0

here is a link to my other thread where my problems are described in detail to anyone willing to help. http://www.daniweb.com/techtalkforums/showthread.php?t=38537&highlight=boot+problems

Logfile of HijackThis v1.99.1
Scan saved at 3:37:29 AM, on 1/23/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
F:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
F:\WINDOWS\Explorer.EXE
F:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
F:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
F:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
F:\WINDOWS\system32\spoolsv.exe
F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
F:\WINDOWS\SOUNDMAN.EXE
F:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\ASUS\Probe\AsusProb.exe
F:\WINDOWS\system32\RunDLL32.exe
F:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
F:\WINDOWS\system32\rundll32.exe
F:\Program Files\Logitech\SetPoint\SetPoint.exe
F:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
F:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
F:\Program Files\Norton AntiVirus\navapsvc.exe
F:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
F:\WINDOWS\system32\nvsvc32.exe
F:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
F:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
F:\WINDOWS\system32\wuauclt.exe
F:\Program Files\Mozilla Firefox\firefox.exe
F:\Program Files\Messenger\msmsgs.exe
F:\Documents and Settings\erikc\Desktop\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - F:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - F:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - F:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - F:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [nTrayFw] F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "F:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NVIDIA nTune] "F:\Program Files\NVIDIA Corporation\nTune\\nTune.exe" clear
O4 - HKLM\..\Run: [ASUS Probe] C:\Program Files\ASUS\Probe\AsusProb.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] F:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKCU\..\Run: [MSMSGS] "F:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Logitech SetPoint.lnk = F:\Program Files\Logitech\SetPoint\SetPoint.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: f:\windows\system32\nvappfilter.dll
O12 - Plugin for .spop: F:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O23 - Service: app_filter - Unknown owner - F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - F:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - F:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Unknown owner - F:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" -k runservice (file missing)
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - F:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - F:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - F:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - Unknown owner - F:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - F:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - F:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - F:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - F:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

thanks for any help, it is very much appreciated

2
Contributors
3
Replies
5
Views
11 Years
Discussion Span
Last Post by DMR
0

I see no signs of infections in the log. Open the Event Viewer utility in your Administrative Tools control panel and look through your System and Application logs for entries flagged with "Error" or "Warning" which might be related to the problems. Double-clicking on such an entry will open a properties window with more detailed information on the error; post that info here. To do so:

In the Properties window of a given entry, click on the button with the graphic of two pieces of paper on it; the button is at the right of the window just below the up arrow/down arrow buttons. You won't see anything happen when you click the button, but it will copy all of the details to the Windows clipboard. You can then paste the details into your next post here.

0

there were a lot of errors and warnings, particularly in the application tab. im not sure if you wanted me to just figure out which ones might be causing the problem or what, but i have no idea, so i just posted them all..

