*************************************************************
********************** Computer Info ************************
*************************************************************
Logged in user: Paul-PC\Paul
Computer Model: HP Pavilion dv5 Notebook PC
Computer Manufacturer: Hewlett-Packard
OS Name: Microsoft® Windows Vista™ Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OS Version: 6.0.6001
System Type: x64-based PC
Total Physical Memory: 3837 MB
Windows Directory: C:\Windows
BIOS Version: Default System BIOS
CPU: AMD Turion(tm) X2 Ultra Dual-Core Mobile ZM-80
Video Card: ATI Radeon HD 3200 Graphics
Resolution: 1280 x 800 x 4294967296 colors
*************************************************************
*********************** UAC Status **************************
*************************************************************
UAC is currently enabled
*************************************************************
***************** Installed Applications ********************
*************************************************************
Catalyst Control Center InstallProxy - Location: C:\Program Files (x86)\ATI Technologies\
Windows Media Player Firefox Plugin - Location:
Ventrilo Client for Windows x64 - Location: C:\Program Files\Ventrilo\
Compatibility Pack for the 2007 Office system - Location:
Microsoft Office OneNote MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Shared Setup Metadata MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Excel MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office PowerPoint MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Office 64-bit Components 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Shared 64-bit MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Word MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Proofing (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Shared MUI (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Proof (English) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Proof (Spanish) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Proof (French) 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office Home and Student 2007 - Location: C:\Program Files (x86)\Microsoft Office\
Microsoft Office PowerPoint Viewer 2007 (English) - Location:
ABBYY FineReader 6.0 Sprint - Location: C:\Program Files (x86)\Abbyy FineReader 6.0 Sprint\
ccc-utility64 - Location: c:\Program Files\ATI Technologies\
ccc-core-static - Location: c:\Program Files (x86)\ATI Technologies\
HPPhotoSmartPhotobookWebPack1 - Location:
HP Photosmart Essential 2.5 - Location:
PowerDirector - Location: C:\Program Files (x86)\Cyberlink\PowerDirector\
HPPhotoSmartDiscLabelContent1 - Location:
Microsoft Works - Location:
CCC Help English - Location: c:\Program Files (x86)\ATI Technologies\
Catalyst Control Center Core Implementation - Location: c:\Program Files (x86)\ATI Technologies\
HP Update - Location:
QuickTime - Location: C:\Program Files (x86)\QuickTime\
Catalyst Control Center Graphics Light - Location: C:\Program Files (x86)\ATI Technologies\
HP Help and Support - Location: C:\Program Files (x86)\Hewlett-Packard\HP Help and Support\
ATI Catalyst Install Manager - Location: C:\Program Files\ATI\CIM\
Catalyst Control Center Graphics Previews Vista - Location: c:\Program Files (x86)\ATI Technologies\
HPPhotoSmartPhotobookModernPack1 - Location:
hpphotosmartdisclabelplugin - Location:
Apple Mobile Device Support - Location: C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\
Cisco LEAP Module - Location:
Catalyst Control Center - Branding - Location: c:\Program Files (x86)\ATI Technologies\
Skins - Location: c:\Program Files (x86)\ATI Technologies\
ProtectSmart Hard Drive Protection - Location: C:\Program Files\Hewlett-Packard\ProtectSmart Hard Drive Protection\
Hewlett-Packard Asset Agent for Health Check - Location:
HP Wireless Assistant - Location: C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\
HPPhotoSmartDiscLabel_PrintOnDisc - Location:
Adobe Reader 8.1.0 - Location:
iTunes - Location: C:\Program Files (x86)\iTunes\
Microsoft Visual C++ 2005 Redistributable (x64) - Location:
YouCam - Location: C:\Program Files (x86)\CyberLink\YouCam\
Java(TM) 6 Update 5 - Location:
Catalyst Control Center Graphics Full Existing - Location: c:\Program Files (x86)\ATI Technologies\
Cisco PEAP Module - Location:
Microsoft Visual C++ 2005 Redistributable (x64) - Location:
Cisco EAP-FAST Module - Location:
PSSWCORE - Location:
Activation Assistant for the 2007 Microsoft Office suites - Location:
Cards_Calendar_OrderGift_DoMorePlugout - Location:
Bonjour - Location: C:\Program Files (x86)\Bonjour\
HPPhotoSmartDiscLabel_Tattoo - Location:
Hewlett-Packard Active Check for Health Check - Location:
LightScribe System Software 1.12.33.2 - Location: C:\Program Files (x86)\Common Files\LightScribe\
Microsoft Visual C++ 2005 Redistributable - Location:
Catalyst Control Center Graphics Light - Location: c:\Program Files (x86)\ATI Technologies\
Catalyst Control Center Graphics Previews Vista - Location: C:\Program Files (x86)\ATI Technologies\
HPPhotoSmartPhotobookHolidayPack1 - Location:
ccc-utility64 - Location: C:\Program Files (x86)\ATI Technologies\
Catalyst Control Center Graphics Full New - Location: C:\Program Files (x86)\ATI Technologies\
HP MULTIPLE MODEM INSTALLER for VISTA - Location: C:\SWSetup\MMODEM\
HPPhotoSmartDiscLabel_PaperLabel - Location:
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - Location:
MSXML 4.0 SP2 (KB954430) - Location:
HPPhotoSmartPhotobookPlayfulPack1 - Location:
HP Active Support Library - Location: c:\Program Files (x86)\Hewlett-Packard\HP Health Check\
VideoToolkit01 - Location:
HP QuickTouch 1.00 D2 - Location:
HPPhotoSmartPhotobookScrapbookPack1 - Location:
Catalyst Control Center Graphics Previews Common - Location: c:\Program Files (x86)\ATI Technologies\
Apple Software Update - Location: C:\Program Files (x86)\Apple Software Update\
Catalyst Control Center Graphics Full New - Location: c:\Program Files (x86)\ATI Technologies\
*************************************************************
************************* Services **************************
*************************************************************
------------------------------------------
Name: Application Experience
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Andrea ST Filters Service
Path: C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_a02f3f3d\AESTSr64.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Agere Modem Call Progress Audio
Path: C:\Windows\system32\agr64svc.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Application Layer Gateway Service
Path: C:\Windows\System32\alg.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Avira AntiVir Personal - Free Antivirus Scheduler
Path: "C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\sched.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Avira AntiVir Personal - Free Antivirus Guard
Path: "C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avguard.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Application Information
