2826-4D19-AFEA-BD14103C837B}"= TCP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
"{DFAADF6D-2FAF-49C9-9C84-8D8AC3D5BE88}"= UDP:C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe:Age of Mythology - The Titans Expansion
"{4176A92C-D254-422A-BAF2-2D9757495CFE}"= TCP:C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe:Age of Mythology - The Titans Expansion
"{8E46016A-DCDC-48A0-8AFE-4C8ED9DE9D26}"= UDP:C:\Program Files\Common Files\AOL\Loader\aolload.exe:AOL Loader
"{02D87125-3D14-409A-BA14-CF5B23530D90}"= TCP:C:\Program Files\Common Files\AOL\Loader\aolload.exe:AOL Loader
"{B8BAD966-3D74-4BAE-A84A-D08CA32A837C}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{A6981626-C2D2-4796-A5C9-D129432D4BDC}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"TCP Query User{117F96C9-A8CD-4319-A554-FF174A28379E}C:\\program files\\mirc\\mirc.exe"= UDP:C:\program files\mirc\mirc.exe:mIRC
"UDP Query User{3831A515-4F19-4DA0-9D88-93F0B3232102}C:\\program files\\mirc\\mirc.exe"= TCP:C:\program files\mirc\mirc.exe:mIRC
"TCP Query User{CE9EC806-12DE-46B6-8B13-653170962871}C:\\program files\\veoh networks\\veoh\\veohclient.exe"= UDP:C:\program files\veoh networks\veoh\veohclient.exe:Veoh Client
"UDP Query User{C89ADE87-F760-4385-908D-4EACCD9C4324}C:\\program files\\veoh networks\\veoh\\veohclient.exe"= TCP:C:\program files\veoh networks\veoh\veohclient.exe:Veoh Client
"TCP Query User{45F4B4B1-7945-4023-A673-D5920CAC3F90}C:\\program files\\itunes\\itunes.exe"= UDP:C:\program files\itunes\itunes.exe:iTunes
"UDP Query User{55403BF3-6F09-4C7B-BE96-C96BC5B05D25}C:\\program files\\itunes\\itunes.exe"= TCP:C:\program files\itunes\itunes.exe:iTunes
"{90349032-519E-4386-A114-9C52CF124156}"= UDP:C:\Program Files\iTunes\iTunes.exe:iTunes
"{6F38D9C8-96B9-44AB-B13E-284A3505F604}"= TCP:C:\Program Files\iTunes\iTunes.exe:iTunes
"TCP Query User{6DE52D9E-E6F4-459C-AB4B-99D555323ED2}C:\\program files\\internet explorer\\iexplore.exe"= UDP:C:\program files\internet explorer\iexplore.exe:Internet Explorer
"UDP Query User{596E1FAA-D5B4-41EB-BFE0-D273A579BB02}C:\\program files\\internet explorer\\iexplore.exe"= TCP:C:\program files\internet explorer\iexplore.exe:Internet Explorer

[HKLM\~\services\sharedaccess\parameters\firewallpo licy\StandardProfile\AuthorizedApplications\List]
"C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe"= C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink

R2 FreezeScreenSaver;FreezeScreenSaver;C:\Windows\sys tem32\FreezeScreenSaver.exe [2005-09-29 15:55]
R2 Viewpoint Manager Service;Viewpoint Manager Service;"C:\Program Files\Viewpoint\Common\ViewpointService.exe" [2007-01-04 16:38]
R3 AvgWFP;AVG7 Firewall Driver x86;C:\Windows\system32\Drivers\avgwfp.sys [2008-03-13 17:44]

*Newly Created Service* - CATCHME
.
Contents of the 'Scheduled Tasks' folder
"2008-04-19 03:48:28 C:\Windows\Tasks\User_Feed_Synchronization-{623186D7-DB0B-4CE1-AF30-4EC3FDD98433}.job"
- C:\Windows\system32\msfeedssync.exe
.
************************************************** ************************

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-19 20:18:02
Windows 6.0.6001 Service Pack 1 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

************************************************** ************************
.
Completion time: 2008-04-19 20:19:05
ComboFix-quarantined-files.txt 2008-04-20 01:18:46

Pre-Run: 267,234,840,576 bytes free
Post-Run: 267,217,035,264 bytes free

203 --- E O F --- 2008-04-18 02:06:15
Reply With Quote
  #26  
Old April 20th, 2008, 05:12 AM
AnnMarie's Avatar
AnnMarie AnnMarie is offline
CTH Subscriber
 
