Will not update new to Vista

Chris A

New Member
Ok I work at a huge place that employs about a thousand people word got out that I can fix computers as a hobby. This is my first vista machine :) It is a HP touch screen.

Any way this thing was loaded up with spyware. I was able to get rid of it all and the computer runs fine but when i try to run windows update i get
Windows update cannot currently check for updates because the service is not currently running. You may need to restart your computer.

I have checked the services and it is set to delayed start but in the status it says it is starting but it never does.
 

My Computer

whs

Vista Guru
Gold Member
In Services, Windows Update must be set to "automatic".
 

My Computer

System One

  • Manufacturer/Model
    Dell
    CPU
    Q6600
    Memory
    4GB
    Monitor(s) Displays
    HP w2207h
    Hard Drives
    2x250GB HDDs
    1x60GB OCZ SSD
    6 external disks 60 to 640GBs
    Other Info
    Also 1xHP desktop, 1xHP laptop, 1xGateway laptop

Chris A

New Member
I will try the reset but for your enjoyment here is a copy of the windows update log. U can see the problem better. Thanks for helping.
2009-11-24 20:12:23:118 800 3d8 Misc =========== Logging initialized (build: 7.4.7600.226, tz: -0800) ===========
2009-11-24 20:12:23:176 800 3d8 Misc = Process: C:\Windows\system32\DllHost.exe
2009-11-24 20:12:23:176 800 3d8 Misc = Module: C:\Windows\system32\wuapi.dll
2009-11-24 20:12:23:116 800 3d8 COMAPI -------------
2009-11-24 20:12:23:176 800 3d8 COMAPI -- START -- COMAPI: Search [ClientId = Windows Defender]
2009-11-24 20:12:23:177 800 3d8 COMAPI ---------
2009-11-24 20:12:23:231 1136 ca4 Misc =========== Logging initialized (build: 7.4.7600.226, tz: -0800) ===========
2009-11-24 20:12:23:231 1136 ca4 Misc = Process: C:\Windows\system32\svchost.exe
2009-11-24 20:12:23:231 1136 ca4 Misc = Module: c:\windows\system32\wuaueng.dll
2009-11-24 20:12:23:231 1136 ca4 Service *************
2009-11-24 20:12:23:231 1136 ca4 Service ** START ** Service: Service startup
2009-11-24 20:12:23:231 1136 ca4 Service *********
2009-11-24 20:12:23:336 1136 ca4 Agent * WU client version 7.4.7600.226
2009-11-24 20:12:23:337 1136 ca4 Agent * Base directory: C:\Windows\SoftwareDistribution
2009-11-24 20:12:23:338 1136 ca4 Agent * Access type: No proxy
2009-11-24 20:12:23:340 1136 ca4 Agent * Network state: Connected
2009-11-24 20:14:23:183 800 3d8 COMAPI FATAL: Unable to connect to the service (hr=80080005)
2009-11-24 20:14:23:183 800 3d8 COMAPI WARNING: Unable to establish connection to the service. (hr=80080005)
2009-11-24 20:14:23:183 800 3d8 COMAPI - WARNING: Exit code = 0x80080005
2009-11-24 20:14:23:184 800 3d8 COMAPI ---------
2009-11-24 20:14:23:184 800 3d8 COMAPI -- END -- COMAPI: Search [ClientId = <NULL>]
2009-11-24 20:14:23:184 800 3d8 COMAPI -------------
2009-11-24 20:14:23:184 800 3d8 COMAPI FATAL: Unable to initiate asynchronous search, hr=80080005
 

My Computer

Flavius

Expelled
Hm,try reset WU in aggressive mode as I said and give log of course...and two extra questions for you if nothing help:

1.Does SFC command work for you?

run cmd.exe with administrative previlliges (right click on cmd.exe as admin) and type:

sfc /scannow

2.Do you have this key http://www.vistax64.com/1096609-post30.html

and whole thread http://www.vistax64.com/windows-updates/234029-cannot-update-anything-80080005-a-3.html#post1096609

but this is only one option of this error -this error have many faces and without details difficult to say it addressed to you or not.Maybe WU reseting will be enough to solve it...
 

My Computer

Chris A

New Member
Sweet program.
Code:
*************************************************************
********************** Computer Info ************************
*************************************************************
Logged in user: hp1-PC\hp1
Computer Model: RN635AA-ABA IQ770
Computer Manufacturer: HP-Pavilion
OS Name: Microsoft® Windows Vista™ Ultimate |C:\Windows|\Device\Harddisk0\Partition1
OS Version: 6.0.6001
System Type: X86-based PC
Total Physical Memory: 2047 MB
Windows Directory: C:\Windows
BIOS Version: BIOS Date: 11/26/07 20:37:08 Ver: 08.00.13
CPU: AMD Turion(tm) 64 X2 Mobile Technology TL-52
Video Card: NVIDIA GeForce Go 7600
Resolution: 1440 x 900 x 4294967296 colors

*************************************************************
*********************** UAC Status **************************
*************************************************************
UAC is currently enabled

*************************************************************
***************** Installed Applications ********************
*************************************************************
HP Product Detection - Location: C:\Program Files\HP\Common\ 
neroxml - Location:  
Compatibility Pack for the 2007 Office system - Location:  
Microsoft Office Enterprise 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office OneNote MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Groove Setup Metadata MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office InfoPath MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Access MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Shared Setup Metadata MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Excel MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Access Setup Metadata MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office PowerPoint MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Publisher MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Outlook MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Groove MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Word MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Proofing (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Shared MUI (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Proof (English) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Proof (Spanish) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office Proof (French) 2007 - Location: C:\Program Files\Microsoft Office\ 
Microsoft Office PowerPoint Viewer 2007 (English) - Location:  
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - Location:  
Microsoft Works - Location:  
Adobe AIR - Location: c:\Program Files\Common Files\Adobe AIR\ 
SUPERAntiSpyware Free Edition - Location:  
Microsoft .NET Framework 3.5 SP1 - Location:  
Bonjour - Location: C:\Program Files\Bonjour\ 
Java(TM) 6 Update 17 - Location: C:\Program Files\Java\jre6\ 
Adobe Reader 9.2 - Location: C:\Program Files\Adobe\Reader 9.0\Reader\ 
Nero 7 Essentials - Location: C:\Program Files\Nero\Nero 7\ 
iTunes - Location: C:\Program Files\iTunes\ 
Microsoft Visual C++ 2005 Redistributable - Location:  
QuickTime - Location: C:\Program Files\QuickTime\ 
Apple Mobile Device Support - Location:  
MSXML 4.0 SP2 (KB954430) - Location:  
Acrobat.com - Location: C:\Program Files\Adobe\Acrobat.com 
Apple Software Update - Location: C:\Program Files\Apple Software Update\ 
Apple Application Support - Location:  