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Running
------------------------------------------
Name: Apple Mobile Device
Path: "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Ati External Event Utility
Path: C:\Windows\system32\Ati2evxx.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Audio Endpoint Builder
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Audio
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Base Filtering Engine
Path: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Running
------------------------------------------
Name: Background Intelligent Transfer Service
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Bonjour Service
Path: "C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Computer Browser
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Stopped
------------------------------------------
Name: Certificate Propagation
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Microsoft .NET Framework NGEN v2.0.50727_X86
Path: C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Microsoft .NET Framework NGEN v2.0.50727_X64
Path: C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Com4QLBEx
Path: "C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe"
StartMode: Manual
State: Running
------------------------------------------
Name: COM+ System Application
Path: C:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
StartMode: Manual
State: Stopped
------------------------------------------
Name: Cryptographic Services
Path: C:\Windows\system32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: DCOM Server Process Launcher
Path: C:\Windows\system32\svchost.exe -k DcomLaunch
StartMode: Auto
State: Running
------------------------------------------
Name: DFS Replication
Path: C:\Windows\system32\DFSR.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: DHCP Client
Path: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: dlcx_device
Path: C:\Windows\system32\dlcxcoms.exe -service
StartMode: Auto
State: Running
------------------------------------------
Name: DNS Client
Path: C:\Windows\system32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Wired AutoConfig
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Diagnostic Policy Service
Path: C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Running
------------------------------------------
Name: Extensible Authentication Protocol
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Running
------------------------------------------
Name: Windows Media Center Receiver Service
Path: C:\Windows\ehome\ehRecvr.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Media Center Scheduler Service
Path: C:\Windows\ehome\ehsched.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Media Center Service Launcher
Path: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Stopped
------------------------------------------
Name: ReadyBoost
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Event Log
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: COM+ Event System
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Function Discovery Provider Host
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Function Discovery Resource Publication
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Presentation Foundation Font Cache 3.0.0.0
Path: C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Group Policy Client
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Human Interface Device Access
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Health Key and Certificate Management
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: HP Health Check Service
Path: "c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: hpqwmiex
Path: "C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
StartMode: Manual
State: Running
------------------------------------------
Name: HP Service
Path: C:\Windows\system32\Hpservice.exe
StartMode: Auto
State: Running
------------------------------------------
Name: InstallDriver Table Manager
Path: "C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows CardSpace
Path: "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe"
StartMode: Manual
State: Stopped
------------------------------------------
Name: IKE and AuthIP IPsec Keying Modules
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: PnP-X IP Bus Enumerator
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: IP Helper
Path: C:\Windows\System32\svchost.exe -k NetSvcs
StartMode: Auto
State: Running
------------------------------------------
Name: iPod Service
Path: "C:\Program Files (x86)\iPod\bin\iPodService.exe"
StartMode: Manual
State: Stopped
------------------------------------------
Name: CNG Key Isolation
Path: C:\Windows\system32\lsass.exe
StartMode: Manual
State: Running
------------------------------------------
Name: KtmRm for Distributed Transaction Coordinator
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Server
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Workstation
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: LightScribeService Direct Disc Labeling Service
Path: "C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Link-Layer Topology Discovery Mapper
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: TCP/IP NetBIOS Helper
Path: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Media Center Extender Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Multimedia Class Scheduler
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Firewall
Path: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Running
------------------------------------------
Name: Distributed Transaction Coordinator
Path: C:\Windows\System32\msdtc.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Microsoft iSCSI Initiator Service
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Installer
Path: C:\Windows\system32\msiexec /V
StartMode: Manual
State: Running
------------------------------------------
Name: Network Access Protection Agent
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Netlogon
Path: C:\Windows\system32\lsass.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Network Connections
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Running
------------------------------------------
Name: Network List Service
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Net.Tcp Port Sharing Service
Path: "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe"
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Network Location Awareness
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Network Store Interface Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Microsoft Office Diagnostics Service
Path: "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Office Source Engine
Path: "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Peer Networking Identity Manager
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Peer Networking Grouping
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Program Compatibility Assistant Service
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Performance Counter DLL Host