Join Date: Oct 2001
O/S: Windows Vista 32-bit
Location: New Zealand
Posts: 59,810
Quote:
Mind if i ask what your looking for?
No not at all. There is a Sun Java startup showing in your log that I needed to check. See below:

O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe" -delete

Firstly I needed to make sure that jureg.exe was a Sun Java file because it shouldnt have installed to the System32 folder. I have checked it and it's fine BUT it still shouldnt have installed to that location or be running at startup. Also if you look at the first log you posted, you will see that the uninstall of all Sun Java software did not remove jureg.exe or the startup but it is no longer in the running processes. Nor is jureg.exe in the running processes after you reinstalled the latest version of Sun Java.

"SunJavaUpdateReg"="C:\Windows\system32\jureg. exe" [02/22/2008 05:25 AM]

Now this leads me to believe that the version of Sun Java that you last downloaded had problems. If I remember rightly, Sun pulled the download of that update on three separate occasions. The only reason why they would do this is if there was problems with the installation. I will delete that file and the startup but not yet.

As you havent had the error since uninstalling the older updates, I would now like to see if removal of Update 5 (that was the update that installed jureg.exe to the System32 folder) has made any difference to the tasks.

Click on Start and type cmd in the Start Search box. Cmd.exe will appear at the top of the Menu. Rightclick on it and choose "Run as Administrator". Copy and paste the following command in the Code box after the prompt > and hit Enter.

SCHTASKS /Query /FO LIST /V > c:\find.txt & start notepad c:\find.txt

Your drive will be scanned and when finished, Notepad will pop up with some information. Copy and paste it in this thread.
Reply With Quote
  #27  
Old April 20th, 2008, 06:57 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
Folder: \
HostName: JOSH-PC
TaskName: \ExtendedServicePlan
Next Run Time: 12/4/2008 12:33:46 AM
Status: Ready
Logon Mode: Interactive only
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: "C:\Program Files\Hewlett-Packard\SDP\RemEngine.exe" ExtendedServicePlan ShowMessageTask
Start In: C:\Program Files\Hewlett-Packard\SDP
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Josh-PC\Josh
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: One Time Only, Minute
Start Time: 12:33:46 AM
Start Date: 12/4/2008
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: 0 Hour(s), 30 Minute(s)
Repeat: Until: Time: None
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \HP Health Check
Next Run Time: 4/20/2008 8:14:00 AM
Status: Ready
Logon Mode: Interactive only
Last Run Time: N/A
Last Result: 1
Author: SYSTEM
Task To Run: "c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" /Scan
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Josh
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Weekly
Start Time: 8:14:00 AM
Start Date: 4/19/2008
End Date: N/A
Days: SUN
Months: Every 1 week(s)
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \JavaUpdateAdministrator
Next Run Time: 4/20/2008 11:00:00 PM
Status: Could not start
Logon Mode: Interactive only
Last Run Time: 4/19/2008 10:59:59 PM
Last Result: -2147023651
Author: Administrator
Task To Run: C:\Windows\system32\jusched.exe
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: LH-33KJ5UXP73DR\Administrator
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Daily
Start Time: 11:00:00 PM
Start Date: 12/26/2007
End Date: N/A
Days: Every 1 day(s)
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \RunAsStdUser Task
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive only
Last Run Time: 3/2/2008 3:17:37 AM
Last Result: 0
Author: RunAsStdUser
Task To Run: C:\Program Files\Veoh Networks\Veoh\VeohClient.exe /VistaRunAsStdUser
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Josh-PC\Josh
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \ServicePlan
Next Run Time: 12/4/2008 12:33:46 AM
Status: Ready
Logon Mode: Interactive only
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: "C:\Program Files\Hewlett-Packard\SDP\RemEngine.exe" ServicePlan ShowMessageTask11M
Start In: C:\Program Files\Hewlett-Packard\SDP
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Josh-PC\Josh
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: One Time Only, Minute
Start Time: 12:33:46 AM
Start Date: 12/4/2008
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: 0 Hour(s), 30 Minute(s)
Repeat: Until: Time: None
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \User_Feed_Synchronization-{623186D7-DB0B-4CE1-AF30-4EC3FDD98433}
Next Run Time: 4/20/2008 1:24:00 AM
Status: Ready
Logon Mode: Interactive only
Last Run Time: 4/19/2008 8:30:59 PM
Last Result: 0
Author: Josh
Task To Run: C:\Windows\system32\msfeedssync.exe sync
Start In: C:\Program Files\windows sidebar
Comment: Updates out-of-date system feeds.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Josh-PC\Josh
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: One Time Only, Minute
Start Time: 1:24:00 AM
Start Date: 4/20/2008
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: 0 Hour(s), 5 Minute(s)
Repeat: Until: Time: None
Repeat: Until: Duration: 22 Hour(s), 36 Minute(s)
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \User_Feed_Synchronization-{623186D7-DB0B-4CE1-AF30-4EC3FDD98433}
Next Run Time: 4/20/2008 1:24:00 AM
Status: Ready
Logon Mode: Interactive only
Last Run Time: 4/19/2008 8:30:59 PM
Last Result: 0
Author: Josh
Task To Run: C:\Windows\system32\msfeedssync.exe sync
Start In: C:\Program Files\windows sidebar
Comment: Updates out-of-date system feeds.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Josh-PC\Josh
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Daily
Start Time: 12:00:00 AM
Start Date: 4/21/2008
End Date: N/A
Days: Every 1 day(s)
Months: N/A
Repeat: Every: 0 Hour(s), 5 Minute(s)
Repeat: Until: Time: None
Repeat: Until: Duration: 24 Hour(s), 0 Minute(s)
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \{79DFCB35-3B17-44B7-8242-4B627F589E63}
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive only
Last Run Time: 4/19/2008 2:21:02 PM
Last Result: 0
Author: N/A
Task To Run: C:\Windows\system32\pcalua.exe -a "C:\PROGRA~1\Freeze.com\Amazing Universe\UNINSTAL.EXE"
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Josh-PC\Josh
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Apple
HostName: JOSH-PC
TaskName: \Apple\AppleSoftwareUpdate
Next Run Time: 4/20/2008 7:24:00 PM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Weekly
Start Time: 7:24:00 PM
Start Date: 4/16/2008
End Date: N/A
Days: SUN
Months: Every 1 week(s)
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