*************************************************************
************************* Services **************************
*************************************************************
------------------------------------------
Name: Application Experience
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Application Layer Gateway Service
Path: C:\Windows\System32\alg.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Application Information
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Running
------------------------------------------
Name: Apple Mobile Device
Path: "C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Application Management
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Audio Endpoint Builder
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Audio
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: AVG Free8 E-mail Scanner
Path: C:\PROGRA~1\AVG\AVG8\avgemc.exe
StartMode: Auto
State: Running
------------------------------------------
Name: AVG Free8 WatchDog
Path: C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Base Filtering Engine
Path: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Running
------------------------------------------
Name: Background Intelligent Transfer Service
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Bonjour Service
Path: "C:\Program Files\Bonjour\mDNSResponder.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Computer Browser
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Stopped
------------------------------------------
Name: Bluetooth Support Service
Path: C:\Windows\system32\svchost.exe -k bthsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Certificate Propagation
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Microsoft .NET Framework NGEN v2.0.50727_X86
Path: C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: COM+ System Application
Path: C:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
StartMode: Manual
State: Stopped
------------------------------------------
Name: Cryptographic Services
Path: C:\Windows\system32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Offline Files
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: DCOM Server Process Launcher
Path: C:\Windows\system32\svchost.exe -k DcomLaunch
StartMode: Auto
State: Running
------------------------------------------
Name: DFS Replication
Path: C:\Windows\system32\DFSR.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: DHCP Client
Path: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: dlba_device
Path: C:\Windows\system32\dlbacoms.exe -service
StartMode: Auto
State: Running
------------------------------------------
Name: DNS Client
Path: C:\Windows\system32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Wired AutoConfig
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Diagnostic Policy Service
Path: C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Running
------------------------------------------
Name: Extensible Authentication Protocol
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Media Center Receiver Service
Path: C:\Windows\ehome\ehRecvr.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Media Center Scheduler Service
Path: C:\Windows\ehome\ehsched.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Media Center Service Launcher
Path: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Stopped
------------------------------------------
Name: ReadyBoost
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Event Log
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: COM+ Event System
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Fax
Path: C:\Windows\system32\fxssvc.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Function Discovery Provider Host
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Function Discovery Resource Publication
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Presentation Foundation Font Cache 3.0.0.0
Path: C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Group Policy Client
Path: C:\Windows\system32\svchost.exe -k GPSvcGroup
StartMode: Auto
State: Running
------------------------------------------
Name: Human Interface Device Access
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Health Key and Certificate Management
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows CardSpace
Path: "C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"
StartMode: Manual
State: Stopped
------------------------------------------
Name: IKE and AuthIP IPsec Keying Modules
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: InCD Helper
Path: C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
StartMode: Auto
State: Running
------------------------------------------
Name: PnP-X IP Bus Enumerator
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: IP Helper
Path: C:\Windows\System32\svchost.exe -k NetSvcs
StartMode: Auto
State: Running
------------------------------------------
Name: iPod Service
Path: "C:\Program Files\iPod\bin\iPodService.exe"
StartMode: Manual
State: Running
------------------------------------------
Name: CNG Key Isolation
Path: C:\Windows\system32\lsass.exe
StartMode: Manual
State: Running
------------------------------------------
Name: KtmRm for Distributed Transaction Coordinator
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Server
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Workstation
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Link-Layer Topology Discovery Mapper
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: TCP/IP NetBIOS Helper
Path: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Media Center Extender Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Microsoft Office Groove Audit Service
Path: "C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Multimedia Class Scheduler
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Firewall
Path: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
StartMode: Auto
State: Running
------------------------------------------
Name: Distributed Transaction Coordinator
Path: C:\Windows\System32\msdtc.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Microsoft iSCSI Initiator Service
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Installer
Path: C:\Windows\system32\msiexec /V
StartMode: Manual
State: Running
------------------------------------------
Name: Network Access Protection Agent
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Manual
State: Stopped
------------------------------------------
Name: NBService
Path: C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Netlogon
Path: C:\Windows\system32\lsass.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Network Connections
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Running
------------------------------------------
Name: Network List Service
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Net.Tcp Port Sharing Service
Path: "C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe"
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Network Location Awareness
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: NMIndexingService
Path: "C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Network Store Interface Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Microsoft Office Diagnostics Service
Path: "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Office Source Engine
Path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Peer Networking Identity Manager
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Peer Networking Grouping
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Program Compatibility Assistant Service
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Performance Logs & Alerts
Path: C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
StartMode: Manual
State: Stopped
------------------------------------------
Name: Plug and Play
Path: C:\Windows\system32\svchost.exe -k DcomLaunch
StartMode: Auto
State: Running
------------------------------------------
Name: PNRP Machine Name Publication Service
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Peer Name Resolution Protocol
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: IPsec Policy Agent
Path: C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: User Profile Service
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Protected Storage
Path: C:\Windows\system32\lsass.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Quality Windows Audio Video Experience
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Remote Access Auto Connection Manager
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Remote Access Connection Manager
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Running
------------------------------------------
Name: Routing and Remote Access
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Remote Registry
Path: C:\Windows\system32\svchost.exe -k regsvc
StartMode: Manual
State: Stopped
------------------------------------------
Name: Cyberlink RichVideo Service(CRVS)
Path: "C:\Program Files\CyberLink\Shared Files\RichVideo.exe"
StartMode: Auto
State: Running
------------------------------------------
Name: Remote Procedure Call (RPC) Locator
Path: C:\Windows\system32\locator.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Remote Procedure Call (RPC)
Path: C:\Windows\system32\svchost.exe -k rpcss
StartMode: Auto
State: Running
------------------------------------------
Name: Security Accounts Manager
Path: C:\Windows\system32\lsass.exe
StartMode: Auto
State: Running
------------------------------------------
Name: Smart Card
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Task Scheduler
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Smart Card Removal Policy
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Backup
Path: C:\Windows\system32\svchost.exe -k SDRSVC
StartMode: Manual
State: Stopped
------------------------------------------
Name: Secondary Logon
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: System Event Notification Service
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Terminal Services Configuration
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Internet Connection Sharing (ICS)
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Disabled
State: Stopped
------------------------------------------
Name: Shell Hardware Detection
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Software Licensing
Path: C:\Windows\system32\SLsvc.exe
StartMode: Auto
State: Running
------------------------------------------
Name: SL UI Notification Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: SNMP Trap
Path: C:\Windows\System32\snmptrap.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Print Spooler
Path: C:\Windows\System32\spoolsv.exe
StartMode: Auto
State: Running
------------------------------------------
Name: SSDP Discovery
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Secure Socket Tunneling Protocol Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Windows Image Acquisition (WIA)
Path: C:\Windows\system32\svchost.exe -k imgsvc
StartMode: Auto
State: Running
------------------------------------------
Name: Microsoft Software Shadow Copy Provider
Path: C:\Windows\System32\svchost.exe -k swprv
StartMode: Manual
State: Stopped
------------------------------------------
Name: Superfetch
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Tablet PC Input Service
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Telephony
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Manual
State: Running
------------------------------------------
Name: TPM Base Services
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Auto
State: Stopped
------------------------------------------
Name: Terminal Services
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Auto
State: Running
------------------------------------------
Name: Themes
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Thread Ordering Server
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Distributed Link Tracking Client
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Modules Installer
Path: C:\Windows\servicing\TrustedInstaller.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Interactive Services Detection
Path: C:\Windows\system32\UI0Detect.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Terminal Services UserMode Port Redirector
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: UPnP Device Host
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Desktop Window Manager Session Manager
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Virtual Disk
Path: C:\Windows\System32\vds.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Volume Shadow Copy
Path: C:\Windows\system32\vssvc.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Time
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Block Level Backup Engine Service
Path: "C:\Windows\system32\wbengine.exe"
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Connect Now - Config Registrar
Path: C:\Windows\System32\svchost.exe -k LocalService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Color System
Path: C:\Windows\system32\svchost.exe -k wcssvc
StartMode: Manual
State: Stopped
------------------------------------------
Name: Diagnostic Service Host
Path: C:\Windows\System32\svchost.exe -k wdisvc
StartMode: Manual
State: Stopped
------------------------------------------
Name: Diagnostic System Host
Path: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Manual
State: Running
------------------------------------------
Name: WebClient
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Event Collector
Path: C:\Windows\system32\svchost.exe -k NetworkService
StartMode: Manual
State: Stopped
------------------------------------------
Name: Problem Reports and Solutions Control Panel Support
Path: C:\Windows\System32\svchost.exe -k netsvcs
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Error Reporting Service
Path: C:\Windows\System32\svchost.exe -k WerSvcGroup
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Defender
Path: C:\Windows\System32\svchost.exe -k secsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: WinHTTP Web Proxy Auto-Discovery Service
Path: C:\Windows\system32\svchost.exe -k LocalService
StartMode: Manual
State: Running
------------------------------------------
Name: Windows Management Instrumentation
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Remote Management (WS-Management)
Path: C:\Windows\System32\svchost.exe -k NetworkService
StartMode: Manual
State: Stopped
------------------------------------------
Name: WLAN AutoConfig
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Stopped
------------------------------------------
Name: WMI Performance Adapter
Path: C:\Windows\system32\wbem\WmiApSrv.exe
StartMode: Manual
State: Stopped
------------------------------------------
Name: Windows Media Player Network Sharing Service
Path: "C:\Program Files\Windows Media Player\wmpnetwk.exe"
StartMode: Manual
State: Running
------------------------------------------
Name: Parental Controls
Path: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Manual
State: Stopped
------------------------------------------
Name: Portable Device Enumerator Service
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Security Center
Path: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Search
Path: C:\Windows\system32\SearchIndexer.exe /Embedding
StartMode: Auto
State: Running
------------------------------------------
Name: Windows Update
Path: C:\Windows\system32\svchost.exe -k netsvcs
StartMode: Auto
State: Start Pending
------------------------------------------
Name: Windows Driver Foundation - User-mode Driver Framework
Path: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
StartMode: Auto
State: Running
------------------------------------------