Path: C:\Windows\SysWow64\perfhost.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Performance Logs & Alerts
Path: C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
StartMode: Manual
State: Stopped
------------------------------------------
Name: Plug and Play
Path: C:\Windows\system32\svchost.exe -k DcomLaunch
StartMode: Auto
State: Running
------------------------------------------
Name: PNRP Machine Name Publication Service
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Peer Name Resolution Protocol
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: IPsec Policy Agent
Path: C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: User Profile Service
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Protected Storage
Path: C:\Windows\system32\lsass.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: QuickPlay Background Capture Service (QBCS)
Path: "C:\Program Files (x86)\HP\QuickPlay\Kernel\TV\QPCapSvc.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: QuickPlay Task Scheduler (QTS)
Path: "C:\Program Files (x86)\HP\QuickPlay\Kernel\TV\QPSched.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Quality Windows Audio Video Experience
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Remote Access Auto Connection Manager
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Remote Access Connection Manager
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Running
------------------------------------------
Name: Recovery Service for Windows
Path: C:\Windows\SMINST\BLService.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Routing and Remote Access
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Remote Registry
Path: C:\Windows\system32\svchost.exe -k regsvc
StartMode: Manual
State: Stopped
------------------------------------------
Name: Cyberlink RichVideo Service(CRVS)
Path: "C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Remote Procedure Call (RPC) Locator
Path: C:\Windows\system32\locator.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Remote Procedure Call (RPC)
Path: C:\Windows\system32\svchost.exe -k rpcss
StartMode: Auto
State: Running
------------------------------------------
Name: Security Accounts Manager
Path: C:\Windows\system32\lsass.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Smart Card
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Task Scheduler
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Smart Card Removal Policy
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Backup
Path: C:\Windows\system32\svchost.exe -k SDRSVC
StartMode: Manual
State: Stopped
------------------------------------------
Name: Secondary Logon
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: System Event Notification Service
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Terminal Services Configuration
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Internet Connection Sharing (ICS)
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Shell Hardware Detection
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Software Licensing
Path: C:\Windows\system32\SLsvc.exe
StartMode: Auto
State: Running
------------------------------------------
Name: SL UI Notification Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: SNMP Trap
Path: C:\Windows\System32\snmptrap.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Print Spooler
Path: C:\Windows\System32\spoolsv.exe
StartMode: Auto
State: Running
------------------------------------------
Name: SSDP Discovery
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Secure Socket Tunneling Protocol Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Audio Service
Path: C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_a02f3f3d\STacSV64.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Image Acquisition (WIA)
Path: C:\Windows\system32\svchost.exe -k imgsvc
StartMode: Auto
State: Running
------------------------------------------
Name: Microsoft Software Shadow Copy Provider
Path: C:\Windows\System32\svchost.exe -k swprv
StartMode: Manual
State: Stopped
------------------------------------------
Name: Superfetch
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Tablet PC Input Service
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Telephony
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Manual
State: Running
------------------------------------------
Name: TPM Base Services
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Auto
State: Stopped
------------------------------------------
Name: Terminal Services
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Themes
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Thread Ordering Server
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Distributed Link Tracking Client
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Modules Installer
Path: C:\Windows\servicing\TrustedInstaller.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Interactive Services Detection
Path: C:\Windows\system32\UI0Detect.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: UPnP Device Host
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: User Privilege Service
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Desktop Window Manager Session Manager
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Virtual Disk
Path: C:\Windows\System32\vds.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Viewpoint Manager Service
Path: "C:\Program Files (x86)\Viewpoint\Common\ViewpointService.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Volume Shadow Copy
Path: C:\Windows\system32\vssvc.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Time
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Connect Now - Config Registrar
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Color System
Path: C:\Windows\system32\svchost.exe -k wcssvc
StartMode: Manual
State: Stopped
------------------------------------------
Name: Diagnostic Service Host
Path: C:\Windows\System32\svchost.exe -k wdisvc
StartMode: Manual
State: Stopped
------------------------------------------
Name: Diagnostic System Host
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Running
------------------------------------------
Name: WebClient
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Event Collector
Path: C:\Windows\system32\svchost.exe -k NetworkService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Problem Reports and Solutions Control Panel Support
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Error Reporting Service
Path: C:\Windows\System32\svchost.exe -k WerSvcGroup
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Defender
Path: C:\Windows\System32\svchost.exe -k secsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: WinHTTP Web Proxy Auto-Discovery Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Windows Management Instrumentation
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Remote Management (WS-Management)
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Manual
State: Stopped
------------------------------------------
Name: WLAN AutoConfig
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: WMI Performance Adapter