Folder: \Microsoft
INFO: There are no scheduled tasks presently available at your access level.

Folder: \Microsoft\Windows
INFO: There are no scheduled tasks presently available at your access level.

Folder: \Microsoft\Windows\Active Directory Rights Management Services Client
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)
Next Run Time: Disabled
Status:
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Updates the AD RMS rights policy templates for the user. This job does not provide a credential prompt if authentication to the template distribution web service on the server fails. In this case, it fails silently.
Scheduled Task State: Disabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Everyone
Delete Task If Not Rescheduled: Disabled
Stop Task If Runs X Hours and X Mins: 01:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Daily
Start Time: 3:00:00 AM
Start Date: 11/9/2006
End Date: N/A
Days: Every 1 day(s)
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled
Reply With Quote
  #28  
Old April 20th, 2008, 06:59 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)
Next Run Time: Disabled
Status:
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Updates the AD RMS rights policy templates for the user. This job does not provide a credential prompt if authentication to the template distribution web service on the server fails. In this case, it fails silently.
Scheduled Task State: Disabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Everyone
Delete Task If Not Rescheduled: Disabled
Stop Task If Runs X Hours and X Mins: 01:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Updates the AD RMS rights policy templates for the user. This job provides a credential prompt if authentication to the template distribution web service on the server fails.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: Everyone
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 01:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Bluetooth
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Bluetooth\UninstallDeviceTask
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: BthUdTask.exe $(Arg0)
Start In: N/A
Comment: Uninstalls the PnP device associated with the specified Bluetooth service ID
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\CertificateServicesClient
HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\Syste mTask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:22:48 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\Syste mTask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:22:48 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:37:42 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:37:42 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A
Reply With Quote
  #29  
Old April 20th, 2008, 06:59 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
HostName: JOSH-PC
TaskName: \Microsoft\Windows\CertificateServicesClient\UserT ask-Roam
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/3/2008 10:18:22 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Certificate Services Client automatically manages digital identities such as Certificates, Keys and Credentials for the users and the machine, enabling enrollment, roaming and other services.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: INTERACTIVE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Customer Experience Improvement Program
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Customer Experience Improvement Program\Consolidator
Next Run Time: 4/20/2008 4:00:00 PM
Status: Could not start
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:59:59 PM
Last Result: -2147479295
Author: Microsoft Corporation
Task To Run: %SystemRoot%\System32\wsqmcons.exe
Start In: N/A
Comment: If the user has consented to participate in the Windows Customer Experience Improvement Program, this job collects and sends usage data to Microsoft.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: One Time Only, Hourly
Start Time: 12:00:00 AM
Start Date: 1/2/2004
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: 19 Hour(s), 0 Minute(s)
Repeat: Until: Time: None
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Customer Experience Improvement Program\OptinNotification
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:47:43 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %SystemRoot%\System32\wsqmcons.exe -n 0x1C577FA2B69CAD0
Start In: N/A
Comment: Microsoft Windows Software Quality Metrics Optin Notification.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Administrators
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Defrag
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Defrag\ManualDefrag
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 2/13/2008 9:14:31 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\defrag.exe -c
Start In: N/A
Comment: This task defragments the computers hard disk drives.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Defrag\ScheduledDefrag
Next Run Time: 4/23/2008 2:00:00 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/16/2008 9:00:06 PM
Last Result: 267014
Author: Microsoft Corporation
Task To Run: %windir%\system32\defrag.exe -c -i
Start In: N/A
Comment: This task defragments the computers hard disk drives.
Scheduled Task State: Enabled
Idle Time: Only Start If Idle for 3 minutes, If Not Idle Retry For 525600 minutes Stop the task if Idle State end
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Weekly
Start Time: 2:00:00 AM
Start Date: 2/13/2008
End Date: N/A
Days: WED
Months: Every 1 week(s)
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