Event Type: Error
Event Source:   DCOM
Event Category: None
Event ID:   10016
Date:       1/23/2005
Time:       4:33:38 AM
User:       NT AUTHORITY\LOCAL SERVICE
Computer:   EJIZZLE
Description:
The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{BC866CF2-5486-41F7-B46B-9AA49CF3EBB1}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/23/2005
Time:       3:59:18 AM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   W32Time
Event Category: None
Event ID:   34
Date:       1/23/2005
Time:       3:33:09 AM
User:       N/A
Computer:   EJIZZLE
Description:
The time service has detected that the system time needs to be  changed by +31572011 seconds. The time service will not change the system  time by more than +54000 seconds. Verify that your time and time zone  are correct, and that the time source time.windows.com (ntp.m|0x1|192.168.1.100:123->207.46.130.100:123) is working properly.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   11
Date:       1/23/2005
Time:       3:32:21 AM
User:       N/A
Computer:   EJIZZLE
Description:
The driver detected a controller error on \Device\CdRom1.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 0b 00 04 c0   .......À
0010: 03 01 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 16 29 00 00 00 00 00 00   .)......
0030: ff ff ff ff 06 00 00 00   ÿÿÿÿ....
0038: 40 00 00 00 00 00 00 00   @.......
0040: ff 20 0a 12 48 01 00 10   ÿ ..H...
0048: 00 00 00 00 04 00 00 00   ........
0050: 38 4b 7a 86 c0 f0 53 86   8KzÀðS
0058: 00 00 00 00 d8 3c 54 86   ....Ø<T
0060: 00 00 00 00 00 00 00 00   ........
0068: 4a 01 00 00 5a 00 00 00   J...Z...
0070: 08 00 00 00 00 00 00 00   ........
0078: 00 00 00 00 00 00 00 00   ........
0080: 00 00 00 00 00 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/20/2006
Time:       2:17:31 PM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   11
Date:       1/20/2006
Time:       3:54:24 PM
User:       N/A
Computer:   EJIZZLE
Description:
The driver detected a controller error on \Device\CdRom1.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 0b 00 04 c0   .......À
0010: 03 01 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 17 29 00 00 00 00 00 00   .)......
0030: ff ff ff ff 06 00 00 00   ÿÿÿÿ....
0038: 40 00 00 00 00 00 00 00   @.......
0040: ff 20 0a 12 48 01 00 10   ÿ ..H...
0048: 00 00 00 00 04 00 00 00   ........
0050: 38 4b 7a 86 40 e9 52 86   8Kz@éR
0058: 00 00 00 00 70 0e 54 86   ....p.T
0060: 00 00 00 00 00 00 00 00   ........
0068: 4a 01 00 00 5a 00 00 00   J...Z...
0070: 08 00 00 00 00 00 00 00   ........
0078: 00 00 00 00 00 00 00 00   ........
0080: 00 00 00 00 00 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   W32Time
Event Category: None
Event ID:   36
Date:       1/20/2006
Time:       1:39:13 AM
User:       N/A
Computer:   EJIZZLE
Description:
The time service has not been able to synchronize the system time for 49152 seconds because none of the time providers has been able to provide a usable time stamp. The system clock is unsynchronized.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/20/2006
Time:       1:18:35 AM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/19/2006
Time:       9:33:16 PM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/19/2006
Time:       6:40:54 PM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   DCOM
Event Category: None
Event ID:   10010
Date:       1/19/2006
Time:       4:17:11 PM
User:       EJIZZLE\erikc
Computer:   EJIZZLE
Description:
The server {F3A614DC-ABE0-11D2-A441-00C04F795683} did not register with DCOM within the required timeout.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/19/2006
Time:       3:23:07 PM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/19/2006
Time:       2:41:24 PM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   Tcpip
Event Category: None
Event ID:   4226
Date:       1/19/2006
Time:       2:16:03 PM
User:       N/A
Computer:   EJIZZLE
Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00   ......T.
0008: 00 00 00 00 82 10 00 80   ......
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Service Control Manager
Event Category: None
Event ID:   7000
Date:       1/18/2006
Time:       9:33:13 PM
User:       N/A
Computer:   EJIZZLE
Description:
The crd service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   Service Control Manager
Event Category: None
Event ID:   7009
Date:       1/18/2006
Time:       9:33:13 PM
User:       N/A
Computer:   EJIZZLE
Description:
Timeout (30000 milliseconds) waiting for the crd service to connect.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   DCOM
Event Category: None
Event ID:   10010
Date:       1/17/2006
Time:       2:56:50 PM
User:       EJIZZLE\erikc
Computer:   EJIZZLE
Description:
The server {F3A614DC-ABE0-11D2-A441-00C04F795683} did not register with DCOM within the required timeout.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   DCOM
Event Category: None
Event ID:   10010
Date:       1/16/2006
Time:       7:04:05 PM
User:       EJIZZLE\erikc
Computer:   EJIZZLE
Description:
The server {F3A614DC-ABE0-11D2-A441-00C04F795683} did not register with DCOM within the required timeout.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   DCOM
Event Category: None
Event ID:   10010
Date:       1/15/2006
Time:       3:22:57 PM
User:       EJIZZLE\erikc
Computer:   EJIZZLE
Description:
The server {F3A614DC-ABE0-11D2-A441-00C04F795683} did not register with DCOM within the required timeout.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   Service Control Manager
Event Category: None
Event ID:   7034
Date:       1/15/2006
Time:       1:48:05 PM
User:       N/A
Computer:   EJIZZLE
Description:
The Forceware Web Interface service terminated unexpectedly.  It has done this 1 time(s).


