How JustAnswer Works:

  • Ask an Expert
    Experts are full of valuable knowledge and are ready to help with any question. Credentials confirmed by a Fortune 500 verification firm.
  • Get a Professional Answer
    Via email, text message, or notification as you wait on our site.
    Ask follow up questions if you need to.
  • 100% Satisfaction Guarantee
    Rate the answer you receive.

Ask Jins M. N. Your Own Question

Jins M. N.
Jins M. N., Computer Support Specialist
Category: Computer
Satisfied Customers: 1920
Experience:  Qualified Computer Professional - 12+ years experience. Expert in Computer Hardware & Graphic Design
50064670
Type Your Computer Question Here...
Jins M. N. is online now
A new question is answered every 9 seconds

I cant get Apple Mobile Service service to start. I have

Customer Question

I can't get Apple Mobile Service service to start. I have done several uninstall/re-installs. I have ran ccleaner, and 3rd party uninstallers. I am running Windows7. I have tried to install the whole iTunes pkg and each separate apple app
Submitted: 2 years ago.
Category: Computer
Expert:  Ryan B. replied 2 years ago.

Ryan B. :

Hello and welcome to JustAnswer~! My name is XXXXX XXXXX I would like to assist you with your question.

Ryan B. :

Are you getting the error:

"This [device] cannot be used because the Apple Mobile Device Service is not started."

Ryan B. :

Have you went into services and tried to start the service and it fails?

Ryan B. :

when did this start happening?

Customer :

yes, that is the response

Customer :

starting the service fails with 1053 error

Customer :

the service is set at auto, but no state listed under status

Ryan B. :

alright

Ryan B. :

double click on the service and click on start

Customer :

just done that a nano sec ago

Customer :

the response was 1503 error

Customer :

a little history

Customer :

err appeared b/c I just purchased an iPhone 4s

Customer :

I haven't used the i

Customer :

iTunes app in months b4 that

Customer :

been at this for 5 days now

Customer :

I have tried google and Apple for answers

Customer :

this is 64-bit Win7

Ryan B. :

GO to c:\program files\iPod\bin. You will see iPodService. Double click it and let me know if you get an error about a .dll file

Customer :

ok, 1 sec

Ryan B. :

k

Customer :

hmm, no reaction

Ryan B. :

Alright

Ryan B. :

thanks

Customer :

np

Customer :

ea time I installed iTunes, the "starting of amd serv" failed, so I selected ignore, just to get the other apps installed

Customer :

the error also asked me to make sure I have privileges

Customer :

I have tried to install as admin too

Customer :

I have tried with firewall n anti virus apps disabled

Ryan B. :

What if you try to run the setup.exe as administrator by right clicking on it and clicking "run as admin"

Customer :

yes, I have tried that too

Customer :

I have logged in to pc as admin too

Customer :

I am part of the admin grp too

Customer :

I have searched the apple/itunes discussion forum with no luck

Ryan B. :

i'm seeing what I can come up with

Ryan B. :

this is a tricky one

Ryan B. :

you said you used a 3rd party remover tool and uninstalled it completely right?

Customer :

yes

Customer :

revo uninstaller

Customer :

ccleaner

Ryan B. :

alright thanks

Ryan B. :

please click start then in the search at the bottom type in programs and features

Ryan B. :

then push enter

Ryan B. :

now find itunes and then click on it and click change then click repair

Ryan B. :

let me know the reuslts

Ryan B. :

When you uninstalled Itunes did you install everything related to it:



  1. iTunes

  2. QuickTime

  3. Apple Software Update

  4. Apple Mobile Device Support

  5. Bonjour

  6. Apple Application Support (iTunes 9 or later)


 

Ryan B. :

also after the uninstall did you reboot?

Customer :

do I need change n repair or just repair?

Customer :

yes, I did a reboot

Customer :

then an install the whole iTunes app, I also tried to install ea app separately

Ryan B. :

just repair

Customer :

I just choose to repair the app

Customer :

ok

Ryan B. :

k

Customer :

repair finished

Customer :

running iTunes now

Ryan B. :

ok

Ryan B. :

check the service

Customer :

service is set to auto, but start up fails

Ryan B. :

what antivirus do you have?

Customer :

eset/nod32

Customer :

I also run spybot

Ryan B. :

can you turn off realtime scanning or temp disable it then try to start service

Customer :

done that, trying serv now

Ryan B. :

ok

Customer :

still getting 1053 error

Customer :

this error is generated when I try to manually start the amd service

Ryan B. :

do you have an ipod service listed there too?

Customer :

no

Customer :

sry, yes I do

Ryan B. :

is it started?

Customer :

manual startup type, but it is started

Ryan B. :

can you stop it and then restart it and then try to start the apple mobile service

Customer :

ok, 1 sec

Customer :

still getting 1053 error

Customer :

chkn evt vwr, 1 sec

Ryan B. :

Please try to uninstall reinstall one more time in this order:

1. Uninstall iTunes; do not reboot when prompted
2. Uninstall Apple Mobile Device Support
3. Uninstall Quicktime
4. Reboot
5. Delete the 2 Quicktime files in c:\Windows\System32
6. Disable Eset/Nod32
7. Reinstall iTunes latest version.

Customer :

ok

Customer :

Log Name: System
Source: Service Control Manager
Date: 1/23/2012 10:25:49 PM
Event ID: 7000
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Blayr-PC
Description:
The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908d1-a6d7-4695-8e1e-26931d2012f4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="49152">7000</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8080000000000000</Keywords>
<TimeCreated SystemTime="2012-01-24T03:25:49.526851000Z" />
<EventRecordID>335549</EventRecordID>
<Correlation />
<Execution ProcessID="132" ThreadID="4620" />
<Channel>System</Channel>
<Computer>Blayr-PC</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Apple Mobile Device</Data>
<Data Name="param2">%%1053</Data>
</EventData>
</Event>

Customer :

since I had it in the copy buffer

Customer :

brb

Ryan B. :

k

Customer :

how do I get back to u, afer reboot?

Ryan B. :

Bookmark this page /or add this page as a favorite

Customer :

Itunes gone, now doing amd

Ryan B. :

alrighty

Customer :

amd is now gone

Customer :

no QT, so I a doing a reboot

Ryan B. :

ok

Ryan B. :

keep me posted

Customer :

reboot. brb

Customer :

ok, i m back

Customer :

will continue with removal proc

Ryan B. :

alright

Ryan B. :

glad to see you made it back

Customer :

no apple sw in sys32 folder

Customer :

nod32 has been disabled, re-installing iTunes now

Ryan B. :

ok, thats because there was no quicktime installed

Ryan B. :

If you go to c:\program files do you see any apple folders left?

Customer :

darn, I started the install proc

Ryan B. :

ok

Ryan B. :

No problem

Customer :

error during the "starting service" process of the install

Customer :

service "amd" failed to start

Ryan B. :

alright

Ryan B. :

double click on the service and click on the dependencies tab

Ryan B. :

this will list the services that need to be started for this service to start

Ryan B. :

can you verify the the other services are started also

Customer :

verify if u have sufficient privledges to start system services

Customer :

tcpip

Customer :

is the service

Customer :

tcpip protocol driver

Customer :

chkn service list for thast

Ryan B. :

ok

Customer :

that service is not listed

Ryan B. :

Did you disable eset/nod before reinstalling?

Customer :

assuming that is a service

Customer :

yes

Customer :

nod32 is disabled

Ryan B. :

this is quite od

Ryan B. :

odd

Ryan B. :

do you know the last time thta this worked

Customer :

probably 6 months ago

Customer :

maybe even a year

Customer :

I pretty much add all the songs I need

Customer :

needed

Customer :

if I hadnt purchased a new iphone, I still wouldnt know

Customer :

is tcpip protocal driver a service?

Ryan B. :

that service is enabled

Ryan B. :

tcp is an internet protocol

Customer :

shd it b listed in services?

Customer :

b/c I don't c it

Ryan B. :

should be one that says tcp/ip netbios helper

Ryan B. :

I am going to have to opt-out and let another tech give it a shot. I'm stumped!



 

Customer :

ok

Ryan B. :

another tech should be with you shortly

Customer :

hello

Customer :

great, pls us sms

Expert:  Jins M. N. replied 2 years ago.
Hi, welcome to justanswer. I am Jins here to assist you. I think we should try installing on the builtin administrator account of windows 7. Please note ordianary admin account and builtin administrator account are different. Built in administrator account is disabled on vista and 7. So now you need to activate the builtin administrator account of your windows.

First you’ll need to open a command prompt in administrator mode. Type cmd in the start menu search text box. Right-click on the cmd listed under programs list and choose “Run as administrator

 

image

Now type the following command:

net user administrator /active:yes

You should see a message that the command completed successfully. Restart the system and boot normally. You’ll now see the Administrator account as a choice.

 

Click on and login as administrator. Now you should perform the following actions as logined as administrator.

 

Click here and download revo uninstaller program. You only need to download its freeware version. Install revo and launch it. You can see a list of all installed programs. Select any instance of iTunes, QuickTime, Apple Software Update, Apple Mobile Device Support, Bonjour, (all the programs from apple) and uninstall it with the help of revo.

Restart the computer. Then click here and download ccleaner. Install and launch it. Click on the registry icon on the left side. Then click on Scan for issues button. After completing the scan click on Fix selected issues button.

 

Restart the computer. Now click here and download the latest version of iTunes. Install iTunes and all apple updates. I hope this will fix the problem.

 

 



 

Regards

Jins

 

 

 

Please ACCEPT My Solution If It Helped ..

POSITIVE Feedback And A BONUS Are Always Appreciated ..

PLEASE CONTACT ME BEFORE LEAVING A NEGATIVE FEEDBACK

Customer: replied 2 years ago.
Hello Jins,

I have done your suggestions before contacting Justanswer. If you still want me to do that, I will.
Customer: replied 2 years ago.
Relist: Other. It's not that I am not satisfied, I had to leave before getting the issue resolved. I am going to bed now. I can also be reached via Yahoo IM. MY screen name is blayrlovessolarys.
Expert:  Maggie P replied 2 years ago.
Hello,

You can return here at anytime, you will be sent an email each time an expert responds.

I realize you have uninstalled iTunes and related programs several times and this can become frustrating. We will try to avoid repeatative tasks however sometimes it is unavoidable. These removal instructions are slightly different from before but please be careful to follow the steps in the exact order they appear.

Open Control Panel > Device Manager and expand Universal Serial Bus Controllers. Connect the iPhone, you should see the page go blank and then eventually see the Apple Mobile Device Drivers listed, it will have a yellow exclamation mark most likely. If the entry doesn't show up disconnect and reconnect the iPhone until you see it. Right click on the Apple Mobile Device Drivers and select Properties. Click on the Driver tab and select Uninstall, when asked if you want to delete the driver select Yes. Disconnect the iPhone and any other apple device such as iPod.

Next make sure all iTunes and QuickTime are closed.

From the Task Manager (CTRL + ALT + DEL) Processes tab make sure that the iPodService.exe isn't on the list, if it is highlight iPodService.exe and click End Process.

From Program and Features uninstall the Apple products in the following order but do not let the computer restart until they are all removed. If any are missing skip to the next one in the list.

iTunes
iPod updater
QuickTime
Apple Software Update
Apple Mobile Device Support
Bonjour
Apple Application Support

Once they are all removed restart the computer. Delete these folders if you still have them present.

C:\Program Files\iTunes
C:\Program Files\iPod
C:\Program Files\QuickTime
C:\Program Files\Bonjour
C:\Program Files\Common Files\Apple


Set the system to show hidden files. (Computer > Organize > Folder and search options > View).

Delete the following files then reverse the hidden files setting.

C:\Windows\system32\QuickTime
C:\Windows\system32\QuickTimeVR


Empty the Recycle Bin then do another restart.

Disable your security programs as before to reinstall the latest version of iTunes. If you receive any errors this time please take a note of the exact wording and report the error here.



Customer: replied 2 years ago.
Hello Maggie P, do u have a moment? I am sorry for missing you. I am available to continue working this issue. Olease let me know if u are available, if not now, then when. Thabnks for your response. Which I am now implementing.
Expert:  Maggie P replied 2 years ago.
Yes I am available now, let us know how previous routine works out and if you still have problems we can take some other routes to find the problem.
Customer: replied 2 years ago.
FYI, I am using Revo uninstaller to remove all products
I have just removed iTunes, now attempting to remove next Apple app on the list. brb
Expert:  Maggie P replied 2 years ago.
OK that's fine.
Customer: replied 2 years ago.
I just completed uninstalling suggested Apple apps, I will now reboot, brb.
Expert:  Maggie P replied 2 years ago.
Standing by...
Customer: replied 2 years ago.
Hi Maggie, I am back. I am in the middle of the itunes64setup.exe install as an admin, and the install failed again at starting AMD service. Any suggestions?
Expert:  Maggie P replied 2 years ago.
OK the following tool will give us a better look at your system and may shed some light. Please download OTL.exe (http://tinyurl.com/lvze67) and save it to your desktop.

Double click the icon to start the tool.