*************************************************************
******************** Installed Codecs ***********************
*************************************************************
------------------------------------------
Name: C:\Windows\system32\MSVIDC32.DLL Description: 
Version: 6.0.6001.18000
Path: \windows\system32\
FileName: msvidc32
------------------------------------------
Name: C:\Windows\system32\L3CODECA.ACM Description: Fraunhofer IIS MPEG Layer-3 Codec
Version: 1.9.0.401
Path: \windows\system32\
FileName: l3codeca
------------------------------------------
Name: C:\Windows\system32\TSBYUV.DLL Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: tsbyuv
------------------------------------------
Name: C:\Windows\system32\IYUV_32.DLL Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: iyuv_32
------------------------------------------
Name: C:\Windows\system32\MSG711.ACM Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msg711
------------------------------------------
Name: C:\Windows\system32\MSYUV.DLL Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msyuv
------------------------------------------
Name: C:\Windows\system32\MSADP32.ACM Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msadp32
------------------------------------------
Name: C:\Windows\system32\MSGSM32.ACM Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msgsm32
------------------------------------------
Name: C:\Windows\system32\IMAADP32.ACM Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: imaadp32
------------------------------------------
Name: C:\Windows\system32\MSRLE32.DLL Description: 
Version: 6.0.6000.16386
Path: \windows\system32\
FileName: msrle32
------------------------------------------
Name: C:\Windows\system32\ICCVID.DLL Description: 
Version: 1.10.0.12
Path: \windows\system32\
FileName: iccvid
------------------------------------------

