– Application Event Log -------------------------------------------------------
Event Record #/Type2308 / Error
Event Submitted/Written: 01/08/2008 06:42:24 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application SpySub.exe, version 3.0.0.29, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Event Record #/Type2304 / Warning
Event Submitted/Written: 01/08/2008 06:10:16 PM
Event ID/Source: 19011 / MSSQL$MICROSOFTSMLBIZ
Event Description:
(SpnRegister) : Error 1355
Event Record #/Type2296 / Warning
Event Submitted/Written: 01/08/2008 05:54:14 PM
Event ID/Source: 19011 / MSSQL$MICROSOFTSMLBIZ
Event Description:
(SpnRegister) : Error 1355
Event Record #/Type2290 / Warning
Event Submitted/Written: 01/07/2008 10:08:05 PM
Event ID/Source: 19011 / MSSQL$MICROSOFTSMLBIZ
Event Description:
(SpnRegister) : Error 1355
Event Record #/Type2288 / Error
Event Submitted/Written: 01/07/2008 10:07:52 PM
Event ID/Source: 1010 / Windows Product Activation
Event Description:
The Windows license was restored due to a system error. You might need to reactivate your Windows product.
– Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
– System Event Log ------------------------------------------------------------
Event Record #/Type21075 / Error
Event Submitted/Written: 01/08/2008 06:08:23 PM
Event ID/Source: 11 / PlugPlayManager
Event Description:
The device Root\LEGACY_FKORGGKC\0000 disappeared from the system without first being prepared for removal.
Event Record #/Type21074 / Error
Event Submitted/Written: 01/08/2008 06:08:22 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The combofix service failed to start due to the following error:
%%1053
Event Record #/Type21073 / Error
Event Submitted/Written: 01/08/2008 06:08:22 PM
Event ID/Source: 7009 / Service Control Manager
Event Description:
Timeout (30000 milliseconds) waiting for the combofix service to connect.
Event Record #/Type21035 / Error
Event Submitted/Written: 01/08/2008 05:53:45 PM / 01/08/2008 05:54:15 PM
Event ID/Source: 4307 / NetBT
Event Description:
Initialization failed because the transport refused to open initial Addresses.
Event Record #/Type21005 / Error
Event Submitted/Written: 01/07/2008 10:08:18 PM
Event ID/Source: 32003 / ipnathlp
Event Description:
The Network Address Translator (NAT) was unable to request an operation
of the kernel-mode translation module.
This may indicate misconfiguration, insufficient resources, or
an internal error.
The data is the error code.
– End of Deckard’s System Scanner: finished at 2008-01-08 19:18:04 ------------
—That’s all of it— What next???