  • Under Output select Minimal Output
  • Put a check mark in Scan All Users
  • Put a check mark in both Purity Check and LOP Check
  • Click Run Scan and let the program run uninterrupted.
When the scan is complete, two text files will be created, OTL.txt and Extras.txt, on Desktop. Copy and paste the entire contents of both files here.
Customer: replied 2 years ago.
I have downloaded the OTL app, and selected the options you suggested. The app is now running. I am currently in the middle of the itune install. My install options are abort/retry/ignore. The error msg is "Service 'Apple Mobile Device' (Apple Mobile Device failed to start. Verify that you have sufficient privileges to install system services.
Expert:  Maggie P replied 2 years ago.
Select Abort for now and wait for the OTL reports.
Customer: replied 2 years ago.
OK, have the reports
Expert:  Maggie P replied 2 years ago.
Copy and paste the contents of both in a reply here. They may need a reply for each report if they are too long for one reply.
Customer: replied 2 years ago.
OTL.txt

OTL logfile created on: 1/24/2012 1:34:13 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = I:\Incoming
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

5.99 Gb Total Physical Memory | 3.07 Gb Available Physical Memory | 51.32% Memory free
11.98 Gb Paging File | 8.76 Gb Available in Paging File | 73.09% Paging File free
Paging file location(s): d:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 390.62 Gb Total Space | 180.24 Gb Free Space | 46.14% Space Free | Partition Type: NTFS
Drive D: | 540.79 Gb Total Space | 270.71 Gb Free Space | 50.06% Space Free | Partition Type: NTFS
Drive E: | 931.51 Gb Total Space | 412.81 Gb Free Space | 44.32% Space Free | Partition Type: NTFS
Drive F: | 931.51 Gb Total Space | 531.04 Gb Free Space | 57.01% Space Free | Partition Type: NTFS
Drive G: | 244.14 Gb Total Space | 236.17 Gb Free Space | 96.74% Space Free | Partition Type: NTFS
Drive H: | 122.07 Gb Total Space | 19.49 Gb Free Space | 15.97% Space Free | Partition Type: NTFS
Drive I: | 1863.01 Gb Total Space | 10.45 Gb Free Space | 0.56% Space Free | Partition Type: NTFS
Drive M: | 931.51 Gb Total Space | 52.56 Gb Free Space | 5.64% Space Free | Partition Type: NTFS
Drive N: | 931.51 Gb Total Space | 92.88 Gb Free Space | 9.97% Space Free | Partition Type: NTFS
Drive P: | 931.51 Gb Total Space | 477.39 Gb Free Space | 51.25% Space Free | Partition Type: NTFS
Drive S: | 232.88 Gb Total Space | 94.50 Gb Free Space | 40.58% Space Free | Partition Type: NTFS
Drive T: | 2779.26 Gb Total Space | 1953.18 Gb Free Space | 70.28% Space Free | Partition Type: NTFS
Drive V: | 99.54 Gb Total Space | 23.52 Gb Free Space | 23.63% Space Free | Partition Type: NTFS
Drive W: | 931.51 Gb Total Space | 55.81 Gb Free Space | 5.99% Space Free | Partition Type: NTFS
Drive Z: | 465.66 Gb Total Space | 371.79 Gb Free Space | 79.84% Space Free | Partition Type: NTFS

Computer Name: BLAYR-PC | User Name: Blair | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - I:\Incoming\OTL.exe (OldTimer Tools)
PRC - C:\Users\Blair\AppData\Local\Temp\IXP520.TMP\SetupAdmin.exe (Apple Inc.)
PRC - D:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (TeamViewer GmbH)
PRC - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe (TeamViewer GmbH)
PRC - C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe (TeamViewer GmbH)
PRC - D:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
PRC - C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.)
PRC - C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.)
PRC - D:\Program Files (x86)\vmware-tray.exe (VMware, Inc.)
PRC - D:\Program Files (x86)\vmware-authd.exe (VMware, Inc.)
PRC - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\Nero\Update\NASvc.exe (Nero AG)
PRC - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
PRC - C:\Program Files (x86)\VMware\VMware vCenter Converter Standalone\vmware-converter.exe (VMware, Inc.)
PRC - C:\Program Files (x86)\VMware\VMware vCenter Converter Standalone\vmware-converter-a.exe (VMware, Inc.)
PRC - D:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe (DT Soft Ltd)
PRC - d:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe (DT Soft Ltd)
PRC - D:\Program Files (x86)\VideoLAN\VLC\vlc.exe ()
PRC - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\AIM\aim.exe (AOL Inc.)
PRC - D:\Program Files (x86)\Driver-Soft\HardwareHelper\TaskTray.exe (Driver-Soft Inc.)
PRC - C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Flexera Software, Inc.)
PRC - C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe (Logitech Inc.)
PRC - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe ()
PRC - D:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - D:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (ESET)
PRC - D:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
PRC - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)


========== Modules (No Company Name) ==========

MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\b41e38edbd6dfe20997f6ea7c080aceb\System.Web.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b559a471eef00081f0b5c2719d1d9623\System.Runtime.Remoting.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d7a64c28cf0c90e6c48af4f7d6f9ed41\WindowsBase.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\056e417666352c7a702530d8a2770e30\IAStorCommon.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\f14466471a19a329eccf40839aa72cc4\IAStorUtil.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6e592e424a204aafeadbe22b6b31b9db\System.Windows.Forms.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b2cfd85528a27eb71dc41d8067359a1\System.Drawing.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\130ad4d9719e566ca933ac7158a04203\System.Xml.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2d5bcbeb9475ef62189f605bcca1cec6\System.Configuration.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll ()
MOD - D:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - D:\Program Files (x86)\Yahoo!\Messenger\yui.dll ()
MOD - D:\Program Files (x86)\Yahoo!\Messenger\pcre.dll ()
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
MOD - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll ()
MOD - C:\Program Files (x86)\AIM\nssckbi.dll ()
MOD - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF ()
MOD - C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll ()


========== Win32 Services (SafeList) ==========

SRV:64bit: - (LBTServ) -- C:\Program Files\Common Files\logishrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV:64bit: - (NfsClnt) -- C:\Windows\SysNative\nfsclnt.exe (Microsoft Corporation)
SRV:64bit: - (BackupExecAgentAccelerator) -- C:\Program Files\Symantec\Backup Exec\RAWS\beremote.exe (Symantec Corporation)
SRV:64bit: - (PDVFSService) -- C:\Program Files\Symantec\Backup Exec\RAWS\PDVFSService.exe ()
SRV:64bit: - (bedbg) -- C:\Program Files\Symantec\Backup Exec\RAWS\bedbg.exe (Symantec Corporation)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV:64bit: - (simptcp) -- C:\Windows\SysNative\TCPSVCS.EXE (Microsoft Corporation)
SRV:64bit: - (LVPrcS64) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV - (TeamViewer7) -- C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (VMnetDHCP) -- C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.)
SRV - (VMware NAT Service) -- C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.)
SRV - (VMwareHostd) -- D:\Program Files (x86)\vmware-hostd.exe ()
SRV - (VMAuthdService) -- D:\Program Files (x86)\vmware-authd.exe (VMware, Inc.)
SRV - (IAStorDataMgrSvc) Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation)
SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (NAUpdate) -- C:\Program Files (x86)\Nero\Update\NASvc.exe (Nero AG)
SRV - (VMUSBArbService) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (VMware, Inc.)
SRV - (vmware-converter-worker) -- C:\Program Files (x86)\VMware\VMware vCenter Converter Standalone\vmware-converter.exe (VMware, Inc.)
SRV - (vmware-converter-server) -- C:\Program Files (x86)\VMware\VMware vCenter Converter Standalone\vmware-converter.exe (VMware, Inc.)
SRV - (vmware-converter-agent) -- C:\Program Files (x86)\VMware\VMware vCenter Converter Standalone\vmware-converter-a.exe (VMware, Inc.)
SRV - (VLC media player) -- D:\Program Files (x86)\VideoLAN\VLC\vlc.exe ()
SRV - (OpenVPNService) -- d:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe ()
SRV - (Microsoft SharePoint Workspace Audit Service) -- D:\Program Files\Microsoft Office\Office14\GROOVE.EXE (Microsoft Corporation)
SRV - (nvUpdatusService) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
SRV - (CLHNServiceForPowerDVD) -- d:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe ()
SRV - (CyberLink PowerDVD 11.0 Service) -- d:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Common\MediaServer\CLMSServer.exe (CyberLink)
SRV - (CyberLink PowerDVD 11.0 Monitor Service) -- d:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe (CyberLink)
SRV - (__RemoteX__) -- C:\Program Files (x86)\RemoteX\remotex.exe (http://www.PEEPLEware.com)
SRV - (LMIGuardianSvc) -- D:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe (LogMeIn, Inc.)
SRV - (WAS) -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (W3SVC) -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (AppHostSvc) -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll (Microsoft Corporation)
SRV - (gfi_lanss9_attservice) -- D:\Program Files (x86)\GFI\LANguard 9\lnssatt.exe (GFI Software Ltd.)
SRV - (HPSLPSVC) -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL (Hewlett-Packard Co.)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (SwitchBoard) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (WiselinkPro) -- D:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe ()
SRV - (rpcapd) Remote Packet Capture Protocol v.0 (experimental) -- C:\Program Files (x86)\WinPcap\rpcapd.exe (CACE Technologies, Inc.)
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (simptcp) -- C:\Windows\SysWOW64\TCPSVCS.EXE (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (EFT Server Enterprise) -- d:\Program Files (x86)\GlobalSCAPE\EFT Server Enterprise\cftpstes.exe (GlobalSCAPE Texas, LP)
SRV - (AsSysCtrlService) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe ()
SRV - (EhttpSrv) -- D:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (ESET)
SRV - (ekrn) -- D:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (ESET)
SRV - (SBSDWSCService) -- D:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
SRV - (YahooAUService) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
SRV - (WcesComm) -- C:\Windows\WindowsMobile\wcescomm.dll (Microsoft Corporation)
SRV - (RapiMgr) -- C:\Windows\WindowsMobile\rapimgr.dll (Microsoft Corporation)
SRV - (HCLInetd) -- C:\Windows\SysWOW64\Hummingbird\Connectivity\9.00\Inetd\inetd32.exe (Hummingbird Ltd.)
SRV - (HumDisplayServer) -- D:\Program Files (x86)\Hummingbird\Connectivity\9.00\Exceed\HumDisplayServer.exe (Hummingbird Ltd.)