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   7
Date:       1/15/2006
Time:       1:24:33 PM
User:       N/A
Computer:   EJIZZLE
Description:
The device, \Device\CdRom0, has a bad block.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 07 00 04 c0   .......À
0010: 00 01 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 98 c3 2a 00 00 00 00   .Ã*....
0028: 84 00 06 00 00 00 00 00   .......
0030: ff ff ff ff 03 00 00 00   ÿÿÿÿ....
0038: 40 00 00 84 02 00 00 00   @......
0040: 00 20 0a 12 48 02 00 40   . ..H..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 f0 e4 64 86   ....ðäd
0058: 00 00 00 00 48 37 2b 85   ....H7+
0060: 02 00 00 00 73 58 05 00   ....sX..
0068: 28 00 00 05 58 73 00 00   (...Xs..
0070: 08 00 00 00 00 00 00 00   ........
0078: 70 00 03 00 00 00 00 0a   p.......
0080: 00 00 00 00 02 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   7
Date:       1/15/2006
Time:       1:03:32 PM
User:       N/A
Computer:   EJIZZLE
Description:
The device, \Device\CdRom0, has a bad block.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 07 00 04 c0   .......À
0010: 00 01 00 00 9c 00 00 c0   ......À
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 38 fd 27 00 00 00 00   .8ý'....
0028: 60 c5 04 00 00 00 00 00   `Å......
0030: ff ff ff ff 01 00 00 00   ÿÿÿÿ....
0038: 40 00 00 84 02 00 00 00   @......
0040: 00 20 0a 12 48 02 00 40   . ..H..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 50 45 71 86   ....PEq
0058: 00 00 00 00 20 98 53 86   .... S
0060: 02 00 00 00 a7 ff 04 00   ....§ÿ..
0068: 28 00 00 04 ff a7 00 00   (...ÿ§..
0070: 01 00 00 00 00 00 00 00   ........
0078: 70 00 03 00 00 00 00 0a   p.......
0080: 00 00 00 00 11 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   Cdrom
Event Category: None
Event ID:   51
Date:       1/15/2006
Time:       1:02:56 PM
User:       N/A
Computer:   EJIZZLE
Description:
An error was detected on device \Device\CdRom0 during a paging operation.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 01 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 33 00 04 80   ....3..
0010: 2d 01 00 00 13 00 00 c0   -......À
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 b0 fc 29 00 00 00 00   .°ü)....
0028: 33 bc 04 00 00 00 00 00   3¼......
0030: ff ff ff ff 01 00 00 00   ÿÿÿÿ....
0038: 40 00 00 84 02 00 00 00   @......
0040: ff 20 0a 12 4c 02 00 40   ÿ ..L..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 50 45 71 86   ....PEq
0058: 00 00 00 00 20 98 53 86   .... S
0060: 02 00 00 00 96 3f 05 00   ....?..
0068: 28 00 00 05 3f 96 00 00   (...?..
0070: 0c 00 00 00 00 00 00 00   ........
0078: 70 00 02 00 00 00 00 0a   p.......
0080: 00 00 00 00 3a 00 00 00   ....:...
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   7
Date:       1/15/2006
Time:       1:02:51 PM
User:       N/A
Computer:   EJIZZLE
Description:
The device, \Device\CdRom0, has a bad block.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 07 00 04 c0   .......À
0010: 00 01 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 b0 fc 29 00 00 00 00   .°ü)....
0028: f5 ba 04 00 00 00 00 00   õº......
0030: ff ff ff ff 03 00 00 00   ÿÿÿÿ....
0038: 40 00 00 84 02 00 00 00   @......
0040: 00 20 0a 12 48 02 00 40   . ..H..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 50 45 71 86   ....PEq
0058: 00 00 00 00 20 98 53 86   .... S
0060: 02 00 00 00 96 3f 05 00   ....?..
0068: 28 00 00 05 3f 96 00 00   (...?..
0070: 0c 00 00 00 00 00 00 00   ........
0078: 70 00 03 00 00 00 00 0a   p.......
0080: 00 00 00 00 02 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Service Control Manager
Event Category: None
Event ID:   7034
Date:       1/15/2006
Time:       11:50:04 AM
User:       N/A
Computer:   EJIZZLE
Description:
The SPBBCSvc service terminated unexpectedly.  It has done this 1 time(s).


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   SPBBCDrv
Event Category: None
Event ID:   54
Date:       1/15/2006
Time:       11:50:04 AM
User:       N/A
Computer:   EJIZZLE
Description:
The description for Event ID ( 54 ) in Source ( SPBBCDrv ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: \Device\BBDrvDevice.
Data:
0000: 00 00 00 00 01 00 5a 00   ......Z.
0008: 00 00 00 00 36 00 04 80   ....6..
0010: 00 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   SPBBCDrv
Event Category: None
Event ID:   54
Date:       1/15/2006
Time:       11:50:04 AM
User:       N/A
Computer:   EJIZZLE
Description:
The description for Event ID ( 54 ) in Source ( SPBBCDrv ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: \Device\BBDrvDevice.
Data:
0000: 00 00 00 00 01 00 5a 00   ......Z.
0008: 00 00 00 00 36 00 04 80   ....6..
0010: 00 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........



Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   11
Date:       1/13/2006
Time:       12:56:19 PM
User:       N/A
Computer:   EJIZZLE
Description:
The driver detected a controller error on \Device\CdRom1.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 0b 00 04 c0   .......À
0010: 03 01 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 56 48 00 00 00 00 00 00   VH......
0030: ff ff ff ff 06 00 00 00   ÿÿÿÿ....
0038: 40 00 00 00 00 00 00 00   @.......
0040: ff 20 0a 12 48 01 00 10   ÿ ..H...
0048: 00 00 00 00 04 00 00 00   ........
0050: 18 68 78 86 a0 c1 7a 86   .hx z
0058: 00 00 00 00 88 32 3d 86   ....2=
0060: 00 00 00 00 00 00 00 00   ........
0068: 4a 01 00 00 5a 00 00 00   J...Z...
0070: 08 00 00 00 00 00 00 00   ........
0078: 00 00 00 00 00 00 00 00   ........
0080: 00 00 00 00 00 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   DCOM
Event Category: None
Event ID:   10010
Date:       1/13/2006
Time:       12:50:29 PM
User:       EJIZZLE\erikc
Computer:   EJIZZLE
Description:
The server {F3A614DC-ABE0-11D2-A441-00C04F795683} did not register with DCOM within the required timeout.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.



Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   11
Date:       1/13/2006
Time:       12:43:32 PM
User:       N/A
Computer:   EJIZZLE
Description:
The driver detected a controller error on \Device\CdRom1.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 0b 00 04 c0   .......À
0010: 03 01 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 97 8a 03 00 00 00 00 00   ......
0030: ff ff ff ff 06 00 00 00   ÿÿÿÿ....
0038: 40 00 00 00 00 00 00 00   @.......
0040: ff 20 0a 12 48 01 00 10   ÿ ..H...
0048: 00 00 00 00 04 00 00 00   ........
0050: 20 f4 6b 86 e8 4f 6b 86    ôkèOk
0058: 00 00 00 00 18 bc 4a 86   .....¼J
0060: 00 00 00 00 00 00 00 00   ........
0068: 4a 01 00 00 5a 00 00 00   J...Z...
0070: 08 00 00 00 00 00 00 00   ........
0078: 00 00 00 00 00 00 00 00   ........
0080: 00 00 00 00 00 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   DCOM
Event Category: None
Event ID:   10016
Date:       1/12/2006
Time:       7:36:56 PM
User:       NT AUTHORITY\LOCAL SERVICE
Computer:   EJIZZLE
Description:
The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{BC866CF2-5486-41F7-B46B-9AA49CF3EBB1}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   11
Date:       1/12/2006
Time:       7:06:01 PM
User:       N/A
Computer:   EJIZZLE
Description:
The driver detected a controller error on \Device\CdRom1.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0f 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 0b 00 04 c0   .......À
0010: 03 01 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 18 85 04 00 00 00 00 00   .......
0030: ff ff ff ff 06 00 00 00   ÿÿÿÿ....
0038: 40 00 00 00 00 00 00 00   @.......
0040: ff 20 0a 12 48 01 00 10   ÿ ..H...
0048: 00 00 00 00 04 00 00 00   ........
0050: 90 30 78 86 28 67 78 86   0x(gx
0058: 00 00 00 00 40 9b 40 86   ....@@
0060: 00 00 00 00 00 00 00 00   ........
0068: 4a 01 00 00 5a 00 00 00   J...Z...
0070: 08 00 00 00 00 00 00 00   ........
0078: 00 00 00 00 00 00 00 00   ........
0080: 00 00 00 00 00 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   7
Date:       1/12/2006
Time:       6:46:29 PM
User:       N/A
Computer:   EJIZZLE
Description:
The device, \Device\CdRom0, has a bad block.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 07 00 04 c0   .......À
0010: 00 01 00 00 9c 00 00 c0   ......À
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 58 b9 23 00 00 00 00   .X¹#....
0028: e8 5f 03 00 00 00 00 00   è_......
0030: ff ff ff ff 01 00 00 00   ÿÿÿÿ....
0038: 40 00 00 84 02 00 00 00   @......
0040: 00 20 0a 12 48 02 00 40   . ..H..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 f0 aa 53 86   ....ðªS
0058: 00 00 00 00 18 8b 3f 86   .....?
0060: 02 00 00 00 2b 77 04 00   ....+w..
0068: 28 00 00 04 77 2b 00 00   (...w+..
0070: 02 00 00 00 00 00 00 00   ........
0078: 70 00 03 00 00 00 00 0a   p.......
0080: 00 00 00 00 11 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   7
Date:       1/12/2006
Time:       6:23:01 PM
User:       N/A
Computer:   EJIZZLE
Description:
The device, \Device\CdRom0, has a bad block.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 07 00 04 c0   .......À
0010: 00 01 00 00 9c 00 00 c0   ......À
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 80 a3 25 00 00 00 00   .£%....
0028: 1c 00 02 00 00 00 00 00   ........
0030: ff ff ff ff 00 00 00 00   ÿÿÿÿ....
0038: 40 00 00 84 02 00 00 00   @......
0040: 00 20 0a 12 48 02 00 00   . ..H...
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 a0 3a 85 f0 aa 53 86   . :ðªS
0058: 00 00 00 00 18 8b 3f 86   .....?
0060: 02 00 00 00 70 b4 04 00   ....p´..
0068: 28 00 00 04 b4 70 00 00   (...´p..
0070: 02 00 00 00 00 00 00 00   ........
0078: 70 00 03 00 00 00 00 0a   p.......
0080: 00 00 00 00 11 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Warning
Event Source:   Cdrom
Event Category: None
Event ID:   51
Date:       1/12/2006
Time:       6:20:31 PM
User:       N/A
Computer:   EJIZZLE
Description:
An error was detected on device \Device\CdRom0 during a paging operation.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 33 00 04 80   ....3..
0010: 2d 01 00 00 13 00 00 c0   -......À
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 8d da 01 00 00 00 00 00   Ú......
0030: ff ff ff ff 01 00 00 00   ÿÿÿÿ....
0038: 40 00 00 84 02 00 00 00   @......
0040: 00 20 0a 12 48 02 00 40   . ..H..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 f0 aa 53 86   ....ðªS
0058: 00 00 00 00 18 8b 3f 86   .....?
0060: 02 00 00 00 00 00 00 00   ........
0068: 28 00 00 00 00 00 00 00   (.......
0070: 02 00 00 00 00 00 00 00   ........
0078: 70 00 02 00 00 00 00 0a   p.......
0080: 00 00 00 00 3a 00 00 00   ....:...
0088: 00 00 00 00 00 00 00 00   ........