Path: C:\Windows\system32\wbem\WmiApSrv.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Media Player Network Sharing Service
Path: "C:\Program Files\Windows Media Player\wmpnetwk.exe"
StartMode: Manual
State: Running
------------------------------------------
Name: Parental Controls
Path: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Portable Device Enumerator Service
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Security Center
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Search
Path: C:\Windows\system32\SearchIndexer.exe /Embedding
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Update
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Driver Foundation - User-mode Driver Framework
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
*************************************************************
******************** Installed Codecs ***********************
*************************************************************
------------------------------------------
Name: C:\Windows\system32\MSRLE32.DLL Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msrle32
------------------------------------------
Name: C:\Windows\system32\MSVIDC32.DLL Description:
Version: 6.0.6001.18000
Path: \windows\system32\
FileName: msvidc32
------------------------------------------
Name: C:\Windows\system32\IMAADP32.ACM Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: imaadp32
------------------------------------------
Name: C:\Windows\system32\MSG711.ACM Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msg711
------------------------------------------
Name: C:\Windows\system32\MSGSM32.ACM Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msgsm32
------------------------------------------
Name: C:\Windows\system32\MSADP32.ACM Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msadp32
------------------------------------------
Name: C:\Windows\system32\MSYUV.DLL Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msyuv
------------------------------------------
Name: C:\Windows\system32\IYUV_32.DLL Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: iyuv_32
------------------------------------------
Name: C:\Windows\system32\TSBYUV.DLL Description:
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: tsbyuv
------------------------------------------
Name: C:\Windows\system32\L3CODECA.ACM Description: Fraunhofer IIS MPEG Layer-3 Codec
Version: 1.9.0.401
Path: \windows\system32\
FileName: l3codeca
------------------------------------------
*************************************************************
*********************** Hot Fixes ***************************
*************************************************************
Description:
HotFixID: {2B939677-2FFD-48F6-9075-7BF48CB87C80}
------------------------------------------
Description:
HotFixID: {2B939677-2FFD-48F6-9075-7BF48CB87C80}
------------------------------------------
Description: Update
HotFixID: KB935509
------------------------------------------
Description: Update
HotFixID: KB937287
------------------------------------------
Description: Update
HotFixID: KB938371
------------------------------------------
Description: Security Update
HotFixID: KB938464
------------------------------------------
Description: Hotfix
HotFixID: KB947880
------------------------------------------
Description: Security Update
HotFixID: KB950762
------------------------------------------
Description: Security Update
HotFixID: KB950974
------------------------------------------
Description: Security Update
HotFixID: KB951066
------------------------------------------
Description: Security Update
HotFixID: KB951376
------------------------------------------
Description: Security Update
HotFixID: KB951698
------------------------------------------
Description: Update
HotFixID: KB951978
------------------------------------------
Description: Security Update
HotFixID: KB952069
------------------------------------------
Description: Hotfix
HotFixID: KB952287
------------------------------------------
Description: Update
HotFixID: KB952709
------------------------------------------
Description: Security Update
HotFixID: KB953155
------------------------------------------
Description: Security Update
HotFixID: KB953733
------------------------------------------
Description: Security Update
HotFixID: KB954154
------------------------------------------
Description: Security Update
HotFixID: KB954211
------------------------------------------
Description: Security Update
HotFixID: KB954459
------------------------------------------
Description: Update
HotFixID: KB955020
------------------------------------------
Description: Security Update
HotFixID: KB955069
------------------------------------------
Description: Update
HotFixID: KB955302
------------------------------------------
Description: Update
HotFixID: KB955839
------------------------------------------
Description: Security Update
HotFixID: KB956391
------------------------------------------
Description: Security Update
HotFixID: KB956802
------------------------------------------
Description: Security Update
HotFixID: KB956841
------------------------------------------
Description: Security Update
HotFixID: KB957095
------------------------------------------
Description: Security Update
HotFixID: KB957097
------------------------------------------
Description: Update
HotFixID: KB957388
------------------------------------------
Description: Security Update
HotFixID: KB958215
------------------------------------------
Description: Security Update
HotFixID: KB958623
------------------------------------------
Description: Security Update
HotFixID: KB958624
------------------------------------------
Description: Security Update
HotFixID: KB958644
------------------------------------------
Description: Security Update
HotFixID: KB958687
------------------------------------------
Description: Security Update
HotFixID: KB960714
------------------------------------------
*************************************************************
************************* Event Log *************************
*************************************************************
ACEEventLog - 2/1/2009 6:36:23 PM: 0000000004: 2009-02-01 18:36:23:259 Exception <atixcode.dll>: Retrieving the COM class factory for component with CLSID {981145A7-E08E-48F3-A1C4-52C28BCAAAF9} failed due to the following error: 80040154.
Exception Called by: ATI.ACE.CLI.Aspect.TransCode.Graphics.Wizard.WZ_TransCode::Check processID:04812 threadID:(CCCThreadNew:Wizard) domainName:(CCC.exe ) assemblyName:(CLI.Aspect.TransCode.Graphics.Wizard, Version=2.0.3194.25390, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
************************************************************************************************************************
------------------------------------------
ACEEventLog - 2/1/2009 6:36:24 PM: 0000000005: 2009-02-01 18:36:24:162 Exception <Load>: Could not load file or assembly 'CLI.AIB.TutorialInfoCentre.Tutorial.Dashboard' or one of its dependencies. The system cannot find the file specified.