========== Driver Services (SafeList) ==========

DRV:64bit: - (dtsoftbus01) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys (DT Soft Ltd)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
DRV:64bit: - (libusb0) -- C:\Windows\SysNative\drivers\libusb0.sys (http://libusb-win32.sourceforge.net)
DRV:64bit: - (vmx86) -- C:\Windows\SysNative\drivers\vmx86.sys (VMware, Inc.)
DRV:64bit: - (VMnetuserif) -- C:\Windows\SysNative\drivers\vmnetuserif.sys (VMware, Inc.)
DRV:64bit: - (VMnetBridge) -- C:\Windows\SysNative\drivers\vmnetbridge.sys (VMware, Inc.)
DRV:64bit: - (VMnetAdapter) -- C:\Windows\SysNative\drivers\vmnetadapter.sys (VMware, Inc.)
DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys (Renesas Electronics Corporation)
DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\drivers\nusb3hub.sys (Renesas Electronics Corporation)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (LMouFilt) -- C:\Windows\SysNative\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV:64bit: - (LEqdUsb) -- C:\Windows\SysNative\drivers\LEqdUsb.sys (Logitech, Inc.)
DRV:64bit: - (LHidFilt) -- C:\Windows\SysNative\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV:64bit: - (LHidEqd) -- C:\Windows\SysNative\drivers\LHidEqd.sys (Logitech, Inc.)
DRV:64bit: - (hcmon) -- C:\Windows\SysNative\drivers\hcmon.sys (VMware, Inc.)
DRV:64bit: - (vmci) -- C:\Windows\SysNative\drivers\vmci.sys (VMware, Inc.)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (NBVol) -- C:\Windows\SysNative\drivers\NBVol.sys (Nero AG)
DRV:64bit: - (NBVolUp) -- C:\Windows\SysNative\drivers\NBVolUp.sys (Nero AG)
DRV:64bit: - (tap0901) -- C:\Windows\SysNative\drivers\tap0901.sys (The OpenVPN Project)
DRV:64bit: - (SCDEmu) -- C:\Windows\SysNative\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV:64bit: - (JRAID) -- C:\Windows\SysNative\drivers\jraid.sys (JMicron Technology Corp.)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (teamviewervpn) -- C:\Windows\SysNative\drivers\teamviewervpn.sys (TeamViewer GmbH)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV:64bit: - (RpcXdr) Server for NFS Open RPC (ONCRPC) -- C:\Windows\SysNative\drivers\rpcxdr.sys (Microsoft Corporation)
DRV:64bit: - (NfsRdr) -- C:\Windows\SysNative\drivers\nfsrdr.sys (Microsoft Corporation)
DRV:64bit: - (LMouKE) -- C:\Windows\SysNative\drivers\LMouKE.Sys (Logitech, Inc.)
DRV:64bit: - (L8042mou) -- C:\Windows\SysNative\drivers\L8042mou.Sys (Logitech, Inc.)
DRV:64bit: - (L8042Kbd) -- C:\Windows\SysNative\drivers\L8042Kbd.sys (Logitech, Inc.)
DRV:64bit: - (hotcore3) -- C:\Windows\SysNative\drivers\hotcore3.sys (Paragon Software Group)
DRV:64bit: - (btusbflt) -- C:\Windows\SysNative\drivers\btusbflt.sys (Broadcom Corporation.)
DRV:64bit: - (Revoflt) -- C:\Windows\SysNative\drivers\revoflt.sys (VS Revo Group)
DRV:64bit: - (PSSDKLBF) -- C:\Windows\SysNative\drivers\pssdklbf.sys (microOLAP Technologies LTD)
DRV:64bit: - (PSSDK42) -- C:\Windows\SysNative\drivers\pssdk42.sys (microOLAP Technologies LTD)
DRV:64bit: - (adfs) -- C:\Windows\SysNative\drivers\adfs.sys (Adobe Systems, Inc.)
DRV:64bit: - (VirtFile) -- C:\Windows\SysNative\drivers\VirtFile.sys (Symantec Corporation)
DRV:64bit: - (NPF) -- C:\Windows\SysNative\drivers\npf.sys (CACE Technologies, Inc.)
DRV:64bit: - (PDVFSDriver) -- C:\Windows\SysNative\drivers\pdfsd.sys (Symantec Corporation)
DRV:64bit: - (vnet) -- C:\Windows\SysNative\drivers\virtualnet.sys (Shrew Soft Inc)
DRV:64bit: - (MTsensor) -- C:\Windows\SysNative\drivers\ASACPI.sys ()
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (StillCam) -- C:\Windows\SysNative\drivers\serscan.sys (Microsoft Corporation)
DRV:64bit: - (PsxDrv) -- C:\Windows\SysNative\drivers\psxdrv.sys (Microsoft Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (LVPr2Mon) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:64bit: - (LVPr2M64) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:64bit: - (mcdbus) -- C:\Windows\SysNative\drivers\mcdbus.sys (MagicISO, Inc.)
DRV:64bit: - (ncplelhp) -- C:\Windows\SysNative\drivers\ncplelhp.sys (NCP Engineering GmbH)
DRV:64bit: - (WDC_SAM) -- C:\Windows\SysNative\drivers\wdcsam64.sys (Western Digital Technologies)
DRV:64bit: - (epfwwfpr) -- C:\Windows\SysNative\drivers\epfwwfpr.sys (ESET)
DRV:64bit: - (ehdrv) -- C:\Windows\SysNative\drivers\ehdrv.sys (ESET)
DRV:64bit: - (eamon) -- C:\Windows\SysNative\drivers\eamon.sys (ESET)
DRV:64bit: - (vflt) -- C:\Windows\SysNative\drivers\vfilter.sys (Shrew Soft Inc)
DRV:64bit: - (SiFilter) -- C:\Windows\SysNative\drivers\SiWinAcc.sys (Silicon Image, Inc)
DRV:64bit: - (SiRemFil) -- C:\Windows\SysNative\drivers\SiRemFil.sys (Silicon Image, Inc)
DRV:64bit: - (SI3132) -- C:\Windows\SysNative\drivers\SI3132.sys (Silicon Image, Inc)
DRV:64bit: - (LVUSBS64) -- C:\Windows\SysNative\drivers\LVUSBS64.sys (Logitech Inc.)
DRV:64bit: - (CamDrL64) Logitech QuickCam Pro 3000(PID_08B0) -- C:\Windows\SysNative\drivers\CamDrL64.sys (Logitech Inc.)
DRV:64bit: - (P0870Dev) -- C:\Windows\SysNative\drivers\P0870Dev.sys (Creative Technology Ltd.)
DRV - (ntk_PowerDVD) -- d:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys (Cyberlink Corp.)
DRV - ({329F96B6-DF1E-4328-BFDA-39EA953C1312}) -- d:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Common\NavFilter\000.fcl (CyberLink Corp.)
DRV - (adfs) -- C:\Windows\SysWow64\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
DRV - (Wdf01000) -- C:\Windows\system32\drivers\Wdf01000.sys (Microsoft Corporation)
DRV - (PortTalk) -- C:\Windows\SysWOW64\drivers\PortTalk.sys (Beyond Logic http://www.beyondlogic.org)
DRV - (port_nt) -- C:\Windows\SysWOW64\drivers\port_nt.sys ()


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/bsprpc/{229791E7-ECAC-4FD1-AF5C-26AE7D9FDAF5}


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://xfinity.comcast.net/?cid=mtmh10302011
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 88 D2 80 79 27 C3 CB 01 [binary data]
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No CLSID value found
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/bsprpc/{229791E7-ECAC-4FD1-AF5C-26AE7D9FDAF5}
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 88 D2 80 79 27 C3 CB 01 [binary data]
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No CLSID value found
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\..\URLSearchHook: {CA3EB689-8F09-4026-AA10-B9534C691CE0} - No CLSID value found
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-877438062-2430366996-730074439-1009\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: D:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: d:\Program Files (x86)\DivX\DivX Player\npDivxPlayerPlugin.dll (DivX, Inc)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Nero.com/KM: C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.11: d:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team)
FF - HKLM\Software\MozillaPlugins\@winzip.com/Winzip Courier: C:\Program Files (x86)\WinZip Courier\npwzwmc.dll (WinZip Computing, S.L.)
FF - HKLM\Software\MozillaPlugins\XXXXX@XXXXXX.XXX/YahooActiveXPluginBridge;version=1.0.0.1: D:\Program Files (x86)\Mozilla Firefox\plugins\npyaxmpb.dll (Yahoo! Inc.)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Shiretoko 3.5.5\extensions\\Components: D:\PROGRAM FILES\SHIRETOKO\COMPONENTS [2009/11/16 02:25:24 | 000,000,000 | ---D | M]
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Shiretoko 3.5.5\extensions\\Plugins: D:\PROGRAM FILES\SHIRETOKO\PLUGINS [2009/11/16 02:25:23 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\XXXXX@XXXXXX.XXX: D:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2011/05/14 08:38:38 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\XXXXX@XXXXXX.XXX: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011/12/03 14:30:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2011/12/25 10:37:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{74c841e3-b59f-479e-8d7a-e26a942a87c8}: C:\Program Files (x86)\WinZip Courier\FFExt [2011/12/30 13:55:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: D:\Program Files (x86)\Mozilla Firefox\components [2012/01/22 02:46:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: D:\Program Files (x86)\Mozilla Firefox\plugins [2012/01/22 02:46:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\XXXXX@XXXXXX.XXX: D:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2009/08/03 14:39:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\XXXXX@XXXXXX.XXX: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011/12/03 14:30:27 | 000,000,000 | ---D | M]

[2009/08/07 11:07:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Blair\AppData\Roaming\Mozilla\Extensions
[2011/12/26 19:58:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Blair\AppData\Roaming\Mozilla\Firefox\Profiles\fv6tjwnk.Blair\extensions
[2011/06/22 17:24:02 | 000,000,000 | ---D | M] (WebSlingPlayer) -- C:\Users\Blair\AppData\Roaming\Mozilla\Firefox\Profiles\fv6tjwnk.Blair\extensions\{9EB34849-81D3-4841-939D-666D522B889A}
[2011/06/10 10:47:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/06/10 10:47:05 | 000,000,000 | ---D | M] (Babylon) -- C:\Program Files (x86)\Mozilla Firefox\extensions\XXXXX@XXXXXX.XXX

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\12.0.742.112\pdf.dll
CHR - plugin: Google Gears 0.5.33.0 (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\12.0.742.112\gears.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\12.0.742.112\gcswf32.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Adobe Acrobat (Disabled) = D:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.220.4 (Enabled) = D:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U22 (Enabled) = D:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = d:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: DivX Player Netscape Plugin (Enabled) = d:\Program Files (x86)\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
CHR - plugin: Exceed (Enabled) = d:\Program Files (x86)\Mozilla Firefox\plugins\nphclx.dll
CHR - plugin: Windows Genuine Advantage (Enabled) = d:\Program Files (x86)\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
CHR - plugin: Yahoo! activeX Plug-in Bridge (Enabled) = d:\Program Files (x86)\Mozilla Firefox\plugins\npyaxmpb.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\4.0.51204.0\npctrl.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: VLC Multimedia Plug-in (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Move Streaming Media Player (Enabled) = C:\Users\Blair\AppData\Roaming\Move Networks\plugins\npqmp071505000010.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Blair\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.1.94_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Blair\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.126_0\