*************************************************************
*********************** Hot Fixes ***************************
*************************************************************
Description: 
HotFixID: {331B99C1-4C7B-4E90-848E-C6F90047E126}
------------------------------------------
Description: Update
HotFixID: 943729
------------------------------------------
Description: Update
HotFixID: KB940510
------------------------------------------
Description: Update
HotFixID: KB905866
------------------------------------------
Description: Update
HotFixID: KB935509
------------------------------------------
Description: Update
HotFixID: KB937287
------------------------------------------
Description: Update
HotFixID: KB938371
------------------------------------------
Description: Security Update
HotFixID: KB938464
------------------------------------------
Description: Security Update
HotFixID: KB941693
------------------------------------------
Description: Security Update
HotFixID: KB947864
------------------------------------------
Description: Security Update
HotFixID: KB948590
------------------------------------------
Description: Update
HotFixID: KB948609
------------------------------------------
Description: Update
HotFixID: KB948610
------------------------------------------
Description: Security Update
HotFixID: KB948881
------------------------------------------
Description: Update
HotFixID: KB950124
------------------------------------------
Description: Update
HotFixID: KB950125
------------------------------------------
Description: Security Update
HotFixID: KB950762
------------------------------------------
Description: Security Update
HotFixID: KB950974
------------------------------------------
Description: Security Update
HotFixID: KB951066
------------------------------------------
Description: Security Update
HotFixID: KB951376
------------------------------------------
Description: Security Update
HotFixID: KB951698
------------------------------------------
Description: Update
HotFixID: KB951978
------------------------------------------
Description: Security Update
HotFixID: KB952004
------------------------------------------
Description: Security Update
HotFixID: KB952069
------------------------------------------
Description: Hotfix
HotFixID: KB952287
------------------------------------------
Description: Update
HotFixID: KB952709
------------------------------------------
Description: Security Update
HotFixID: KB953155
------------------------------------------
Description: Security Update
HotFixID: KB953733
------------------------------------------
Description: Security Update
HotFixID: KB954154
------------------------------------------
Description: Security Update
HotFixID: KB954459
------------------------------------------
Description: Hotfix
HotFixID: KB954588
------------------------------------------
Description: Update
HotFixID: KB955020
------------------------------------------
Description: Security Update
HotFixID: KB955069
------------------------------------------
Description: Update
HotFixID: KB955302
------------------------------------------
Description: Update
HotFixID: KB955430
------------------------------------------
Description: Security Update
HotFixID: KB956572
------------------------------------------
Description: Security Update
HotFixID: KB956744
------------------------------------------
Description: Security Update
HotFixID: KB956802
------------------------------------------
Description: Security Update
HotFixID: KB957097
------------------------------------------
Description: Update
HotFixID: KB957200
------------------------------------------
Description: Update
HotFixID: KB957321
------------------------------------------
Description: Update
HotFixID: KB958481
------------------------------------------
Description: Update
HotFixID: KB958483
------------------------------------------
Description: Security Update
HotFixID: KB958623
------------------------------------------
Description: Security Update
HotFixID: KB958624
------------------------------------------
Description: Security Update
HotFixID: KB958644
------------------------------------------
Description: Security Update
HotFixID: KB958687
------------------------------------------
Description: Update
HotFixID: KB959108
------------------------------------------
Description: Update
HotFixID: KB959130
------------------------------------------
Description: Security Update
HotFixID: KB959426
------------------------------------------
Description: Security Update
HotFixID: KB960225
------------------------------------------
Description: Security Update
HotFixID: KB960803
------------------------------------------
Description: Security Update
HotFixID: KB961371
------------------------------------------
Description: Security Update
HotFixID: KB961501
------------------------------------------
Description: Update
HotFixID: KB967632
------------------------------------------
Description: Security Update
HotFixID: KB967723
------------------------------------------
Description: Update
HotFixID: KB968389
------------------------------------------
Description: Security Update
HotFixID: KB968537
------------------------------------------
Description: Security Update
HotFixID: KB968816
------------------------------------------
Description: Security Update
HotFixID: KB970238
------------------------------------------
Description: Update
HotFixID: KB970653
------------------------------------------
Description: Security Update
HotFixID: KB970710
------------------------------------------
Description: Security Update
HotFixID: KB971557
------------------------------------------
Description: Security Update
HotFixID: KB971657
------------------------------------------
Description: Security Update
HotFixID: KB971961
------------------------------------------
Description: Update
HotFixID: KB972036
------------------------------------------
Description: Security Update
HotFixID: KB972260
------------------------------------------
Description: Security Update
HotFixID: KB973346
------------------------------------------
Description: Security Update
HotFixID: KB973507
------------------------------------------
Description: Security Update
HotFixID: KB973540
------------------------------------------
Description: Update
HotFixID: KB973768
------------------------------------------
Description: Update
HotFixID: 940157
------------------------------------------