Exception Called by: ATI.ACE.LOG.Foundation.Services::LoadAssembly processID:04812 threadID:(CCCThreadNew:Dashboard) domainName:(CCC.exe ) assemblyName:(LOG.Foundation, Version=2.0.3127.31108, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
************************************************************************************************************************
------------------------------------------
ACEEventLog - 2/1/2009 6:36:24 PM: 0000000006: 2009-02-01 18:36:24:163 Could not find Type [ATI.ACE.CLI.AIB.TutorialInfoCentre.Tutorial.Dashboard.DB_TutorialInfoCentre] from [CLI.AIB.TutorialInfoCentre.Tutorial.Dashboard] in assembly [CLI.AIB.TutorialInfoCentre.Tutorial.Dashboard]
Error Called by: ATI.ACE.LOG.Foundation.Services::LoadAssembly processID:04812 threadID:(CCCThreadNew:Dashboard) domainName:(CCC.exe ) assemblyName:(LOG.Foundation, Version=2.0.3127.31108, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
------------------------------------------------------------------------------------------------------------------------
------------------------------------------
ACEEventLog - 2/1/2009 6:36:25 PM: 0000000007: 2009-02-01 18:36:25:058 Exception <AutoResetEvent exception on ICCC.Start>: Object reference not set to an instance of an object.
Exception Called by: System.Runtime.Remoting.Messaging.StackBuilderSink::_PrivateProcessMessage processID:04812 threadID:( ) domainName:(CCC.exe ) assemblyName:(mscorlib, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089)
************************************************************************************************************************
------------------------------------------
ACEEventLog - 2/1/2009 9:07:56 PM: 0000000008: 2009-02-01 21:07:56:729 Unable to obtain Color Correction information, dem status: -2
Error Called by: ATI.ACE.CLI.Aspect.DeviceLCD.Graphics.Runtime.RT_DeviceLCD::Parse processID:04812 threadID:( ) domainName:(CCC.exe ) assemblyName:(CLI.Aspect.DeviceLCD.Graphics.Runtime, Version=2.0.3194.25331, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
------------------------------------------------------------------------------------------------------------------------
------------------------------------------
ACEEventLog - 2/1/2009 9:29:54 PM: 0000000009: 2009-02-01 21:29:54:027 Unable to obtain Color Correction information, dem status: -2
Error Called by: ATI.ACE.CLI.Aspect.DeviceLCD.Graphics.Runtime.RT_DeviceLCD::Parse processID:04812 threadID:( ) domainName:(CCC.exe ) assemblyName:(CLI.Aspect.DeviceLCD.Graphics.Runtime, Version=2.0.3194.25331, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
------------------------------------------------------------------------------------------------------------------------
------------------------------------------
ACEEventLog - 2/2/2009 2:05:05 AM: 0000000010: 2009-02-02 02:05:05:745 Unable to obtain Color Correction information, dem status: -2
Error Called by: ATI.ACE.CLI.Aspect.DeviceLCD.Graphics.Runtime.RT_DeviceLCD::Parse processID:04812 threadID:( ) domainName:(CCC.exe ) assemblyName:(CLI.Aspect.DeviceLCD.Graphics.Runtime, Version=2.0.3194.25331, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
------------------------------------------------------------------------------------------------------------------------
------------------------------------------
ACEEventLog - 2/2/2009 8:46:03 AM: 0000000011: 2009-02-02 08:46:03:377 Unable to obtain Color Correction information, dem status: -2
Error Called by: ATI.ACE.CLI.Aspect.DeviceLCD.Graphics.Runtime.RT_DeviceLCD::Parse processID:04812 threadID:( ) domainName:(CCC.exe ) assemblyName:(CLI.Aspect.DeviceLCD.Graphics.Runtime, Version=2.0.3194.25331, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
------------------------------------------------------------------------------------------------------------------------
------------------------------------------
ACEEventLog - 2/2/2009 9:24:52 AM: 0000000012: 2009-02-02 09:24:52:742 Unable to obtain Color Correction information, dem status: -2
Error Called by: ATI.ACE.CLI.Aspect.DeviceLCD.Graphics.Runtime.RT_DeviceLCD::Parse processID:04812 threadID:( ) domainName:(CCC.exe ) assemblyName:(CLI.Aspect.DeviceLCD.Graphics.Runtime, Version=2.0.3194.25331, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
------------------------------------------------------------------------------------------------------------------------
------------------------------------------
ACEEventLog - 2/2/2009 10:38:02 AM: 0000000013: 2009-02-02 10:38:02:355 Unable to obtain Color Correction information, dem status: -2
Error Called by: ATI.ACE.CLI.Aspect.DeviceLCD.Graphics.Runtime.RT_DeviceLCD::Parse processID:04812 threadID:( ) domainName:(CCC.exe ) assemblyName:(CLI.Aspect.DeviceLCD.Graphics.Runtime, Version=2.0.3194.25331, Culture=neutral, PublicKeyToken=90ba9c70f846762e)
------------------------------------------------------------------------------------------------------------------------
------------------------------------------
Application - 2/2/2009 10:45:11 AM: Windows Installer reconfigured the product. Product Name: MSXML 4.0 SP2 (KB954430). Product Version: 4.20.9870.0. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:11 AM: Windows Installer reconfigured the product. Product Name: HPPhotoSmartPhotobookPlayfulPack1. Product Version: 1.00.0000. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:12 AM: Windows Installer reconfigured the product. Product Name: HP Active Support Library. Product Version: 3.1.4.1. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:12 AM: Windows Installer reconfigured the product. Product Name: VideoToolkit01. Product Version: 100.0.128.000. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:12 AM: Windows Installer reconfigured the product. Product Name: HP QuickTouch 1.00 D2. Product Version: 1.0.9. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:12 AM: Windows Installer reconfigured the product. Product Name: HPPhotoSmartPhotobookScrapbookPack1. Product Version: 1.00.0000. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:12 AM: Windows Installer reconfigured the product. Product Name: Catalyst Control Center Graphics Previews Common. Product Version: 2008.0929.1508.25258. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:12 AM: Windows Installer reconfigured the product. Product Name: Apple Software Update. Product Version: 2.1.1.116. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:12 AM: Windows Installer reconfigured the product. Product Name: Catalyst Control Center Graphics Full New. Product Version: 2008.0929.1508.25258. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 2/2/2009 10:45:13 AM: Unsupported service control request (see data below)
------------------------------------------
Microsoft Office Sessions - 1/20/2009 8:17:30 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 26946 seconds with 540 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/21/2009 7:17:42 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 34303 seconds with 720 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/21/2009 11:27:51 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 430 seconds with 120 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/24/2009 1:00:24 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 46 seconds with 0 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/24/2009 1:27:47 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1634 seconds with 60 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/26/2009 8:53:51 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 69 seconds with 60 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/26/2009 8:54:27 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 25 seconds with 0 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/26/2009 8:54:58 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 21 seconds with 0 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/26/2009 8:57:11 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 21 seconds with 0 seconds of active time. This session ended normally.