O1 HOSTS File: ([2012/01/11 23:57:47 | 000,441,615 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 192.168.0.100 BLAYR-PC
O1 - Hosts: 192.168.0.101 VSX-94TXH
O1 - Hosts: 192.168.0.2 kamirah
O1 - Hosts: 192.168.0.102 Torshiba HD DVD
O1 - Hosts: 192.168.0.103 OJL7580
O1 - Hosts: 192.168.0.105 Samsung Blu-Ray
O1 - Hosts: 192.168.0.106 Sun Blade 2000
O1 - Hosts: 192.168.0.107 Samsung 52 LCD
O1 - Hosts: 192.168.0.152 LYSA
O1 - Hosts: 192.168.0.197 Blair-LT
O1 - Hosts: 10.11.220.15 muddy.afilias.com muddy
O1 - Hosts: 10.11.220.12 ren.afilias.com ren
O1 - Hosts: 10.11.222.11 sven.afilias.com sven
O1 - Hosts: 127.0.0.1 secure.tune-up.com
O1 - Hosts: 10.11.220.11 stimpy.afilias.com stimpy
O1 - Hosts: 10.50.129.61 ns1yyz
O1 - Hosts: 10.50.129.66 wiki.afilias.info
O1 - Hosts: 10.11.220.18 saturn.afilias.com saturn
O1 - Hosts: 10.1.3.110 destroyah.afilias.com destroyah
O1 - Hosts: 10.1.3.112 gigan.afilias.com gigan
O1 - Hosts: 10.11.220.17 noctl1.afilis.com noctl1
O1 - Hosts: 66.132.220.206 peer1-noc peer1
O1 - Hosts: 192.168.128.1 peer1-vpn.afilias.noc peer1-vpn
O1 - Hosts: 199.19.49.190 yyz-opennms
O1 - Hosts: 15193 more lines...
O2:64bit: - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (WinZip Courier BHO) - {A8FB70FA-0FDF-4601-9DC4-BFA1B357204F} - C:\Program Files (x86)\WinZip Courier\wzwmcie.dll (WinZip Computing, S.L.)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-877438062-2430366996-730074439-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-877438062-2430366996-730074439-1009\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Alcor Micro Corp.)
O4:64bit: - HKLM..\Run: [BCSSync] D:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Bluetooth Connection Assistant] LBTWIZ.EXE -silent File not found
O4:64bit: - HKLM..\Run: [egui] D:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [TaskTray] d:\Program Files (x86)\Driver-Soft\HardwareHelper\TaskTray.exe (Driver-Soft Inc.)
O4 - HKLM..\Run: [vmware-tray] D:\Program Files (x86)\vmware-tray.exe (VMware, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1000..\Run: [Aim] C:\Program Files (x86)\AIM\aim.exe (AOL Inc.)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1000..\Run: [DAEMON Tools Pro Agent] D:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1000..\Run: [HKCU] c:\dir\install\install\Windows Update.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1000..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Flexera Software, Inc.)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1000..\Run: [Messenger (Yahoo!)] D:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1000..\Run: [OpAgent] "OpAgent.exe" /agent File not found
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1000..\Run: [SpybotSD TeaTimer] d:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\Run: [Aim] C:\Program Files (x86)\AIM\aim.exe (AOL Inc.)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\Run: [Akamai NetSession Interface] C:\Users\UpdatusUser\AppData\Local\Akamai\netsession_win.exe File not found
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\Run: [HKCU] c:\dir\install\install\Windows Update.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Flexera Software, Inc.)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\Run: [Messenger (Yahoo!)] D:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\Run: [OpAgent] "OpAgent.exe" /agent File not found
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10n_Plugin.exe -update plugin File not found
O4 - HKU\S-1-5-21-877438062-2430366996-730074439-1009..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 1
O7 - HKU\S-1-5-21-877438062-2430366996-730074439-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-877438062-2430366996-730074439-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105 File not found
O9:64bit: - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-877438062-2430366996-730074439-1000\..Trusted Domains: turbotax.com ([]https in Trusted sites)
O15 - HKU\S-1-5-21-877438062-2430366996-730074439-1009\..Trusted Domains: turbotax.com ([]https in Trusted sites)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} Reg Error: Value error. (Shockwave Flash Object)
O16 - DPF: 55963676-2F5E-4BAF-AC28-CF26AA587566 vpnweb.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{838E3590-F24E-45C9-BC70-AAEB769FE90C}: DhcpNameServer = 75.75.75.75 75.75.76.76
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CDFD77ED-0BAD-4F05-BA6F-AA539BB7F5EA}: NameServer = 208.67.222.222 208.67.220.220
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - AppInit_DLLs: (acaptuser32.dll) -C:\Windows\SysWow64\acaptuser32.dll (Adobe Systems Incorporated)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O20 - Winlogon\Notify\LBTWlgn: DllName - (Reg Error: Value error.) - Reg Error: Value error. File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O27:64bit: - HKLM IFEO\AppleMobileDeviceService.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\cftpstes.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\CLHNServiceForPowerDVD.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\CLMSMonitorService.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\CLMSServer.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\HumDisplayServer.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\inetd32.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\lnssatt.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27:64bit: - HKLM IFEO\NBService.exe: Debugger - C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\AppleMobileDeviceService.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\cftpstes.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\CLHNServiceForPowerDVD.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\CLMSMonitorService.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\CLMSServer.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\HumDisplayServer.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\inetd32.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\lnssatt.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O27 - HKLM IFEO\NBService.exe: Debugger - C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
O28:64bit: - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/05/27 06:54:14 | 000,000,000 | ---D | M] - F:\autorun -- [ NTFS ]
O32 - AutoRun File - [2008/02/15 16:11:36 | 000,000,052 | -H-- | M] () - F:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2007/07/20 10:46:40 | 000,000,000 | ---D | M] - P:\autorun -- [ NTFS ]
O32 - AutoRun File - [2007/05/18 10:37:12 | 000,000,069 | RH-- | M] () - P:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2005/11/15 11:08:04 | 000,000,036 | -H-- | M] () - S:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009/12/15 22:39:26 | 000,000,000 | RH-D | M] - W:\autorun -- [ NTFS ]
O32 - AutoRun File - [2002/10/16 07:56:50 | 000,000,036 | RH-- | M] () - W:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{0a2c8465-41b4-11df-a826-000761c943f7}\Shell - "" = AutoRun
O33 - MountPoints2\{0a2c8465-41b4-11df-a826-000761c943f7}\Shell\AutoRun\command - "" = R:\LaunchU3.exe
O33 - MountPoints2\{1d369b9b-6b9c-11df-ad62-000761c943f7}\Shell - "" = AutoRun
O33 - MountPoints2\{1d369b9b-6b9c-11df-ad62-000761c943f7}\Shell\AutoRun\command - "" = "W:\WD SmartWare.exe" autoplay=true
O33 - MountPoints2\{672223a3-f302-11de-a953-00248cfc8272}\Shell - "" = AutoRun
O33 - MountPoints2\{672223a3-f302-11de-a953-00248cfc8272}\Shell\AutoRun\command - "" = T:\LaunchU3.exe -a
O33 - MountPoints2\{a72cca88-8054-11de-aff6-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{a72cca88-8054-11de-aff6-806e6f6e6963}\Shell\AutoRun\command - "" = K:\.\Bin\Assetup.exe
O33 - MountPoints2\{c26441ee-9071-11de-8232-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{c26441ee-9071-11de-8232-806e6f6e6963}\Shell\AutoRun\command - "" = O:\run.exe
O33 - MountPoints2\{da2379f6-854e-11df-bc03-000761c943f7}\Shell - "" = AutoRun
O33 - MountPoints2\{da2379f6-854e-11df-bc03-000761c943f7}\Shell\AutoRun\command - "" = "T:\WD SmartWare.exe" autoplay=true
O33 - MountPoints2\{dd72deaf-a49c-11e0-85ab-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{dd72deaf-a49c-11e0-85ab-005056c00008}\Shell\AutoRun\command - "" = Q:\LaunchU3.exe
O33 - MountPoints2\{f8c043b9-4315-11df-bb5f-02004e435049}\Shell - "" = AutoRun
O33 - MountPoints2\{f8c043b9-4315-11df-bb5f-02004e435049}\Shell\AutoRun\command - "" = "B:\WD SmartWare.exe" autoplay=true
O33 - MountPoints2\X\Shell - "" = AutoRun
O33 - MountPoints2\X\Shell\AutoRun\command - "" = X:\winopen.exe \index.html
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2012/01/24 13:11:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2012/01/24 13:11:17 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2012/01/24 13:11:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2012/01/24 13:11:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2012/01/23 19:52:12 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Local\VS Revo Group
[2012/01/23 19:52:10 | 000,031,800 | ---- | C] (VS Revo Group) -- C:\Windows\SysNative\drivers\revoflt.sys
[2012/01/23 19:52:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
[2012/01/23 19:52:09 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2012/01/23 18:58:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VS Revo Group
[2012/01/23 18:58:20 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
[2012/01/22 21:52:22 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\HPAppData
[2012/01/22 15:28:30 | 000,000,000 | ---D | C] -- C:\Windows\LastGood
[2012/01/22 14:34:55 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Blair\AppData\Roaming\pcouffin.sys
[2012/01/22 14:34:55 | 000,000,000 | ---D | C] -- C:\Users\Blair\Documents\PcSetup
[2012/01/22 04:15:58 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\BestPractices
[2012/01/22 04:15:58 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\BestPractices
[2012/01/22 04:15:57 | 000,000,000 | ---D | C] -- C:\inetpub
[2012/01/22 02:24:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\URTTEMP
[2012/01/20 11:07:00 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\IObit
[2012/01/20 10:58:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2012/01/20 10:58:25 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2012/01/19 23:33:54 | 000,000,000 | ---D | C] -- C:\MATS
[2012/01/19 19:49:40 | 000,090,664 | ---- | C] (Silicon Image, Inc) -- C:\Windows\SysNative\drivers\SI3132.sys
[2012/01/19 19:49:40 | 000,022,056 | ---- | C] (Silicon Image, Inc) -- C:\Windows\SysNative\drivers\SiWinAcc.sys
[2012/01/19 19:49:40 | 000,017,448 | ---- | C] (Silicon Image, Inc) -- C:\Windows\SysNative\drivers\SiRemFil.sys
[2012/01/19 18:21:27 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\%APPDATA%
[2012/01/16 00:59:22 | 000,000,000 | ---D | C] -- C:\Users\Blair\Desktop\the.unforgettable.s05e02.john.thaw.ws.pdtv.xvid-barge
[2012/01/15 22:25:05 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\Yahoo!
[2012/01/15 18:47:23 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2012/01/15 17:42:45 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Local\{E1DF0499-FA97-45A5-8556-9E452BBE93C6}
[2012/01/14 17:57:44 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\Adobe Mini Bridge CS5
[2012/01/14 17:37:24 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012/01/11 23:34:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy
[2012/01/11 23:34:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2012/01/11 21:59:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2012/01/11 20:15:55 | 000,000,000 | ---D | C] -- C:\ProgramData\CitrixCseCache
[2012/01/11 20:06:08 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Roaming\ICAClient
[2012/01/11 20:05:26 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Local\Citrix
[2012/01/11 10:36:19 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2012/01/11 10:36:18 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2012/01/11 10:36:18 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2012/01/11 10:36:18 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2012/01/11 10:36:18 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2012/01/11 10:36:18 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2012/01/11 10:36:17 | 000,918,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2012/01/11 10:36:17 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2012/01/11 10:36:16 | 001,731,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2012/01/11 10:36:16 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2012/01/11 10:36:16 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2012/01/11 10:36:16 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2012/01/11 10:36:15 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2012/01/11 10:36:15 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2012/01/11 10:36:15 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2012/01/10 13:29:23 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Local\{5BDD0E3C-737B-4E9E-847C-94E55A870D88}
[2012/01/04 19:32:07 | 000,000,000 | ---D | C] -- C:\Users\Blair\AppData\Local\{26E50793-40DF-42E1-89DE-67D7210A8EB8}
[2012/01/03 05:06:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hallmark
[2012/01/03 05:01:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nova Development
[2012/01/03 00:44:44 | 000,271,424 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012/01/03 00:33:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro
[2012/01/01 03:14:23 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2012/01/01 03:13:53 | 002,604,376 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2012/01/01 03:13:53 | 001,361,336 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosade.dll
[2012/01/01 03:13:53 | 000,065,432 | ---- | C] (TOSHIBA CORPORATION.) -- C:\Windows\SysNative\tepeqapo64.dll
[2012/01/01 03:13:52 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2012/01/01 03:13:52 | 000,177,088 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo264.dll
[2012/01/01 03:13:52 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2012/01/01 03:13:52 | 000,148,416 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo.dll
[2012/01/01 03:13:51 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\S
Expert:  Maggie P replied 2 years ago.
Part of the log is being chopped off due to the length, could you please upload both the files to http://www.wikisend.com Post the download link or File ID for both of them in a reply here.
Customer: replied 2 years ago.
ok, done, both files have been uploaded.
Expert:  Maggie P replied 2 years ago.
Could you please post the links for them?
Customer: replied 2 years ago.
sry, my bad...

http://wikisend.com/download/106098/OTL.Txt


http://wikisend.com/download/748468/Extras.Txt
Expert:  Maggie P replied 2 years ago.
From Windows Updates click on Check for updates, if any are available then install them restarting when prompted then return to check for more until there are none available. Once all updates are applied click View update history and make sure no recent updates which have failed. If there are failed updates right click on them and select Copy details then paste them to a reply here.

Open Event Viewer and create a report as follows.

Under Actions click on Create Custom View. From the Filter tab in the dropdown box next to Logged select Last 12 hours.

For Event level check Critical, Warning and Error.

Select By log and in the dropdown box expand Windows logs by clicking the cross. Check Application, System and Security.

Click OK and give the Custom View and name then press OK.

Under Actions click Save Events in Custom View As and save the file to a location where you will find it as a Text (Tab delimted)(*.txt). Open the txt file in Notepad and enter the contents of the file in a reply.
Customer: replied 2 years ago.
I have 14 failed MS .NET Framework 4 updates listed. Too many to list at this time. Here is one of them.

Security Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2478663)

Installation date: ‎1/‎21/‎2012 6:57 PM

Installation status: Failed

Error details: Code 643

Update type: Important

A security issue has been identified that could allow an attacker to compromise your Windows-based system that is running the Microsoft .NET Framework and gain complete control over it. You can help protect your computer by installing this update from Microsoft. After you install this item, you may have to restart your computer.

More information:
http://go.microsoft.com/fwlink/?LinkID=211425

Help and Support:
http://support.microsoft.com


Event Viewer:
Level Date and Time Source Event ID Task Category
Error 1/24/2012 3:27:29 PM VSS 8194 None "Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
. This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {5292cb5d-9cd5-4429-a825-5eea9a95cba4}"
Error 1/24/2012 2:19:36 PM MsiInstaller 11920 None Product: Apple Mobile Device Support -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 2:19:36 PM MsiInstaller 1013 None Product: iTunes -- Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:17:34 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:17:34 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:17:29 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:17:29 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:17:24 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:17:24 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:17:19 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:17:19 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:17:14 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:17:14 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:17:09 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:17:09 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:17:04 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:17:04 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:17:04 PM MsiInstaller 11920 None Product: Apple Mobile Device Support -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:17:04 PM MsiInstaller 1013 None Product: iTunes -- Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:16:54 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:54 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:49 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:49 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:44 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:44 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:39 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:39 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:34 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:34 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:29 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:29 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:24 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:24 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:24 PM MsiInstaller 11920 None Product: Apple Mobile Device Support -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:16:24 PM MsiInstaller 1013 None Product: iTunes -- Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:16:22 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:22 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:17 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:17 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:12 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:12 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:07 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:07 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:16:02 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:16:02 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:57 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:57 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:52 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:52 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:52 PM MsiInstaller 11920 None Product: Apple Mobile Device Support -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:15:52 PM MsiInstaller 1013 None Product: iTunes -- Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:15:44 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:44 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:39 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:39 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:34 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:34 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:29 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:29 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:24 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:24 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:19 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:19 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:14 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:15:14 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:15:14 PM MsiInstaller 11920 None Product: Apple Mobile Device Support -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:15:14 PM MsiInstaller 1013 None Product: iTunes -- Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 1:12:08 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:12:08 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:12:03 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:12:03 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:11:58 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:11:58 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:11:53 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:11:53 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:11:48 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:11:48 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:11:43 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:11:43 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:11:38 PM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:11:38 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 1:07:28 PM Microsoft-Windows-WinRM 10128 None "The WinRM service is not listening for HTTP requests because there was a failure binding to the URL (http://+:80/wsman/) in HTTP.SYS.

No remote requests will be serviced on that URL.

User Action
Please use ""netsh http"" to check if ACL for URL (http://+:80/wsman/) is set to Network Service.

Additional Data
The error code received from HTTP.sys is 5: %%5"
Warning 1/24/2012 1:04:07 PM Microsoft-Windows-DNS-Client 1014 None Name resolution for the name isatap.localdomain timed out after none of the configured DNS servers responded.
Error 1/24/2012 1:03:52 PM Service Control Manager 7026 None "The following boot-start or system-start driver(s) failed to load:
Lbd
picakbm"
Error 1/24/2012 1:03:47 PM Microsoft-Windows-HttpEvent 15005 None Unable to bind to the underlying transport for [::]:80. The IP Listen-Only list may contain a reference to an interface which may not exist on this machine. The data field contains the error number.
Error 1/24/2012 1:03:47 PM Microsoft-Windows-IIS-W3SVC 1004 None The World Wide Web Publishing Service (WWW Service) did not register the URL prefix http://*:80/ for site 1. The site has been disabled. The data field contains the error number.
Error 1/24/2012 1:03:05 PM Service Control Manager 7000 None "The port_nt service failed to start due to the following error:
This driver has been blocked from loading"
Error 1/24/2012 1:03:05 PM Application Popup 1060 None \??\c:\windows\SysWow64\drivers\port_nt.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Warning 1/24/2012 1:02:54 PM MSSQL$WHATSUP 19011 (8) "The description for Event ID 19011 from source MSSQL$WHATSUP cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