Folder: \Microsoft\Windows\DiskDiagnostic
HostName: JOSH-PC
TaskName: \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector
Next Run Time: 4/20/2008 1:00:00 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
Start In: N/A
Comment: The Windows Disk Diagnostic reports general disk and system information to Microsoft for users participating in the Customer Experience Program.
Scheduled Task State: Enabled
Idle Time: Only Start If Idle for 10 minutes, If Not Idle Retry For 60 minutes
Power Management: No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Weekly
Start Time: 1:00:00 AM
Start Date: 1/1/2004
End Date: N/A
Days: SUN
Months: Every 2 week(s)
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver
Next Run Time: Disabled
Status:
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft Corporation
Task To Run: %windir%\system32\DFDWiz.exe
Start In: N/A
Comment: The Microsoft-Windows-DiskDiagnosticResolver warns users about faults reported by hard disks that support the Self Monitoring and Reporting Technology (S.M.A.R.T.) standard. This task is triggered automatically by the Diagnostic Policy Service when a S.
Scheduled Task State: Disabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Disabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Media Center
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\ehDRMInit
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/9/2008 10:58:04 AM
Last Result: 0
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
Start In: N/A
Comment: Privileged Media Center DRM initialization job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\mcupdate
Next Run Time: 4/20/2008 2:17:43 AM
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 5:42:27 PM
Last Result: 0
Author: N/A
Task To Run: %SystemRoot%\ehome\mcupdate $(Arg0) -gc
Start In: N/A
Comment: Check for Media Center updates.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: NETWORK SERVICE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: Daily
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: Every 1 day(s)
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\OCURActivate
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
Start In: N/A
Comment: Privileged Media Center OCUR activation job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\OCURDiscovery
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery
Start In: N/A
Comment: Privileged Media Center OCUR discovery job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\Media Center\UpdateRecordPath
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 1/4/2008 10:35:21 PM
Last Result: 0
Author: N/A
Task To Run: %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
Start In: N/A
Comment: Privileged Media Center Recorder Permission setting job
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: On demand only
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A
Reply With Quote
  #30  
Old April 20th, 2008, 07:00 AM
bowlinbob6 bowlinbob6 is offline
Member
 
Join Date: Apr 2008
Posts: 35
Folder: \Microsoft\Windows\MobilePC
HostName: JOSH-PC
TaskName: \Microsoft\Windows\MobilePC\HotStart
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:37:42 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Launches applications configured for Windows HotStart
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Authenticated Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\MobilePC\TMM
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:37:45 PM
Last Result: 267009
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Microsoft Transient Multi-Monitor Manager
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Authenticated Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\MUI
HostName: JOSH-PC
TaskName: \Microsoft\Windows\MUI\LPRemove
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:36:38 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\lpremove.exe
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\MUI\LPRemove
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:36:38 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\lpremove.exe
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode, No Start On Batteries
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: One Time Only
Start Time: 6:27:52 PM
Start Date: 1/4/2008
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: Disabled
Repeat: Until: Time: Disabled
Repeat: Until: Duration: Disabled
Repeat: Stop If Still Running: Disabled