------------------------------------------
Microsoft Office Sessions - 1/26/2009 9:53:03 PM: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1042 seconds with 180 seconds of active time. This session ended normally.
------------------------------------------
Security - 2/2/2009 10:44:00 AM: The description for Event ID '4672' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', 'SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege'
------------------------------------------
Security - 2/2/2009 10:44:41 AM: The description for Event ID '4648' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'PAUL-PC$', 'WORKGROUP', '0x3e7', '{00000000-0000-0000-0000-000000000000}', 'SYSTEM', 'NT AUTHORITY', '{00000000-0000-0000-0000-000000000000}', 'localhost', 'localhost', '0x274', 'C:\WINDOWS\System32\services.exe', '-', '-'
------------------------------------------
Security - 2/2/2009 10:44:41 AM: The description for Event ID '4624' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'PAUL-PC$', 'WORKGROUP', '0x3e7', 'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', '5', 'Advapi ', 'Negotiate', '', '{00000000-0000-0000-0000-000000000000}', '-', '-', '0', '0x274', 'C:\WINDOWS\System32\services.exe', '-', '-'
------------------------------------------
Security - 2/2/2009 10:44:41 AM: The description for Event ID '4672' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', 'SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege'
------------------------------------------
Security - 2/2/2009 10:45:03 AM: The description for Event ID '4648' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'PAUL-PC$', 'WORKGROUP', '0x3e7', '{00000000-0000-0000-0000-000000000000}', 'SYSTEM', 'NT AUTHORITY', '{00000000-0000-0000-0000-000000000000}', 'localhost', 'localhost', '0x274', 'C:\WINDOWS\System32\services.exe', '-', '-'
------------------------------------------
Security - 2/2/2009 10:45:03 AM: The description for Event ID '4624' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'PAUL-PC$', 'WORKGROUP', '0x3e7', 'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', '5', 'Advapi ', 'Negotiate', '', '{00000000-0000-0000-0000-000000000000}', '-', '-', '0', '0x274', 'C:\WINDOWS\System32\services.exe', '-', '-'
------------------------------------------
Security - 2/2/2009 10:45:03 AM: The description for Event ID '4672' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', 'SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege'
------------------------------------------
Security - 2/2/2009 10:45:26 AM: The description for Event ID '4648' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'PAUL-PC$', 'WORKGROUP', '0x3e7', '{00000000-0000-0000-0000-000000000000}', 'SYSTEM', 'NT AUTHORITY', '{00000000-0000-0000-0000-000000000000}', 'localhost', 'localhost', '0x274', 'C:\WINDOWS\System32\services.exe', '-', '-'
------------------------------------------
Security - 2/2/2009 10:45:26 AM: The description for Event ID '4624' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'PAUL-PC$', 'WORKGROUP', '0x3e7', 'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', '5', 'Advapi ', 'Negotiate', '', '{00000000-0000-0000-0000-000000000000}', '-', '-', '0', '0x274', 'C:\WINDOWS\System32\services.exe', '-', '-'
------------------------------------------
Security - 2/2/2009 10:45:26 AM: The description for Event ID '4672' in Source 'Microsoft-Windows-Security-Auditing' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', 'SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege'
------------------------------------------
System - 2/2/2009 10:44:03 AM: Service stopped.
------------------------------------------
System - 2/2/2009 10:44:03 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'Virtual Disk', 'stopped'
------------------------------------------
System - 2/2/2009 10:44:41 AM: The description for Event ID '-1073731795' in Source 'DCOM' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'MSIServer', '', '{000C101C-0000-0000-C000-000000000046}'
------------------------------------------
System - 2/2/2009 10:44:41 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'Windows Installer', 'running'
------------------------------------------
System - 2/2/2009 10:45:03 AM: Service started.
------------------------------------------
System - 2/2/2009 10:45:04 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'Virtual Disk', 'running'
------------------------------------------
System - 2/2/2009 10:45:06 AM: Service stopped.