(SpnRegister) : Error 1355
"
Error 1/24/2012 1:02:32 PM Service Control Manager 7000 None "The Nero BackItUp Scheduler 4.0 service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:02:32 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Nero BackItUp Scheduler 4.0 service to connect.
Error 1/24/2012 1:02:23 PM Service Control Manager 7000 None "The Hummingbird Exceed Display Management service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:02:23 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Hummingbird Exceed Display Management service to connect.
Error 1/24/2012 1:02:22 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Hummingbird InetD service to connect.
Error 1/24/2012 1:02:20 PM Service Control Manager 7000 None "The GFI LANguard 9 Attendant Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:02:20 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the GFI LANguard 9 Attendant Service service to connect.
Error 1/24/2012 1:01:45 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the EFT Server Enterprise service to connect.
Error 1/24/2012 1:01:45 PM Service Control Manager 7000 None "The CyberLink PowerDVD 11.0 Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:01:45 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the CyberLink PowerDVD 11.0 Service service to connect.
Error 1/24/2012 1:01:45 PM Service Control Manager 7000 None "The CyberLink PowerDVD 11.0 Monitor Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:01:45 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the CyberLink PowerDVD 11.0 Monitor Service service to connect.
Error 1/24/2012 1:01:45 PM Service Control Manager 7000 None "The CLHNServiceForPowerDVD service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 1:01:45 PM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the CLHNServiceForPowerDVD service to connect.
Error 1/24/2012 1:01:33 PM Service Control Manager 7000 None "The SoftPerfect Research Service service failed to start due to the following error:
The system cannot find the file specified."
Error 1/24/2012 1:01:32 PM Service Control Manager 7000 None "The Bluetooth Device (RFCOMM Protocol TDI) service failed to start due to the following error:
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it."
Warning 1/24/2012 1:01:29 PM Microsoft-Windows-Wininit 11 None Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications.
Warning 1/24/2012 12:55:29 PM Microsoft-Windows-User Profiles Service 1530 None "Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
21 user registry handles leaked from \Registry\User\S-1-5-21-877438062-2430366996-730074439-1000:
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\Root
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\Root
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\My
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\CA
Process 944 (\Device\HarddiskVolume5\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\trust
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\trust
Process 10356 (\Device\HarddiskVolume5\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
"
Error 1/24/2012 12:51:22 PM Microsoft-Windows-CAPI2 513 None "Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service Apple Mobile Device since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
."
Error 1/24/2012 12:51:21 PM VSS 8194 None "Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
. This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {cf7fb03b-a14d-4f88-adc1-04cc5f7eb7ed}"
Error 1/24/2012 12:50:12 PM Microsoft-Windows-CAPI2 513 None "Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service Apple Mobile Device since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
."
Error 1/24/2012 12:49:54 PM Microsoft-Windows-CAPI2 513 None "Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service Apple Mobile Device since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
."
Error 1/24/2012 12:49:53 PM VSS 8194 None "Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
. This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {cf7fb03b-a14d-4f88-adc1-04cc5f7eb7ed}"
Error 1/24/2012 12:47:05 PM VSS 8194 None "Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
. This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {cf7fb03b-a14d-4f88-adc1-04cc5f7eb7ed}"
Error 1/24/2012 12:37:40 PM VSS 8194 None "Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
. This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {cf7fb03b-a14d-4f88-adc1-04cc5f7eb7ed}"
Error 1/24/2012 12:36:18 PM Service Control Manager 7034 None The iPod Service service terminated unexpectedly. It has done this 1 time(s).
Error 1/24/2012 8:54:26 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 8:54:26 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:53:40 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:53:40 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:52:35 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:52:35 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Warning 1/24/2012 6:47:30 AM NfsClnt 16397 None " Windows(R) Lightweight Directory Access Protocol (LDAP) failed a request to connect to Active Directory Domain Services(R) for Windows user <BLAYR-PC\Blair>.

Without the corresponding UNIX identity of the Windows user, the user cannot access Network File System (NFS) shared resources.

Verify that the Windows user is in Active Directory Domain Services and has access permissions."
Warning 1/24/2012 6:47:09 AM Microsoft-Windows-User Profiles Service 1530 None "Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
8 user registry handles leaked from \Registry\User\S-1-5-21-877438062-2430366996-730074439-1000:
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\Root
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Policies\Microsoft\SystemCertificates
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Policies\Microsoft\SystemCertificates
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\CA
Process 140 (\Device\HarddiskVolume5\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-877438062-2430366996-730074439-1000\Software\Microsoft\SystemCertificates\trust
"
Error 1/24/2012 6:47:00 AM Microsoft-Windows-DistributedCOM 10010 None The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.
Error 1/24/2012 6:46:33 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:46:33 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:38:57 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:38:57 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:22:34 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:22:34 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:16:47 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:16:47 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:15:41 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:15:41 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:04:47 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:04:47 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Error 1/24/2012 6:02:34 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 6:02:34 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Warning 1/24/2012 6:00:46 AM MsiInstaller 1032 None An error occured while refreshing environment variables updated during the installation of ''. Some users logged on to the machine may not see these changes until they log off and then log back on.
Error 1/24/2012 6:00:40 AM MsiInstaller 11920 None Product: Apple Mobile Device Support -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 6:00:40 AM MsiInstaller 1013 None Product: iTunes -- Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error 1/24/2012 5:37:49 AM Service Control Manager 7000 None "The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion."
Error 1/24/2012 5:37:49 AM Service Control Manager 7009 None A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Warning 1/24/2012 5:31:29 AM Microsoft-Windows-DNS-Client 1014 None Name resolution for the name wpad.localdomain timed out after none of the configured DNS servers responded.
Customer: replied 2 years ago.
I think some of the failed .Net Framework 4 updates are retries.
Expert:  Maggie P replied 2 years ago.
Yes there will be some retries. Run the FixIt at http://support.microsoft.com/kb/971187

Once completed return to Windows Updates and let me know if the .NET Framework updates install successfully.
Customer: replied 2 years ago.
I ran the "fix it" program, per the program, no problem found, so no fix was applied. I checked Windows update, the failed updates are still listed. I went and checked the hidden updates, and tried to install them. I have tried this (running Fix it and reinstalling failed Window update) in my attempt to resolve this issue on my own. Each time the updates failed to install successfully, thats why I hid them. Do you think I need to get the .Net Framework 4 up to date?
Expert:  Maggie P replied 2 years ago.
Yes. From Programs and Features uninstall all entries for .NET Framework. Click Turn Windows features on or off and wait for the page to populate. Uncheck .Net Framework 3.5 then click OK.

Restart the computer then go back to Turn Windows Features on or off and put a check in .NET Framework 3.5

Install .NET Framework 4 from http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=17718

Restart once more then try to update Windows again. Let me know how that goes.
Customer: replied 2 years ago.
After removing .net framework and rebooting, the windows feature box is totally empty. I will reboot the system again, to if that will re-populate the windows feature window, brb
Expert:  Maggie P replied 2 years ago.
Sometimes it can take a short while to populate.
Customer: replied 2 years ago.
Wow, no windows features, installed programs, chkn for updates is hanging, can't view installed updates.
Expert:  Maggie P replied 2 years ago.
OK we need to try another route to repair the .NET Framework. First use the System Restore feature to return to a restore point prior to removing the .NET Framework.

After the restore check if you have .NET Framework listed in Programs and features and in Windows Features (but do not remove them).

Let me know how goes then we will try to repair it again. I need to pop out for about an hour but will be back to continue with you.

Customer: replied 2 years ago.
OK, sys restore has been done. .net framework is listed in prog/features.
Expert:  Maggie P replied 2 years ago.
OK download the dotnetfx cleanup tool from http://tinyurl.com/4ho2nb

Run the tool and select the .NET Framework 4 and remove.

Once the tool completes re-install .NET Framework from http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=17718

Restart and try Windows Update again.
Customer: replied 2 years ago.
fyi, I have three .Net Frameworl 4 updates waiting to get installed, pls advise.
Expert:  Maggie P replied 2 years ago.
Have you run the dotnetfx cleanup tool and re-installed the .NET Framework? If so then go ahead and see if those updates will install successfully.
Customer: replied 2 years ago.
just rebooted system, now running windows updates, 5 .Net framework 4 updates are being installed
Expert:  Maggie P replied 2 years ago.
OK if the updates install successfully use the following method to install iTunes.

Click Start > All Programs > Accessories then right click on Command Prompt and select Run as administrator.

Make sure you know the full path of the iTunesSetup.exe then type the following command replacing iTunesSetup.exePath with the actual location then press enter.

msiexec iTunesSetup.exePath /l*v C:\log.txt

The installation will save a log in c:\log.txt, if you still have problems with iTunes please post the contents of log.txt

Customer: replied 2 years ago.
This is what I typed, but the command wont exec, what am I doing wrong?
The command is run from the dir/folder whr the iTunes app is located

msiexec Itunes64Setup.exe /l*v C:\log.txt
Expert:  Maggie P replied 2 years ago.
You need the full path to iTunes64Setup.exe and the filename is case sensitive so itunes.exe is not the same as ITUNES.exe. e.g if you have iTunes64Setup.exe located on your Desktop then the command would read

msiexec c:\Users\ your username\Desktop\iTunes64Setup.exe /l*v c:\log.txt
Customer: replied 2 years ago.
I:\Incoming>dir iT*
Volume in drive I is 2TBRKTFSH
Volume Serial Number is 242D-E2CA

Directory of I:\Incoming

02/24/2011 02:55 AM <DIR> Its A Wonderful Life Colorized Version 19
46 BRRip XvidHD 720p-NPW
10/02/2010 04:18 PM 3,482,761,216 Its A Wonderful Life Colorized Version 19
46 BRRip XvidHD 720p-NPW.avi
01/22/2012 03:11 AM <DIR> iTunes64Setup
01/22/2012 02:54 AM 71,279,472 iTunes64Setup.exe
01/22/2012 02:49 PM 4,957 itune_help.txt
3 File(s) 3,554,045,645 bytes
2 Dir(s) 3,326,214,144 bytes free

I:\Incoming>

This is what I am trying to run, what am I still doing wrong? What part of the symtax is wrong?

I:\Incoming>msiexec I:\Incoming\iTunes64Setup.exe /l*v C:\log.txt

Expert:  Maggie P replied 2 years ago.
I'm not sure. Let's just go with running the setup normally and if we have any problems we can go back to event viewer.
Customer: replied 2 years ago.
Darn, the AMD portion of the install failed again. Here are current events during the time of the install.

Log Name: System
Source: Service Control Manager
Date: 1/24/2012 10:07:07 PM
Event ID: 7000
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Blayr-PC
Description:
The Apple Mobile Device service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908d1-a6d7-4695-8e1e-26931d2012f4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="49152">7000</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8080000000000000</Keywords>
<TimeCreated SystemTime="2012-01-25T03:07:07.035690900Z" />
<EventRecordID>337828</EventRecordID>
<Correlation />
<Execution ProcessID="384" ThreadID="1572" />
<Channel>System</Channel>
<Computer>Blayr-PC</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Apple Mobile Device</Data>
<Data Name="param2">%%1053</Data>
</EventData>
</Event>


Log Name: System
Source: Service Control Manager
Date: 1/24/2012 10:07:07 PM
Event ID: 7009
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Blayr-PC
Description:
A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908d1-a6d7-4695-8e1e-26931d2012f4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="49152">7009</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8080000000000000</Keywords>
<TimeCreated SystemTime="2012-01-25T03:07:07.035690900Z" />
<EventRecordID>337827</EventRecordID>
<Correlation />
<Execution ProcessID="384" ThreadID="1572" />
<Channel>System</Channel>
<Computer>Blayr-PC</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">30000</Data>
<Data Name="param2">Apple Mobile Device</Data>
</EventData>
</Event>
Expert:  Maggie P replied 2 years ago.
It's nearing the end of my shift but will be back after some sleep. Let's try grabbing an install log again. This time in the command prompt cd into the c:\Incoming directroy then type
iTunes64Setup.exe /l*v C:\log.txt
*note the space between exe and /l
thats lower case L not capital i

If you get the log at c:\log.txt then please the contents of it here.

Customer: replied 2 years ago.
Yes, I m tired too. The incoming folder is on my I: drive. Anyway, I will try again, I will copy/paste the command into the command prompt,1 sec.

=== Verbose logging started: 1/24/2012 23:18:27 Build type: SHIP UNICODE 5.00.7601.00 Calling process: C:\Windows\system32\msiexec.exe ===
MSI (c) (9C:98) [23:18:27:707]: Font created. Charset: Req=0, Ret=0, Font: Req=MS Shell Dlg, Ret=MS Shell Dlg

MSI (c) (9C:98) [23:18:27:707]: Font created. Charset: Req=0, Ret=0, Font: Req=MS Shell Dlg, Ret=MS Shell Dlg

