Part-II Extra.txt
– User Profiles ---------------------------------------------------------------
Administrator I[/I]
– Add/Remove Programs ---------------------------------------------------------
→ rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
4100 USB Scanner → C:\WINDOWS\RunUnDrv.exe C:\WINDOWS\Twain_32\4100\PmxScan.INF DefaultUnInstall.USB.NTX86
ABBYY FineReader 5.0 Sprint → MsiExec.exe /X{D1696920-9794-4BBC-8A30-7A88763DE5A2}
Adobe Bridge 1.0 → MsiExec.exe /I{B74D4E10-1033-0000-0000-000000000001}
Adobe Common File Installer → MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5B39}
Adobe Flash Player 9 ActiveX → C:\WINDOWS\System32\Macromed\Flash\FlashUtil9c.exe -uninstallUnlock
Adobe Help Center 1.0 → MsiExec.exe /I{E9787678-1033-0000-8E67-000000000001}
Adobe Photoshop CS2 → msiexec /I {236BB7C4-4419-42FD-0409-1E257A25E34D}
Adobe Reader 7.0.9 → MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70900000002}
Adobe Stock Photos 1.0 → MsiExec.exe /I{786C5747-1033-0000-B58E-000000000001}
ArcSoft Panorama Maker 3 → RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{A5F68DC8-0278-4AD8-B413-861509B5F25B}\Setup.exe” -l0x9
avast! Antivirus → rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
C-Media Audio → C:\WINDOWS\CMIUnInstall.exe
Gadwin PrintScreen → C:\Program Files\Gadwin Systems\PrintScreen\Uninstall.exe
HijackThis 2.0.2 → “C:\Documents and Settings\Administrator\Desktop\HijackThis\HijackThis.exe” /uninstall
hp LaserJet 1010 Series → MsiExec.exe /x {292C47B2-8DB7-47BF-896C-C3C5EE8108C4}
Intel(R) 845G Chipset Graphics Driver Software → RUNDLL32.EXE C:\WINDOWS\System32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_2562-inteluninstall
K-Lite Mega Codec Pack 1.15 → “C:\Program Files\K-Lite Codec Pack\unins000.exe”
Microsoft Office 2000 Professional → MsiExec.exe /I{00010409-78E1-11D2-B60F-006097C998E7}
Neat Image v5 Demo (with plug-in) → “C:\Program Files\Neat Image\unins000.exe”
Nero - Burning Rom → MsiExec.exe /X{A4D7B764-4140-11D4-88EB-0050DA3579C0}
Nikon Message Center → RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}\Setup.exe” -l0x9 UNINSTALL
OrderReminder hp LaserJet 101x → “C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder\Uninstall-hpLJ_101x\installerhelper.exe” “C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder\Uninstall-hpLJ_101x\installerhelper.properties” -from-addremove
PictureProject → RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{FF3999BE-1A7B-4738-88AA-97BF14094A4A}\Setup.exe” -l0x9 UNINSTALL
QuickTime → C:\WINDOWS\unvise32qt.exe C:\WINDOWS\System32\QuickTime\Uninstall.log
Rediff Bol → C:\Program Files\Rediff Bol\uninstall.exe
Ulead Photo Express 4.0 My Custom Edition → RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{21BCE515-D5A3-11D4-8E33-0010B53EC668}\Setup.exe”
Winamp (remove only) → “C:\Program Files\Winamp\UninstWA.exe”
WinRAR archiver → C:\Program Files\WinRAR\uninstall.exe
WinZip → “C:\Program Files\WinZip\WINZIP32.EXE” /uninstall
Yahoo! Browser Services → C:\PROGRA~1\Yahoo!\Common\unyext.exe
Yahoo! Install Manager → C:\WINDOWS\System32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Internet Mail → C:\WINDOWS\System32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\Common\ymmapi.dll
Yahoo! Messenger → C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
– Application Event Log -------------------------------------------------------
Event Record #/Type652 / Error
Event Submitted/Written: 12/31/2007 03:29:22 PM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application dm7.exe, version 0.0.0.0, faulting module dm7.exe, version 0.0.0.0, fault address 0x0000b000.
Processing media-specific event for [dm7.exe!ws!]
Event Record #/Type651 / Error
Event Submitted/Written: 12/30/2007 06:59:52 PM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application start.exe, version 8.0.22.0, faulting module start.exe, version 8.0.22.0, fault address 0x000ad040.
Processing media-specific event for [start.exe!ws!]
Event Record #/Type650 / Error
Event Submitted/Written: 12/30/2007 06:59:30 PM
Event ID/Source: 1005 / Application Error
Event Description:
Windows cannot access the file G:\start.exe for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program Macromedia Flash Player 8.0 r22 because of this error.
Program: Macromedia Flash Player 8.0 r22
File: G:\start.exe
The error value is listed in the Additional Data section.
User Action
- Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
If the file still cannot be accessed and
- It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
- It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.
Additional Data
Error value: C0000240
Disk type: 5
Event Record #/Type648 / Error
Event Submitted/Written: 12/26/2007 10:28:18 PM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application winword.exe, version 9.0.0.2717, faulting module winword.exe, version 9.0.0.2717, fault address 0x00203c6e.
Processing media-specific event for [winword.exe!ws!]
Event Record #/Type647 / Error
Event Submitted/Written: 12/26/2007 09:23:49 PM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application winword.exe, version 9.0.0.2717, faulting module winword.exe, version 9.0.0.2717, fault address 0x001266fe.
Processing media-specific event for [winword.exe!ws!]
– Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
– System Event Log ------------------------------------------------------------
Event Record #/Type29504 / Warning
Event Submitted/Written: 01/02/2008 00:27:51 AM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 0008A1903F4C. The following
error occurred:
%%121.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Event Record #/Type29500 / Error
Event Submitted/Written: 01/01/2008 10:04:47 PM
Event ID/Source: 1002 / Dhcp
Event Description:
The IP address lease 192.168.1.33 for the Network Card with network address 0008A1903F4C has been
denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
Event Record #/Type29499 / Warning
Event Submitted/Written: 01/01/2008 10:04:43 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 0008A1903F4C. The following
error occurred:
%%1223.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Event Record #/Type29493 / Error
Event Submitted/Written: 01/01/2008 09:12:57 PM
Event ID/Source: 1002 / Dhcp
Event Description:
The IP address lease 192.168.1.33 for the Network Card with network address 0008A1903F4C has been
denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
Event Record #/Type29492 / Warning
Event Submitted/Written: 01/01/2008 09:12:52 PM
Event ID/Source: 1003 / Dhcp
Event Description:
Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address 0008A1903F4C. The following
error occurred:
%%1223.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
– End of Deckard’s System Scanner: finished at 2008-01-02 02:01:30 ------------
Sharad Garg