------------------------------------------
System - 2/2/2009 10:45:06 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'Virtual Disk', 'stopped'
------------------------------------------
System - 2/2/2009 10:45:26 AM: The description for Event ID '-1073731795' in Source 'DCOM' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'TrustedInstaller', '', '{752073A1-23F2-4396-85F0-8FDB879ED0ED}'
------------------------------------------
System - 2/2/2009 10:45:27 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'Windows Modules Installer', 'running'
------------------------------------------
*************************************************************
**************** Windows Experience Index *******************
*************************************************************
CPU Score: 4.9
Disk Score: 5.1
Graphics Score: 4
Direct 3D Score: 3.8
Memory Score: 5.9
WEI Score: 3.8
*************************************************************
************************* Users *****************************
*************************************************************
------------------------------------------
Name: Administrator Domain: Paul-PC
FullName: Description: Built-in account for administering the computer/domain
Disabled: True
Status: Degraded
LocalAccount: True
PasswordChangeable: True
PasswordExpires: False
PasswordRequired: True
------------------------------------------
Name: Guest Domain: Paul-PC
FullName: Description: Built-in account for guest access to the computer/domain
Disabled: True
Status: Degraded
LocalAccount: True
PasswordChangeable: False
PasswordExpires: False
PasswordRequired: False
------------------------------------------
Name: Paul Domain: Paul-PC
FullName: Description:
Disabled: False
Status: OK
LocalAccount: True
PasswordChangeable: True
PasswordExpires: False
PasswordRequired: False
------------------------------------------
*************************************************************
************************** Memory ***************************
*************************************************************
------------------------------------------
Manufacturer: 00000000000000CE
Model:
Name: Physical Memory
Bank Label: Bank 00
Capacity: 2048 MB
Description: Physical Memory
Tag: Physical Memory 0
------------------------------------------
Manufacturer: 00000000000000CE
Model:
Name: Physical Memory
Bank Label: Bank 08
Capacity: 2048 MB
Description: Physical Memory
Tag: Physical Memory 1
------------------------------------------
*************************************************************
************************ Video Card *************************
*************************************************************
Brand: ATI Technologies Inc.
Model: ATI Radeon HD 3200 Graphics
Adapter DAC Type: Internal DAC(400MHz)
Adapter RAM: 256 MB
Current BitsPerPixel: 32
Current Number Of Colors: 4294967296
Current Refresh Rate: 59
Driver Date: 09/29/2008 05:28:20
Driver Version: 7.01.01.821
MaxRefreshRate: 59
MinRefreshRate: 59
Status: OK
Video Memory Type: 2
Video Mode Description: 1280 x 800 x 4294967296 colors
Video Processor: ATI Radeon HD 3200 Graphics (0x9612)
*************************************************************
************************** Drives ***************************
*************************************************************
Model: WDC WD25 00BEVS-60UST0 SCSI Disk Device
Description: Disk drive
InterfaceType: SCSI
Partitions: 2
SCSIBus: 0
SCSILogicalUnit: 0
SCSIPort: 2
SCSITargetId: 0
SectorsPerTrack: 63
Size: 233 GB
Status: OK
------------------------------------------
*************************************************************
************************ CD/DVD Rom *************************
*************************************************************
Name: TSSTcorp CDDVDW TS-L633L SCSI CdRom Device
Description: CD-ROM Drive
LastErrorCode:
Manufacturer: (Standard CD-ROM drives)
Media Type: DVD Writer
------------------------------------------
*************************************************************
************************* IDE/SATA **************************
*************************************************************
------------------------------------------
Manufacturer: (Standard IDE ATA/ATAPI controllers)
Name: Standard Dual Channel PCI IDE Controller
Last Error Code:
Status: OK
------------------------------------------
Manufacturer: (Standard IDE ATA/ATAPI controllers)
Name: ATA Channel 0
Last Error Code:
Status: OK
------------------------------------------
Manufacturer: (Standard IDE ATA/ATAPI controllers)
Name: ATA Channel 1
Last Error Code:
Status: OK
------------------------------------------
*************************************************************
************************** Network **************************
*************************************************************
Windows IP Configuration
Host Name . . . . . . . . . . . . : Paul-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : wireless.temple.edu.
Wireless LAN adapter Wireless Network Connection:
Connection-specific DNS Suffix . : wireless.temple.edu.
Description . . . . . . . . . . . : Atheros AR5007 802.11b/g WiFi Adapter
Physical Address. . . . . . . . . : 00-1F-E2-A6-6E-19
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::bcb5:61ac:5e54:8fd4%11(Preferred)
IPv4 Address. . . . . . . . . . . : 10.104.9.74(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.248.0
Lease Obtained. . . . . . . . . . : Monday, February 02, 2009 10:38:00 AM
Lease Expires . . . . . . . . . . : Monday, February 02, 2009 11:40:02 AM
Default Gateway . . . . . . . . . : 10.104.8.1
DHCP Server . . . . . . . . . . . : 155.247.19.2
DNS Servers . . . . . . . . . . . : 155.247.166.2
155.247.19.2
NetBIOS over Tcpip. . . . . . . . : Enabled
Ethernet adapter Local Area Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : hsd1.pa.comcast.net.