MSI (c) (9C:F8) [23:18:27:713]: Resetting cached policy values
MSI (c) (9C:F8) [23:18:27:713]: Machine policy value 'Debug' is 0
MSI (c) (9C:F8) [23:18:27:713]: ******* RunEngine:
******* Product: C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi
******* Action:
******* CommandLine: **********
MSI (c) (9C:F8) [23:18:27:720]: Machine policy value 'DisableUserInstalls' is 0
MSI (c) (9C:F8) [23:18:27:735]: SOFTWARE RESTRICTION POLICY: Verifying package --> 'C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi' against software restriction policy
MSI (c) (9C:F8) [23:18:27:735]: SOFTWARE RESTRICTION POLICY: C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi has a digital signature
MSI (c) (9C:F8) [23:18:27:920]: SOFTWARE RESTRICTION POLICY: C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi is permitted to run at the 'unrestricted' authorization level.
MSI (c) (9C:F8) [23:18:27:924]: Cloaking enabled.
MSI (c) (9C:F8) [23:18:27:924]: Attempting to enable all disabled privileges before calling Install on Server
MSI (c) (9C:F8) [23:18:27:926]: End dialog not enabled
MSI (c) (9C:F8) [23:18:27:926]: Original package ==> C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi
MSI (c) (9C:F8) [23:18:27:926]: Package we're running from ==> C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi
MSI (c) (9C:F8) [23:18:27:933]: APPCOMPAT: Compatibility mode property overrides found.
MSI (c) (9C:F8) [23:18:27:933]: APPCOMPAT: looking for appcompat database entry with ProductCode '{5E11C972-1E76-45FE-8F92-14E0D1140B1B}'.
MSI (c) (9C:F8) [23:18:27:933]: APPCOMPAT: no matching ProductCode found in database.
MSI (c) (9C:F8) [23:18:27:936]: MSCOREE not loaded loading copy from system32
MSI (c) (9C:F8) [23:18:27:938]: Machine policy value 'TransformsSecure' is 0
MSI (c) (9C:F8) [23:18:27:938]: User policy value 'TransformsAtSource' is 0
MSI (c) (9C:F8) [23:18:27:940]: Machine policy value 'DisablePatch' is 0
MSI (c) (9C:F8) [23:18:27:940]: Machine policy value 'AllowLockdownPatch' is 0
MSI (c) (9C:F8) [23:18:27:940]: Machine policy value 'DisableLUAPatching' is 0
MSI (c) (9C:F8) [23:18:27:940]: Machine policy value 'DisableFlyWeightPatching' is 0
MSI (c) (9C:F8) [23:18:27:940]: APPCOMPAT: looking for appcompat database entry with ProductCode '{5E11C972-1E76-45FE-8F92-14E0D1140B1B}'.
MSI (c) (9C:F8) [23:18:27:940]: APPCOMPAT: no matching ProductCode found in database.
MSI (c) (9C:F8) [23:18:27:940]: Transforms are not secure.
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding MsiLogFileLocation property. Its value is 'C:\log.txt'.
MSI (c) (9C:F8) [23:18:27:941]: Command Line: CURRENTDIRECTORY=I:\Incoming CLIENTUILEVEL=0 CLIENTPROCESSID=8604
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding PackageCode property. Its value is '{7DCFA0FE-02AE-4CFA-AE8D-FB45872F855E}'.
MSI (c) (9C:F8) [23:18:27:941]: Product Code passed to Engine.Initialize: ''
MSI (c) (9C:F8) [23:18:27:941]: Product Code from property table before transforms: '{5E11C972-1E76-45FE-8F92-14E0D1140B1B}'
MSI (c) (9C:F8) [23:18:27:941]: Product Code from property table after transforms: '{5E11C972-1E76-45FE-8F92-14E0D1140B1B}'
MSI (c) (9C:F8) [23:18:27:941]: Product not registered: beginning first-time install
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding ProductState property. Its value is '-1'.
MSI (c) (9C:F8) [23:18:27:941]: Entering CMsiConfigurationManager::SetLastUsedSource.
MSI (c) (9C:F8) [23:18:27:941]: User policy value 'SearchOrder' is 'nmu'
MSI (c) (9C:F8) [23:18:27:941]: Adding new sources is allowed.
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding PackagecodeChanging property. Its value is '1'.
MSI (c) (9C:F8) [23:18:27:941]: Package name extracted from package path: 'iTunes64.msi'
MSI (c) (9C:F8) [23:18:27:941]: Package to be registered: 'iTunes64.msi'
MSI (c) (9C:F8) [23:18:27:941]: Note: 1: 2262 2: AdminProperties 3: -2147287038
MSI (c) (9C:F8) [23:18:27:941]: Machine policy value 'DisableMsi' is 0
MSI (c) (9C:F8) [23:18:27:941]: Machine policy value 'AlwaysInstallElevated' is 0
MSI (c) (9C:F8) [23:18:27:941]: User policy value 'AlwaysInstallElevated' is 0
MSI (c) (9C:F8) [23:18:27:941]: Product installation will be elevated because user is admin and product is being installed per-machine.
MSI (c) (9C:F8) [23:18:27:941]: Running product '{5E11C972-1E76-45FE-8F92-14E0D1140B1B}' with elevated privileges: Product is assigned.
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding CURRENTDIRECTORY property. Its value is 'I:\Incoming'.
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding CLIENTUILEVEL property. Its value is '0'.
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding CLIENTPROCESSID property. Its value is '8604'.
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding MsiSystemRebootPending property. Its value is '1'.
MSI (c) (9C:F8) [23:18:27:941]: TRANSFORMS property is now:
MSI (c) (9C:F8) [23:18:27:941]: PROPERTY CHANGE: Adding VersionDatabase property. Its value is '300'.
MSI (c) (9C:F8) [23:18:27:942]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming
MSI (c) (9C:F8) [23:18:27:942]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\Favorites
MSI (c) (9C:F8) [23:18:27:942]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Network Shortcuts
MSI (c) (9C:F8) [23:18:27:942]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\Documents
MSI (c) (9C:F8) [23:18:27:942]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
MSI (c) (9C:F8) [23:18:27:942]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Recent
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\SendTo
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Templates
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\ProgramData
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Local
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\Pictures
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs
MSI (c) (9C:F8) [23:18:27:943]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu
MSI (c) (9C:F8) [23:18:27:944]: SHELL32::SHGetFolderPath returned: C:\Users\Public\Desktop
MSI (c) (9C:F8) [23:18:27:944]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
MSI (c) (9C:F8) [23:18:27:944]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MSI (c) (9C:F8) [23:18:27:944]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
MSI (c) (9C:F8) [23:18:27:944]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\AppData\Roaming\Microsoft\Windows\Start Menu
MSI (c) (9C:F8) [23:18:27:944]: SHELL32::SHGetFolderPath returned: C:\Users\Blair\Desktop
MSI (c) (9C:F8) [23:18:27:945]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Templates
MSI (c) (9C:F8) [23:18:27:945]: SHELL32::SHGetFolderPath returned: C:\Windows\Fonts
MSI (c) (9C:F8) [23:18:27:945]: Note: 1: 2898 2: MS Sans Serif 3: MS Sans Serif 4: 0 5: 24
MSI (c) (9C:F8) [23:18:27:948]: MSI_LUA: Setting MsiRunningElevated property to 1 because the install is already running elevated.
MSI (c) (9C:F8) [23:18:27:948]: PROPERTY CHANGE: Adding MsiRunningElevated property. Its value is '1'.
MSI (c) (9C:F8) [23:18:27:948]: PROPERTY CHANGE: Adding Privileged property. Its value is '1'.
MSI (c) (9C:F8) [23:18:27:948]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\MS Setup (ACME)\User Info 3: 2
MSI (c) (9C:F8) [23:18:27:948]: PROPERTY CHANGE: Adding USERNAME property. Its value is 'Blair Wilson'.
MSI (c) (9C:F8) [23:18:27:948]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\MS Setup (ACME)\User Info 3: 2
MSI (c) (9C:F8) [23:18:27:948]: PROPERTY CHANGE: Adding DATABASE property. Its value is 'C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi'.
MSI (c) (9C:F8) [23:18:27:948]: PROPERTY CHANGE: Adding OriginalDatabase property. Its value is 'C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\iTunes64.msi'.
MSI (c) (9C:F8) [23:18:27:948]: Machine policy value 'MsiDisableEmbeddedUI' is 0
MSI (c) (9C:F8) [23:18:27:948]: PROPERTY CHANGE: Adding SourceDir property. Its value is 'C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\'.
MSI (c) (9C:F8) [23:18:27:948]: PROPERTY CHANGE: Adding SOURCEDIR property. Its value is 'C:\Users\Blair\AppData\Local\Temp\IXP104.TMP\'.
MSI (c) (9C:98) [23:18:27:949]: PROPERTY CHANGE: Adding VersionHandler property. Its value is '5.00'.
=== Logging started: 1/24/2012 23:18:27 ===
MSI (c) (9C:F8) [23:18:27:953]: Note: 1: 2205 2: 3: PatchPackage
MSI (c) (9C:F8) [23:18:27:953]: Machine policy value 'DisableRollback' is 0
MSI (c) (9C:F8) [23:18:27:953]: User policy value 'DisableRollback' is 0
MSI (c) (9C:F8) [23:18:27:953]: PROPERTY CHANGE: Adding UILevel property. Its value is '5'.
MSI (c) (9C:F8) [23:18:27:954]: PROPERTY CHANGE: Adding ACTION property. Its value is 'INSTALL'.
MSI (c) (9C:F8) [23:18:27:954]: Doing action: INSTALL
Action 23:18:27: INSTALL.
Action start 23:18:27: INSTALL.
MSI (c) (9C:F8) [23:18:27:954]: UI Sequence table 'InstallUISequence' is present and populated.
MSI (c) (9C:F8) [23:18:27:954]: Running UISequence
MSI (c) (9C:F8) [23:18:27:954]: PROPERTY CHANGE: Adding EXECUTEACTION property. Its value is 'INSTALL'.
MSI (c) (9C:F8) [23:18:27:954]: Doing action: PreparingToInstall
Action 23:18:27: PreparingToInstall.
Action start 23:18:27: PreparingToInstall.
Info 2898. For Tahoma8 textstyle, the system created a 'Tahoma' font, in 0 character set, of 19 pixels height.
DEBUG: Error 2826: Control DlgText on dialog PreparingToInstall extends beyond the boundaries of the dialog to the right by 60 pixels
The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2826. The arguments are: PreparingToInstall, DlgText, to the right
Action 23:18:27: PreparingToInstall. Dialog created
Action ended 23:18:27: PreparingToInstall. Return value 1.
MSI (c) (9C:F8) [23:18:27:959]: Doing action: iTunesLaunchConditions
Action 23:18:27: iTunesLaunchConditions. Performing installation checks
Action start 23:18:27: iTunesLaunchConditions.
MSI (c) (9C:08) [23:18:27:961]: Invoking remote custom action. DLL: C:\Users\Blair\AppData\Local\Temp\MSI3508.tmp, Entrypoint: iTunesLaunchConditions
MSI (c) (9C:38) [23:18:27:962]: Cloaking enabled.
MSI (c) (9C:38) [23:18:27:962]: Attempting to enable all disabled privileges before calling Install on Server
MSI (c) (9C:38) [23:18:27:962]: Connected to service for CA interface.
Action ended 23:18:28: iTunesLaunchConditions. Return value 1.
MSI (c) (9C:F8) [23:18:28:016]: Doing action: GrabInstallerMutex
Action 23:18:28: GrabInstallerMutex.
Action start 23:18:28: GrabInstallerMutex.
MSI (c) (9C:10) [23:18:28:018]: Invoking remote custom action. DLL: C:\Users\Blair\AppData\Local\Temp\MSI3548.tmp, Entrypoint: GrabInstallerMutex
Mutex: 000001C8
GetLastError = 000000B7
Action ended 23:18:28: GrabInstallerMutex. Return value 1.
MSI (c) (9C:F8) [23:18:28:022]: Doing action: FindRelatedProducts
Action 23:18:28: FindRelatedProducts. Searching for related applications
Action start 23:18:28: FindRelatedProducts.
FindRelatedProducts: Found application: {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
MSI (c) (9C:F8) [23:18:28:023]: PROPERTY CHANGE: Adding ASUW_IS_INSTALLED property. Its value is '{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}'.
Action ended 23:18:28: FindRelatedProducts. Return value 1.
MSI (c) (9C:F8) [23:18:28:024]: Doing action: Reset_EXISTINGIPODINSTALLDIR
Action 23:18:28: Reset_EXISTINGIPODINSTALLDIR.
Action start 23:18:28: Reset_EXISTINGIPODINSTALLDIR.
Action ended 23:18:28: Reset_EXISTINGIPODINSTALLDIR. Return value 1.
MSI (c) (9C:F8) [23:18:28:024]: Doing action: Reset_OLDIPODSERVICE
Action 23:18:28: Reset_OLDIPODSERVICE.
Action start 23:18:28: Reset_OLDIPODSERVICE.
Action ended 23:18:28: Reset_OLDIPODSERVICE. Return value 1.
MSI (c) (9C:F8) [23:18:28:025]: Doing action: AppSearch
Action 23:18:28: AppSearch. Searching for installed applications
Action start 23:18:28: AppSearch.
AppSearch: Property: EXISTINGINSTALLDIR, Signature: Locate_EXISTINGINSTALLDIR
MSI (c) (9C:F8) [23:18:28:026]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes 3: 2
AppSearch: Property: EXISTINGIPODINSTALLDIR, Signature: Locate_EXISTINGIPODINSTALLDIR
MSI (c) (9C:F8) [23:18:28:026]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iPod\AppPaths 3: 2
AppSearch: Property: OLDIPODSERVICE, Signature: Locate_OLDIPODSERVICE
MSI (c) (9C:F8) [23:18:28:026]: Note: 1: 1322 2:
MSI (c) (9C:F8) [23:18:28:026]: Note: 1: 1322 2:
MSI (c) (9C:F8) [23:18:28:027]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iPod\AppPaths 3: 2
AppSearch: Property: AUTORUN, Signature: Detect_AUTORUN
MSI (c) (9C:F8) [23:18:28:027]: PROPERTY CHANGE: Adding AUTORUN property. Its value is '#1'.
AppSearch: Property: PROGRAMMENUNAME, Signature: Locate_PROGRAMMENUNAME
MSI (c) (9C:F8) [23:18:28:027]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes 3: 2
AppSearch: Property: REGSRCH_DESKTOP_SHORTCUTS, Signature: Load_DESKTOP_SHORTCUTS
MSI (c) (9C:F8) [23:18:28:027]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes 3: 2
AppSearch: Property: REGSRCH_MEDIA_DEFAULTS, Signature: Load_MEDIA_DEFAULTS
MSI (c) (9C:F8) [23:18:28:027]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes 3: 2
AppSearch: Property: REGSRCH_ITUNES_LANGID, Signature: Load_ITUNES_LANGID
MSI (c) (9C:F8) [23:18:28:027]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes 3: 2
AppSearch: Property: PCAST_URL_HANDLER, Signature: Detect_PCAST_URL_HANDLER
MSI (c) (9C:F8) [23:18:28:028]: Note: 1: 1402 2: HKEY_CLASSES_ROOT32\pcast 3: 2
AppSearch: Property: PARTNER_ID, Signature: Load_PARTNER_ID
MSI (c) (9C:F8) [23:18:28:028]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes\Partner 3: 2
AppSearch: Property: PARTNER_NAME, Signature: Load_PARTNER_NAME
MSI (c) (9C:F8) [23:18:28:028]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes\Partner 3: 2
AppSearch: Property: PARTNER_VERSION, Signature: Load_PARTNER_VERSION
MSI (c) (9C:F8) [23:18:28:028]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Apple Computer, Inc.\iTunes\Partner 3: 2
AppSearch: Property: OUTLOOK_LOAD_BEHAVIOR, Signature: Load_OUTLOOK_BEHAVIOR
MSI (c) (9C:F8) [23:18:28:028]: Note: 1: 1402 2: HKEY_CURRENT_USER32\SOFTWARE\Microsoft\Office\Outlook\Addins\iTunesAddIn.CalendarHelper 3: 2
AppSearch: Property: DONT_AUTO_SYNC_IPODS, Signature: Load_DONT_AUTO_SYNC_IPODS
MSI (c) (9C:F8) [23:18:28:029]: Note: 1: 1402 2: HKEY_CURRENT_USER32\SOFTWARE\Apple Computer, Inc.\iTunes\Preferences 3: 2
Action ended 23:18:28: AppSearch. Return value 1.
MSI (c) (9C:F8) [23:18:28:029]: Doing action: Set_DefaultUIFont
Action 23:18:28: Set_DefaultUIFont.
Action start 23:18:28: Set_DefaultUIFont.
MSI (c) (9C:F8) [23:18:28:029]: PROPERTY CHANGE: Modifying DefaultUIFont property. Its current value is 'Tahoma8'. Its new value: 'Segoe8'.
Action ended 23:18:28: Set_DefaultUIFont. Return value 1.
MSI (c) (9C:F8) [23:18:28:029]: Doing action: LaunchConditions
Action 23:18:28: LaunchConditions. Evaluating launch conditions
Action start 23:18:28: LaunchConditions.
Action ended 23:18:28: LaunchConditions. Return value 1.
MSI (c) (9C:F8) [23:18:28:030]: Doing action: ValidateProductID
Action 23:18:28: ValidateProductID.
Action start 23:18:28: ValidateProductID.
Action ended 23:18:28: ValidateProductID. Return value 1.
MSI (c) (9C:F8) [23:18:28:031]: Doing action: CostInitialize
Action 23:18:28: CostInitialize. Computing space requirements
Action start 23:18:28: CostInitialize.
MSI (c) (9C:F8) [23:18:28:031]: Machine policy value 'MaxPatchCacheSize' is 10
MSI (c) (9C:F8) [23:18:28:036]: PROPERTY CHANGE: Adding ROOTDRIVE property. Its value is 'F:\'.
MSI (c) (9C:F8) [23:18:28:049]: PROPERTY CHANGE: Adding CostingComplete property. Its value is '0'.
Action ended 23:18:28: CostInitialize. Return value 1.
MSI (c) (9C:F8) [23:18:28:050]: Doing action: FileCost
Action 23:18:28: FileCost. Computing space requirements
Action start 23:18:28: FileCost.
MSI (c) (9C:F8) [23:18:28:051]: Note: 1: 2205 2: 3: MsiAssembly
MSI (c) (9C:F8) [23:18:28:052]: Note: 1: 2262 2: Extension 3: -2147287038
Action ended 23:18:28: FileCost. Return value 1.
MSI (c) (9C:F8) [23:18:28:052]: Doing action: FindFirefox
Action 23:18:28: FindFirefox.
Action start 23:18:28: FindFirefox.
MSI (c) (9C:28) [23:18:28:053]: Invoking remote custom action. DLL: C:\Users\Blair\AppData\Local\Temp\MSI3568.tmp, Entrypoint: FindFirefox
Action ended 23:18:28: FindFirefox. Return value 1.
MSI (c) (9C:F8) [23:18:28:057]: Doing action: Set_PROGRAMMENUNAME
Action 23:18:28: Set_PROGRAMMENUNAME.
Action start 23:18:28: Set_PROGRAMMENUNAME.
MSI (c) (9C:F8) [23:18:28:058]: PROPERTY CHANGE: Adding PROGRAMMENUNAME property. Its value is 'iTunes\'.
Action ended 23:18:28: Set_PROGRAMMENUNAME. Return value 1.
MSI (c) (9C:F8) [23:18:28:058]: Doing action: Set_iTunesProgramMenuFolder
Action 23:18:28: Set_iTunesProgramMenuFolder. Setting folder iTunesProgramMenuFolder
Action start 23:18:28: Set_iTunesProgramMenuFolder.
MSI (c) (9C:F8) [23:18:28:059]: PROPERTY CHANGE: Adding iTunesProgramMenuFolder property. Its value is 'C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\'.
Action ended 23:18:28: Set_iTunesProgramMenuFolder. Return value 1.
MSI (c) (9C:F8) [23:18:28:059]: Skipping action: Set_INSTALLDIR (condition is false)
MSI (c) (9C:F8) [23:18:28:059]: Skipping action: Set_IPODINSTALLDIR (condition is false)
MSI (c) (9C:F8) [23:18:28:059]: Doing action: Set_DESKTOP_SHORTCUTS
Action 23:18:28: Set_DESKTOP_SHORTCUTS.
Action start 23:18:28: Set_DESKTOP_SHORTCUTS.
MSI (c) (9C:F8) [23:18:28:059]: PROPERTY CHANGE: Adding DESKTOP_SHORTCUTS property. Its value is '1'.
Action ended 23:18:28: Set_DESKTOP_SHORTCUTS. Return value 1.
MSI (c) (9C:F8) [23:18:28:059]: Doing action: Set_MEDIA_DEFAULTS
Action 23:18:28: Set_MEDIA_DEFAULTS.
Action start 23:18:28: Set_MEDIA_DEFAULTS.
MSI (c) (9C:F8) [23:18:28:060]: PROPERTY CHANGE: Adding MEDIA_DEFAULTS property. Its value is '1'.
Action ended 23:18:28: Set_MEDIA_DEFAULTS. Return value 1.
MSI (c) (9C:F8) [23:18:28:060]: Doing action: Set_ITUNES_LANGID
Action 23:18:28: Set_ITUNES_LANGID.
Action start 23:18:28: Set_ITUNES_LANGID.
MSI (c) (9C:F8) [23:18:28:061]: PROPERTY CHANGE: Adding ITUNES_LANGID property. Its value is '1033'.
Action ended 23:18:28: Set_ITUNES_LANGID. Return value 1.
MSI (c) (9C:F8) [23:18:28:061]: Doing action: setUserProfileNT
Action 23:18:28: setUserProfileNT.
Action start 23:18:28: setUserProfileNT.
MSI (c) (9C:F8) [23:18:28:061]: PROPERTY CHANGE: Adding USERPROFILE property. Its value is 'C:\Users\Blair'.
Action ended 23:18:28: setUserProfileNT. Return value 1.
MSI (c) (9C:F8) [23:18:28:061]: Skipping action: SetAllUsersProfileNT (condition is false)
MSI (c) (9C:F8) [23:18:28:061]: Doing action: setAllUsersProfile2K
Action 23:18:28: setAllUsersProfile2K.
Action start 23:18:28: setAllUsersProfile2K.
MSI (c) (9C:F8) [23:18:28:062]: PROPERTY CHANGE: Adding ALLUSERSPROFILE property. Its value is 'C:\ProgramData'.
Action ended 23:18:28: setAllUsersProfile2K. Return value 1.
MSI (c) (9C:F8) [23:18:28:062]: Doing action: CostFinalize
Action 23:18:28: CostFinalize. Computing space requirements
Action start 23:18:28: CostFinalize.
MSI (c) (9C:F8) [23:18:28:063]: PROPERTY CHANGE: Adding OutOfDiskSpace property. Its value is '0'.
MSI (c) (9C:F8) [23:18:28:063]: PROPERTY CHANGE: Adding OutOfNoRbDiskSpace property. Its value is '0'.
MSI (c) (9C:F8) [23:18:28:063]: PROPERTY CHANGE: Adding PrimaryVolumeSpaceAvailable property. Its value is '0'.
MSI (c) (9C:F8) [23:18:28:063]: PROPERTY CHANGE: Adding PrimaryVolumeSpaceRequired property. Its value is '0'.
MSI (c) (9C:F8) [23:18:28:063]: PROPERTY CHANGE: Adding PrimaryVolumeSpaceRemaining property. Its value is '0'.
MSI (c) (9C:F8) [23:18:28:064]: Note: 1: 2205 2: 3: Patch
MSI (c) (9C:F8) [23:18:28:067]: Note: 1: 2205 2: 3: Condition