*************************************************************
************************* Event Log *************************
*************************************************************
Application - 11/25/2009 8:18:12 AM: Windows Installer reconfigured the product. Product Name: Adobe Reader 9.2. Product Version: 9.2.0. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:13 AM: Windows Installer installed the product. Product Name: Nero 7 Essentials. Product Version: 7.02.8507. Product Language: 1033. Installation success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:13 AM: Windows Installer reconfigured the product. Product Name: iTunes. Product Version: 9.0.2.25. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:16 AM: Windows Installer reconfigured the product. Product Name: Microsoft Visual C++ 2005 Redistributable. Product Version: 8.0.56336. Product Language: 0. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:17 AM: Windows Installer reconfigured the product. Product Name: QuickTime. Product Version: 7.65.17.80. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:17 AM: Windows Installer reconfigured the product. Product Name: Apple Mobile Device Support. Product Version: 2.6.0.32. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:17 AM: Windows Installer reconfigured the product. Product Name: MSXML 4.0 SP2 (KB954430). Product Version: 4.20.9870.0. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:17 AM: Windows Installer reconfigured the product. Product Name: Acrobat.com. Product Version: 1.7.186. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:17 AM: Windows Installer reconfigured the product. Product Name: Apple Software Update. Product Version: 2.1.1.116. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Application - 11/25/2009 8:18:18 AM: Windows Installer reconfigured the product. Product Name: Apple Application Support. Product Version: 1.1.0. Product Language: 1033. Reconfiguration success or error status: 0.
------------------------------------------
Media Center - 11/24/2009 11:07:58 PM: Update::Run: Doesn't need to download package SportsTemplate at 11/24/2009 23:07:58. Earliest next start time 11/25/2009 09:00:00.
------------------------------------------
Media Center - 11/24/2009 11:08:36 PM: DownloadPackgeTask.SubTasksComplete: successfully downloaded package SportsSchedule.
------------------------------------------
Media Center - 11/24/2009 11:09:38 PM: MCUpdate terminates at 11/24/2009 23:09:38.
------------------------------------------
Media Center - 11/25/2009 1:04:56 AM: MCUpdate started at 11/25/2009 01:04:56.
------------------------------------------
Media Center - 11/25/2009 1:05:00 AM: DownloadPackgeTask.SubTasksComplete: successfully downloaded package Directory.
------------------------------------------
Media Center - 11/25/2009 1:05:00 AM: Update::Run: Doesn't need to download package SportsSchedule at 11/25/2009 01:05:00. Earliest next start time 11/25/2009 21:00:00.
------------------------------------------
Media Center - 11/25/2009 1:05:02 AM: DownloadPackgeTask.SubTasksComplete: successfully downloaded package NetTV.
------------------------------------------
Media Center - 11/25/2009 1:05:02 AM: DownloadPackgeTask.SubTasksComplete: successfully downloaded package MCESpotlight.
------------------------------------------
Media Center - 11/25/2009 1:05:03 AM: DownloadPackgeTask.SubTasksComplete: successfully downloaded package SportsTemplate.
------------------------------------------
Media Center - 11/25/2009 1:06:02 AM: MCUpdate terminates at 11/25/2009 01:06:02.
------------------------------------------
Microsoft Office Sessions - 11/5/2009 9:26:16 PM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/5/2009 10:21:03 PM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.6425.1000. This session lasted 0 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/6/2009 12:16:44 PM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.6425.1000. This session lasted 0 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/7/2009 2:29:41 PM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.6425.1000. This session lasted 0 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/12/2009 12:39:35 AM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.6425.1000. This session lasted 0 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/12/2009 1:13:42 AM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/16/2009 3:44:57 AM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.6425.1000. This session lasted 3 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/16/2009 4:12:23 AM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.4518.1014. This session lasted 15 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/23/2009 7:42:20 PM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.4518.1014. This session lasted 24 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Microsoft Office Sessions - 11/23/2009 10:09:55 PM: ID: 16, Application Name: Microsoft Office Groove, Application Version: 6.0.6000.16386, Microsoft Office Version: 12.0.4518.1014. This session lasted 0 seconds with 0 seconds of active time.  This session ended normally.
------------------------------------------
Security - 11/25/2009 7:59:06 AM: The description for Event ID '4624' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'HP1-PC$', 'WORKGROUP', '0x3e7', 'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', '5', 'Advapi  ', 'Negotiate', '', '{00000000-0000-0000-0000-000000000000}', '-', '-', '0', '0x268', 'C:\Windows\System32\services.exe', '-', '-'
------------------------------------------
Security - 11/25/2009 7:59:06 AM: The description for Event ID '4672' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', 'SeAssignPrimaryTokenPrivilege
   SeTcbPrivilege
   SeSecurityPrivilege
   SeTakeOwnershipPrivilege
   SeLoadDriverPrivilege
   SeBackupPrivilege
   SeRestorePrivilege
   SeDebugPrivilege
   SeAuditPrivilege
   SeSystemEnvironmentPrivilege
   SeImpersonatePrivilege'
------------------------------------------
Security - 11/25/2009 7:59:10 AM: The description for Event ID '4648' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'HP1-PC$', 'WORKGROUP', '0x3e7', '{00000000-0000-0000-0000-000000000000}', 'SYSTEM', 'NT AUTHORITY', '{00000000-0000-0000-0000-000000000000}', 'localhost', 'localhost', '0x268', 'C:\Windows\System32\services.exe', '-', '-'
------------------------------------------
Security - 11/25/2009 7:59:10 AM: The description for Event ID '4624' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'HP1-PC$', 'WORKGROUP', '0x3e7', 'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', '5', 'Advapi  ', 'Negotiate', '', '{00000000-0000-0000-0000-000000000000}', '-', '-', '0', '0x268', 'C:\Windows\System32\services.exe', '-', '-'
------------------------------------------
Security - 11/25/2009 7:59:10 AM: The description for Event ID '4672' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', 'SeAssignPrimaryTokenPrivilege
   SeTcbPrivilege
   SeSecurityPrivilege
   SeTakeOwnershipPrivilege
   SeLoadDriverPrivilege
   SeBackupPrivilege
   SeRestorePrivilege
   SeDebugPrivilege
   SeAuditPrivilege
   SeSystemEnvironmentPrivilege
   SeImpersonatePrivilege'
------------------------------------------
Security - 11/25/2009 7:59:35 AM: The description for Event ID '4905' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'HP1-PC$', 'WORKGROUP', '0x3e7', 'VSSAudit', '0x812ce0', '0x1450', 'C:\Windows\System32\VSSVC.exe'
------------------------------------------
Security - 11/25/2009 7:59:35 AM: The description for Event ID '4904' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'HP1-PC$', 'WORKGROUP', '0x3e7', 'VSSAudit', '0x812ce0', '0x1450', 'C:\Windows\System32\VSSVC.exe'
------------------------------------------
Security - 11/25/2009 8:18:35 AM: The description for Event ID '4648' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'HP1-PC$', 'WORKGROUP', '0x3e7', '{00000000-0000-0000-0000-000000000000}', 'SYSTEM', 'NT AUTHORITY', '{00000000-0000-0000-0000-000000000000}', 'localhost', 'localhost', '0x268', 'C:\Windows\System32\services.exe', '-', '-'
------------------------------------------
Security - 11/25/2009 8:18:35 AM: The description for Event ID '4624' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'HP1-PC$', 'WORKGROUP', '0x3e7', 'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', '5', 'Advapi  ', 'Negotiate', '', '{00000000-0000-0000-0000-000000000000}', '-', '-', '0', '0x268', 'C:\Windows\System32\services.exe', '-', '-'
------------------------------------------
Security - 11/25/2009 8:18:35 AM: The description for Event ID '4672' in Source 'Microsoft-Windows-Security-Auditing' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'S-1-5-18', 'SYSTEM', 'NT AUTHORITY', '0x3e7', 'SeAssignPrimaryTokenPrivilege
   SeTcbPrivilege
   SeSecurityPrivilege
   SeTakeOwnershipPrivilege
   SeLoadDriverPrivilege
   SeBackupPrivilege
   SeRestorePrivilege
   SeDebugPrivilege
   SeAuditPrivilege
   SeSystemEnvironmentPrivilege
   SeImpersonatePrivilege'
------------------------------------------
System - 11/25/2009 7:59:07 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'Volume Shadow Copy', 'running'
------------------------------------------
System - 11/25/2009 7:59:11 AM: The description for Event ID '-1073731795' in Source 'DCOM' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'swprv', '', '{65EE1DBA-8FF4-4A58-AC1C-3470EE2F376A}'
------------------------------------------
System - 11/25/2009 7:59:11 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'Microsoft Software Shadow Copy Provider', 'running'
------------------------------------------
System - 11/25/2009 7:59:32 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'WinHTTP Web Proxy Auto-Discovery Service', 'running'
------------------------------------------
System - 11/25/2009 7:59:35 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'Background Intelligent Transfer Service', 'stopped'
------------------------------------------
System - 11/25/2009 8:02:35 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'Volume Shadow Copy', 'stopped'
------------------------------------------
System - 11/25/2009 8:05:35 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'Microsoft Software Shadow Copy Provider', 'stopped'
------------------------------------------
System - 11/25/2009 8:09:52 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'Background Intelligent Transfer Service', 'running'
------------------------------------------
System - 11/25/2009 8:18:36 AM: The description for Event ID '-1073731795' in Source 'DCOM' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'TrustedInstaller', '', '{752073A1-23F2-4396-85F0-8FDB879ED0ED}'
------------------------------------------
System - 11/25/2009 8:18:36 AM: The description for Event ID '1073748860' in Source 'Service Control Manager' cannot be found.  The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them.  The following information is part of the event:'Windows Modules Installer', 'running'
------------------------------------------