Description . . . . . . . . . . . : Realtek RTL8102E/8103E Family PCI-E Fast Ethernet NIC (NDIS 6.0)
Physical Address. . . . . . . . . : 00-1E-68-81-AD-36
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 6:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 7:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : wireless.temple.edu.
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 11:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 02-00-54-55-4E-01
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e50:14be:1ffa:f597:f6b5(Preferred)
Link-local IPv6 Address . . . . . : fe80::14be:1ffa:f597:f6b5%12(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled
*************************************************************
********************* Systerm Restore ***********************
*************************************************************
------------------------------------------
Description: Windows Update
Creation Time: 01/19/2009 21:49:47
SequenceNumber: 28
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 01/21/2009 03:42:40
SequenceNumber: 29
------------------------------------------
Description: Windows Update
Creation Time: 01/22/2009 18:27:03
SequenceNumber: 30
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 01/24/2009 17:35:05
SequenceNumber: 31
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 01/26/2009 18:58:46
SequenceNumber: 32
------------------------------------------
Description: Windows Update
Creation Time: 01/26/2009 19:36:58
SequenceNumber: 33
------------------------------------------
Description: Device Driver Package Install: Dell Imaging devices
Creation Time: 01/27/2009 02:33:26
SequenceNumber: 34
------------------------------------------
Description: Device Driver Package Install: Dell Inkjet Drivers Printers
Creation Time: 01/27/2009 02:35:21
SequenceNumber: 35
------------------------------------------
Description: Device Driver Package Install: Advanced Micro Devices, Inc. Storage controllers
Creation Time: 01/28/2009 21:08:48
SequenceNumber: 36
------------------------------------------
Description: Device Driver Package Install: ATI Technologies Inc. Display adapters
Creation Time: 01/28/2009 21:18:21
SequenceNumber: 37
------------------------------------------
Description: Device Driver Package Install: ATI Technogies Inc System devices
Creation Time: 01/28/2009 21:20:06
SequenceNumber: 38
------------------------------------------
Description: Windows Update
Creation Time: 01/30/2009 22:57:15
SequenceNumber: 39
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 02/02/2009 03:08:32
SequenceNumber: 40
------------------------------------------
*************************************************************
******************** Running Processes **********************
*************************************************************
------------------------------------------
Name: System Idle Process
------------------------------------------
Name: System
------------------------------------------
Name: smss.exe
------------------------------------------
Name: csrss.exe
------------------------------------------
Name: wininit.exe
------------------------------------------
Name: services.exe
------------------------------------------
Name: lsass.exe
------------------------------------------
Name: lsm.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: Ati2evxx.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: stacsv64.exe
------------------------------------------
Name: audiodg.exe
------------------------------------------
Name: SLsvc.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: hpservice.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: spoolsv.exe
------------------------------------------
Name: sched.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: AESTSr64.exe
------------------------------------------
Name: agr64svc.exe
------------------------------------------
Name: avguard.exe
------------------------------------------
Name: AppleMobileDeviceService.exe
------------------------------------------
Name: mDNSResponder.exe
------------------------------------------
Name: dlcxcoms.exe
------------------------------------------
Name: LSSrvc.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: QPCapSvc.exe
------------------------------------------
Name: QPSched.exe
------------------------------------------
Name: BLService.exe
------------------------------------------
Name: taskeng.exe
------------------------------------------
Name: RichVideo.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: ViewpointService.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: SearchIndexer.exe
------------------------------------------
Name: hpqwmiex.exe
------------------------------------------
Name: WmiPrvSE.exe
------------------------------------------
Name: Com4QLBEx.exe
------------------------------------------
Name: HPHC_Service.exe
------------------------------------------
Name: wlanext.exe
------------------------------------------
Name: csrss.exe
------------------------------------------
Name: winlogon.exe
------------------------------------------
Name: Ati2evxx.exe
------------------------------------------
Name: taskeng.exe
------------------------------------------
Name: dwm.exe
------------------------------------------
Name: explorer.exe
------------------------------------------
Name: SynTPEnh.exe
------------------------------------------
Name: sttray64.exe
------------------------------------------
Name: MSASCui.exe
------------------------------------------
Name: QLBCTRL.exe
------------------------------------------
Name: HpqSRmon.exe
------------------------------------------
Name: hpwuSchd2.exe
------------------------------------------
Name: HPWAMain.exe
------------------------------------------
Name: avgnt.exe
------------------------------------------
Name: MOM.exe
------------------------------------------
Name: WiFiMsg.exe
------------------------------------------
Name: CCC.exe
------------------------------------------
Name: HpqToaster.exe
------------------------------------------
Name: SynTPHelper.exe
------------------------------------------
Name: wmpnscfg.exe
------------------------------------------
Name: wmpnetwk.exe
------------------------------------------
Name: aim6.exe
------------------------------------------
Name: aolsoftware.exe
------------------------------------------
Name: taskmgr.exe
------------------------------------------
Name: firefox.exe
------------------------------------------
Name: VistaForums SysInfo.exe
------------------------------------------
Name: WmiPrvSE.exe
------------------------------------------
Name: msiexec.exe
------------------------------------------
Name: TrustedInstaller.exe
------------------------------------------
Name: taskeng.exe
------------------------------------------
Name: dllhost.exe
------------------------------------------
Name: VSSVC.exe
------------------------------------------
Name: svchost.exe
------------------------------------------