Event Type: Error
Event Source:   Service Control Manager
Event Category: None
Event ID:   7000
Date:       1/12/2006
Time:       5:42:37 PM
User:       N/A
Computer:   EJIZZLE
Description:
The aslm75 service failed to start due to the following error:
The system cannot find the file specified.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   Cdrom
Event Category: None
Event ID:   51
Date:       1/11/2006
Time:       9:24:45 PM
User:       N/A
Computer:   MACHINENAME
Description:
An error was detected on device \Device\CdRom0 during a paging operation.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 01 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 33 00 04 80   ....3..
0010: 2d 01 00 00 16 00 00 80   -......
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 62 22 00 00 00 00   ..b"....
0028: 12 0c 00 00 00 00 00 00   ........
0030: ff ff ff ff 01 00 00 00   ÿÿÿÿ....
0038: 40 00 00 c4 02 00 00 00   @..Ä....
0040: ff 20 0a 12 4c 02 00 40   ÿ ..L..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 10 2c 2f 86   .....,/
0058: 00 00 00 00 90 60 3e 86   ....`>
0060: 00 00 00 00 40 4c 04 00   ....@L..
0068: 28 00 00 04 4c 40 00 00   (...L@..
0070: 01 00 00 00 00 00 00 00   ........
0078: 70 00 06 00 00 00 00 0a   p.......
0080: 00 00 00 00 29 00 00 00   ....)...
0088: 00 00 00 00 00 00 00 00   ........



Event Type: Warning
Event Source:   Cdrom
Event Category: None
Event ID:   51
Date:       1/11/2006
Time:       9:24:44 PM
User:       N/A
Computer:   MACHINENAME
Description:
An error was detected on device \Device\CdRom0 during a paging operation.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 33 00 04 80   ....3..
0010: 2d 01 00 00 00 00 00 00   -.......
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: f2 0b 00 00 00 00 00 00   ò.......
0030: ff ff ff ff 03 00 00 00   ÿÿÿÿ....
0038: 40 00 00 4e 00 00 00 00   @..N....
0040: 00 20 0a 12 48 02 00 40   . ..H..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 10 2c 2f 86   .....,/
0058: 00 00 00 00 90 60 3e 86   ....`>
0060: 00 00 00 00 40 4c 04 00   ....@L..
0068: 28 00 00 04 4c 40 00 00   (...L@..
0070: 01 00 00 00 00 00 00 00   ........
0078: 00 00 00 00 00 00 00 00   ........
0080: 00 00 00 00 00 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Event Type: Error
Event Source:   Cdrom
Event Category: None
Event ID:   7
Date:       1/11/2006
Time:       9:24:34 PM
User:       N/A
Computer:   MACHINENAME
Description:
The device, \Device\CdRom0, has a bad block.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00   ..h...¸.
0008: 00 00 00 00 07 00 04 c0   .......À
0010: 00 01 00 00 9c 00 00 c0   ......À
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 62 22 00 00 00 00   ..b"....
0028: 7f 09 00 00 00 00 00 00   .......
0030: ff ff ff ff 01 00 00 00   ÿÿÿÿ....
0038: 40 00 00 c4 02 00 00 00   @..Ä....
0040: 00 20 0a 12 48 02 00 40   . ..H..@
0048: 00 00 00 00 0a 00 00 00   ........
0050: 00 00 00 00 10 2c 2f 86   .....,/
0058: 00 00 00 00 90 60 3e 86   ....`>
0060: 00 00 00 00 40 4c 04 00   ....@L..
0068: 28 00 00 04 4c 40 00 00   (...L@..
0070: 01 00 00 00 00 00 00 00   ........
0078: 70 00 03 00 00 00 00 0a   p.......
0080: 00 00 00 00 11 00 00 00   ........
0088: 00 00 00 00 00 00 00 00   ........