*************************************************************
**************** Windows Experience Index *******************
*************************************************************
CPU Score: 4.6
Disk Score: 5.7
Graphics Score: 1
Direct 3D Score: 1
Memory Score: 5.2
WEI Score: 1

*************************************************************
************************* Users *****************************
*************************************************************
------------------------------------------
Name: Administrator Domain: hp1-PC
FullName:  Description: Built-in account for administering the computer/domain
Disabled: True
Status: Degraded
LocalAccount: True
PasswordChangeable: True
PasswordExpires: False
PasswordRequired: True
------------------------------------------
Name: Guest Domain: hp1-PC
FullName:  Description: Built-in account for guest access to the computer/domain
Disabled: True
Status: Degraded
LocalAccount: True
PasswordChangeable: False
PasswordExpires: False
PasswordRequired: False
------------------------------------------
Name: hp1 Domain: hp1-PC
FullName:  Description: 
Disabled: False
Status: OK
LocalAccount: True
PasswordChangeable: True
PasswordExpires: False
PasswordRequired: False
------------------------------------------

*************************************************************
************************** Memory ***************************
*************************************************************
------------------------------------------
Manufacturer: 7F7F7F7F7F510000
Model: 
Name: Physical Memory
Bank Label: BANK0
Capacity: 1024 MB
Description: Physical Memory
Tag: Physical Memory 0
------------------------------------------
Manufacturer: 7F7F7F7F7F510000
Model: 
Name: Physical Memory
Bank Label: BANK1
Capacity: 1024 MB
Description: Physical Memory
Tag: Physical Memory 1
------------------------------------------

*************************************************************
************************ Video Card *************************
*************************************************************
Brand: NVIDIA
Model: NVIDIA GeForce Go 7600
Adapter DAC Type: Integrated RAMDAC
Adapter RAM: 256 MB
Current BitsPerPixel: 32
Current Number Of Colors: 4294967296
Current Refresh Rate: 59
Driver Date: 12/13/2006 20:44:00
Driver Version: 7.15.10.9752
MaxRefreshRate: 59
MinRefreshRate: 59
Status: OK
Video Memory Type: 2
Video Mode Description: 1440 x 900 x 4294967296 colors
Video Processor: GeForce Go 7600