HostName: JOSH-PC
TaskName: \Microsoft\Windows\MUI\Mcbuilder
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/8/2008 4:16:47 PM
Last Result: 0
Author: Microsoft Corporation
Task To Run: C:\Windows\System32\mcbuilder.exe
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\Multimedia
HostName: JOSH-PC
TaskName: \Microsoft\Windows\Multimedia\SystemSoundsService
Next Run Time: N/A
Status: Running
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:37:42 PM
Last Result: 267009
Author: N/A
Task To Run: COM handler
Start In: N/A
Comment: System Sounds User Mode Agent
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\NetworkAccessProtection
HostName: JOSH-PC
TaskName: \Microsoft\Windows\NetworkAccessProtection\NAPStat us UI
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:37:47 PM
Last Result: 267014
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Launches the Network Access Protection Status UI
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 00:00:03
Schedule: Scheduling data is not available in this format.
Schedule Type: At logon time
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\NetworkAccessProtection\NAPStat us UI
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/19/2008 8:37:47 PM
Last Result: 267014
Author: Microsoft Corporation
Task To Run: COM handler
Start In: N/A
Comment: Launches the Network Access Protection Status UI
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: Users
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 00:00:03
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\PLA
INFO: There are no scheduled tasks presently available at your access level.

Folder: \Microsoft\Windows\PLA\System
HostName: JOSH-PC
TaskName: \Microsoft\Windows\PLA\System\ConvertLogEntries
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: 4/20/2008 12:56:09 AM
Last Result: 0
Author: N/A
Task To Run: %windir%\system32\rundll32.exe %windir%\system32\pla.dll,PlaConvertLogEntries
Start In: N/A
Comment: N/A
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: Disabled
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\RAC
HostName: JOSH-PC
TaskName: \Microsoft\Windows\RAC\RACAgent
Next Run Time: N/A
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/20/2008 12:36:41 AM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\RacAgent.exe
Start In: N/A
Comment: Microsoft Reliability Analysis task started periodically to process system reliability data.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: LOCAL SERVICE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

HostName: JOSH-PC
TaskName: \Microsoft\Windows\RAC\RACAgent
Next Run Time: N/A
Status: Unknown
Logon Mode: Interactive/Background
Last Run Time: 4/20/2008 12:36:41 AM
Last Result: 0
Author: Microsoft Corporation
Task To Run: %windir%\system32\RacAgent.exe
Start In: N/A
Comment: Microsoft Reliability Analysis task started periodically to process system reliability data.
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management:
Run As User: LOCAL SERVICE
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: At system start up
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A

Folder: \Microsoft\Windows\RemoteAssistance
HostName: JOSH-PC
TaskName: \Microsoft\Windows\RemoteAssistance\RemoteAssistan ceTask
Next Run Time: N/A
Status: Ready
Logon Mode: Interactive/Background
Last Run Time: N/A
Last Result: 1
Author: Microsoft
Task To Run: %windir%\system32\RAServer.exe /offerraupdate
Start In: %windir%
Comment: Checks group policy for changes relevant to Remote Assistance
Scheduled Task State: Enabled
Idle Time: Disabled
Power Management: Stop On Battery Mode
Run As User: SYSTEM
Delete Task If Not Rescheduled: Enabled
Stop Task If Runs X Hours and X Mins: 72:00:00
Schedule: Scheduling data is not available in this format.
Schedule Type: When an event occurs
Start Time: N/A
Start Date: N/A
End Date: N/A
Days: N/A
Months: N/A
Repeat: Every: N/A
Repeat: Until: Time: N/A
Repeat: Until: Duration: N/A
Repeat: Stop If Still Running: N/A
Reply With Quote
Reply

Bookmarks

Topic Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Topics
Topic Topic Starter Forum Replies Last Post
MSN email logging in error G8888 Windows XP 2 November 26th, 2005 06:32 PM
Run Time Error Logging on dthormahlen Malware Removal 14 July 18th, 2005 06:17 PM
AUTOEXEC.NT error when logging in arch2004 Windows NT, 2000, 2003, 2008, 2012 4 October 17th, 2004 02:56 AM
.dll error when logging in RHouston Windows 98 2 September 18th, 2004 07:11 AM
Msoobe error when logging on to IE BigSexy Windows 98 3 July 21st, 2004 10:22 PM


All times are GMT +1. The time now is 03:02 AM.