Here are the application events.. lot of stuff here sry about it


Event Type: Error
Event Source:   Application Hang
Event Category: (101)
Event ID:   1002
Date:       1/23/2005
Time:       5:17:33 AM
User:       N/A
Computer:   EJIZZLE
Description:
Hanging application wmplayer.exe, version 10.0.0.3646, hang module hungapp, version 0.0.0.0, hang address 0x00000000.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74   Applicat
0008: 69 6f 6e 20 48 61 6e 67   ion Hang
0010: 20 20 77 6d 70 6c 61 79     wmplay
0018: 65 72 2e 65 78 65 20 31   er.exe 1
0020: 30 2e 30 2e 30 2e 33 36   0.0.0.36
0028: 34 36 20 69 6e 20 68 75   46 in hu
0030: 6e 67 61 70 70 20 30 2e   ngapp 0.
0038: 30 2e 30 2e 30 20 61 74   0.0.0 at
0040: 20 6f 66 66 73 65 74 20    offset
0048: 30 30 30 30 30 30 30 30   00000000


Event Type: Error
Event Source:   Application Error
Event Category: None
Event ID:   1000
Date:       1/23/2005
Time:       3:33:36 AM
User:       N/A
Computer:   EJIZZLE
Description:
Faulting application firefox.exe, version 1.8.20051.11116, faulting module js3250.dll, version 4.0.0.0, fault address 0x0001cabe.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74   Applicat
0008: 69 6f 6e 20 46 61 69 6c   ion Fail
0010: 75 72 65 20 20 66 69 72   ure  fir
0018: 65 66 6f 78 2e 65 78 65   efox.exe
0020: 20 31 2e 38 2e 32 30 30    1.8.200
0028: 35 31 2e 31 31 31 31 36   51.11116
0030: 20 69 6e 20 6a 73 33 32    in js32
0038: 35 30 2e 64 6c 6c 20 34   50.dll 4
0040: 2e 30 2e 30 2e 30 20 61   .0.0.0 a
0048: 74 20 6f 66 66 73 65 74   t offset
0050: 20 30 30 30 31 63 61 62    0001cab
0058: 65 0d 0a                  e..


Event Type: Warning
Event Source:   Userenv
Event Category: None
Event ID:   1517
Date:       1/20/2006
Time:       2:25:10 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
Windows saved user EJIZZLE\erikc registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.


This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   nview_info
Event Category: None
Event ID:   1
Date:       1/20/2006
Time:       2:08:46 PM
User:       N/A
Computer:   EJIZZLE
Description:
The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW :  Explorer: WAIT_TIMEOUT, while waiting for a read to clear - resetting read event
.
Event Type: Error
Event Source:   nview_info
Event Category: None
Event ID:   1
Date:       1/20/2006
Time:       2:08:17 PM
User:       N/A
Computer:   EJIZZLE
Description:
The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW :  Explorer: WAIT_TIMEOUT, while waiting for a read to clear - resetting read event
.


Event Type: Error
Event Source:   nview_info
Event Category: None
Event ID:   1
Date:       1/20/2006
Time:       2:07:35 PM
User:       N/A
Computer:   EJIZZLE
Description:
The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW :  ccApp: WAIT_TIMEOUT, while waiting for a read to clear - resetting read event
.
Event Type: Error
Event Source:   Application Error
Event Category: None
Event ID:   1000
Date:       1/20/2006
Time:       1:58:22 PM
User:       N/A
Computer:   EJIZZLE
Description:
Faulting application navw32.exe, version 12.1.0.20, faulting module dec2rar.dll, version 3.2.14.8, fault address 0x00008755.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74   Applicat
0008: 69 6f 6e 20 46 61 69 6c   ion Fail
0010: 75 72 65 20 20 6e 61 76   ure  nav
0018: 77 33 32 2e 65 78 65 20   w32.exe
0020: 31 32 2e 31 2e 30 2e 32   12.1.0.2
0028: 30 20 69 6e 20 64 65 63   0 in dec
0030: 32 72 61 72 2e 64 6c 6c   2rar.dll
0038: 20 33 2e 32 2e 31 34 2e    3.2.14.
0040: 38 20 61 74 20 6f 66 66   8 at off
0048: 73 65 74 20 30 30 30 30   set 0000
0050: 38 37 35 35 0d 0a         8755..