*************************************************************
************************** Drives ***************************
*************************************************************
Model: ST332082 0AS SCSI Disk Device
Description: Disk drive
InterfaceType: IDE
Partitions: 1
SCSIBus: 0
SCSILogicalUnit: 0
SCSIPort: 2
SCSITargetId: 0
SectorsPerTrack: 63
Size: 298 GB
Status: OK
------------------------------------------
Model: Generic CF Reader USB Device
Description: Disk drive
InterfaceType: USB
Partitions: 0
SCSIBus: 
SCSILogicalUnit: 
SCSIPort: 
SCSITargetId: 
SectorsPerTrack: 
Size: 0 GB
Status: OK
------------------------------------------
Model: Generic SM/SD/MS Reader USB Device
Description: Disk drive
InterfaceType: USB
Partitions: 0
SCSIBus: 
SCSILogicalUnit: 
SCSIPort: 
SCSITargetId: 
SectorsPerTrack: 
Size: 0 GB
Status: OK
------------------------------------------

*************************************************************
************************ CD/DVD Rom *************************
*************************************************************
Name: TSSTcorp DVDR/RW TS-T632L ATA Device
Description: CD-ROM Drive
LastErrorCode: 
Manufacturer: (Standard CD-ROM drives)
Media Type: DVD Writer
------------------------------------------

*************************************************************
************************* IDE/SATA **************************
*************************************************************
------------------------------------------
Manufacturer: (Standard IDE ATA/ATAPI controllers)
Name: Standard Dual Channel PCI IDE Controller
Last Error Code: 
Status: OK
------------------------------------------
Manufacturer: (Standard IDE ATA/ATAPI controllers)
Name: ATA Channel 0
Last Error Code: 
Status: OK
------------------------------------------
Manufacturer: (Standard IDE ATA/ATAPI controllers)
Name: ATA Channel 1
Last Error Code: 
Status: OK
------------------------------------------
Manufacturer: NVIDIA Corporation
Name: NVIDIA nForce Serial ATA Controller
Last Error Code: 
Status: OK
------------------------------------------

*************************************************************
************************** Network **************************
*************************************************************

Windows IP Configuration
   Host Name . . . . . . . . . . . . : hp1-PC
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : Belkin
Wireless LAN adapter Wireless Network Connection:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : chn.comcast.net
   Description . . . . . . . . . . . : HP 802.11abg wireless LAN
   Physical Address. . . . . . . . . : 00-14-A5-DB-70-AC
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
Ethernet adapter Bluetooth Network Connection:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : 00-16-41-F7-24-78
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
Ethernet adapter Local Area Connection:
   Connection-specific DNS Suffix  . : Belkin
   Description . . . . . . . . . . . : NVIDIA nForce Networking Controller
   Physical Address. . . . . . . . . : 00-1A-92-25-60-46
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::8cc4:780e:2385:9049%10(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.2.9(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Tuesday, November 24, 2009 8:11:16 PM
   Lease Expires . . . . . . . . . . : Saturday, January 01, 2146 2:47:30 PM
   Default Gateway . . . . . . . . . : 192.168.2.1
   DHCP Server . . . . . . . . . . . : 192.168.2.1
   DNS Servers . . . . . . . . . . . : 192.168.2.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter Local Area Connection* 7:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : isatap.{012026BD-9D9A-4397-80D1-CBBE7824AC20}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 12:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : isatap.chn.comcast.net
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 13:
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 02-00-54-55-4E-01
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e50:477:346e:3f57:fdf6(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::477:346e:3f57:fdf6%16(Preferred) 
   Default Gateway . . . . . . . . . : ::
   NetBIOS over Tcpip. . . . . . . . : Disabled
Tunnel adapter Local Area Connection* 14:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : 6TO4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 15:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : Belkin
   Description . . . . . . . . . . . : isatap.Belkin
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

*************************************************************
********************* Systerm Restore ***********************
*************************************************************
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 10/08/2009 07:00:09
SequenceNumber: 57
------------------------------------------
Description: Windows Update
Creation Time: 10/08/2009 19:56:53
SequenceNumber: 58
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 10/09/2009 21:12:53
SequenceNumber: 59
------------------------------------------
Description: Windows Update
Creation Time: 10/14/2009 19:29:42
SequenceNumber: 60
------------------------------------------
Description: Windows Update
Creation Time: 10/22/2009 04:28:57
SequenceNumber: 61
------------------------------------------
Description: Windows Update
Creation Time: 10/29/2009 08:22:16
SequenceNumber: 62
------------------------------------------
Description: Windows Update
Creation Time: 10/29/2009 10:00:17
SequenceNumber: 63
------------------------------------------
Description: Avg8 Update
Creation Time: 10/29/2009 21:03:39
SequenceNumber: 65
------------------------------------------
Description: Windows Update
Creation Time: 10/29/2009 21:18:22
SequenceNumber: 66
------------------------------------------
Description: Windows Update
Creation Time: 10/30/2009 21:12:13
SequenceNumber: 67
------------------------------------------
Description: Windows Update
Creation Time: 10/30/2009 21:23:21
SequenceNumber: 68
------------------------------------------
Description: Avg8 Update
Creation Time: 11/02/2009 22:58:56
SequenceNumber: 70
------------------------------------------
Description: Windows Update
Creation Time: 11/02/2009 23:16:44
SequenceNumber: 71
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 11/03/2009 22:58:19
SequenceNumber: 72
------------------------------------------
Description: Scheduled Checkpoint
Creation Time: 11/04/2009 22:09:15
SequenceNumber: 73
------------------------------------------
Description: Avg8 Update
Creation Time: 11/05/2009 21:07:40
SequenceNumber: 75
------------------------------------------
Description: Windows Update
Creation Time: 11/06/2009 20:16:20
SequenceNumber: 76
------------------------------------------
Description: Windows Update
Creation Time: 11/07/2009 20:43:31
SequenceNumber: 77
------------------------------------------
Description: Windows Update
Creation Time: 11/12/2009 08:40:57
SequenceNumber: 78
------------------------------------------
Description: Restore Operation
Creation Time: 11/16/2009 11:54:00
SequenceNumber: 79
------------------------------------------
Description: Avg8 Update
Creation Time: 11/24/2009 03:42:16
SequenceNumber: 83
------------------------------------------
Description: Avg8 Update
Creation Time: 11/24/2009 03:45:44
SequenceNumber: 85
------------------------------------------
Description: Installed Adobe Reader 9.2.
Creation Time: 11/24/2009 07:10:34
SequenceNumber: 86
------------------------------------------
Description: Installed Java(TM) 6 Update 17
Creation Time: 11/24/2009 07:14:29
SequenceNumber: 87
------------------------------------------
Description: Installed iTunes
Creation Time: 11/24/2009 07:25:31
SequenceNumber: 88
------------------------------------------
Description: Installed Microsoft Fix it 50267
Creation Time: 11/24/2009 22:59:23
SequenceNumber: 89
------------------------------------------
Description: Installed SUPERAntiSpyware Free Edition
Creation Time: 11/24/2009 23:03:19
SequenceNumber: 90
------------------------------------------
Description: Installed Microsoft Fix it 50202
Creation Time: 11/25/2009 15:59:06
SequenceNumber: 91
------------------------------------------