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding TARGETDIR property. Its value is 'F:\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Modifying USERPROFILE property. Its current value is 'C:\Users\Blair'. Its new value: 'C:\Users\Blair\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Modifying ALLUSERSPROFILE property. Its current value is 'C:\ProgramData'. Its new value: 'C:\ProgramData\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding Redist.7EBEDD68_AA66_11D2_B980_006097C4DE24 property. Its value is 'C:\Windows\SysWOW64\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding MS.7EBEDD68_AA66_11D2_B980_006097C4DE24 property. Its value is 'C:\Windows\SysWOW64\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding System.7EBEDD68_AA66_11D2_B980_006097C4DE24 property. Its value is 'C:\Windows\SysWOW64\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding ANSI.7EBEDD68_AA66_11D2_B980_006097C4DE24 property. Its value is 'C:\Windows\SysWOW64\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding MicrosoftAppDataFolder property. Its value is 'C:\Users\Blair\AppData\Roaming\Microsoft\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding InternetExplorerAppDataFolder property. Its value is 'C:\Users\Blair\AppData\Roaming\Microsoft\Internet Explorer\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding QuickLaunchFolder property. Its value is 'C:\Users\Blair\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding AppleFolder property. Its value is 'C:\Program Files (x86)\Common Files\Apple\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding FairPlayFolder property. Its value is 'C:\Program Files (x86)\Common Files\Apple\CoreFP\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding FirefoxFolder property. Its value is 'C:\Program Files (x86)\Mozilla Firefox\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding FirefoxDefaultsFolder property. Its value is 'C:\Program Files (x86)\Mozilla Firefox\defaults\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding FirefoxPrefsFolder property. Its value is 'C:\Program Files (x86)\Mozilla Firefox\defaults\pref\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding FIREFOXDEFAULTSFOLDER property. Its value is 'C:\Program Files (x86)\Mozilla Firefox\defaults\pref\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesInstallFolder property. Its value is 'C:\Program Files (x86)\iTunes\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding INSTALLDIR property. Its value is 'C:\Program Files (x86)\iTunes\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_zh_TW.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\zh_TW.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_zh_CN.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\zh_CN.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_tr.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\tr.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_sv.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\sv.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_ru.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\ru.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_pt_PT.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\pt_PT.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_pt.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\pt.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_pl.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\pl.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_nl.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\nl.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_nb.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\nb.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_ko.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\ko.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_ja.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\ja.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_it.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\it.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_hu.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\hu.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_fr.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\fr.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_fi.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\fi.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_es.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\es.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_en_GB.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en_GB.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_en.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_de.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\de.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_da.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\da.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunesHelper.Resources_cs.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunesHelper.Resources\cs.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_WelcomeWindow.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\WelcomeWindow.nib\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_VolumeLimitPanel.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\VolumeLimitPanel.nib\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_TVShowsIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\TVShowsIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_TouchRemoteSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\TouchRemoteSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_TouchRemoteConfirm.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\TouchRemoteConfirm.nib\'.
MSI (c) (9C:F8) [23:18:28:067]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_SummaryBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\SummaryBar.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_StoreTracksPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\StoreTracksPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_StoreCopyrightPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\StoreCopyrightPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_StoreCancelPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\StoreCancelPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_ShuffleSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\ShuffleSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_RentedMoviesPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\RentedMoviesPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_PurchasedPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\PurchasedPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_PrintingTemplates property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\PrintingTemplates\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_PodcastsPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\PodcastsPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_PodcastsIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\PodcastsIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_PlaylistIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\PlaylistIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_MusicIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\MusicIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_MoviesIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\MoviesIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPodWelcomeOffline.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPodWelcomeOffline.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPodWelcome.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPodWelcome.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPodSetupAssist.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPodSetupAssist.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPodSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPodSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPodRestore.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPodRestore.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPhoneWelcomeOffline.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPhoneWelcomeOffline.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPhoneWelcome.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPhoneWelcome.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPhoneSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPhoneSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_iPhoneRestore.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\iPhoneRestore.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_HomeSharingPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\HomeSharingPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_HomeSharingOn.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\HomeSharingOn.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_HomeSharing.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\HomeSharing.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_GradientWindow.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\GradientWindow.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_GeniusDone.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\GeniusDone.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_GeniusBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\GeniusBar.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_EULA.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\EULA.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_EQWindow.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\EQWindow.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DuplicatesPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DuplicatesPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DownloadsPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DownloadsPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DJPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DJPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DJIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DJIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsWorkouts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsWorkouts.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsVersion.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsVersion.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsTVShows.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsTVShows.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsRingtones.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsRingtones.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsRentedMovies.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsRentedMovies.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsRentalItem.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsRentalItem.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsPodcasts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsPodcasts.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsPhotos.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsPhotos.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsMusic.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsMusic.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsMovies.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsMovies.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsMail.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsMail.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsiTunesU.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsiTunesU.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsiTunesMatch.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsiTunesMatch.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsGeneralShuffle.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsGeneralShuffle.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsGeneralPhone.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsGeneralPhone.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsGeneralAppleTVStreaming.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsGeneralAppleTVStreaming.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsGeneralAppleTV.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsGeneralAppleTV.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsGeneral.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsGeneral.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsGames.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsGames.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsFileSharing.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsFileSharing.nib\'.
MSI (c) (9C:F8) [23:18:28:068]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsContacts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsContacts.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsClassicContacts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsClassicContacts.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsClassicCalendars.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsClassicCalendars.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsCalendars.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsCalendars.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsBooks.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsBooks.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsBookmarks.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsBookmarks.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsAudiobooks.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsAudiobooks.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsApps.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsApps.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_DevicePrefsAdvanced.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\DevicePrefsAdvanced.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_CDPlaylistPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\CDPlaylistPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_CapacityBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\CapacityBar.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_BrowseBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\BrowseBar.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_BooksIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\BooksIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_AutofillPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\AutofillPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_AppsPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\AppsPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_AppleTVSync.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\AppleTVSync.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_AppleTVStreamingPrefsBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\AppleTVStreamingPrefsBar.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_AppleTVStream.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\AppleTVStream.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_TW.lproj_AppleTVSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_TW.lproj\AppleTVSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_WelcomeWindow.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\WelcomeWindow.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_VolumeLimitPanel.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\VolumeLimitPanel.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_TVShowsIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\TVShowsIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_TouchRemoteSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\TouchRemoteSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_TouchRemoteConfirm.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\TouchRemoteConfirm.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_SummaryBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\SummaryBar.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_StoreTracksPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\StoreTracksPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_StoreCopyrightPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\StoreCopyrightPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_StoreCancelPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\StoreCancelPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_ShuffleSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\ShuffleSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_RentedMoviesPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\RentedMoviesPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_PurchasedPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\PurchasedPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_PrintingTemplates property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\PrintingTemplates\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_PodcastsPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\PodcastsPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_PodcastsIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\PodcastsIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_PlaylistIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\PlaylistIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_MusicIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\MusicIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_MoviesIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\MoviesIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPodWelcomeOffline.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPodWelcomeOffline.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPodWelcome.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPodWelcome.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPodSetupAssist.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPodSetupAssist.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPodSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPodSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPodRestore.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPodRestore.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPhoneWelcomeOffline.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPhoneWelcomeOffline.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPhoneWelcome.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPhoneWelcome.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPhoneSetup.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPhoneSetup.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_iPhoneRestore.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\iPhoneRestore.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_HomeSharingPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\HomeSharingPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_HomeSharingOn.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\HomeSharingOn.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_HomeSharing.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\HomeSharing.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_GradientWindow.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\GradientWindow.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_GeniusDone.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\GeniusDone.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_GeniusBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\GeniusBar.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_EULA.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\EULA.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_EQWindow.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\EQWindow.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DuplicatesPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DuplicatesPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DownloadsPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DownloadsPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DJPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DJPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DJIntro.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DJIntro.nib\'.
MSI (c) (9C:F8) [23:18:28:069]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsWorkouts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsWorkouts.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsVersion.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsVersion.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsTVShows.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsTVShows.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsRingtones.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsRingtones.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsRentedMovies.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsRentedMovies.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsRentalItem.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsRentalItem.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsPodcasts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsPodcasts.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsPhotos.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsPhotos.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsMusic.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsMusic.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsMovies.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsMovies.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsMail.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsMail.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsiTunesU.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsiTunesU.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsiTunesMatch.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsiTunesMatch.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsGeneralShuffle.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsGeneralShuffle.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsGeneralPhone.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsGeneralPhone.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsGeneralAppleTVStreaming.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsGeneralAppleTVStreaming.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsGeneralAppleTV.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsGeneralAppleTV.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsGeneral.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsGeneral.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsGames.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsGames.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsFileSharing.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsFileSharing.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsContacts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsContacts.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsClassicContacts.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsClassicContacts.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsClassicCalendars.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsClassicCalendars.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsCalendars.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsCalendars.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsBooks.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsBooks.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsBookmarks.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsBookmarks.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsAudiobooks.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsAudiobooks.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsApps.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsApps.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_DevicePrefsAdvanced.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\DevicePrefsAdvanced.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_CDPlaylistPlacard.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\CDPlaylistPlacard.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_CapacityBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\CapacityBar.nib\'.
MSI (c) (9C:F8) [23:18:28:070]: PROPERTY CHANGE: Adding iTunes.Resources_zh_CN.lproj_BrowseBar.nib property. Its value is 'C:\Program Files (x86)\iTunes\iTunes.Resources\zh_CN.lproj\BrowseBa
Expert:  Maggie P replied 2 years ago.
The log is too long for the post, could you please upload to wikisend.
Customer: replied 2 years ago.
http://wikisend.com/download/467300/log.txt
Expert:  Maggie P replied 2 years ago.
When are ready to continue save the iTunes installation file onto your Local Disk (typically c:\)