Event Type: Error
Event Source:   nview_info
Event Category: None
Event ID:   1
Date:       1/20/2006
Time:       1:57:23 PM
User:       N/A
Computer:   EJIZZLE
Description:
The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW :  FIREFOX: WAIT_TIMEOUT, while waiting for a read to clear - resetting read event
.
Event Type: Warning
Event Source:   Userenv
Event Category: None
Event ID:   1517
Date:       1/18/2006
Time:       11:53:21 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
Windows saved user EJIZZLE\erikc registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.


This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   Application Error
Event Category: None
Event ID:   1000
Date:       1/18/2006
Time:       8:22:58 PM
User:       N/A
Computer:   EJIZZLE
Description:
Faulting application wmplayer.exe, version 9.0.0.3250, faulting module quartz.dll, version 6.5.2600.2749, fault address 0x0003c755.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74   Applicat
0008: 69 6f 6e 20 46 61 69 6c   ion Fail
0010: 75 72 65 20 20 77 6d 70   ure  wmp
0018: 6c 61 79 65 72 2e 65 78   layer.ex
0020: 65 20 39 2e 30 2e 30 2e   e 9.0.0.
0028: 33 32 35 30 20 69 6e 20   3250 in
0030: 71 75 61 72 74 7a 2e 64   quartz.d
0038: 6c 6c 20 36 2e 35 2e 32   ll 6.5.2
0040: 36 30 30 2e 32 37 34 39   600.2749
0048: 20 61 74 20 6f 66 66 73    at offs
0050: 65 74 20 30 30 30 33 63   et 0003c
0058: 37 35 35 0d 0a            755..


Event Type: Error
Event Source:   nview_info
Event Category: None
Event ID:   1
Date:       1/17/2006
Time:       10:25:32 AM
User:       N/A
Computer:   EJIZZLE
Description:
The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW :  Explorer: WAIT_TIMEOUT, while waiting for a read to clear - resetting read event
.
Event Type: Error
Event Source:   Application Error
Event Category: None
Event ID:   1000
Date:       1/16/2006
Time:       8:22:42 PM
User:       N/A
Computer:   EJIZZLE
Description:
Faulting application white.exe, version 1.0.0.0, faulting module white.exe, version 1.0.0.0, fault address 0x003c3bf0.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74   Applicat
0008: 69 6f 6e 20 46 61 69 6c   ion Fail
0010: 75 72 65 20 20 77 68 69   ure  whi
0018: 74 65 2e 65 78 65 20 31   te.exe 1
0020: 2e 30 2e 30 2e 30 20 69   .0.0.0 i
0028: 6e 20 77 68 69 74 65 2e   n white.
0030: 65 78 65 20 31 2e 30 2e   exe 1.0.
0038: 30 2e 30 20 61 74 20 6f   0.0 at o
0040: 66 66 73 65 74 20 30 30   ffset 00
0048: 33 63 33 62 66 30 0d 0a   3c3bf0..


Event Type: Error
Event Source:   Application Hang
Event Category: (101)
Event ID:   1002
Date:       1/16/2006
Time:       10:07:58 AM
User:       N/A
Computer:   EJIZZLE
Description:
Hanging application white.exe, version 1.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74   Applicat
0008: 69 6f 6e 20 48 61 6e 67   ion Hang
0010: 20 20 77 68 69 74 65 2e     white.
0018: 65 78 65 20 31 2e 30 2e   exe 1.0.
0020: 30 2e 30 20 69 6e 20 68   0.0 in h
0028: 75 6e 67 61 70 70 20 30   ungapp 0
0030: 2e 30 2e 30 2e 30 20 61   .0.0.0 a
0038: 74 20 6f 66 66 73 65 74   t offset
0040: 20 30 30 30 30 30 30 30    0000000
0048: 30                        0


Event Type: Warning
Event Source:   Userenv
Event Category: None
Event ID:   1517
Date:       1/15/2006
Time:       1:58:50 AM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
Windows saved user EJIZZLE\erikc registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.


This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   Userenv
Event Category: None
Event ID:   1517
Date:       1/12/2006
Time:       7:28:08 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
Windows saved user EJIZZLE\erikc registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.


This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source:   Application Error
Event Category: (100)
Event ID:   1000
Date:       1/12/2006
Time:       6:23:09 PM
User:       N/A
Computer:   EJIZZLE
Description:
Faulting application WMFDIST.EXE, version 5.50.4134.600, faulting module WMFDIST.EXE, version 5.50.4134.600, fault address 0x000043ff.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74   Applicat
0008: 69 6f 6e 20 46 61 69 6c   ion Fail
0010: 75 72 65 20 20 57 4d 46   ure  WMF
0018: 44 49 53 54 2e 45 58 45   DIST.EXE
0020: 20 35 2e 35 30 2e 34 31    5.50.41
0028: 33 34 2e 36 30 30 20 69   34.600 i
0030: 6e 20 57 4d 46 44 49 53   n WMFDIS
0038: 54 2e 45 58 45 20 35 2e   T.EXE 5.
0040: 35 30 2e 34 31 33 34 2e   50.4134.
0048: 36 30 30 20 61 74 20 6f   600 at o
0050: 66 66 73 65 74 20 30 30   ffset 00
0058: 30 30 34 33 66 66         0043ff