*************************************************************
******************** Running Processes **********************
*************************************************************
------------------------------------------
Name: System Idle Process
------------------------------------------
Name: System
------------------------------------------
Name: smss.exe
------------------------------------------
Name: csrss.exe
------------------------------------------
Name: wininit.exe
------------------------------------------
Name: csrss.exe
------------------------------------------
Name: services.exe
------------------------------------------
Name: lsass.exe
------------------------------------------
Name: lsm.exe
------------------------------------------
Name: winlogon.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: audiodg.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: SLsvc.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: spoolsv.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: taskeng.exe
------------------------------------------
Name: dwm.exe
------------------------------------------
Name: taskeng.exe
------------------------------------------
Name: MSASCui.exe
------------------------------------------
Name: rundll32.exe
------------------------------------------
Name: PCHardwareManager.exe
------------------------------------------
Name: avgtray.exe
------------------------------------------
Name: PDVDServ.exe
------------------------------------------
Name: NBHGui.exe
------------------------------------------
Name: InCD.exe
------------------------------------------
Name: GrooveMonitor.exe
------------------------------------------
Name: AppleMobileDeviceService.exe
------------------------------------------
Name: avgwdsvc.exe
------------------------------------------
Name: mDNSResponder.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: dlbacoms.exe
------------------------------------------
Name: InCDsrv.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: avgrsx.exe
------------------------------------------
Name: avgnsx.exe
------------------------------------------
Name: RichVideo.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
Name: SearchIndexer.exe
------------------------------------------
Name: avgemc.exe
------------------------------------------
Name: avgcsrvx.exe
------------------------------------------
Name: WUDFHost.exe
------------------------------------------
Name: jusched.exe
------------------------------------------
Name: iTunesHelper.exe
------------------------------------------
Name: sidebar.exe
------------------------------------------
Name: ehtray.exe
------------------------------------------
Name: wmpnscfg.exe
------------------------------------------
Name: SUPERAntiSpyware.exe
------------------------------------------
Name: LimeWire.exe
------------------------------------------
Name: ehmsas.exe
------------------------------------------
Name: wmpnetwk.exe
------------------------------------------
Name: iPodService.exe
------------------------------------------
Name: ieuser.exe
------------------------------------------
Name: iexplore.exe
------------------------------------------
Name: FlashUtil10c.exe
------------------------------------------
Name: mobsync.exe
------------------------------------------
Name: iexplore.exe
------------------------------------------
Name: explorer.exe
------------------------------------------
Name: msiexec.exe
------------------------------------------
Name: VistaForums SysInfo.exe
------------------------------------------
Name: WmiPrvSE.exe
------------------------------------------
Name: TrustedInstaller.exe
------------------------------------------
Name: VSSVC.exe
------------------------------------------
Name: svchost.exe
------------------------------------------
 

My Computer

Chris A

New Member
Ok had to get on another computer. for some reason while running the SFC it black screened about 20% Hard drive is still showing activity though. Is it safe to hard restart?
 

My Computer

Chris A

New Member
Ok found it I do have that key.

The black screen previously I think is hardware as once in a while the touch screen monitor starts flickering.
 

My Computer

Chris A

New Member
The WU agent did not work.

The clean boot has it messed up as it is a Touch screen computer. Windows starts to load and then goes blank???
Any ideas how to get those to load again.
 

My Computer

Flavius

Expelled
Whew it came back on its own after a few restarts. I think I need some of those services running.
I hope you hidden MS services before turning off:

Click the Services tab, click to select the Hide All Microsoft Services check box, and then click Disable All.
If everything you did well and still no effects,turn on all services:
Start>>Search>>msconfig>>General tab:check "Normal Startup" + restart

and question:

Navigate to C:\Windows\System32 folder and check you have there following files:

WUAUCLT.DLL, WUAUENG.DLL, WUAPI.DLL,WUPS.DLL,WUPS2.DLL,WUCLT.DLL,WINHTTP.DLL

try SFC command again,you can try it in safe mode
 

My Computer

Chris A

New Member
Im thinking this thing is haveing a harware problem too because of the screen going black. It is just like the screen turns all the way off. I have been working it hard yesterday and today. I will let it cool off for a few and try SFC in safe mode and check for those files.

thank you for the help I will be back in a hour or two.. Need to get turkey stuff :D
 

My Computer

Chris A

New Member
Ok ran the system file checker and it found errors and created a log file. when I try to open the log it says access denied.

I checked fot all those files and found all but WUCLT.DLL I did find WUCLTUX.dll
 

My Computer

whs

Vista Guru
Gold Member
The CBS.log opens with Notepad.
 

My Computer

System One

  • Manufacturer/Model
    Dell
    CPU
    Q6600
    Memory
    4GB
    Monitor(s) Displays
    HP w2207h
    Hard Drives
    2x250GB HDDs
    1x60GB OCZ SSD
    6 external disks 60 to 640GBs
    Other Info
    Also 1xHP desktop, 1xHP laptop, 1xGateway laptop
Top