From Computer right click on the Local Disk and select Properties, click the Security tab and highlight SYSTEM in the Groups or usernames box. Make sure that Full Control is granted in the Permissions box at the bottom.

If the above are not as described then please make the relevant changes before continuing, if you need help with this let me know.

Next open Command Prompt using the Run as administrator method we used before and type

chkdsk c:\ /r

Select Yes when asked if you want to schedule to scan for next restart. Restart the computer for the scan to begin, it may take a while. If the chkdsk reports that errors were found and repaired then re-run the chkdsk scan until it reports no errors found.

Try installing the iTunes again from the copy you saved to the local disk. Do not change the install location leaving it at the default c:\Program Files and let me know if you get the same error.
Customer: replied 2 years ago.
I have run chkdsk right b4 talking with Justanswers. NP, will do again. After chkn install log, I noticed that there was a 1603 install error. Still not sure what that means. I did google it. some seem to think that a windows msi file (ISScript.msi) needs to edited, with a tool such as Orca. Not sure if I want to mess with that, nor do I feel like doing an OS re-install. Running chkdsk, brb.
Expert:  Maggie P replied 2 years ago.
Yes the 1603 error is described in the lines before it in the log and suggest a permission problem while creating the AMDS service.

You have already run the setup as an administrator so this should have dealt with the problem which is why I suggested checking the SYSTEM permissions for the C:\ drive. I suspect this setting will be OK. The chkdsk can often repair such issues but it does need to be repeated until no errors are detected.

Can you remember if chkdsk repaired problems the last time? Did you run it just once and was it with the /f or /r options?

We will try to avoid the OS re-install but can't guarantee it won't be needed. If you have a full version of OS disk then it might be possible that repair install (in place upgrade) will repair the problem but again it isn't guaranteed and the full install would still be needed if the repair fails to fix the issue. It's usually best to skip the repair and go for the full install of the OS giving a cleaner system in the long run.

I'm not sure MS would like anyone editing their files with Orca or other reverse engineering tools.
Customer: replied 2 years ago.
Still running chkdsk. Using iPhone now, final stage at 72%. The were no errors found when orig ran chkdsk/f. I will get back asap
Expert:  Maggie P replied 2 years ago.
OK you did run /r this time? Has it reported any problems or repairs so far?
Customer: replied 2 years ago.
chkdsk completed w/o errors
Expert:  Maggie P replied 2 years ago.
OK make sure that SYSTEM has Full Control on the c:\ drive as suggested earlier and if it has save the install file onto c:\ and run it from there.
Customer: replied 2 years ago.
Verified permissions on C:\ drive. I am running iTunes install from c:\ as admin.
Expert:  Maggie P replied 2 years ago.
OK standing by..
Customer: replied 2 years ago.
Install still failed at starting amd services.
Expert:  Maggie P replied 2 years ago.
Hmmm I'm afraid I am quickly running out of ideas here and the re-install of Windows is looking more and more likely. I'm not confident a repair install would fix this issue but you could instead try a sfc /scannow which is often considered the same result as a repair install. The command prompt needs to be opened with the Run as administrator option for sfc to run and you may be asked to insert the Windows disk. If any files are replaced remember to run Windows Updates to make sure you have all the latest updates.

Another option would be to try installing an older version of iTunes. Older versions can downloaded from http://www.oldapps.com/itunes.php. Extract the .exe using a compression program such as WinZip or 7zip etc. From the msi files inside (without uninstalling the apple products beforehand) run the AppleMobileDevice.msi. If this doesn't help then remove all apple products with revo then run the setup.exe for the older version. If the older version installs correctly you should be able to update to the latest version.

Customer: replied 2 years ago.
OK, I am tired of this issue. I will try using old AMD app. If this doesn't work, the hell with Itunes. I have run system file checker already. I have tried just about everything already. I have been researching this issue for over a week now. Thank you for your time and everybody else at Justanwser.
Expert:  Maggie P replied 2 years ago.
You are very welcome and I'm sorry we didn't get to a better solution. Good luck with the older apps, start with version 10.4.1
Customer: replied 2 years ago.
Ytied version 10.0, still failed. I am done with Itunes. Will find another system, take care.
Expert:  Maggie P replied 2 years ago.
And you.
Expert:  Jins M. N. replied 2 years ago.
If you want to replace iTunes with another program, you can try Songbird and Spotify.

regards
Jins

JustAnswer in the News:

 
 
 
Ask-a-doc Web sites: If you've got a quick question, you can try to get an answer from sites that say they have various specialists on hand to give quick answers... Justanswer.com.
JustAnswer.com...has seen a spike since October in legal questions from readers about layoffs, unemployment and severance.
Web sites like justanswer.com/legal
...leave nothing to chance.
Traffic on JustAnswer rose 14 percent...and had nearly 400,000 page views in 30 days...inquiries related to stress, high blood pressure, drinking and heart pain jumped 33 percent.
Tory Johnson, GMA Workplace Contributor, discusses work-from-home jobs, such as JustAnswer in which verified Experts answer people’s questions.
I will tell you that...the things you have to go through to be an Expert are quite rigorous.
 
 
 

What Customers are Saying:

 
 
 
  • My Expert answered my question promptly and he resolved the issue totally. This is a great service. I am so glad I found it I will definitely use the service again if needed. One Happy Customer New York
< Last | Next >
  • My Expert answered my question promptly and he resolved the issue totally. This is a great service. I am so glad I found it I will definitely use the service again if needed. One Happy Customer New York
  • I am very happy with my very fast response. Eric is very knowledgeable in the subject area. Thank you! RP Austin, TX
  • Hi John, Thank you for your expertise and, more important, for your kindness because they make me, almost, look forward to my next computer problem. After the next problem comes, I'll be delighted to correspond again with you. I'm told that I excel at programing. But system administration has never been one of my talents. So it's great to have an expert to rely on when the computer decides to stump me. God bless, Bill Bill M. Schenectady, New York
  • The Expert answered my Mac question and was patient. He answered in a thorough and timely manner, keeping the response on a level that could understand. Thank you! Frank Canada
  • Wonderful service, prompt, efficient, and accurate. Couldn't have asked for more. I cannot thank you enough for your help. Mary C. Freshfield, Liverpool, UK
  • This expert is wonderful. They truly know what they are talking about, and they actually care about you. They really helped put my nerves at ease. Thank you so much!!!! Alex Los Angeles, CA
  • Thank you for all your help. It is nice to know that this service is here for people like myself, who need answers fast and are not sure who to consult. GP Hesperia, CA
 
 
 

Meet The Experts:

 
 
 
  • Andy

    Computer Consultant

    Satisfied Customers:

    5311
    11yr exp, Comp Engg, Internet expert, Web developer, SEO
< Last | Next >
  • http://ww2.justanswer.com/uploads/EN/Engineer1010/2012-6-9_132423_jaj12a.64x64.jpg Andy's Avatar

    Andy

    Computer Consultant

    Satisfied Customers:

    5311
    11yr exp, Comp Engg, Internet expert, Web developer, SEO
  • http://ww2.justanswer.com/uploads/BA/barrenrock/2011-10-19_215925_JamesJAFinal.64x64.jpg James's Avatar

    James

    Sr. Computer Support Expert

    Satisfied Customers:

    8376
    20 years of experience building, fixing and servicing PCs and operating systems.
  • http://ww2.justanswer.com/uploads/zeyank/2009-09-26_154244_P8110079.png Ryan H.'s Avatar

    Ryan H.

    Computer Support Specialist

    Satisfied Customers:

    1741
    A+ Certified Technician - 10 Years experience working with all types of computer systems.
  • http://ww2.justanswer.com/uploads/JA/jadedangel57/2011-11-8_193134_janenewsm.64x64.jpg Jane Lefler's Avatar

    Jane Lefler

    Sr Prog Analyst / Technician

    Satisfied Customers:

    0
    Computer Programmer / Technician/ Consultant 16+ years
  • http://ww2.justanswer.com/uploads/RO/robmpreston/2013-9-23_233814_mijiFZm.64x64.jpg RPI Solutions's Avatar

    RPI Solutions

    Support Specialist

    Satisfied Customers:

    3476
    5+ Years in IT, BS in Computer Science
  • http://ww2.justanswer.com/uploads/BA/barunrath/2012-7-5_201954_Profilepic2.64x64.jpg B. Rath's Avatar

    B. Rath

    Computer Support Specialist

    Satisfied Customers:

    8671
    Certified Computer/Networking Support Specialist.
  • http://ww2.justanswer.com/uploads/FS/fszcze/2012-6-18_181848_500test.64x64.jpg Frederick S.'s Avatar

    Frederick S.

    Computer Specialist

    Satisfied Customers:

    7240
    Computer technician and founder of a home PC repair company.
 
 
 

Related Computer Questions