Event Type: Error
Event Source:   Application Error
Event Category: (100)
Event ID:   1005
Date:       1/12/2006
Time:       6:23:07 PM
User:       N/A
Computer:   EJIZZLE
Description:
Windows cannot access the file D:\REDIST\WMFDIST.EXE for one of the following reasons:  there is a problem with the network connection, the disk that the file is stored on, or the storage  drivers installed on this computer; or the disk is missing.  Windows closed the program Windows Media Component Setup Application because of this error.


Program: Windows Media Component Setup Application
File: D:\REDIST\WMFDIST.EXE


The error value is listed in the Additional Data section.
User Action
1. Open the file again.  This situation might be a temporary problem that corrects itself when the program runs again.
2.  If the file still cannot be accessed and
- It is on the network,  your network administrator should verify that there is not a problem with the network and that the server can be contacted.
- It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for  further assistance.
Additional Data
Error value: C000009C
Disk type: 5


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   Userenv
Event Category: None
Event ID:   1517
Date:       1/12/2006
Time:       5:00:35 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
Windows saved user EJIZZLE\erikc registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.


This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   WinMgmt
Event Category: None
Event ID:   63
Date:       1/12/2006
Time:       5:00:24 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
A provider, NPU Management Provider, has been registered in the WMI namespace, root\nVIDIA\NS_Firewall, to use the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
(23 entries of that)



Event Type: Warning
Event Source:   WinMgmt
Event Category: None
Event ID:   63
Date:       1/12/2006
Time:       5:00:23 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
A provider, NPU Management Provider, has been registered in the WMI namespace, root\nVIDIA\NS_Firewall, to use the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   WinMgmt
Event Category: None
Event ID:   63
Date:       1/12/2006
Time:       5:00:18 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
A provider, NPU Management Provider, has been registered in the WMI namespace, root\nVIDIA\NS_Eth_HOT, to use the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   WinMgmt
Event Category: None
Event ID:   63
Date:       1/12/2006
Time:       5:00:17 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
A provider, NPU Management Provider, has been registered in the WMI namespace, root\nVIDIA\NS_Eth_HOT, to use the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   WinMgmt
Event Category: None
Event ID:   63
Date:       1/12/2006
Time:       5:00:16 PM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
A provider, NPU Management Provider, has been registered in the WMI namespace, root\nVIDIA\NS_Eth\NS_EthConfig, to use the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Warning
Event Source:   WinMgmt
Event Category: None
Event ID:   63
Date:       1/12/2006
Time:       5:43:02 AM
User:       NT AUTHORITY\SYSTEM
Computer:   EJIZZLE
Description:
A provider, HiPerfCooker_v1, has been registered in the WMI namespace, Root\WMI, to use the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. 

Edited by happygeek: fixed formatting

0

Your Event Viewer errors indicate issues in a few different areas; here are some ideas on some fo the errors:

1. Concerning some of the general and network-related instabilities you've described, I found some interesting threads on problems with the NVidia firewall which discuss what sound like very similar issues. Have a read of this thread on NVidia's support forum in particular; see if any of the suggestions there can help you.


2. Event ID 4226: " TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts."

The above error almost certainly relates to the issues you've experienced when doing heavy downloads. Read this article for an explanation; there is also a link in the article to a fix.


3. The W32Time errors are related to syncing your system's clock to a network/Internet time server; you should fix the time discrepancy if possible. See this Microsoft support article and use the recommended fix if the exact situation descibed applies to your case. If your issue is not the "resume from standby" issue discussed in the Microsoft article, correctly set your clock through the Date & Time control panel and see if it remains correct over time. Unless your computer is part of a domain in which you should be syncing to a netwrok time server, you don't need to have the time service running:

* Open the Services utility in your Administrative Tools control panel.
* Locate the service named "Windows Time" and double-click on it.
* Click the "Stop" button; once the service is stopped, choose "Disabled" from the "Startup type" drop-down box.
* Click OK to close the service's Properties window, and then exit the Services utility.


4. One of your errors references a "D:" drive, and your HijackThis log has references to programs running from both an "F:" and a "C:" drive. Give us the details of your system configuration in that regard.


That's all I can post right now- it's time for me to log off and get some sleep.................

This topic has been dead for over six months. Start a new discussion instead.
Have something to contribute to this discussion? Please be thoughtful, detailed and courteous, and be sure to adhere to our posting rules.